Zoek.exe v5.0.0.1 Updated 12-October-2015 Tool run by User on di 13/10/2015 at 23:29:50,52. Microsoft Windows 8.1 6.3.9600 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\User\AppData\Local\Temp\Temp1_zoek.zip\zoek.scr [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 13/10/2015 23:32:35 Zoek.exe System Restore Point Created Successfully. ==== Torpig Check ====================== HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\FileSystem {217FC9C0-3AEA-1069-A2DB-08002B30309D} %SystemRoot%\system32\shell32.dll HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\Sharing {40dd6e20-7c17-11ce-a804-00aa003ca9f6} %SystemRoot%\system32\ntshrui.dll ==== Empty Folders Check ====================== C:\Users\User\AppData\Roaming\HpUpdate deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] ""=- ==== Deleting Files \ Folders ====================== C:\ProgramData\{ECA9D0D4-7782-4B7F-96E2-FDB0CF0A57D5} deleted C:\~dSbTR0qfbSo deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2015-10-11 09:20:17 D24AF4378BED617724B6F4A9607C282B 15561 ------w- C:\WINDOWS\hpomdl19.dat 2015-10-11 09:20:17 96E8476CE414EB1917D3D2A5220A5C55 210063 ----a-w- C:\WINDOWS\hpoins19.dat 2015-10-10 06:19:59 429D9EEB1DA2386625DF4601CC1C875A 2825944 ----a-w- C:\WINDOWS\RtlExUpd.dll 2015-10-09 20:05:03 E3F554EAC407A8D84E20E2895D5AA743 150784 ----a-w- C:\WINDOWS\RegDefragTask.exe 2015-10-08 21:29:00 7826082B93262AB6460E77B91C61EA30 128512 ----a-w- C:\WINDOWS\splwow64.exe 2015-10-08 21:27:54 FC2EA5BD5307D2CFA5AAA38E0C0DDCE9 221184 ----a-w- C:\WINDOWS\notepad.exe 2015-10-08 21:15:51 C10A66189DC8C090E7C84873EDCEBC88 2501368 ----a-w- C:\WINDOWS\explorer.exe 2015-10-08 20:41:12 9B2C4A2B498F91D769AD53FAB4794D1A 28578 ----a-w- C:\WINDOWS\diagwrn.xml 2015-10-08 20:41:12 9B2C4A2B498F91D769AD53FAB4794D1A 28578 ----a-w- C:\WINDOWS\diagerr.xml 2015-10-08 09:56:36 565114BEEECD8AB684EF60A2B7CD0DAB 181952 ----a-w- C:\WINDOWS\snui.exe 2015-10-08 09:09:27 716E3974E6655CFB88FA96619D258A72 20844 ----a-w- C:\WINDOWS\prodsett_copy.ini 2015-10-05 08:40:58 2891119DC430F759CC2D5711985DFA61 861884085 ----a-w- C:\WINDOWS\MEMORY.DMP ====== C:\Users\User\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2015-10-11 09:00:13 E3925B4D7AE619468031677BC95B0020 164864 ----a-w- C:\WINDOWS\SysWOW64\rascfg.dll 2015-10-11 08:59:54 92F70A87793C9CE2F8D9B8141B10E2DF 4068352 ----a-w- C:\WINDOWS\SysWOW64\d2d1.dll 2015-10-11 08:59:40 F895850807E42A73F3C3791DF841C479 1499920 ----a-w- C:\WINDOWS\SysWOW64\ntdll.dll 2015-10-11 08:59:40 9064FD3D77F14A8ECD285086E4DE05E8 507176 ----a-w- C:\WINDOWS\SysWOW64\advapi32.dll 2015-10-11 08:59:40 39D7164FA89DC59C4E496121F6025D6F 862720 ----a-w- C:\WINDOWS\SysWOW64\KernelBase.dll 2015-10-11 08:59:39 AEC3471F4ABB8E13B5246E93A8FA98AB 561664 ----a-w- C:\WINDOWS\SysWOW64\nshwfp.dll 2015-10-11 08:59:39 66BA7437F48833EA0D8F10EE1E7A43AA 272384 ----a-w- C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2015-10-11 08:59:38 E3ED5B5BA03A80952DCB253587762DE3 536576 ----a-w- C:\WINDOWS\SysWOW64\hhctrl.ocx 2015-10-11 08:58:52 E2BF2ACE61D6B40E735162B1A1ED380B 124928 ----a-w- C:\WINDOWS\SysWOW64\wuwebv.dll 2015-10-11 08:58:52 BBE5A264EC689E8693D92F624A56968E 721920 ----a-w- C:\WINDOWS\SysWOW64\wuapi.dll 2015-10-11 08:58:52 852A226B3AA2FEEF188C40C4B4FE65DA 29696 ----a-w- C:\WINDOWS\SysWOW64\wuapp.exe 2015-10-11 08:58:52 2870426C645C2973309D817787790E94 81920 ----a-w- C:\WINDOWS\SysWOW64\wudriver.dll 2015-10-11 08:58:50 9F9FE5F52E9B2AD655C896B849883B1A 12128 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-11 08:58:50 9D66FCC681389EC619D4E801F1DDBB2F 17760 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-11 08:58:50 94FEB4417CF3E39C8C58A1B73620687E 66400 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-11 08:58:50 8E534F49C77D787DB69BABFF931A497A 12640 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-11 08:58:50 85CEBA9A21CE5D51B35EF2DE9EBFBAC4 12128 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-11 08:58:50 73CED8B30963E54D262DAE2559116E46 13664 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-11 08:58:50 5B55E9A1360A6C52CC988DA6804D6CA2 901264 ----a-w- C:\WINDOWS\SysWOW64\ucrtbase.dll 2015-10-11 08:58:50 408019E57D3D2DA62A9F28389EED0AC1 16224 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-11 08:58:50 39F9D0F1B698D53D78C79576C7C60526 14176 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-11 08:58:50 33E8CCBE05123C8146CD16293B688417 15712 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-11 08:58:50 00A0A24BB2E9AADE11494B627EB164C4 12640 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-11 08:58:49 CBF3CFC9EE1FD29707D95C63A5E7A78B 19808 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-11 08:58:49 C1096DA4634AD3356A10C00B24F53393 22368 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-11 08:58:49 B23936CF83DAC4B64660A88711B5234A 12128 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-11 08:58:49 6C7F782FDBF9AEFFE7663FA1579A610E 17760 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-11 08:58:49 4669249FB01EA369C7FD40A530966FA1 12640 ----a-w- C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-11 07:49:31 3B26DCAB842C280FA7271FF2B58D3293 28352 ----a-w- C:\WINDOWS\SysWOW64\aspnet_counters.dll 2015-10-10 10:14:18 F51474B15B4210E93FD73CA9E52E7926 103120 ----a-w- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-10-10 07:07:30 38045850ACB96313A1983A8803302906 35480 ----a-w- C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-10-10 06:23:02 FDDC4D6EC3B2BD3B5A04C22881305621 74064 ----a-w- C:\WINDOWS\SysWOW64\SFCOM.dll 2015-10-08 21:29:24 8CF33E0D6E2592BBC3A471F40358E2DB 856064 ----a-w- C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-10-08 21:29:24 2C961D5568DA48EA25FC663411120A04 6213120 ----a-w- C:\WINDOWS\SysWOW64\mstscax.dll 2015-10-08 21:29:00 F96956BBED66937350B360497AAA4EE2 507392 ----a-w- C:\WINDOWS\SysWOW64\untfs.dll 2015-10-08 21:29:00 B98F9F25D0CCA83E1CA79D1F8BAA1075 465408 ----a-w- C:\WINDOWS\SysWOW64\DevicePairing.dll 2015-10-08 21:29:00 A9957240537BEE1988B03A6B1E135773 885760 ----a-w- C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-10-08 21:29:00 A81265C9CF12A9CA3F436024C1793936 624640 ----a-w- C:\WINDOWS\SysWOW64\rasapi32.dll 2015-10-08 21:29:00 94743D320BA649382829A5FE8C12DDF1 801584 ----a-w- C:\WINDOWS\SysWOW64\mfplat.dll 2015-10-08 21:29:00 92937F1A41E6EC1D89BC4D89AC99035B 1142272 ----a-w- C:\WINDOWS\SysWOW64\vssapi.dll 2015-10-08 21:29:00 887DBBE8CF300A6AE9D0B5D8FF7C0915 143360 ----a-w- C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2015-10-08 21:29:00 85D880636B8246BD4EF4061F25D84C18 155648 ----a-w- C:\WINDOWS\SysWOW64\QSHVHOST.DLL 2015-10-08 21:29:00 7CC0DD976389300196B2DB4E3F77662C 33280 ----a-w- C:\WINDOWS\SysWOW64\rasmxs.dll 2015-10-08 21:29:00 7AB08744F06F0BDC87DC124F4276A08E 15360 ----a-w- C:\WINDOWS\SysWOW64\eventcls.dll 2015-10-08 21:29:00 75692538076B0402E7236A314A027299 55296 ----a-w- C:\WINDOWS\SysWOW64\vsstrace.dll 2015-10-08 21:29:00 6F57859B54404D350E525413322F7AA2 169984 ----a-w- C:\WINDOWS\SysWOW64\WinSCard.dll 2015-10-08 21:29:00 6E9C931731AB16217D3A5472B9B442EB 94208 ----a-w- C:\WINDOWS\SysWOW64\QSVRMGMT.DLL 2015-10-08 21:29:00 54091BD386579A661A012D5E77120B2C 786120 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-10-08 21:29:00 29A35A031EC84D7D9E393A59BEE37888 39424 ----a-w- C:\WINDOWS\SysWOW64\kmddsp.tsp 2015-10-08 21:29:00 210642D9D287AEDED8BB3123580177D4 22528 ----a-w- C:\WINDOWS\SysWOW64\rasser.dll 2015-10-08 21:29:00 205BDB00F4C032AF45A6BFD18EA7886C 498688 ----a-w- C:\WINDOWS\SysWOW64\dnsapi.dll 2015-10-08 21:29:00 017E4B714298435849AC02F32A1C6BDA 61440 ----a-w- C:\WINDOWS\SysWOW64\rasdiag.dll 2015-10-08 21:29:00 001E1E3546EA80D1A97E7E2BF6F72969 555520 ----a-w- C:\WINDOWS\SysWOW64\WSDApi.dll 2015-10-08 21:28:05 697177C5242095DBDB3A3B52DD27C400 1207296 ----a-w- C:\WINDOWS\SysWOW64\dbghelp.dll 2015-10-08 21:28:05 3C2B9089839D283DD6F91CF5F0748D1D 2985984 ----a-w- C:\WINDOWS\SysWOW64\dbgeng.dll 2015-10-08 21:27:58 95AB9B30166221ED22E43290D47198CD 364544 ----a-w- C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2015-10-08 21:27:54 9D12A01443D52BB25A8AD0F100F91B83 212992 ----a-w- C:\WINDOWS\SysWOW64\notepad.exe 2015-10-08 21:27:41 CF6502529F3819C984A26BBD83ED3C8E 180224 ----a-w- C:\WINDOWS\SysWOW64\authz.dll 2015-10-08 21:27:37 D5496CF5DF8921CFC1EF1770F98C2192 791040 ----a-w- C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-10-08 21:27:13 C68E1EC5B40FA3BAEF5088F15A687BA3 3607552 ----a-w- C:\WINDOWS\SysWOW64\msi.dll 2015-10-08 21:27:13 052FBC5525FA2975FC08EBD130BC0209 59904 ----a-w- C:\WINDOWS\SysWOW64\msiexec.exe 2015-10-08 21:27:06 6125B69B76160B3B7D07653EE8034272 27136 ----a-w- C:\WINDOWS\SysWOW64\wups.dll 2015-10-08 21:26:58 4B56EAB79339F37E0C5B325405C4FF95 1488040 ----a-w- C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-10-08 21:26:54 74887EBB4777EC450EF167645C99163E 602776 ----a-w- C:\WINDOWS\SysWOW64\oleaut32.dll 2015-10-08 21:26:34 00ED6F8562702A00D8AEC9F70CA7DDFE 1018880 ----a-w- C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-10-08 21:25:53 6CF8627C9C84CA5E6CE8DC10CE757538 1559552 ----a-w- C:\WINDOWS\SysWOW64\DWrite.dll 2015-10-08 21:25:44 7C29FBB11679B9B4F08D5AA771DABD90 358912 ----a-w- C:\WINDOWS\SysWOW64\schannel.dll 2015-10-08 21:25:39 5D3EADE2F3C9F79F8ED40E724CBBB5EC 811008 ----a-w- C:\WINDOWS\SysWOW64\WSShared.dll 2015-10-08 21:25:31 4321AD4636F0E8E11A7B06B346D44AF0 513480 ----a-w- C:\WINDOWS\SysWOW64\locale.nls 2015-10-08 21:25:25 ED239F7D7D98E8E21A9CFCB8DA22B91C 15159296 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-10-08 21:25:10 0C0F9AAF13415DE6C9F73FF7BEF88314 230912 ----a-w- C:\WINDOWS\SysWOW64\InkEd.dll 2015-10-08 21:25:02 98C136EA9D0CA9C010FE49D863D29C6D 1612992 ----a-w- C:\WINDOWS\SysWOW64\crypt32.dll 2015-10-08 21:24:58 C561022F4E2882B44BDB65AE2B0756C0 266752 ----a-w- C:\WINDOWS\SysWOW64\eapphost.dll 2015-10-08 21:24:58 958A5388C05106844C80AEB95948A32B 91648 ----a-w- C:\WINDOWS\SysWOW64\eappgnui.dll 2015-10-08 21:24:58 4720D1AF566E7C2127B4EEDDD070CA87 278016 ----a-w- C:\WINDOWS\SysWOW64\eappcfg.dll 2015-10-08 21:24:58 20A130BE26CBB3B50C5B19B91BED669B 250880 ----a-w- C:\WINDOWS\SysWOW64\eapp3hst.dll 2015-10-08 21:24:53 7F78583D91D0FCA9678778F45328C99F 367104 ----a-w- C:\WINDOWS\SysWOW64\puiobj.dll 2015-10-08 21:24:48 FE5CDD0986F845684E866C8A00ABF5B9 749568 ----a-w- C:\WINDOWS\SysWOW64\tdh.dll 2015-10-08 21:24:28 B0EDCA1168C874812A180EBCD1A43EB5 549888 ----a-w- C:\WINDOWS\SysWOW64\comctl32.dll 2015-10-08 21:24:24 498D5BC0289F8DD995FEEE8E7CD906CA 357376 ----a-w- C:\WINDOWS\SysWOW64\WMPhoto.dll 2015-10-08 21:24:20 7F99D7C779056615EA4F110AB11D0BE5 1212248 ----a-w- C:\WINDOWS\SysWOW64\ole32.dll 2015-10-08 21:24:17 3E8FCF4A26FA1A75AEE64FBDE19A2290 58880 ----a-w- C:\WINDOWS\SysWOW64\clfsw32.dll 2015-10-08 21:24:13 C1A8175D03884045F1D266D3D8B902DC 369152 ----a-w- C:\WINDOWS\SysWOW64\tracerpt.exe 2015-10-08 21:24:13 A2AE5C4AE0E64B39687EBD015293A531 257216 ----a-w- C:\WINDOWS\SysWOW64\sechost.dll 2015-10-08 21:23:25 856DA04454A75CF6E7453D53CD90A29D 987848 ----a-w- C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2015-10-08 21:23:25 779267A740023E545668517E5D3CF14F 484552 ----a-w- C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll 2015-10-08 21:23:07 46DE9C72EE0F23B9AB6A625214C16FE3 1124352 ----a-w- C:\WINDOWS\SysWOW64\msctf.dll 2015-10-08 21:22:22 032D9982B72E4F9A9B62A43B4CEDB072 1969664 ----a-w- C:\WINDOWS\SysWOW64\wpdshext.dll 2015-10-08 21:22:18 E094D21FE482A0DC59056B6B9D421B07 1230336 ----a-w- C:\WINDOWS\SysWOW64\mfc42u.dll 2015-10-08 21:22:18 5EB5142C178BED2C4372406203B9BC1D 1204224 ----a-w- C:\WINDOWS\SysWOW64\mfc42.dll 2015-10-08 21:22:18 08B8F2E5FAAC73EF1AFD99B2AEC104FD 3551744 ----a-w- C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2015-10-08 21:21:35 33BC1A74FA72C3B0EE04A23FDE1045FC 158720 ----a-w- C:\WINDOWS\SysWOW64\rgb9rast.dll 2015-10-08 21:21:28 F3FE4F9CFF9E82DC66963988F8FBC4F1 1097216 ----a-w- C:\WINDOWS\SysWOW64\gdi32.dll 2015-10-08 21:21:11 FBAB9BC4D37919C1FF3ABC8EF7B6519A 73216 ----a-w- C:\WINDOWS\SysWOW64\tdc.ocx 2015-10-08 21:21:11 DB87011A9EA9E44EB716C472E09921F8 1310720 ----a-w- C:\WINDOWS\SysWOW64\urlmon.dll 2015-10-08 21:21:11 DA36D4C0F6EF1C3A3FD848BB7A88A728 12857344 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2015-10-08 21:21:11 D4CE6BDB3225327B3FAF630287B6B446 1048576 ----a-w- C:\WINDOWS\SysWOW64\actxprxy.dll 2015-10-08 21:21:11 C2CDCD4EFD66AF2DE22EBB1EDAD70A92 2279424 ----a-w- C:\WINDOWS\SysWOW64\iertutil.dll 2015-10-08 21:21:11 BD197D0865A8C858BB9AB153D5B22EF7 230400 ----a-w- C:\WINDOWS\SysWOW64\webcheck.dll 2015-10-08 21:21:11 A030A4D208BB0FEA97702F56A75CE7D2 2052608 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-10-08 21:21:11 9BCDFFECF276DBFB1EC8E2D3DD038E00 1951232 ----a-w- C:\WINDOWS\SysWOW64\wininet.dll 2015-10-08 21:21:11 97B61B2A69D381FB4B354A742D77438A 880128 ----a-w- C:\WINDOWS\SysWOW64\inetcomm.dll 2015-10-08 21:21:11 912A76E83F974A8EE728A109C9905685 504832 ----a-w- C:\WINDOWS\SysWOW64\vbscript.dll 2015-10-08 21:21:11 7FE6E42911FCD9EA43AC111558E794C1 4520448 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll 2015-10-08 21:21:11 7DBCBB1647B7CD71E2039C1B50A12717 620032 ----a-w- C:\WINDOWS\SysWOW64\jscript9diag.dll 2015-10-08 21:21:11 7282DBD37A639459F907B8C9307D1041 710144 ----a-w- C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-10-08 21:21:11 6163462E9F2F2252C1923F00B0156324 64000 ----a-w- C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-10-08 21:21:11 59C13F923C30AE909129C1B28139E32B 327168 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-10-08 21:21:11 56F69242999ADD150DDBE8F20B27873D 168960 ----a-w- C:\WINDOWS\SysWOW64\msrating.dll 2015-10-08 21:21:11 52C0648A543920034213337C2BC3E7F7 128000 ----a-w- C:\WINDOWS\SysWOW64\iepeers.dll 2015-10-08 21:21:11 4D036506C8359185FC52EB49DB891743 341504 ----a-w- C:\WINDOWS\SysWOW64\html.iec 2015-10-08 21:21:11 3E168B5E5FEE3D09C2D4E97861B5F4B3 479232 ----a-w- C:\WINDOWS\SysWOW64\ieui.dll 2015-10-08 21:21:11 3BFAB08093416CB6B9215183BA7D4197 285696 ----a-w- C:\WINDOWS\SysWOW64\dxtrans.dll 2015-10-08 21:21:11 2CBD6D22499EB13A2666F62EF33D00E2 16303 ----a-w- C:\WINDOWS\SysWOW64\ieuinit.inf 2015-10-08 21:21:11 21FA5416257D628DE9100B22C6F4E011 665600 ----a-w- C:\WINDOWS\SysWOW64\jscript.dll 2015-10-08 21:21:11 1E89000637EC1481143FAED744BB3BA1 76288 ----a-w- C:\WINDOWS\SysWOW64\mshtmled.dll 2015-10-08 21:21:11 164FE7DB9C7819F2F60A33F9BADD3B99 19856384 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2015-10-08 21:21:11 12051337325500C8E68ADDE4E3706908 689152 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2015-10-08 21:20:28 780F3D4149BB3F98F1B5C97C74CCA527 332120 ----a-w- C:\WINDOWS\SysWOW64\msv1_0.dll 2015-10-08 21:20:28 51A403F76D38BBA81E52AACB4CF858A1 802816 ----a-w- C:\WINDOWS\SysWOW64\kerberos.dll 2015-10-08 21:20:28 20E1183B113478AD3223DE56EF27B017 324096 ----a-w- C:\WINDOWS\SysWOW64\certcli.dll 2015-10-08 21:20:28 16170A51A9C84F364E5CBF0F6C7A25A8 747520 ----a-w- C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-10-08 21:20:18 C443536D9279B74A162E3C39A83CB226 60928 ----a-w- C:\WINDOWS\SysWOW64\StorageContextHandler.dll 2015-10-08 21:20:13 C4FB74C1E96142E0A9E5DE78E3A0B494 28672 ----a-w- C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll 2015-10-08 21:20:10 F1BB02F06DF4A6D37508A65E0A2EE881 301568 ----a-w- C:\WINDOWS\SysWOW64\atmfd.dll 2015-10-08 21:20:10 78FE64758E3396A13EE8CBE0EF435B32 35840 ----a-w- C:\WINDOWS\SysWOW64\atmlib.dll 2015-10-08 21:20:02 F07E7EF7DC9FF275853A164AC02AA006 19734960 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2015-10-08 21:20:02 00E077C85F64897F5A4B093DD45CDE93 2706432 ----a-w- C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-10-08 21:19:53 A153AE01A8B83739B121D8808EFF86E2 393560 ----a-w- C:\WINDOWS\SysWOW64\netcfgx.dll 2015-10-08 21:19:49 69304975B8DF00BDC9567AAAF97791F2 1812992 ----a-w- C:\WINDOWS\SysWOW64\SRH.dll 2015-10-08 21:19:40 F8B2956CE0F98289F5A8D3FBF638D989 12800 ----a-w- C:\WINDOWS\SysWOW64\winshfhc.dll 2015-10-08 21:19:33 F418F268721B183BB5C42DFA23D9D9C2 359936 ----a-w- C:\WINDOWS\SysWOW64\taskeng.exe 2015-10-08 21:19:33 9FA27757540B4AAD5EDAAEE1E1D33FA9 182784 ----a-w- C:\WINDOWS\SysWOW64\schtasks.exe 2015-10-08 21:19:29 CB07788DF1639ED547F645403BECD759 141824 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2015-10-08 21:19:25 E26D49197CA9E38BCC6033DE53F720BD 816128 ----a-w- C:\WINDOWS\SysWOW64\calc.exe 2015-10-08 21:19:16 910003CCC721F96A7C7017D53A3AB4A6 5264384 ----a-w- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2015-10-08 21:19:12 A68963D6522B5281516B9841B6BC9919 198656 ----a-w- C:\WINDOWS\SysWOW64\WebClnt.dll 2015-10-08 21:19:12 1467236922B38B4706BF2539D7BAC4B3 87040 ----a-w- C:\WINDOWS\SysWOW64\davclnt.dll 2015-10-08 21:18:59 7A88A2F50CC53DF2DDCA544B4A58F95C 1556992 ----a-w- C:\WINDOWS\SysWOW64\msxml3.dll 2015-10-08 21:18:59 2D2C20DF59F51A8EEA12F3D6DE2E7D9B 1903848 ----a-w- C:\WINDOWS\SysWOW64\msxml6.dll 2015-10-08 21:18:49 5E88986E655935B4D68B964A47A9BFB7 208896 ----a-w- C:\WINDOWS\SysWOW64\pku2u.dll 2015-10-08 21:18:44 F7A9D2E57D357B36C11F1C8269F2B05F 25600 ----a-w- C:\WINDOWS\SysWOW64\setup16.exe 2015-10-08 21:18:44 ACC85159376F84F49F8FE6D860E39A4F 8704 ----a-w- C:\WINDOWS\SysWOW64\instnm.exe 2015-10-08 21:18:44 3C908C70D5876D6B55D742A665DC88C7 14336 ----a-w- C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-10-08 21:18:44 20FE9408E23EC6486CD995759B0BE02B 5632 ----a-w- C:\WINDOWS\SysWOW64\wow32.dll 2015-10-08 21:18:44 1D4E9DD1CF2B3A280FCF26693FBBD299 4096 ----a-w- C:\WINDOWS\SysWOW64\user.exe 2015-10-08 21:18:38 19920B416F3274640B3DE9A5248F0E74 560392 ----a-w- C:\WINDOWS\SysWOW64\SHCore.dll 2015-10-08 21:17:31 3250046189DF6429ECD93D9B483C62C7 1943040 ----a-w- C:\WINDOWS\SysWOW64\dwmcore.dll 2015-10-08 21:17:28 332625D3A96613A7CBC66B04F307F2FA 393728 ----a-w- C:\WINDOWS\SysWOW64\scesrv.dll 2015-10-08 21:17:26 FCF02D20B26118DD7E4E871323AAAB58 35840 ----a-w- C:\WINDOWS\SysWOW64\atlthunk.dll 2015-10-08 21:17:07 E9A91A0A589AED5328E30D8C7E59E5AE 2749952 ----a-w- C:\WINDOWS\SysWOW64\tquery.dll 2015-10-08 21:17:07 B95D112E19CFEC74692F7791ABBB03BE 391680 ----a-w- C:\WINDOWS\SysWOW64\mssph.dll 2015-10-08 21:17:07 8D4CEAEE747097A70342B80EA32E018D 710144 ----a-w- C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-10-08 21:17:07 50B6B1D4EFCB81298DE7F9415879C51B 699392 ----a-w- C:\WINDOWS\SysWOW64\mssvp.dll 2015-10-08 21:17:07 5027CAF4BFB31E4CD2918B2C2DFFC4CB 1920000 ----a-w- C:\WINDOWS\SysWOW64\mssrch.dll 2015-10-08 21:17:07 14B5D6506A366585F8D6B6097530F7F2 272896 ----a-w- C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-10-08 21:16:43 EF05E63ACC834470A07A2E73D519B5FA 418304 ----a-w- C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-10-08 21:15:51 91E24273FCA076EA9E65DAFA98901225 2207488 ----a-w- C:\WINDOWS\SysWOW64\explorer.exe 2015-10-08 21:15:45 2BC0B2D0D19A65FF74E27BC9C6BEC393 367104 ----a-w- C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-10-08 21:15:40 7EAC336CFB845753DE556D8EEDD8BD58 129536 ----a-w- C:\WINDOWS\SysWOW64\poqexec.exe 2015-10-08 21:15:33 02BE9F037101364A565D224194337B0C 207872 ----a-w- C:\WINDOWS\SysWOW64\rastapi.dll 2015-10-08 21:15:11 A81B57D0157AC51C312BADB2D7153252 520192 ----a-w- C:\WINDOWS\SysWOW64\SettingSync.dll 2015-10-08 21:15:11 70C34F5CC9B0E51B87C417FB65C120F9 1546752 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-10-08 21:15:11 560120EE098272BF187C9FC470F290FA 2461184 ----a-w- C:\WINDOWS\SysWOW64\authui.dll 2015-10-08 21:15:11 4615D4A2D7990F604130002F48EE0B87 148480 ----a-w- C:\WINDOWS\SysWOW64\shacct.dll 2015-10-08 21:15:07 00DDCA458B06F9FDBD94B0245011D108 2471424 ----a-w- C:\WINDOWS\SysWOW64\msftedit.dll 2015-10-08 21:15:05 45804906FFF3DD025BC725BE0DC98797 290816 ----a-w- C:\WINDOWS\SysWOW64\photowiz.dll 2015-10-08 21:14:49 2EE41D7C3CE1F2574DAF1FA72AD8564B 65600 ----a-w- C:\WINDOWS\SysWOW64\appidapi.dll 2015-10-08 21:14:45 D9F17FC61102D89A67A2AA3DD21231F5 33584 ----a-w- C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2015-10-08 21:14:45 1F9C1925A85C6CC592C2FF612A610412 372408 ----a-w- C:\WINDOWS\SysWOW64\Faultrep.dll 2015-10-08 21:14:45 1EB1C1E43C1901865C5AE34A9771C069 448792 ----a-w- C:\WINDOWS\SysWOW64\wer.dll 2015-10-08 21:12:00 262AD0EF90F757FB715B3EDD6A8E469C 778936 ----a-w- C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-10-08 21:11:36 0FDCB0931B57280D59942556A6706372 21504 ----a-w- C:\WINDOWS\SysWOW64\sdbinst.exe 2015-10-08 20:34:59 967596AE692AD8548BB12F7C3ABA4D07 69120 ----a-w- C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-10-08 11:20:19 A5189CC0316DDCD935F360E26904ECA9 14848 ------w- C:\WINDOWS\SysWOW64\rars.rs ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2015-10-11 09:00:13 7954A148CD2D6FDBF31FC9229628AA99 185856 ----a-w- C:\WINDOWS\Sysnative\rascfg.dll 2015-10-11 08:59:51 7E573742DFD7452474D8113DD2BB8C47 4710400 ----a-w- C:\WINDOWS\Sysnative\d2d1.dll 2015-10-11 08:59:42 AE3054F207A35B6C6C7E291F40B54077 1134752 ----a-w- C:\WINDOWS\Sysnative\KernelBase.dll 2015-10-11 08:59:42 06E5556D9FF001F0E6428975A1BB883E 7460168 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe 2015-10-11 08:59:41 DA28CCE042932C653E392DBF5E355BA8 686960 ----a-w- C:\WINDOWS\Sysnative\advapi32.dll 2015-10-11 08:59:41 A2BA40C2ECCFE8281C608F65303AFBF9 1736520 ----a-w- C:\WINDOWS\Sysnative\ntdll.dll 2015-10-11 08:59:40 8F2AD111B47A190F325EE7495D3C1803 845312 ----a-w- C:\WINDOWS\Sysnative\BFE.DLL 2015-10-11 08:59:40 4D3905777E83DA8C466344797F02EBA5 422400 ----a-w- C:\WINDOWS\Sysnative\FWPUCLNT.DLL 2015-10-11 08:59:40 2DA8D165A37833EF0C60FEC24D4DF66A 713216 ----a-w- C:\WINDOWS\Sysnative\nshwfp.dll 2015-10-11 08:59:40 1EF41003FADB93DC4170803D70C63A9E 1084928 ----a-w- C:\WINDOWS\Sysnative\IKEEXT.DLL 2015-10-11 08:59:38 0ADF17C3A81FDB3DE666B872349C4CCE 669184 ----a-w- C:\WINDOWS\Sysnative\hhctrl.ocx 2015-10-11 08:59:24 FDFD6F97FFD79445EA7D42BFFD9E4BF0 1290752 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll 2015-10-11 08:59:24 700A81436C00B7C7A2BE8B2BF3DD600C 699904 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2015-10-11 08:59:24 527BB306CCC4BBD873C501E0E180C60B 1163776 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2015-10-11 08:59:24 4ECB4507DED2657E28E658D979E3EEA3 503296 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2015-10-11 08:59:24 3801B0126D4A7DE544460F7FB14C03F4 766464 ----a-w- C:\WINDOWS\Sysnative\generaltel.dll 2015-10-11 08:59:23 F939D6F1A6D8C8BF8836F9CD167971CE 35384 ----a-w- C:\WINDOWS\Sysnative\CompatTelRunner.exe 2015-10-11 08:59:23 9DF6707ACDC4A0A9C43919063B3BF8C4 73216 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll 2015-10-11 08:59:18 46549AF7CB672BC8138264CC4100E9F8 6521800 ----a-w- C:\WINDOWS\Sysnative\sppsvc.exe 2015-10-11 08:59:17 5B54EDD4C46AE303ABE0655E652A26D4 1488000 ----a-w- C:\WINDOWS\Sysnative\sppobjs.dll 2015-10-11 08:59:17 0BB801FA5DD632569B1ED98DB3FBFA2F 261376 ----a-w- C:\WINDOWS\Sysnative\sppwinob.dll 2015-10-11 08:59:06 0813B71EAF097208DC76CE0605B48AF0 74752 ----a-w- C:\WINDOWS\Sysnative\NcdAutoSetup.dll 2015-10-11 08:58:53 FA2F8EA0DFACE3B3E935B106EDEF4150 3705344 ----a-w- C:\WINDOWS\Sysnative\wuaueng.dll 2015-10-11 08:58:52 EE440A76AEA3F4CC8EBD6307F335635C 891904 ----a-w- C:\WINDOWS\Sysnative\wuapi.dll 2015-10-11 08:58:52 E977212A8CF8B7C7D52E61FB74EE59AD 35840 ----a-w- C:\WINDOWS\Sysnative\wuapp.exe 2015-10-11 08:58:52 C65356C0C50957FEB4F4E29E82F5A8D0 409088 ----a-w- C:\WINDOWS\Sysnative\WUSettingsProvider.dll 2015-10-11 08:58:52 B5268453F7913811ED96DD8591EE0641 2243072 ----a-w- C:\WINDOWS\Sysnative\wucltux.dll 2015-10-11 08:58:52 83CA9A4C26EB5190D77D32CCD447AC19 95744 ----a-w- C:\WINDOWS\Sysnative\wudriver.dll 2015-10-11 08:58:52 7E6736BF2B2164BB862A36D0AB299E91 140288 ----a-w- C:\WINDOWS\Sysnative\wuwebv.dll 2015-10-11 08:58:52 2E0B86E1775F5B25BCF1D811D204F514 136904 ----a-w- C:\WINDOWS\Sysnative\wuauclt.exe 2015-10-11 08:58:50 CC337898E64D9078CB697AC19F995C7F 12128 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-utility-l1-1-0.dll 2015-10-11 08:58:50 BBAE7B5436D6D1B0FC967FF67E35415F 16224 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-11 08:58:50 AF851DFD0D9FECB76FF2B403F3C30F5B 12128 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-environment-l1-1-0.dll 2015-10-11 08:58:50 761DDD8669A661D57D9CF9C335949C06 12128 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-locale-l1-1-0.dll 2015-10-11 08:58:50 6631C212F79350458589A5281374B38B 12640 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-process-l1-1-0.dll 2015-10-11 08:58:50 653CB5DF3CEC6A4A0E402B33D8AA5C08 63840 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-private-l1-1-0.dll 2015-10-11 08:58:50 53E9526AF1FDCE39F799BFE9217397A8 17760 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-11 08:58:50 1908861649E67CDC20C563C234A89914 15712 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-convert-l1-1-0.dll 2015-10-11 08:58:49 F97E7878A2B372291B1269D80327BBF6 12640 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-heap-l1-1-0.dll 2015-10-11 08:58:49 ED14B64C94F543974B7FDC592FA0594B 12640 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-conio-l1-1-0.dll 2015-10-11 08:58:49 ECCF5973B80D771A79643732017CEA9A 17760 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-string-l1-1-0.dll 2015-10-11 08:58:49 E9F6D776545843A9817D8ACF38D06D09 19808 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-11 08:58:49 56556659C691DD043DBE24B0A195D64C 20832 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-math-l1-1-0.dll 2015-10-11 08:58:49 2381E189321EAD521FF71E72D08A6B17 984448 ----a-w- C:\WINDOWS\Sysnative\ucrtbase.dll 2015-10-11 08:58:49 0F143310FADE4DE116070A3917A79C18 13664 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-11 08:58:49 090DD0BB2BDDEE3EAAE5B6FF15FAE209 14176 ----a-w- C:\WINDOWS\Sysnative\api-ms-win-crt-time-l1-1-0.dll 2015-10-11 07:49:43 9BC00C5608BF75BEAE893814A3AEC2AD 29888 ----a-w- C:\WINDOWS\Sysnative\aspnet_counters.dll 2015-10-10 15:27:14 0D2106264D437A031DD64A9DA514357F 73800 ----a-w- C:\WINDOWS\Sysnative\RtNicProp64.dll 2015-10-10 10:14:18 AFA127EEA1E9FAE862A55A1D0B7E822C 124624 ----a-w- C:\WINDOWS\Sysnative\PresentationCFFRasterizerNative_v0300.dll 2015-10-10 07:07:28 6DBE73C09215E281F4283641144110A5 35480 ----a-w- C:\WINDOWS\Sysnative\TsWpfWrp.exe 2015-10-10 06:51:00 E87D4371B24BC9E5BAE95AEA60FFD959 193536 ----a-w- C:\WINDOWS\Sysnative\aepic.dll 2015-10-10 06:48:17 D2B6D2C64B74277FC27756F9C02FFB5F 63488 ----a-w- C:\WINDOWS\Sysnative\tzsync.exe 2015-10-10 06:46:55 D73DBBB96CEE90C2856164AAD8543425 294912 ----a-w- C:\WINDOWS\Sysnative\SystemEventsBrokerServer.dll 2015-10-10 06:23:11 A88BE9A6C4E646A2B2A1BD3A7F4B58E7 198896 ----a-w- C:\WINDOWS\Sysnative\SRSHP64.dll 2015-10-10 06:23:11 A028717B791416182959B325D5B40679 211184 ----a-w- C:\WINDOWS\Sysnative\SRSTSH64.dll 2015-10-10 06:23:11 2FCADCC14F8E540F6ADE4BF92BD8AEDD 155888 ----a-w- C:\WINDOWS\Sysnative\SRSWOW64.dll 2015-10-10 06:23:11 018D3D2478754AA411DE6DA6DE5F8F21 518896 ----a-w- C:\WINDOWS\Sysnative\SRSTSX64.dll 2015-10-10 06:23:03 B4D7A07098508A3BCC3C57612F890F98 947760 ----a-w- C:\WINDOWS\Sysnative\SFSS_APO.dll 2015-10-10 06:23:03 7B3E9344FB43D799C6462227A0E65877 221024 ----a-w- C:\WINDOWS\Sysnative\SFNHK64.dll 2015-10-10 06:23:02 2C25AF115BDDC05D9A84D26227A08E63 81248 ----a-w- C:\WINDOWS\Sysnative\SFCOM64.dll 2015-10-10 06:23:02 17ABCAD44A75C635583A238ED6333357 78688 ----a-w- C:\WINDOWS\Sysnative\SFAPO64.dll 2015-10-10 06:22:58 8331FC724559DB1002249CE4792EB991 2702552 ----a-w- C:\WINDOWS\Sysnative\RTSnMg64.cpl 2015-10-10 06:22:57 B723902784FD6BBE1A7FB5E387D68530 2918104 ----a-w- C:\WINDOWS\Sysnative\RtPgEx64.dll 2015-10-10 06:22:56 CA1D7D09854D305A64B100DC1400BA21 331880 ----a-w- C:\WINDOWS\Sysnative\RtlCPAPI64.dll 2015-10-10 06:22:52 8814A281406553A2640D6A04702C63BD 14952 ----a-w- C:\WINDOWS\Sysnative\RtkCoLDR64.dll 2015-10-10 06:22:52 3126969E04C3645975ACEFF7A28A8726 184688 ----a-w- C:\WINDOWS\Sysnative\RtkCfg64.dll 2015-10-10 06:22:51 E32DD814272AF44C35044FF0D2992CD0 3234520 ----a-w- C:\WINDOWS\Sysnative\RtkApi64.dll 2015-10-10 06:22:51 D0D0D82B7366E691275E433CD34F89B2 375128 ----a-w- C:\WINDOWS\Sysnative\RTEEP64A.dll 2015-10-10 06:22:50 ECAEC5FBBBEF8612AF0A866AFA5F7EF2 101208 ----a-w- C:\WINDOWS\Sysnative\RTEEL64A.dll 2015-10-10 06:22:50 A6286A6C7A1BBFCBA17AA54384A21D1C 204120 ----a-w- C:\WINDOWS\Sysnative\RTEED64A.dll 2015-10-10 06:22:50 6F4CD493196100EEF349D7132CECAFD9 78680 ----a-w- C:\WINDOWS\Sysnative\RTEEG64A.dll 2015-10-10 06:22:50 4A1CA878196886743FE0E84F02C2C1DA 631000 ----a-w- C:\WINDOWS\Sysnative\RtDataProc64.dll 2015-10-10 06:22:48 FED4483218FD4314CF8CD8621D71A3DA 1310936 ----a-w- C:\WINDOWS\Sysnative\RTCOM64.dll 2015-10-10 06:22:45 E9D4A333DF15D06C68AC4BFB9B6581CB 310104 ----a-w- C:\WINDOWS\Sysnative\RP3DAA64.dll 2015-10-10 06:22:45 B6FE01558CC03F3866C9AD0ED19261D8 310104 ----a-w- C:\WINDOWS\Sysnative\RP3DHT64.dll 2015-10-10 06:22:44 CD7CB560797B651BB8E9CAEEDF804132 2930904 ----a-w- C:\WINDOWS\Sysnative\RltkAPO64.dll 2015-10-10 06:22:38 CD3F906FFA6CC16B27DADB0B913C83A7 72113152 ----a-w- C:\WINDOWS\Sysnative\RCoRes64.dat 2015-10-10 06:22:38 C8396A8EB9CF3DC533AC5AE924CF3791 1749208 ----a-w- C:\WINDOWS\Sysnative\RCoInstII64.dll 2015-10-10 06:22:34 D0EB28022A91A5C084E8A7DEBB08D8D2 141584 ----a-w- C:\WINDOWS\Sysnative\R4EEL64A.dll 2015-10-10 06:22:34 03625A179B27362D3A90E3331AEBE95E 7164176 ----a-w- C:\WINDOWS\Sysnative\R4EEP64A.dll 2015-10-10 06:22:33 8882AD10853E45402CABD3BAF48A7EFC 124176 ----a-w- C:\WINDOWS\Sysnative\R4EEA64A.dll 2015-10-10 06:22:33 0B5EF50E26CFD1E7BF01E32E053532B2 434960 ----a-w- C:\WINDOWS\Sysnative\R4EED64A.dll 2015-10-10 06:22:33 01096663377134C41D618AF0E53A953E 75024 ----a-w- C:\WINDOWS\Sysnative\R4EEG64A.dll 2015-10-10 06:22:25 587A8CF457604D84266FF858CEB60223 662784 ----a-w- C:\WINDOWS\Sysnative\MaxxVolumeSDAPO.dll 2015-10-10 06:22:16 E93ADE8C38CA41442FE60E844DED92AC 2041432 ----a-w- C:\WINDOWS\Sysnative\MaxxAudioEQ64.dll 2015-10-10 06:22:13 75616F8DB5C092A8A50AFEC273859DD7 318808 ----a-w- C:\WINDOWS\Sysnative\MaxxAudioAPO20.dll 2015-10-10 06:22:13 06080807E61471A18AD99F3E6FF3C9B5 663296 ----a-w- C:\WINDOWS\Sysnative\MaxxAudioAPO30.dll 2015-10-10 06:22:10 7343F1A3B7BAC94625F2AD26887D80D2 349528 ----a-w- C:\WINDOWS\Sysnative\HiFiDAX2API.dll 2015-10-10 06:21:58 E3057F69217B864F022DCF3A9DABB8E2 3195416 ----a-w- C:\WINDOWS\Sysnative\FMAPO64.dll 2015-10-10 06:21:53 DE32448E6B40141C80DAABFF6FBE1744 693352 ----a-w- C:\WINDOWS\Sysnative\DTSVoiceClarityDLL64.dll 2015-10-10 06:21:50 9948969B2C1987B1D64789EFEB284A84 712296 ----a-w- C:\WINDOWS\Sysnative\DTSSymmetryDLL64.dll 2015-10-10 06:21:49 F132C08BD8C58579B400DFAA71F34CFB 1756264 ----a-w- C:\WINDOWS\Sysnative\DTSS2SpeakerDLL64.dll 2015-10-10 06:21:47 F7C357462077156DC211AC2112FC8C53 1568360 ----a-w- C:\WINDOWS\Sysnative\DTSS2HeadphoneDLL64.dll 2015-10-10 06:21:46 2EF5442E8E7ED20F7634EEFB09640C8F 491112 ----a-w- C:\WINDOWS\Sysnative\DTSNeoPCDLL64.dll 2015-10-10 06:21:46 192A03A21636D3775CEE4C049C3BEB2A 432744 ----a-w- C:\WINDOWS\Sysnative\DTSLimiterDLL64.dll 2015-10-10 06:21:45 BC0474E5476E5EA0D0E1AA5AC41E2061 242792 ----a-w- C:\WINDOWS\Sysnative\DTSGFXAPO64.dll 2015-10-10 06:21:45 B3977C8BA77559F4F8752AE8EB724C87 242792 ----a-w- C:\WINDOWS\Sysnative\DTSLFXAPO64.dll 2015-10-10 06:21:45 3B8FB5376F5431C0101747D5138BCB9B 241768 ----a-w- C:\WINDOWS\Sysnative\DTSGFXAPONS64.dll 2015-10-10 06:21:44 FF31A2F57AAAB58DB78FCC961A58B206 428648 ----a-w- C:\WINDOWS\Sysnative\DTSGainCompensatorDLL64.dll 2015-10-10 06:21:43 8B5A737AD11EF45D9B1AEB4ED6884968 728680 ----a-w- C:\WINDOWS\Sysnative\DTSBassEnhancementDLL64.dll 2015-10-10 06:21:43 21B38D4D86A87909491F690883AE6D1E 1486952 ----a-w- C:\WINDOWS\Sysnative\DTSBoostDLL64.dll 2015-10-10 06:21:42 2D6527EA6B43700FFE4D5E869D0217CA 2461528 ----a-w- C:\WINDOWS\Sysnative\DolbyDAX2APOv211.dll 2015-10-10 06:21:40 1689D0E01CDD0DFF021ECF9D67CDD895 944984 ----a-w- C:\WINDOWS\Sysnative\DolbyDAX2APOProp.dll 2015-10-10 06:21:38 FB1F9765499981384AA360E9D3B2A2AA 6255888 ----a-w- C:\WINDOWS\Sysnative\DDPP64AF3.dll 2015-10-10 06:21:36 F03945762D4F7DF6195095B538E5C6A2 1933584 ----a-w- C:\WINDOWS\Sysnative\DDPD64AF3.dll 2015-10-10 06:21:36 DE67ADEAC731C1ED3BD76527AB530BA5 315736 ----a-w- C:\WINDOWS\Sysnative\DDPO64A.dll 2015-10-10 06:21:36 C71D1DAFA22B5D3B71853783E5AA09D2 7087448 ----a-w- C:\WINDOWS\Sysnative\DDPP64A.dll 2015-10-10 06:21:36 863B03900C286CDEB6B329CD6D0BB395 349968 ----a-w- C:\WINDOWS\Sysnative\DDPO64AF3.dll 2015-10-10 06:21:35 CAC823DDBB6E785DB76906BFCCFE55AF 261464 ----a-w- C:\WINDOWS\Sysnative\DDPA64.dll 2015-10-10 06:21:35 AEE27C741500BF38E93052DF736F5FAD 298768 ----a-w- C:\WINDOWS\Sysnative\DDPA64F3.dll 2015-10-10 06:21:35 018EFD4A9BF6FDA0F1AA3A6DE5712CD9 1939800 ----a-w- C:\WINDOWS\Sysnative\DDPD64A.dll 2015-10-10 06:21:33 6E14F444A2506049EEC25CB5EDFE0905 113576 ----a-w- C:\WINDOWS\Sysnative\CONEQMSAPOGUILibrary.dll 2015-10-10 06:21:29 B9B73E9AF77BC79C46E499A1D3B09D67 560328 ----a-w- C:\WINDOWS\Sysnative\AERTAC64.dll 2015-10-10 06:21:29 B3E9EA31E37EDCC1D54CE20504549ABE 108640 ----a-w- C:\WINDOWS\Sysnative\AERTAR64.dll 2015-10-09 20:05:03 00FD2B025FEBAD42065FA052FECEA71D 10052 ----a-w- C:\WINDOWS\Sysnative\RegDefragNT 2015-10-09 22-00-49.cfg 2015-10-09 06:39:27 CB136B267569A62EF63D798BC90ABD5A 144 ----a-w- C:\WINDOWS\Sysnative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-08 21:29:32 2B13658119199E4F06ED32E6C266DF85 332800 ----a-w- C:\WINDOWS\Sysnative\fhcpl.dll 2015-10-08 21:29:24 570CCDEB1D230BEFDE7A0556FB02C674 7032320 ----a-w- C:\WINDOWS\Sysnative\mstscax.dll 2015-10-08 21:29:24 1FD24A3B2B1BBEEC69EE009F3B110286 1101824 ----a-w- C:\WINDOWS\Sysnative\rdvidcrl.dll 2015-10-08 21:29:15 E559586B7EA3E1902E6C123098BDBE5B 2819072 ----a-w- C:\WINDOWS\Sysnative\SettingsHandlers.dll 2015-10-08 21:29:00 F0FD2757C9975EC62C3AFF9DE3415830 514048 ----a-w- C:\WINDOWS\Sysnative\DevicePairing.dll 2015-10-08 21:29:00 E9AE4FAE83FB38A2962F9032B24CEB3C 252416 ----a-w- C:\WINDOWS\Sysnative\dnsrslvr.dll 2015-10-08 21:29:00 E8F017472DAB8350583526184F8FE478 166912 ----a-w- C:\WINDOWS\Sysnative\AppxAllUserStore.dll 2015-10-08 21:29:00 E66D01726D7B12302CBF3BBF847C9B05 1027584 ----a-w- C:\WINDOWS\Sysnative\MFMediaEngine.dll 2015-10-08 21:29:00 D64719E25966885AA991513A66A1A20F 16896 ----a-w- C:\WINDOWS\Sysnative\eventcls.dll 2015-10-08 21:29:00 CCB7FDAA07F104128D5332CD6EF04D97 48128 ----a-w- C:\WINDOWS\Sysnative\kmddsp.tsp 2015-10-08 21:29:00 A7F1BC7115123D2F17A4251149984080 962216 ----a-w- C:\WINDOWS\Sysnative\mfplat.dll 2015-10-08 21:29:00 A5F199F33C2A919AE9A15997FA7A07FD 77824 ----a-w- C:\WINDOWS\Sysnative\rasdiag.dll 2015-10-08 21:29:00 9FAF67CE7452215ACEDDB517A663454F 43008 ----a-w- C:\WINDOWS\Sysnative\rasmxs.dll 2015-10-08 21:29:00 9B1133CA54B4A3E852756EA174682EC8 211968 ----a-w- C:\WINDOWS\Sysnative\QSHVHOST.DLL 2015-10-08 21:29:00 9925BE7849D66AF04F778B41C9D5C7C1 952896 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll 2015-10-08 21:29:00 75B6AD9F2BFDFE7E7C7E38F4FDD2FF1E 658432 ----a-w- C:\WINDOWS\Sysnative\WSDApi.dll 2015-10-08 21:29:00 69C0304BE8E4C58026A0D162AD04BF10 1154048 ----a-w- C:\WINDOWS\Sysnative\SkyDrive.exe 2015-10-08 21:29:00 605CC8C83761219B45B1EF271B2A9E0C 420864 ----a-w- C:\WINDOWS\Sysnative\vpnike.dll 2015-10-08 21:29:00 591FB3A6559C393235F6D8A573E4E1B3 1574400 ----a-w- C:\WINDOWS\Sysnative\vssapi.dll 2015-10-08 21:29:00 57C10952ED978E2BF24D904B291C8C0C 558080 ----a-w- C:\WINDOWS\Sysnative\untfs.dll 2015-10-08 21:29:00 4AABC3D611EEB92FDEDD1C741D63C437 4837376 ----a-w- C:\WINDOWS\Sysnative\SyncEngine.dll 2015-10-08 21:29:00 3F0D403D47A27134F490B0951826FC37 242176 ----a-w- C:\WINDOWS\Sysnative\WinSCard.dll 2015-10-08 21:29:00 3C4FF4AD2F023865F63017F0E6A9C649 30208 ----a-w- C:\WINDOWS\Sysnative\rasser.dll 2015-10-08 21:29:00 3B7F9612439EA47151EC5EAB232C1C3F 1454080 ----a-w- C:\WINDOWS\Sysnative\VSSVC.exe 2015-10-08 21:29:00 2E3976C857D7230EC8D2B2276E688255 827392 ----a-w- C:\WINDOWS\Sysnative\spoolsv.exe 2015-10-08 21:29:00 2DA3DF504868C941D7EFAE6099B73A65 309760 ----a-w- C:\WINDOWS\Sysnative\WSDMon.dll 2015-10-08 21:29:00 2C67494BD2CB71CEE84E3DA4B9DEE979 733696 ----a-w- C:\WINDOWS\Sysnative\SkyDriveTelemetry.dll 2015-10-08 21:29:00 25AE2DD8E6F6BBD922C5F6971F124BBD 74752 ----a-w- C:\WINDOWS\Sysnative\vsstrace.dll 2015-10-08 21:29:00 0B082D6D7A53D91678E7409DD145E89C 657920 ----a-w- C:\WINDOWS\Sysnative\dnsapi.dll 2015-10-08 21:29:00 0B07D6E59605DB58B780655192D7387C 128000 ----a-w- C:\WINDOWS\Sysnative\QSVRMGMT.DLL 2015-10-08 21:29:00 0416FE95E0DC01042B46D9F6B1A1EE61 702464 ----a-w- C:\WINDOWS\Sysnative\rasapi32.dll 2015-10-08 21:28:05 48CC2698381AA1F6FBE0D78507281B40 4417536 ----a-w- C:\WINDOWS\Sysnative\dbgeng.dll 2015-10-08 21:28:05 161156327265FB02A820506B98DA7A07 1491456 ----a-w- C:\WINDOWS\Sysnative\dbghelp.dll 2015-10-08 21:27:58 B023C38663271E79FC2A9B63F6FE6417 445440 ----a-w- C:\WINDOWS\Sysnative\PhotoMetadataHandler.dll 2015-10-08 21:27:54 FC2EA5BD5307D2CFA5AAA38E0C0DDCE9 221184 ----a-w- C:\WINDOWS\Sysnative\notepad.exe 2015-10-08 21:27:41 CD7DC91A7F84B4C81A06B511545DE867 275968 ----a-w- C:\WINDOWS\Sysnative\authz.dll 2015-10-08 21:27:37 F91E83532107E8B0A1819DB2D96366CB 1090048 ----a-w- C:\WINDOWS\Sysnative\MrmCoreR.dll 2015-10-08 21:27:22 E36BF37396A26C40E40DFF65F4CD4568 463872 ----a-w- C:\WINDOWS\Sysnative\SystemSettings.Handlers.dll 2015-10-08 21:27:22 DD6861B05CF8BF95A458D3D808AD0693 2171904 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlowUI.dll 2015-10-08 21:27:22 A709D50BD3125B53283220BA44B78690 116736 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsDatabase.dll 2015-10-08 21:27:22 947C7EDC9BB17733CCC530489B6A2FFA 273240 ----a-w- C:\WINDOWS\Sysnative\SystemSettingsAdminFlows.exe 2015-10-08 21:27:22 64EEDEF2642AD68A3F3791D7346E8FEC 672984 ----a-w- C:\WINDOWS\Sysnative\MDMAgent.exe 2015-10-08 21:27:13 A7E6931FBB62F18C5DAE52E9AC379C05 3320320 ----a-w- C:\WINDOWS\Sysnative\msi.dll 2015-10-08 21:27:13 2403EA62E45389F353E507A4EDA94F5D 65024 ----a-w- C:\WINDOWS\Sysnative\msiexec.exe 2015-10-08 21:27:06 B50599B542623B6C3A731F15A8C0D5AB 66048 ----a-w- C:\WINDOWS\Sysnative\wups.dll 2015-10-08 21:27:06 B137687B02C877047CCD4873D2925814 359936 ----a-w- C:\WINDOWS\Sysnative\WinSetupUI.dll 2015-10-08 21:27:06 2DF64AE63F4A95252E9AA626C5C65740 52224 ----a-w- C:\WINDOWS\Sysnative\wups2.dll 2015-10-08 21:26:58 5A1F895338418DF8C1D31E590DC1BAA5 1763352 ----a-w- C:\WINDOWS\Sysnative\WindowsCodecs.dll 2015-10-08 21:26:54 6835D94FDAAB39E008E8490BD3E88CA3 788680 ----a-w- C:\WINDOWS\Sysnative\oleaut32.dll 2015-10-08 21:26:34 3C03E08CBB76B7081173924C52D329EE 1249280 ----a-w- C:\WINDOWS\Sysnative\UIAutomationCore.dll 2015-10-08 21:26:18 053EF531F55B508343BB3CA91386C1C7 186368 ----a-w- C:\WINDOWS\Sysnative\dpapisrv.dll 2015-10-08 21:26:07 ABF88BB697E853B29915EE72CEF0382F 130048 ----a-w- C:\WINDOWS\Sysnative\WiFiDisplay.dll 2015-10-08 21:25:53 6789160F360BF5BAF50CFEBC4043FA8E 1994752 ----a-w- C:\WINDOWS\Sysnative\DWrite.dll 2015-10-08 21:25:53 1E93CBB75D167CDF85501A8C790097A8 1381888 ----a-w- C:\WINDOWS\Sysnative\FntCache.dll 2015-10-08 21:25:44 62E3FCC2789CA52AA8A59122FDFCE26E 429568 ----a-w- C:\WINDOWS\Sysnative\schannel.dll 2015-10-08 21:25:39 35A4955E1D2646FC01EDC70C6738E3B2 971776 ----a-w- C:\WINDOWS\Sysnative\WSShared.dll 2015-10-08 21:25:31 4321AD4636F0E8E11A7B06B346D44AF0 513480 ----a-w- C:\WINDOWS\Sysnative\locale.nls 2015-10-08 21:25:25 EBB3AD82E6CE2B4B978E7CBF00E6089D 18823680 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2015-10-08 21:25:18 FE11972797DED38CA55E88BD3579F6A2 360448 ----a-w- C:\WINDOWS\Sysnative\ncsi.dll 2015-10-08 21:25:18 E94EB2A95D7D016E119C4D6868788831 391680 ----a-w- C:\WINDOWS\Sysnative\nlasvc.dll 2015-10-08 21:25:14 55E39907F34D14E0794DD17C915795E5 46456 ----a-w- C:\WINDOWS\Sysnative\LockScreenContentServer.exe 2015-10-08 21:25:10 5AA5D3EE2A87385B6E567D6B48B13A84 268288 ----a-w- C:\WINDOWS\Sysnative\InkEd.dll 2015-10-08 21:25:06 EA10446D574CB8A20D913BF500E34192 3547648 ----a-w- C:\WINDOWS\Sysnative\rdpcorets.dll 2015-10-08 21:25:06 66F962AE94FF268070ED2325DAEE88BA 131584 ----a-w- C:\WINDOWS\Sysnative\rdpudd.dll 2015-10-08 21:25:02 F5BA843DE3475B8D7FD5AFC21857A7C1 1970432 ----a-w- C:\WINDOWS\Sysnative\crypt32.dll 2015-10-08 21:24:58 992A0252586D9D946535DDBBEF9AB7D5 346112 ----a-w- C:\WINDOWS\Sysnative\eappcfg.dll 2015-10-08 21:24:58 62F00DA98A4ABDA58254DB936C1D2D73 339456 ----a-w- C:\WINDOWS\Sysnative\eapphost.dll 2015-10-08 21:24:58 4E32C419A8B3CC19FCD2CACDEF1BD492 102912 ----a-w- C:\WINDOWS\Sysnative\eappgnui.dll 2015-10-08 21:24:58 4644F62E41B054A1787225D1210108B2 331776 ----a-w- C:\WINDOWS\Sysnative\eapp3hst.dll 2015-10-08 21:24:53 9DF4C369F556A4FBAE7E1D86F1AA5593 309760 ----a-w- C:\WINDOWS\Sysnative\compstui.dll 2015-10-08 21:24:53 7F586D08E965FA00EE085319EF5BBAF1 864256 ----a-w- C:\WINDOWS\Sysnative\win32spl.dll 2015-10-08 21:24:53 4DC765353D890B9813AC809C0EFF488A 477184 ----a-w- C:\WINDOWS\Sysnative\puiobj.dll 2015-10-08 21:24:53 4A5D524C19BEB337797D6448020025B4 1091072 ----a-w- C:\WINDOWS\Sysnative\localspl.dll 2015-10-08 21:24:48 D6457C727572BF4E4189FE04CD49A589 951296 ----a-w- C:\WINDOWS\Sysnative\tdh.dll 2015-10-08 21:24:48 484E3AD4E215A7850B4197A4A6D97134 41984 ----a-w- C:\WINDOWS\Sysnative\UtcResources.dll 2015-10-08 21:24:48 21EDAD8188372C912B7BB9B1C6CB0D38 1633792 ----a-w- C:\WINDOWS\Sysnative\diagtrack.dll 2015-10-08 21:24:44 C437FBED45D3F2AEBA19CA3A9BA2348D 411455 ----a-w- C:\WINDOWS\Sysnative\ApnDatabase.xml 2015-10-08 21:24:28 0341BF7622E0D547446DB254868EF965 653824 ----a-w- C:\WINDOWS\Sysnative\comctl32.dll 2015-10-08 21:24:24 6334135544739B49C776DFE0B6F0FA9F 402432 ----a-w- C:\WINDOWS\Sysnative\WMPhoto.dll 2015-10-08 21:24:20 171705D0C4E4442241C6098D4FF1C059 1661576 ----a-w- C:\WINDOWS\Sysnative\ole32.dll 2015-10-08 21:24:17 EFC011253AE4F21DE600907AD9F0263D 75264 ----a-w- C:\WINDOWS\Sysnative\clfsw32.dll 2015-10-08 21:24:13 50C5F7952F821EED8253BDC4203DECDB 360480 ----a-w- C:\WINDOWS\Sysnative\sechost.dll 2015-10-08 21:24:13 168ECAC2C72695D6F827050BE5386206 411648 ----a-w- C:\WINDOWS\Sysnative\tracerpt.exe 2015-10-08 21:23:56 F776672C327EA4B8409B337422B87350 59392 ----a-w- C:\WINDOWS\Sysnative\csrsrv.dll 2015-10-08 21:23:56 05B08C20B8428ECE088CB5635696A48D 59392 ----a-w- C:\WINDOWS\Sysnative\basesrv.dll 2015-10-08 21:23:25 F91F5ECC8EA77D7D268C43CB3BE8749B 690016 ----a-w- C:\WINDOWS\Sysnative\msvcp120_clr0400.dll 2015-10-08 21:23:25 23FA3A85E6AFB6E9B8277CB9D0C504D2 993632 ----a-w- C:\WINDOWS\Sysnative\msvcr120_clr0400.dll 2015-10-08 21:23:10 29A888F3136B2643E22113B5422B46F9 87040 ----a-w- C:\WINDOWS\Sysnative\TSWbPrxy.exe 2015-10-08 21:23:07 3E9BB985DF2FF26CCE840DE1D24E9381 1385256 ----a-w- C:\WINDOWS\Sysnative\msctf.dll 2015-10-08 21:22:22 0BB6089A1AEE468209FE22E29E6B87BD 2067968 ----a-w- C:\WINDOWS\Sysnative\wpdshext.dll 2015-10-08 21:22:18 81CB7FF2FF19D639FD75B6B992BABC43 4298240 ----a-w- C:\WINDOWS\Sysnative\D3DCompiler_47.dll 2015-10-08 21:22:18 60629FA01E0CAE23DA527DFA5ECAD5C7 1464832 ----a-w- C:\WINDOWS\Sysnative\mfc42.dll 2015-10-08 21:22:18 20433FD8C8F460567DE93F472A4D749F 1488896 ----a-w- C:\WINDOWS\Sysnative\mfc42u.dll 2015-10-08 21:22:10 6306792367F832DE7738D11049335CF6 564224 ----a-w- C:\WINDOWS\Sysnative\apphelp.dll 2015-10-08 21:21:58 92360C5E0D86B027377381E867BD055A 203264 ----a-w- C:\WINDOWS\Sysnative\ubpm.dll 2015-10-08 21:21:48 9A7A7E45DAED2E8C2816716D8D28236A 780800 ----a-w- C:\WINDOWS\Sysnative\lsm.dll 2015-10-08 21:21:38 0F5DF8F08C138D9E1DE88984FEAA1B96 1696256 ----a-w- C:\WINDOWS\Sysnative\wevtsvc.dll 2015-10-08 21:21:28 1BC82B720076C30643CB04AAEE649A79 1380056 ----a-w- C:\WINDOWS\Sysnative\gdi32.dll 2015-10-08 21:21:11 FCE64E50B3E81A69C1CA767015AA1917 800768 ----a-w- C:\WINDOWS\Sysnative\ieapfltr.dll 2015-10-08 21:21:11 F6EA92A7954C4BE5916BD791F1B2FA3F 720384 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2015-10-08 21:21:11 F5886DC6A5386A1EC938C93A40554C15 801280 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2015-10-08 21:21:11 ECFE64A113A2DFEF26442EA91AC7E9BF 87552 ----a-w- C:\WINDOWS\Sysnative\tdc.ocx 2015-10-08 21:21:11 E892688BB1C8B0B485C27436F2B963CF 615936 ----a-w- C:\WINDOWS\Sysnative\ieui.dll 2015-10-08 21:21:11 D25352D34FDE9AF82F6362CA86A317C3 145408 ----a-w- C:\WINDOWS\Sysnative\iepeers.dll 2015-10-08 21:21:11 CF84C52C84418075D1663C376DB04C18 88064 ----a-w- C:\WINDOWS\Sysnative\MshtmlDac.dll 2015-10-08 21:21:11 CC4D00C985EC6E0F67EE3CF69FABAC4B 2886144 ----a-w- C:\WINDOWS\Sysnative\iertutil.dll 2015-10-08 21:21:11 C5760EA4180AD13CF49F04D2E806DE8F 1032704 ----a-w- C:\WINDOWS\Sysnative\inetcomm.dll 2015-10-08 21:21:11 C3BBD7A0B4E8E4208E8C88D9D4D0E835 585216 ----a-w- C:\WINDOWS\Sysnative\vbscript.dll 2015-10-08 21:21:11 C0CB840274D41027E51A81F9DE2CC4C1 199680 ----a-w- C:\WINDOWS\Sysnative\msrating.dll 2015-10-08 21:21:11 B73856CE663B16B980D635922B6A5EA6 25188352 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2015-10-08 21:21:11 B0ED8AEF452E9294E73C0C70BD301A4F 262144 ----a-w- C:\WINDOWS\Sysnative\webcheck.dll 2015-10-08 21:21:11 9D7B2EBCE72DBF36A8B502ED7FF230A7 817664 ----a-w- C:\WINDOWS\Sysnative\jscript.dll 2015-10-08 21:21:11 8541124139D68239B1EDE3E490367A6C 107520 ----a-w- C:\WINDOWS\Sysnative\inseng.dll 2015-10-08 21:21:11 77A4FEE4031F90DBB5C16F6A8FC855BC 417792 ----a-w- C:\WINDOWS\Sysnative\html.iec 2015-10-08 21:21:11 66D75C8BDA2467A21793F2FCED29B723 92160 ----a-w- C:\WINDOWS\Sysnative\mshtmled.dll 2015-10-08 21:21:11 504D90662FEFEF8EA6E19BFE5C10229C 2126336 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2015-10-08 21:21:11 404A75D7815A7202753453FF9391D2D8 316928 ----a-w- C:\WINDOWS\Sysnative\dxtrans.dll 2015-10-08 21:21:11 3854BFE1C0F14872C94501421CC40813 814080 ----a-w- C:\WINDOWS\Sysnative\jscript9diag.dll 2015-10-08 21:21:11 2ED806192EEB92E963B30B250F946C04 374784 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2015-10-08 21:21:11 2CBD6D22499EB13A2666F62EF33D00E2 16303 ----a-w- C:\WINDOWS\Sysnative\ieuinit.inf 2015-10-08 21:21:11 1F3DBB57E9EAC4E4BDD4DD523EEAC701 1545728 ----a-w- C:\WINDOWS\Sysnative\urlmon.dll 2015-10-08 21:21:11 13FAD8FFBB0E85761B42594FDAE425F7 5923840 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll 2015-10-08 21:21:11 0A11C834B8CA37AE07DF5E8727846BEC 2880000 ----a-w- C:\WINDOWS\Sysnative\actxprxy.dll 2015-10-08 21:21:11 096A832FCF5A01003E96DD7FEE45618D 2427392 ----a-w- C:\WINDOWS\Sysnative\wininet.dll 2015-10-08 21:21:11 06A02C37847A859E10EACE1A9032387C 14451712 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2015-10-08 21:20:28 B01F3377CB949F72366D0B014FF060B9 442712 ----a-w- C:\WINDOWS\Sysnative\msv1_0.dll 2015-10-08 21:20:28 63040C9A508532F90F6D0BF57E556B82 989184 ----a-w- C:\WINDOWS\Sysnative\kerberos.dll 2015-10-08 21:20:28 415862B5FF298A751D775AC49730D04C 1441792 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll 2015-10-08 21:20:28 2F802C0E8B7714268C788D0625E6FBE2 1311960 ----a-w- C:\WINDOWS\Sysnative\rpcrt4.dll 2015-10-08 21:20:28 14AADFF241A96629D64DD7F015976E82 445440 ----a-w- C:\WINDOWS\Sysnative\certcli.dll 2015-10-08 21:20:18 613438C2C3D899F50719B6878579C66D 75264 ----a-w- C:\WINDOWS\Sysnative\StorageContextHandler.dll 2015-10-08 21:20:13 83AEDC4636606B145851723AE7385781 34304 ----a-w- C:\WINDOWS\Sysnative\DeviceSetupStatusProvider.dll 2015-10-08 21:20:10 BB13532E840F4B6842E789DDA8382FE2 358912 ----a-w- C:\WINDOWS\Sysnative\atmfd.dll 2015-10-08 21:20:10 452F2B00E71FB1B216957539D15F3159 4175872 ----a-w- C:\WINDOWS\Sysnative\win32k.sys 2015-10-08 21:20:10 447B30071910564528542F80343C74CB 44032 ----a-w- C:\WINDOWS\Sysnative\atmlib.dll 2015-10-08 21:20:02 E2428B9CCECB17A3D42E985099BF621B 22292672 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2015-10-08 21:20:02 711D110F426EF6C2E705AE1E749F8F02 3109376 ----a-w- C:\WINDOWS\Sysnative\ExplorerFrame.dll 2015-10-08 21:19:56 E0C7813A97CA7947FF5C18A8F3B61A45 410128 ----a-w- C:\WINDOWS\Sysnative\services.exe 2015-10-08 21:19:53 52DA047D3968A40CD9E353B1D256FACD 487256 ----a-w- C:\WINDOWS\Sysnative\netcfgx.dll 2015-10-08 21:19:49 8442CC9A31FC381255B98D615E49EF82 2162176 ----a-w- C:\WINDOWS\Sysnative\SRH.dll 2015-10-08 21:19:40 72BEE6C5173218A8846D31DF68D2AE4F 14848 ----a-w- C:\WINDOWS\Sysnative\winshfhc.dll 2015-10-08 21:19:33 A21AC8D41E63CF1AA24EBC165AE82C9A 468992 ----a-w- C:\WINDOWS\Sysnative\taskeng.exe 2015-10-08 21:19:33 3151A020E03DDE31AAC49F35C5EFB4DB 1265152 ----a-w- C:\WINDOWS\Sysnative\schedsvc.dll 2015-10-08 21:19:33 2E9E198247BF0E9BD94B42286798A5AC 229376 ----a-w- C:\WINDOWS\Sysnative\schtasks.exe 2015-10-08 21:19:29 7E36F0698777668A09DD316E59807E0E 172544 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Input.Inking.dll 2015-10-08 21:19:25 D82C445E3D484F31CD2638A4338E5FD9 933888 ----a-w- C:\WINDOWS\Sysnative\calc.exe 2015-10-08 21:19:16 201A0988DB1113FE506781AC77BBCC3F 7784448 ----a-w- C:\WINDOWS\Sysnative\Windows.Data.Pdf.dll 2015-10-08 21:19:12 F077AA3AF6BF55445801661ADBC63D06 104448 ----a-w- C:\WINDOWS\Sysnative\davclnt.dll 2015-10-08 21:19:12 40F83492DB9ABBA59773A45FB487C8B2 228864 ----a-w- C:\WINDOWS\Sysnative\WebClnt.dll 2015-10-08 21:19:07 A6D023786B16C2C6FEC235A69F60A5B2 15360 ----a-w- C:\WINDOWS\Sysnative\wu.upgrade.ps.dll 2015-10-08 21:19:07 4A112AD7D9C7289FE9945D05E97019D0 17408 ----a-w- C:\WINDOWS\Sysnative\wuaext.dll 2015-10-08 21:19:07 35FAB05339F7083611B12ED7143AFA81 200192 ----a-w- C:\WINDOWS\Sysnative\storewuauth.dll 2015-10-08 21:18:59 C2840E77C27B5F90F60F5C3CAE8787A7 2531400 ----a-w- C:\WINDOWS\Sysnative\msxml6.dll 2015-10-08 21:18:59 54FCD2135049B5121BD8879E220E773A 2345472 ----a-w- C:\WINDOWS\Sysnative\msxml3.dll 2015-10-08 21:18:49 31E9837295401C2470027AF7DD75C4D2 259072 ----a-w- C:\WINDOWS\Sysnative\pku2u.dll 2015-10-08 21:18:44 DB2A64D1A82226DCEFF4076725BD5577 13312 ----a-w- C:\WINDOWS\Sysnative\wow64cpu.dll 2015-10-08 21:18:44 D2451F8CF7EAA14531E3731C06D6D27E 246272 ----a-w- C:\WINDOWS\Sysnative\microsoft-windows-system-events.dll 2015-10-08 21:18:44 BC9E947C4B1E166CE2237871CAA4BDC0 16896 ----a-w- C:\WINDOWS\Sysnative\ntvdm64.dll 2015-10-08 21:18:44 AF4309E729C1943908E1E10DAEE42413 285184 ----a-w- C:\WINDOWS\Sysnative\wow64.dll 2015-10-08 21:18:44 7E85DB0463AD2403AE84AD162B162279 1217024 ----a-w- C:\WINDOWS\Sysnative\sysmain.dll 2015-10-08 21:18:38 EEB76824DC14283A010CAE4E2B5AB852 723072 ----a-w- C:\WINDOWS\Sysnative\SHCore.dll 2015-10-08 21:17:31 3DB29814EA5A2091425200B58E25BA15 2256896 ----a-w- C:\WINDOWS\Sysnative\dwmcore.dll 2015-10-08 21:17:28 F8A442ABBAB56529B625DB9D916EA46A 538624 ----a-w- C:\WINDOWS\Sysnative\scesrv.dll 2015-10-08 21:17:23 6E409D818C6B342544EAE741B1422B85 228864 ----a-w- C:\WINDOWS\Sysnative\profsvc.dll 2015-10-08 21:17:07 F52C9F18BE8899CF503D7D40E62C47C3 903168 ----a-w- C:\WINDOWS\Sysnative\SearchIndexer.exe 2015-10-08 21:17:07 279C2DB5C56A3674DCB98165E85237CF 3633664 ----a-w- C:\WINDOWS\Sysnative\tquery.dll 2015-10-08 21:17:06 F2CBC74E403A4251279D0BA9D0ECFBDB 2551808 ----a-w- C:\WINDOWS\Sysnative\mssrch.dll 2015-10-08 21:17:06 98D0A8C3BF81774D76EAAB5977B69AB3 337408 ----a-w- C:\WINDOWS\Sysnative\SearchProtocolHost.exe 2015-10-08 21:17:06 62B3D51F60859F595317D7C3AEC5E5F2 248832 ----a-w- C:\WINDOWS\Sysnative\mssphtb.dll 2015-10-08 21:17:06 42FFA34D6A1ABBC6064E0D8A452039D3 774144 ----a-w- C:\WINDOWS\Sysnative\mssvp.dll 2015-10-08 21:17:06 3B8D14C7D33E3991090C726DD4CF7088 468480 ----a-w- C:\WINDOWS\Sysnative\mssph.dll 2015-10-08 21:16:43 D7922F3AC6BF1EA77240E0061D648174 490496 ----a-w- C:\WINDOWS\Sysnative\dxtmsft.dll 2015-10-08 21:15:49 08079E76DD10DDEC6FA4F92AFF1CD38D 118616 ----a-w- C:\WINDOWS\Sysnative\consent.exe 2015-10-08 21:15:45 8B9F3796EC1762CF255BDB324E5529C8 522240 ----a-w- C:\WINDOWS\Sysnative\GeofenceMonitorService.dll 2015-10-08 21:15:41 E4A75F7BA48F4281405C782E3DB9F828 146432 ----a-w- C:\WINDOWS\Sysnative\poqexec.exe 2015-10-08 21:15:33 D044FD35EEC3BF683B963DE10A5E00C3 222208 ----a-w- C:\WINDOWS\Sysnative\rastapi.dll 2015-10-08 21:15:11 FA3A2F366A8D4A2BFE2FBD6BF99D8BD2 2775552 ----a-w- C:\WINDOWS\Sysnative\authui.dll 2015-10-08 21:15:11 F5A987C9AE37B5A0E596FD6C61B2786E 194048 ----a-w- C:\WINDOWS\Sysnative\shacct.dll 2015-10-08 21:15:11 D29E5AA3BDB179B68BB80918008B6D55 655872 ----a-w- C:\WINDOWS\Sysnative\SettingSync.dll 2015-10-08 21:15:11 3D50654EB342ED42EDA48F4CD8EF82B1 1728000 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Immersive.dll 2015-10-08 21:15:07 30BAC398731D69A658BE751C74CFDD31 3084288 ----a-w- C:\WINDOWS\Sysnative\msftedit.dll 2015-10-08 21:15:05 DF55E2D7D045BA1A2C43029DEDF0B59D 347136 ----a-w- C:\WINDOWS\Sysnative\photowiz.dll 2015-10-08 21:14:49 88358135810B9DFD830A9D3A8C3D149A 39936 ----a-w- C:\WINDOWS\Sysnative\appidsvc.dll 2015-10-08 21:14:49 3F44A679845792E68F1A6FDA59309E92 74928 ----a-w- C:\WINDOWS\Sysnative\appidapi.dll 2015-10-08 21:14:45 C6264DEDF8FE95FAB9AFC47C3F95A6A8 37888 ----a-w- C:\WINDOWS\Sysnative\werdiagcontroller.dll 2015-10-08 21:14:45 A41B72F81B389786805CC4D5767B5FBC 531616 ----a-w- C:\WINDOWS\Sysnative\ci.dll 2015-10-08 21:14:45 9404704666256045F5BA9B290953B4D0 38264 ----a-w- C:\WINDOWS\Sysnative\WerFaultSecure.exe 2015-10-08 21:14:45 8EBC741DDE9409038262E2F317ED7CCE 535640 ----a-w- C:\WINDOWS\Sysnative\wer.dll 2015-10-08 21:14:45 431FE56F5A2F5937994CB2DA330B47DB 230400 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2015-10-08 21:14:45 41C501FD9D42F3F04A8532C73E09F356 108944 ----a-w- C:\WINDOWS\Sysnative\EncDump.dll 2015-10-08 21:14:45 2C354FA91EF605007FD11BB89EED2266 413248 ----a-w- C:\WINDOWS\Sysnative\Faultrep.dll 2015-10-08 21:14:45 0F03CC00645D7F841879A048787D6AC7 911360 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2015-10-08 21:11:58 E35AD6DAECED1213658E0976A16D6266 1166520 ----a-w- C:\WINDOWS\Sysnative\PresentationNative_v0300.dll 2015-10-08 21:11:36 952D277678FC177CA8549B92A01C4C2C 24576 ----a-w- C:\WINDOWS\Sysnative\sdbinst.exe 2015-10-08 20:57:55 97C5DDBD97CC5A5C5AE92108975D811A 22980 ----a-w- C:\WINDOWS\Sysnative\emptyregdb.dat 2015-10-08 20:34:59 E2A042032FAECB04477D8235FD1181FF 72704 ----a-w- C:\WINDOWS\Sysnative\OpenCL.DLL 2015-10-08 20:34:29 FF1DD7D1A5FB7A1D9A00F88203FCECCD 63776 ----a-w- C:\WINDOWS\Sysnative\nvshext.dll 2015-10-08 20:34:29 E8ED3E3F7C9CD244CD704A5E036AC412 1064224 ----a-w- C:\WINDOWS\Sysnative\nv3dappshext.dll 2015-10-08 20:34:29 D941AC33FF6C91357CC0DB49821F203F 219424 ----a-w- C:\WINDOWS\Sysnative\nvmctray.dll 2015-10-08 20:34:29 D348FF384C1540104DF510559C236738 6669600 ----a-w- C:\WINDOWS\Sysnative\nvcpl.dll 2015-10-08 20:34:29 B9ACFCB1A564E07258E961A14A35763E 67072 ----a-w- C:\WINDOWS\Sysnative\nv3dappshextr.dll 2015-10-08 20:34:29 9358512875EF78AC11D27EF00A5E59A1 3489568 ----a-w- C:\WINDOWS\Sysnative\nvsvc64.dll 2015-10-08 20:34:29 6511C8C20922796753F1C41F3F6A3A88 2559776 ----a-w- C:\WINDOWS\Sysnative\nvsvcr.dll 2015-10-08 20:34:29 5CD98806151EE8633505CEF3A5AEF4E1 3426956 ----a-w- C:\WINDOWS\Sysnative\nvcoproc.bin 2015-10-08 20:34:29 415695F5A54E91E869EEBFEA261361A6 922912 ----a-w- C:\WINDOWS\Sysnative\nvvsvc.exe 2015-10-08 18:48:48 9F45771914360A925252A1B7226EC7EC 451 ----a-w- C:\WINDOWS\Sysnative\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-10-08 11:20:19 BAC4C6E060303F461212DEEAD56C2B62 14848 ------w- C:\WINDOWS\Sysnative\rars.rs ====== C:\WINDOWS\Sysnative\drivers ===== 2015-10-11 09:00:13 B8F36CBC72FC5C8B8A30AD850165EA8E 72192 ----a-w- C:\WINDOWS\Sysnative\drivers\ndproxy.sys 2015-10-11 09:00:13 23006D660C0E54BF1CE8253E15F5E995 80896 ----a-w- C:\WINDOWS\Sysnative\drivers\wanarp.sys 2015-10-11 08:58:43 B810B2B39CCA90DC6BF42AF1658AE0D1 1201664 ----a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2015-10-11 08:58:43 52A1B7ECAB4C9EF70FD41241691E09D3 81920 ----a-w- C:\WINDOWS\Sysnative\drivers\BTHUSB.SYS 2015-10-11 08:58:43 12418846B057E4F92FC621F5C6CF737D 53248 ----a-w- C:\WINDOWS\Sysnative\drivers\bthenum.sys 2015-10-10 15:27:14 BDADF1B669FDF8D498B7D7DF402A4359 881368 ----a-w- C:\WINDOWS\Sysnative\drivers\Rt630x64.sys 2015-10-10 06:22:59 7D7FBC9504575D97885A858EA93684F5 5804772 ----a-w- C:\WINDOWS\Sysnative\drivers\rtvienna.dat 2015-10-10 06:22:54 D172E06EFE08DF148155A59DB716C1B6 4514008 ----a-w- C:\WINDOWS\Sysnative\drivers\RTKVHD64.sys 2015-10-10 06:22:45 EEBB2430E7BAFBD7B7A9F399502A43E1 35222128 ----a-w- C:\WINDOWS\Sysnative\drivers\RTAIODAT.DAT 2015-10-09 11:07:27 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-10-08 21:29:00 F6ECFD6128A16A4851CFE98D4E01B011 551232 ----a-w- C:\WINDOWS\Sysnative\drivers\vhdmp.sys 2015-10-08 21:29:00 ED54A75050211DC77F9B98C41E026858 86336 ----a-w- C:\WINDOWS\Sysnative\drivers\pdc.sys 2015-10-08 21:29:00 DC1D9F692C2AD84C214584C28501C1F7 24576 ----a-w- C:\WINDOWS\Sysnative\drivers\ndistapi.sys 2015-10-08 21:29:00 7EC9376D245D734791AD46738712E7D8 473408 ----a-w- C:\WINDOWS\Sysnative\drivers\netio.sys 2015-10-08 21:29:00 7AA01AB1C110916825E6E1389F1B9AF2 39744 ----a-w- C:\WINDOWS\Sysnative\drivers\intelpep.sys 2015-10-08 21:29:00 715ABA3DD164D06457A2A3C92F6EA9D5 136512 ----a-w- C:\WINDOWS\Sysnative\drivers\wfplwfs.sys 2015-10-08 21:29:00 3EE5097945A7F680E320953271EB2D4F 96768 ----a-w- C:\WINDOWS\Sysnative\drivers\agilevpn.sys 2015-10-08 21:29:00 389C998C64319CD97625B0550E52ECFA 58176 ----a-w- C:\WINDOWS\Sysnative\drivers\dam.sys 2015-10-08 21:29:00 1BD3022FD6E450B00DE560265638FD2A 112640 ----a-w- C:\WINDOWS\Sysnative\drivers\rasl2tp.sys 2015-10-08 21:27:49 C61EAF8E1E4B2F62BA4FDF457440B2C6 316416 ----a-w- C:\WINDOWS\Sysnative\drivers\udfs.sys 2015-10-08 21:26:44 8CD840A062F6BDF41DDE3ACB96164B72 32256 ----a-w- C:\WINDOWS\Sysnative\drivers\kbdhid.sys 2015-10-08 21:26:44 5FCBAB60598AE119E02B4C27DE6B99EA 30208 ----a-w- C:\WINDOWS\Sysnative\drivers\mouhid.sys 2015-10-08 21:26:44 5917AFE4A3F695A54B99C1849C8207FE 59712 ----a-w- C:\WINDOWS\Sysnative\drivers\kbdclass.sys 2015-10-08 21:26:44 49EE0AE9E5B64FFBBD06D55C4984B598 108544 ----a-w- C:\WINDOWS\Sysnative\drivers\i8042prt.sys 2015-10-08 21:26:44 148195AE95D9BC7375A08846439FDAC1 26112 ----a-w- C:\WINDOWS\Sysnative\drivers\sermouse.sys 2015-10-08 21:26:44 08374E4E5B8914DE6067CBA99F61E930 51008 ----a-w- C:\WINDOWS\Sysnative\drivers\mouclass.sys 2015-10-08 21:25:48 272A62B660A48AEF366F8A1836CED19F 57856 ----a-w- C:\WINDOWS\Sysnative\drivers\bthhfenum.sys 2015-10-08 21:24:17 8EB7E70C2D348FE2476A2E3F2D585E3D 377152 ----a-w- C:\WINDOWS\Sysnative\drivers\clfs.sys 2015-10-08 21:24:06 312BB35275EB15145F4B6D1FFCE56C50 20992 ----a-w- C:\WINDOWS\Sysnative\drivers\usb8023.sys 2015-10-08 21:23:41 C54B6B2170BF628FD42F799A66956D75 239424 ----a-w- C:\WINDOWS\Sysnative\drivers\sdbus.sys 2015-10-08 21:23:41 95E295FD19F80B3AD33629B5AEFEC9C7 154432 ----a-w- C:\WINDOWS\Sysnative\drivers\dumpsd.sys 2015-10-08 21:23:38 746DDF7D59AB8D721C88D48434597E8D 2476376 ----a-w- C:\WINDOWS\Sysnative\drivers\tcpip.sys 2015-10-08 21:23:38 25991A1635AF725E9DC840A6A36824EC 428888 ----a-w- C:\WINDOWS\Sysnative\drivers\FWPKCLNT.SYS 2015-10-08 21:23:34 FEA8FC81431AD93F44D5FBFBBF096AA7 118272 ----a-w- C:\WINDOWS\Sysnative\drivers\bthpan.sys 2015-10-08 21:23:30 FE14D249D39368CA62D8DA6BC94AC694 80384 ----a-w- C:\WINDOWS\Sysnative\drivers\ahcache.sys 2015-10-08 21:22:52 DC66AE45816614D2999DCD3834DCCC4E 167424 ----a-w- C:\WINDOWS\Sysnative\drivers\rfcomm.sys 2015-10-08 21:22:52 42F88B57CAE42FC10059C887B3FCFCEA 97792 ----a-w- C:\WINDOWS\Sysnative\drivers\hidbth.sys 2015-10-08 21:21:44 44603DA5A87FB491EF59C889EBBB4DDB 325464 ----a-w- C:\WINDOWS\Sysnative\drivers\USBXHCI.SYS 2015-10-08 21:20:28 BCBD64220AD85C26823453FF1DC3EFBD 284672 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys 2015-10-08 21:20:28 6FBDF2B1B025A8E6E069234362FFFFB7 401408 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb.sys 2015-10-08 21:20:28 5E5AB950693F2C6D6ACBEE3A74697ED7 561928 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys 2015-10-08 21:20:28 57C2473D501331211D6885FD59F3E44B 202240 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys 2015-10-08 21:20:28 46711F40D0F9E63F786ED23F9BD5215E 178008 ----a-w- C:\WINDOWS\Sysnative\drivers\ksecpkg.sys 2015-10-08 21:19:53 97DC5967F65503213FD1F1B3E4A6F983 1113944 ----a-w- C:\WINDOWS\Sysnative\drivers\ndis.sys 2015-10-08 21:19:40 CE67080F00E0AF32755096CEA6430ABA 114520 ----a-w- C:\WINDOWS\Sysnative\drivers\WdNisDrv.sys 2015-10-08 21:19:40 81285DDC994F03379DB46419300B2DCB 44560 ----a-w- C:\WINDOWS\Sysnative\drivers\WdBoot.sys 2015-10-08 21:19:40 26B8FED3F3B85F5F0C4BD03FD00B9941 270168 ----a-w- C:\WINDOWS\Sysnative\drivers\WdFilter.sys 2015-10-08 21:18:55 DB32958F0E704EFBF7F15161A569E39F 140800 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxdav.sys 2015-10-08 21:18:44 9A788037D768809DFD677F4BA08A224A 101720 ----a-w- C:\WINDOWS\Sysnative\drivers\mountmgr.sys 2015-10-08 21:17:33 95B0179BDA907252025DEEA183699FB3 467776 ----a-w- C:\WINDOWS\Sysnative\drivers\USBHUB3.SYS 2015-10-08 21:15:30 E87A6D3B8FECD5B93BC0CFBB48C27970 991552 ----a-w- C:\WINDOWS\Sysnative\drivers\http.sys 2015-10-08 20:35:15 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_iBtFltCoex_01009.Wdf 2015-10-08 20:35:06 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\WINDOWS\Sysnative\drivers\Msft_Kernel_SynTP_01009.Wdf 2015-10-08 09:09:48 B2004047CD711232791D92594B2C457B 66736 ----a-w- C:\WINDOWS\Sysnative\drivers\fsbts.sys ====== C:\WINDOWS\Tasks ====== 2015-10-13 21:30:11 E522C61A393D3982EA6D54B22201CE3E 3114 ----a-w- C:\WINDOWS\Sysnative\Tasks\{831E6550-3502-4826-BC16-E441819CB23B} 2015-10-11 09:17:32 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\Hewlett-Packard 2015-10-10 15:35:26 EAFF5A20637B608B92C1FCCFC411F5E0 3118 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe 2015-10-10 15:35:26 06710202549E47FE1A712A857C95D87B 3092 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft_Hardware_Launch_ipoint_exe 2015-10-10 15:35:25 38C7CCB21D1B852DF6E087AD10C63307 3090 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft_Hardware_Launch_itype_exe 2015-10-10 15:35:24 C17FCCBDA39A76F283B9A7E22FF17F9D 3062 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe 2015-10-10 15:35:23 5868217FD20112D36DCD622B68F0DFBF 3060 ----a-w- C:\WINDOWS\Sysnative\Tasks\Microsoft_MKC_Logon_Task_itype.exe 2015-10-08 20:35:07 A8C08DA1D7188F42BCE024431447655E 264 ----a-w- C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job 2015-10-08 13:58:04 0C20CCEF6687A291F80B504D642A63A8 3888 ----a-w- C:\WINDOWS\Sysnative\Tasks\Adobe Acrobat Update Task 2015-10-08 12:36:41 1BA851ABCFDA80C886DE50A9C0A5340B 3950 ----a-w- C:\WINDOWS\Sysnative\Tasks\User_Feed_Synchronization-{E57CDEB4-5377-4BD4-B445-00EB2C2DE4DB} 2015-10-08 09:49:05 DF634FDBCDE27474EBAA9B0AEFCBF3BE 4040 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineUA 2015-10-08 09:49:05 10E0BF6581834F275178F4A0A823820F 1068 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-10-08 09:49:04 8E5ABAD8D5755A310D54D8301D93004E 3806 ----a-w- C:\WINDOWS\Sysnative\Tasks\GoogleUpdateTaskMachineCore 2015-10-08 09:49:03 2A947C9985478BE2721CD47B657D27C3 1064 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-10-05 08:18:21 58F4CD3C746FA225C0287959327E1483 3600 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3842311887-1272351324-2958204144-1002 2015-10-05 07:18:08 -------- d-----w- C:\WINDOWS\Sysnative\Tasks\WPD 2015-10-05 07:04:41 9D572A42911B34D9A3158FAAF15A5B4C 2324 ----a-w- C:\WINDOWS\Sysnative\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3842311887-1272351324-2958204144-500 ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== 2015-10-12 13:03:11 -------- d-----w- C:\Program Files\trend micro 2015-10-10 15:34:49 -------- d-----w- C:\Program Files\Microsoft Mouse and Keyboard Center 2015-10-10 06:24:58 -------- d-----w- C:\Program Files\Realtek 2015-10-08 21:12:37 -------- d-----w- C:\Program Files\Reference Assemblies 2015-10-08 21:12:37 -------- d-----w- C:\Program Files\MSBuild 2015-10-08 20:35:04 -------- d-----w- C:\Program Files\Synaptics 2015-10-08 20:34:55 -------- d-----w- C:\Program Files\Intel 2015-10-08 20:34:03 -------- d-----w- C:\Program Files\NVIDIA Corporation 2015-10-08 16:37:01 -------- d-----w- C:\Program Files\Microsoft Silverlight 2015-10-08 09:49:32 -------- d-----w- C:\Program Files\Google 2015-10-08 09:22:07 -------- d-----w- C:\Program Files\Microsoft Office 15 ======= C:\PROGRA~2 ===== 2015-10-11 10:21:38 -------- d-----w- C:\PROGRA~2\Toyota 2015-10-11 09:23:59 -------- d-----w- C:\PROGRA~2\Microsoft 2015-10-11 09:22:41 -------- d-----w- C:\PROGRA~2\COMMON~1\HP 2015-10-11 09:22:32 -------- d-----w- C:\PROGRA~2\COMMON~1\Hewlett-Packard 2015-10-11 09:21:57 -------- d-----w- C:\PROGRA~2\HP 2015-10-11 09:15:13 -------- d-----w- C:\PROGRA~2\Hewlett-Packard 2015-10-10 16:36:28 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype 2015-10-10 15:48:58 -------- d-----r- C:\PROGRA~2\Skype 2015-10-08 21:12:38 -------- d-----w- C:\PROGRA~2\Reference Assemblies 2015-10-08 21:12:38 -------- d-----w- C:\PROGRA~2\MSBuild 2015-10-08 20:34:51 -------- d-----w- C:\PROGRA~2\COMMON~1\Intel 2015-10-08 20:34:03 -------- d-----w- C:\PROGRA~2\NVIDIA Corporation 2015-10-08 16:37:01 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight 2015-10-08 13:57:27 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe 2015-10-08 13:57:27 -------- d-----w- C:\PROGRA~2\Adobe 2015-10-08 12:39:41 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service 2015-10-08 09:49:03 -------- d-----w- C:\PROGRA~2\Google 2015-10-08 09:33:14 -------- d-----w- C:\PROGRA~2\Microsoft OneDrive 2015-10-08 09:32:33 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER 2015-10-08 09:25:39 -------- d-----w- C:\PROGRA~2\Microsoft Office 2015-10-08 08:57:33 -------- d-----w- C:\PROGRA~2\F-Secure ======= C: ===== 2015-10-08 09:22:34 A2552334EA67A29EE7A5428781F58FCC 1334012 ----a-w- C:\WindowsNIRMALAB.tt2 2015-10-08 09:22:34 19541D2A6F2F6E637BAC3F20691DE1C3 1382640 ----a-w- C:\WindowsNIRMALA.tt2 ====== C:\Users\User\AppData\Roaming ====== 2015-10-13 19:43:25 -------- d-----w- C:\Users\User\AppData\Local\GWX 2015-10-11 10:22:02 -------- d-----w- C:\Users\User\AppData\Roaming\toyota 2015-10-11 10:21:38 -------- d-----w- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Toyota 2015-10-11 09:36:37 -------- d-----w- C:\Users\User\AppData\Roaming\Hewlett-Packard 2015-10-11 09:34:08 -------- d-----w- C:\Users\User\AppData\Roaming\hpqLog 2015-10-11 09:25:11 -------- d-----w- C:\Users\User\AppData\Roaming\HP 2015-10-11 09:25:09 -------- d-----w- C:\Users\User\AppData\Local\HP 2015-10-11 09:17:33 -------- d-----w- C:\Users\User\AppData\Local\Hewlett-Packard 2015-10-11 08:48:32 -------- d-----w- C:\Users\User\AppData\Local\CEF 2015-10-10 16:45:58 -------- d-----w- C:\Users\User\AppData\Local\Diagnostics 2015-10-10 15:48:53 -------- d-s---w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Locallow\Microsoft 2015-10-10 15:42:57 -------- d-----w- C:\Users\User\AppData\Locallow\Intel 2015-10-09 19:59:33 -------- d-----w- C:\Users\User\AppData\Local\Programs 2015-10-08 20:58:41 -------- d-s---w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Locallow\Microsoft 2015-10-08 20:57:59 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Adobe 2015-10-08 20:50:31 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Roaming\f-secure 2015-10-08 20:50:14 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Intel 2015-10-08 20:50:10 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\MediaServer 2015-10-08 20:41:22 -------- d-s---w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft 2015-10-08 20:41:22 -------- d-----w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-08 20:41:22 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Temp 2015-10-08 20:41:22 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\Microsoft 2015-10-08 20:41:22 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-08 20:41:22 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-08 20:41:22 -------- d-----r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-08 20:41:20 -------- d-s---w- C:\Users\User\AppData\Roaming\Microsoft 2015-10-08 20:41:20 -------- d-----w- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-08 20:41:20 -------- d-----w- C:\Users\User\AppData\Local\Temp 2015-10-08 20:41:20 -------- d-----w- C:\Users\User\AppData\Local\Microsoft 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-08 20:34:21 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft 2015-10-08 20:33:42 -------- d-s---w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Roaming\Microsoft 2015-10-08 20:04:54 98CDF5338AB88B89BB52D3C3E2E13F09 1182312 ----a-w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2015-10-08 18:47:01 -------- d-----w- C:\Users\User\AppData\Local\Skype 2015-10-08 18:46:58 -------- d-----w- C:\Users\User\AppData\Roaming\Skype 2015-10-08 13:58:52 -------- d-----w- C:\Users\User\AppData\Locallow\Adobe 2015-10-08 12:39:51 -------- d-----w- C:\Users\User\AppData\Roaming\Mozilla 2015-10-08 12:39:51 -------- d-----w- C:\Users\User\AppData\Local\Mozilla 2015-10-08 11:59:42 -------- d-----w- C:\Users\User\AppData\Local\Microsoft Help 2015-10-08 10:01:51 -------- d-----w- C:\Users\User\AppData\Local\Adobe 2015-10-08 09:56:36 -------- d-----w- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftwareNetz 2015-10-08 09:51:12 -------- d-----w- C:\Users\User\AppData\Roaming\Google 2015-10-08 09:49:00 -------- d-----w- C:\Users\User\AppData\Local\Google 2015-10-08 09:48:40 -------- d-----w- C:\Users\User\AppData\Local\Apps 2015-10-08 09:12:52 -------- d-----w- C:\Users\User\AppData\Locallow\F-Secure 2015-10-08 09:08:49 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\F-Secure 2015-10-08 08:54:36 -------- d-----w- C:\Users\User\AppData\Local\F-Secure 2015-10-05 08:51:50 -------- d-----w- C:\Users\User\AppData\Roaming\Identities 2015-10-05 08:20:14 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\PnrpSqm 2015-10-05 08:16:32 -------- d-s---w- C:\Users\User\AppData\Locallow\Microsoft 2015-10-05 08:16:27 -------- d-s---w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Locallow\Microsoft 2015-10-05 07:20:10 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking 2015-10-05 07:19:03 -------- d-----w- C:\Users\User\AppData\Roaming\CyberLink 2015-10-05 07:18:43 -------- d-----w- C:\Users\User\AppData\Local\CyberLink 2015-10-05 07:18:23 -------- d-----w- C:\Users\User\AppData\Local\Power2Go8 2015-10-05 07:18:00 -------- d-----r- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2015-10-05 07:18:00 -------- d-----r- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2015-10-05 07:17:56 -------- d-----w- C:\Users\User\AppData\Roaming\Adobe 2015-10-05 07:10:03 -------- d-----w- C:\Users\User\AppData\Local\VirtualStore 2015-10-05 07:09:55 -------- d-----w- C:\Users\User\AppData\Local\Packages 2015-10-05 07:09:53 -------- d-----w- C:\Users\User\AppData\Roaming\Intel ====== C:\Users\User ====== 2015-10-11 09:34:44 -------- d-----w- C:\ProgramData\Hewlett-Packard 2015-10-11 09:32:22 -------- d-----w- C:\ProgramData\WEBREG 2015-10-11 09:23:19 -------- d-----w- C:\ProgramData\HP Product Assistant 2015-10-11 09:23:10 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2015-10-11 09:19:17 -------- d-----w- C:\ProgramData\HP 2015-10-10 16:38:02 -------- d-----w- C:\Users\User\Tracing 2015-10-10 16:36:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-10-10 15:42:27 -------- d-----w- C:\Users\User\Intel 2015-10-10 15:35:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center 2015-10-10 09:56:38 -------- d-----r- C:\WINDOWS\SysNative\config\systemprofile\Searches 2015-10-10 06:08:36 -------- d-----w- C:\WINDOWS\serviceprofiles\networkservice\RegBack 2015-10-09 22-36-51 2015-10-10 06:08:36 -------- d-----w- C:\WINDOWS\serviceprofiles\Localservice\RegBack 2015-10-09 22-36-51 2015-10-10 06:08:35 -------- d-----w- C:\Users\User\RegBack 2015-10-09 22-36-51 2015-10-09 20:00:39 -------- d-----w- C:\ProgramData\simplitec 2015-10-09 20:00:13 -------- d-----w- C:\ProgramData\Package Cache 2015-10-08 21:00:40 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\User\ntuser.ini 2015-10-08 20:54:26 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\UpdatusUser\ntuser.ini 2015-10-08 20:46:20 -------- d-----w- C:\Users\Default\Roaming 2015-10-08 20:41:22 -------- d--h--w- C:\Users\UpdatusUser\AppData 2015-10-08 20:41:22 -------- d-----r- C:\Users\UpdatusUser\Favorites 2015-10-08 20:41:22 -------- d-----r- C:\Users\UpdatusUser\Desktop 2015-10-08 20:41:20 -------- d--h--w- C:\Users\User\AppData 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\Favorites 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\Documents 2015-10-08 20:41:20 -------- d-----r- C:\Users\User\Desktop 2015-10-08 20:34:35 -------- d-----w- C:\ProgramData\NVIDIA 2015-10-08 20:34:09 -------- d-----w- C:\ProgramData\NVIDIA Corporation 2015-10-08 18:49:01 -------- d-sh--w- C:\Users\User\IntelGraphicsProfiles 2015-10-08 18:46:47 -------- d-----w- C:\ProgramData\Skype 2015-10-08 16:37:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-10-08 10:02:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-10-08 09:49:13 -------- d-----w- C:\ProgramData\Google 2015-10-08 09:33:12 -------- d-----r- C:\Users\User\OneDrive 2015-10-08 09:33:05 -------- d-----w- C:\ProgramData\Microsoft OneDrive 2015-10-08 09:24:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-10-08 08:54:35 -------- d-----w- C:\ProgramData\F-Secure 2015-10-05 07:18:00 -------- d-----r- C:\Users\User\Searches 2015-10-05 07:18:00 -------- d-----r- C:\Users\User\Contacts 2015-10-05 07:09:51 -------- d-----w- C:\Users\User\Roaming 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Videos 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Saved Games 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Pictures 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Music 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Links 2015-10-05 07:09:51 -------- d-----r- C:\Users\User\Downloads 2015-10-05 07:07:44 -------- d--h--r- C:\Users\Public\AccountPictures ====== C: exe-files == 2015-10-12 13:03:12 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\User.exe 2015-10-12 07:28:44 68BD23A0AD9E934F037A1D8A1929D1E2 1433216 ----a-w- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe 2015-10-12 07:28:42 13297729C696656F990A5DBA53023129 1773696 ----a-w- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe 2015-10-11 10:21:38 D1CC913A685602D90BC818F76F35DC9E 340539 ----a-w- C:\Program Files (x86)\Toyota\Toolbox\uninst.exe 2015-10-11 09:23:41 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\devicemanagement\hpzscr01.exe 2015-10-11 09:23:41 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\devicemanagement\hpzmsi01.exe 2015-10-11 09:23:28 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\ocr\hpzscr01.exe 2015-10-11 09:23:28 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\ocr\hpzmsi01.exe 2015-10-11 09:23:15 B5E8E00FC926E71A9468D5B563C53B96 125056 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\esupport\hpqrrx08.exe 2015-10-11 09:23:15 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\esupport\hpzscr01.exe 2015-10-11 09:23:15 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\esupport\hpzmsi01.exe 2015-10-11 09:23:08 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\hpssupply\hpzscr01.exe 2015-10-11 09:23:08 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\hpssupply\hpzmsi01.exe 2015-10-11 09:23:01 B5E8E00FC926E71A9468D5B563C53B96 125056 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\extcapuninstall\hpqrrx08.exe 2015-10-11 09:23:01 1704CF90D2949263EE727C786B848908 1124752 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\extcapuninstall\hpzscr01.exe 2015-10-11 09:23:01 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\extcapuninstall\hpzmsi01.exe 2015-10-11 09:22:19 4A1F0417507C0E31FA60114764D9FA5E 203664 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\devinstanceeraser01.exe 2015-10-11 09:22:19 407E6239BD93D85A47ECDEC52E652183 246160 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\devinstanceeraser40.exe 2015-10-11 09:22:18 21F99CA2D442DE74CCC1B6DD331D74E3 95120 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\cleanusbcontainer40.exe 2015-10-11 09:22:18 100628783EBE1020789D00805A82D9F4 85392 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\cleanusbcontainer01.exe 2015-10-11 09:22:13 9E4B73C3992ECDAE8673887AF75AF994 430480 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\hpzcdl01.exe 2015-10-11 09:22:13 091127F2B1ECCBDCB8CF84082E575CC8 570256 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup.exe 2015-10-11 09:22:12 F565FE2A7102FE0CE3BD0D2E2360D199 1790608 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\firepnpevent.exe 2015-10-11 09:22:12 B5E8E00FC926E71A9468D5B563C53B96 125056 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpqrrx08.exe 2015-10-11 09:22:12 6CE4D12A3131DDF99157DF5BA174787B 370064 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzwrp01.exe 2015-10-11 09:22:12 349DE048AEBADF58918A6778E300EE35 1735056 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzshl40.exe 2015-10-11 09:22:12 1921F9A1282F33DF91C5CA6D07B3B415 408192 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\doccd.exe 2015-10-11 09:22:12 0BCA3D74679F0F0271EC3B80BF9B1A19 709120 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\twainfix.exe 2015-10-11 09:22:11 E126A27B4E6AF919C09009034344EA20 1546128 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzscr40.exe 2015-10-11 09:22:11 DDC1682DA7C5778EC8BF5A5DFF0DAC43 929680 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\hpzsetup.exe 2015-10-11 09:22:11 DBCDC309674A156CA56C325839FC26E5 679824 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\hpzstub.exe 2015-10-11 09:22:11 C0B6A7C36315D3443F18D9D59CC20AB9 389008 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpznop01.exe 2015-10-11 09:22:11 A4FA104A5CCC01F15F0CF35D4206988E 1057168 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzdui40.exe 2015-10-11 09:22:11 9E4B73C3992ECDAE8673887AF75AF994 430480 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzcdl01.exe 2015-10-11 09:22:11 8ADEFE45B1DAE755D4B7B136FBCD8C51 427920 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzrcn01.exe 2015-10-11 09:22:11 7AB4FF655D63E1814F923AF89C5F1548 523152 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzpsl01.exe 2015-10-11 09:22:11 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzmsi01.exe 2015-10-11 09:21:57 E126A27B4E6AF919C09009034344EA20 1546128 ----a-w- C:\Program Files (x86)\HP\Temp\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzscr40.exe 2015-10-11 09:21:57 DBCDC309674A156CA56C325839FC26E5 679824 ----a-w- C:\Program Files (x86)\HP\Temp\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzstub.exe 2015-10-11 09:21:57 9D0E3EB2BA0A034E443E6C0A01BA521A 550288 ----a-w- C:\Program Files (x86)\HP\Temp\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzpnp40.exe 2015-10-11 09:21:57 5E6E7AF97816481E31BBCBA6619903D9 1153936 ----a-w- C:\Program Files (x86)\HP\Temp\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzrcv01.exe 2015-10-11 09:21:57 0A361D9F09E3DA95EB5CE09404A93C0C 1141136 ----a-w- C:\Program Files (x86)\HP\Temp\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzmsi01.exe 2015-10-11 09:15:13 640BE98F751CAD9AF14A91FF2BF326E4 141624 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\HPDObject.exe 2015-10-11 09:15:13 63E7C5D22E2D079FBC4470F1EFE3859F 565048 ----a-w- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\ActiveCheck\HPAsset.exe 2015-10-10 15:27:14 95E2D35B515B78336EEDE6647E2EF3DB 226304 ----a-w- C:\Program Files (x86)\Realtek\Realtek Windows NIC Driver\RTINSTALLER64.EXE 2015-10-10 15:27:11 BC49243557991AC42FCC01B8E3BB05D2 393216 ----a-w- C:\Program Files (x86)\InstallShield Installation Information\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}\setup.exe 2015-10-10 06:23:17 2A21E75EF80242E0646E7567993E977D 562792 ----a-w- C:\Program Files\Realtek\Audio\HDA\vncutil64.exe 2015-10-10 06:22:56 538250508501C2A714B2764E9920DAFF 1768152 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe 2015-10-10 06:22:52 C397166D21F4CD59D5AF339F8938CD0D 294616 ----a-w- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe 2015-10-10 06:22:37 BF225BCD0EC2D85719C382019B5B4250 14040792 ----a-w- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 2015-10-10 06:22:36 DC64C1C5948E69DD5815BD5421DDED9B 1393880 ----a-w- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe 2015-10-10 06:21:59 B14370C5FF63C548BB880D21195F7CBC 124440 ----a-w- C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2015-10-10 06:21:43 44BB65B1D3827043978FC8E11CA7C0B4 210024 ----a-w- C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe 2015-10-10 06:21:33 F9EDCA74B8CB3744159DEF02352F7BD6 58880 ----a-w- C:\Program Files\Realtek\Audio\HDA\CreateRtkToastLnk.exe 2015-10-10 06:21:29 D1E343BC00136CE03C4D403194D06A80 98208 ----a-w- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe 2015-10-10 06:15:38 655FBA9D867994D49ED5085F9912A1A6 1193688 ------w- C:\Program Files (x86)\Realtek\Audio\Drivers\HDADrv\Setup.exe 2015-10-08 21:29:00 EFC236C98B6FC47C05FC3F817CED574D 21696 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe 2015-10-08 21:29:00 C8B6FD0CE93013F606F2AA4BABF763B8 372408 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe 2015-10-08 21:28:19 57ABF04B01CBA20B76F3EE89C18C6612 474624 ----a-w- C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe 2015-10-08 21:25:10 09BF7018D659795EDFA5A7BEE4E26586 2138112 ----a-w- C:\Program Files\Windows Journal\Journal.exe 2015-10-08 21:21:11 EDF367CD1545891C5D1758C1E07EA051 815280 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe 2015-10-08 21:21:11 AE6F7122808C84ECA37CFF7B16C3A9C9 814256 ----a-w- C:\Program Files\Internet Explorer\iexplore.exe 2015-10-08 21:21:11 3698C298719803F6502612D651A852B2 491008 ----a-w- C:\Program Files\Internet Explorer\ieinstal.exe 2015-10-08 21:21:11 26492D0AE6279B60A3801EDBE3CB794C 473600 ----a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe 2015-10-08 20:34:29 F1EACFB34EB8AAE53384F08E678C5C7E 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvsmartmaxapp.exe 2015-10-08 20:34:29 9F778BA5129A23C7AEBCE965C69F5EA3 1196832 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe 2015-10-08 20:34:29 18E3451E0EE37240E6FAA6430E913EF2 6866208 ----a-w- C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe 2015-10-08 20:34:29 10E1BFE28D8C261646C1815A49C37639 2450208 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe 2015-10-08 20:34:29 0017671F7E15F327B9CD4216F023E2F7 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Display\nvsmartmaxapp64.exe 2015-10-08 20:34:23 F1EACFB34EB8AAE53384F08E678C5C7E 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\nvSmartMaxapp.exe 2015-10-08 20:34:23 9F778BA5129A23C7AEBCE965C69F5EA3 1196832 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\nvxdsync.exe 2015-10-08 20:34:23 8BCC26DF9D805D939F7E861F1FE22826 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\setup.exe 2015-10-08 20:34:23 415695F5A54E91E869EEBFEA261361A6 922912 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\nvvsvc.exe 2015-10-08 20:34:23 18E3451E0EE37240E6FAA6430E913EF2 6866208 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\nvcplui.exe 2015-10-08 20:34:23 10E1BFE28D8C261646C1815A49C37639 2450208 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\NvTray.exe 2015-10-08 20:34:23 0017671F7E15F327B9CD4216F023E2F7 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{B4865D71-1D55-493B-96E4-7D4A63BB2924}\nvSmartMaxapp64.exe 2015-10-08 20:34:22 8BCC26DF9D805D939F7E861F1FE22826 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{1DBD5D5E-8BE7-4E58-8690-535EF792E2D7}\setup.exe 2015-10-08 18:42:19 0ED4521CB66A7AE6A0813F634AFF5569 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{C28D8A47-980B-4947-9645-A13A9EF7B508}\setup.exe 2015-10-08 18:41:17 9F778BA5129A23C7AEBCE965C69F5EA3 1196832 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\nvxdsync.exe 2015-10-08 18:41:17 8BCC26DF9D805D939F7E861F1FE22826 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\setup.exe 2015-10-08 18:41:16 F1EACFB34EB8AAE53384F08E678C5C7E 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\nvSmartMaxapp.exe 2015-10-08 18:41:16 415695F5A54E91E869EEBFEA261361A6 922912 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\nvvsvc.exe 2015-10-08 18:41:16 18E3451E0EE37240E6FAA6430E913EF2 6866208 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\nvcplui.exe 2015-10-08 18:41:16 10E1BFE28D8C261646C1815A49C37639 2450208 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\NvTray.exe 2015-10-08 18:41:16 0017671F7E15F327B9CD4216F023E2F7 63264 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{382457AA-AAD0-4AD8-9971-BC2E89BC1323}\nvSmartMaxapp64.exe 2015-10-08 18:41:15 8BCC26DF9D805D939F7E861F1FE22826 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{13631CFF-608A-431D-9B93-1470396F26D0}\setup.exe 2015-10-08 18:40:51 B12A490B9F29FC2A8DFAD0103B8B9448 76096 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A4E7347A-FD43-42C3-A4C2-E4FC0D6A9B70}\nvsetup.exe 2015-10-08 18:40:51 AA130938A27BB80A8B6438EF83232275 1364256 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{C5DF3E16-F8FA-44B8-BC88-FAC029BCC8DF}\daemonu.exe 2015-10-08 18:40:51 69D9D89B98086A9DFC0E36FEF3362B3B 74327296 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A4E7347A-FD43-42C3-A4C2-E4FC0D6A9B70}\NvCplSetupInt.exe 2015-10-08 18:40:51 52174D3DB15275ED118C973D9A950919 1164576 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{C5DF3E16-F8FA-44B8-BC88-FAC029BCC8DF}\ComUpdatus.exe 2015-10-08 18:40:51 467B9304C6955F736BDE5EC48CB83D27 250144 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A4E7347A-FD43-42C3-A4C2-E4FC0D6A9B70}\dbInstaller.exe 2015-10-08 18:40:51 3881796DEC594ABB034CD032794122B8 190752 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\NVIDIA.Update.{C5DF3E16-F8FA-44B8-BC88-FAC029BCC8DF}\WLMerger.exe 2015-10-08 18:40:51 2555F1C76573E50A884A0D65DCE3D72E 32563960 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A4E7347A-FD43-42C3-A4C2-E4FC0D6A9B70}\NvCplSetupEng.exe 2015-10-08 18:40:51 0AE04E5F2710DB65B5630044D95220DD 23771152 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{8CB093A3-298E-4D2F-903E-07096A6847DA}\3DVision_331.65.exe 2015-10-08 18:40:25 0ED4521CB66A7AE6A0813F634AFF5569 407328 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\installer.{5410C39F-8BA7-4707-9057-6B5B766CED76}\setup.exe 2015-10-08 14:55:31 A77D6FB736F122853E0E78A51C1E14ED 10843216 ----a-w- C:\Program Files (x86)\Google\Update\Install\{9B3B583A-84ED-450B-B7D0-B8640FD83A9D}\45.0.2454.101_44.0.2403.89_chrome_updater.exe 2015-10-08 14:55:31 A77D6FB736F122853E0E78A51C1E14ED 10843216 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\45.0.2454.101\45.0.2454.101_44.0.2403.89_chrome_updater.exe 2015-10-08 12:39:42 AD58FEB99BEEE7E78E8BA45BA172B6BF 107202 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\Uninstall.exe 2015-10-08 12:39:42 6215DA3AD492CFBEBEE2ADBED0A6CC22 147624 ----a-w- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 2015-10-08 10:02:32 5F9D66C40F1F81B5EA4517C836007A22 42960976 ----atw- C:\Program Files (x86)\Google\Update\Install\{6BFF1859-AB3F-416A-A568-2CBE13936A44}\chrome_installer.exe 2015-10-08 09:49:32 5D61BE7DB55B026A5D61A3EED09D0EAD 39408 ----a-w- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe 2015-10-08 09:49:32 5D4BC124FAAE6730AC002CDB67BF1A1C 194032 ----a-w- C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe 2015-10-08 09:49:31 B4D556D4F5FE92F2BE1FB9628AB37DFC 309704 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe 2015-10-08 09:49:31 8C01CF559C91739D3AFB4F72C284FCBA 400840 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_64.exe 2015-10-08 09:49:14 CC0FADAC00B9964EA2B795B4FFFC508A 1105864 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarManager_32479C6A88E27044.exe 2015-10-08 09:49:14 B4D556D4F5FE92F2BE1FB9628AB37DFC 309704 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarUser_32_52E818EF81C83A9B.exe 2015-10-08 09:49:14 8C01CF559C91739D3AFB4F72C284FCBA 400840 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarUser_64_4D9709C1FA1422BA.exe 2015-10-08 09:49:14 4BEAF576CB43358C4DB9F45AC7C09CDB 194032 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleUpdaterService_B33FC4DD36A473C6.exe 2015-10-08 09:49:14 1F2AFAB903C0D48480561F3BBD4539C2 739640 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleUpdateSetup_5CC4B0F53D73AD88.exe 2015-10-08 09:49:14 0CEED1D533CAE0741D56D83AB5CB004F 1525064 ----a-w- C:\Program Files (x86)\Google\Google Toolbar\Component\SearchWithGoogleUpdate_CA8A7236098B8F9A.exe 2015-10-08 09:49:13 0479D97FFEC3CB777BA7867F83791AFA 5033304 ----a-w- C:\Program Files (x86)\Google\Update\Install\{82EF159B-E29D-41A5-9703-26B5EBB848CB}\googletoolbarinstaller_en_signed.exe 2015-10-08 09:49:13 0479D97FFEC3CB777BA7867F83791AFA 5033304 ----a-w- C:\Program Files (x86)\Google\Update\Download\{F69EABDD-A4BB-4555-BE7E-1EA5F59BBA24}\0.0.0.0\googletoolbarinstaller_en_signed.exe 2015-10-08 09:49:03 FAC17E42199598C0352B9F5DC2EFFC85 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateOnDemand.exe 2015-10-08 09:49:03 E337785DA1958E9AB02DDB2369EF46E8 307016 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe 2015-10-08 09:49:03 D9A15F83CB6E5901A63F24CD7D58DBAF 929872 ----a-w- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateSetup.exe 2015-10-08 09:49:03 BFDCC0375C492C524E78647CEED3F77D 130888 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateComRegisterShell64.exe 2015-10-08 09:49:03 A72BB48D9014A7D7C05F02F595F52D60 245576 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe 2015-10-08 09:49:03 77352A5A0833B1CA3B771148DA535CB6 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateWebPlugin.exe 2015-10-08 09:49:03 61A77DDEF5E8D85E8B0955C4E5127B39 88392 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdateBroker.exe 2015-10-08 09:49:03 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 2015-10-08 09:49:03 053EEEE1ABAE53F044F1E386E22AE525 144200 ----atw- C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleUpdate.exe 2015-10-08 09:33:14 E94CD6FC12C22C975DAED6AA7ABD1663 7217832 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\OneDriveSetup.exe 2015-10-08 09:33:14 E94CD6FC12C22C975DAED6AA7ABD1663 7217832 ----a-w- C:\Program Files (x86)\Microsoft OneDrive\OneDriveSetup.exe 2015-10-08 09:28:02 38312A8A3A8424B146BAA536BE67B838 219208 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\MSOXMLED.EXE 2015-10-08 09:27:59 4D3989DF699BB6F2355456C7860AE1C8 842448 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DW20.EXE 2015-10-08 09:27:55 66EDCE45573F8673DF9379F119CFE343 90720 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\MSOHTMED.EXE 2015-10-08 09:27:54 FE9C0029E1AF26350D9985D00520E5C8 5132888 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 2015-10-08 09:27:53 99A1CEF3ED1DD8DB034E5990B6E56795 16064 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\Smart Tag\SmartTagInstall.exe 2015-10-08 09:27:52 2661516FC0165AFDA792B6148FA4DB79 95184 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\110\SQLDumper.exe 2015-10-08 09:27:42 BBD0C2F2D6917D5CEDCEA609BDE6565A 7898328 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CMigrate.exe 2015-10-08 09:27:39 CF9EA27E80ED0D2DA5BF720F4351E354 39592 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\AppSharingHookController64.exe 2015-10-08 09:27:39 A789DDA5192980D81DBB01D55811DEA9 49848 ----a-w- C:\Program Files\Microsoft Office 15\root\flattener\Flattener.exe 2015-10-08 09:27:20 CD9EBD56EB7C7E11896E123C85910E5B 474344 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\DW\DWTRIG20.EXE 2015-10-08 09:27:17 3C283C1BFA1D88C2D4D52148CE62A7C7 543360 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\EQUATION\EQNEDT32.EXE 2015-10-08 09:27:16 30B5F9FB0C35AE6B4A0851D24CE2EE8B 150600 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\Source Engine\OSE.EXE 2015-10-08 09:25:28 D3963333457F7218AD8198E133204D8F 632432 ----a-w- C:\Program Files\Microsoft Office 15\root\Integration\Integrator.exe 2015-10-08 09:24:44 8D03F2858035926F6B1E6EC34A0C0595 145056 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVDllSurrogate64.exe 2015-10-08 09:24:44 27DB723A68AE52CF0BCBA8708A44E0CA 311544 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVLP.exe 2015-10-08 09:24:44 098CA18BC23278B53C76C9F0D6BD7238 124064 ----a-w- C:\Program Files\Microsoft Office 15\root\client\AppVDllSurrogate32.exe 2015-10-08 09:23:19 E1BC8274994069C19B5A5FCD3D0C3AE3 84208 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE 2015-10-08 09:23:19 DE5FCC42D1C058428281C2533D12CA54 207528 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOXMLED.EXE 2015-10-08 09:23:19 D40360ABC2BB38EE202F145CAF204E99 614568 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOICONS.EXE 2015-10-08 09:23:19 7BA92E0A45E5BE324E0B27AA00DC79D8 5775064 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CMigrate.exe 2015-10-08 09:23:19 3DEB1C00132C33BCD97DC60C5F9143FF 550584 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\MSOSQM.EXE 2015-10-08 09:23:19 1BDAD38A5D66878A98CB37C377F1D9A1 1135320 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe 2015-10-08 09:23:19 1A46825F604C22732FC882D06A70D473 150704 ----a-w- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\FLTLDR.EXE 2015-10-08 09:22:18 ED64ADDBDB1C76E7C2B40168905E2852 18998344 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE 2015-10-08 09:22:18 E80F15DCA53E1ECD433CFE042400DF97 40672 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SCANPST.EXE 2015-10-08 09:22:18 E1B97CE23930787BAFCAA4410DA83658 9602736 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\PDFREFLOW.EXE 2015-10-08 09:22:18 DC4389776F362977A6EA8BC66DF9E459 873648 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\protocolhandler.exe 2015-10-08 09:22:18 DB7A32ADE19BB39E4FB868818178109C 153768 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\CNFNOT32.EXE 2015-10-08 09:22:18 D62DD48AC3C2D1C56BCBE8D9AA87179D 87240 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\NAMECONTROLSERVER.EXE 2015-10-08 09:22:18 C2E2DD4901EFE33DE2892FD47D656540 700064 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSQRY32.EXE 2015-10-08 09:22:18 BE4F62A6E234483656CD438B53D5BFDA 528584 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\VPREVIEW.EXE 2015-10-08 09:22:18 AAB8B46EAF6FF0B60D2A312950FFDD67 498880 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOUC.EXE 2015-10-08 09:22:18 A8DC5CC29AD3B5608C4028A2FC64B8FD 3015336 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\WORDICON.EXE 2015-10-08 09:22:18 A26A02BE800686B88F69B76BE5EC7326 3509416 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\PPTICO.EXE 2015-10-08 09:22:18 98DCC97D77BD8238C20784C8E1BDFE26 450656 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOSYNC.EXE 2015-10-08 09:22:18 955BB607F15ECC0821A479FBBFFE5129 1757768 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE 2015-10-08 09:22:18 8F6D12C7FCD51375B731B3D8A0D8FB66 22411424 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\excelcnv.exe 2015-10-08 09:22:18 84EA259804F27668124D39CBC88C137D 50392 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE 2015-10-08 09:22:18 83322E7A4D0F1DA9A990760689A27947 195248 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE 2015-10-08 09:22:18 7F3A187D9CD8A79FE582D1A296CAF684 1923232 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE 2015-10-08 09:22:18 7EB78DC7EEAAFE9ECD788D1CCBC8EFAB 22592 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\Wordconv.exe 2015-10-08 09:22:18 7BA52235E256DC309D5E808B6C358FDE 3685544 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\XLICONS.EXE 2015-10-08 09:22:18 7666B79E574F4F4B223433CF721A98E2 161480 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOSREC.EXE 2015-10-08 09:22:18 4F3B7BEF36C1D880621A0FD66D0E5455 1846960 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\POWERPNT.EXE 2015-10-08 09:22:18 4882ECDAF0B769A8A8EA4FAD7C60DCFE 991808 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\FIRSTRUN.EXE 2015-10-08 09:22:18 3A2C7CE18457029CC91BDE20281FA9CD 1026728 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\misc.exe 2015-10-08 09:22:18 35BF3A67619E5DB88AE0115BDBA3A4C2 518792 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\IEContentService.exe 2015-10-08 09:22:18 22935DF3579BF8D404880A27A0363D04 26200224 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE 2015-10-08 09:22:18 1F4FA0C2F12D81CD4E006157F62F2AA9 569592 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\ORGCHART.EXE 2015-10-08 09:22:18 1E448D89AD14D728ECF0D1D83722C659 482416 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\SELFCERT.EXE 2015-10-08 09:22:18 182315495531E8395EDA537739C87460 72384 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\MSOHTMED.EXE 2015-10-08 09:22:18 148ECE8D753AC3A8F40E10C833078F0D 4522176 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\GRAPH.EXE 2015-10-08 09:22:18 030628A14F18143BC584EF0FECFC95DC 230488 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\CLVIEW.EXE 2015-10-08 09:22:14 2A82519355D5E648747A6FF32ACC89CD 90280 ----a-w- C:\Program Files\Microsoft Office 15\root\office15\perfboost.exe 2015-10-08 09:22:12 D567C3DF56AC248EE82039DC0AF6D9E1 205472 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\AppVShNotify.exe 2015-10-08 09:22:12 288BD9FFEA8FB0D2176F22751E0D9F92 248992 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\mavinject32.exe 2015-10-08 09:22:07 FD73CE6356B85AD817E1F3F45DFA2F09 1461408 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\appvcleaner.exe 2015-10-08 09:22:07 712D45643E95E4DC4234EAF599722459 914632 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\officec2rclient.exe 2015-10-08 09:22:07 55C892763A614BA39BA956A0323C65F3 2774104 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe 2015-10-08 09:22:07 516EE01858B8B1BCE4F4EAC735F474CA 867560 ----a-w- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe === C: other files == 2015-10-12 11:44:12 66C2169B73E20F6887C654430C940083 97 ----a-w- C:\Users\User\AppData\Local\Temp\powersuite_tasks.bat 2015-10-12 07:31:50 A27D866DB8AFDFEE5D7E853F6582B523 97581 ----a-w- C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx 2015-10-11 13:41:57 05EC9F81E74DB29C6387AA47888646B2 2600428 ----a-w- C:\Users\User\AppData\Local\Packages\Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe\LocalState\DiskCache\Worlds.zip 2015-10-10 15:27:14 BDADF1B669FDF8D498B7D7DF402A4359 881368 ----a-w- C:\Program Files (x86)\Realtek\Realtek Windows NIC Driver\WIN8\NDIS6\rt630x64.sys 2015-10-09 06:39:27 CB136B267569A62EF63D798BC90ABD5A 144 ----a-w- C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-08 21:20:10 452F2B00E71FB1B216957539D15F3159 4175872 ----a-w- C:\Windows\System32\win32k.sys 2015-10-08 18:48:48 9F45771914360A925252A1B7226EC7EC 451 ----a-w- C:\Windows\System32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-10-08 18:42:40 FBEC0FD36ED61EFEE1E3063281EAB984 161056 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{7C1606AF-8E34-415A-8E7B-A9E482E98D72}\nvhda32v.sys 2015-10-08 18:42:40 EFC9A7307691E3C3DB8D2AA81A778356 128672 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{7C1606AF-8E34-415A-8E7B-A9E482E98D72}\nvhda32.sys 2015-10-08 18:42:40 957DA7FCA6F35F7E69CE8A061D5BEC55 451872 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{9A03C5EF-972C-4628-B094-25C72519DFF4}\nvstusb64.sys 2015-10-08 18:42:40 916F3222ADCB635B64660FA235502A51 162592 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{7C1606AF-8E34-415A-8E7B-A9E482E98D72}\nvhda64.sys 2015-10-08 18:42:40 58B62DD9BB27AAE796A4B89E3A5BA2CD 435232 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\Display.NVIRUSB.{9A03C5EF-972C-4628-B094-25C72519DFF4}\nvstusb32.sys 2015-10-08 18:42:40 554964B900AE2954B8B589B6287034AC 196384 ----a-w- C:\Program Files\NVIDIA Corporation\Installer2\HDAudio.Driver.{7C1606AF-8E34-415A-8E7B-A9E482E98D72}\nvhda64v.sys 2015-10-08 15:02:26 91009471A73CDEF005463661F7C16261 118897 ----a-w- C:\Program Files (x86)\Skype\Toolbars\FirefoxAddOn\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi 2015-10-08 11:30:39 CE5C62136FE4FD25830CF563976E7FDA 719395 ----a-r- C:\Users\User\Pictures\Pictures\Mijn afbeeldingen\Vendée + Pyrénées\DSCN2266 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:53:13 31946BDD9AABAD8E7025D367C1999500 2650466 ----a-r- C:\Users\User\Pictures\Pictures\Mijn afbeeldingen\Champagne\Fotos Champagne (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:40:24 A81DEA8F4D32FF68F9B78599A4BA22A4 10957158 ----a-r- C:\Users\User\Documents\Documents\Mijn documenten\Bucht\Belgian_Identity_Card_Run-time_2.5.9 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:40:24 6DED5A18C805FE18DC855ED1FB2C62A0 510367 ----a-r- C:\Users\User\Documents\Documents\Mijn documenten\Bucht\Belgian_eID_Run-time_Developers_Kit_2.5.9 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:40:20 A81DEA8F4D32FF68F9B78599A4BA22A4 10957158 ----a-r- C:\Users\User\Documents\Documents\Mijn documenten\Belgian_Identity_Card_Run-time_2.5.9 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:40:18 6DED5A18C805FE18DC855ED1FB2C62A0 510367 ----a-r- C:\Users\User\Documents\Documents\Mijn documenten\Belgian_eID_Run-time_Developers_Kit_2.5.9 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:38:16 54AA467C481F298BDDF4335FBB0C0091 1106078 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Verkiezingen 2012\Bijzitters\Rappels 2012\Bijzitters - Asseurs (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:37:53 A73C395160F6D86889BFCB36286B4FBF 1876487 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Verkiezingen 2010\Hugo\Bijzitters\Evere\exc1140 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:36:25 7F4CDE170E35417194386A75ABF5DCB3 7105535 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Pensioen\Definitieve aanvraag gemeentepensioen0001 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:33:31 305D177364543F522E62B5B7EA1721F9 1649877175 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Keuken\Ijsbereiding\Glacier 2014 (2015_06_16 13_42_29 UTC).zip 2015-10-08 10:22:35 6C56ABB242F029DED380607258D00942 44371356 ----a-r- C:\Users\User\Pictures\Pictures\Mijn afbeeldingen\catalogue (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:21:26 CD143B99992BF20F0ADA397FAE4E66E3 63351749 ----a-r- C:\Users\User\Pictures\Pictures\wetransfer-594a75 (2015_06_22 11_37_18 UTC).zip 2015-10-08 10:21:21 CD143B99992BF20F0ADA397FAE4E66E3 63351749 ----a-r- C:\Users\User\Pictures\Pictures\wetransfer-594a75 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:47 92DA1A63071B77E4FF11D0B1E55C9411 9626001 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Keuken\Bakker en patisserie\Andy\WeTransfer-rIk0Ubnr (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:38 542E05ABFF553B5706EB0AB20052E769 30769 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Keuken\Examen 2009 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:23 C7B203957802660DC2854E64E2773BFB 215741 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Hugo\ImageResizerPowertoySetup (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:21 989149B3E4D02DE1335E133165795D08 13476873 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Hondjes\StartToDog (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:14 B45B46C978DFC07B9C912276D6E44340 13470 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20140213_374 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:14 A4B4070F29C68BD313D33311A26847C0 24302 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20141001_623 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:14 841D7FF0DD89BA6968A8B7178B5F7F25 13749 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20141217_818 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:14 3BF0C830CD3850423FF60B0210C00B6A 13526 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20150613_497 (2015_06_13 13_00_09 UTC).zip 2015-10-08 10:17:14 387A0C3A4F2E22D912DA52C9E26C1E6A 13433 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20131119_583 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:14 30C6444B9875FBDB8438EA1DC71EE2B2 13749 ----a-r- C:\Users\User\Documents\Documents\Dagelijkse documenten\Dagelijkse documenten\Comptes\Rekeninguittreksels\BNPParibasFortis_Uittreksels_20141117_302 (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:17:00 504F2BB58DAC2AA0A533B27E2401E64C 24212465 ----a-r- C:\Users\User\Documents\Documents\italiaans koken (2015_09_16 12_20_16 UTC).zip 2015-10-08 10:16:59 504F2BB58DAC2AA0A533B27E2401E64C 24212465 ----a-r- C:\Users\User\Documents\Documents\italiaans koken (2015_09_10 13_45_03 UTC).zip 2015-10-08 10:16:58 504F2BB58DAC2AA0A533B27E2401E64C 24212465 ----a-r- C:\Users\User\Documents\Documents\italiaans koken (2015_03_12 08_37_11 UTC).zip 2015-10-08 10:16:58 504F2BB58DAC2AA0A533B27E2401E64C 24212465 ----a-r- C:\Users\User\Documents\Documents\italiaans koken (2015_03_05 14_52_25 UTC).zip 2015-10-08 09:33:06 6DA967AC75C23FBFB920A54A40607812 5843 ----a-w- C:\Users\User\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\CollectOneDriveLogs.bat 2015-10-08 09:12:42 271939BB83A468A582781BC6FCC05D21 54968 ----a-w- C:\ProgramData\F-Secure\GUTS2\mlcwin\1442388405\fsbts.sys 2015-10-08 09:12:34 B2004047CD711232791D92594B2C457B 66736 ----a-w- C:\ProgramData\F-Secure\GUTS2\mlcwin\1442388405\fsbts_x64.sys 2015-10-08 09:12:16 169DADDEC059019A8DE735B73D799C78 71080 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fshs64.sys 2015-10-08 09:12:15 8F8C9B22074D608490C3FAF578CE14F7 151592 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fsgk.sys 2015-10-08 09:12:15 86F3697B1C2AD628E5095AFAA9CF91AC 153728 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fsgk_win10_x86.sys 2015-10-08 09:12:13 A25176E80136ECDDC694CFAF7208DF05 74920 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fshs32.sys 2015-10-08 09:12:12 7D1EB7E1C54EEFF64C7DD13CEE7E9341 210048 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fsgk_win10_x64.sys 2015-10-08 09:12:12 36FB0C45A8FB443A2B0CFEA82F319CCB 207912 ----a-w- C:\ProgramData\F-Secure\GUTS2\fsav_1000_bin\1442909288\upd_fsgk_x64.sys 2015-10-08 09:09:46 7852C9C274E9CDDE68890014E563A0E8 47443 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\help.zip 2015-10-08 09:09:46 7852C9C274E9CDDE68890014E563A0E8 47443 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\backup\help.zip 2015-10-08 09:09:46 71F5D0B82503E618E495358113B08133 5334 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\settings.zip 2015-10-08 09:09:46 71F5D0B82503E618E495358113B08133 5334 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\backup\settings.zip 2015-10-08 09:09:45 B7A444DD3AD8C2E361CE64D6A1609843 12724 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\customization.zip 2015-10-08 09:09:45 B7A444DD3AD8C2E361CE64D6A1609843 12724 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\backup\customization.zip 2015-10-08 09:09:45 17A0F0EBC3BC4DB4D37E409856BA8A5F 28646 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\localization.zip 2015-10-08 09:09:45 17A0F0EBC3BC4DB4D37E409856BA8A5F 28646 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\backup\localization.zip 2015-10-08 09:09:23 88B6E7066B9A369208D6EF860351DFBD 77864 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsni32.sys 2015-10-08 09:09:23 4F243EABF87F774F4E6C13DF499AF201 12291 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\browser\install\fs_firefox_https\fs_firefox_https.xpi 2015-10-08 09:09:14 82C5EC1EF4798E2D75A62958F5F2E5FE 97832 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsni64.sys 2015-10-08 09:09:14 60465DF3038F19F1C62B55F5CD93EB09 23592 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsnitdi32.sys 2015-10-08 09:09:14 5B422C51936623FB989A91C2767FC9A9 52264 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsnixp32.sys 2015-10-08 09:09:13 7B5CEC1352ED31D389B314F2C017467C 29736 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsnitdi64.sys 2015-10-08 09:09:05 DF02298D31BE05264A00E87B90209675 6989 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\browser\install\fs_chrome_https\fs_chrome_https.crx 2015-10-08 09:09:05 0629AE9D28F18C39385BC6C373608338 60456 ----a-w- C:\ProgramData\F-Secure\GUTS2\nifbin\1444035039\fsnixp64.sys 2015-10-08 09:09:00 EFD78727A19E66DF8E125F6285AB273B 37901 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\settings.zip 2015-10-08 09:09:00 EFD78727A19E66DF8E125F6285AB273B 37901 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\backup\settings.zip 2015-10-08 09:09:00 6631B77BCB98B2F12F0C009B92AAF423 157786 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\localization.zip 2015-10-08 09:09:00 6631B77BCB98B2F12F0C009B92AAF423 157786 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\backup\localization.zip 2015-10-08 09:09:00 17CAA91278A82342C98F5DC1E72B37B0 116718 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\help.zip 2015-10-08 09:09:00 17CAA91278A82342C98F5DC1E72B37B0 116718 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\backup\help.zip 2015-10-08 09:08:59 9B12C73DD5D007987CA7EF0BCC5321F1 39090 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\customization.zip 2015-10-08 09:08:59 9B12C73DD5D007987CA7EF0BCC5321F1 39090 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\backup\customization.zip 2015-10-08 09:08:55 EC2128A701BE6D3AA98DCF65B70472D2 7347 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\localization.zip 2015-10-08 09:08:55 EC2128A701BE6D3AA98DCF65B70472D2 7347 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\backup\localization.zip 2015-10-08 09:08:55 C4C8E400BAD1C39799BA921C9A973443 28060 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\customization.zip 2015-10-08 09:08:55 C4C8E400BAD1C39799BA921C9A973443 28060 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\backup\customization.zip 2015-10-08 09:08:55 C0D950E86C29BDB1B6D5E71A91149219 27234 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\help.zip 2015-10-08 09:08:55 C0D950E86C29BDB1B6D5E71A91149219 27234 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\backup\help.zip 2015-10-08 09:08:55 9B873CAAC629D46CAC937A99BE0F9613 5158 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\settings.zip 2015-10-08 09:08:55 9B873CAAC629D46CAC937A99BE0F9613 5158 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\22\backup\settings.zip 2015-10-08 09:08:46 2BACAD606F5C42833BE08730EF6F0330 30257 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\8\help.zip 2015-10-08 09:08:46 2BACAD606F5C42833BE08730EF6F0330 30257 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\8\backup\help.zip 2015-10-08 08:59:49 3D7F8D01EF9F3635DFA74C6CA0C612B1 493724 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\5\preInstallTool.zip 2015-10-08 08:59:48 3D7F8D01EF9F3635DFA74C6CA0C612B1 493724 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\4\preInstallTool.zip 2015-10-08 08:58:53 89B3FD08259CE6ECB5657B35AE87ACA3 5713 ----a-w- C:\ProgramData\F-Secure\MySA\temp\hotfixes_666.zip 2015-10-08 08:58:36 B20B8AB2EB198C9F59FA97A35A77B017 12027 ----a-w- C:\ProgramData\F-Secure\MySA\temp\download\pp.zip 2015-10-08 08:58:36 A1C862D9C22D2C2CDE091C71CEFECE86 16751 ----a-w- C:\ProgramData\F-Secure\MySA\temp\download\eult.zip 2015-10-08 08:57:41 C2935DA53CBAEDA8C9AB3DFE44DEB3A1 6720 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\settings.zip 2015-10-08 08:57:41 C2935DA53CBAEDA8C9AB3DFE44DEB3A1 6720 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\backup\settings.zip 2015-10-08 08:57:40 1F2EF095BF5E3BEC00EFDE42BA046A7A 44191 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\help.zip 2015-10-08 08:57:40 1F2EF095BF5E3BEC00EFDE42BA046A7A 44191 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\backup\help.zip 2015-10-08 08:57:39 4F8C77AB647EE299B17B9085957B9890 30808 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\localization.zip 2015-10-08 08:57:39 4F8C77AB647EE299B17B9085957B9890 30808 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\backup\localization.zip 2015-10-08 08:57:37 7B3230F41B03C99EC30677E6D01F707A 43761 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\customization.zip 2015-10-08 08:57:37 7B3230F41B03C99EC30677E6D01F707A 43761 ----a-w- C:\ProgramData\F-Secure\MySA\latebound\666\1\backup\customization.zip ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3842311887-1272351324-2958204144-1002\Software\Microsoft\Windows\CurrentVersion\Run] "BingSvc"="C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CLMLServer_For_P2G8"="C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" "CLVirtualDrive"="C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe /R" "F-Secure Hoster (666)"="C:\Program Files (x86)\F-Secure\Internet Security\fshoster32.exe -app -hosterid:1" "F-Secure Manager"="C:\Program Files (x86)\F-Secure\Internet Security\apps\ComputerSecurity\Common\FSM32.EXE /splash" "HP Software Update"="C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "BingSvc"="C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\WINDOWS\\SysWOW64\\nvinit.dll" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "BTMTrayAgent"="rundll32.exe C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll,TrayApp" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg_Dolby"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4" "SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe " [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="C:\\Windows\\system32\\nvinitx.dll" ==== Startup Folders ====================== 2015-10-11 09:23:44 2123 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/10/2015 11:49] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [08/10/2015 11:49] C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job --a-------- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [05/09/2012 04:54] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\Synaptics TouchPad Enhancements" [\Program Files\Synaptics\SynTP\SynTPEnh.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{E57CDEB4-5377-4BD4-B445-00EB2C2DE4DB}" [C:\Windows\system32\msfeedssync.exe] "C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" [C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe] ==== Folders in C:\PROGRA~3 0-6 Months Old ====================== 2015-10-08 08:54:35 -------- d-----w- C:\PROGRA~3\F-Secure 2015-10-08 09:33:05 -------- d-----w- C:\PROGRA~3\Microsoft OneDrive 2015-10-08 09:49:13 -------- d-----w- C:\PROGRA~3\Google 2015-10-08 18:46:47 -------- d-----w- C:\PROGRA~3\Skype 2015-10-08 20:34:09 -------- d-----w- C:\PROGRA~3\NVIDIA Corporation 2015-10-08 20:34:35 -------- d-----w- C:\PROGRA~3\NVIDIA 2015-10-08 20:58:57 -------- d-sh--we C:\PROGRA~3\Bureaublad 2015-10-08 20:58:57 -------- d-sh--we C:\PROGRA~3\Documenten 2015-10-08 20:58:57 -------- d-sh--we C:\PROGRA~3\Menu Start 2015-10-08 20:58:57 -------- d-sh--we C:\PROGRA~3\Sjablonen 2015-10-09 20:00:13 -------- d-----w- C:\PROGRA~3\Package Cache 2015-10-09 20:00:39 -------- d-----w- C:\PROGRA~3\simplitec 2015-10-11 09:19:17 -------- d-----w- C:\PROGRA~3\HP 2015-10-11 09:23:19 -------- d-----w- C:\PROGRA~3\HP Product Assistant 2015-10-11 09:32:22 -------- d-----w- C:\PROGRA~3\WEBREG 2015-10-11 09:34:44 -------- d-----w- C:\PROGRA~3\Hewlett-Packard ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\r5jcm43i.default user_pref("browser.startup.homepage", "http://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=nl-be"); user_pref("browser.search.defaultenginename", "Bing "); user_pref("browser.search.selectedEngine", "Bing "); user_pref("keyword.URL", "http://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q="); ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "ols@f-secure.com"="C:\Program Files (x86)\F-Secure\Internet Security\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi" [08/10/2015 11:09] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "MFVersion"="MF41.0.1 (x86 nl)" [] ==== Firefox Extensions ====================== ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\r5jcm43i.default - Bing Search - %ProfilePath%\extensions\bingsearch.full@microsoft.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} - Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\r5jcm43i.default 18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013 ==== Chromium Look ====================== Google Chrome Version: 45.0.2454.101 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions jmjjnhpacphpjmnnlnccpfmhkcloaade - C:/Program Files (x86)/F-Secure/Internet Security/apps/CCF_Scanning/bin/browser/install/fs_chrome_https/fs_chrome_https.crx[08/10/2015 11:09] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[12/10/2015 09:31] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions fcfenmboojpjinhpgggodefccipikbpd - No path found[] Google Slides - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Google Sheets - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap Browsing Protection by F-Secure - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade Chrome Web Store Payments - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== C:\zoek_backup content ====================== C:\zoek_backup (files=4 folders=2 14142074 bytes) ==== EOF on di 13/10/2015 at 23:41:13,11 ======================