Logfile of random's system information tool 1.09 (written by random/random)
Run by Laptops4all at 2014-01-13 18:54:28
Microsoft Windows XP Professional Service Pack 3
System drive C: has 47 GB (61%) free of 76 GB
Total RAM: 2002 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:54:36, on 13-1-2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\AMT\atchksrv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Intel\AMT\LMS.exe
C:\Program Files\OO Software\Defrag\oodag.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
C:\Program Files\Intel\AMT\UNS.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
C:\Program Files\OO Software\Defrag\oodtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\FastMediaConverter\FastMediaConverterApp.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Laptops4all\Local Settings\Temporary Internet Files\Content.IE5\YSS8OCDH\RSIT.exe
C:\Program Files\trend micro\Laptops4all.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Windows Live Aanmelden - Help - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: “C:\Program Files\Intel\AMT\atchk.exe”
O4 - HKLM\..\Run: “C:\Program Files\Winamp\winampa.exe”
O4 - HKLM\..\Run: C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: “C:\Program Files\Alwil Software\Avast5\avastUI.exe” /nogui
O4 - HKLM\..\Run: C:\Program Files\OO Software\Defrag\oodtray.exe
O4 - HKLM\..\RunOnce: C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: “C:\Documents and Settings\Laptops4all\Application Data\Spotify\Data\SpotifyWebHelper.exe”
O4 - HKCU\..\Run: C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: C:\WINDOWS\system32\CTFMON.EXE (User ‘SYSTEM’)
O4 - HKUS\.DEFAULT\..\Run: C:\WINDOWS\system32\CTFMON.EXE (User ‘Default user’)
O4 - Global Startup: FastMediaConverter.lnk = C:\Program Files\FastMediaConverter\FastMediaConverterApp.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Preloader van browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Cache-daemon voor onderdeelcategorieën - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Program Files\Intel\AMT\atchksrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel - C:\Program Files\Intel\AMT\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: O&O Defrag Agent (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel - C:\Program Files\Intel\AMT\UNS.exe
–
End of file - 7152 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\HPpromotions journeysoftware.job
C:\WINDOWS\tasks\Torntv V6.0-updater.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{962DB0AA-20C3-45A5-B7E6-734CF628FE5B}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Laptops4all\Application Data\Mozilla\Firefox\Profiles\5yglxngq.default
“{20a82645-c095-46ed-80e3-08825760534b}”=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
“wrc@avast.com”=C:\Program Files\Alwil Software\Avast5\WebRep\FF
“Description”=Adobe Shockwave Player
“Path”=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
“Description”=Java™ Deployment Toolkit
“Path”=C:\WINDOWS\system32\npDeployJava1.dll
“Description”=Oracle® Next Generation Java™ Plug-In
“Path”=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
“Description”=Ag Player Plugin
“Path”=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
“Description”=Windows Presentation Foundation plug-in for Mozilla browsers
“Path”=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
“Description”=Handles PDFs in-place in Firefox
“Path”=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Documents and Settings\Laptops4all\Application Data\Mozilla\Firefox\Profiles\5yglxngq.default\extensions\
ascsurfingprotection@iobit.com
ChoiceGuard@Microsoft
{58d2a791-6199-482f-a9aa-9b725ec61362}
{669E7F40-B964-7100-9E2C-16C6DAA58A01}
C:\Documents and Settings\Laptops4all\Application Data\Mozilla\Firefox\Profiles\5yglxngq.default\searchplugins\
yahoo_ff.xml
======Registry dump======
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
Java™ Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll
avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
Windows Live Aanmelden - Help - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
“atchk”=C:\Program Files\Intel\AMT\atchk.exe
“WinampAgent”=C:\Program Files\Winamp\winampa.exe
“IgfxTray”=C:\WINDOWS\system32\igfxtray.exe
“HotKeysCmds”=C:\WINDOWS\system32\hkcmd.exe
“Persistence”=C:\WINDOWS\system32\igfxpers.exe
“SoundMAXPnP”=C:\Program Files\Analog Devices\Core\smax4pnp.exe
“HP Software Update”=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
“NeroFilterCheck”=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
“SecurDisc”=C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
“Apoint”=C:\Program Files\Apoint\Apoint.exe
“ETDCtrl”=C:\Program Files\Elantech\ETDCtrl.exe
“avast”=C:\Program Files\Alwil Software\Avast5\avastUI.exe
“OODefragTray”=C:\Program Files\OO Software\Defrag\oodtray.exe
“Malwarebytes Anti-Malware”=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
“Spotify Web Helper”=C:\Documents and Settings\Laptops4all\Application Data\Spotify\Data\SpotifyWebHelper.exe
“ctfmon.exe”=C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Nero\Nero 7\InCD\InCD.exe
C:\Program Files\OO Software\Defrag\oodtray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\PROGRA~1\WinZip\WZQKPI~1.EXE
C:\Documents and Settings\All Users\Menu Start\Programma's\Opstarten
FastMediaConverter.lnk - C:\Program Files\FastMediaConverter\FastMediaConverterApp.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\igfxdev.dll
C:\WINDOWS\system32\WgaLogon.dll
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
“dontdisplaylastusername”=0
“legalnoticecaption”=
“legalnoticetext”=
“shutdownwithoutlogon”=1
“undockwithoutlogon”=1
“NoDriveTypeAutoRun”=323
“NoDriveAutoRun”=67108863
“NoDrives”=0
“NoDriveAutoRun”=67108863
“NoDriveTypeAutoRun”=323
“NoDrives”=0
“%windir%\system32\sessmgr.exe”=“%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019”
“%windir%\Network Diagnostic\xpnetdiag.exe”=“%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000”
“C:\Program Files\Maxthon\Bin\MxUp.exe”=“C:\Program Files\Maxthon\Bin\MxUp.exe:*:Enabled:MxUp”
“C:\Program Files\Maxthon\Bin\Maxthon.exe”=“C:\Program Files\Maxthon\Bin\Maxthon.exe:*:Enabled:Maxthon”
“C:\WINDOWS\system32\dpvsetup.exe”=“C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test”
“C:\Program Files\Winamp\winamp.exe”=“C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp”
“C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe”=“C:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe:*:Enabled:Nero ProductSetup”
“C:\Documents and Settings\Laptops4all\Application Data\Spotify\spotify.exe”=“C:\Documents and Settings\Laptops4all\Application Data\Spotify\spotify.exe:*:Enabled:Spotify”
“%windir%\system32\sessmgr.exe”=“%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019”
“%windir%\Network Diagnostic\xpnetdiag.exe”=“%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000”
“midimapper”=midimap.dll
“msacm.imaadpcm”=imaadp32.acm
“msacm.msadpcm”=msadp32.acm
“msacm.msg711”=msg711.acm
“msacm.msgsm610”=msgsm32.acm
“msacm.trspch”=tssoft32.acm
“vidc.cvid”=iccvid.dll
“vidc.I420”=msh263.drv
“vidc.iv31”=ir32_32.dll
“vidc.iv32”=ir32_32.dll
“vidc.iv41”=ir41_32.ax
“vidc.iyuv”=iyuv_32.dll
“vidc.mrle”=msrle32.dll
“vidc.msvc”=msvidc32.dll
“vidc.uyvy”=msyuv.dll
“vidc.yuy2”=msyuv.dll
“vidc.yvu9”=tsbyuv.dll
“vidc.yvyu”=msyuv.dll
“wavemapper”=msacm32.drv
“msacm.msg723”=msg723.acm
“vidc.M263”=msh263.drv
“vidc.M261”=msh261.drv
“msacm.msaudio1”=msaud32.acm
“msacm.sl_anet”=sl_anet.acm
“msacm.iac2”=C:\WINDOWS\system32\iac25_32.ax
“vidc.iv50”=ir50_32.dll
“msacm.l3acm”=C:\WINDOWS\system32\l3codeca.acm
“wave”=wdmaud.drv
“midi”=wdmaud.drv
“mixer”=wdmaud.drv
“aux”=wdmaud.drv
“wave1”=wdmaud.drv
“midi1”=wdmaud.drv
“mixer1”=wdmaud.drv
“aux1”=wdmaud.drv
======List of files/folders created in the last 1 month======
2014-01-13 18:54:28 —-D—- C:\rsit
2014-01-13 18:54:28 —-D—- C:\Program Files\trend micro
2014-01-13 18:51:24 —-D—- C:\Documents and Settings\Laptops4all\Application Data\Malwarebytes
2014-01-13 18:51:24 —-A—- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2014-01-13 18:51:20 —-D—- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2014-01-13 18:51:19 —-D—- C:\Program Files\Malwarebytes' Anti-Malware
2014-01-13 18:51:19 —-A—- C:\WINDOWS\system32\drivers\mbam.sys
2014-01-13 18:44:29 —-SHD—- C:\RECYCLER
2014-01-13 18:43:53 —-D—- C:\WINDOWS\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
2014-01-13 14:44:07 —-D—- C:\Documents and Settings\Laptops4all\Application Data\ElevatedDiagnostics
2014-01-13 13:08:19 —-D—- C:\Documents and Settings\Laptops4all\Application Data\TuneUp Software
2014-01-13 13:00:41 —-A—- C:\WINDOWS\ntbtlog.txt
2014-01-13 12:48:19 —-A—- C:\WINDOWS\system32\uxtuneup.dll
2014-01-13 12:46:53 —-A—- C:\WINDOWS\system32\TURegOpt.exe
2014-01-13 12:46:38 —-D—- C:\Documents and Settings\Laptops4all\Application Data\AVG
2014-01-13 12:44:39 —-D—- C:\Program Files\AVG
2014-01-13 12:43:20 —-D—- C:\Documents and Settings\All Users\Application Data\AVG
2014-01-13 12:42:59 —-SHD—- C:\Documents and Settings\All Users\Application Data\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-01-13 12:29:48 —-A—- C:\TDSSKiller.2.8.16.0_13.01.2014_12.29.48_log.txt
2014-01-13 12:24:11 —-A—- C:\ComboFix.txt
2014-01-13 12:08:58 —-RASHD—- C:\cmdcons
2014-01-13 12:06:27 —-D—- C:\WINDOWS\erdnt
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\WudfRd.sys.bak
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\WudfPf.sys.bak
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\ws2ifsl.sys.bak
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\wpdusb.sys.bak
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\wmilib.sys.bak
2014-01-13 11:32:04 —-A—- C:\WINDOWS\system32\drivers\wmiacpi.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wdmaud.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\watv10nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\watv06nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wanarp.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wadv11nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wadv09nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wadv08nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wadv07nt.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\wacompen.sys.bak
2014-01-13 11:32:03 —-A—- C:\WINDOWS\system32\drivers\volsnap.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\videoprt.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\viaagp.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\vga.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\vdmindvd.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\usbvideo.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\usbuhci.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\usbstor.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\usbprint.sys.bak
2014-01-13 11:32:02 —-A—- C:\WINDOWS\system32\drivers\usbport.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbintel.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbhub.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbehci.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbd.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbccgp.sys.bak
2014-01-13 11:32:01 —-A—- C:\WINDOWS\system32\drivers\usbcamd2.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\usbcamd.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\USBAUDIO.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\usb8023x.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\usb8023.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\update.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\Uim_Vim.sys.bak
2014-01-13 11:32:00 —-A—- C:\WINDOWS\system32\drivers\Uim_IM.sys.bak
2014-01-13 11:31:59 —-A—- C:\WINDOWS\system32\drivers\UimFIO.sys.bak
2014-01-13 11:31:59 —-A—- C:\WINDOWS\system32\drivers\UimBus.sys.bak
2014-01-13 11:31:59 —-A—- C:\WINDOWS\system32\drivers\udfs.sys.bak
2014-01-13 11:31:59 —-A—- C:\WINDOWS\system32\drivers\uagp35.sys.bak
2014-01-13 11:31:59 —-A—- C:\WINDOWS\system32\drivers\tunmp.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tsbvcap.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tosdvd.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\termdd.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tdtcp.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tdpipe.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tdi.sys.bak
2014-01-13 11:31:58 —-A—- C:\WINDOWS\system32\drivers\tcpip6.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\tcpip.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\tape.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\sysaudio.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\swmidi.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\swenum.sys.bak
2014-01-13 11:31:57 —-A—- C:\WINDOWS\system32\drivers\stream.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\srv.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\sr.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\splitter.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\sonydcam.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\smclib.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\smbali.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\slwdmsup.sys.bak
2014-01-13 11:31:56 —-A—- C:\WINDOWS\system32\drivers\slnthal.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\slntamr.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\slnt7554.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\sisagp.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\sfloppy.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\sffp_sd.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\sffp_mmc.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\sffdisk.sys.bak
2014-01-13 11:31:55 —-A—- C:\WINDOWS\system32\drivers\serial.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\serenum.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\secdrv.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\sdbus.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\scsiport.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\s3gnbm.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\rootmdm.sys.bak
2014-01-13 11:31:54 —-A—- C:\WINDOWS\system32\drivers\rndismpx.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\rndismp.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\rmcast.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\riodrv.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\rio8drv.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\rfcomm.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\revoflt.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\redbook.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\recagent.sys.bak
2014-01-13 11:31:53 —-A—- C:\WINDOWS\system32\drivers\rdpwd.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\rdpdr.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\rdpcdd.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\rdbss.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\rawwan.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\raspti.sys.bak
2014-01-13 11:31:52 —-A—- C:\WINDOWS\system32\drivers\raspptp.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\raspppoe.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\rasl2tp.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\rasacd.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\PxHelp20.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\ptilink.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\psched.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\processr.sys.bak
2014-01-13 11:31:51 —-A—- C:\WINDOWS\system32\drivers\portcls.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\pcmcia.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\pciidex.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\pciide.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\pci.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\parvdm.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\partmgr.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\parport.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\p3.sys.bak
2014-01-13 11:31:50 —-A—- C:\WINDOWS\system32\drivers\oprghdlr.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwrdr.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwlnkspx.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwlnknb.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwlnkipx.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwlnkfwd.sys.bak
2014-01-13 11:31:49 —-A—- C:\WINDOWS\system32\drivers\nwlnkflt.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\nv4_mini.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\null.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\ntmtlfax.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\ntfs.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\npfs.sys.bak
2014-01-13 11:31:48 —-A—- C:\WINDOWS\system32\drivers\nmnt.sys.bak
2014-01-13 11:31:47 —-A—- C:\WINDOWS\system32\drivers\nikedrv.sys.bak
2014-01-13 11:31:47 —-A—- C:\WINDOWS\system32\drivers\nic1394.sys.bak
2014-01-13 11:31:47 —-A—- C:\WINDOWS\system32\drivers\netbt.sys.bak
2014-01-13 11:31:47 —-A—- C:\WINDOWS\system32\drivers\netbios.sys.bak
2014-01-13 11:31:47 —-A—- C:\WINDOWS\system32\drivers\ndproxy.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\ndiswan.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\ndisuio.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\ndistapi.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\mutohpen.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\mup.sys.bak
2014-01-13 11:31:46 —-A—- C:\WINDOWS\system32\drivers\mtxparhm.sys.bak
2014-01-13 11:31:45 —-A—- C:\WINDOWS\system32\drivers\mtlstrm.sys.bak
2014-01-13 11:31:45 —-A—- C:\WINDOWS\system32\drivers\mtlmnt5.sys.bak
2014-01-13 11:31:45 —-A—- C:\WINDOWS\system32\drivers\mssmbios.sys.bak
2014-01-13 11:31:45 —-A—- C:\WINDOWS\system32\drivers\mspqm.sys.bak
2014-01-13 11:31:45 —-A—- C:\WINDOWS\system32\drivers\mspclock.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\mskssrv.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\msgpc.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\msfs.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\mrxsmb.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\mrxdav.sys.bak
2014-01-13 11:31:44 —-A—- C:\WINDOWS\system32\drivers\mqac.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mountmgr.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mouhid.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mouclass.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\modem.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mnmdd.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mf.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mdmxsdk.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mcd.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\mbam.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\LMouFlt2.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\LKbdFlt2.sys.bak
2014-01-13 11:31:43 —-A—- C:\WINDOWS\system32\drivers\LHidFlt2.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\ksecdd.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\ks.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\kmixer.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\kbfiltr.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\kbdhid.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\kbdclass.sys.bak
2014-01-13 11:31:42 —-A—- C:\WINDOWS\system32\drivers\jmccgp.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\isapnp.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\irenum.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\irbus.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\ipsec.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\ipnat.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\ipinip.sys.bak
2014-01-13 11:31:41 —-A—- C:\WINDOWS\system32\drivers\ipfltdrv.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\ip6fw.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\intelppm.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\intelide.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\InCDRm.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\InCDrec.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\InCDPass.sys.bak
2014-01-13 11:31:40 —-A—- C:\WINDOWS\system32\drivers\InCDfs.sys.bak
2014-01-13 11:31:39 —-A—- C:\WINDOWS\system32\drivers\imapi.sys.bak
2014-01-13 11:31:39 —-A—- C:\WINDOWS\system32\drivers\igxpmp32.sys.bak
2014-01-13 11:31:39 —-A—- C:\WINDOWS\system32\drivers\ifxtpm.sys.bak
2014-01-13 11:31:39 —-A—- C:\WINDOWS\system32\drivers\i8042prt.sys.bak
2014-01-13 11:31:39 —-A—- C:\WINDOWS\system32\drivers\http.sys.bak
2014-01-13 11:31:38 —-A—- C:\WINDOWS\system32\drivers\hsfdpsp2.sys.bak
2014-01-13 11:31:38 —-A—- C:\WINDOWS\system32\drivers\hsfcxts2.sys.bak
2014-01-13 11:31:38 —-A—- C:\WINDOWS\system32\drivers\hsfbs2s2.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\HPZius12.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\HPZipr12.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\HPZid412.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\hidusb.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\hidparse.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\hidir.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\hidclass.sys.bak
2014-01-13 11:31:37 —-A—- C:\WINDOWS\system32\drivers\hidbth.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\HECI.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\Hdaudio.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\hdaudbus.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\gagp30kx.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\ftdisk.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\fsvga.sys.bak
2014-01-13 11:31:36 —-A—- C:\WINDOWS\system32\drivers\fs_rec.sys.bak
2014-01-13 11:31:35 —-A—- C:\WINDOWS\system32\drivers\fltmgr.sys.bak
2014-01-13 11:31:35 —-A—- C:\WINDOWS\system32\drivers\flpydisk.sys.bak
2014-01-13 11:31:35 —-A—- C:\WINDOWS\system32\drivers\fips.sys.bak
2014-01-13 11:31:35 —-A—- C:\WINDOWS\system32\drivers\fdc.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\fastfat.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\ETD.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\e1e5132.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\dxgthk.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\dxg.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\dxapi.sys.bak
2014-01-13 11:31:34 —-A—- C:\WINDOWS\system32\drivers\drmkaud.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\drmk.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\dmusic.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\dmload.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\dmio.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\dmboot.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\diskdump.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\disk.sys.bak
2014-01-13 11:31:33 —-A—- C:\WINDOWS\system32\drivers\crusoe.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cpqdap01.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\classpnp.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cinemst2.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cdrom.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cdralw2k.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cdr4_xp.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cdfs.sys.bak
2014-01-13 11:31:32 —-A—- C:\WINDOWS\system32\drivers\cdaudio.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\cbidf2k.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthusb.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthprint.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthport.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthpan.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthmodem.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bthenum.sys.bak
2014-01-13 11:31:31 —-A—- C:\WINDOWS\system32\drivers\bridge.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\beep.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\audstub.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\atmuni.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\atmlane.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\atmepvc.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\atmarpc.sys.bak
2014-01-13 11:31:30 —-A—- C:\WINDOWS\system32\drivers\atinxsxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinxbxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atintuxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinttxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinsnxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinrvxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinraxx.sys.bak
2014-01-13 11:31:29 —-A—- C:\WINDOWS\system32\drivers\atinpdxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\atinmdxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\atinbtxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati2mtag.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati2mtaa.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1xsxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1xbxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1tuxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1ttxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1snxx.sys.bak
2014-01-13 11:31:28 —-A—- C:\WINDOWS\system32\drivers\ati1rvxx.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\ati1raxx.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\ati1pdxx.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\ati1mdxx.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\ati1btxx.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\atapi.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\asyncmac.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\asapi.sys.bak
2014-01-13 11:31:27 —-A—- C:\WINDOWS\system32\drivers\arp1394.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\Apfiltr.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\amdk7.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\amdk6.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\amdagp.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\alim1541.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\agpcpq.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\agp440.sys.bak
2014-01-13 11:31:26 —-A—- C:\WINDOWS\system32\drivers\afd.sys.bak
2014-01-13 11:31:25 —-A—- C:\WINDOWS\system32\drivers\aec.sys.bak
2014-01-13 11:31:25 —-A—- C:\WINDOWS\system32\drivers\aeaudio.sys.bak
2014-01-13 11:31:25 —-A—- C:\WINDOWS\system32\drivers\ADIHdAud.sys.bak
2014-01-13 11:31:25 —-A—- C:\WINDOWS\system32\drivers\acpiec.sys.bak
2014-01-13 11:31:25 —-A—- C:\WINDOWS\system32\drivers\acpi.sys.bak
2014-01-12 17:35:43 —-A—- C:\Nieuw tekstdocument.txt
2013-12-26 12:53:19 —-D—- C:\Documents and Settings\Laptops4all\Application Data\Spotify
2013-12-26 12:43:39 —-D—- C:\Documents and Settings\Laptops4all\Application Data\FastMediaConverter
2013-12-26 12:43:22 —-D—- C:\Program Files\FastMediaConverter
2013-12-22 07:32:28 —-A—- C:\WINDOWS\system32\msvcr100.dll
2013-12-22 07:32:28 —-A—- C:\WINDOWS\system32\msvcp100.dll
2013-12-22 07:31:23 —-D—- C:\Program Files\SecretSauce
2013-12-22 07:30:57 —-D—- C:\Program Files\Torntv V6.0
2013-12-19 18:28:03 —-D—- C:\Program Files\Microsoft
2013-12-19 18:27:46 —-D—- C:\Program Files\Windows Live SkyDrive
2013-12-19 18:27:29 —-D—- C:\Program Files\Windows Live
2013-12-19 18:23:44 —-D—- C:\Program Files\Common Files\Windows Live
2013-12-19 14:05:55 —-HD—- C:\WINDOWS\$NtUninstallKB926139-v2$
2013-12-19 14:05:53 —-D—- C:\Program Files\Speccy
2013-12-19 14:05:04 —-D—- C:\Program Files\Common Files\Java
2013-12-19 13:58:34 —-D—- C:\Documents and Settings\All Users\Application Data\VS Revo Group
2013-12-19 13:17:30 —-DC—- C:\WINDOWS\$NtUninstallKB2808679$
2013-12-19 13:16:05 —-DC—- C:\WINDOWS\$NtUninstallKB2492386$
2013-12-19 13:11:54 —-DC—- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2013-12-19 13:10:41 —-A—- C:\WINDOWS\imsins.BAK
2013-12-19 13:10:28 —-DC—- C:\WINDOWS\$NtUninstallbasecsp$
2013-12-19 13:06:46 —-D—- C:\Documents and Settings\Laptops4all\Application Data\Apple Computer
2013-12-19 13:06:30 —-D—- C:\Documents and Settings\All Users\Application Data\IObit
2013-12-19 13:06:08 —-D—- C:\Program Files\IObit
2013-12-19 13:05:49 —-D—- C:\Documents and Settings\Laptops4all\Application Data\IObit
2013-12-17 12:41:31 —-D—- C:\Program Files\Common Files\Java(2)
2013-12-17 10:43:13 —-D—- C:\WINDOWS\SoftwareDistribution
2013-12-17 10:23:24 —-A—- C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-16 22:34:13 —-RASH—- C:\BOOTSECT.BAK
2013-12-16 22:34:11 —-D—- C:\Boot
2013-12-16 22:34:11 —-A—- C:\Boot.bak
2013-12-16 20:58:28 —-D—- C:\WINDOWS\system32\windowspowershell
2013-12-16 17:51:06 —-D—- C:\WINDOWS\ERUNT
2013-12-16 17:27:24 —-A—- C:\WINDOWS\system32\drivers\revoflt.sys
2013-12-16 17:27:22 —-D—- C:\Program Files\VS Revo Group
2013-12-16 17:25:54 —-D—- C:\JRT
2013-12-16 12:06:48 —-D—- C:\Program Files\Enigma Software Group
2013-12-16 12:05:57 —-D—- C:\Program Files\Common Files\Wise Installation Wizard
2013-12-14 15:55:25 —-D—- C:\136ffab6d9cc2363e1c93d1f
======List of files/folders modified in the last 1 month======
2014-01-13 18:54:28 —-RD—- C:\Program Files
2014-01-13 18:54:26 —-D—- C:\WINDOWS\Prefetch
2014-01-13 18:53:51 —-D—- C:\WINDOWS\system32\CatRoot2
2014-01-13 18:51:57 —-D—- C:\WINDOWS\system32\drivers
2014-01-13 18:47:08 —-SHD—- C:\WINDOWS\Installer
2014-01-13 18:43:58 —-SD—- C:\Documents and Settings\Laptops4all\Application Data\Microsoft
2014-01-13 18:43:57 —-D—- C:\Config.Msi
2014-01-13 18:43:53 —-D—- C:\WINDOWS
2014-01-13 18:08:12 —-D—- C:\WINDOWS\Microsoft.NET
2014-01-13 18:00:31 —-D—- C:\WINDOWS\Temp
2014-01-13 17:52:29 —-A—- C:\WINDOWS\system32\log.txt
2014-01-13 17:25:12 —-A—- C:\WINDOWS\SchedLgU.Txt
2014-01-13 17:24:55 —-D—- C:\WINDOWS\system32
2014-01-13 17:24:55 —-A—- C:\WINDOWS\system32\PerfStringBackup.INI
2014-01-13 17:24:48 —-RSD—- C:\WINDOWS\assembly
2014-01-13 17:24:45 —-D—- C:\WINDOWS\WinSxS
2014-01-13 16:44:56 —-D—- C:\WINDOWS\AppPatch
2014-01-13 16:44:18 —-D—- C:\WINDOWS\system32\CatRoot
2014-01-13 13:55:05 —-D—- C:\WINDOWS\Help
2014-01-13 12:46:55 —-D—- C:\WINDOWS\system32\config
2014-01-13 12:34:00 —-D—- C:\AdwCleaner
2014-01-13 12:23:35 —-SD—- C:\WINDOWS\Tasks
2014-01-13 12:20:18 —-A—- C:\WINDOWS\system.ini
2014-01-13 12:20:01 —-D—- C:\WINDOWS\system32\drivers\etc
2014-01-13 12:14:33 —-D—- C:\Program Files\Common Files
2014-01-13 12:09:04 —-RASH—- C:\boot.ini
2014-01-11 15:16:11 —-D—- C:\Jenny
2014-01-09 15:38:18 —-D—- C:\MUSIC SIR SHAM
2014-01-07 12:03:47 —-D—- C:\Program Files\Mozilla Firefox
2014-01-07 11:57:15 —-D—- C:\Documents and Settings\Laptops4all\Application Data\Winamp
2014-01-02 17:00:05 —-D—- C:\WINDOWS\network diagnostic
2014-01-01 12:38:42 —-SHD—- C:\System Volume Information
2013-12-26 19:43:55 —-AC—- C:\WINDOWS\NeroDigital.ini
2013-12-19 20:00:47 —-SD—- C:\Documents and Settings\All Users\Application Data\Microsoft
2013-12-19 20:00:27 —-D—- C:\Program Files\Common Files\Microsoft Shared
2013-12-19 18:27:36 —-RSD—- C:\WINDOWS\Fonts
2013-12-19 18:27:14 —-HD—- C:\WINDOWS\inf
2013-12-19 14:06:16 —-D—- C:\WINDOWS\system32\wbem
2013-12-19 14:06:15 —-D—- C:\WINDOWS\Registration
2013-12-19 14:04:57 —-D—- C:\Program Files\Java
2013-12-19 14:03:45 —-RSHDC—- C:\WINDOWS\system32\dllcache
2013-12-19 13:54:31 —-D—- C:\WINDOWS\system32\Restore
2013-12-19 13:39:05 —-D—- C:\WINDOWS\Debug
2013-12-19 13:16:48 —-D—- C:\WINDOWS\ie8updates
2013-12-19 13:16:43 —-D—- C:\WINDOWS\security
2013-12-19 13:16:21 —-HD—- C:\WINDOWS\$hf_mig$
2013-12-19 13:11:35 —-D—- C:\WINDOWS\system32\nl-nl
2013-12-19 13:11:34 —-D—- C:\WINDOWS\system32\XPSViewer
2013-12-16 17:44:01 —-D—- C:\WINDOWS\Downloaded Installations
2013-12-16 13:08:41 —-D—- C:\Program Files\CCleaner
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys
R1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\InCDPass.sys
R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\InCDRm.sys
R1 intelppm;Intel GV3-processorstuurprogramma; C:\WINDOWS\system32\DRIVERS\intelppm.sys
R1 kbdhid;Stuurprogramma voor toetsenbord-HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys
R1 Uim_IM;UIM Drive Backup Image Plugin; C:\WINDOWS\System32\Drivers\Uim_IM.sys
R1 Uim_Vim;UIM Virtual Image Plugin; C:\WINDOWS\System32\Drivers\Uim_Vim.sys
R1 UimBus;Universal Image Mounter Controller; C:\WINDOWS\system32\DRIVERS\UimBus.sys
R1 WmiAcpi;Microsoft Windows Beheerinterface voor ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys
R3 HDAudBus;Microsoft UAA-busstuurprogramma voor High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
R3 HECI;Intel(R) Management Engine Interface; C:\WINDOWS\system32\DRIVERS\HECI.sys
R3 hidusb;Microsoft HID Class-stuurprogramma; C:\WINDOWS\system32\DRIVERS\hidusb.sys
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
R3 IFXTPM;IFXTPM; C:\WINDOWS\system32\DRIVERS\IFXTPM.SYS
R3 JmUsbCcgp;JMicron USB Composite Device Lower Filter Driver; C:\WINDOWS\system32\DRIVERS\jmccgp.sys
R3 LHidFlt2;Logitech HID/USB Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFlt2.sys
R3 LKbdFlt2;Logitech Keyboard Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LKbdFlt2.sys
R3 LMouFlt2;Logitech Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFlt2.sys
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
R3 mouhid;Stuurprogramma voor muis-HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys
R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDFs.sys
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
S3 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys
S3 ETD;Dell Touchpad; C:\WINDOWS\system32\DRIVERS\ETD.sys
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys
S3 TotRec8;Total Recorder WDM audio filter driver; \??\C:\WINDOWS\system32\drivers\TotRec8.sys
S3 TrueSight;TrueSight; \??\
S3 usbaudio;Stuurprogramma voor USB-audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys
S3 USBSTOR;Stuurprogramma voor USB-massaopslag; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 atchksrv;Intel(R) Active Management Technology System Status Service; C:\Program Files\Intel\AMT\atchksrv.exe
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
R2 InCDsrv;InCD Helper; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
R2 LMS;Intel(R) Active Management Technology Local Management Service; C:\Program Files\Intel\AMT\LMS.exe
R2 OODefragAgent;O&O Defrag Agent; C:\Program Files\OO Software\Defrag\oodag.exe
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
R2 UNS;Intel(R) Active Management Technology User Notification Service; C:\Program Files\Intel\AMT\UNS.exe
R2 UxTuneUp;AVG Thema-uitbreiding; C:\WINDOWS\System32\svchost.exe
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
S3 WMPNetworkSvc;Windows Media Player Network Sharing-service; C:\Program Files\Windows Media Player\WMPNetwk.exe
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
—————–EOF—————–