hallo allen, kan helaas niet het proggie verwijderen van system speedup, hieronder de gevraagde logfiles in 2 gedeelte ivm met de grote ervan, zouden jullie is kunnen bekijken wat ik er aan kan doen… hoor het graag van jullie
Logfile of random's system information tool 1.09 (written by random/random)
Run by Gebuiker at 2014-01-24 17:07:50
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 181 GB (38%) free of 477 GB
Total RAM: 3070 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:08:14, on 24-1-2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16750)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Program Files\Comodo\COMODO Internet Security\cistray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\Comodo\COMODO Internet Security\cis.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil32_11_9_900_170_ActiveX.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Gebuiker\Downloads\RSIT.exe
C:\Program Files\trend micro\Gebuiker.exe
C:\Windows\system32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1390570799&from=vit&uid=395049983_1052451_D09EFD02&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1390570799&from=vit&uid=395049983_1052451_D09EFD02&q={searchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1390570799&from=vit&uid=395049983_1052451_D09EFD02&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: (no name) - ##TOOLBAR_DISABLED_##{0cc09160-108c-4759-bab1-5c12c216e005} - (no file)
O3 - Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - (no file)
O4 - HKLM\..\Run: “C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe” -Embedding -boot
O4 - HKLM\..\Run: C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
O4 - HKLM\..\Run: C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
O4 - HKLM\..\Run: C:\Windows\p_981116.exe /Q:A
O4 - HKLM\..\Run: C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
O4 - HKLM\..\Run: “C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe”
O4 - HKCU\..\Run: “C:\Program Files\Skype\Phone\Skype.exe” /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘LOCAL SERVICE’)
O4 - HKUS\S-1-5-19\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘LOCAL SERVICE’)
O4 - HKUS\S-1-5-20\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘NETWORK SERVICE’)
O4 - HKUS\S-1-5-20\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘NETWORK SERVICE’)
O4 - HKUS\S-1-5-18\..\RunOnce: “C:\Windows\System32\SPReview\SPReview.exe” /sp:1 /errorfwlink:“http://go.microsoft.com/fwlink/?LinkID=122915” /build:7601 (User ‘SYSTEM’)
O4 - HKUS\.DEFAULT\..\RunOnce: “C:\Windows\System32\SPReview\SPReview.exe” /sp:1 /errorfwlink:“http://go.microsoft.com/fwlink/?LinkID=122915” /build:7601 (User ‘Default user’)
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Onderzoek - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
O9 - Extra ‘Tools’ menuitem: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Acronis Scheduler2Service (AcrSch2Svc) - Acronis - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Acronis Nonstop Backup-service (afcdpsrv) - Acronis - C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\Windows\system32\brsvc01a.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Google Update-service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
–
End of file - 7397 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3706457735-2140502151-1534198828-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3706457735-2140502151-1534198828-1000UA.job
C:\Windows\tasks\System Speedup_DEFAULT.job
C:\Windows\tasks\System Speedup_UPDATES.job
C:\Windows\tasks\_DEFAULT.job
C:\Windows\tasks\_UPDATES.job
======Registry dump======
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
##TOOLBAR_DISABLED_##{0cc09160-108c-4759-bab1-5c12c216e005}
{ae07101b-46d4-4a98-af68-0333ea26e113}
“SSBkgdUpdate”=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe
“PaperPort PTD”=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
“IndexSearch”=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
“BrMfcWnd”=C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
“ControlCenter3”=C:\Program Files\Brother\ControlCenter3\brctrcen.exe
“DXM6Patch_981116”=C:\Windows\p_981116.exe
“COMODO Internet Security”=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
“Adobe ARM”=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
“WebCamRT.exe”=
“Skype”=C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe /Auto
C:\Users\Gebuiker\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT –mid b87b4b10d39a47d09eddd16f5efea250-03aba8ab899236046bf6fc45ecccd7cfdafa4e83 –CMPID 0913b
C:\Users\Gebuiker\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED
C:\Users\Gebuiker\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\Avant Browser\webkit\chrome.exe –no-startup-window
C:\Users\Gebuiker\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\IncrediMail\bin\IncMail.exe
C:\Program Files\Yuna Software\Messenger Plus!\PlusService.exe
C:\Program Files\AVG Secure Search\ROC_ROC_NT.exe / /PROMPT /CMPID=ROC_NT
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Smart Driver Updater\SDULauncher.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe -osboot
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Users\Gebuiker\AppData\Roaming\uTorrent\uTorrent.exe
C:\Users\Gebuiker\AppData\Roaming\BROWSE~1\tcbhn.exe
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
“{4F07DA45-8170-4859-9B5F-037EF2970034}”=
“SecurityProviders”=credssp.dll
“ConsentPromptBehaviorAdmin”=5
“ConsentPromptBehaviorUser”=3
“EnableUIADesktopToggle”=0
“dontdisplaylastusername”=0
“legalnoticecaption”=
“legalnoticetext”=
“shutdownwithoutlogon”=1
“undockwithoutlogon”=1
“EnableLinkedConnections”=1
“EnableShellExecuteHooks”=1
“vidc.mrle”=msrle32.dll
“vidc.msvc”=msvidc32.dll
“msacm.imaadpcm”=imaadp32.acm
“msacm.msg711”=msg711.acm
“msacm.msgsm610”=msgsm32.acm
“msacm.msadpcm”=msadp32.acm
“midimapper”=midimap.dll
“wavemapper”=msacm32.drv
“VIDC.YVYU”=msyuv.dll
“VIDC.IYUV”=iyuv_32.dll
“msacm.l3acm”=l3codeca.acm
“vidc.cvid”=iccvid.dll
“msacm.voxacm160”=vct3216.acm
“MSVideo”=vfwwdm32.dll
“MSVideo8”=VfWWDM32.dll
“VIDC.UYVY”=msyuv.dll
“VIDC.YUY2”=msyuv.dll
“VIDC.YVU9”=tsbyuv.dll
“wave3”=wdmaud.drv
“midi3”=wdmaud.drv
“mixer3”=wdmaud.drv
“wave4”=wdmaud.drv
“midi4”=wdmaud.drv
“mixer4”=wdmaud.drv
“wave1”=wdmaud.drv
“midi1”=wdmaud.drv
“mixer1”=wdmaud.drv
“wave2”=wdmaud.drv
“midi2”=wdmaud.drv
“mixer2”=wdmaud.drv
“wave”=wdmaud.drv
“midi”=wdmaud.drv
“mixer”=wdmaud.drv
“aux”=wdmaud.drv
“msacm.siren”=sirenacm.dll
“msacm.l3codecp”=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe “%1” %*
======List of files/folders created in the last 1 month======
2014-01-24 16:06:28 —-D—- C:\rsit
2014-01-24 16:06:28 —-D—- C:\Program Files\trend micro
2014-01-24 14:56:03 —-D—- C:\Users\Gebuiker\AppData\Roaming\System Speedup
2014-01-24 14:44:28 —-D—- C:\ProgramData\Allmyapps
2014-01-24 14:44:17 —-D—- C:\Program Files\Advanced Disk Recovery
2014-01-24 14:44:00 —-D—- C:\Program Files\Systweak Support Dock
2014-01-24 14:40:35 —-D—- C:\Users\Gebuiker\AppData\Roaming\systweak
2014-01-24 14:40:34 —-D—- C:\Program Files\System Speedup
2014-01-24 14:40:24 —-D—- C:\Program Files\iRobinHood
2014-01-24 14:40:23 —-D—- C:\ProgramData\IePluginService
2014-01-24 14:40:17 —-D—- C:\Program Files\SupTab
2014-01-24 14:40:12 —-D—- C:\ProgramData\WPM
2014-01-22 18:21:35 —-D—- C:\Users\Gebuiker\AppData\Roaming\USBSafelyRemove
2014-01-22 18:21:27 —-D—- C:\ProgramData\USBSRService
2014-01-22 18:21:25 —-D—- C:\Program Files\USB Safely Remove
2014-01-19 14:23:31 —-D—- C:\Program Files\Common Files\Wise Installation Wizard
2014-01-19 12:33:32 —-A—- C:\Windows\system32\drivers\Cat.DB
2014-01-19 12:33:16 —-D—- C:\Program Files\PC Tools Security
2014-01-18 10:30:19 —-D—- C:\Program Files\Common Files\DESIGNER
2014-01-11 18:56:20 —-D—- C:\Users\Gebuiker\AppData\Roaming\TeamViewer
2014-01-11 14:18:11 —-D—- C:\Users\Gebuiker\AppData\Roaming\Apple Computer
2014-01-11 14:18:03 —-D—- C:\ProgramData\ProductData
2014-01-11 14:17:59 —-D—- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-07 10:53:49 —-D—- C:\Program Files\Common Files\Adobe
2014-01-07 10:53:49 —-D—- C:\Program Files\Adobe
2014-01-02 19:46:45 —-HD—- C:\VTRoot
2014-01-02 19:46:37 —-A—- C:\Windows\system32\drivers\fvstore.dat
2014-01-02 19:39:25 —-D—- C:\first_launch
2014-01-02 17:03:41 —-D—- C:\Users\Gebuiker\AppData\Roaming\MPC-HC
2014-01-01 12:10:24 —-D—- C:\Users\Gebuiker\AppData\Roaming\NAVIGON Fresh
2014-01-01 12:10:24 —-D—- C:\ProgramData\boost_interprocess
2014-01-01 12:08:51 —-D—- C:\Program Files\NAVIGON
2013-12-31 19:10:46 —-D—- C:\Users\Gebuiker\AppData\Roaming\Open Download Manager
2013-12-31 19:09:29 —-D—- C:\Program Files\OpenDownloaderManager
2013-12-26 10:31:45 —-A—- C:\Windows\system32\wininet.dll
2013-12-26 10:31:45 —-A—- C:\Windows\system32\urlmon.dll
2013-12-26 10:31:45 —-A—- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-26 10:31:45 —-A—- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-26 10:31:45 —-A—- C:\Windows\system32\msls31.dll
2013-12-26 10:31:45 —-A—- C:\Windows\system32\elshyph.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\wextract.exe
2013-12-26 10:31:44 —-A—- C:\Windows\system32\vbscript.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\msrating.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\mshtmled.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\mshtml.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\msfeeds.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\jsproxy.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\inseng.dll
2013-12-26 10:31:44 —-A—- C:\Windows\system32\iexpress.exe
2013-12-26 10:31:44 —-A—- C:\Windows\system32\ieUnatt.exe
2013-12-26 10:31:44 —-A—- C:\Windows\system32\iertutil.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-26 10:31:43 —-A—- C:\Windows\system32\pngfilt.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\occache.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\mshtmler.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\mshta.exe
2013-12-26 10:31:43 —-A—- C:\Windows\system32\msfeedssync.exe
2013-12-26 10:31:43 —-A—- C:\Windows\system32\msfeedsbs.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\jscript9.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\jscript.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\imgutil.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\ieui.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\iesysprep.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\iepeers.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\ieframe.dll
2013-12-26 10:31:43 —-A—- C:\Windows\system32\IEAdvpack.dll
2013-12-26 10:31:42 —-A—- C:\Windows\system32\iernonce.dll
2013-12-26 10:31:42 —-A—- C:\Windows\system32\ieapfltr.dll
2013-12-26 10:31:42 —-A—- C:\Windows\system32\ieapfltr.dat
2013-12-26 10:31:42 —-A—- C:\Windows\system32\ie4uinit.exe
2013-12-26 10:31:42 —-A—- C:\Windows\system32\icardie.dll
2013-12-26 10:31:42 —-A—- C:\Windows\system32\dxtrans.dll
2013-12-26 10:31:42 —-A—- C:\Windows\system32\dxtmsft.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\webcheck.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\url.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\mshtmlmedia.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\licmgr10.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\iesetup.dll
2013-12-26 10:31:41 —-A—- C:\Windows\system32\iedkcs32.dll
2013-12-26 10:31:09 —-A—- C:\Windows\system32\taskhost.exe
2013-12-26 10:30:52 —-A—- C:\Windows\system32\winsrv.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-12-26 10:30:51 —-AH—- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-12-26 10:30:51 —-A—- C:\Windows\system32\KernelBase.dll
2013-12-26 10:30:51 —-A—- C:\Windows\system32\kernel32.dll
2013-12-26 10:30:51 —-A—- C:\Windows\system32\conhost.exe
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-12-26 10:30:50 —-AH—- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-12-26 10:29:11 —-AH—- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-12-26 10:29:10 —-AH—- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-12-26 10:29:10 —-AH—- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\XpsPrint.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\XpsGdiConverter.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\WMPhoto.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\WindowsCodecsExt.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\msmpeg2vdec.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\FntCache.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\DWrite.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\d3d10core.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\d3d10_1core.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\d3d10_1.dll
2013-12-26 10:29:10 —-A—- C:\Windows\system32\d3d10.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\WindowsCodecs.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\UIAnimation.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\dxgi.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\d3d10warp.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\d3d10level9.dll
2013-12-26 10:29:09 —-A—- C:\Windows\system32\d2d1.dll
2013-12-26 10:26:35 —-A—- C:\Windows\system32\d3d11.dll
2013-12-26 10:01:33 —-D—- C:\Windows\system32\SPReview
2013-12-26 10:00:31 —-D—- C:\Windows\system32\EventProviders
2013-12-26 09:58:11 —-A—- C:\Windows\system32\dfshim.dll
2013-12-26 09:58:08 —-A—- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-26 09:58:08 —-A—- C:\Windows\system32\mstscax.dll
2013-12-26 09:58:08 —-A—- C:\Windows\system32\LSCSHostPolicy.dll
2013-12-26 09:58:08 —-A—- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-12-26 09:58:05 —-A—- C:\Windows\system32\tssrvlic.dll
2013-12-26 09:58:05 —-A—- C:\Windows\system32\mfc40u.dll
2013-12-26 09:58:05 —-A—- C:\Windows\system32\mfc40.dll
2013-12-26 09:58:04 —-A—- C:\Windows\system32\sysmain.dll
2013-12-26 09:58:04 —-A—- C:\Windows\system32\RDVGHelper.exe
2013-12-26 09:58:03 —-A—- C:\Windows\system32\secproc_isv.dll
2013-12-26 09:58:02 —-A—- C:\Windows\system32\secproc.dll
2013-12-26 09:58:02 —-A—- C:\Windows\system32\RMActivate_isv.exe
2013-12-26 09:58:02 —-A—- C:\Windows\system32\RMActivate.exe
2013-12-26 09:58:00 —-A—- C:\Windows\system32\spwizui.dll
2013-12-26 09:58:00 —-A—- C:\Windows\system32\mscoree.dll
2013-12-26 09:58:00 —-A—- C:\Windows\system32\mf.dll
2013-12-26 09:57:59 —-A—- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-12-26 09:57:59 —-A—- C:\Windows\system32\CertEnroll.dll
2013-12-26 09:57:58 —-A—- C:\Windows\system32\wmp.dll
2013-12-26 09:57:57 —-A—- C:\Windows\system32\PresentationHostProxy.dll
2013-12-26 09:57:57 —-A—- C:\Windows\system32\PresentationHost.exe
2013-12-26 09:57:57 —-A—- C:\Windows\system32\esent.dll
2013-12-26 09:57:57 —-A—- C:\Windows\system32\drivers\msiscsi.sys
2013-12-26 09:57:57 —-A—- C:\Windows\system32\drivers\hwpolicy.sys
2013-12-26 09:57:56 —-A—- C:\Windows\system32\schedsvc.dll
2013-12-26 09:57:56 —-A—- C:\Windows\system32\RacEngn.dll
2013-12-26 09:57:55 —-A—- C:\Windows\system32\rdpdd.dll
2013-12-26 09:57:55 —-A—- C:\Windows\system32\ntdll.dll
2013-12-26 09:57:55 —-A—- C:\Windows\system32\AuthFWSnapin.dll
2013-12-26 09:57:54 —-A—- C:\Windows\system32\wevtsvc.dll
2013-12-26 09:57:54 —-A—- C:\Windows\system32\qmgr.dll
2013-12-26 09:57:54 —-A—- C:\Windows\system32\ole32.dll
2013-12-26 09:57:54 —-A—- C:\Windows\system32\ExplorerFrame.dll
2013-12-26 09:57:53 —-A—- C:\Windows\system32\vssapi.dll
2013-12-26 09:57:53 —-A—- C:\Windows\system32\SearchFolder.dll
2013-12-26 09:57:53 —-A—- C:\Windows\system32\d3d9.dll
2013-12-26 09:57:52 —-A—- C:\Windows\system32\taskschd.dll
2013-12-26 09:57:52 —-A—- C:\Windows\system32\spreview.exe
2013-12-26 09:57:52 —-A—- C:\Windows\system32\spinstall.exe
2013-12-26 09:57:52 —-A—- C:\Windows\system32\PushPrinterConnections.exe
2013-12-26 09:57:52 —-A—- C:\Windows\system32\mstsc.exe
2013-12-26 09:57:52 —-A—- C:\Windows\system32\IKEEXT.DLL
2013-12-26 09:57:52 —-A—- C:\Windows\system32\crypt32.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\wer.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\termsrv.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\rpcrt4.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\msxml6.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\gpsvc.dll
2013-12-26 09:57:51 —-A—- C:\Windows\system32\certcli.dll
2013-12-26 09:57:50 —-A—- C:\Windows\system32\wbengine.exe
2013-12-26 09:57:50 —-A—- C:\Windows\system32\scavengeui.dll
2013-12-26 09:57:50 —-A—- C:\Windows\system32\odbc32.dll
2013-12-26 09:57:50 —-A—- C:\Windows\system32\MPSSVC.dll
2013-12-26 09:57:50 —-A—- C:\Windows\system32\dwmcore.dll
2013-12-26 09:57:50 —-A—- C:\Windows\system32\diagperf.dll
2013-12-26 09:57:49 —-A—- C:\Windows\system32\WinSAT.exe
2013-12-26 09:57:49 —-A—- C:\Windows\system32\umrdp.dll
2013-12-26 09:57:49 —-A—- C:\Windows\system32\TSWorkspace.dll
2013-12-26 09:57:49 —-A—- C:\Windows\system32\tsmf.dll
2013-12-26 09:57:49 —-A—- C:\Windows\system32\dot3api.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\winhttp.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\VSSVC.exe
2013-12-26 09:57:48 —-A—- C:\Windows\system32\setupapi.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\rdpshell.exe
2013-12-26 09:57:48 —-A—- C:\Windows\system32\netlogon.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\netcfgx.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\MSVidCtl.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\drivers\nvstor.sys
2013-12-26 09:57:48 —-A—- C:\Windows\system32\dbgeng.dll
2013-12-26 09:57:48 —-A—- C:\Windows\system32\apphelp.dll
2013-12-26 09:57:47 —-A—- C:\Windows\system32\WsmSvc.dll
2013-12-26 09:57:47 —-A—- C:\Windows\system32\WMVDECOD.DLL
2013-12-26 09:57:47 —-A—- C:\Windows\system32\winlogon.exe
2013-12-26 09:57:47 —-A—- C:\Windows\system32\user32.dll
2013-12-26 09:57:47 —-A—- C:\Windows\system32\Query.dll
2013-12-26 09:57:47 —-A—- C:\Windows\system32\gpprefcl.dll
2013-12-26 09:57:47 —-A—- C:\Windows\system32\drivers\srv.sys
2013-12-26 09:57:47 —-A—- C:\Windows\system32\advapi32.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\upnp.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\sppobjs.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\netfxperf.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\msv1_0.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\msdrm.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\mmcndmgr.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\lsm.exe
2013-12-26 09:57:46 —-A—- C:\Windows\system32\imapi2fs.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\DShowRdpFilter.dll
2013-12-26 09:57:46 —-A—- C:\Windows\system32\drivers\srv2.sys
2013-12-26 09:57:46 —-A—- C:\Windows\system32\drivers\nvraid.sys
2013-12-26 09:57:46 —-A—- C:\Windows\system32\drivers\csc.sys
2013-12-26 09:57:46 —-A—- C:\Windows\system32\authui.dll
2013-12-26 09:57:45 —-A—- C:\Windows\system32\usp10.dll
2013-12-26 09:57:45 —-A—- C:\Windows\system32\shlwapi.dll
2013-12-26 09:57:45 —-A—- C:\Windows\system32\SessEnv.dll
2013-12-26 09:57:45 —-A—- C:\Windows\system32\PortableDeviceApi.dll
2013-12-26 09:57:45 —-A—- C:\Windows\system32\mcbuilder.exe
2013-12-26 09:57:44 —-A—- C:\Windows\system32\xpsservices.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\winload.exe
2013-12-26 09:57:44 —-A—- C:\Windows\system32\WebClnt.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\userenv.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\umpnpmgr.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\sppwinob.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\rpcss.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\iphlpsvc.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\drvstore.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\comdlg32.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\certmgr.dll
2013-12-26 09:57:44 —-A—- C:\Windows\system32\audiosrv.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\Wldap32.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\win32spl.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\rdpendp.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\propsys.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\nlasvc.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\mfds.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\framedynos.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\drivers\volsnap.sys
2013-12-26 09:57:43 —-A—- C:\Windows\system32\dnsapi.dll
2013-12-26 09:57:43 —-A—- C:\Windows\system32\cmd.exe
2013-12-26 09:57:43 —-A—- C:\Windows\system32\BFE.DLL
2013-12-26 09:57:42 —-A—- C:\Windows\system32\wmicmiplugin.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\winresume.exe
2013-12-26 09:57:42 —-A—- C:\Windows\system32\werconcpl.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\themeui.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\samsrv.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\rdpclip.exe
2013-12-26 09:57:42 —-A—- C:\Windows\system32\ncsi.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\drivers\netio.sys
2013-12-26 09:57:42 —-A—- C:\Windows\system32\drivers\ndis.sys
2013-12-26 09:57:42 —-A—- C:\Windows\system32\cscsvc.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\azroles.dll
2013-12-26 09:57:42 —-A—- C:\Windows\system32\appmgr.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\taskeng.exe
2013-12-26 09:57:41 —-A—- C:\Windows\system32\taskcomp.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\spp.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\rdpinit.exe
2013-12-26 09:57:41 —-A—- C:\Windows\system32\NaturalLanguage6.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\msxml3.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\mswsock.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\mfreadwrite.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\drivers\storport.sys
2013-12-26 09:57:41 —-A—- C:\Windows\system32\drivers\http.sys
2013-12-26 09:57:41 —-A—- C:\Windows\system32\dhcpcore.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\dbghelp.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\credui.dll
2013-12-26 09:57:41 —-A—- C:\Windows\system32\basecsp.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\WinSATAPI.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\vpnike.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\UIRibbon.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\srvsvc.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\sqlsrv32.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\spoolsv.exe
2013-12-26 09:57:40 —-A—- C:\Windows\system32\QAGENTRT.DLL
2013-12-26 09:57:40 —-A—- C:\Windows\system32\lpksetup.exe
2013-12-26 09:57:40 —-A—- C:\Windows\system32\gdi32.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\fveapi.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\evr.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\drivers\mrxdav.sys
2013-12-26 09:57:40 —-A—- C:\Windows\system32\drivers\amdsata.sys
2013-12-26 09:57:40 —-A—- C:\Windows\system32\drivers\1394ohci.sys
2013-12-26 09:57:40 —-A—- C:\Windows\system32\cryptsvc.dll
2013-12-26 09:57:40 —-A—- C:\Windows\system32\calc.exe
2013-12-26 09:57:39 —-A—- C:\Windows\system32\ws2_32.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\tspubwmi.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\sxs.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\stobject.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\prncache.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\printui.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\netshell.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\inetpp.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\hgprint.dll
2013-12-26 09:57:39 —-A—- C:\Windows\system32\drivers\rdbss.sys
2013-12-26 09:57:39 —-A—- C:\Windows\system32\drivers\msdsm.sys
2013-12-26 09:57:39 —-A—- C:\Windows\system32\drivers\fvevol.sys
2013-12-26 09:57:39 —-A—- C:\Windows\system32\comctl32.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\WSDApi.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\WMVCORE.DLL
2013-12-26 09:57:38 —-A—- C:\Windows\system32\wmpeffects.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\wlangpui.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\vds.exe
2013-12-26 09:57:38 —-A—- C:\Windows\system32\scansetting.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\rpchttp.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\net1.exe
2013-12-26 09:57:38 —-A—- C:\Windows\system32\MMDevAPI.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\FXSSVC.exe
2013-12-26 09:57:38 —-A—- C:\Windows\system32\drivers\vmbus.sys
2013-12-26 09:57:38 —-A—- C:\Windows\system32\drivers\pci.sys
2013-12-26 09:57:38 —-A—- C:\Windows\system32\dps.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\dnsrslvr.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\davclnt.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\ci.dll
2013-12-26 09:57:38 —-A—- C:\Windows\system32\aitagent.exe
2013-12-26 09:57:38 —-A—- C:\Windows\system32\aepdu.dll
2013-12-26 09:57:37 —-A—- C:\Windows\system32\t2embed.dll
2013-12-26 09:57:37 —-A—- C:\Windows\system32\QSHVHOST.DLL
2013-12-26 09:57:37 —-A—- C:\Windows\system32\pnidui.dll
2013-12-26 09:57:37 —-A—- C:\Windows\system32\IPSECSVC.DLL
2013-12-26 09:57:37 —-A—- C:\Windows\system32\drivers\usbport.sys
2013-12-26 09:57:37 —-A—- C:\Windows\system32\consent.exe
2013-12-26 09:57:37 —-A—- C:\Windows\system32\aaclient.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\wscapi.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\wpdshext.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\wisptis.exe
2013-12-26 09:57:36 —-A—- C:\Windows\system32\WinSCard.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\webservices.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\vmicsvc.exe
2013-12-26 09:57:36 —-A—- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\tscfgwmi.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\SyncCenter.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\sdengin2.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\scrptadm.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\pla.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\netdiagfx.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\MSMPEG2ENC.DLL
2013-12-26 09:57:36 —-A—- C:\Windows\system32\msasn1.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\mcmde.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\fde.dll
2013-12-26 09:57:36 —-A—- C:\Windows\system32\drivers\vhdmp.sys
2013-12-26 09:57:36 —-A—- C:\Windows\system32\drivers\termdd.sys
2013-12-26 09:57:36 —-A—- C:\Windows\system32\drivers\sbp2port.sys
2013-12-26 09:57:36 —-A—- C:\Windows\system32\drivers\rdpdr.sys
2013-12-26 09:57:36 —-A—- C:\Windows\system32\drivers\amdxata.sys
2013-12-26 09:57:36 —-A—- C:\Windows\system32\cscobj.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\WUDFSvc.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\WMPEncEn.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\winsta.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\wiaservc.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\shsvcs.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\setupcl.exe
2013-12-26 09:57:35 —-A—- C:\Windows\system32\onex.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\imapi2.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\gameux.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\DXPTaskRingtone.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\dwmredir.dll
2013-12-26 09:57:35 —-A—- C:\Windows\system32\drivers\msahci.sys
2013-12-26 09:57:35 —-A—- C:\Windows\system32\drivers\acpi.sys
2013-12-26 09:57:35 —-A—- C:\Windows\system32\aeinv.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\winmm.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\wcncsvc.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\vaultsvc.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\umpo.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\thumbcache.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\tcpipcfg.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\TabSvc.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\srchadmin.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\schtasks.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\samcli.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\regapi.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\rasmans.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\QAGENT.DLL
2013-12-26 09:57:34 —-A—- C:\Windows\system32\proquota.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\powercpl.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\netiohlp.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\netid.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\Narrator.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\msutb.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\msinfo32.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\msihnd.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\mscorier.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\mimefilt.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\ipsmsnap.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\IPHLPAPI.DLL
2013-12-26 09:57:34 —-A—- C:\Windows\system32\hbaapi.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\halmacpi.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\hal.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\framedyn.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\eapphost.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\DXP.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\winusb.sys
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\volmgr.sys
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\USBSTOR.SYS
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\udfs.sys
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\srvnet.sys
2013-12-26 09:57:34 —-A—- C:\Windows\system32\drivers\netbt.sys
2013-12-26 09:57:34 —-A—- C:\Windows\system32\bootres.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\autofmt.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\autoconv.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\autochk.exe
2013-12-26 09:57:34 —-A—- C:\Windows\system32\AudioSes.dll
2013-12-26 09:57:34 —-A—- C:\Windows\system32\audiodg.exe
2013-12-26 09:57:33 —-A—- C:\Windows\system32\WMNetMgr.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\wlanpref.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\wdc.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\Vault.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\untfs.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\taskmgr.exe
2013-12-26 09:57:33 —-A—- C:\Windows\system32\StructuredQuery.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\sppsvc.exe
2013-12-26 09:57:33 —-A—- C:\Windows\system32\sdclt.exe
2013-12-26 09:57:33 —-A—- C:\Windows\system32\scesrv.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\RpcRtRemote.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\Robocopy.exe
2013-12-26 09:57:33 —-A—- C:\Windows\system32\rastls.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\oleaut32.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\nci.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\ListSvc.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\DxpTaskSync.dll
2013-12-26 09:57:33 —-A—- C:\Windows\system32\drivers\ataport.sys
2013-12-26 09:57:33 —-A—- C:\Windows\system32\actxprxy.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\XpsRasterService.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\wiadefui.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\userinit.exe
2013-12-26 09:57:32 —-A—- C:\Windows\system32\termmgr.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\sppcomapi.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\shsetup.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\sharemediacpl.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\rasppp.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\puiobj.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\mtxclu.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\msdtctm.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\msdri.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\msconfig.exe
2013-12-26 09:57:32 —-A—- C:\Windows\system32\logoncli.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\FirewallControlPanel.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\eudcedit.exe
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\winhv.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\vmstorfl.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\usbvideo.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\usbehci.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\storvsc.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\scsiport.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\mpio.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\mountmgr.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\drivers\iaStorV.sys
2013-12-26 09:57:32 —-A—- C:\Windows\system32\Display.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\DiagCpl.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\cscui.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\cabview.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\biocpl.dll
2013-12-26 09:57:32 —-A—- C:\Windows\system32\atmfd.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\wpccpl.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\wkssvc.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\usercpl.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\themecpl.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\tapisrv.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\SndVolSSO.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\SensorsCpl.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\scecli.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\PhotoScreensaver.scr
2013-12-26 09:57:31 —-A—- C:\Windows\system32\PerfCenterCPL.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\mscories.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\mscms.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\mprddm.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\localsec.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\KMSVC.DLL
2013-12-26 09:57:31 —-A—- C:\Windows\system32\iasacct.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\hgcpl.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\FWPUCLNT.DLL
2013-12-26 09:57:31 —-A—- C:\Windows\system32\fontext.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\drivers\usbhub.sys
2013-12-26 09:57:31 —-A—- C:\Windows\system32\drivers\rdyboost.sys
2013-12-26 09:57:31 —-A—- C:\Windows\system32\drivers\BTHUSB.SYS
2013-12-26 09:57:31 —-A—- C:\Windows\system32\dnscmmc.dll
2013-12-26 09:57:31 —-A—- C:\Windows\system32\bcdsrv.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\zipfldr.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\wpdbusenum.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\wlanui.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\wksprt.exe
2013-12-26 09:57:30 —-A—- C:\Windows\system32\w32tm.exe
2013-12-26 09:57:30 —-A—- C:\Windows\system32\VAN.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\spwizeng.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\SndVol.exe
2013-12-26 09:57:30 —-A—- C:\Windows\system32\qedit.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\prntvpt.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\networkmap.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\netjoin.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\netcenter.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\MSAC3ENC.DLL
2013-12-26 09:57:30 —-A—- C:\Windows\system32\mblctr.exe
2013-12-26 09:57:30 —-A—- C:\Windows\system32\fdeploy.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\drivers\ks.sys
2013-12-26 09:57:30 —-A—- C:\Windows\system32\drivers\afd.sys
2013-12-26 09:57:30 —-A—- C:\Windows\system32\cryptui.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\batmeter.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\azroleui.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\adsldp.dll
2013-12-26 09:57:30 —-A—- C:\Windows\system32\accessibilitycpl.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\wusa.exe
2013-12-26 09:57:29 —-A—- C:\Windows\system32\wpd_ci.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\taskbarcpl.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\syncui.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\sud.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\slui.exe
2013-12-26 09:57:29 —-A—- C:\Windows\system32\sisbkup.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\shwebsvc.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\sdcpl.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\recovery.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\prnfldr.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\photowiz.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\OnLineIDCpl.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\mspbda.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\msieftp.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\MediaMetadataHandler.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\iprtrmgr.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\ifsutil.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\iasrad.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\halacpi.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\ftp.exe
2013-12-26 09:57:29 —-A—- C:\Windows\system32\Faultrep.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\efscore.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\drivers\hidclass.sys
2013-12-26 09:57:29 —-A—- C:\Windows\system32\dot3cfg.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\defaultlocationcpl.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\credssp.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\cfgmgr32.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\autoplay.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\ActionCenterCPL.dll
2013-12-26 09:57:29 —-A—- C:\Windows\system32\ActionCenter.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wvc.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wtsapi32.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wsqmcons.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wmpsrcwp.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wmpmde.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wlanmsm.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wimgapi.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\wavemsp.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\vdsutil.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\tzutil.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\systemcpl.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\sysclass.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\sppnp.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\sethc.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\rtutils.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\riched20.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\recdisc.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\ReAgent.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\rdpsign.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\provsvc.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\OobeFldr.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\ocsetup.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\ntprint.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\ntlanman.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\nshwfp.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\nshipsec.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\nlaapi.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\netplwiz.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\NAPHLPR.DLL
2013-12-26 09:57:28 —-A—- C:\Windows\system32\msftedit.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\migisol.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\isoburn.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\httpapi.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\fvecpl.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\fsquirt.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\fms.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dsuiext.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dskquoui.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\drivers\tssecsrv.sys
2013-12-26 09:57:28 —-A—- C:\Windows\system32\drivers\tdx.sys
2013-12-26 09:57:28 —-A—- C:\Windows\system32\drivers\ndproxy.sys
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dpx.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dot3ui.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dot3svc.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\dfrgui.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\DeviceCenter.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\blackbox.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\bcdedit.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\bcdboot.exe
2013-12-26 09:57:28 —-A—- C:\Windows\system32\AxInstSv.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\asycfilt.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\appinfo.dll
2013-12-26 09:57:28 —-A—- C:\Windows\system32\activeds.dll
2013-12-26 09:57:27 —-A—- C:\Windows\twain_32.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\wwanconn.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\WPDShServiceObj.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\wmdrmsdk.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\wimserv.exe
2013-12-26 09:57:27 —-A—- C:\Windows\system32\uxlib.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\twext.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\TSpkg.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\ssText3d.scr
2013-12-26 09:57:27 —-A—- C:\Windows\system32\srrstr.dll
2013-12-26 09:57:27 —-A—- C:\Windows\system32\SmiEngine.dll