Zoek.exe v5.0.0.1 Updated 31-December-2015 Tool run by computer on za 30-01-2016 at 9:16:36,46. Microsoft Windows 10 Home 10.0.10586 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\computer\Downloads\zoek (2).exe [Scan all users] [Script inserted] [Checkboxes used] ==== System Restore Info ====================== 30-1-2016 09:20:14 Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\Program Files\Common Files\AV deleted successfully C:\PROGRA~3\Comms deleted successfully C:\PROGRA~3\SoftwareDistribution deleted successfully C:\Users\computer\AppData\Local\ActiveSync deleted successfully C:\Users\computer\AppData\Local\NetworkTiles deleted successfully ==== Deleting CLSID Registry Keys ====================== HKEY_USERS\S-1-5-21-2871391618-1465616402-3070090435-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C0D11B8-C5F6-4be3-AD2C-2B1A3EB94AB6} deleted successfully ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LiveUpdateSvc deleted successfully ==== Registry Fix Code x64 ====================== Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "LManager"=- ==== Deleting Files \ Folders ====================== C:\Program Files (x86)\IObit deleted C:\PROGRA~2\SamsungPrinterLiveUpdateInstaller deleted C:\PROGRA~3\ParetoLogic deleted C:\PROGRA~3\ProductData deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted C:\Users\computer\AppData\Roaming\Mozilla\Firefox\Profiles\212uzxmh.default\extensions\staged deleted ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== ====== C:\Users\computer\AppData\Local\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\SysWOW64 ===== 2016-01-28 08:27:54 D44345210CAC304817FAFBD4F0671E2C 6971752 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-01-28 08:27:29 ADF1802719E1C3F5B3093EB2566F109E 18678272 ----a-w- C:\WINDOWS\SysWOW64\edgehtml.dll 2016-01-28 08:27:26 AE6803B8484965EB2B92E4B2AF016B43 19338752 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll 2016-01-28 08:27:21 8FA6855FCD9F683BC6761B97F7F48408 13018624 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-01-28 08:27:13 E9FD92C0D2CD0DD877ECD086C6D6F99B 5238360 ----a-w- C:\WINDOWS\SysWOW64\windows.storage.dll 2016-01-28 08:27:12 C95A1EC1C230BCCF0984CEDFCBCF8836 12126208 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll 2016-01-28 08:27:10 8B160B088DA953EE6C16595AD5DA7787 9918976 ----a-w- C:\WINDOWS\SysWOW64\twinui.dll 2016-01-28 08:27:04 A1EB9EF86954DF012BD3A48803DB36C8 6297088 ----a-w- C:\WINDOWS\SysWOW64\mos.dll 2016-01-28 08:27:00 76D96571FE1FA529C3741B17B57F9696 21125400 ----a-w- C:\WINDOWS\SysWOW64\shell32.dll 2016-01-28 08:26:53 1C22BFBABCF389F2A985A32C01819467 5202944 ----a-w- C:\WINDOWS\SysWOW64\BingMaps.dll 2016-01-28 08:26:51 104ED5E318C5EED6178BE9F4B4E1E5A2 4759040 ----a-w- C:\WINDOWS\SysWOW64\d2d1.dll 2016-01-28 08:26:46 AFA5A77BB7F6FEFBDB9CAE34D3A215CF 1944576 ----a-w- C:\WINDOWS\SysWOW64\InputService.dll 2016-01-28 08:26:45 848606B6742D80BF6A7DD30E580BA7A9 1626624 ----a-w- C:\WINDOWS\SysWOW64\dwmcore.dll 2016-01-28 08:26:41 A680339559FBC02BC0854D73DDE85C7B 1174008 ----a-w- C:\WINDOWS\SysWOW64\msctf.dll 2016-01-28 08:26:41 53F74B2F4AEA9C6A7BB9DABDCC3C7431 613888 ----a-w- C:\WINDOWS\SysWOW64\winhttp.dll 2016-01-28 08:26:40 5E312BF7E912AAE9DA472B0027C4B8A9 709688 ----a-w- C:\WINDOWS\SysWOW64\mfsvr.dll 2016-01-28 08:26:39 86128937B83E51BF543CBCB854AE4FFC 405568 ----a-w- C:\WINDOWS\SysWOW64\AudioSes.dll 2016-01-28 08:26:39 2003BE1653553FBC9D809BA40AEE4D68 1542656 ----a-w- C:\WINDOWS\SysWOW64\quartz.dll 2016-01-28 08:26:35 DDC479FA1A36285BFC1EF25B547403C3 273408 ----a-w- C:\WINDOWS\SysWOW64\SensorsApi.dll 2016-01-28 08:26:35 5814754D92DBD471D5AB7437B20EE3F0 687616 ----a-w- C:\WINDOWS\SysWOW64\msfeeds.dll 2016-01-28 08:26:34 8A26A15B852AF385469AD62865CCAE7F 2050048 ----a-w- C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-01-28 08:26:33 4A49EC3B4063CC569134D2BA64FA5022 350720 ----a-w- C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-01-28 08:26:33 3F8B09A6D234877025A5EBECF9151F58 162816 ----a-w- C:\WINDOWS\SysWOW64\MTF.dll 2016-01-28 08:26:32 B44BC5CC78CF476028D1939A7712BD93 652312 ----a-w- C:\WINDOWS\SysWOW64\evr.dll 2016-01-28 08:26:32 3A280280AEA583EAB0375C330F7A6CE9 335872 ----a-w- C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-01-28 08:26:31 B3A8463C47E0E7007382A12176ACBD46 200704 ----a-w- C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-01-28 08:26:31 7D81335F3FCD9C37DE3C8C9989428C99 431240 ----a-w- C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-01-28 08:26:30 FAA5A3DE34FD44C220691C4527E88453 157696 ----a-w- C:\WINDOWS\SysWOW64\SimCfg.dll 2016-01-28 08:26:30 559358D3C39A1EC0D944714C32FAD582 799744 ----a-w- C:\WINDOWS\SysWOW64\rasdlg.dll 2016-01-28 08:26:30 1C1DC38D8D6E075DE06ED174B9E81FE9 535040 ----a-w- C:\WINDOWS\SysWOW64\rastls.dll 2016-01-28 08:26:28 8880848DC5DEE8BF8FE34DBC57C5655C 129024 ----a-w- C:\WINDOWS\SysWOW64\SimAuth.dll 2016-01-28 08:26:25 A589CD44BDB433F727EE84792FCCF0C0 87040 ----a-w- C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-01-28 08:26:25 9797BB52F1943B78CD245B41AE833E1F 653312 ----a-w- C:\WINDOWS\SysWOW64\rasapi32.dll 2016-01-28 08:26:23 A60B02C7D70EEBF8E362BA5C06339177 366224 ----a-w- C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2016-01-28 08:26:19 DBE39E4BDCC3D8F49A2B0277652120D0 41984 ----a-w- C:\WINDOWS\SysWOW64\pcaui.exe 2016-01-28 08:26:16 CF17C8CA575EC10ACDE1671CDED01B73 17408 ----a-w- C:\WINDOWS\SysWOW64\rasautou.exe 2016-01-28 08:26:16 5A414B58FE411CC4F3F84CE0ABDB68F3 133632 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-01-28 08:26:15 650A2E42A8965FEEF24105EF3D19780B 510976 ----a-w- C:\WINDOWS\SysWOW64\wlidcli.dll 2016-01-28 08:26:14 4A2AD2C3B186FFE8EFE4DC7AB492F73E 79360 ----a-w- C:\WINDOWS\SysWOW64\winhttpcom.dll 2016-01-28 08:26:13 B7B67257F01B0B814066F245DAD34367 93696 ----a-w- C:\WINDOWS\SysWOW64\winbio.dll 2016-01-28 08:26:13 96D60277EF8CB48BD3D920298C9D7F83 11776 ----a-w- C:\WINDOWS\SysWOW64\rastlsext.dll 2016-01-28 08:26:13 27C3814755F5078A06B3B95CC6BAD111 13312 ----a-w- C:\WINDOWS\SysWOW64\rasadhlp.dll ====== C:\WINDOWS\SysWOW64\drivers ===== ====== C:\WINDOWS\Sysnative ===== 2016-01-28 08:27:52 E74825BF1F94A7B360FBF5CBE1FE7517 8728920 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.Protection.PlayReady.dll 2016-01-28 08:27:32 70FC5A0F409D67604BA3B77E58876F47 22394368 ----a-w- C:\WINDOWS\Sysnative\edgehtml.dll 2016-01-28 08:27:24 2B5C192D5E93E7001B6926CCD111C6CB 24602624 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll 2016-01-28 08:27:17 4F0263646FF401695E0C14FE81D3E6A5 16986112 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Xaml.dll 2016-01-28 08:27:16 595E6DA6C8E15CD9FE625306F9B7E482 6600904 ----a-w- C:\WINDOWS\Sysnative\windows.storage.dll 2016-01-28 08:27:15 ECD20531C75F820FA1B8EC8A975C65AC 11545088 ----a-w- C:\WINDOWS\Sysnative\twinui.dll 2016-01-28 08:27:14 A28210DEA1085BC5B7A5D90A10C2FD8B 13382656 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll 2016-01-28 08:27:06 C8B7EB447B14D73E851C22AEB7A48000 22572624 ----a-w- C:\WINDOWS\Sysnative\shell32.dll 2016-01-28 08:27:03 186B00E5849DA43B2CEF58252105F3CE 5503488 ----a-w- C:\WINDOWS\Sysnative\d2d1.dll 2016-01-28 08:27:02 3FDFB93023689FBA65741B9D92C2D75A 7979008 ----a-w- C:\WINDOWS\Sysnative\mos.dll 2016-01-28 08:26:50 AB55C7400D8B5B79E299EA54BB3514A4 1946624 ----a-w- C:\WINDOWS\Sysnative\dwmcore.dll 2016-01-28 08:26:50 2D6128490CEBAC2499DA97B992E919DC 1053696 ----a-w- C:\WINDOWS\Sysnative\audiosrv.dll 2016-01-28 08:26:49 0B5BE1B40B2F4FA7B85752CA93819681 2624512 ----a-w- C:\WINDOWS\Sysnative\InputService.dll 2016-01-28 08:26:48 80AD89A1EF678960E13D977EF8C047A9 1750440 ----a-w- C:\WINDOWS\Sysnative\WpcMon.exe 2016-01-28 08:26:46 F202F182FF6046869E2995DF333C5B2A 7199232 ----a-w- C:\WINDOWS\Sysnative\BingMaps.dll 2016-01-28 08:26:44 E48BBF1363F843E030757EC190DD33E6 2057216 ----a-w- C:\WINDOWS\Sysnative\wlidsvc.dll 2016-01-28 08:26:44 BA4DB0DDCF88E0D609E085130773A034 2597888 ----a-w- C:\WINDOWS\Sysnative\NetworkMobileSettings.dll 2016-01-28 08:26:43 FFD04E8263FC9CDB89BAD8C27C337223 794112 ----a-w- C:\WINDOWS\Sysnative\winhttp.dll 2016-01-28 08:26:42 6BB898FE9AE437C3D9D1F4920B92B1C3 1500672 ----a-w- C:\WINDOWS\Sysnative\RecoveryDrive.exe 2016-01-28 08:26:41 C42C500565DED5DEE31EF8A2A69F4DFF 1173344 ----a-w- C:\WINDOWS\Sysnative\aeinv.dll 2016-01-28 08:26:40 FFE45E6684CD1628AC6ED60E3717ACA8 536256 ----a-w- C:\WINDOWS\Sysnative\AudioSes.dll 2016-01-28 08:26:40 F232BE986A85BA857E7C5FDBEFC71653 1415200 ----a-w- C:\WINDOWS\Sysnative\msctf.dll 2016-01-28 08:26:40 A1A4838C326E1C33AACAD537E84880D3 851456 ----a-w- C:\WINDOWS\Sysnative\MapsStore.dll 2016-01-28 08:26:38 BDAC897CF7F20BE4E858CC44A99D8A3C 848160 ----a-w- C:\WINDOWS\Sysnative\mfsvr.dll 2016-01-28 08:26:38 537DD2C51094543CE389A48341F2E00B 1318912 ----a-w- C:\WINDOWS\Sysnative\wifinetworkmanager.dll 2016-01-28 08:26:37 844EB2280A13842B9919DCD0113F5487 343552 ----a-w- C:\WINDOWS\Sysnative\SensorsApi.dll 2016-01-28 08:26:37 30A512F0E1F1F58938758CD33D69680E 590848 ----a-w- C:\WINDOWS\Sysnative\SmsRouterSvc.dll 2016-01-28 08:26:37 0307E9C189E8FD376109265BAD5E3475 784384 ----a-w- C:\WINDOWS\Sysnative\msfeeds.dll 2016-01-28 08:26:36 9C17CF2D05F8DA5AC66880B6BEE64E7D 190464 ----a-w- C:\WINDOWS\Sysnative\wscsvc.dll 2016-01-28 08:26:36 2EC83C9326B6731398674C0C0CB1636F 1674240 ----a-w- C:\WINDOWS\Sysnative\quartz.dll 2016-01-28 08:26:36 285D92DAC2C93818615C70A5719DD1F8 440320 ----a-w- C:\WINDOWS\Sysnative\CredProvDataModel.dll 2016-01-28 08:26:35 72534830694CCABA9A5CBA33F9771C63 260608 ----a-w- C:\WINDOWS\Sysnative\MTFServer.dll 2016-01-28 08:26:35 3A0DBC71CBA845AB06A68DBAA1C66CA7 369912 ----a-w- C:\WINDOWS\Sysnative\audiodg.exe 2016-01-28 08:26:34 642EFABF900374FA85639D83B5533AFD 621568 ----a-w- C:\WINDOWS\Sysnative\wbiosrvc.dll 2016-01-28 08:26:34 140201A765860592F320B6AD6AA35155 235008 ----a-w- C:\WINDOWS\Sysnative\MTF.dll 2016-01-28 08:26:33 BF53DA0A9C4BC6A0D8DCF529154DBF74 538632 ----a-w- C:\WINDOWS\Sysnative\WWanAPI.dll 2016-01-28 08:26:32 777F439F1E5989777805647F1684529D 2127360 ----a-w- C:\WINDOWS\Sysnative\inetcpl.cpl 2016-01-28 08:26:31 FEF120F66B71871C35DDC154C43EAD86 617984 ----a-w- C:\WINDOWS\Sysnative\StorSvc.dll 2016-01-28 08:26:31 8E3B324D6479A63B6F23D663307D53A1 477696 ----a-w- C:\WINDOWS\Sysnative\srcore.dll 2016-01-28 08:26:30 467F2BD2CC73E322839B3AED763BA2DC 193024 ----a-w- C:\WINDOWS\Sysnative\SimCfg.dll 2016-01-28 08:26:29 6FF8248F3A9D69A095C7F3F42BC29CB2 440152 ----a-w- C:\WINDOWS\Sysnative\services.exe 2016-01-28 08:26:29 446E107CFCFECA7EF4A79414E882D8C8 574976 ----a-w- C:\WINDOWS\Sysnative\Windows.Networking.UX.EapRequestHandler.dll 2016-01-28 08:26:28 A84812FE1FC4EAE9BBD816A2AEE4830D 383488 ----a-w- C:\WINDOWS\Sysnative\iedkcs32.dll 2016-01-28 08:26:28 7E1AE9B225DEA8A142BAE7AFFC2A78F5 160768 ----a-w- C:\WINDOWS\Sysnative\SimAuth.dll 2016-01-28 08:26:28 50FED971D0FAD2B990C0A05735761D62 733184 ----a-w- C:\WINDOWS\Sysnative\rasapi32.dll 2016-01-28 08:26:27 F2E3456FD405F9BEACA0B8CF2BBDF0DE 202472 ----a-w- C:\WINDOWS\Sysnative\wscapi.dll 2016-01-28 08:26:27 85EB31A46D618AC52726253A32539082 221696 ----a-w- C:\WINDOWS\Sysnative\ie4uinit.exe 2016-01-28 08:26:27 79F73D66F612FE53C8E5E607FCDCFAB1 884736 ----a-w- C:\WINDOWS\Sysnative\rasdlg.dll 2016-01-28 08:26:27 4776D4D2D41F99CF9938A410E38FAFE3 73728 ----a-w- C:\WINDOWS\Sysnative\SMSRouter.dll 2016-01-28 08:26:27 158D628D1073D42429CB25A6F47DAE17 275456 ----a-w- C:\WINDOWS\Sysnative\AudioEndpointBuilder.dll 2016-01-28 08:26:26 B3354E631DE8174E0C38EBEB024980CA 638464 ----a-w- C:\WINDOWS\Sysnative\enterprisecsps.dll 2016-01-28 08:26:25 AFFD518026BA3F904589961003B65BB2 408120 ----a-w- C:\WINDOWS\Sysnative\AUDIOKSE.dll 2016-01-28 08:26:25 4BCE40BC42A874A57B0E1B3E0FED0ABA 475648 ----a-w- C:\WINDOWS\Sysnative\DDDS.dll 2016-01-28 08:26:24 D754BB9E00B5D305617461E9C3CB6057 120320 ----a-w- C:\WINDOWS\Sysnative\MapsBtSvc.dll 2016-01-28 08:26:24 D229D73154CD66884BEAD67393ABE5C7 726528 ----a-w- C:\WINDOWS\Sysnative\wlidcli.dll 2016-01-28 08:26:24 6B058785608DAB0D191575E12A45201D 406528 ----a-w- C:\WINDOWS\Sysnative\MusUpdateHandlers.dll 2016-01-28 08:26:24 32276D1150EB30B798BE24EB0946A9B3 457728 ----a-w- C:\WINDOWS\Sysnative\ipnathlp.dll 2016-01-28 08:26:23 4BB6D13AB95409AB66C8D1F1D847D4A1 274944 ----a-w- C:\WINDOWS\Sysnative\DisplayManager.dll 2016-01-28 08:26:22 CC1005B7209B407EAB23ABDDC2DAD926 3593216 ----a-w- C:\WINDOWS\Sysnative\win32kfull.sys 2016-01-28 08:26:21 5058E240BBD22D66CE29D9C3279C8A91 610816 ----a-w- C:\WINDOWS\Sysnative\rastls.dll 2016-01-28 08:26:21 3FAD094B789D7D8C130D474A8FD479D6 785088 ----a-w- C:\WINDOWS\Sysnative\evr.dll 2016-01-28 08:26:20 F93E9FA2A54843D6EC529E4754F12946 166400 ----a-w- C:\WINDOWS\Sysnative\MusNotification.exe 2016-01-28 08:26:20 44AEBB28BE7A26F5A4068337208B183B 713568 ----a-w- C:\WINDOWS\Sysnative\invagent.dll 2016-01-28 08:26:20 18DF88220B196D0D45644BC2730D6757 55296 ----a-w- C:\WINDOWS\Sysnative\MusNotificationUx.exe 2016-01-28 08:26:20 0EF46CAA4154B54F75E6A52D4B47CFF6 513888 ----a-w- C:\WINDOWS\Sysnative\devinv.dll 2016-01-28 08:26:19 F0BA42C8EB6ADB733E35D2EC7714408F 49152 ----a-w- C:\WINDOWS\Sysnative\pcaui.exe 2016-01-28 08:26:19 54C5C6E962A873A1D05394DFF553FD18 149504 ----a-w- C:\WINDOWS\Sysnative\FilterDS.dll 2016-01-28 08:26:17 9CEBBE3FB11718F2B2B2086102711C2E 19456 ----a-w- C:\WINDOWS\Sysnative\rasautou.exe 2016-01-28 08:26:17 4A8EBDA840908BE9E41E845BA71A3BA9 175616 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Core.TextInput.dll 2016-01-28 08:26:15 52B49D01CE8F8EEC3D557D2CCD46548B 17408 ----a-w- C:\WINDOWS\Sysnative\rasadhlp.dll 2016-01-28 08:26:15 266B9C1CC212C255ED61CB13CE3A98A4 13824 ----a-w- C:\WINDOWS\Sysnative\sscoreext.dll 2016-01-28 08:26:14 F6D1F548315E07F98B6294940CCBE7FB 97280 ----a-w- C:\WINDOWS\Sysnative\winhttpcom.dll 2016-01-28 08:26:14 D60BA4C76D194472D6602FF3D2D51ADE 106496 ----a-w- C:\WINDOWS\Sysnative\rasauto.dll 2016-01-28 08:26:14 4F83D9D2478E3421BFA7B7F13FAD614B 130560 ----a-w- C:\WINDOWS\Sysnative\winbio.dll 2016-01-28 08:26:14 4E94E9C26B5CBA895D3F562A3F2F2017 1087488 ----a-w- C:\WINDOWS\Sysnative\reseteng.dll 2016-01-28 08:26:13 096671DD1AA23C708FC4493C41D5DB82 13824 ----a-w- C:\WINDOWS\Sysnative\rastlsext.dll ====== C:\WINDOWS\Sysnative\drivers ===== 2016-01-28 08:26:45 DEE20E660C079BDAB5B7533826F99FA8 1998168 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys 2016-01-28 08:26:35 318E816717431D3C23DC82779900C744 1089880 ----a-w- C:\WINDOWS\Sysnative\drivers\http.sys 2016-01-28 08:26:31 38D6C7E380DB8EE2B3560A678EE85253 576864 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms2.sys 2016-01-28 08:26:17 F259A45D6B555B14CC8365AA6BC8DC20 67072 ----a-w- C:\WINDOWS\Sysnative\drivers\usbser.sys 2016-01-13 09:19:35 40811857B266F02D75DE654AE92D98C9 953856 ----a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys 2016-01-13 09:19:34 CC6C1393B423EBFF9F6696CB9CC4CBCB 245760 ----a-w- C:\WINDOWS\Sysnative\drivers\BthLEEnum.sys ====== C:\WINDOWS\Tasks ====== ====== C:\WINDOWS\Temp ====== ======= C:\Program Files ===== ======= C:\PROGRA~2 ===== ======= C: ===== ====== C:\Users\computer\AppData\Roaming ====== 2016-01-25 15:56:14 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Trusteer ====== C:\Users\computer ====== 2016-01-29 18:18:37 8045ABB21A3BDD66A48E1ED5C0F0EF6A 1222144 ----a-w- C:\Users\computer\Downloads\RSITx64.exe 2016-01-27 18:06:40 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\computer\Downloads\OneDriveSetup.exe 2016-01-16 14:18:13 -------- d-----w- C:\Users\Public\Documents\sun 2016-01-16 14:16:16 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2 2016-01-13 10:09:20 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe ====== C: exe-files == 2016-01-29 14:11:03 61560C930727CBE03EC3A9A3C277EAF2 8705104 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\48.0.2564.97\48.0.2564.97_47.0.2526.111_chrome_updater_3stage.exe 2016-01-27 18:06:40 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_3\OneDriveSetup.exe 2016-01-27 18:06:30 EB0965F7AE1394C0A3165A5E9A32C44D 164040 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_3\FileSyncConfig.exe 2016-01-27 18:06:28 2DB7D5B28812523AAF17F71A8EB4832E 171712 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_3\FileCoAuth.exe 2016-01-26 17:47:02 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_2\OneDriveSetup.exe 2016-01-26 17:46:56 EB0965F7AE1394C0A3165A5E9A32C44D 164040 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_2\FileSyncConfig.exe 2016-01-26 17:46:53 2DB7D5B28812523AAF17F71A8EB4832E 171712 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_2\FileCoAuth.exe 2016-01-26 10:41:26 E1DDF1F9E109AC564658362D4AA7327D 202 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2871391618-1465616402-3070090435-1001\$IKX8FBL.exe 2016-01-26 10:38:16 AD60A39A820804E89BC2EAD599ED94E1 8067784 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\OneDriveSetup.exe 2016-01-26 10:38:10 EB0965F7AE1394C0A3165A5E9A32C44D 164040 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncConfig.exe 2016-01-26 10:38:06 2DB7D5B28812523AAF17F71A8EB4832E 171712 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileCoAuth.exe 2016-01-26 09:37:56 F117C0FBE2EF74A2706B575E5750DF48 2304144 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\AutorunX\ResourceCenter.exe 2016-01-26 09:37:55 32289CDE4C0D68895E290F142DA79E34 994408 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\AutorunX\AutorunX.exe 2016-01-26 09:37:39 FD6B350172FFD8CD036362C08F54F4AE 2224272 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\GUI\Acer User's Manual\00\LaunchPDF.exe 2016-01-26 09:37:35 FD6B350172FFD8CD036362C08F54F4AE 2224272 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\GUI\Acer Quick Guide\00\LaunchPDF.exe 2016-01-26 09:37:34 BF8EFBF4B0DF574B09E7BE82280E9E3E 89704 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\DriverBin_64bit\revcon.exe 2016-01-26 09:37:33 5AD5A7781BE907D6E2D75CA1DADAA97B 2457232 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\APBin_64bit\RIconMan.exe 2016-01-26 09:37:33 3F65CAF8B6CBA6213D014EA837B8A881 83048 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\DriverBin_32bit\revcon.exe 2016-01-26 09:37:33 2B0EBB2199D71D79938998252BE8144E 1822352 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\APBin_32bit\RIconMan.exe 2016-01-26 09:37:32 5C94706D2AEAC08BF216179D94FE26B9 379496 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\setup.exe 2016-01-26 09:37:32 17E88BB49D28F38E0AB39B6A97310B41 1800336 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\APBin\RmbChange_PCIE.exe 2016-01-26 09:37:31 F17B4E7A49505C578B06C9F5F6299216 475752 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\vncutil64.exe 2016-01-26 09:37:31 D94DA294C79A1F6CB4D9BC5DABF6C2A4 359016 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\vncutil.exe 2016-01-26 09:37:31 798C0C1FF4E0FCE646CA82AE0379CCB0 84584 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\SoundMan.exe 2016-01-26 09:37:31 048EFA87303BC48BB38DFAFEA9DF87F8 1833576 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\SkyTel.exe 2016-01-26 09:37:30 D34A3F11BA1867825A826354D0D4714A 1493608 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RtlUpd.exe 2016-01-26 09:37:30 1766801CC4EBC9F85B33F8620A25AC62 1687656 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RtlUpd64.exe 2016-01-26 09:37:29 992B653A9B3405BA903CEE7B3D4709B0 9721960 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RTLCPL.exe 2016-01-26 09:37:27 D3227E66A9DAEC1CE909D37098F9D241 177768 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RtkAudioService64.exe 2016-01-26 09:37:27 129BBDFFE4D3AE373DFA1779E6ED8989 129640 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RtkAudioService.exe 2016-01-26 09:37:26 7622E9ECE9A65C59714CDFC754599F3E 20065936 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RTHDCPL.exe 2016-01-26 09:37:23 3616DDC4353F49360DD2EFED8FE4A6C4 2180712 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\MicCal.exe 2016-01-26 09:37:20 FFE0524419FE67CAF3F699EEF6EDF91C 44136 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\CPLUtl64.exe 2016-01-26 09:37:19 EEB2E393B7EB8EBC1E9E56ED005806EC 64104 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\Alcmtr.exe 2016-01-26 09:37:19 39C913873B3AB8593116BD4A7B9BB82B 2815592 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\AlcWzrd.exe 2016-01-26 09:37:18 2A21E75EF80242E0646E7567993E977D 562792 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\vncutil64.exe 2016-01-26 09:37:15 9B0329BAB7B9C6702D4DFAEABBD370A6 1833576 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\SkyTel.exe 2016-01-26 09:37:14 9D180E0F6D690D9EA4FD6A1EC31AB1E3 1687656 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RtlUpd64.exe 2016-01-26 09:37:13 E5389D07C687D05BD950392C071E81CC 6549648 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RtkNGUI64.exe 2016-01-26 09:37:12 2B5A48DF6997F7BD92535C4F76236810 200808 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RtkAudioService64.exe 2016-01-26 09:37:10 B0666DF6D554879AE8A7C91E26A5972F 12937872 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RAVCpl64.exe 2016-01-26 09:37:09 5E53A66C680A06E26B1234CB0C3CD99B 1214608 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RAVBg64.exe 2016-01-26 09:37:06 5E0860F46A1E77946D611B1C18946CEE 3477368 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\MaxxAudioControl64.exe 2016-01-26 09:37:06 0B822FC6DA628FCD09175EC5E58B5623 3469688 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\MaxxAudioMeters64.exe 2016-01-26 09:37:01 0C57BAD785EEAD029ABF6CBCF43E9A39 51776 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\FMAPP.exe 2016-01-26 09:36:59 426D951F2DE2D4DFCBE0D1A42BBBA72F 233328 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\DTSU2PAuSrv64.exe 2016-01-26 09:36:57 D1E343BC00136CE03C4D403194D06A80 98208 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\AERTSr64.exe 2016-01-26 09:36:57 44BB65B1D3827043978FC8E11CA7C0B4 210024 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\DTSAudioService64.exe 2016-01-26 09:36:56 9A3CB9EF43F89DB220F981C7E83C92F9 432744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\vncutil.exe 2016-01-26 09:36:54 9A9A59D2C664C4D7B8972E87EE88ADC9 1833576 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\SkyTel.exe 2016-01-26 09:36:52 3B65A18970E5E6A08B8E70A624D82C43 1493608 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RtlUpd.exe 2016-01-26 09:36:51 C45EE5453406A9626EE032C693E4F78A 5708432 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RtkNGUI.exe 2016-01-26 09:36:50 F1DDAD920AAF81CE3C274B003D1BF55E 11414160 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RtHDVCpl.exe 2016-01-26 09:36:50 4DF7E87DFB592B6958A5D858BE0DCCFA 141928 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RtkAudioService.exe 2016-01-26 09:36:49 A2178CC66ADB7B8D583D1CA455FDC4E4 912016 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RtHDVBg.exe 2016-01-26 09:36:45 8CE793E7E6992B211AE345DE2EDF2C57 2687864 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\MaxxAudioMeters.exe 2016-01-26 09:36:44 F9A0754500B9FEBC412A2C469CB39EC9 2687352 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\MaxxAudioControl.exe 2016-01-26 09:36:40 879BBDF616FE27FECEABB2910259FD0E 52288 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\FMAPP.exe 2016-01-26 09:36:39 E25A8B6ADF12BAE89B873A401CE331CB 190832 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\DTSU2PAuSrv32.exe 2016-01-26 09:36:38 636C989C228F35400DABC8A39669073F 173672 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\DTSAudioService.exe 2016-01-26 09:36:36 A6CE73469591554279DA63BE715DBC93 87968 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\AERTSrv.exe 2016-01-26 09:36:33 BD548A47E139C3B9DA85A007017ABB56 774360 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\MSHDQFE\Win2K_XP\us\kb888111xpsp1.exe 2016-01-26 09:36:33 A7389CC256D192A4E0EFF572143C323B 771288 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\MSHDQFE\Win2K3\us\kb888111srvrtm.exe 2016-01-26 09:36:33 6F909BCB550F0CCAA5D1877B9293BF1F 742104 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\MSHDQFE\Win2K_XP\us\kb888111w2ksp4.exe 2016-01-26 09:36:33 4665583BC4608E833239DF3B19C28E58 720088 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\MSHDQFE\Win2K_XP\us\kb888111xpsp2.exe 2016-01-26 09:36:32 7CB6CFCE5F7D16B87597B4B8E1C5C7BA 59936 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Config\AzMixerSel.exe 2016-01-26 09:36:32 49B3D2077199C44C1F3BBB16B4094AE6 121064 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Setup.exe 2016-01-26 09:36:31 EB16D96E39E3BC82EDCAD6DF3CA7E94B 76392 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\ChCfg.exe 2016-01-26 09:36:31 7574C7CDA7FF5078C06B37D43761B07E 806528 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\LITE-ON wireless+BT 3rd WiFi 2x2 AGN+ BT4.0 Atheros WB222\setup.exe 2016-01-26 09:36:14 547D1B43D12150E349D7AB003C9DA4C1 113472 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel NB Chipset HM77\x64\Difx64.exe 2016-01-26 09:36:11 CECF29A286BEC732060E0844EB800FAE 195392 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel NB Chipset HM77\ia64\Difx64.exe 2016-01-26 09:36:07 23B6F48078A9DAAFCAF168F1158FE5E0 957248 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel NB Chipset HM77\Setup.exe 2016-01-26 09:36:06 573F68BFF30BD6DBF80C5F3B2E3EA17D 183680 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\x64\Drv64.exe 2016-01-26 09:36:03 3CD65F80E37461B552F7A05F528AD365 42307104 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\OpenCL\OCLSetup.exe 2016-01-26 09:35:51 9793C9497EF85D6EA0931EB3F6CB7837 1084960 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igxpun.exe 2016-01-26 09:35:51 78AF1C499BF02F9814DF959A04A4F9C9 277024 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\IntelCpHeciSvc.exe 2016-01-26 09:35:50 FF3FC4BE04D01830799605B6F7B55DB0 509984 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igfxsrvc.exe 2016-01-26 09:35:50 483BAA4246B80BDE1EA562C618BBA4A1 171040 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igfxtray.exe 2016-01-26 09:35:47 C88B01661694F2013F8DF1BD66B8B39E 441888 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igfxpers.exe 2016-01-26 09:35:46 8A6909152203FE482EDDD269E8E203BC 252448 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igfxext.exe 2016-01-26 09:35:22 4D5235B076E7FFC53193D02C374BB54A 5903392 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\GfxUI.exe 2016-01-26 09:35:22 40CAEC9DBC892ED1915704CC54CB382E 399392 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\hkcmd.exe 2016-01-26 09:35:20 F6160AD6E68759DB0770594D87E9B4B4 185376 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\difx64.exe 2016-01-26 09:35:19 7D10B179F253C3B3BBFE0A5F36CBE146 128896 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\x64\MEcp64.exe 2016-01-26 09:35:19 4676529E218164677C50225BD5395613 1083264 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Setup.exe 2016-01-26 09:35:19 124054AA0BB8B59DC66C09F14FFCD573 183680 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\x64\Drv64.exe 2016-01-26 09:35:17 DBE2E6388379D5CC78099650541E9566 364416 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\UNS\UNS.exe 2016-01-26 09:35:16 4269D44BB47A6DA5D80B11F4C8536458 276864 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\LMS\LMS.exe 2016-01-26 09:35:13 6621DB687C6AEBA37A9011C4821D91D3 812928 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\Intel Control Center\SetupICC.exe 2016-01-26 09:35:13 30E9FAC23E2537D82F2836CB81AEE186 128896 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\IFR\IntelMeFwService.exe 2016-01-26 09:35:11 2097855D533A996BE9342EC12A32BF5C 8990592 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\DAL\vcredist_x86.exe 2016-01-26 09:35:10 8D8D774738625F5379B8CF867017CB50 10274176 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\DAL\vcredist_x64.exe 2016-01-26 09:35:09 3C4002D339491AF73D663FFC7F6E5ECB 165760 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\DAL\jhi_service.exe 2016-01-26 09:35:08 691AF7E6A5556E0CF0A855133C2A1CD7 976768 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\Setup.exe 2016-01-26 09:35:08 19C3B50C512BB3E6138F6CBF1B0A5093 184640 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\x64\Drv64.exe 2016-01-26 09:35:06 E41DF0DE58B00F6BFE4198405D06C1F2 813848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Intel Control Center\SetupICC.exe 2016-01-26 09:34:56 D1931AB351D1F3935BDE2BEFD427F925 56128 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorIconLaunch.exe 2016-01-26 09:34:56 8EDC8091A87B0CCB5A580E38100BC99F 277504 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorIcon.exe 2016-01-26 09:34:56 86749D06DDB825B32AFDDF8A8DDB6296 623616 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorUI.exe 2016-01-26 09:34:56 2F358FCFD528E5A0CFFBF2B32A9351BD 1013248 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorHelp.exe 2016-01-26 09:34:55 7F7A03D03FA18A0DB2DAC37A8D620E7F 7168 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorDataMgrSvc.exe 2016-01-26 09:34:55 38C0C0EC9C70F10B4D71761EF2D01ADA 499312 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek RF Button Driver\RfBtnSetup.exe 2016-01-26 09:34:55 2CF2E8B88376FFE7B4FB65084968E0B0 6656 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Application\IAStorDataMgrApp.exe 2016-01-26 09:34:55 180202A8C8CB9C9C444025D0A6880497 961344 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Setup.exe 2016-01-26 09:34:49 D58038D4AA95805E8A5C9581FDBC6F1E 100432 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\DkLaunch\DkUserProc.exe 2016-01-26 09:34:49 580C68064208CD097AF38622F986122C 98384 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\DkLaunch\DkRun32.exe 2016-01-26 09:34:49 416EED6F967D248A54B2E1309B2DB82B 86536 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\x64Commander.exe 2016-01-26 09:34:49 2DF66C2146FD19A8D99DF648D2E60E92 47728 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\CloseApp\CloseHookApp.exe 2016-01-26 09:34:48 AE05337E109A21B5EBE86759180F1A71 1199728 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\Setup.exe 2016-01-26 09:34:48 6F01EF713D69332EA9C526A6D1298A87 284016 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\UNINST32.EXE 2016-01-26 09:34:48 61486BFB626242074B4961CBFA4686EB 272208 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\SetMail64.exe 2016-01-26 09:34:48 108432A52A9FF8DC629D2B82E469FF73 266576 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\SetMail.exe 2016-01-26 09:34:47 C832579FBB3B17A5856ADE4082782D25 229200 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\MMDx64Fx.exe 2016-01-26 09:34:47 5FC81DE55AA1A0796B3015620A20E772 56944 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\runxx.exe 2016-01-26 09:34:46 E36FA07FBE996A4DD94FA1163DA82D45 343664 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\LMworker.exe 2016-01-26 09:34:46 C4D67FD7581C4FB67F87D95186E81CEB 80392 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\MkServis.exe 2016-01-26 09:34:45 E6DA4B9BB513A1C3FF003063A56E3584 1086288 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\LMconfigV2.exe 2016-01-26 09:34:45 302337967FBA91C40745B96A42A39CC5 475984 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\LMutilps.exe 2016-01-26 09:34:45 1795DC799D7C3EC1142D3E12D85B6E92 1980240 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\LMconfig.exe 2016-01-26 09:34:44 0EFF23C3D910380746D4F56BA5C746C4 1192784 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\LManager.exe 2016-01-26 09:34:43 D2BCDD6BBFCD068090C109854FCEE079 350544 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\dsiwmis.exe 2016-01-26 09:34:38 E7F879980B8682D4E3EF06AD40A7C8E1 372736 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\setup.exe 2016-01-26 09:34:38 B5D3203C187F21A963175AA6050B256D 82472 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\DriUpdate32.exe 2016-01-26 09:34:38 4CBE9341D632F8F89B715F143C60DD8D 119296 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\DIFxCmd64.exe 2016-01-26 09:34:38 3D16F6019595FE68280B5D2E1DE337BD 89128 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\DriUpdate64.exe 2016-01-26 09:34:37 7135F180459ACDC95EF7D5338E12B5C4 114688 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\DIFxCmd.exe 2016-01-26 09:34:36 422DCA21BE93B08972C9901930957F29 220568 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\Ezcapt.exe 2016-01-26 09:34:36 38FFE544F0ED8E1E721FDCA4DF55708E 268920 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\player.exe 2016-01-26 09:34:36 1B0E5412AB8F30B8ED2AEAC2C530EB90 98672 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\Hidfind.exe 2016-01-26 09:34:36 0628D5785524F0698AA3463A96606B34 295320 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\Uninstap.exe 2016-01-26 09:34:35 AA0A91227631A09CD075D315646FB7A9 1047632 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\DPInst.exe 2016-01-26 09:34:33 24F37B2CB893109EE4654BBE62E82C5F 661400 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\Apoint.exe 2016-01-26 09:34:32 FD97807051658AE27799BE3A557D3776 29552 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\ApntEx.exe 2016-01-26 09:34:32 70C942A269A32D03B8ED0EB04B81D744 70520 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\ApMsgFwd.exe 2016-01-26 09:34:31 7A42A8E161DC32C5A40C5813ED64DF03 54744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\hidfind.exe 2016-01-26 09:34:31 5F994127E27C813367B594DB97A4C209 186264 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\Ezcapt.exe 2016-01-26 09:34:31 38FFE544F0ED8E1E721FDCA4DF55708E 268920 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\player.exe 2016-01-26 09:34:31 2B2B8618E6143D662F0A536585380D8A 247704 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\Uninstap.exe 2016-01-26 09:34:30 E6213CEC602F332BF8E868B7B8BF2BB1 922176 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\DPInst.exe 2016-01-26 09:34:27 DFC8186972EB21F75E5B532194AF4C3A 54640 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\ApntEx.exe 2016-01-26 09:34:27 61ED2A850825E57B730CF8D3ADD48820 57720 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\ApMsgFwd.exe 2016-01-26 09:34:27 43817991EFC94DA46D7BF63D134FDA72 522136 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\Apoint.exe 2016-01-26 09:34:26 3C8E84A67CE8B4C0BDE1C76C15C68858 137112 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Setup.exe 2016-01-26 09:34:24 B57B8E66A7D5AB7B216BA19E2F11023F 3114472 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\setup.exe 2016-01-26 09:33:47 819136043E54E9731A7B66815CE48BA9 47124224 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\MyWinLocker Suite v4\MyWinLockerSuite.exe 2016-01-26 09:33:46 5C82BE7AD1775B67916EE19C15B99331 2723264 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\MediaEspresso\RunTime\VC2005 SP1\vcredist_x86.exe 2016-01-26 09:33:44 3779509F67B3C1FA75DD13EBED59FB33 320008 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\MediaEspresso\setup.exe 2016-01-26 09:33:42 61A5FB191AE2AE876DB31DCCE75E4183 1822520 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\MediaEspresso\instmsiw.exe 2016-01-26 09:33:39 43F7305C2E5DD4A8F3C5ABEB2FFE4833 1708856 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\MediaEspresso\instmsia.exe 2016-01-26 09:33:29 E044D4E509FE7392B5BC52B8B3DFC671 267408 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Device Fast-Lane\Setup.exe 2016-01-26 09:33:26 39CE9F4762CDB3EC6D3F63B3961D1057 36605424 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\clear.fi Photo v2.01\clear.fi_Photo.exe 2016-01-26 09:33:25 79F3F53F5A32E97A1030E14B3E1AD140 1646736 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\clear.fi Photo v2.01\clear.fiPhotoSetup.exe 2016-01-26 09:33:16 D9536E7636C547ADBF1FA8E8DB33DB4D 334480 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Updater v2\Setup.exe 2016-01-26 09:33:16 96CF1C27DA6AB6D65D75A4CED6654A7B 1625232 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\clear.fi Media v2.01\clear.fiMediaSetup.exe 2016-01-26 09:33:16 17B209FA4DC899F292F2E4880DF4DF3C 127227688 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\clear.fi Media v2.01\clear.fi_Media.exe 2016-01-26 09:33:14 F24AF855FD291AACD7A0A85C508DAE4F 260240 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Recovery Management v6\Recovery_Management.exe 2016-01-26 09:33:14 85A56CD8403057C3CF26B28382524757 229376 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Recovery Management v6\RemoveAutorun.exe 2016-01-26 09:33:14 3DAF411E6545F59A30BA67CB0FCDB1BA 265360 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Power Management v7.00\Setup.exe 2016-01-26 09:33:12 4D50A496AEC3DB1F2D814918406FEECF 246928 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Instant Update Utility\Setup.exe 2016-01-26 09:33:11 7BD33B64576E1B3E60DB28039923EA88 254608 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Identity Card v2\Setup.exe 2016-01-26 09:33:11 1416FDE046B489EFCD8432DEFADE2032 1313936 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Cloud\AcerCloudSetup.exe 2016-01-26 09:33:09 11D65E411F4FB28A3247DFB4CB4DEC2F 25200256 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Cloud\AcerCloud.exe 2016-01-26 09:33:08 8201EE121C913C8A6363FC9F534A389D 41024 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Backup Manager V4.0.0\Setup.exe 2016-01-26 09:33:07 F7A9CEB67A71D95E199E8B932589189A 5624896 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Backup Manager V4.0.0\Installer.exe 2016-01-26 09:32:36 A54699A80A9FA48317FE8608147BFE87 105472 ----a-w- C:\SanDisk\RunClubSanDisk.exe === C: other files == 2016-01-28 14:18:16 0AC1F1E6CE7B65FB135C259091086EE5 6245721 ----a-w- C:\Users\computer\Downloads\anbi.zip 2016-01-28 08:26:45 DEE20E660C079BDAB5B7533826F99FA8 1998168 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2016-01-28 08:26:35 318E816717431D3C23DC82779900C744 1089880 ----a-w- C:\Windows\System32\drivers\http.sys 2016-01-28 08:26:31 38D6C7E380DB8EE2B3560A678EE85253 576864 ----a-w- C:\Windows\System32\drivers\dxgmms2.sys 2016-01-28 08:26:22 CC1005B7209B407EAB23ABDDC2DAD926 3593216 ----a-w- C:\Windows\System32\win32kfull.sys 2016-01-28 08:26:17 F259A45D6B555B14CC8365AA6BC8DC20 67072 ----a-w- C:\Windows\System32\drivers\usbser.sys 2016-01-27 18:06:27 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_3\CollectOneDriveLogs.bat 2016-01-26 17:46:52 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_2\CollectOneDriveLogs.bat 2016-01-26 10:38:05 8CF4163521FDB8E53482003C7EFA7121 5850 ----a-w- C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\CollectOneDriveLogs.bat 2016-01-26 09:51:16 B30DC3AA5800BD72D62F10C27BE32BD0 210 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2871391618-1465616402-3070090435-1001\$II8CUNN.zip 2016-01-26 09:37:34 B868B9C46B11067A809987415E8A08A0 340112 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\DriverBin_64bit\RtsPStor.sys 2016-01-26 09:37:33 D600D0C37E77CBAF0FDC409FAD6FFDCB 254608 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Card Reader Chip RTS5209\DriverBin_32bit\RtsPStor.sys 2016-01-26 09:37:28 7864BEF44B414ED6975C4C1A54BB1938 6165136 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RtkHDAud.sys 2016-01-26 09:37:28 4AC078FA2A258CD04987117068DAE093 8003728 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\RTKHDA64.sys 2016-01-26 09:37:24 DD37C4C7BA28332D3D3444D3E634D794 140888 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\OAO17Afx.sys 2016-01-26 09:37:24 CAA4BD0FBF4BBC0C259146E1FFD00C24 1861720 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\Monft64.sys 2016-01-26 09:37:24 C7D9F9717916B34C1B00DD4834AF485C 1395800 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\Monfilt.sys 2016-01-26 09:37:20 267FC636801EDC5AB28E14036349E3BE 1691480 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\AMBFilt.sys 2016-01-26 09:37:20 1DFC5D5CD2E655D67C9CB0E4E8B2CB72 1801304 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\WDM\AMBFt64.sys 2016-01-26 09:37:14 DDC860724AEF8F8E42AC61E6585769C6 4102928 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\RTKVHD64.sys 2016-01-26 09:37:08 8FF2D95CBA49B405C5DE27039FF0BF35 32344 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\mbfilt64.sys 2016-01-26 09:37:02 215DCB833B0747FBAD8AE28C85B5381C 34840 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista64\GWfilt64.sys 2016-01-26 09:36:51 89AE9CF935784AF43F3B91AD6CFF5A3A 3272592 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\RTKVHDA.sys 2016-01-26 09:36:46 29CB85A1FE091C9D3AA3C72D66DF3E69 24664 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Realtek Audio Codec ALC271X_VB6\Vista\mbfilt32.sys 2016-01-26 09:35:39 A1CF07D24EDCDC6870535471654D957C 5343584 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\Graphics\igdkmd64.sys 2016-01-26 09:35:20 F5495B38BFB9149925F54F65AB40EFBF 342528 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel Intel VGA UMA\DisplayAudio\IntcDAud.sys 2016-01-26 09:35:11 9E0A56C77E9244D2CAAC3811F4B47FCB 55104 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\Drivers\MEI\HECI.sys 2016-01-26 09:35:11 772A1DEEDFDBC244183B5C805D1B7D85 62784 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel iAMT MEI\Drivers\MEI\HECIx64.sys 2016-01-26 09:35:05 6C024B3AE192D72B216166802AF345DD 645952 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Drivers\AHCI\x64\iaStorA.sys 2016-01-26 09:35:05 661594437CA343CC89C586283442AF73 27456 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Drivers\AHCI\x64\iaStorF.sys 2016-01-26 09:35:05 0EF69E52B02E3A891FA35B34E0DA5132 530752 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Drivers\AHCI\x32\iaStorA.sys 2016-01-26 09:35:05 02A50E926FC46D10CCAB5D128F280948 24896 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Intel AHCI\Drivers\AHCI\x32\iaStorF.sys 2016-01-26 09:34:55 4E94C253EBC9EFB6155C7BF4032750E0 100 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2871391618-1465616402-3070090435-1001\$IL56TPD.com 2016-01-26 09:34:48 A6C3E4B846FBA215753B55CEE4451E78 56 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\UuinstLM.bat 2016-01-26 09:34:42 CBD16721541EE334F6D623CE0B4003BF 110744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\Win8_64\L1C63x64.sys 2016-01-26 09:34:42 A07C5528511112636799369CB40D0DAC 469 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Dritek Launch Manager (Acer)\addsvis.bat 2016-01-26 09:34:42 99181A930F15ECE4174CB0E1D57F64B1 82032 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\WinXP2003_32\l1c51x86.sys 2016-01-26 09:34:42 1137DDEBAD34B84988266D99C37D125E 96368 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\WinXP2003_64\l1c51x64.sys 2016-01-26 09:34:41 FDAA6FED07900361AE5EBFE038147D57 99440 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\vista_64\L1c60x64.sys 2016-01-26 09:34:41 E289E6D0E21A906A04B22CF1B3E0FEC8 99992 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\Win7_32\L1c62x86.sys 2016-01-26 09:34:41 A43A9920D2409BB9DA747D2FD20A2E61 110744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\Win7_64\L1c62x64.sys 2016-01-26 09:34:41 7D26421BC06D431A86E0E51726CEBC29 93848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\Win8_32\L1C63x86.sys 2016-01-26 09:34:41 496BFDCB2542790271457A39DB137B04 87152 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\RIS\Common_Dri\vista_32\L1c60x86.sys 2016-01-26 09:34:40 CBD16721541EE334F6D623CE0B4003BF 110744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\Win8_64\L1C63x64.sys 2016-01-26 09:34:40 99181A930F15ECE4174CB0E1D57F64B1 82032 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\WinXP2003_32\l1c51x86.sys 2016-01-26 09:34:40 1137DDEBAD34B84988266D99C37D125E 96368 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\WinXP2003_64\l1c51x64.sys 2016-01-26 09:34:39 FDAA6FED07900361AE5EBFE038147D57 99440 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\vista_64\L1c60x64.sys 2016-01-26 09:34:39 E289E6D0E21A906A04B22CF1B3E0FEC8 99992 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\Win7_32\L1c62x86.sys 2016-01-26 09:34:39 A43A9920D2409BB9DA747D2FD20A2E61 110744 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\Win7_64\L1c62x64.sys 2016-01-26 09:34:39 7D26421BC06D431A86E0E51726CEBC29 93848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\Win8_32\L1C63x86.sys 2016-01-26 09:34:39 496BFDCB2542790271457A39DB137B04 87152 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\Common_Dri\vista_32\L1c60x86.sys 2016-01-26 09:34:38 9D3475AF1D69F2FB3A4936022F1729A1 35 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\kdnet.bat 2016-01-26 09:34:38 8A61650957BDD3E0382150E90FBC9919 35 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\Atheros Lan AR8151L\kdnetx64.bat 2016-01-26 09:34:32 968A4A0FD5BF07717F4E869875A4B149 452472 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi64\Apfiltr.sys 2016-01-26 09:34:27 85156A67F1210C2872C31118BCB3FB54 376696 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\DRV\ALPS Touchpad\Vi32\Apfiltr.sys 2016-01-26 09:34:26 EE3BA1024594D5D09E314F206B94069E 18432 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_amd64\NTIDrvr.sys 2016-01-26 09:34:26 BB72714DD4E3E331A73DBF030B3AB225 14464 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\w2k_x86\NTIDrvr.sys 2016-01-26 09:34:26 BB4E22A7969C1935A8B8485424F7F2A2 32768 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_ia64\NTIDrvr.sys 2016-01-26 09:34:26 AF3533E42B8C35B22902085B06E560CB 15360 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_x86\NTIDrvr.sys 2016-01-26 09:34:26 A17D5E1A6DF4EAB0A480F2C490DE4C9D 17408 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_amd64\UBHelper.sys 2016-01-26 09:34:26 9A55831685AF58BC5A824429499D771C 13824 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Xp_x86\UBHelper.sys 2016-01-26 09:34:26 94E08DCC43F46471D96953E712B6D82B 15360 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_x86\NTIDrvr.sys 2016-01-26 09:34:26 729FBD6B296FE3E22A8E1E765852500B 32768 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_ia64\UBHelper.sys 2016-01-26 09:34:26 6827EAE2419C16092A6BE2432935E4F1 14848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_x86\UBHelper.sys 2016-01-26 09:34:26 5CF5CBC96B96231265093C1FD574F45A 13824 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\w2k_x86\UBHelper.sys 2016-01-26 09:34:26 1170D5723C3331D50653EDE4AE23B20F 14592 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Xp_x86\NTIDrvr.sys 2016-01-26 09:34:26 05268415F94C7DD5DCB049496A7AD9E4 14848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\win7_x86\UBHelper.sys 2016-01-26 09:34:25 EF8EDACCF83413C6220E4D3FEEE401A1 29184 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_ia64\UBHelper.sys 2016-01-26 09:34:25 C7D6453EC35B8AEFAD4037B9269E6407 29696 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_ia64\NTIDrvr.sys 2016-01-26 09:34:25 A0FB8CD5D9D4D38917B7E9D80442BFD4 15360 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_x86\NTIDrvr.sys 2016-01-26 09:34:25 710263B44C1D1AEE07525A53401FBE48 18432 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_amd64\NTIDrvr.sys 2016-01-26 09:34:25 69CC6087483FCE6AEBF1DF5AE791044F 17408 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_amd64\UBHelper.sys 2016-01-26 09:34:25 5A2C9388BC7F42156BE06FB785587D95 18432 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_amd64\NTIDrvr.sys 2016-01-26 09:34:25 45B0FB72853139BFA938ACD22C0D1EE8 29696 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\Vista_ia64\UBHelper.sys 2016-01-26 09:34:25 377BD6A1152BD9C22FCAEE43B5F59F97 17408 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_amd64\UBHelper.sys 2016-01-26 09:34:25 25D3CE486720208BFD97D236ECC33112 14848 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_x86\UBHelper.sys 2016-01-26 09:34:25 12211F166665EA6943D6DB42B5DEB73D 29184 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\NTI Media Maker v9.0\Drives\2003_ia64\NTIDrvr.sys 2016-01-26 09:34:04 9EF4E6A0BB984B05B66C00775F5DC369 118 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-2871391618-1465616402-3070090435-1001\$IONQMS5.com 2016-01-26 09:33:14 C1228E947138303D5154E4B9913D4F0A 253 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Power Management v7.00\ShowMsg.vbs 2016-01-26 09:33:14 104EBC49389C2DE43A43DB7FDCE22798 354 ----a-r- C:\SanDisk\d2c7073d-6af3-4786-aef5-46feff070ff4\APP\Acer Power Management v7.00\_Timeout.vbs ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-2871391618-1465616402-3070090435-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe /c" "OneDrive"="C:\Users\computer\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Adobe Acrobat Synchronizer"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_USERS\S-1-5-21-2871391618-1465616402-3070090435-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Norton Online Backup"="C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe" "Acrobat Assistant 8.0"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Google Update"="C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe /c" "OneDrive"="C:\Users\computer\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background" "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun" "Adobe Acrobat Synchronizer"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe" "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\computer\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" "Persistence"="C:\WINDOWS\system32\igfxpers.exe" "Apoint"="C:\Program Files\Apoint2K\Apoint.exe" "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s" "RtHDVBg_Dolby"="C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 " "CDAServer"="C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe" "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- [Undetermined Task] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13-09-2015 16:52] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [13-09-2015 16:52] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2871391618-1465616402-3070090435-1001Core.job --a-------- C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe [13-09-2015 16:52] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2871391618-1465616402-3070090435-1001UA.job --a-------- C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe [13-09-2015 16:52] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe] "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\WINDOWS\SysNative\tasks\ALU" [C:\Program Files (x86)\Acer\Live Updater\updater.exe] "C:\WINDOWS\SysNative\tasks\ALUAgent" [C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe] "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"] "C:\WINDOWS\SysNative\tasks\CreateExplorerShellUnelevatedTask" [C:\WINDOWS\explorer.exe] "C:\WINDOWS\SysNative\tasks\DeviceDetector" [C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe] "C:\WINDOWS\SysNative\tasks\EgisUpdate" ["C:\Program Files\EgisTec IPS\EgisUpdate.exe"] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2871391618-1465616402-3070090435-1001Core" [C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-2871391618-1465616402-3070090435-1001UA" [C:\Users\computer\AppData\Local\Google\Update\GoogleUpdate.exe] "C:\WINDOWS\SysNative\tasks\PMMUpdate" ["C:\Program Files\EgisTec IPS\PMMUpdate.exe"] "C:\WINDOWS\SysNative\tasks\Power Management" ["C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"] "C:\WINDOWS\SysNative\tasks\Start WinZip Driver Updater for PC@computer(logon)" [C:\Program Files\WinZip Driver Updater\DriverUpdater.exe] "C:\WINDOWS\SysNative\tasks\Start WinZip Driver Updater( SR ) for PC@computer" [C:\Program Files\WinZip Driver Updater\DriverUpdater.exe] "C:\WINDOWS\SysNative\tasks\Start WinZip Driver Updater( SR ) for PC@computer at logon" [C:\Program Files\WinZip Driver Updater\DriverUpdater.exe] "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{64FA7FC7-198A-438F-BD7F-E3A1CD13457E}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{4ED1F68A-5463-4931-9384-8FFF5ED91D92}"="C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi" [29-12-2015 12:20] [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "web2pdfextension@web2pdf.adobedotcom"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn" [13-01-2016 11:25] ==== Firefox Extensions ====================== ProfilePath: C:\Users\computer\AppData\Roaming\Mozilla\Firefox\Profiles\212uzxmh.default - EPUBReader - %ProfilePath%\extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} - Skype - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\computer\AppData\Roaming\Mozilla\Firefox\Profiles\212uzxmh.default A107920551356DAEE665F0884F34D2D7 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_286.dll - Shockwave Flash 3D1497F3F1A344FFB733CE616BB9096D - C:\Users\computer\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll - Google Update ==== Chromium Look ====================== Google Chrome Version: 46.0.2490.86 HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions efaidnbmnnnibpcajpcglclefindmkaj - No path found[] fheoggkfdfchfphceeifdbepaooicaho - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx[29-12-2015 15:55] lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[08-01-2016 10:47] HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions bbjllphbppobebmjpjcijfbakobcheof - No path found[] Google Slides - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek Google Docs - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf Rapport - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjllphbppobebmjpjcijfbakobcheof YouTube - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Adobe Acrobat - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj SiteAdvisor - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho Google Docs Offline - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi Skype - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl Chrome Web Store Payments - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - computer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Chromium Fix ====================== C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage deleted successfully C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ads1.msads.net_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{8C8BDECA-373C-43B4-B852-B148C64FFFF7}" HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKLM\Wow6432Node\SearchScopes "DefaultScope"="{8C8BDECA-373C-43B4-B852-B148C64FFFF7}" HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}" HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms} HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={sear HKCU\SearchScopes\{762BED48-16C7-4CEF-AA77-5910CAD5497E} - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 ==== Reset Google Chrome ====================== C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully ==== Empty IE Cache ====================== C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\computer\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\computer\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully C:\Users\computer\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\Users\computer\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== C:\Users\computer\AppData\Local\Mozilla\Firefox\Profiles\212uzxmh.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\computer\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== No Flash Cache Found ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=218 folders=40 19163034 bytes) ==== Empty Temp Folders ====================== C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\Users\computer\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on za 30-01-2016 at 12:06:24,73 ======================