laatse
2014-02-28 19:45:45 A10B048B681C38E26CA90CD1BC123604 200192 —-a-w- C:\Windows\Sysnative\syncui.dll
2014-02-28 19:45:45 55DE45B116711881C852D2841E4C84DD 253440 —-a-w- C:\Windows\Sysnative\tcpipcfg.dll
2014-02-28 19:45:45 0A98C4E4975F5D735F8361FFEBF2793D 171520 —-a-w- C:\Windows\Sysnative\fde.dll
2014-02-28 19:45:44 D7F1EF374A90709B31591823B002F918 225280 —-a-w- C:\Windows\Sysnative\SndVolSSO.dll
2014-02-28 19:45:44 C3489639EC8E181044F6C6BFD3D01AC9 273920 —-a-w- C:\Windows\Sysnative\SndVol.exe
2014-02-28 19:45:44 7D5645EE0EA77D539828433D9B95F5EB 217600 —-a-w- C:\Windows\Sysnative\WinSCard.dll
2014-02-28 19:45:44 3A9C9BAF610B0DD4967086040B3B62A9 128000 —-a-w- C:\Windows\Sysnative\srvcli.dll
2014-02-28 19:45:43 F8297797CC1993E25B8967D6032BFB31 1098240 —-a-w- C:\Windows\Sysnative\Vault.dll
2014-02-28 19:45:43 E811F8510B133E70CF6E509FB809824F 36352 —-a-w- C:\Windows\Sysnative\wdiasqmmodule.dll
2014-02-28 19:45:43 D2A0FFA75AB181B19B5EB93BB29C7686 321536 —-a-w- C:\Windows\Sysnative\unimdm.tsp
2014-02-28 19:45:43 CEED624D1291081B1B7D921FBB9C61D9 14848 —-a-w- C:\Windows\Sysnative\tsbyuv.dll
2014-02-28 19:45:43 C4BFE4B61086416B0529212F92BCE081 24064 —-a-w- C:\Windows\Sysnative\schedcli.dll
2014-02-28 19:45:43 9EB716B82B5CB2E26524BC3A37FB7BA2 358400 —-a-w- C:\Windows\Sysnative\wmpdxm.dll
2014-02-28 19:45:43 7DB5AA22A8A8E5C2D335F44853C1F6DE 529408 —-a-w- C:\Windows\Sysnative\wbemcomn.dll
2014-02-28 19:45:43 78F4E7F5C56CB9716238EB57DA4B6A75 1504256 —-a-w- C:\Windows\Sysnative\wbengine.exe
2014-02-28 19:45:43 77B5035BC6EDF4D1B6265391AECEE4C0 38912 —-a-w- C:\Windows\Sysnative\vpnikeapi.dll
2014-02-28 19:45:43 0FE5CD5F9C9248F42D1EF56E495B182E 263168 —-a-w- C:\Windows\Sysnative\vpnike.dll
2014-02-28 19:45:42 F38FA28124B1F9A7676A08CE2980344C 187904 —-a-w- C:\Windows\Sysnative\rpchttp.dll
2014-02-28 19:45:42 B9F0A4020AA98B7A20287BF7FE99A1FD 107520 —-a-w- C:\Windows\Sysnative\QUTIL.DLL
2014-02-28 19:45:42 A1CDE92DDC170D307DB3C5BAA348811B 183808 —-a-w- C:\Windows\Sysnative\prncache.dll
2014-02-28 19:45:42 97E0EC3D6D99E8CC2B17EF2D3760E8FC 285696 —-a-w- C:\Windows\Sysnative\schtasks.exe
2014-02-28 19:45:41 F890B16A75982537CDDDD1F5F8298337 23040 —-a-w- C:\Windows\Sysnative\rdprefdrvapi.dll
2014-02-28 19:45:41 EAF32CB8C1F810E4715B4DFBE785C7FF 448512 —-a-w- C:\Windows\Sysnative\shlwapi.dll
2014-02-28 19:45:41 B3F03B594E7A6353273D43F6E7EA1D25 2250752 —-a-w- C:\Windows\Sysnative\SensorsCpl.dll
2014-02-28 19:45:41 5D8E6C95156ED1F79A63D1EADE6F9ED5 1900544 —-a-w- C:\Windows\Sysnative\setupapi.dll
2014-02-28 19:45:41 4E9C2DB10F7E6AE91BF761139D4B745B 135168 —-a-w- C:\Windows\Sysnative\shacct.dll
2014-02-28 19:45:41 2F6DA6A2C092BC61F0324E3C52935252 146944 —-a-w- C:\Windows\Sysnative\recovery.dll
2014-02-28 19:45:39 E674F9D3B685167F6C83EAE8BEF7F567 41472 —-a-w- C:\Windows\Sysnative\mciqtz32.dll
2014-02-28 19:45:39 988121D083B7AB61D4A7E244290BAAB0 50176 —-a-w- C:\Windows\Sysnative\lsmproxy.dll
2014-02-28 19:45:39 89C92686DED63EEAF1DB03F97A1898F2 433512 —-a-w- C:\Windows\Sysnative\MCEWMDRMNDBootstrap.dll
2014-02-28 19:45:39 6E90B7A6C66355AA8DDC5CABF6073DE1 497664 —-a-w- C:\Windows\Sysnative\main.cpl
2014-02-28 19:45:39 3EEC0FB1DDD317AA1E8933B912439736 146944 —-a-w- C:\Windows\Sysnative\MdSched.exe
2014-02-28 19:45:38 F8051F06E1C4AA3F2EFE4402AF5919B1 91648 —-a-w- C:\Windows\Sysnative\isoburn.exe
2014-02-28 19:45:38 EFDFB3DD38A4376F93E7985173813ABD 232448 —-a-w- C:\Windows\Sysnative\ListSvc.dll
2014-02-28 19:45:38 BCEA9AB347E53BC03B2E36BE0B8BA0EF 45056 —-a-w- C:\Windows\Sysnative\httpapi.dll
2014-02-28 19:45:38 A5C09AA0017428B30BE3423CB84DEB61 152064 —-a-w- C:\Windows\Sysnative\iscsicli.exe
2014-02-28 19:45:38 77EC39CBFDDD4B54F741B27004882542 8192 —-a-w- C:\Windows\Sysnative\KBDCZ1.DLL
2014-02-28 19:45:38 4C6F525A346E80A8834CE2E7A870B203 198656 —-a-w- C:\Windows\Sysnative\iasrecst.dll
2014-02-28 19:45:38 2C2FBB6DC3CE8FAF4AB2F7C6C5071C4C 373248 —-a-w- C:\Windows\Sysnative\intl.cpl
2014-02-28 19:45:38 28E9FE419779A4DB32F841CE8B572139 7168 —-a-w- C:\Windows\Sysnative\KBDMAORI.DLL
2014-02-28 19:45:38 22D98BF27F3DAE2B3E9559B9C40D49A1 37376 —-a-w- C:\Windows\Sysnative\iscsium.dll
2014-02-28 19:45:38 1F9860C03FAC9A1052C96837649D7723 7680 —-a-w- C:\Windows\Sysnative\KBDINTAM.DLL
2014-02-28 19:45:38 174E2AF0968A86D5FBFA7B00C79677B6 7168 —-a-w- C:\Windows\Sysnative\KBDTURME.DLL
2014-02-28 19:45:38 166930BF9AC87B8DC52EC4F77821D4B1 7680 —-a-w- C:\Windows\Sysnative\KBDGR1.DLL
2014-02-28 19:45:37 56BEB546F3F6EEAAAD5759E0B32E7C58 1689600 —-a-w- C:\Windows\Sysnative\netcenter.dll
2014-02-28 19:45:37 0FE14E3B3C0DAA77DFB5B60E1D274D6F 215552 —-a-w- C:\Windows\Sysnative\netiohlp.dll
2014-02-28 19:45:37 03706015DB44368375AEBE6339490E66 519680 —-a-w- C:\Windows\Sysnative\netcfgx.dll
2014-02-28 19:45:37 01E2855FB06C422E721D890AF201C2D7 1326080 —-a-w- C:\Windows\Sysnative\NaturalLanguage6.dll
2014-02-28 19:45:37 0191E738BF521FE6EC567148E73C086B 3650560 —-a-w- C:\Windows\Sysnative\MSVidCtl.dll
2014-02-28 19:45:36 FDC385A0F7D7DD880C4622D1DF08ABE9 344576 —-a-w- C:\Windows\Sysnative\ntprint.dll
2014-02-28 19:45:36 B23E4D796A3FEB91241A806EC18D5C32 395776 —-a-w- C:\Windows\Sysnative\nltest.exe
2014-02-28 19:45:36 ACB4F32174EB5066D4684369CEA925E9 372736 —-a-w- C:\Windows\Sysnative\mtxclu.dll
2014-02-28 19:45:35 2DF29664ED261F0FC448E58F338F0671 221184 —-a-w- C:\Windows\Sysnative\mprapi.dll
2014-02-28 19:45:34 F7A256EC899C72B4ECDD2C02CB592EFD 721408 —-a-w- C:\Windows\Sysnative\bthprops.cpl
2014-02-28 19:45:34 D027C5FDA1072C099165725AB8A54165 5120 —-a-w- C:\Windows\Sysnative\msdxm.ocx
2014-02-28 19:45:34 C58193D44CF096225288E351611C77A3 14848 —-a-w- C:\Windows\Sysnative\BWUnpairElevated.dll
2014-02-28 19:45:34 80F720E3C6B85A5FA9F359F881510880 1509888 —-a-w- C:\Windows\Sysnative\msdtctm.dll
2014-02-28 19:45:34 28A7D7C7E2FDD1D55F12F750CD6331EC 1160192 —-a-w- C:\Windows\Sysnative\MSMPEG2ENC.DLL
2014-02-28 19:45:34 26653D1C26E9E2AA5DD596354BA9FAF3 2217856 —-a-w- C:\Windows\Sysnative\bootres.dll
2014-02-28 19:45:33 894B39B50E4FD1580884085D59352839 233984 —-a-w- C:\Windows\Sysnative\defaultlocationcpl.dll
2014-02-28 19:45:32 5746BD7E255DD6A8AFA06F7C42C1BA41 345088 —-a-w- C:\Windows\Sysnative\cmd.exe
2014-02-28 19:45:30 F832EEEA97CDDA1AF577E721F652A0D1 749568 —-a-w- C:\Windows\Sysnative\batmeter.dll
2014-02-28 19:45:30 F23FEF6D569FCE88671949894A8BECF1 679424 —-a-w- C:\Windows\Sysnative\audiosrv.dll
2014-02-28 19:45:30 DDB88D0BB116D468B2B3EFBB6E3D6D06 122880 —-a-w- C:\Windows\Sysnative\aitagent.exe
2014-02-28 19:45:30 DC220AE6F64819099F7EBD6F137E32E7 296448 —-a-w- C:\Windows\Sysnative\AudioSes.dll
2014-02-28 19:45:30 D5CCA1453B98A5801E6D5FF0FF89DC6C 126464 —-a-w- C:\Windows\Sysnative\audiodg.exe
2014-02-28 19:45:30 D027C5FDA1072C099165725AB8A54165 5120 —-a-w- C:\Windows\Sysnative\dxmasf.dll
2014-02-28 19:45:30 CF1A231594E1B7D59D9279FAA38AD4C2 348160 —-a-w- C:\Windows\Sysnative\eapp3hst.dll
2014-02-28 19:45:30 C3F3509C9127B1EFF9012CBC152ADF56 793088 —-a-w- C:\Windows\Sysnative\autoconv.exe
2014-02-28 19:45:30 9BDAEBDBDE7B98068F7F59E51476160C 103936 —-a-w- C:\Windows\Sysnative\eappgnui.dll
2014-02-28 19:45:30 87356377F31DA5F20A833811CD59499C 303616 —-a-w- C:\Windows\Sysnative\eapphost.dll
2014-02-28 19:45:30 7C58DEFD1306691C43837CEC18BC64A3 279552 —-a-w- C:\Windows\Sysnative\dxdiagn.dll
2014-02-28 19:45:30 6B3E852970892B3033DC996C282C2C93 89088 —-a-w- C:\Windows\Sysnative\amstream.dll
2014-02-28 19:45:30 2A436796758BF2555A26C770FE8A6FEE 74240 —-a-w- C:\Windows\Sysnative\fdProxy.dll
2014-02-28 19:45:30 29409ED7400CA5BCCC30C0EE5147A60D 24576 —-a-w- C:\Windows\Sysnative\bitsperf.dll
2014-02-28 19:45:30 25871B7114005B04B24A5114CD5234CF 31744 —-a-w- C:\Windows\Sysnative\AzSqlExt.dll
2014-02-28 19:45:30 0ADD464D92D6189A7697C0C5BBEE1909 897536 —-a-w- C:\Windows\Sysnative\azroles.dll
2014-02-28 19:45:29 C418F8085C61D3B6911EE82157CA3775 78848 —-a-w- C:\Windows\Sysnative\hbaapi.dll
2014-02-28 19:45:29 62D2B05F7426D4735F50DC207D569281 279040 —-a-w- C:\Windows\Sysnative\framedyn.dll
2014-02-28 19:45:29 1484B9EBF567346582DE571B0E164AE0 295936 —-a-w- C:\Windows\Sysnative\framedynos.dll
2014-02-28 19:45:28 3DA66EF520D45081DCFFDAECD3DE17C8 61440 —-a-w- C:\Windows\Sysnative\djoin.exe
2014-02-28 19:45:27 FE70103391A64039A921DBFFF9C7AB1B 1008128 —-a-w- C:\Windows\Sysnative\user32.dll
2014-02-28 19:45:27 E3C61FD7B7C2557E1F1B0B4CEC713585 92672 —-a-w- C:\Windows\Sysnative\TabSvc.dll
2014-02-28 19:45:27 E1DCEE9E3EC0522DF24397BE1A64E449 1942856 —-a-w- C:\Windows\Sysnative\dfshim.dll
2014-02-28 19:45:27 B26F4F737E8F9DF4F31AF6CF31D05820 162816 —-a-w- C:\Windows\Sysnative\dps.dll
2014-02-28 19:45:27 6DC4A7242F565C9E9C9CCC7BB0FA75C7 473600 —-a-w- C:\Windows\Sysnative\taskcomp.dll
2014-02-28 19:45:27 65EA57712340C09B1B0C427B4848AE05 464384 —-a-w- C:\Windows\Sysnative\taskeng.exe
2014-02-28 19:45:27 6369F960C28A16F4502C480EEDE3652C 399872 —-a-w- C:\Windows\Sysnative\dpx.dll
2014-02-28 19:45:27 2472BDF30C62F3E81AE27A968C25608C 73216 —-a-w- C:\Windows\Sysnative\unimdmat.dll
2014-02-28 19:45:26 EC84D7DCAE6AE0FE87EE5D4F0D50DC55 769536 —-a-w- C:\Windows\Sysnative\sud.dll
2014-02-28 19:45:26 BE5A0F4022E998E9319EA39598B427EA 9728 —-a-w- C:\Windows\Sysnative\spwmp.dll
2014-02-28 19:45:26 9864D52F15AD32094A636C6B5281D9E7 3027968 —-a-w- C:\Windows\Sysnative\WMVCORE.DLL
2014-02-28 19:45:26 8DEDB880C3CB1B7024F2C8EE2F3E1151 333824 —-a-w- C:\Windows\Sysnative\ssText3d.scr
2014-02-28 19:45:26 2B373B5F7E36B5ED5DA176D4400EF091 1082880 —-a-w- C:\Windows\Sysnative\sppobjs.dll
2014-02-28 19:45:25 F149E8CAE538DBF7059B00326673F602 1024512 —-a-w- C:\Windows\Sysnative\wmpmde.dll
2014-02-28 19:45:25 E62E6C6E0ECE74CD8345808F5A5F9F00 414208 —-a-w- C:\Windows\Sysnative\wlanui.dll
2014-02-28 19:45:25 B86399C64A19EB45519466413FA5E361 1441280 —-a-w- C:\Windows\Sysnative\wlanpref.dll
2014-02-28 19:45:25 4E4FFB09D895AA000DD56D1404F69A7E 312832 —-a-w- C:\Windows\Sysnative\Wldap32.dll
2014-02-28 19:45:25 0D9764D58C5EFD672B7184854B152E5E 235008 —-a-w- C:\Windows\Sysnative\winsta.dll
2014-02-28 19:45:25 02E20372D9D6D28E37BA9704EDC90B67 405504 —-a-w- C:\Windows\Sysnative\wisptis.exe
2014-02-28 19:45:24 C1A8C1D804EFB14D344E958BC6AA572C 61952 —-a-w- C:\Windows\Sysnative\WavDest.dll
2014-02-28 19:45:24 AC3D7EE5F9EC2AB4BE0CDDE362D026A4 190976 —-a-w- C:\Windows\Sysnative\vdsbas.dll
2014-02-28 19:45:24 748849C42DEA24C723048E24BCA1BD55 47104 —-a-w- C:\Windows\Sysnative\wshbth.dll
2014-02-28 19:45:24 3D840598CECAAE8470804918EE5A00B5 3008000 —-a-w- C:\Windows\Sysnative\xpsservices.dll
2014-02-28 19:45:24 021287C2050FD5DB4A8B084E2C38139C 501248 —-a-w- C:\Windows\Sysnative\WinSATAPI.dll
2014-02-28 19:45:23 FA2F60F09DDF459CB4AA9DE8A83B65B3 68096 —-a-w- C:\Windows\Sysnative\rdpd3d.dll
2014-02-28 19:45:23 A717A35120DBAB5AB707AB40662AF9DD 211456 —-a-w- C:\Windows\Sysnative\rasppp.dll
2014-02-28 19:45:22 EC5F6EE00337DB400229B69FB43F92C5 124416 —-a-w- C:\Windows\Sysnative\QSVRMGMT.DLL
2014-02-28 19:45:22 DE418798DA91AAA067A2EF41D8A7B886 429568 —-a-w- C:\Windows\Sysnative\puiobj.dll
2014-02-28 19:45:22 DD853B7E91F22F842B8C8CB5096EE3B3 223232 —-a-w- C:\Windows\Sysnative\QSHVHOST.DLL
2014-02-28 19:45:22 605A399F42B09D6147DDAC2C7851BD36 254464 —-a-w- C:\Windows\Sysnative\qasf.dll
2014-02-28 19:45:21 9498656CAE8A5047B9CD4C69075FF66B 153088 —-a-w- C:\Windows\Sysnative\remotepg.dll
2014-02-28 19:45:21 8CE1C165396F2453012B3E23ADD9DF76 313856 —-a-w- C:\Windows\Sysnative\ReAgent.dll
2014-02-28 19:45:21 4E39FFB3BEB58A232429E44C60ED1264 199168 —-a-w- C:\Windows\Sysnative\PkgMgr.exe
2014-02-28 19:45:20 C7CF6A6E137463219E1259E3F0F0DD6C 1389056 —-a-w- C:\Windows\Sysnative\pla.dll
2014-02-28 19:45:20 8A1846C0817513AD18BA48B4427771FC 320352 —-a-w- C:\Windows\Sysnative\PresentationHost.exe
2014-02-28 19:45:20 55EDFADBEFB5B1C28DCE340DDCD2206E 486400 —-a-w- C:\Windows\Sysnative\powercpl.dll
2014-02-28 19:45:20 19A6EDD4236403AE9869D12BEDF2B11E 409600 —-a-w- C:\Windows\Sysnative\photowiz.dll
2014-02-28 19:45:19 CF6850A72BEB4845A3BFFB3F5E8014B2 300032 —-a-w- C:\Windows\Sysnative\pdh.dll
2014-02-28 19:45:19 C6B0B5AA20C8E51234A039472ABA75B2 88576 —-a-w- C:\Windows\Sysnative\setupcl.exe
2014-02-28 19:45:19 C5AC93CF3BA30D367FB49148A2B673B9 48128 —-a-w- C:\Windows\Sysnative\PrintIsolationProxy.dll
2014-02-28 19:45:19 908ACB1F594274965A53926B10C81E89 187904 —-a-w- C:\Windows\Sysnative\provsvc.dll
2014-02-28 19:45:19 33E4AFE6DCBC638771AFD25D556D8E5D 109928 —-a-w- C:\Windows\Sysnative\PresentationHostProxy.dll
2014-02-28 19:45:19 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 416256 —-a-w- C:\Windows\Sysnative\prnfldr.dll
2014-02-28 19:45:19 0B6231BF38174A1628C4AC812CC75804 121856 —-a-w- C:\Windows\Sysnative\SessEnv.dll
2014-02-28 19:45:18 FC51229C7D4AFA0D6F186133728B95AB 67584 —-a-w- C:\Windows\Sysnative\samcli.dll
2014-02-28 19:45:18 F1D89890A434B46242DFB73EB2DAEE5A 28160 —-a-w- C:\Windows\Sysnative\shgina.dll
2014-02-28 19:45:18 C2A8CB1275ECB85D246A9ECC02A728E3 65536 —-a-w- C:\Windows\Sysnative\RpcRtRemote.dll
2014-02-28 19:45:18 A744BA6E04C8AA4592818178DBF89521 758784 —-a-w- C:\Windows\Sysnative\samsrv.dll
2014-02-28 19:45:18 00EED37FFA36C9FCF8370160596B891E 37376 —-a-w- C:\Windows\Sysnative\shimgvw.dll
2014-02-28 19:45:16 E19D102BAF266F34592F7C742FBFA886 300032 —-a-w- C:\Windows\Sysnative\msconfig.exe
2014-02-28 19:45:16 B6D6886149573278CBA6ABD44C4317F5 15360 —-a-w- C:\Windows\Sysnative\slwga.dll
2014-02-28 19:45:16 67B6B783979C8CF96DCCC2813CB21C10 24064 —-a-w- C:\Windows\Sysnative\sisbkup.dll
2014-02-28 19:45:16 431DC374BB338D99400B24FAC576D7D1 130048 —-a-w- C:\Windows\Sysnative\shsetup.dll
2014-02-28 19:45:16 3BCB70DA9B5A2011E01E35ED29A3F3F3 279040 —-a-w- C:\Windows\Sysnative\sethc.exe
2014-02-28 19:45:15 9F4EA339FD6315CBDC4E543B2A222F45 524288 —-a-w- C:\Windows\Sysnative\wmicmiplugin.dll
2014-02-28 19:45:15 56DAA6A090E528BD938B08616434717C 132608 —-a-w- C:\Windows\Sysnative\wmpshell.dll
2014-02-28 19:45:14 DD48B7D93771674F330763613AA7C095 472064 —-a-w- C:\Windows\Sysnative\azroleui.dll
2014-02-28 19:45:14 8A25506B6948EFBD5A7F37E53CCD36D9 86016 —-a-w- C:\Windows\Sysnative\TSpkg.dll
2014-02-28 19:45:14 355A138ABDFD43FBABCAE3A1B06AB93D 481280 —-a-w- C:\Windows\Sysnative\wmpps.dll
2014-02-28 19:45:14 1BC6D282FF30D768515EAE0431F91552 5066752 —-a-w- C:\Windows\Sysnative\AuthFWSnapin.dll
2014-02-28 19:45:14 105B83027DD0C664242CFD74EE70C11D 2072576 —-a-w- C:\Windows\Sysnative\WMPEncEn.dll
2014-02-28 19:45:12 FF80CAD87555E8E4D2CFD7B9058343F8 13312 —-a-w- C:\Windows\Sysnative\sscore.dll
2014-02-28 19:45:12 DB76DB15EFC6E4D1153A6C5BC895948D 145920 —-a-w- C:\Windows\Sysnative\sppc.dll
2014-02-28 19:45:12 D9F42719019740BAA6D1C6D536CBDAA6 236032 —-a-w- C:\Windows\Sysnative\srvsvc.dll
2014-02-28 19:45:12 CA4166E8424EA3E8053876B47603DBE6 445952 —-a-w- C:\Windows\Sysnative\spwizeng.dll
2014-02-28 19:45:12 C5BC9544F0C5C6532EFA9508732244C2 78848 —-a-w- C:\Windows\Sysnative\spbcd.dll
2014-02-28 19:45:12 C3761661C17C2248A9379A8FB89E3DE1 257024 —-a-w- C:\Windows\Sysnative\stobject.dll
2014-02-28 19:45:12 AAEF1B0563D6EDD324E834F64D0A0ED5 933888 —-a-w- C:\Windows\Sysnative\sqlsrv32.dll
2014-02-28 19:45:12 9CEAD32E79A62150FE9F8557E58E008B 582656 —-a-w- C:\Windows\Sysnative\sxs.dll
2014-02-28 19:45:12 587BB0FA7D11F81251539A630C097C8C 726528 —-a-w- C:\Windows\Sysnative\appwiz.cpl
2014-02-28 19:45:12 10116D686A4DBA135E5C394E931E5D98 7680 —-a-w- C:\Windows\Sysnative\spwizres.dll
2014-02-28 19:45:11 BB074F35B49EB2EA416962B596281E1E 419840 —-a-w- C:\Windows\Sysnative\systemcpl.dll
2014-02-28 19:45:11 B0951D9AF84D9639CF81BC99BE4084C0 477696 —-a-w- C:\Windows\Sysnative\PhotoScreensaver.scr
2014-02-28 19:45:11 97BA1A7979EB66F4E8E95270854DFBDC 455168 —-a-w- C:\Windows\Sysnative\nshipsec.dll
2014-02-28 19:45:11 73FCB7919DEE80EE556F2E498594EBAE 235520 —-a-w- C:\Windows\Sysnative\onex.dll
2014-02-28 19:45:11 40F0849F65D13EE87B9A9AE3C1DD6823 316928 —-a-w- C:\Windows\Sysnative\tapisrv.dll
2014-02-28 19:45:11 31ABDD039F63BABBED8C031F87E0F6DE 1080320 —-a-w- C:\Windows\Sysnative\onexui.dll
2014-02-28 19:45:11 2F794096269B32C1611B29341AD4A599 421888 —-a-w- C:\Windows\Sysnative\termmgr.dll
2014-02-28 19:45:11 2C647ABE9A424E55B5F3DAE4629B4277 2851840 —-a-w- C:\Windows\Sysnative\themeui.dll
2014-02-28 19:45:10 F5F9D892E8196C074C3A159569EEB886 156160 —-a-w- C:\Windows\Sysnative\prntvpt.dll
2014-02-28 19:45:10 CDEBD55FFBDA3889AA2A8CE52B9DC097 1264640 —-a-w- C:\Windows\Sysnative\sdclt.exe
2014-02-28 19:45:10 AC2170D1DDEEA5CEDE106DA188F18138 173568 —-a-w- C:\Windows\Sysnative\powercfg.cpl
2014-02-28 19:45:09 6EA4234DC55346E0709560FE7C2C1972 170496 —-a-w- C:\Windows\Sysnative\sdrsvc.dll
2014-02-28 19:45:09 405F4D32D2185F1F1BD753D8EEAFFB3A 1672704 —-a-w- C:\Windows\Sysnative\networkexplorer.dll
2014-02-28 19:45:09 11C405A2DCF38E098316FD904A4FB662 1120768 —-a-w- C:\Windows\Sysnative\sdengin2.dll
2014-02-28 19:45:08 F3B306179F1840C0813DC6771B018358 238080 —-a-w- C:\Windows\Sysnative\recdisc.exe
2014-02-28 19:45:08 D2D30DAC4DE4EC8BF09564BB51915263 2146816 —-a-w- C:\Windows\Sysnative\networkmap.dll
2014-02-28 19:45:08 5C18CD22BE4628865FCB63337A6E5EF6 10429 —-a-w- C:\Windows\Sysnative\ScavengeSpace.xml
2014-02-28 19:45:08 5A1976E146C82EE36611AD47DF626B1E 51712 —-a-w- C:\Windows\Sysnative\repair-bde.exe
2014-02-28 19:45:07 EF00EAD1A0C4978C685BEB83FF1C9EF6 10240 —-a-w- C:\Windows\Sysnative\rdpcfgex.dll
2014-02-28 19:45:07 EDEC311F8BC0C12117A6492C382BE4D7 181248 —-a-w- C:\Windows\Sysnative\qcap.dll
2014-02-28 19:45:07 C236A8735A48B165A2A7724357DBE332 105559 —-a-w- C:\Windows\Sysnative\RacRules.xml
2014-02-28 19:45:07 93221146D4EBBF314C29B23CD6CC391D 117248 —-a-w- C:\Windows\Sysnative\wpdbusenum.dll
2014-02-28 19:45:07 5C627D1B1138676C0A7AB2C2C190D123 512000 —-a-w- C:\Windows\Sysnative\rpcss.dll
2014-02-28 19:45:07 4FFB0D0E913D8A2767F6D8B7C0375208 222208 —-a-w- C:\Windows\Sysnative\rdpencom.dll
2014-02-28 19:45:07 218A400108F280428FA22282D3268BBC 63488 —-a-w- C:\Windows\Sysnative\wscapi.dll
2014-02-28 19:45:07 01073F2BA36792C9BFD1BD622A6247B3 812032 —-a-w- C:\Windows\Sysnative\wpccpl.dll
2014-02-28 19:45:06 FEB91B4DA0D540865260A33838654FA3 90112 —-a-w- C:\Windows\Sysnative\nci.dll
2014-02-28 19:45:06 F4EA461A9DDF4861A0BDE2B0DD5645BA 324096 —-a-w- C:\Windows\Sysnative\netdiagfx.dll
2014-02-28 19:45:06 D291620D4C51C5F5FFA62CCDC52C5C13 378880 —-a-w- C:\Windows\Sysnative\msinfo32.exe
2014-02-28 19:45:06 AFA10DB13B9A0537297AEEF2CD66352F 1077248 —-a-w- C:\Windows\Sysnative\Narrator.exe
2014-02-28 19:45:06 11A087ED1D82FF01F74CEA03CF25E348 13824 —-a-w- C:\Windows\Sysnative\wshirda.dll
2014-02-28 19:45:04 ED3AF52CE4FFBE152BD27D0B6CE676F5 584192 —-a-w- C:\Windows\Sysnative\ipsmsnap.dll
2014-02-28 19:45:04 9662EE182644511439F1C53745DC1C88 343040 —-a-w- C:\Windows\Sysnative\lsm.exe
2014-02-28 19:45:04 77FD3C1F628FDA66DEA1D8234CEC7E52 551936 —-a-w- C:\Windows\Sysnative\localsec.dll
2014-02-28 19:45:04 4E1EED4AC7C69E33BA461E68F748EFA0 7168 —-a-w- C:\Windows\Sysnative\KBDLT1.DLL
2014-02-28 19:45:04 35701AA2A2B63A97714B1016374E0557 8192 —-a-w- C:\Windows\Sysnative\KBDTUQ.DLL
2014-02-28 19:45:03 C6E8BA35B529D33E2056C4922CC11336 7168 —-a-w- C:\Windows\Sysnative\KBDINORI.DLL
2014-02-28 19:45:03 C1FC0D0BCA806CAD557C7CAF3E78E1DA 7168 —-a-w- C:\Windows\Sysnative\KBDBASH.DLL
2014-02-28 19:45:03 59825A3288FDEC4D00FF99ADBD77AD79 7168 —-a-w- C:\Windows\Sysnative\KBDINTEL.DLL
2014-02-28 19:45:02 E8706A051BFFC9DA9E9B935AAA432AAC 257024 —-a-w- C:\Windows\Sysnative\mfreadwrite.dll
2014-02-28 19:45:02 DC50B0FE1C3F654AC25B5484BF3A458C 1202176 —-a-w- C:\Windows\Sysnative\DiagCpl.dll
2014-02-28 19:45:02 BA94F132C66F2BD456854490C800C4F2 124928 —-a-w- C:\Windows\Sysnative\wiavideo.dll
2014-02-28 19:45:02 8F4BB0CFECED925D440ABC2481278360 91648 —-a-w- C:\Windows\Sysnative\mapistub.dll
2014-02-28 19:45:02 8F4BB0CFECED925D440ABC2481278360 91648 —-a-w- C:\Windows\Sysnative\mapi32.dll
2014-02-28 19:45:02 8DD52E8E6128F4B2DA92CE27402871C1 580096 —-a-w- C:\Windows\Sysnative\wiaservc.dll
2014-02-28 19:45:02 887EB84BB2EC3F4C1510C98E8C1ADFC0 625664 —-a-w- C:\Windows\Sysnative\usercpl.dll
2014-02-28 19:45:02 7A17485DC7D8A7AC81321A42CD034519 109056 —-a-w- C:\Windows\Sysnative\userenv.dll
2014-02-28 19:45:02 713B611F6B796EECDA6F9970ACD9845B 154624 —-a-w- C:\Windows\Sysnative\uxlib.dll
2014-02-28 19:45:02 06CBA28981689B96B1E6A16F463F2260 299392 —-a-w- C:\Windows\Sysnative\mcupdate_GenuineIntel.dll
2014-02-28 19:45:01 C7301A1D3DB09DE86528D9D916069859 606208 —-a-w- C:\Windows\Sysnative\dfrgui.exe
2014-02-28 19:45:00 A3D570EEADFFA62D3DC8AB10E281FF8B 701440 —-a-w- C:\Windows\Sysnative\dsuiext.dll
2014-02-28 19:45:00 7881A5557CD9A9D40D994A57D24001AB 118272 —-a-w- C:\Windows\Sysnative\dnscmmc.dll
2014-02-28 19:45:00 6D3E70937228FD90F2A7185D33D4C46E 239616 —-a-w- C:\Windows\Sysnative\dskquoui.dll
2014-02-28 19:45:00 4BA77A5EF71C14C764B0ED4701683E3E 1632256 —-a-w- C:\Windows\Sysnative\dwmcore.dll
2014-02-28 19:45:00 103D54F329686C2CCF67156117A30D53 13312 —-a-w- C:\Windows\Sysnative\C_ISCII.DLL
2014-02-28 19:44:59 DC81872E3E6BCA39B322A7FA1A044040 232448 —-a-w- C:\Windows\Sysnative\bitsadmin.exe
2014-02-28 19:44:59 52D3D5E3586988D4D9E34ACAAC33105C 22016 —-a-w- C:\Windows\Sysnative\credssp.dll
2014-02-28 19:44:59 1BF0CB861A48FEB1638228760750F3CB 46080 —-a-w- C:\Windows\Sysnative\cscapi.dll
2014-02-28 19:44:59 11338E0557B07BC32CDB980B6EDB35AA 780008 —-a-w- C:\Windows\Sysnative\ci.dll
2014-02-28 19:44:58 E5E13FCBD1D247BF4CCD8BE3C7D8A5EA 72192 —-a-w- C:\Windows\Sysnative\fdeploy.dll
2014-02-28 19:44:58 E060CAF6D6C303A2C9BC13435F7F81A1 180736 —-a-w- C:\Windows\Sysnative\ifsutil.dll
2014-02-28 19:44:58 BBAAE027C176402E221CADBFCAEB5407 366080 —-a-w- C:\Windows\Sysnative\zipfldr.dll
2014-02-28 19:44:58 859E2A5AB0CBD752F9C030D74F55D30C 17920 —-a-w- C:\Windows\Sysnative\fixmapi.exe
2014-02-28 19:44:58 7EE5F17A21D9A9101207DF4BC37B085D 30208 —-a-w- C:\Windows\Sysnative\cscdll.dll
2014-02-28 19:44:58 6A2E9BBD516D064C925A9634A5632854 71168 —-a-w- C:\Windows\Sysnative\findstr.exe
2014-02-28 19:44:58 650CAEA856943E29F25A25D31E004B18 623104 —-a-w- C:\Windows\Sysnative\FXSAPI.dll
2014-02-28 19:44:58 43FA401CF9F3343F5B0CB800909506B5 434688 —-a-w- C:\Windows\Sysnative\FXSTIFF.dll
2014-02-28 19:44:58 03AB2A2E426C2AD400AC8315226347F8 144896 —-a-w- C:\Windows\Sysnative\EhStorAPI.dll
====== C:\Windows\Sysnative\drivers =====
2014-03-01 22:25:37 E9981ECE8D894CEF7038FD1D040EB426 56832 —-a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys
2014-03-01 22:22:55 313F68E1A3E6345A4F47A36B07062F34 19456 —-a-w- C:\Windows\Sysnative\drivers\rdpvideominiport.sys
2014-02-28 21:21:43 1B16D0BD9841794A6E0CDE0CEF744ABC 45568 —-a-w- C:\Windows\Sysnative\drivers\tcpipreg.sys
2014-02-28 21:20:01 EBF28856F69CF094A902F884CF989706 458712 —-a-w- C:\Windows\Sysnative\drivers\cng.sys
2014-02-28 21:20:01 8F489706472F7E9A06BAAA198703FA64 95680 —-a-w- C:\Windows\Sysnative\drivers\ksecdd.sys
2014-02-28 21:20:01 868A2CAAB12EFC7A021682BCA0EEC54C 154560 —-a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys
2014-02-28 21:16:38 79059559E89D06E8B80CE2944BE20228 497152 —-a-w- C:\Windows\Sysnative\drivers\afd.sys
2014-02-28 21:16:19 059F00DEF82BF41E433B7ED465847726 155584 —-a-w- C:\Windows\Sysnative\drivers\ataport.sys
2014-02-28 21:16:00 FFA06EF43987ED0DD42AD59B260C0C78 7808 —-a-w- C:\Windows\Sysnative\drivers\usbd.sys
2014-02-28 21:16:00 DD253AFC3BC6CBA412342DE60C3647F3 30720 —-a-w- C:\Windows\Sysnative\drivers\usbuhci.sys
2014-02-28 21:16:00 DCA68B0943D6FA415F0C56C92158A83A 99840 —-a-w- C:\Windows\Sysnative\drivers\usbccgp.sys
2014-02-28 21:16:00 8D1196CFBB223621F2C67D45710F25BA 343040 —-a-w- C:\Windows\Sysnative\drivers\usbhub.sys
2014-02-28 21:16:00 765A92D428A8DB88B960DA5A8D6089DC 25600 —-a-w- C:\Windows\Sysnative\drivers\usbohci.sys
2014-02-28 21:16:00 18A85013A3E0F7E1755365D287443965 53248 —-a-w- C:\Windows\Sysnative\drivers\usbehci.sys
2014-02-28 21:16:00 12FEB33791920678F8433701C822BCFD 325120 —-a-w- C:\Windows\Sysnative\drivers\usbport.sys
2014-02-28 21:15:29 40AF23633D197905F03AB5628C558C51 1903552 —-a-w- C:\Windows\Sysnative\drivers\tcpip.sys
2014-02-28 21:15:29 3555BA97171CD153118F73FDCCC8BFDE 376768 —-a-w- C:\Windows\Sysnative\drivers\netio.sys
2014-02-28 21:15:25 E0D3CD5841E5C7BE7B94BA946AF1E498 116736 —-a-w- C:\Windows\Sysnative\drivers\drmk.sys
2014-02-28 21:15:25 1E0B4CBBA91C6B041A14ECC2186F7E24 230400 —-a-w- C:\Windows\Sysnative\drivers\portcls.sys
2014-02-28 21:15:13 E2C933EDBC389386EBE6D2BA953F43D8 785624 —-a-w- C:\Windows\Sysnative\drivers\Wdf01000.sys
2014-02-28 21:15:01 1A4F75E63C9FB84B85DFFC6B63FD5404 140800 —-a-w- C:\Windows\Sysnative\drivers\mrxdav.sys
2014-02-28 21:14:38 9661DA76B4531B2DA272ECCE25A8AF24 42496 —-a-w- C:\Windows\Sysnative\drivers\usbscan.sys
2014-02-28 21:14:38 856E76B3641746ABBC2946BED1372098 32896 —-a-w- C:\Windows\Sysnative\drivers\hidparse.sys
2014-02-28 21:14:38 597C3699384E53CC59587ED50CCE5CA2 76800 —-a-w- C:\Windows\Sysnative\drivers\hidclass.sys
2014-02-28 21:14:35 88612F1CE3BF42256913BF6E61C70D52 983488 —-a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys
2014-02-28 21:14:34 1F04CFB79DD5FB7694468CE3FB3DCC31 265064 —-a-w- C:\Windows\Sysnative\drivers\dxgmms1.sys
2014-02-28 21:14:33 760E38053BF56E501D562B70AD796B88 950128 —-a-w- C:\Windows\Sysnative\drivers\ndis.sys
2014-02-28 21:14:32 0E01641D96889BDEB22DE12D30575B08 41472 —-a-w- C:\Windows\Sysnative\drivers\RNDISMP.sys
2014-02-28 21:14:31 80B0F7D5CCF86CEB5D402EAAF61FEC31 100864 —-a-w- C:\Windows\Sysnative\drivers\usbcir.sys
2014-02-28 21:14:13 4CE278FC9671BA81A138D70823FCAA09 39936 —-a-w- C:\Windows\Sysnative\drivers\tssecsrv.sys
2014-02-28 19:47:03 D931D7309DEB2317035B07C9F9E6B0BD 273792 —-a-w- C:\Windows\Sysnative\drivers\msiscsi.sys
2014-02-28 19:47:02 0FC1AEA580957AA8817B8F305D18CA3A 78848 —-a-w- C:\Windows\Sysnative\drivers\IPMIDrv.sys
2014-02-28 19:47:00 1B1E264203D4EF9D3DA1987AD70355AB 171392 —-a-w- C:\Windows\Sysnative\drivers\scsiport.sys
2014-02-28 19:46:56 F036CE71586E93D94DAB220D7BDF4416 147456 —-a-w- C:\Windows\Sysnative\drivers\cdrom.sys
2014-02-28 19:46:55 97BFED39B6B79EB12CDDBFEED51F56BB 122368 —-a-w- C:\Windows\Sysnative\drivers\hdaudbus.sys
2014-02-28 19:46:55 975761C778E33CD22498059B91E7373A 350208 —-a-w- C:\Windows\Sysnative\drivers\HdAudio.sys
2014-02-28 19:46:55 89A69C3F2F319B43379399547526D952 61440 —-a-w- C:\Windows\Sysnative\drivers\appid.sys
2014-02-28 19:46:55 39D2ABCD392F3D8A6DCE7B60AE7B8EFC 78720 —-a-w- C:\Windows\Sysnative\drivers\HpSAMD.sys
2014-02-28 19:46:55 0EA7DE1ACB728DD5A369FD742D6EEE28 753664 —-a-w- C:\Windows\Sysnative\drivers\http.sys
2014-02-28 19:46:53 E9F5969233C5D89F3C35E3A66A52A361 19968 —-a-w- C:\Windows\Sysnative\drivers\Dot4Prt.sys
2014-02-28 19:46:48 FE88B288356E7B47B74B13372ADD906D 41984 —-a-w- C:\Windows\Sysnative\drivers\winusb.sys
2014-02-28 19:46:46 0D08D2F3B3FF84E433346669B5E0F639 295808 —-a-w- C:\Windows\Sysnative\drivers\volsnap.sys
2014-02-28 19:46:45 DC54A574663A895C8763AF0FA1FF7561 48640 —-a-w- C:\Windows\Sysnative\drivers\umbus.sys
2014-02-28 19:46:38 DB801A638D011B9633829EB6F663C900 140672 —-a-w- C:\Windows\Sysnative\drivers\msdsm.sys
2014-02-28 19:46:38 015C0D8E0E0421B4CFD48CFFE2825879 57856 —-a-w- C:\Windows\Sysnative\drivers\ndproxy.sys
2014-02-28 19:46:34 A5462BD6884960C9DC85ED49D34FF392 14720 —-a-w- C:\Windows\Sysnative\drivers\hwpolicy.sys
2014-02-28 19:46:27 356AFD78A6ED4457169241AC3965230C 88576 —-a-w- C:\Windows\Sysnative\drivers\wanarp.sys
2014-02-28 19:46:27 2CE2DF28C83AEAF30084E1B1EB253CBB 215936 —-a-w- C:\Windows\Sysnative\drivers\vhdmp.sys
2014-02-28 19:46:25 77F665941019A1594D887A74F301FA2F 309248 —-a-w- C:\Windows\Sysnative\drivers\rdbss.sys
2014-02-28 19:46:25 471815800AE33E6F1C32FB1B97C490CA 129536 —-a-w- C:\Windows\Sysnative\drivers\rasl2tp.sys
2014-02-28 19:46:22 C9F0E1BD74365A8771590E9008D22AB6 82944 —-a-w- C:\Windows\Sysnative\drivers\ipfltdrv.sys
2014-02-28 19:46:21 0705EFF5B42A9DB58548EEC3B26BB484 33280 —-a-w- C:\Windows\Sysnative\drivers\kbdhid.sys
2014-02-28 19:46:19 09594D1089C523423B32A4229263F068 261632 —-a-w- C:\Windows\Sysnative\drivers\netbt.sys
2014-02-28 19:46:18 A44B420D30BD56E145D6A2BC8768EC58 155008 —-a-w- C:\Windows\Sysnative\drivers\mpio.sys
2014-02-28 19:46:15 9BB2EF44EAA163B29C4A4587887A0FE4 102400 —-a-w- C:\Windows\Sysnative\drivers\dfsc.sys
2014-02-28 19:46:14 D81D9E70B8A6DD14D42D7B4EFA65D5F2 334208 —-a-w- C:\Windows\Sysnative\drivers\acpi.sys
2014-02-28 19:46:12 9592090A7E2B61CD582B612B6DF70536 30208 —-a-w- C:\Windows\Sysnative\drivers\hidusb.sys
2014-02-28 19:46:11 292A8E03B3FCE04E39B5BE9B14132030 32896 —-a-w- C:\Windows\Sysnative\drivers\USBCAMD2.sys
2014-02-28 19:46:10 3566A8DAAFA27AF944F5D705EAA64894 125440 —-a-w- C:\Windows\Sysnative\drivers\tunnel.sys
2014-02-28 19:46:09 FF4232A1A64012BAA1FD97C7B67DF593 328192 —-a-w- C:\Windows\Sysnative\drivers\udfs.sys
2014-02-28 19:46:02 A255814907C89BE58B79EF2F189B843B 363392 —-a-w- C:\Windows\Sysnative\drivers\volmgrx.sys
2014-02-28 19:46:00 34ED295FA0121C241BFEF24764FC4520 213888 —-a-w- C:\Windows\Sysnative\drivers\rdyboost.sys
2014-02-28 19:46:00 253F38D0D7074C02FF8DEB9836C97D2B 29696 —-a-w- C:\Windows\Sysnative\drivers\scfilter.sys
2014-02-28 19:45:53 03EDB043586CCEBA243D689BDDA370A8 38912 —-a-w- C:\Windows\Sysnative\drivers\CompositeBus.sys
2014-02-28 19:45:51 A87D604AEA360176311474C87A63BB88 229888 —-a-w- C:\Windows\Sysnative\drivers\1394ohci.sys
2014-02-28 19:45:45 DDAD5A7AB24D8B65F8D724F5C20FD806 119296 —-a-w- C:\Windows\Sysnative\drivers\tdx.sys
2014-02-28 19:45:39 32E7A3D591D671A6DF2DB515A5CBE0FA 94592 —-a-w- C:\Windows\Sysnative\drivers\mountmgr.sys
2014-02-28 19:45:35 C25F0BAFA182CBCA2DD3C851C2E75796 31104 —-a-w- C:\Windows\Sysnative\drivers\msahci.sys
2014-02-28 19:45:34 ACFAD0B512226C7A83C7CB09FD55A9AD 179072 —-a-w- C:\Windows\Sysnative\drivers\Classpnp.sys
2014-02-28 19:45:27 C3EC945DEC43C00E2AD4C98DDDD064C7 31744 —-a-w- C:\Windows\Sysnative\drivers\usbrpm.sys
2014-02-28 19:45:27 561E7E1F06895D78DE991E01DD0FB6E5 63360 —-a-w- C:\Windows\Sysnative\drivers\termdd.sys
2014-02-28 19:45:24 D2AAFD421940F640B407AEFAAEBD91B0 71552 —-a-w- C:\Windows\Sysnative\drivers\volmgr.sys
2014-02-28 19:45:23 F92A2C41117A11A00BE01CA01A7FCDE9 111104 —-a-w- C:\Windows\Sysnative\drivers\raspptp.sys
2014-02-28 19:45:20 0557CF5A2556BD58E26384169D72438D 131584 —-a-w- C:\Windows\Sysnative\drivers\pacer.sys
2014-02-28 19:45:19 94575C0571D1462A0F70BDE6BD6EE6B3 184704 —-a-w- C:\Windows\Sysnative\drivers\pci.sys
2014-02-28 19:45:18 CAF88D6573D21CD2AA27001DDBFDC74D 146432 —-a-w- C:\Windows\Sysnative\drivers\rmcast.sys
2014-02-28 19:45:16 DD85B78243A19B59F0637DCF284DA63C 14336 —-a-w- C:\Windows\Sysnative\drivers\sffp_sd.sys
2014-02-28 19:45:11 6F020A220388ECA0AB6062DC27BD16B6 26624 —-a-w- C:\Windows\Sysnative\drivers\tdi.sys
2014-02-28 19:45:08 AC03AF3329579FFFB455AA2DAABBE22B 103808 —-a-w- C:\Windows\Sysnative\drivers\sbp2port.sys
2014-02-28 19:45:06 759A9EEB0FA9ED79DA1FB7D4EF78866D 366976 —-a-w- C:\Windows\Sysnative\drivers\msrpc.sys
2014-02-28 19:45:06 53F7305169863F0A2BDDC49E116C2E11 164352 —-a-w- C:\Windows\Sysnative\drivers\ndiswan.sys
2014-02-28 19:45:06 136185F9FB2CC61E573E676AA5402356 56832 —-a-w- C:\Windows\Sysnative\drivers\ndisuio.sys
2014-02-28 19:45:05 99F8E788246D495CE3794D7E7821D2CA 12800 —-a-w- C:\Windows\Sysnative\drivers\acpipmi.sys
2014-02-28 19:45:04 24FBF5CC5C04150073C315A7C83521EE 243712 —-a-w- C:\Windows\Sysnative\drivers\ks.sys
2014-02-28 19:44:58 DA6B67270FD9DB3697B20FCE94950741 289664 —-a-w- C:\Windows\Sysnative\drivers\fltMgr.sys
2014-02-20 19:44:32 D41D8CD98F00B204E9800998ECF8427E 0 —ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-02-20 13:52:11 0BB97D43299910CBFBA59C461B99B910 25928 —-a-w- C:\Windows\Sysnative\drivers\mbam.sys
====== C:\Windows\Tasks ======
2014-02-14 16:18:21 A2B80E0730D2880060129A7F10697176 408 —-a-w- C:\Windows\Tasks\Ad-Aware Update (Weekly).job
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-02-20 19:00:07 ——– d—–w- C:\Program Files\Windows Live
======= C:\PROGRA~2 =====
2014-02-20 18:58:55 ——– d—–w- C:\PROGRA~2\Windows Live
2014-02-20 18:43:41 ——– d—–w- C:\PROGRA~2\COMMON~1\Windows Live
2014-02-20 18:36:32 ——– d—–w- C:\PROGRA~2\trend micro
======= C: =====
====== C:\Users\Ruud\AppData\Roaming ======
2014-03-01 21:11:06 ——– d—–w- C:\Users\Ruud\AppData\Local\Microsoft Games
2014-02-20 19:08:38 ——– d—–w- C:\Users\Ruud\AppData\Roaming\Windows Live Writer
2014-02-20 19:08:38 ——– d—–w- C:\Users\Ruud\AppData\Local\Windows Live Writer
2014-02-20 18:45:04 ——– d—–w- C:\Users\Ruud\AppData\Local\Windows Live
2014-02-20 18:07:05 ——– d—–w- C:\Users\Ruud\AppData\Roaming\Google
2014-02-20 16:09:06 ——– d—–w- C:\Users\Ruud\AppData\Local\ElevatedDiagnostics
2014-02-20 15:47:33 ——– d—–w- C:\Users\Ruud\AppData\Roaming\AVG2014
2014-02-20 15:41:39 ——– d—–w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\AVG2014
2014-02-20 15:39:13 ——– d—–w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Avg2014
2014-02-20 15:27:13 ——– d—–w- C:\Windows\SysNative\config\systemprofile\AppData\Local\Avg2014
2014-02-20 14:02:22 ——– d—–w- C:\Users\Ruud\AppData\Local\Avg2014
2014-02-20 13:52:00 ——– d—–w- C:\Users\Ruud\AppData\Local\Programs
2014-02-14 16:56:56 30FC3A5BA021143C83027926AFE266DF 109680 —-a-w- C:\Users\Ruud\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-14 16:56:33 ——– d-s—w- C:\Users\Ruud\AppData\Locallow\Microsoft
2014-02-14 16:54:52 ——– d—–w- C:\Users\Ruud\AppData\Roaming\HpUpdate
2014-02-14 16:53:02 ——– d—–w- C:\Users\Ruud\AppData\Roaming\Adobe
2014-02-14 16:51:36 ——– d—–w- C:\Users\Ruud\AppData\Local\Google
2014-02-14 16:51:34 ——– d-s—w- C:\Users\UpdatusUser\AppData\Roaming\Microsoft
2014-02-14 16:51:34 ——– d—–w- C:\Users\UpdatusUser\AppData\Roaming\TuneUp Software
2014-02-14 16:51:34 ——– d—–w- C:\Users\UpdatusUser\AppData\Local\Temp
2014-02-14 16:51:34 ——– d—–w- C:\Users\UpdatusUser\AppData\Local\Microsoft Help
2014-02-14 16:51:34 ——– d—–w- C:\Users\UpdatusUser\AppData\Local\Microsoft
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-14 16:50:25 ——– d—–w- C:\Users\Ruud\AppData\Locallow\HPAppData
2014-02-14 16:48:29 ——– d—–r- C:\Users\Ruud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-14 16:48:29 ——– d—–r- C:\Users\Ruud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-14 16:48:00 ——– d—–w- C:\Users\Ruud\AppData\Roaming\Identities
2014-02-14 16:46:41 ——– d-s—w- C:\Users\Ruud\AppData\Roaming\Microsoft
2014-02-14 16:46:41 ——– d—–w- C:\Users\Ruud\AppData\Roaming\TuneUp Software
2014-02-14 16:46:41 ——– d—–w- C:\Users\Ruud\AppData\Local\Temp
2014-02-14 16:46:41 ——– d—–w- C:\Users\Ruud\AppData\Local\Microsoft Help
2014-02-14 16:46:41 ——– d—–w- C:\Users\Ruud\AppData\Local\Microsoft
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-14 16:29:33 A78D129B7CAB850AA32400BD293468D2 109680 —-a-w- C:\Windows\SysNative\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
====== C:\Users\Ruud ======
2014-02-20 15:28:41 ——– d—–w- C:\ProgramData\AVG2014
2014-02-14 16:51:37 6FC234AD3752E1267B34FB12BCD6718B 20 –sh–w- C:\Users\UpdatusUser\ntuser.ini
2014-02-14 16:51:34 ——– d–h–w- C:\Users\UpdatusUser\AppData
2014-02-14 16:51:34 ——– d—–w- C:\Users\UpdatusUser\Saved Games
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Videos
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Pictures
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Music
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Links
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Favorites
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Downloads
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Documents
2014-02-14 16:51:34 ——– d—–r- C:\Users\UpdatusUser\Desktop
2014-02-14 16:48:29 ——– d—–r- C:\Users\Ruud\Searches
2014-02-14 16:47:43 ——– d—–r- C:\Users\Ruud\Contacts
2014-02-14 16:46:45 6FC234AD3752E1267B34FB12BCD6718B 20 –sh–w- C:\Users\Ruud\ntuser.ini
2014-02-14 16:46:41 ——– d–h–w- C:\Users\Ruud\AppData
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Videos
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Saved Games
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Pictures
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Music
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Links
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Favorites
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Downloads
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Documents
2014-02-14 16:46:41 ——– d—–r- C:\Users\Ruud\Desktop
====== C: exe-files ==
2014-03-08 12:14:21 987A6709001294BACAA4DE502E4DBAEF 544 —-a-w- C:\$Recycle.Bin\S-1-5-21-1134130970-1918795106-4025623469-1000\$I2VB9Q0.exe
2014-03-08 12:14:10 2ED2319F3DE13495AAA49B70A1467055 1285120 —-a-w- C:\$Recycle.Bin\S-1-5-21-1134130970-1918795106-4025623469-1000\$R2VB9Q0.exe
2014-03-05 10:55:19 99EDAB82414D23D14947415E5C502FE1 786136 —-a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\33.0.1750.146\33.0.1750.146_33.0.1750.117_chrome_updater.exe
2014-03-03 09:33:37 992FF886C11B7554CF0206C6797C7FD0 5044248 —-a-w- C:\Windows\Temp\{D3D44948-5860-4853-A883-EA9442E74457}.exe
2014-03-01 23:25:59 27516B54E116D5EF8B0129B5C829A87C 218624 —-a-w- C:\Windows\System32\ie4uinit.exe
2014-03-01 23:25:56 9E8F9FDD407DDE997965EEFD9E635CCF 469504 —-a-w- C:\Program Files (x86)\Internet Explorer\ieinstal.exe
2014-03-01 23:25:55 AFAB9B381886ABE3490689B7633A858F 482816 —-a-w- C:\Program Files\Internet Explorer\ieinstal.exe
2014-03-01 23:25:55 7D6B20C69CC8EECB8F31D4FAF913BBE8 112128 —-a-w- C:\Windows\SysWOW64\ieUnatt.exe
2014-03-01 23:25:55 338415F2E9A188875B6E43B5269620B0 139264 —-a-w- C:\Windows\System32\ieUnatt.exe
2014-03-01 23:25:53 E129D34089E70215B65EA611F802FA9A 111616 —-a-w- C:\Windows\System32\ieetwcollector.exe
2014-03-01 23:25:45 C6E1178294BDEAB1CACF50427688DF05 806104 —-a-w- C:\Program Files\Internet Explorer\iexplore.exe
2014-03-01 23:25:45 4263F6C131E513CEA1AE82B5B81A4E1A 808152 —-a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe
2014-03-01 22:25:37 108C257D765AAD2E6EC46557DA0B02BD 13824 —-a-w- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
2014-03-01 22:25:36 0D2C2FAC4F29B5868D39B7267058CFEF 83968 —-a-w- C:\Windows\System32\TSWbPrxy.exe
2014-03-01 22:25:35 8E75B1112C374EBDF18FD640DA2F0655 1147392 —-a-w- C:\Windows\System32\mstsc.exe
2014-03-01 22:25:35 79EE5ECB4BE89343E4CF1E48F7769F59 420864 —-a-w- C:\Windows\System32\wksprt.exe
2014-03-01 22:25:35 4676AAA9DDF52A50C829FEDB4EA81E54 1068544 —-a-w- C:\Windows\SysWOW64\mstsc.exe
=== C: other files ==
2014-03-01 22:25:37 E9981ECE8D894CEF7038FD1D040EB426 56832 —-a-w- C:\Windows\System32\drivers\TsUsbFlt.sys
2014-03-01 22:22:55 313F68E1A3E6345A4F47A36B07062F34 19456 —-a-w- C:\Windows\System32\drivers\rdpvideominiport.sys
==== Startup Registry Enabled ======================
“Sidebar”=“%ProgramFiles%\Windows\Sidebar.exe /autoRun”
“Sidebar”=“%ProgramFiles%\Windows\Sidebar.exe /autoRun”
“swg”=“C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe”
“Sidebar”=“%ProgramFiles%\Windows\Sidebar.exe /autoRun”
“mctadmin”=“C:\Windows\System32\mctadmin.exe”
“mctadmin”=“C:\Windows\System32\mctadmin.exe”
“mctadmin”=“C:\Windows\System32\mctadmin.exe”
“vProt”=“C:\Program Files (x86)\AVG Secure Search\vprot.exe”
“AVG_UI”=“C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY”
“swg”=“C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe”
==== Startup Registry Disabled x64 ======================
“key”=“SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“Adobe ARM”
“hkey”=“HKLM”
“command”=“\”C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\“”
“key”=“SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“GrooveMonitor”
“hkey”=“HKLM”
“command”=“\”C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\“”
“key”=“SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run”
“item”=“HP Software Update”
“hkey”=“HKLM”
“command”=“C:\\Program Files (x86)\\HP\\HP Software Update\\HPWuSchd2.exe”
“path”=“C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\HP Digital Imaging Monitor.lnk”
“backup”=“C:\\Windows\\pss\\HP Digital Imaging Monitor.lnk.CommonStartup”
“backupExtension”=“.CommonStartup”
“command”=“C:\\PROGRA~2\\HP\\DIGITA~1\\bin\\hpqtra08.exe ”
“item”=“HP Digital Imaging Monitor”
==== Task Scheduler Jobs ======================
C:\Windows\tasks\Ad-Aware Update (Weekly).job –a—— C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
C:\Windows\tasks\Adobe Flash Player Updater.job –a—— C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job –a—— C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job –a—— C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==== Other Scheduled Tasks ======================
“C:\Windows\SysNative\tasks\Ad-Aware Update (Weekly)”
“C:\Windows\SysNative\tasks\Adobe Flash Player Updater”
“C:\Windows\SysNative\tasks\CreateChoiceProcessTask”
“C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore”
“C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA”
“C:\Windows\SysNative\tasks\SidebarExecute”
==== Folders in C:\PROGRA~3 0-6 Months Old ======================
2013-11-29 15:34:29 ——– d-sh–w- C:\PROGRA~3\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-02-20 13:52:14 ——– d—–w- C:\PROGRA~3\Malwarebytes
2014-02-20 15:28:41 ——– d—–w- C:\PROGRA~3\AVG2014
==== Firefox Extensions Registry ======================
“smartwebprinting@hp.com”=“C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3”
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ndibdjnfmopecpmkdieinmbadjfpblof - C:\ProgramData\AVG Secure Search\ChromeExt\18.0.0.248\avg.crx
Google Docs - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
AVG Security Toolbar - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Google Wallet - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Google Docs - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
AVG Security Toolbar - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
==== Chrome Fix ======================
C:\Users\Ruud\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
==== Set IE to Default ======================
Old Values:
“Start Page”=“https://www.google.nl/”
New Values:
“Start Page”=“https://www.google.nl/”
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
“DefaultScope”=“{6A1806CD-94D4-4689-BA73-E35EA1EA9990}”
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url=“http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR”
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url=“http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}”
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1134130970-1918795106-4025623469-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully
HKEY_USERS\S-1-5-21-1134130970-1918795106-4025623469-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{95B7759C-8C7F-4BF1-B163-73684A933233} deleted successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
==== HijackThis Entries ======================
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Aanmeldhulp voor Microsoft-account - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: “C:\Program Files (x86)\AVG Secure Search\vprot.exe”
O4 - HKLM\..\Run: “C:\Program Files (x86)\AVG\AVG2014\avgui.exe” /TRAYONLY
O4 - HKCU\..\Run: “C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe”
O4 - HKUS\S-1-5-19\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘LOCAL SERVICE’)
O4 - HKUS\S-1-5-19\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘LOCAL SERVICE’)
O4 - HKUS\S-1-5-20\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘NETWORK SERVICE’)
O4 - HKUS\S-1-5-20\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘NETWORK SERVICE’)
O4 - HKUS\S-1-5-21-1134130970-1918795106-4025623469-1001\..\Run: %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User ‘UpdatusUser’)
O4 - HKUS\S-1-5-21-1134130970-1918795106-4025623469-1001\..\RunOnce: C:\Windows\System32\mctadmin.exe (User ‘UpdatusUser’)
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Verzenden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra ‘Tools’ menuitem: Verz&enden naar OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Toon of verberg HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.0\ViProtocol.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Updateservice (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update-service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ruud\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ruud\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Ruud\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\TEMP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\UpdatusUser\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Ruud\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=805 folders=381 385335991 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Ruud\AppData\Local\Temp will be emptied at reboot
C:\Users\TEMP\AppData\Local\Temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Ruud\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on za 08-03-2014 at 15:08:01,26 ======================