Logfile of random's system information tool 1.09 (written by random/random)
Run by David at 2012-11-25 17:35:04
Microsoft Windows 8
System drive C: has 19 GB (47%) free of 41 GB
Total RAM: 4095 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:35:06, on 25.11.2012
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\David.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\PROGRA~2\NVIDIA~1\3DVISI~1\nvStInit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET Smart Security 5\x86\ekrn.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 4323 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
"dwm.exe"
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskhostex.exe
C:\Windows\Explorer.EXE
dashost.exe {4d61b6df-ebfc-4841-995d079a2d75b1f4}
C:\Windows\slsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\PersonalizeEnabler.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-56882e42-94dd-4dcd-8caa-9a0ed0d019fd -SystemEventPortName:HostProcess-7c0b6a96-5f0e-486d-9a45-7b5afee94836 -IoCancelEventPortName:HostProcess-7ed7a747-33e2-4769-af41-ac12b455ca75 -NonStateChangingEventPortName:HostProcess-3548557e-bf13-4233-9a4a-3d2f6e8e7b6c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:670efdd5-04a8-4785-974f-b3a6106073b1 -DeviceGroupId:WpdFsGroup
"C:\Program Files\ESET Smart Security 5\x86\ekrn.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET Smart Security 5\egui.exe" /hide
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k HPZ12
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3032.1.1850825572\719675074" --gpu-vendor-id=0x10de --gpu-device-id=0x1201 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.697 --ignored=" --type=renderer " /prefetch:12
"C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/InstantChannel/Stable/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/13/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_41/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="3032.2.1584508007\1049423317" /prefetch:3
"C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3032.3.918483842\177810945" --lang=sk --ignored=" --type=renderer " /prefetch:13
"C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/InstantChannel/Stable/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/13/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_41/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="3032.15.941410303\1556859639" /prefetch:3
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\David\Downloads\RSITx64.exe"
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-11-25 17:35:04 ----D---- C:\rsit
2012-11-25 17:34:00 ----D---- C:\Program Files\trend micro
2012-11-25 16:48:35 ----D---- C:\Program Files\CCleaner
2012-11-24 21:37:47 ----D---- C:\HattrickOrganizer
2012-11-24 21:35:49 ----D---- C:\ProgramData\Adobe
2012-11-24 21:35:44 ----D---- C:\ProgramData\Sun
2012-11-24 21:35:42 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-11-24 21:35:42 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-11-24 21:35:42 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-11-24 21:35:39 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-11-24 21:35:39 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-11-24 21:35:39 ----A---- C:\Windows\SYSWOW64\java.exe
2012-11-24 21:35:31 ----D---- C:\Program Files (x86)\Java
2012-11-24 21:31:55 ----D---- C:\Users\David\AppData\Roaming\Opera
2012-11-24 21:31:53 ----D---- C:\Program Files (x86)\Opera
2012-11-24 21:30:48 ----D---- C:\Program Files (x86)\SpeedFan
2012-11-24 21:25:47 ----D---- C:\Users\David\AppData\Roaming\ESET
2012-11-24 21:24:07 ----D---- C:\ProgramData\ESET
2012-11-24 21:23:05 ----D---- C:\Program Files\ESET Smart Security 5
2012-11-24 21:16:27 ----A---- C:\Windows\system32\FNTCACHE.DAT
2012-11-24 20:59:47 ----A---- C:\Windows\system32\WSService.dll
2012-11-24 20:59:46 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2012-11-24 20:59:40 ----A---- C:\Windows\system32\drivers\evbda.sys
2012-11-24 20:59:36 ----A---- C:\Windows\system32\wmp.dll
2012-11-24 20:59:35 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2012-11-24 20:59:33 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2012-11-24 20:59:32 ----A---- C:\Windows\system32\WpcMon.exe
2012-11-24 20:59:30 ----A---- C:\Windows\system32\d2d1.dll
2012-11-24 20:59:29 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-11-24 20:59:29 ----A---- C:\Windows\system32\WinSAT.exe
2012-11-24 20:59:28 ----A---- C:\Windows\system32\drivers\bxvbda.sys
2012-11-24 20:59:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-11-24 20:59:26 ----A---- C:\Windows\system32\vssapi.dll
2012-11-24 20:59:25 ----A---- C:\Windows\system32\ntdll.dll
2012-11-24 20:59:25 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-11-24 20:59:24 ----A---- C:\Windows\system32\RacEngn.dll
2012-11-24 20:59:24 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2012-11-24 20:59:23 ----A---- C:\Windows\system32\wmpmde.dll
2012-11-24 20:59:23 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2012-11-24 20:59:23 ----A---- C:\Windows\system32\uDWM.dll
2012-11-24 20:59:23 ----A---- C:\Windows\system32\schannel.dll
2012-11-24 20:59:23 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-11-24 20:59:23 ----A---- C:\Windows\system32\d3d10warp.dll
2012-11-24 20:59:22 ----A---- C:\Windows\system32\provcore.dll
2012-11-24 20:59:22 ----A---- C:\Windows\system32\MMDevAPI.dll
2012-11-24 20:59:21 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-11-24 20:59:21 ----A---- C:\Windows\system32\ncsi.dll
2012-11-24 20:59:20 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-11-24 20:59:20 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-11-24 20:59:20 ----A---- C:\Windows\system32\wlroamextension.dll
2012-11-24 20:59:19 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-11-24 20:59:19 ----A---- C:\Windows\system32\winmde.dll
2012-11-24 20:59:18 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2012-11-24 20:59:18 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-11-24 20:59:18 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-11-24 20:59:18 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-11-24 20:59:17 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2012-11-24 20:59:17 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-11-24 20:59:17 ----A---- C:\Windows\system32\MFMediaEngine.dll
2012-11-24 20:59:17 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-11-24 20:59:17 ----A---- C:\Windows\system32\apphelp.dll
2012-11-24 20:59:16 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-11-24 20:59:16 ----A---- C:\Windows\system32\WWAHost.exe
2012-11-24 20:59:16 ----A---- C:\Windows\system32\MFPlay.dll
2012-11-24 20:59:16 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-11-24 20:59:16 ----A---- C:\Windows\system32\combase.dll
2012-11-24 20:59:15 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2012-11-24 20:59:15 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-11-24 20:59:15 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-11-24 20:59:15 ----A---- C:\Windows\system32\WSShared.dll
2012-11-24 20:59:15 ----A---- C:\Windows\system32\wlidcredprov.dll
2012-11-24 20:59:15 ----A---- C:\Windows\system32\WinTypes.dll
2012-11-24 20:59:15 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2012-11-24 20:59:15 ----A---- C:\Windows\system32\fveapi.dll
2012-11-24 20:59:15 ----A---- C:\Windows\system32\dnsapi.dll
2012-11-24 20:59:14 ----A---- C:\Windows\system32\taskeng.exe
2012-11-24 20:59:14 ----A---- C:\Windows\system32\rascfg.dll
2012-11-24 20:59:14 ----A---- C:\Windows\system32\mfsvr.dll
2012-11-24 20:59:14 ----A---- C:\Windows\system32\mfsrcsnk.dll
2012-11-24 20:59:14 ----A---- C:\Windows\system32\drvstore.dll
2012-11-24 20:59:14 ----A---- C:\Windows\system32\bcdsrv.dll
2012-11-24 20:59:13 ----A---- C:\Windows\SYSWOW64\wlroamextension.dll
2012-11-24 20:59:13 ----A---- C:\Windows\system32\wpnprv.dll
2012-11-24 20:59:13 ----A---- C:\Windows\system32\wintrust.dll
2012-11-24 20:59:13 ----A---- C:\Windows\system32\VAN.dll
2012-11-24 20:59:13 ----A---- C:\Windows\system32\propsys.dll
2012-11-24 20:59:13 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2012-11-24 20:59:13 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-11-24 20:59:12 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-11-24 20:59:12 ----A---- C:\Windows\system32\WSClient.dll
2012-11-24 20:59:12 ----A---- C:\Windows\system32\services.exe
2012-11-24 20:59:12 ----A---- C:\Windows\system32\fveapibase.dll
2012-11-24 20:59:12 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2012-11-24 20:59:10 ----A---- C:\Windows\SYSWOW64\winmde.dll
2012-11-24 20:59:10 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2012-11-24 20:59:10 ----A---- C:\Windows\system32\psmsrv.dll
2012-11-24 20:59:10 ----A---- C:\Windows\system32\mmcss.dll
2012-11-24 20:59:10 ----A---- C:\Windows\system32\bisrv.dll
2012-11-24 20:59:10 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\WSSync.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-11-24 20:59:09 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\WSSync.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\vdsutil.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\fhengine.dll
2012-11-24 20:59:09 ----A---- C:\Windows\system32\drivers\msgpiowin32.sys
2012-11-24 20:59:09 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2012-11-24 20:59:08 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-11-24 20:59:08 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-11-24 20:59:08 ----A---- C:\Windows\system32\wpncore.dll
2012-11-24 20:59:08 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2012-11-24 20:59:08 ----A---- C:\Windows\system32\TpmTasks.dll
2012-11-24 20:59:08 ----A---- C:\Windows\system32\dwmredir.dll
2012-11-24 20:59:08 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-11-24 20:59:08 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-11-24 20:59:07 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2012-11-24 20:59:07 ----A---- C:\Windows\SYSWOW64\provcore.dll
2012-11-24 20:59:07 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-11-24 20:59:07 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2012-11-24 20:59:07 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-11-24 20:59:07 ----A---- C:\Windows\system32\ProximityService.dll
2012-11-24 20:59:07 ----A---- C:\Windows\system32\msvproc.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\UserLanguagesCpl.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\svchost.exe
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\combase.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-11-24 20:59:06 ----A---- C:\Windows\SYSWOW64\avrt.dll
2012-11-24 20:59:06 ----A---- C:\Windows\system32\SettingSyncHost.exe
2012-11-24 20:59:06 ----A---- C:\Windows\system32\perfdisk.dll
2012-11-24 20:59:06 ----A---- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2012-11-24 20:59:06 ----A---- C:\Windows\system32\drivers\tpm.sys
2012-11-24 20:59:06 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-11-24 20:59:06 ----A---- C:\Windows\system32\drivers\dumpfve.sys
2012-11-24 20:59:06 ----A---- C:\Windows\system32\batmeter.dll
2012-11-24 20:59:06 ----A---- C:\Windows\system32\avrt.dll
2012-11-24 20:59:05 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2012-11-24 20:59:05 ----A---- C:\Windows\SYSWOW64\perfdisk.dll
2012-11-24 20:59:05 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2012-11-24 20:59:05 ----A---- C:\Windows\system32\svchost.exe
2012-11-24 20:59:05 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-11-24 20:59:05 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2012-11-24 20:59:05 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-11-24 20:59:05 ----A---- C:\Windows\system32\aelupsvc.dll
2012-11-24 20:59:04 ----A---- C:\Windows\SYSWOW64\wlidcredprov.dll
2012-11-24 20:59:04 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Connectivity.dll
2012-11-24 20:59:04 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2012-11-24 20:59:04 ----A---- C:\Windows\system32\user32.dll
2012-11-24 20:59:04 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-11-24 20:59:04 ----A---- C:\Windows\system32\fhevents.dll
2012-11-24 20:59:03 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-11-24 20:59:03 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2012-11-24 20:59:03 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2012-11-24 20:59:03 ----A---- C:\Windows\SYSWOW64\mfh264enc.dll
2012-11-24 20:59:03 ----A---- C:\Windows\system32\winsrv.dll
2012-11-24 20:59:03 ----A---- C:\Windows\system32\vds.exe
2012-11-24 20:59:03 ----A---- C:\Windows\system32\storewuauth.dll
2012-11-24 20:59:03 ----A---- C:\Windows\system32\perfnet.dll
2012-11-24 20:59:03 ----A---- C:\Windows\system32\mfh264enc.dll
2012-11-24 20:59:03 ----A---- C:\Windows\system32\lsass.exe
2012-11-24 20:59:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-11-24 20:59:02 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-11-24 20:59:02 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-11-24 20:59:02 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2012-11-24 20:59:02 ----A---- C:\Windows\system32\twinapi.dll
2012-11-24 20:59:02 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-11-24 20:59:02 ----A---- C:\Windows\system32\lpksetup.exe
2012-11-24 20:59:02 ----A---- C:\Windows\system32\dwm.exe
2012-11-24 20:59:02 ----A---- C:\Windows\system32\DevPropMgr.dll
2012-11-24 20:59:01 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-11-24 20:59:01 ----A---- C:\Windows\system32\nlasvc.dll
2012-11-24 20:59:01 ----A---- C:\Windows\system32\fhcfg.dll
2012-11-24 20:59:01 ----A---- C:\Windows\system32\dxgi.dll
2012-11-24 20:59:01 ----A---- C:\Windows\system32\drvinst.exe
2012-11-24 20:59:01 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-11-24 20:59:01 ----A---- C:\Windows\system32\DAFWSD.dll
2012-11-24 20:59:00 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2012-11-24 20:59:00 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-11-24 20:59:00 ----A---- C:\Windows\SYSWOW64\perfnet.dll
2012-11-24 20:59:00 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\webio.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\wcncsvc.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\RpcEpMap.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\perfos.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\fhsrchapi.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\fhcat.dll
2012-11-24 20:59:00 ----A---- C:\Windows\system32\d3d11.dll
2012-11-24 20:58:59 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2012-11-24 20:58:59 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2012-11-24 20:58:59 ----A---- C:\Windows\system32\lpremove.exe
2012-11-24 20:58:59 ----A---- C:\Windows\system32\fhsvc.dll
2012-11-24 20:58:59 ----A---- C:\Windows\system32\dafWCN.dll
2012-11-24 20:58:58 ----A---- C:\Windows\SYSWOW64\WcnApi.dll
2012-11-24 20:58:58 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2012-11-24 20:58:58 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-11-24 20:58:58 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\WcnApi.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\vsstrace.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\umpo.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\sspicli.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\rasdiag.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\nlaapi.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\fhshl.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\fhmanagew.exe
2012-11-24 20:58:58 ----A---- C:\Windows\system32\fhlisten.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\fhcleanup.dll
2012-11-24 20:58:58 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys
2012-11-24 20:58:58 ----A---- C:\Windows\system32\cryptdlg.dll
2012-11-24 20:58:57 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2012-11-24 20:58:57 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2012-11-24 20:58:57 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2012-11-24 20:58:57 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2012-11-24 20:58:57 ----A---- C:\Windows\SYSWOW64\fdWCN.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\WcnEapAuthProxy.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\vdsldr.exe
2012-11-24 20:58:57 ----A---- C:\Windows\system32\sdbinst.exe
2012-11-24 20:58:57 ----A---- C:\Windows\system32\rasmxs.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\OEMLicense.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\fhtask.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\fhsrchph.dll
2012-11-24 20:58:57 ----A---- C:\Windows\system32\fdWCN.dll
2012-11-24 20:58:56 ----A---- C:\Windows\SYSWOW64\rasser.dll
2012-11-24 20:58:56 ----A---- C:\Windows\SYSWOW64\perfproc.dll
2012-11-24 20:58:56 ----A---- C:\Windows\SYSWOW64\perfos.dll
2012-11-24 20:58:56 ----A---- C:\Windows\SYSWOW64\perfctrs.dll
2012-11-24 20:58:56 ----A---- C:\Windows\system32\WcnEapPeerProxy.dll
2012-11-24 20:58:56 ----A---- C:\Windows\system32\rasser.dll
2012-11-24 20:58:56 ----A---- C:\Windows\system32\perfproc.dll
2012-11-24 20:58:56 ----A---- C:\Windows\system32\perfctrs.dll
2012-11-24 20:58:56 ----A---- C:\Windows\system32\fhautoplay.dll
2012-11-24 20:58:55 ----A---- C:\Windows\SYSWOW64\vds_ps.dll
2012-11-24 20:58:55 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-11-24 20:58:55 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2012-11-24 20:58:55 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\vds_ps.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\sspisrv.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\spwmp.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\shimeng.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\MUILanguageCleanup.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\lpksetupproxyserv.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\fhsvcctl.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\eventcls.dll
2012-11-24 20:58:55 ----A---- C:\Windows\system32\dxmasf.dll
2012-11-24 20:58:54 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-11-24 20:58:54 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-11-24 20:58:54 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-11-24 20:58:54 ----A---- C:\Windows\system32\wmploc.DLL
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\BthhfHid.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\BthAvrcpTg.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\drivers\BtaMPM.sys
2012-11-24 20:58:54 ----A---- C:\Windows\system32\cdd.dll
2012-11-24 20:58:53 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-11-24 20:58:43 ----A---- C:\Windows\SYSWOW64\newdev.exe
2012-11-24 20:58:43 ----A---- C:\Windows\SYSWOW64\newdev.dll
2012-11-24 20:58:43 ----A---- C:\Windows\SYSWOW64\ndadmin.exe
2012-11-24 20:58:43 ----A---- C:\Windows\system32\newdev.exe
2012-11-24 20:58:43 ----A---- C:\Windows\system32\newdev.dll
2012-11-24 20:58:43 ----A---- C:\Windows\system32\ndadmin.exe
2012-11-24 20:56:51 ----A---- C:\Windows\SYSWOW64\msvcr100_clr0400.dll
2012-11-24 20:56:07 ----A---- C:\Windows\system32\msvcr100_clr0400.dll
2012-11-24 20:55:40 ----A---- C:\Windows\system32\wwansvc.dll
2012-11-24 20:55:40 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-11-24 20:55:39 ----A---- C:\Windows\SYSWOW64\synceng.dll
2012-11-24 20:55:39 ----A---- C:\Windows\system32\synceng.dll
2012-11-24 20:51:38 ----A---- C:\Windows\system32\perfh01B.dat
2012-11-24 20:51:38 ----A---- C:\Windows\system32\perfc01B.dat
2012-11-24 20:47:59 ----D---- C:\Windows\pss
2012-11-24 20:46:10 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-11-24 20:46:10 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-11-24 20:46:10 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2012-11-24 20:46:09 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-11-24 20:46:09 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-11-24 20:46:09 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuwebv.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wushareduxresources.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wups2.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wups.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wudriver.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wucltux.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuaueng.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuauclt.exe
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuapp.exe
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuapi.dll
2012-11-24 20:46:08 ----A---- C:\Windows\system32\wuaext.dll
2012-11-24 20:46:07 ----A---- C:\Windows\system32\ubpm.dll
2012-11-24 20:46:07 ----A---- C:\Windows\system32\taskhostex.exe
2012-11-24 20:46:07 ----A---- C:\Windows\system32\taskhost.exe
2012-11-24 20:46:07 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-11-24 20:46:07 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\Windows.Storage.Compression.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\input.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-11-24 20:45:01 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2012-11-24 20:45:00 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-11-24 20:45:00 ----A---- C:\Windows\SYSWOW64\dhcpcsvc.dll
2012-11-24 20:45:00 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2012-11-24 20:45:00 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-11-24 20:44:59 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wlansec.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wfdprov.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\wfapigp.dll
2012-11-24 20:44:58 ----A---- C:\Windows\SYSWOW64\FirewallAPI.dll
2012-11-24 20:44:57 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-11-24 20:44:56 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-11-24 20:44:55 ----A---- C:\Windows\SYSWOW64\kbdhebl3.dll
2012-11-24 20:44:55 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-11-24 20:44:55 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-11-24 20:44:48 ----A---- C:\Windows\system32\Windows.Storage.Compression.dll
2012-11-24 20:44:48 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-11-24 20:44:47 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2012-11-24 20:44:47 ----A---- C:\Windows\system32\SysFxUI.dll
2012-11-24 20:44:47 ----A---- C:\Windows\system32\drivers\usbscan.sys
2012-11-24 20:44:47 ----A---- C:\Windows\system32\drivers\portcls.sys
2012-11-24 20:44:47 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2012-11-24 20:44:47 ----A---- C:\Windows\system32\drivers\drmk.sys
2012-11-24 20:44:46 ----A---- C:\Windows\system32\drivers\sdstor.sys
2012-11-24 20:44:46 ----A---- C:\Windows\system32\drivers\sdbus.sys
2012-11-24 20:44:46 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2012-11-24 20:44:45 ----A---- C:\Windows\system32\wfapigp.dll
2012-11-24 20:44:45 ----A---- C:\Windows\system32\MPSSVC.dll
2012-11-24 20:44:45 ----A---- C:\Windows\system32\icfupgd.dll
2012-11-24 20:44:45 ----A---- C:\Windows\system32\FirewallAPI.dll
2012-11-24 20:44:45 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2012-11-24 20:44:44 ----A---- C:\Windows\system32\wlansvc.dll
2012-11-24 20:44:44 ----A---- C:\Windows\system32\wlansec.dll
2012-11-24 20:44:43 ----A---- C:\Windows\system32\wlanmsm.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\wlanhlp.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\wlanapi.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\winlogon.exe
2012-11-24 20:44:42 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\wfdprov.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\uxtheme.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\UXInit.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\usercpl.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\sysreset.exe
2012-11-24 20:44:42 ----A---- C:\Windows\system32\SpaceControl.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\shell32.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\SHCore.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\resetengmig.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\reseteng.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\mswsock.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\kerberos.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\jscript9.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\jscript.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\input.dll
2012-11-24 20:44:42 ----A---- C:\Windows\system32\BdeUISrv.exe
2012-11-24 20:44:42 ----A---- C:\Windows\system32\bdesvc.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\wininet.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\Windows.Networking.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\PCPKsp.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\mfplat.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\lsasrv.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\ListSvc.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\kbdhebl3.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\iesysprep.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\iesetup.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\iernonce.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\ie4uinit.exe
2012-11-24 20:44:41 ----A---- C:\Windows\system32\gdi32.dll
2012-11-24 20:44:41 ----A---- C:\Windows\system32\drivers\netio.sys
2012-11-24 20:44:41 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-11-24 20:44:41 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-11-24 20:44:41 ----A---- C:\Windows\system32\drivers\cng.sys
2012-11-24 20:44:40 ----A---- C:\Windows\system32\FntCache.dll
2012-11-24 20:44:40 ----A---- C:\Windows\system32\DWrite.dll
2012-11-24 20:44:40 ----A---- C:\Windows\explorer.exe
2012-11-24 20:44:39 ----A---- C:\Windows\system32\winresume.exe
2012-11-24 20:44:39 ----A---- C:\Windows\system32\winload.exe
2012-11-24 20:44:39 ----A---- C:\Windows\system32\microsoft-windows-pdc.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\dwmcore.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\drivers\dam.sys
2012-11-24 20:44:39 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-11-24 20:44:39 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\dhcpcsvc.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\dhcpcore.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\ci.dll
2012-11-24 20:44:39 ----A---- C:\Windows\system32\AppxSip.dll
2012-11-24 20:44:38 ----A---- C:\Windows\system32\drivers\battc.sys
2012-11-24 20:40:29 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2012-11-24 20:40:29 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-11-24 20:40:29 ----A---- C:\Windows\system32\mfcore.dll
2012-11-24 20:40:29 ----A---- C:\Windows\system32\audiosrv.dll
2012-11-24 20:40:29 ----A---- C:\Windows\system32\AudioSes.dll
2012-11-24 20:40:29 ----A---- C:\Windows\system32\AudioEng.dll
2012-11-24 20:40:29 ----A---- C:\Windows\system32\audiodg.exe
2012-11-24 20:40:28 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2012-11-24 20:40:28 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2012-11-24 20:40:28 ----A---- C:\Windows\system32\EncDump.dll
2012-11-24 20:40:28 ----A---- C:\Windows\system32\AUDIOKSE.dll
2012-11-24 20:40:28 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2012-11-24 20:40:25 ----A---- C:\Windows\system32\rdpcorets.dll
2012-11-24 20:40:25 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-11-24 20:40:24 ----A---- C:\Windows\system32\dskquota.dll
2012-11-24 20:40:24 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-11-24 20:40:23 ----A---- C:\Windows\SYSWOW64\dskquota.dll
2012-11-24 20:40:22 ----A---- C:\Windows\system32\rfxvmt.dll
2012-11-24 20:40:22 ----A---- C:\Windows\system32\rdpudd.dll
2012-11-24 20:40:17 ----A---- C:\Windows\system32\mshtml.dll
2012-11-24 20:40:14 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-11-24 20:40:12 ----A---- C:\Windows\system32\ieframe.dll
2012-11-24 20:40:11 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-11-24 20:40:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-11-24 20:40:10 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-11-24 20:40:10 ----A---- C:\Windows\system32\iertutil.dll
2012-11-24 20:40:09 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-11-24 20:40:09 ----A---- C:\Windows\system32\urlmon.dll
2012-11-24 20:40:09 ----A---- C:\Windows\system32\msfeeds.dll
2012-11-24 20:40:09 ----A---- C:\Windows\system32\hal.dll
2012-11-24 20:40:08 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-11-24 20:40:05 ----A---- C:\Windows\SYSWOW64\twinui.dll
2012-11-24 20:40:05 ----A---- C:\Windows\system32\twinui.dll
2012-11-24 20:40:04 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-11-24 20:40:04 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-11-24 20:40:04 ----A---- C:\Windows\system32\drivers\pdc.sys
2012-11-24 20:40:04 ----A---- C:\Windows\system32\authui.dll
2012-11-24 20:40:04 ----A---- C:\Windows\system32\actxprxy.dll
2012-11-24 20:39:50 ----A---- C:\Windows\system32\mfnetsrc.dll
2012-11-24 20:39:49 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2012-11-24 20:39:49 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2012-11-24 20:39:49 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2012-11-24 20:39:49 ----A---- C:\Windows\system32\mfnetcore.dll
2012-11-24 20:39:49 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2012-11-24 20:39:48 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2012-11-24 20:39:48 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2012-11-24 20:37:19 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2012-11-24 20:37:19 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2012-11-24 20:35:51 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-11-24 20:35:51 ----A---- C:\Windows\system32\ReAgent.dll
2012-11-24 20:35:50 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-11-24 20:35:50 ----A---- C:\Windows\system32\ReAgentc.exe
2012-11-24 20:35:47 ----A---- C:\Windows\system32\win32k.sys
2012-11-24 20:30:55 ----D---- C:\ProgramData\WEBREG
2012-11-24 20:30:34 ----D---- C:\Users\David\AppData\Roaming\Macromedia
2012-11-24 20:30:30 ----D---- C:\Users\David\AppData\Roaming\HP
2012-11-24 20:29:06 ----D---- C:\ProgramData\HP Product Assistant
2012-11-24 20:27:21 ----A---- C:\Windows\system32\hpf3l083.dll
2012-11-24 20:26:52 ----D---- C:\ProgramData\NVIDIA
2012-11-24 20:26:34 ----A---- C:\Windows\system32\nvsvc64.dll
2012-11-24 20:26:34 ----A---- C:\Windows\system32\nvshext.dll
2012-11-24 20:26:33 ----A---- C:\Windows\system32\nvvsvc.exe
2012-11-24 20:26:33 ----A---- C:\Windows\system32\nvsvcr.dll
2012-11-24 20:26:33 ----A---- C:\Windows\system32\nvmctray.dll
2012-11-24 20:26:33 ----A---- C:\Windows\system32\nvcpl.dll
2012-11-24 20:26:28 ----D---- C:\Program Files (x86)\HP
2012-11-24 20:26:27 ----HD---- C:\Config.Msi
2012-11-24 20:26:00 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-11-24 20:26:00 ----A---- C:\Windows\system32\OpenCL.dll
2012-11-24 20:25:45 ----D---- C:\ProgramData\NVIDIA Corporation
2012-11-24 20:25:35 ----D---- C:\Program Files\NVIDIA Corporation
2012-11-24 20:25:35 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-11-24 20:23:36 ----N---- C:\Windows\hpomdl36.dat
2012-11-24 20:23:36 ----A---- C:\Windows\hpoins36.dat
2012-11-24 20:23:17 ----D---- C:\ProgramData\HP
2012-11-24 20:23:16 ----A---- C:\Windows\system32\drivers\Dot4usb.sys
2012-11-24 20:23:16 ----A---- C:\Windows\system32\drivers\Dot4Prt.sys
2012-11-24 20:23:16 ----A---- C:\Windows\system32\drivers\Dot4.sys
2012-11-24 20:23:14 ----A---- C:\Windows\system32\PortChanger.exe
2012-11-24 20:23:06 ----A---- C:\Windows\system32\HPZIDS40.dll
2012-11-24 20:23:06 ----A---- C:\Windows\system32\hppldcoi.dll
2012-11-24 20:23:05 ----A---- C:\Windows\system32\hposwia_p02b.dll
2012-11-24 20:23:05 ----A---- C:\Windows\system32\hpost_p02b.dll
2012-11-24 20:23:05 ----A---- C:\Windows\system32\hposc_p02a.dll
2012-11-24 20:19:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-11-24 20:19:51 ----D---- C:\Program Files\Realtek
2012-11-24 20:19:29 ----A---- C:\Windows\system32\WavesGUILib64.dll
2012-11-24 20:19:29 ----A---- C:\Windows\system32\tosade.dll
2012-11-24 20:19:29 ----A---- C:\Windows\system32\tepeqapo64.dll
2012-11-24 20:19:29 ----A---- C:\Windows\system32\tadefxapo264.dll
2012-11-24 20:19:29 ----A---- C:\Windows\system32\tadefxapo.dll
2012-11-24 20:19:28 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-11-24 20:19:28 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-11-24 20:19:28 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-11-24 20:19:28 ----A---- C:\Windows\system32\SRSHP64.dll
2012-11-24 20:19:27 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-11-24 20:19:27 ----A---- C:\Windows\system32\SFNHK64.dll
2012-11-24 20:19:26 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2012-11-24 20:19:26 ----A---- C:\Windows\system32\SFCOM64.dll
2012-11-24 20:19:26 ----A---- C:\Windows\system32\SFAPO64.dll
2012-11-24 20:19:26 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-11-24 20:19:26 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-11-24 20:19:26 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-11-24 20:19:25 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2012-11-24 20:19:25 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-11-24 20:19:25 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-11-24 20:19:25 ----A---- C:\Windows\system32\RtkApi64.dll
2012-11-24 20:19:25 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RTEED64A.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RTCOM64.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RCoRes64.dat
2012-11-24 20:19:24 ----A---- C:\Windows\system32\RCoInstII64.dll
2012-11-24 20:19:24 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-11-24 20:19:23 ----A---- C:\Windows\system32\R4EEP64A.dll
2012-11-24 20:19:23 ----A---- C:\Windows\system32\R4EEL64A.dll
2012-11-24 20:19:23 ----A---- C:\Windows\system32\R4EEG64A.dll
2012-11-24 20:19:23 ----A---- C:\Windows\system32\R4EED64A.dll
2012-11-24 20:19:23 ----A---- C:\Windows\system32\R4EEA64A.dll
2012-11-24 20:19:22 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-11-24 20:19:22 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2012-11-24 20:19:21 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2012-11-24 20:19:21 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2012-11-24 20:19:21 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2012-11-24 20:19:21 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-11-24 20:19:21 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-11-24 20:19:20 ----A---- C:\Windows\system32\KAAPORT64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\FMAPO64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2012-11-24 20:19:17 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2012-11-24 20:19:16 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2012-11-24 20:19:15 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-11-24 20:19:15 ----D---- C:\Program Files (x86)\Realtek
2012-11-24 20:19:15 ----A---- C:\Windows\system32\AERTAR64.dll
2012-11-24 20:19:15 ----A---- C:\Windows\system32\AERTAC64.dll
2012-11-24 20:19:10 ----HD---- C:\Program Files (x86)\Temp
2012-11-24 20:19:09 ----RA---- C:\Windows\RtlExUpd.dll
2012-11-24 20:15:13 ----A---- C:\Windows\slsvc.exe
2012-11-24 20:15:13 ----A---- C:\Windows\SLCHook.dll
2012-11-24 20:15:13 ----A---- C:\Windows\PersonalizeEnabler.exe
2012-11-24 20:15:13 ----A---- C:\Windows\EasyHook64.dll
2012-11-24 20:14:50 ----RSHD---- C:\Windows Activation Technologies
2012-11-24 20:11:05 ----D---- C:\Users\David\AppData\Roaming\Adobe
2012-11-24 20:10:30 ----D---- C:\ProgramData\PRICache
2012-11-24 20:10:26 ----SD---- C:\Users\David\AppData\Roaming\Microsoft
2012-11-24 20:10:17 ----D---- C:\Windows\SoftwareDistribution
2012-11-24 20:09:52 ----A---- C:\Windows\system32\netcfg-170477.txt
2012-11-24 20:09:52 ----A---- C:\Windows\system32\netcfg-170181.txt
2012-11-24 20:09:51 ----A---- C:\Windows\system32\netcfg-168590.txt
2012-11-24 20:07:24 ----SHD---- C:\Recovery
2012-11-24 20:07:03 ----ASH---- C:\hiberfil.sys
2012-11-24 20:05:40 ----A---- C:\Windows\system32\netcfg-67392.txt
2012-11-24 20:05:38 ----A---- C:\Windows\system32\netcfg-65255.txt
2012-11-24 20:05:37 ----A---- C:\Windows\system32\netcfg-64194.txt
2012-11-24 20:05:36 ----A---- C:\Windows\system32\netcfg-63835.txt
2012-11-24 20:05:30 ----A---- C:\Windows\system32\netcfg-57704.txt
2012-11-24 20:05:30 ----A---- C:\Windows\system32\netcfg-57486.txt
2012-11-24 20:05:30 ----A---- C:\Windows\system32\netcfg-57174.txt
2012-11-24 20:05:29 ----A---- C:\Windows\system32\netcfg-56815.txt
2012-11-24 20:05:29 ----A---- C:\Windows\system32\netcfg-56597.txt
2012-11-24 20:05:29 ----A---- C:\Windows\system32\netcfg-56082.txt
2012-11-24 20:05:28 ----A---- C:\Windows\system32\netcfg-55817.txt
2012-11-24 20:05:23 ----D---- C:\Windows\Prefetch
2012-11-24 20:04:44 ----ASH---- C:\swapfile.sys
2012-11-24 20:04:44 ----ASH---- C:\pagefile.sys
2012-11-24 20:04:43 ----SHD---- C:\System Volume Information
2012-11-24 20:03:16 ----D---- C:\Windows\Panther
2012-11-24 20:03:04 ----RASH---- C:\BOOTSECT.BAK
2012-11-24 20:03:02 ----SHD---- C:\Boot
======List of files/folders modified in the last 1 month======
2012-11-25 17:34:00 ----RD---- C:\Program Files
2012-11-25 17:12:35 ----D---- C:\Windows\Temp
2012-11-25 17:04:12 ----D---- C:\Windows\Microsoft.NET
2012-11-25 17:00:00 ----D---- C:\Windows\system32\sru
2012-11-25 16:56:43 ----RD---- C:\Windows\System32
2012-11-25 16:56:43 ----D---- C:\Windows\Inf
2012-11-25 16:56:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-11-25 16:54:37 ----D---- C:\Windows
2012-11-25 16:50:18 ----D---- C:\Windows\system32\Tasks
2012-11-25 16:50:02 ----D---- C:\Windows\debug
2012-11-25 12:32:04 ----D---- C:\Windows\system32\wdi
2012-11-24 21:37:28 ----RD---- C:\Program Files (x86)
2012-11-24 21:35:49 ----HD---- C:\ProgramData
2012-11-24 21:35:44 ----SHD---- C:\Windows\Installer
2012-11-24 21:35:44 ----D---- C:\Program Files (x86)\Common Files
2012-11-24 21:35:42 ----D---- C:\Windows\SysWOW64
2012-11-24 21:34:38 ----D---- C:\Windows\Tasks
2012-11-24 21:25:04 ----D---- C:\Windows\system32\DriverStore
2012-11-24 21:25:04 ----D---- C:\Windows\system32\Drivers
2012-11-24 21:24:17 ----D---- C:\Windows\system32\config
2012-11-24 21:15:12 ----D---- C:\Windows\system32\sk-SK
2012-11-24 21:14:32 ----D---- C:\Windows\WinSxS
2012-11-24 21:12:26 ----RD---- C:\Windows\ToastData
2012-11-24 21:12:21 ----D---- C:\Program Files\Windows Media Player
2012-11-24 21:12:21 ----D---- C:\Program Files (x86)\Windows Media Player
2012-11-24 21:12:19 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-11-24 21:12:18 ----D---- C:\Windows\SYSWOW64\en-US
2012-11-24 21:12:15 ----RD---- C:\Windows\ImmersiveControlPanel
2012-11-24 21:12:15 ----D---- C:\Windows\system32\oobe
2012-11-24 21:12:15 ----D---- C:\Windows\system32\migration
2012-11-24 21:12:15 ----D---- C:\Windows\system32\en-US
2012-11-24 21:12:07 ----D---- C:\Windows\apppatch
2012-11-24 21:12:05 ----D---- C:\Windows\system32\Boot
2012-11-24 21:12:00 ----D---- C:\Windows\WinStore
2012-11-24 21:11:50 ----D---- C:\Program Files\Internet Explorer
2012-11-24 21:11:50 ----D---- C:\Program Files (x86)\Internet Explorer
2012-11-24 21:10:27 ----D---- C:\Windows\CbsTemp
2012-11-24 21:01:32 ----SD---- C:\ProgramData\Microsoft
2012-11-24 20:55:18 ----D---- C:\Windows\system32\catroot2
2012-11-24 20:50:11 ----D---- C:\Windows\system32\catroot
2012-11-24 20:49:56 ----D---- C:\Windows\SYSWOW64\wbem
2012-11-24 20:49:56 ----D---- C:\Windows\SYSWOW64\migration
2012-11-24 20:49:52 ----D---- C:\Windows\system32\wbem
2012-11-24 20:49:52 ----D---- C:\Windows\PolicyDefinitions
2012-11-24 20:49:51 ----D---- C:\Windows\system32\setup
2012-11-24 20:48:24 ----D---- C:\Windows\system32\restore
2012-11-24 20:44:46 ----D---- C:\Windows\AUInstallAgent
2012-11-24 20:30:55 ----D---- C:\Windows\system32\CodeIntegrity
2012-11-24 20:30:23 ----A---- C:\Windows\win.ini
2012-11-24 20:29:50 ----HD---- C:\Program Files\WindowsApps
2012-11-24 20:29:33 ----D---- C:\Windows\twain_32
2012-11-24 20:29:10 ----RSD---- C:\Windows\Fonts
2012-11-24 20:27:10 ----RD---- C:\Users
2012-11-24 20:26:23 ----D---- C:\Windows\Help
2012-11-24 20:11:37 ----SHD---- C:\$Recycle.Bin
2012-11-24 20:07:24 ----D---- C:\Windows\system32\Recovery
2012-11-24 20:05:57 ----D---- C:\Windows\system32\drivers\UMDF