Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-07-2016 01 Ran by Mark (administrator) on MARKSPC (11-07-2016 14:41:24) Running from C:\Users\Mark\Downloads Loaded Profiles: Mark & MSSQLServerOLAPService & ReportServer & MsDtsServer120 (Available Profiles: Mark & MSSQLServerOLAPService & ReportServer & SQLSERVERAGENT & MsDtsServer120 & MSSQLSERVER) Platform: Windows 10 Home Version 1511 (X64) Language: English (United States) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (USTechSupport, LLC (www.ustechsupport.com)) C:\Program Files (x86)\USTechSupport\PC Optimizer\USTSPCODefragSrv64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\120\DTS\Binn\MsDtsSrvr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSRS12.MSSQLSERVER\Reporting Services\ReportServer\bin\ReportingServicesService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSAS12.MSSQLSERVER\OLAP\bin\msmdsrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe (OpenDownloadManager.com) C:\Program Files (x86)\OpenDownloaderManager\ODM.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATINME.EXE (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATINME.EXE (Microsoft Corporation) C:\Windows\HelpPane.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_17.7070.58021.0_x64__8wekyb3d8bbwe\onenoteim.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [iTunesHelper] => "C:\Program Files\iTunes\iTunesHelper.exe" HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954352 2016-04-28] (Synaptics Incorporated) HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [581024 2012-09-07] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.) HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [650784 2015-12-22] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863776 2015-12-22] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1711680 2013-01-27] (CyberLink Corp.) HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\...\Run: [Open Download Manager] => C:\Program Files (x86)\OpenDownloaderManager\odm.exe [6369280 2013-05-31] (OpenDownloadManager.com) HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\...\Run: [EPSON Artisan 710 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFSA.EXE [223232 2009-02-23] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINME.EXE [298560 2013-12-16] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATINME.EXE [298560 2013-12-16] (SEIKO EPSON CORPORATION) GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) ProxyServer: [S-1-5-21-2831008254-3413696649-1044918524-1001] => http=127.0.0.1:8080 Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{db125137-c39a-4493-ac4c-4d20d841ab46}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{db125137-c39a-4493-ac4c-4d20d841ab46}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{ed7b15cb-d9c2-45be-ad44-0a140dba9814}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ed7b15cb-d9c2-45be-ad44-0a140dba9814}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT13/1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com URLSearchHook: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 - (No Name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - No File SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM -> {7B176CAA-644C-4F9F-8EB6-547B60C42B90} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM-x32 -> {7B176CAA-644C-4F9F-8EB6-547B60C42B90} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 -> {7B176CAA-644C-4F9F-8EB6-547B60C42B90} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-06-10] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-02-20] (Oracle Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-21] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-02-25] (HP) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-02-25] (HP) Toolbar: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKU\S-1-5-21-2831008254-3413696649-1044918524-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} hxxps://akamaicdn.webex.com/client/WBXclient-T29L10NSP13EP50-10011/webex/ieatgpc1.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-02-20] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll [2012-08-08] (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [No File] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-06-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-28] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.) FF HKLM\...\Firefox\Extensions: [tmbepff-7.5@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\Module\20002\7.5.1137\7.5.1137\firefoxextension => not found FF HKLM-x32\...\Firefox\Extensions: [tmbepff-7.5@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\Module\20002\7.5.1137\7.5.1137\firefoxextension => not found FF HKLM-x32\...\Firefox\Extensions: [{22181a4d-af90-4ca3-a569-faed9118d6bc}] - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension => not found FF HKLM-x32\...\Firefox\Extensions: [{21541D23-FDA1-4bf3-8AF2-8F623BF70B07}] - C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension => not found FF HKLM-x32\...\Firefox\Extensions: [{jid1-vS7biDmom8YxhA@jetpack}] - 55993840\extensions\{jid1-vS7biDmom8YxhA@jetpack} => not found StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR HomePage: Default -> search.ask.com/?gct=hp CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR DefaultSearchURL: Default -> hxxp://www.search.ask.com/web?q={searchTerms} CHR DefaultSearchKeyword: Default -> search.ask.com CHR DefaultSuggestURL: Default -> hxxp://ssmsp.ask.com/query?sstype=prefix&li=ff&q={searchTerms} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.106\PepperFlash\pepflashplayer.dll () CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.106\ppGoogleNaClPluginChrome.dll => No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.106\pdf.dll => No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll => No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.) CHR Profile: C:\Users\Mark\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Cisco WebEx Extension) - C:\Users\Mark\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2016-07-06] CHR Extension: (Chrome Web Store Payments) - C:\Users\Mark\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-06] CHR HKU\S-1-5-21-2831008254-3413696649-1044918524-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gdfjhiclilbjdpeejgcgebmmihkkofji] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gdfjhiclilbjdpeejgcgebmmihkkofji] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2944768 2016-06-10] (Microsoft Corporation) R2 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [676336 2015-06-25] (SEIKO EPSON CORPORATION) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552 2016-04-26] (Hewlett-Packard Company) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 MsDtsServer120; C:\Program Files (x86)\Microsoft SQL Server\120\DTS\Binn\MsDtsSrvr.exe [217280 2015-06-09] (Microsoft Corporation) S2 MSSQLSERVER; C:\Program Files (x86)\Microsoft SQL Server\MSSQL12.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [199360 2015-06-09] (Microsoft Corporation) R2 MSSQLServerOLAPService; C:\Program Files (x86)\Microsoft SQL Server\MSAS12.MSSQLSERVER\OLAP\bin\msmdsrv.exe [34920640 2015-04-20] (Microsoft Corporation) R2 ReportServer; C:\Program Files (x86)\Microsoft SQL Server\MSRS12.MSSQLSERVER\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2046144 2015-04-20] (Microsoft Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [245832 2014-01-13] (Realtek Semiconductor) S3 SQL Server Distributed Replay Client; C:\Program Files (x86)\Microsoft SQL Server\120\Tools\DReplayClient\DReplayClient.exe [139968 2014-02-21] (Microsoft Corporation) S3 SQL Server Distributed Replay Controller; C:\Program Files (x86)\Microsoft SQL Server\120\Tools\DReplayController\DReplayController.exe [345280 2014-02-21] (Microsoft Corporation) S2 SQLSERVERAGENT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL12.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [454848 2015-06-09] (Microsoft Corporation) R2 USTSPCODiskOptimizer; C:\Program Files (x86)\USTechSupport\PC Optimizer\USTSPCODefragSrv64.exe [2266688 2016-05-04] (USTechSupport, LLC (www.ustechsupport.com)) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R1 mbamchameleon; C:\WINDOWS\system32\drivers\mbamchameleon.sys [140672 2016-03-10] (Malwarebytes) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-07-11] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2554528 2015-06-12] (MediaTek Inc.) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek ) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [52904 2016-04-28] (Synaptics Incorporated) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30384 2015-06-23] (HP Inc.) R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30384 2015-06-23] (HP Inc.) S2 AdpeakWFP; \??\C:\Windows\system32\Drivers\AdpeakWFP64.sys [X] U5 REALPLAYERUPDATESVC; no ImagePath ========================== Drivers MD5 ======================= C:\Windows\System32\drivers\1394ohci.sys DF1C3D7E6C7929AD83BE22852B5B08CB C:\Windows\System32\drivers\3ware.sys 2C5B3035B86770ADD2FE9BFBAF5B35A4 C:\Windows\System32\drivers\ACPI.sys 469441BAE3FF8A16826FC62C51EF5E18 C:\Windows\System32\Drivers\acpiex.sys 7EADED8087C392876521F7EBCE846EF4 C:\Windows\System32\drivers\acpipagr.sys C498887123327CDFD73A05E7A2780920 C:\Windows\System32\drivers\acpipmi.sys C8DBE6EFFCF014CAA010B9BDDAC833EC C:\Windows\System32\drivers\acpitime.sys 17039DBEB3B7B9ADCDB4B4533AA9771F C:\Windows\System32\drivers\ADP80XX.SYS F7D0CD345D2DA42E7042ABCD73662403 C:\Windows\system32\drivers\afd.sys 70148EFA9A562E7185B75BBE7D376BF7 C:\Windows\System32\drivers\agp440.sys 870F1A2C936F92B5D053DF7EC75B352F C:\Windows\System32\DRIVERS\ahcache.sys 3DF7751D5DC6525E7DC6617FBB45054F C:\Windows\System32\drivers\amdk8.sys B70F0F2F54B4A4DB6E9C830454752F5A C:\Windows\System32\drivers\amdppm.sys 35E890482C9728DD5C552B85DA8A5AB2 C:\Windows\System32\drivers\amdsata.sys 5B30BCFE6E02E45D3EE268FF001BC5E0 C:\Windows\System32\drivers\amdsbs.sys F20B30F35A5C7888441B4DCA001ECF8E C:\Windows\System32\drivers\amdxata.sys AFE838D7576C581D6483529621AB10CC C:\Windows\System32\drivers\appid.sys EDDB0D726DBECDFC1DBCC6DB464E5A13 C:\Windows\System32\drivers\arcsas.sys E3FE8F610B1CC12BC3B2E6BC43DC97E2 C:\Windows\System32\drivers\asyncmac.sys 5E00748A1AD246CAECBBB7553BED36CC C:\Windows\System32\drivers\atapi.sys 492B99D2E3D5D7BFD5F0AE1BE7BD37DD C:\Windows\System32\drivers\bxvbda.sys 6447BA6FA709514B6C803D159B4C7D1E C:\Windows\System32\drivers\BasicDisplay.sys B4AC08B1D04D0CE085435E5CD0E663C5 C:\Windows\System32\drivers\BasicRender.sys 25B5BB369DEE2BAE4BF459C978FF9035 C:\Windows\System32\drivers\bcmfn.sys 3F5523DCEFE42B385659C5CB46A6B810 C:\Windows\System32\drivers\bcmfn2.sys 0B750A6A6D847E73CA48ADD7A0F5A393 C:\Windows\System32\Drivers\Beep.sys 5A88834AEE15D97695FAE0837B73B3E4 C:\Windows\System32\DRIVERS\bowser.sys DA2C6F7ACE392193C424FEA975C5BFFB C:\Windows\System32\drivers\BthAvrcpTg.sys CAEC7BC11AF69A181AF7932E636E09E4 C:\Windows\System32\drivers\bthhfenum.sys 5F2B4B32E986C058525D3BA2A475A16C C:\Windows\System32\drivers\BthHFHid.sys 5406289E8AE2CB52FC408154E0A64BA7 C:\Windows\System32\drivers\bthmodem.sys A76F20CCCA31895A1DA78A875E50F946 C:\Windows\System32\drivers\buttonconverter.sys BF89BDBA5D3A0B4256D3F6FC8D31880D C:\Windows\System32\drivers\capimg.sys C24C27FDF93B85A4EFCF25F830253AA2 C:\Windows\System32\DRIVERS\cdfs.sys 7F9C7226D743B232907ED2537B8A574F C:\Windows\System32\drivers\cdrom.sys 82D97776BF982AA143BDC7DFB5054EA8 C:\Windows\System32\drivers\circlass.sys 0505C1D991D0F9D47F3353BB98597C7E C:\Windows\System32\drivers\CLFS.sys 8B4B39C507ABA09AAFE8E3932D1B392C C:\Windows\system32\DRIVERS\CLVirtualDrive.sys 075CCE75090786F124573A788C8656E6 C:\Windows\System32\drivers\CmBatt.sys 95832B049E2833B9F5189823CDF946C7 C:\Windows\System32\Drivers\cng.sys 3F7C80D9F16B94367646CBF8B8C052F4 C:\Windows\System32\DRIVERS\cnghwassist.sys 58D640BC2294C71BDE0953F12D4B432F C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys 14F9883588398A1BDE49C75098C75DE6 C:\Windows\System32\drivers\condrv.sys 02B8E49148DE5E0A2F6FDF28CE94A6AC C:\Windows\System32\drivers\dam.sys 2619DC483579DB9FE804044C1ADFFD1A C:\Windows\System32\Drivers\dfsc.sys 935823F79CBEDB91637B63D37E3A5A36 C:\Windows\System32\drivers\disk.sys 4904B152E4942BF700F2D73228B4D477 C:\Windows\System32\drivers\dmvsc.sys 0197AE4B9790A4E73751CACFAA480126 C:\Windows\System32\drivers\drmkaud.sys 25FA06D3B49D6ADF8E874FFCDCD76B50 C:\Windows\System32\drivers\dxgkrnl.sys 8B83335B6A86F39785FC7C9DE5F5B29F C:\Windows\System32\drivers\evbda.sys 491275B864B704B54EC08168344E0F38 C:\Windows\System32\drivers\EhStorClass.sys CEF108FCE06892CFA5F1B49527D4BF49 C:\Windows\System32\drivers\EhStorTcgDrv.sys 5B1EAAE3001A7A320C106FC3859F4111 C:\Windows\System32\drivers\errdev.sys 7A2705148A4BB3CA255F81624338B461 C:\Windows\System32\Drivers\exfat.sys DFE8A33FBCF6F38182631A4D6097B92D C:\Windows\System32\Drivers\fastfat.sys C330883C06E2D4CE4F6982F048265D37 C:\Windows\System32\drivers\fdc.sys 9D299AE86D671488926126A84DF77BFD C:\Windows\System32\drivers\filecrypt.sys 8F2523C9D8F1448FF2156452AF60FA00 C:\Windows\System32\drivers\fileinfo.sys 92ECCFA58C8195B8EA33ED942469D4E6 C:\Windows\System32\drivers\filetrace.sys 87C51FDD50C17882BA93E28BBABB9847 C:\Windows\System32\drivers\flpydisk.sys E99261DD76D1C9E05AF575939CAE5AC5 C:\Windows\System32\drivers\fltmgr.sys 25D7A58625E1453E40D36825DE74E4F1 C:\Windows\System32\drivers\FsDepends.sys B4175E8BE60B099686FF55CA7D692316 C:\Windows\System32\Drivers\Fs_Rec.sys CC71372CEB811A72F1DC99089C5CBF53 C:\Windows\System32\DRIVERS\fvevol.sys 50DFE05C698E9B0A63D95E3D669A105C C:\Windows\System32\drivers\gagp30kx.sys B9981A4CB9F728B3312A3885BFAA7204 C:\Windows\System32\drivers\vmgencounter.sys 77555B11B264991DDC26872FFCF1AB97 C:\Windows\System32\drivers\genericusbfn.sys F3AC9652D88BF87BA6596CBEA28CE10F C:\Windows\System32\Drivers\msgpioclx.sys F802FBABF0C4DF1BAA733187B2E476F5 C:\Windows\System32\drivers\gpuenergydrv.sys D011B0ADB15F4815310CE1BF4780B33E C:\Windows\System32\drivers\HDAudBus.sys 84BC034B6BB763733C1949B7B9BAF976 C:\Windows\System32\drivers\HidBatt.sys 6B8CB114B8E64C0636EB49F7B914D1FC C:\Windows\System32\drivers\hidbth.sys D1AD197CCDAAC0CB4819DA1D6EB17BAE C:\Windows\System32\drivers\hidi2c.sys 64909DECCFCC6FB5D9A5BAFDCCB31FEE C:\Windows\System32\drivers\hidinterrupt.sys F510F7B7BF61DEAAC04E65C3B65E8D59 C:\Windows\System32\drivers\hidir.sys 90F3ED42D423C942BA5EA54E2FFE7AC7 C:\Windows\System32\drivers\hidusb.sys 128DEDDD61915DBA4D451D91D21F0513 C:\Windows\System32\drivers\HpSAMD.sys FF442DCDCE1F6E9FAA9C8AD0CD1D199B C:\Windows\System32\drivers\HTTP.sys 63C3F74DC398A1C1A77E39DFB9C312CA C:\Windows\System32\drivers\hwpolicy.sys CBA5E88A0F0475B7F49653BB72150BEF C:\Windows\System32\drivers\hyperkbd.sys D668FAB4B0397B426EE3D41683B9A1C0 C:\Windows\system32\DRIVERS\HyperVideo.sys 40115A0F8E7FF9E786EBBD1D33D39AD7 C:\Windows\System32\drivers\i8042prt.sys 53FDD9E69189E546DE4740F8C4D8AB2F C:\Windows\System32\drivers\iai2c.sys 9A2A2F3C69B9A30B6E78536F6D258BAD C:\Windows\System32\drivers\iaLPSS2i_I2C.sys 59A20F5AD9F4AE54098154359519408E C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\Windows\System32\drivers\iaLPSSi_I2C.sys EB82A11613326691508D9ED9A4FE29E7 C:\Windows\System32\drivers\iaStorA.sys 6C91E425ACE29594BD574DE38AC9B76D C:\Windows\System32\drivers\iaStorAV.sys 6B0029A0253098CCE28EACCFDB9E7208 C:\Windows\System32\drivers\iaStorV.sys 9652E1E35A92D8C75710C17A63B15796 C:\Windows\System32\drivers\ibbus.sys FFADF691F7BF727AF5C863454A372723 C:\Windows\system32\DRIVERS\igdkmd64.sys CEFA6BDB4789F3DA003ACBDCC64F5877 C:\Windows\system32\drivers\intelaud.sys B1F193AB8FB72E9FC34B3A39314ED872 C:\Windows\system32\drivers\RTKVHD64.sys 6C7970A8E0546A4D9466E0045C7DB199 C:\Windows\system32\DRIVERS\IntcDAud.sys 87871AB7AC797F922A6F3D4C874CED96 C:\Windows\System32\drivers\intelide.sys ECDB27420D3A98424666904525A8562A C:\Windows\System32\drivers\intelpep.sys 8FF1978643EFD219C5BA49690191D701 C:\Windows\System32\drivers\intelppm.sys B61B60F36E1C8022FA8166ABF0F66B07 C:\Windows\System32\drivers\ioqos.sys CA0D42029AFFC4514D295E1EF823D02D C:\Windows\System32\DRIVERS\ipfltdrv.sys 6E3F9D95235DFC9417384080A216F310 C:\Windows\System32\drivers\IPMIDrv.sys 4F527ECB5EAB47D8EAF34A469666C469 C:\Windows\System32\drivers\ipnat.sys 9E5E8F2A1996F23B7E9687846AA81B01 C:\Windows\System32\drivers\irenum.sys C317EB660138BC9CBFE37CCDE56351AE C:\Windows\System32\drivers\isapnp.sys 531994A6D9399D9B74BE12B5BB58A81E C:\Windows\System32\drivers\msiscsi.sys 68D5354A4A9692EEC24664C60F47D4A2 C:\Windows\System32\drivers\iwdbus.sys DD1F43B86AD84E53203F92FD3EF3AEB6 C:\Windows\System32\drivers\kbdclass.sys 701D7DB13B0815E7076EF4CB4CE981F8 C:\Windows\System32\drivers\kbdhid.sys 884EBBDDBF5968003B40185BD96FF0E6 C:\Windows\System32\drivers\kdnic.sys 6B3A0C7902811E6372643447E41F7048 C:\Windows\System32\Drivers\ksecdd.sys 982C795DE20CED7AEDD2E7899B5D9BC1 C:\Windows\System32\Drivers\ksecpkg.sys 425CFD45BDF5B9F8B790BEB20E0A8721 C:\Windows\system32\drivers\ksthunk.sys E9BB0023D730701BB5D9839B44F5E6B5 C:\Windows\System32\drivers\lltdio.sys EC34EED89C34B27C292166B725AC7A7B C:\Windows\System32\drivers\lsi_sas.sys 961F28D879D345BFA50AF51285C90F2E C:\Windows\System32\drivers\lsi_sas2i.sys 6BFB8D1B3407518BE06B6F81F92FA0F5 C:\Windows\System32\drivers\lsi_sas3i.sys BE0E47988D78F731DEC2C0CB03E765CB C:\Windows\System32\drivers\lsi_sss.sys F99BF02BE9219986817BF094981EEB18 C:\Windows\system32\drivers\luafv.sys 2FCF837196082864F66CFD9CAB256275 C:\WINDOWS\system32\drivers\mbamchameleon.sys 1239597BAB7EED2BB16D035AF87E65D9 C:\WINDOWS\system32\drivers\mbam.sys 78BFF5425E044086E74E78650A359FBB C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 78488AF2AB2111D67B3C4044707A519B C:\WINDOWS\system32\drivers\mwac.sys 898415AC0B5F1D2A9A48ABCB68A6DC4B C:\Windows\System32\drivers\megasas.sys 2ED29B635F35E31A1C0D3DDB7DD2AD03 C:\Windows\System32\drivers\megasr.sys 22E3CB85870879CBAE13C5095A8B12E3 C:\Windows\System32\drivers\HECIx64.sys 772A1DEEDFDBC244183B5C805D1B7D85 C:\Windows\System32\drivers\mlx4_bus.sys D41920FBFFF2BBCBBC69A5B383AD022E C:\Windows\system32\drivers\mmcss.sys 64BD0C87064EA20C2D3DC4199F9C239C C:\Windows\System32\drivers\modem.sys 8D4B46FA84A3A3702EDADD37FAC6EDBA C:\Windows\System32\drivers\monitor.sys 78FEC1BDB168370F131BFBFEA0A04E9D C:\Windows\System32\drivers\mouclass.sys D1CC0833CFBC4222A95CAA5D0C8C78FF C:\Windows\System32\drivers\mouhid.sys C2E05EC6B80BCF5AE362DA873E1BCE64 C:\Windows\System32\drivers\mountmgr.sys D5B7668A8F6C67C51FA5C6C513396D6C C:\Windows\System32\drivers\mpsdrv.sys 5FBCB85D127BE21E3A9DAF11A13C00EA C:\Windows\system32\drivers\mrxdav.sys BF6CA7EA5ECD6CF72D3D76652A9B8280 C:\Windows\System32\DRIVERS\mrxsmb.sys 0B3B0C1D86050355676640488FA897D3 C:\Windows\System32\DRIVERS\mrxsmb10.sys 1A490555FD330CA2764D89191177C867 C:\Windows\System32\DRIVERS\mrxsmb20.sys 0F47A6C09F0A7FB5513D322A2B9BE4EC C:\Windows\System32\drivers\bridge.sys A4411C522D41707D5BCA817A5BB9E30B C:\Windows\System32\Drivers\Msfs.sys D123343DDB02E372B02BF2C4293F835F C:\Windows\System32\drivers\msgpiowin32.sys B3358F380BA3F29F56BE0F7734C24D5F C:\Windows\System32\drivers\mshidkmdf.sys B2044D5D125F249680508EC0B2AAEFAC C:\Windows\System32\drivers\mshidumdf.sys 36ABE7FC80BED4FE44754AE5CFB51432 C:\Windows\System32\drivers\msisadrv.sys 59307FEAFC9E72EEEC56B7FD7D294F4C C:\Windows\system32\DRIVERS\MSKSSRV.sys E9457EDFEBC774199F907395C6D09CA2 C:\Windows\System32\drivers\mslldp.sys C85D79735641D27C5821C35ECDDC2334 C:\Windows\system32\DRIVERS\MSPCLOCK.sys EF75184B64356850D0F04D049C253526 C:\Windows\system32\DRIVERS\MSPQM.sys 543933D166C618E7588EA77707EC1683 C:\Windows\System32\Drivers\MsRPC.sys 182711E9DDF70121A20EBB61B2DFB9E8 C:\Windows\System32\drivers\mssmbios.sys E887FFDD6734C496407E9219225CB6FF C:\Windows\system32\DRIVERS\MSTEE.sys 83A2AB75951000D681FABDB80C07AEFC C:\Windows\System32\drivers\MTConfig.sys 4FA0483896FC16583851EFB733FCB083 C:\Windows\System32\Drivers\mup.sys 60F88248608315E13391C2F1C3B4473F C:\Windows\System32\drivers\mvumis.sys 218705233D02776AE4D19CC37D985C1B C:\Windows\System32\DRIVERS\nwifi.sys AA4CD20708B7E0412A5316D7E2875103 C:\Windows\System32\drivers\ndfltr.sys B57CE307DA101C739885B7CC0678077F C:\Windows\System32\drivers\ndis.sys E582DA849A58524E645545FB68B6625D C:\Windows\System32\drivers\ndiscap.sys 202260E7CDD731A32AF62ABD1ABEE008 C:\Windows\System32\drivers\NdisImPlatform.sys A1D473D0CF10561F29B58EA7C5412A92 C:\Windows\System32\DRIVERS\ndistapi.sys 1A0AE283B8DE6BB76412A0F8213D45AC C:\Windows\System32\drivers\ndisuio.sys A74EE2D2C0BFF5EC3A6185791868C4CA C:\Windows\System32\drivers\NdisVirtualBus.sys 32A9BD1342640D48AD85C8B3E812B984 C:\Windows\System32\drivers\ndiswan.sys 6A6A8CF5EE61801375A38EBB871D4057 C:\Windows\System32\DRIVERS\ndiswan.sys 6A6A8CF5EE61801375A38EBB871D4057 C:\Windows\System32\DRIVERS\NDProxy.sys 50AEF8EF0064A91ABB08D858D039C9DE C:\Windows\System32\drivers\Ndu.sys 883A36E2FF7FA3E1281CB575579FE3AF C:\Windows\System32\drivers\netbios.sys 026618ECF6C4BEBDCB7885D42EC0DBE4 C:\Windows\System32\DRIVERS\netbt.sys C03E926B0E7D66D68994067231DC3246 C:\Windows\system32\DRIVERS\netr28x.sys 152E946E60EEF45088D7D1E74D9F1779 C:\Windows\System32\drivers\netvsc.sys 2BB62723C835F75F0C7C9E6A736881FB C:\Windows\System32\Drivers\Npfs.sys 465DC580170CD844206D7E3EF1DBF2A1 C:\Windows\System32\drivers\npsvctrig.sys 29395C214D2CD4C81F73166AB988A797 C:\Windows\System32\drivers\nsiproxy.sys 2871225495F832A8C8A7DD1A17EDB3DC C:\Windows\System32\Drivers\NTFS.sys 19BD8A88AAC580592668B070AC0727D9 C:\Windows\System32\Drivers\Null.sys 6DBD703320484C37CEA9E4E2D266A8CE C:\Windows\System32\drivers\nvraid.sys 604D27CC38CC23493F218D0BB834B3FF C:\Windows\System32\drivers\nvstor.sys 8B50D897657AB4A15FD9E251BBF7D107 C:\Windows\System32\drivers\nv_agp.sys 31F990B2B6B91E9D7A667405CE12FCB1 C:\Windows\System32\drivers\parport.sys 7D0FC96264C0F8F2C1321E33E8EB646C C:\Windows\System32\drivers\partmgr.sys D330D74B5F99309B5CCA30AE41C57CDE C:\Windows\System32\drivers\pci.sys CF78AF126B00C1B0A6FF45BD838E8EFE C:\Windows\System32\drivers\pciide.sys 2B4D98DF0CA57FB9536DBC80D2449D1F C:\Windows\System32\drivers\pcmcia.sys F4D5793BF2E58AF15C6CF2FEEF9E73EB C:\Windows\System32\drivers\pcw.sys 22A53744CEEADFFFD33BA010FAD95229 C:\Windows\System32\drivers\pdc.sys 67B9684B8272D5EBD1CCBB1DBD425EC8 C:\Windows\System32\drivers\peauth.sys E2F8376F9731D12A009C522036C6073A C:\Windows\System32\drivers\percsas2i.sys 1398A85E59698067CBBE1D66A9C13ADF C:\Windows\System32\drivers\percsas3i.sys 35F7C7AD709D909D618D9EDF987FC3ED C:\Windows\System32\drivers\raspptp.sys 5BA6B9AD03B81546BA64E488C4EF9D17 C:\Windows\System32\drivers\processr.sys 21AECFF3EB5748CBE12538A2500EFDE5 C:\Windows\System32\drivers\pacer.sys 596FB6C5A72F34B7566930985E543806 C:\Windows\system32\drivers\qwavedrv.sys CFBA9C976CBF6796E5DC39EF59984021 C:\Windows\System32\DRIVERS\rasacd.sys 7B2AD8C55217B514C14281AB97B4E21D C:\Windows\System32\drivers\AgileVpn.sys E15A9CE1E2E7D1C8DF97A4FC1FFE6289 C:\Windows\System32\drivers\rasl2tp.sys E3C82823B22463BC38AA4F8ADA852624 C:\Windows\System32\drivers\raspppoe.sys 3369023EB5790A75BA7DABA14B75D922 C:\Windows\System32\drivers\rassstp.sys 1E32A8CD65C4AD0A827CFEB13034DA29 C:\Windows\System32\DRIVERS\rdbss.sys 2B648363E4C5E34B469C58596F377DD9 C:\Windows\System32\drivers\rdpbus.sys D0221C13960E274CC539D72D5A842ED0 C:\Windows\System32\drivers\rdpdr.sys 1DC2CC74B51E4DC4CD5A20C1021E4010 C:\Windows\System32\drivers\rdpvideominiport.sys 177DF954D0DEC0465A380C75F6E7F65F C:\Windows\System32\drivers\rdyboost.sys 5D1680871054D2B0B8A971BC8AB3B837 C:\Windows\System32\Drivers\ReFSv1.sys 341E6830DA70F65730300DAB4CB0B490 C:\Windows\system32\DRIVERS\RtsP2Stor.sys C8173EAA7EDAC1DB9063139A5FD57BF4 C:\Windows\System32\drivers\rspndr.sys 0AC5FCDC29ED97ECDEF1276425EE2059 C:\Windows\System32\drivers\rt640x64.sys FBEFF38DE03450E03E6CD9E8E37A8C74 C:\Windows\System32\drivers\vms3cap.sys 044890BB0D6CF1E23C1087234D320509 C:\Windows\System32\drivers\sbp2port.sys 530F797129776AA7E81994783A97E2AD C:\Windows\System32\DRIVERS\scfilter.sys 9B6B1D4DB35A3D9BEAF023BC95E1F49D C:\Windows\System32\drivers\sdbus.sys B24408471C1BCB17FC44F5B47EA8DEA3 C:\Windows\System32\drivers\sdstor.sys DE6D7DC78D956928F59F7415A0F41E13 C:\Windows\System32\drivers\SerCx.sys 67585C295FF2D221679E376B68893B35 C:\Windows\System32\drivers\SerCx2.sys B8C4852CBCAAC1374C08EC7445443824 C:\Windows\System32\drivers\serenum.sys D3A103944A8FCD78FD48B2B19092790C C:\Windows\System32\drivers\serial.sys 249A563C48DFD9E42A37587653E003BB C:\Windows\System32\drivers\sermouse.sys 0F5B43074AE731D2C6F061241C9D84A6 C:\Windows\System32\drivers\sfloppy.sys D9FE59276BD56A9643C32D5FACE2F251 C:\Windows\System32\drivers\SiSRaid2.sys ABBE803FE0BDAE0E5BE74DDEFBE62F23 C:\Windows\System32\drivers\sisraid4.sys 6043DF55CFE3C7ACF477645FA64DEA98 C:\Windows\System32\drivers\Smb_driver_AMDASF.sys AF5CC3F9B88F140D78FC967ABF0F4EC7 C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys C67697A38E6D646F97EFF462DED68CF3 C:\Windows\System32\drivers\spaceport.sys 1A6CB30F0EFC1632E6F1B852CA892583 C:\Windows\System32\drivers\SpbCx.sys E1C158F6C00359278727A2CEE5D2ED71 C:\Windows\System32\DRIVERS\srv.sys BE88248427A6AA548A904FD867667F70 C:\Windows\System32\DRIVERS\srv2.sys 2568B86F6A50D254324CB89022CA9EFC C:\Windows\System32\DRIVERS\srvnet.sys 6E520D6B16EA8AE23D1F81C1194F00C8 C:\Windows\System32\drivers\stexstor.sys CCDA497C880AD16D87EDFAEFCFB2EDF5 C:\Windows\System32\drivers\storahci.sys BF8EA6FC3358C2F69678E3E94F764F84 C:\Windows\System32\drivers\vmstorfl.sys 32FF460DA8C1F370F5C08B7654899B73 C:\Windows\System32\drivers\stornvme.sys CC21DB3EF619B9480FE31A4EFE92CBEB C:\Windows\System32\drivers\storqosflt.sys 390B8A75768E2689586539C224520895 C:\Windows\System32\drivers\storufs.sys 770A92D9D3A0BF61C97C3AFCB36847D9 C:\Windows\System32\drivers\storvsc.sys 736A2418E3E7F3DB3CF6EB0A55D1D581 C:\Windows\System32\drivers\swenum.sys BD98B0225BCD49E8A62F4F8EE1D1F613 C:\Windows\System32\drivers\Synth3dVsc.sys CAE4B27B469C583131EA5AAE622F5D76 C:\Windows\system32\DRIVERS\SynTP.sys 46062E452891A8D6D3B96DCAADDCC084 C:\Windows\System32\drivers\tcpip.sys 083A727D784009F9CCFB120C7841B7AF C:\Windows\System32\drivers\tcpip.sys 083A727D784009F9CCFB120C7841B7AF C:\Windows\System32\drivers\tcpipreg.sys 17F37EC9042D84561C550620643D9A85 C:\Windows\system32\DRIVERS\tdx.sys 91D3F2A6253EF83EFBD7903028F58C4D C:\Windows\System32\drivers\terminpt.sys E730D0EB1B84EBC98423FC8D285EDBC0 C:\Windows\System32\drivers\tpm.sys 87B9ABB965F7AF987D52791F0DD1663D C:\Windows\System32\drivers\TsUsbFlt.sys 48E828C66AB016E48F2CB4DD585315FD C:\Windows\System32\drivers\TsUsbGD.sys 267C76EE60736EA5A1811A53FA02AABE C:\Windows\System32\drivers\tunnel.sys 8CE72F094B822AD5EE9C3A3AFC0C16B6 C:\Windows\System32\drivers\uagp35.sys 42C546414F80BD6C0137FC3A106F8A69 C:\Windows\System32\drivers\uaspstor.sys 1686DBC81748B096232B15F16C302985 C:\Windows\System32\Drivers\UcmCx.sys 82D3B1F4D80057826AA649D78147DE36 C:\Windows\System32\drivers\UcmUcsi.sys 1C95F7CE37D9EFB90EBE987A9712356C C:\Windows\System32\drivers\ucx01000.sys AED081772091C98173905E2DF28C223B C:\Windows\System32\drivers\udecx.sys DCA34A111C29E4578DF2B8CEA3C7CDBD C:\Windows\System32\DRIVERS\udfs.sys 718A956AE00CE086F381044AB66CC29C C:\Windows\System32\drivers\UEFI.sys BA760F8E66428BA9FF1E8BFBC6248136 C:\Windows\System32\drivers\ufx01000.sys 05DD22294A4F3F89E52351C7721E6D2C C:\Windows\System32\drivers\UfxChipidea.sys 2B1DABA97DDF5365FC66EE7DEDD86A13 C:\Windows\System32\drivers\ufxsynopsys.sys 2A87EA182EA333D79AA0B03833EA67F2 C:\Windows\System32\drivers\uliagpkx.sys 6DE78C04BF32ECA7AF3064F53687C9A5 C:\Windows\System32\drivers\umbus.sys 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4 C:\Windows\System32\drivers\umpass.sys 11680607944A719EF20E0E740785712A C:\Windows\System32\drivers\urschipidea.sys 2410A0C20D21A25E6C01979FA886BE90 C:\Windows\System32\drivers\urscx01000.sys 6E59CE43B6BA5AA1ADCF36A4DBBB92BB C:\Windows\System32\drivers\urssynopsys.sys E8A59FA109A22FC07E44BDFCC9727DBD C:\Windows\System32\drivers\usbccgp.sys D8A44550ECE102B6443F5D54DCE7DAB3 C:\Windows\System32\drivers\usbcir.sys 66B3D22DAB5312FF238ABF5C6D9F8FAB C:\Windows\System32\drivers\usbehci.sys 3E4F20DB902D2E2914F3FF3DB9772200 C:\Windows\System32\drivers\usbhub.sys 41F7F00D76904416EF1F9EFA1A4C37A2 C:\Windows\System32\drivers\UsbHub3.sys E7463CE8579A0418A98BE9BE42C647D7 C:\Windows\System32\drivers\usbohci.sys DAB35CCA86F5FBE77D870A40089BC4A1 C:\Windows\System32\drivers\usbprint.sys 21162F65C7756AAECAEBED9E67D0A5FE C:\Windows\System32\drivers\usbser.sys 4AAD6547953D373A1EB5B2DF583D868B C:\Windows\System32\drivers\USBSTOR.SYS 8949F77132A4F8F3BA17C6727099F002 C:\Windows\System32\drivers\usbuhci.sys 8B3E458A8851F9A3B2109B1680EE1159 C:\Windows\System32\Drivers\usbvideo.sys 4B13B61CBB9CC3CB373C60B930D648F5 C:\Windows\System32\drivers\USBXHCI.SYS 9E9D58F5E1702955B2F4D62996F80E8E C:\Windows\System32\drivers\vdrvroot.sys E1BE37312785A71862516F66B3FD24CE C:\Windows\System32\drivers\VerifierExt.sys E42C0F2850735FF9D908B9DB581E6314 C:\Windows\System32\drivers\vhdmp.sys EC15FD6A28757793E2DA394CD94ABD52 C:\Windows\System32\drivers\vhf.sys D0C9632C350F46786643A069251BC249 C:\Windows\System32\drivers\vmbus.sys E886CB75DA2B6EB35469EF10135624C7 C:\Windows\System32\drivers\VMBusHID.sys 46D2EC27820EC0F798F85821E53C2942 C:\Windows\System32\drivers\volmgr.sys B9265F47E7A354BAAA0AF5CBA3F8F7CE C:\Windows\System32\drivers\volmgrx.sys BEE9C8B72AB752B794F69C2B9B3678AA C:\Windows\System32\drivers\volsnap.sys E1F91A727A04C9F8199D04FF3BBBF63C C:\Windows\System32\drivers\vpci.sys F7B1B1101271E31F43CC76E890704F51 C:\Windows\System32\drivers\vsmraid.sys D48ED0A08BD2FD25A833E6AC99623091 C:\Windows\System32\drivers\vstxraid.sys 6990D4AFDF545669D4E6C232F26DE1FB C:\Windows\System32\drivers\vwifibus.sys 1EE11F0508C58EF081F4176E66D6970B C:\Windows\System32\drivers\vwififlt.sys 938E4EF58E42D252B742B0E243011B90 C:\Windows\System32\drivers\vwifimp.sys 3BE5AAC930447FD18D4A8255A2FEC95C C:\Windows\System32\drivers\wacompen.sys 00C27B64C758C111E5D78A70DE6CA2B6 C:\Windows\System32\DRIVERS\wanarp.sys 8CB53620B2C2F0641DD7563EA0FDF491 C:\Windows\System32\DRIVERS\wanarp.sys 8CB53620B2C2F0641DD7563EA0FDF491 C:\Windows\System32\drivers\WdBoot.sys 069D3D6E20AD753B34FCE856F0436869 C:\Windows\System32\drivers\Wdf01000.sys 6CC727E94CD84E9720FDCDA8089CABCC C:\Windows\System32\drivers\WdFilter.sys E3E97151A1D1E87BB2D5371F66C5F169 C:\Windows\System32\DRIVERS\wdiwifi.sys 2BC2E99623119521EEF7910A11D0FDE0 C:\Windows\System32\Drivers\WdNisDrv.sys 07B043160399AF4009054E2EA3464BF4 C:\Windows\System32\drivers\wfplwfs.sys C11272713719922DE5711094333BD166 C:\Windows\System32\drivers\wimmount.sys EF536C54AB9281FDC4E83B07279FCFC4 C:\Windows\System32\drivers\WindowsTrustedRT.sys D8966A76408107224C6013993135DD78 C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys 8B102A7B6CE326FD4208CC7C2D183343 C:\Windows\System32\drivers\winmad.sys 4A53441C1C4D2878BEF27E381138BB2D C:\Windows\System32\drivers\WinUSB.SYS 260907CE034FE327AC99BDA4153AB22F C:\Windows\System32\drivers\winverbs.sys 40A3E8D729F458B2C9A8BD9380FF83D5 C:\Windows\System32\drivers\WirelessButtonDriver64.sys BD19E2065A51E5E72A58729EE8CAA944 C:\Windows\System32\drivers\WirelessButtonDriver64.sys BD19E2065A51E5E72A58729EE8CAA944 C:\Windows\System32\drivers\wmiacpi.sys 8F010BF65238F3F822D22BA12831796E C:\Windows\System32\Drivers\Wof.sys 2A9650FCC696DB28E45EA8B33B99B8E6 C:\Windows\System32\DRIVERS\wpcfltr.sys 22C52D7EE7C7D0E02C8EFD8CAE8E3A71 C:\Windows\System32\drivers\WpdUpFltr.sys 1C08E424CBDD5065BB7266F8C048C1B1 C:\Windows\system32\drivers\ws2ifsl.sys 638B43D39A3D0B47024555CF1095E6F1 C:\Windows\System32\drivers\WSDPrint.sys F517CB0182B1DA5C0E0FC6B548FF60CC C:\Windows\system32\DRIVERS\WSDScan.sys 3A3294E2E5CBFC51999180C06051DDE9 C:\Windows\System32\drivers\WudfPf.sys A928F25CB62232F413EE655352856E10 C:\Windows\System32\drivers\WUDFRd.sys A932391623D5CEC4EF4A2A17D3CEBFCD C:\Windows\system32\DRIVERS\WUDFRd.sys A932391623D5CEC4EF4A2A17D3CEBFCD C:\Windows\System32\drivers\xboxgip.sys F279536122B83FD0D8E158AA753E1B7C C:\Windows\System32\drivers\xinputhid.sys DA0807D87A62D076C29C4E30F1E84F46 ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Three Months Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-07-11 14:41 - 2016-07-11 14:42 - 00048149 _____ C:\Users\Mark\Downloads\FRST.txt 2016-07-11 14:41 - 2016-07-11 14:41 - 00000000 ____D C:\FRST 2016-07-11 14:40 - 2016-07-11 14:40 - 02390528 _____ (Farbar) C:\Users\Mark\Downloads\FRST64.exe 2016-07-08 12:20 - 2016-07-11 14:20 - 00000935 _____ C:\WINDOWS\Tasks\EPSON XP-820 Series Update {E09B2E53-518E-4C92-BFD1-F5E2976047DE}.job 2016-07-08 12:20 - 2016-07-08 12:20 - 00004132 _____ C:\WINDOWS\System32\Tasks\EPSON XP-820 Series Update {E09B2E53-518E-4C92-BFD1-F5E2976047DE} 2016-07-08 12:05 - 2016-07-08 12:05 - 00000000 ___HD C:\OneDriveTemp 2016-07-08 11:11 - 2016-07-08 11:11 - 563491403 _____ C:\WINDOWS\MEMORY.DMP 2016-07-08 11:11 - 2016-07-08 11:11 - 00455788 _____ C:\WINDOWS\Minidump\070816-54140-01.dmp 2016-07-08 11:11 - 2016-07-08 11:11 - 00000000 ____D C:\WINDOWS\Minidump 2016-07-07 19:45 - 2016-07-11 13:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-07-07 19:45 - 2016-07-07 19:45 - 00001135 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-07-07 19:45 - 2016-07-07 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-07-07 19:45 - 2016-07-07 19:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-07-07 19:45 - 2016-07-07 19:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-07-07 19:45 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-07-07 19:45 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-07-07 19:45 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-07-07 19:42 - 2016-07-07 19:44 - 22851472 _____ (Malwarebytes ) C:\Users\Mark\Downloads\mbam-setup-2.2.1.1043.exe 2016-07-07 18:44 - 2016-07-07 18:44 - 00000000 ____D C:\Program Files (x86)\.Npackd 2016-07-07 18:43 - 2016-07-07 18:45 - 00000000 ____D C:\Program Files (x86)\NpackdDetected 2016-07-07 18:08 - 2015-08-01 16:54 - 00001058 _____ C:\Users\Mark\Desktop\Super DX-Ball.lnk 2016-07-07 16:24 - 2016-07-07 16:24 - 00003370 _____ C:\WINDOWS\System32\Tasks\{07E5292B-C499-4147-BB51-3E0E5C9135FB} 2016-07-07 14:59 - 2016-07-07 14:59 - 00000000 ____D C:\WINDOWS\Repair 2016-07-07 14:41 - 2016-07-11 09:53 - 00000472 _____ C:\WINDOWS\Tasks\USTSPCO-USTSPCOOneClickCare.job 2016-07-07 14:41 - 2016-07-10 04:41 - 00003044 _____ C:\WINDOWS\System32\Tasks\LAUNCH CDPCO 2016-07-07 14:41 - 2016-07-08 00:30 - 00003492 _____ C:\WINDOWS\System32\Tasks\USTSPCO-USTSPCOOneClickCare 2016-07-07 14:41 - 2016-07-07 14:41 - 00001100 _____ C:\Users\Public\Desktop\MyCleanPC PC Optimizer.lnk 2016-07-07 14:41 - 2016-07-07 14:41 - 00000000 ____D C:\Users\Mark\AppData\Roaming\USTechSupport 2016-07-07 14:41 - 2016-07-07 14:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyCleanPC 2016-07-07 14:41 - 2016-07-07 14:41 - 00000000 ____D C:\Program Files (x86)\USTechSupport 2016-07-07 14:40 - 2016-07-07 14:44 - 00000000 ____D C:\ProgramData\USTechSupport 2016-07-07 14:40 - 2016-07-07 14:40 - 01787456 _____ (US Tech Support LLC) C:\Users\Mark\Downloads\MyCleanPC.exe 2016-07-07 14:05 - 2016-07-07 14:06 - 00987728 _____ (Google Inc.) C:\Users\Mark\Downloads\ChromeSetup.exe 2016-07-07 14:00 - 2016-07-07 14:00 - 00001261 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-07-06 15:17 - 2016-07-06 15:17 - 00000000 ____D C:\Users\Mark\AppData\Roaming\webex 2016-07-06 14:34 - 2016-07-07 18:44 - 00000000 ____D C:\ProgramData\WebEx 2016-07-06 14:34 - 2016-07-06 15:17 - 00000000 ____D C:\Users\Mark\AppData\LocalLow\WebEx 2016-07-06 14:34 - 2016-07-06 14:34 - 00000000 ___HD C:\WINDOWS\AxInstSV 2016-07-06 14:34 - 2016-07-06 14:34 - 00000000 ____D C:\Users\Mark\AppData\LocalLow\Temp 2016-07-06 14:34 - 2016-07-06 14:34 - 00000000 ____D C:\Users\Mark\AppData\Local\WebEx 2016-07-06 14:31 - 2016-07-06 14:32 - 00708280 _____ (Cisco WebEx LLC) C:\Users\Mark\Downloads\Cisco_WebEx_Add-On.exe 2016-07-06 13:59 - 2016-07-08 00:01 - 00000000 ____D C:\Users\Mark\AppData\Local\intmanager 2016-07-06 13:59 - 2016-07-07 18:45 - 00000000 ____D C:\ProgramData\Npackd 2016-07-06 13:59 - 2016-07-06 13:59 - 00000258 __RSH C:\Users\Mark\ntuser.pol 2016-07-06 13:59 - 2016-07-06 13:59 - 00000000 ____D C:\Program Files (x86)\NpackdCL 2016-07-06 13:58 - 2016-07-06 13:58 - 00002306 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Search.lnk 2016-07-06 13:58 - 2016-07-06 13:58 - 00002276 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Facebook.lnk 2016-07-06 13:58 - 2016-07-06 13:58 - 00002274 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\YouTube.lnk 2016-07-06 13:58 - 2016-07-06 13:58 - 00002272 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Amazon.lnk 2016-07-06 13:58 - 2016-07-06 13:58 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Google Chrome.lnk 2016-07-06 13:49 - 2016-07-06 13:49 - 00313366 _____ C:\Users\Mark\Downloads\WindowsUpdateDiagnostic.diagcab 2016-06-26 16:00 - 2016-06-26 16:00 - 00152064 _____ C:\Users\Mark\Downloads\Launch DE-Waiver.pdf 2016-06-26 16:00 - 2016-06-26 16:00 - 00032562 _____ C:\Users\Mark\Downloads\Week 2.pdf 2016-06-22 18:49 - 2016-06-22 18:49 - 00002382 _____ C:\Users\Mark\Downloads\StrengthAnalysisSkillsReview_SoSoAssessment.pdf 2016-06-22 18:46 - 2016-06-22 18:46 - 00002423 _____ C:\Users\Mark\Downloads\StrengthAnalysisInterestsReview_Not a good assessment.pdf 2016-06-22 18:33 - 2016-06-22 18:33 - 00002751 _____ C:\Users\Mark\Downloads\ValuesAndDriversReview_20160622.pdf 2016-06-22 17:55 - 2016-06-22 17:55 - 00255920 _____ C:\Users\Mark\Downloads\BirkmanCareerMgtRpt_G4R2CS_20160622.pdf 2016-06-22 16:15 - 2016-06-22 16:15 - 00030256 _____ C:\Users\Mark\Downloads\Mark_Micolucci - resume.pdf 2016-06-21 12:38 - 2016-06-21 12:38 - 00026826 _____ C:\Users\Mark\Downloads\Mark-Micolucci.pdf 2016-06-15 09:23 - 2016-05-28 02:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-06-15 09:23 - 2016-05-28 02:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-06-15 09:23 - 2016-05-28 01:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-06-15 09:23 - 2016-05-28 01:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-06-15 09:23 - 2016-05-28 00:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-06-15 09:23 - 2016-05-28 00:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-06-15 09:23 - 2016-05-28 00:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-06-15 09:23 - 2016-05-28 00:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-06-15 09:23 - 2016-05-28 00:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-06-15 09:23 - 2016-05-28 00:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-06-15 09:23 - 2016-05-28 00:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-06-15 09:23 - 2016-05-28 00:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-06-15 09:23 - 2016-05-28 00:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-06-15 09:23 - 2016-05-28 00:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-06-15 09:23 - 2016-05-28 00:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-06-15 09:23 - 2016-05-28 00:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-06-15 09:23 - 2016-05-28 00:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-06-15 09:23 - 2016-05-28 00:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-06-15 09:23 - 2016-05-28 00:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-06-15 09:23 - 2016-05-28 00:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-06-15 09:23 - 2016-05-28 00:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-06-15 09:23 - 2016-05-28 00:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-06-15 09:23 - 2016-05-28 00:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-06-15 09:23 - 2016-05-28 00:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-06-15 09:23 - 2016-05-28 00:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-06-15 09:23 - 2016-05-28 00:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-06-15 09:23 - 2016-05-28 00:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-06-15 09:23 - 2016-05-28 00:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-06-15 09:23 - 2016-05-28 00:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-06-15 09:23 - 2016-05-28 00:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-06-15 09:23 - 2016-05-28 00:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-06-15 09:23 - 2016-05-28 00:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-06-15 09:23 - 2016-05-28 00:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-06-15 09:23 - 2016-05-28 00:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-06-15 09:23 - 2016-05-28 00:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-06-15 09:23 - 2016-05-28 00:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-06-15 09:23 - 2016-05-28 00:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-06-15 09:23 - 2016-05-28 00:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-06-15 09:23 - 2016-05-28 00:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-06-15 09:23 - 2016-05-28 00:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-06-15 09:23 - 2016-05-28 00:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-06-15 09:23 - 2016-05-28 00:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-06-15 09:23 - 2016-05-28 00:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-06-15 09:23 - 2016-05-28 00:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-06-15 09:23 - 2016-05-28 00:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-06-15 09:23 - 2016-05-28 00:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-06-15 09:23 - 2016-05-28 00:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-06-15 09:23 - 2016-05-28 00:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-06-15 09:23 - 2016-05-27 23:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-06-15 09:22 - 2016-05-28 02:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-06-15 09:22 - 2016-05-28 02:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-06-15 09:22 - 2016-05-28 02:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-06-15 09:22 - 2016-05-28 02:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-06-15 09:22 - 2016-05-28 01:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll 2016-06-15 09:22 - 2016-05-28 01:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-06-15 09:22 - 2016-05-28 01:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll 2016-06-15 09:22 - 2016-05-28 01:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-06-15 09:22 - 2016-05-28 01:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll 2016-06-15 09:22 - 2016-05-28 01:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-06-15 09:22 - 2016-05-28 01:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-06-15 09:22 - 2016-05-28 01:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-06-15 09:22 - 2016-05-28 01:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-06-15 09:22 - 2016-05-28 01:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll 2016-06-15 09:22 - 2016-05-28 01:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-06-15 09:22 - 2016-05-28 01:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-06-15 09:22 - 2016-05-28 01:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe 2016-06-15 09:22 - 2016-05-28 01:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-06-15 09:22 - 2016-05-28 01:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-06-15 09:22 - 2016-05-28 01:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-06-15 09:22 - 2016-05-28 01:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-06-15 09:22 - 2016-05-28 01:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-06-15 09:22 - 2016-05-28 01:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-06-15 09:22 - 2016-05-28 01:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-06-15 09:22 - 2016-05-28 01:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-06-15 09:22 - 2016-05-28 01:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-06-15 09:22 - 2016-05-28 01:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-06-15 09:22 - 2016-05-28 01:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-06-15 09:22 - 2016-05-28 01:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-06-15 09:22 - 2016-05-28 01:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-06-15 09:22 - 2016-05-28 01:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-06-15 09:22 - 2016-05-28 01:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-06-15 09:22 - 2016-05-28 01:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-06-15 09:22 - 2016-05-28 01:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-06-15 09:22 - 2016-05-28 01:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-06-15 09:22 - 2016-05-28 01:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-06-15 09:22 - 2016-05-28 01:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2016-06-15 09:22 - 2016-05-28 01:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-06-15 09:22 - 2016-05-28 01:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2016-06-15 09:22 - 2016-05-28 00:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-06-15 09:22 - 2016-05-28 00:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-06-15 09:22 - 2016-05-28 00:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-06-15 09:22 - 2016-05-28 00:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-06-15 09:22 - 2016-05-28 00:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-06-15 09:22 - 2016-05-28 00:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-06-15 09:22 - 2016-05-28 00:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys 2016-06-15 09:22 - 2016-05-28 00:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe 2016-06-15 09:22 - 2016-05-28 00:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-06-15 09:22 - 2016-05-28 00:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2016-06-15 09:22 - 2016-05-28 00:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2016-06-15 09:22 - 2016-05-28 00:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-06-15 09:22 - 2016-05-28 00:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-06-15 09:22 - 2016-05-28 00:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys 2016-06-15 09:22 - 2016-05-28 00:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2016-06-15 09:22 - 2016-05-28 00:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-06-15 09:22 - 2016-05-28 00:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-06-15 09:22 - 2016-05-28 00:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2016-06-15 09:22 - 2016-05-28 00:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2016-06-15 09:22 - 2016-05-28 00:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll 2016-06-15 09:22 - 2016-05-28 00:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-06-15 09:22 - 2016-05-28 00:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll 2016-06-15 09:22 - 2016-05-28 00:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll 2016-06-15 09:22 - 2016-05-28 00:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2016-06-15 09:22 - 2016-05-28 00:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-06-15 09:22 - 2016-05-28 00:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2016-06-15 09:22 - 2016-05-28 00:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-06-15 09:22 - 2016-05-28 00:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2016-06-15 09:22 - 2016-05-28 00:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL 2016-06-15 09:22 - 2016-05-28 00:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2016-06-15 09:22 - 2016-05-28 00:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-06-15 09:22 - 2016-05-28 00:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-06-15 09:22 - 2016-05-28 00:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-06-15 09:22 - 2016-05-28 00:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll 2016-06-15 09:22 - 2016-05-28 00:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2016-06-15 09:22 - 2016-05-28 00:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-06-15 09:22 - 2016-05-28 00:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-06-15 09:22 - 2016-05-28 00:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-06-15 09:22 - 2016-05-28 00:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-06-15 09:22 - 2016-05-28 00:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-06-15 09:22 - 2016-05-28 00:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-06-15 09:22 - 2016-05-28 00:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-06-15 09:22 - 2016-05-28 00:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-06-15 09:22 - 2016-05-28 00:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-06-15 09:22 - 2016-05-28 00:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-06-15 09:22 - 2016-05-28 00:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-06-15 09:22 - 2016-05-28 00:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-06-15 09:22 - 2016-05-28 00:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-06-15 09:22 - 2016-05-28 00:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-06-15 09:22 - 2016-05-28 00:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2016-06-15 09:22 - 2016-05-28 00:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2016-06-15 09:22 - 2016-05-28 00:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-06-15 09:22 - 2016-05-28 00:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2016-06-15 09:22 - 2016-05-28 00:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-06-15 09:22 - 2016-05-28 00:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-06-15 09:22 - 2016-05-28 00:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-06-15 09:22 - 2016-05-28 00:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-06-15 09:22 - 2016-05-28 00:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-06-15 09:22 - 2016-05-28 00:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-06-15 09:22 - 2016-05-28 00:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-06-15 09:22 - 2016-05-28 00:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-06-15 09:22 - 2016-05-28 00:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-06-15 09:22 - 2016-05-28 00:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-06-15 09:22 - 2016-05-28 00:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-06-15 09:22 - 2016-05-28 00:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll 2016-06-15 09:22 - 2016-05-28 00:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2016-06-15 09:22 - 2016-05-28 00:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-06-15 09:22 - 2016-05-28 00:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-06-15 09:22 - 2016-05-28 00:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-06-15 09:22 - 2016-05-28 00:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2016-06-15 09:22 - 2016-05-28 00:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-06-15 09:22 - 2016-05-28 00:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-06-15 09:22 - 2016-05-28 00:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-06-15 09:22 - 2016-05-28 00:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-06-15 09:22 - 2016-05-28 00:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-06-15 09:22 - 2016-05-28 00:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-06-15 09:22 - 2016-05-27 23:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-06-15 09:22 - 2016-05-27 23:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-06-15 09:22 - 2016-05-27 23:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-06-15 09:22 - 2016-05-27 23:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-06-15 09:22 - 2016-05-27 23:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-06-15 09:22 - 2016-05-27 23:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-06-15 09:22 - 2016-05-27 23:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-06-15 09:21 - 2016-05-28 00:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2016-06-15 09:21 - 2016-05-28 00:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2016-06-15 09:21 - 2016-05-28 00:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-06-15 09:21 - 2016-05-28 00:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll 2016-06-15 09:21 - 2016-05-28 00:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-06-15 09:21 - 2016-05-28 00:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-06-15 09:21 - 2016-05-28 00:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-06-15 09:21 - 2016-05-28 00:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll 2016-06-15 09:21 - 2016-05-28 00:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2016-06-15 09:21 - 2016-05-28 00:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll 2016-06-15 09:21 - 2016-05-28 00:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-06-15 09:21 - 2016-05-28 00:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-06-15 09:21 - 2016-05-28 00:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-06-15 09:21 - 2016-05-28 00:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll 2016-06-15 09:21 - 2016-05-28 00:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-06-15 09:21 - 2016-05-28 00:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-06-15 09:21 - 2016-05-28 00:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll 2016-06-15 09:21 - 2016-05-28 00:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-06-15 09:21 - 2016-05-28 00:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2016-06-15 09:21 - 2016-05-28 00:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-06-15 09:21 - 2016-05-28 00:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2016-06-15 09:21 - 2016-05-28 00:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-06-15 09:21 - 2016-05-28 00:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2016-06-15 09:21 - 2016-05-27 23:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-06-08 01:51 - 2016-07-10 11:22 - 00003232 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForMark 2016-06-08 01:51 - 2016-07-10 11:22 - 00000344 _____ C:\WINDOWS\Tasks\HPCeeScheduleForMark.job 2016-05-27 10:29 - 2016-05-27 10:29 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2010 2016-05-27 10:29 - 2016-05-27 10:29 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2010 2016-05-27 10:26 - 2014-02-21 09:20 - 00222400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SQSRVRES.DLL 2016-05-26 19:59 - 2016-05-26 19:59 - 00000000 ____D C:\Users\Mark\AppData\Local\IBM 2016-05-26 19:52 - 2016-05-26 19:52 - 00000000 ____D C:\Program Files\ibm 2016-05-26 19:49 - 2016-05-26 19:49 - 00000017 _____ C:\Users\Mark\AppData\Local\resmon.resmoncfg 2016-05-26 19:24 - 2016-05-26 19:24 - 00000000 ____D C:\WINDOWS\SysWOW64\vers 2016-05-26 19:24 - 2009-05-12 22:22 - 00224016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TABCTL32.OCX 2016-05-26 19:24 - 2009-05-12 14:47 - 00212240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\richtx32.ocx 2016-05-26 19:24 - 2009-05-12 10:21 - 00048640 _____ C:\WINDOWS\SysWOW64\NTEventLogAppender.dll 2016-05-26 19:24 - 2009-05-12 10:00 - 00662288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCOMCT2.OCX 2016-05-26 19:19 - 2016-05-26 19:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBMCognos10 2016-05-26 19:19 - 2016-05-26 19:19 - 00000000 ____D C:\Program Files (x86)\ibm 2016-05-26 19:05 - 2016-05-26 19:05 - 01106469 _____ (Igor Pavlov) C:\Users\Mark\Downloads\7z1602.exe 2016-05-26 19:05 - 2016-05-26 19:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2016-05-26 19:05 - 2016-05-26 19:05 - 00000000 ____D C:\Program Files (x86)\7-Zip 2016-05-26 18:09 - 2016-05-26 18:09 - 00093544 _____ C:\Users\Mark\AppData\Local\GDIPFONTCACHEV1.DAT 2016-05-26 18:09 - 2016-05-26 18:09 - 00000000 ___SD C:\Users\Mark\Documents\My Shapes 2016-05-26 17:47 - 2016-05-28 16:33 - 00000039 _____ C:\WINDOWS\vbaddin.ini 2016-05-26 17:47 - 2016-05-26 17:48 - 00000376 _____ C:\WINDOWS\ODBC.INI 2016-05-26 17:47 - 2016-05-26 17:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-05-26 17:46 - 2016-05-26 17:46 - 00000000 ____D C:\Program Files (x86)\Microsoft ActiveSync 2016-05-26 17:43 - 2016-05-26 17:43 - 00000000 __RHD C:\MSOCache 2016-05-26 17:34 - 2016-05-26 20:03 - 00000000 ____D C:\Users\Mark\Downloads\Cognos10CD 2016-05-26 17:30 - 2016-05-26 17:30 - 00000000 ____D C:\Users\Mark\AppData\Local\Microsoft_Corporation 2016-05-26 17:06 - 2016-05-26 17:06 - 00000020 ___SH C:\Users\MSSQLServerOLAPService\ntuser.ini 2016-05-26 17:06 - 2016-05-26 17:06 - 00000000 _SHDL C:\Users\MSSQLServerOLAPService\My Documents 2016-05-26 17:06 - 2016-05-26 17:06 - 00000000 _SHDL C:\Users\MSSQLServerOLAPService\Documents\My Videos 2016-05-26 17:06 - 2016-05-26 17:06 - 00000000 _SHDL C:\Users\MSSQLServerOLAPService\Documents\My Pictures 2016-05-26 17:06 - 2016-05-26 17:06 - 00000000 _SHDL C:\Users\MSSQLServerOLAPService\Documents\My Music 2016-05-26 17:06 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MSSQLServerOLAPService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-05-26 17:06 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MSSQLServerOLAPService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-05-26 17:05 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\AppData\Roaming\Macromedia 2016-05-26 17:05 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\AppData\Roaming\hpqLog 2016-05-26 17:05 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\AppData\Roaming\Hewlett-Packard 2016-05-26 17:05 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\AppData\Roaming\Adobe 2016-05-26 17:04 - 2016-07-08 11:11 - 00000000 ____D C:\Users\MSSQLServerOLAPService 2016-05-26 17:04 - 2016-05-26 17:04 - 00000020 ___SH C:\Users\ReportServer\ntuser.ini 2016-05-26 17:04 - 2016-05-26 17:04 - 00000000 _SHDL C:\Users\ReportServer\My Documents 2016-05-26 17:04 - 2016-05-26 17:04 - 00000000 _SHDL C:\Users\ReportServer\Documents\My Videos 2016-05-26 17:04 - 2016-05-26 17:04 - 00000000 _SHDL C:\Users\ReportServer\Documents\My Pictures 2016-05-26 17:04 - 2016-05-26 17:04 - 00000000 _SHDL C:\Users\ReportServer\Documents\My Music 2016-05-26 17:04 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\Documents\hp.system.package.metadata 2016-05-26 17:04 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLServerOLAPService\Documents\hp.applications.package.appdata 2016-05-26 17:04 - 2014-09-24 03:23 - 00000369 _____ C:\Users\ReportServer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-05-26 17:04 - 2014-09-24 03:23 - 00000369 _____ C:\Users\ReportServer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-05-26 17:02 - 2016-07-08 11:11 - 00000000 ____D C:\Users\ReportServer 2016-05-26 17:02 - 2016-05-26 17:02 - 00000020 ___SH C:\Users\SQLSERVERAGENT\ntuser.ini 2016-05-26 17:02 - 2016-05-26 17:02 - 00000000 _SHDL C:\Users\SQLSERVERAGENT\My Documents 2016-05-26 17:02 - 2016-05-26 17:02 - 00000000 _SHDL C:\Users\SQLSERVERAGENT\Documents\My Videos 2016-05-26 17:02 - 2016-05-26 17:02 - 00000000 _SHDL C:\Users\SQLSERVERAGENT\Documents\My Pictures 2016-05-26 17:02 - 2016-05-26 17:02 - 00000000 _SHDL C:\Users\SQLSERVERAGENT\Documents\My Music 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\Documents\hp.system.package.metadata 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\Documents\hp.applications.package.appdata 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\AppData\Roaming\Macromedia 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\AppData\Roaming\hpqLog 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\AppData\Roaming\Hewlett-Packard 2016-05-26 17:02 - 2016-05-03 13:53 - 00000000 ____D C:\Users\ReportServer\AppData\Roaming\Adobe 2016-05-26 17:02 - 2014-09-24 03:23 - 00000369 _____ C:\Users\SQLSERVERAGENT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-05-26 17:02 - 2014-09-24 03:23 - 00000369 _____ C:\Users\SQLSERVERAGENT\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-05-26 17:00 - 2016-05-26 17:02 - 00000000 ____D C:\Users\SQLSERVERAGENT 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\Documents\hp.system.package.metadata 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\Documents\hp.applications.package.appdata 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\AppData\Roaming\Macromedia 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\AppData\Roaming\hpqLog 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\AppData\Roaming\Hewlett-Packard 2016-05-26 17:00 - 2016-05-03 13:53 - 00000000 ____D C:\Users\SQLSERVERAGENT\AppData\Roaming\Adobe 2016-05-26 16:59 - 2016-05-26 16:59 - 00000020 ___SH C:\Users\MsDtsServer120\ntuser.ini 2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 _SHDL C:\Users\MsDtsServer120\My Documents 2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 _SHDL C:\Users\MsDtsServer120\Documents\My Videos 2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 _SHDL C:\Users\MsDtsServer120\Documents\My Pictures 2016-05-26 16:59 - 2016-05-26 16:59 - 00000000 _SHDL C:\Users\MsDtsServer120\Documents\My Music 2016-05-26 16:59 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MsDtsServer120\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-05-26 16:59 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MsDtsServer120\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-05-26 16:58 - 2016-07-08 11:11 - 00000000 ____D C:\Users\MsDtsServer120 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\Documents\hp.system.package.metadata 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\Documents\hp.applications.package.appdata 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\AppData\Roaming\Macromedia 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\AppData\Roaming\hpqLog 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\AppData\Roaming\Hewlett-Packard 2016-05-26 16:58 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MsDtsServer120\AppData\Roaming\Adobe 2016-05-26 16:57 - 2016-05-26 16:57 - 00000020 ___SH C:\Users\MSSQLSERVER\ntuser.ini 2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 _SHDL C:\Users\MSSQLSERVER\My Documents 2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 _SHDL C:\Users\MSSQLSERVER\Documents\My Videos 2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 _SHDL C:\Users\MSSQLSERVER\Documents\My Pictures 2016-05-26 16:57 - 2016-05-26 16:57 - 00000000 _SHDL C:\Users\MSSQLSERVER\Documents\My Music 2016-05-26 16:57 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MSSQLSERVER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-05-26 16:57 - 2014-09-24 03:23 - 00000369 _____ C:\Users\MSSQLSERVER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-05-26 16:56 - 2016-07-07 12:35 - 00000000 ____D C:\Users\Mark\Documents\SQL Server Management Studio 2016-05-26 16:56 - 2016-05-26 16:57 - 00000000 ____D C:\Users\MSSQLSERVER 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\Documents\hp.system.package.metadata 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\Documents\hp.applications.package.appdata 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\AppData\Roaming\Macromedia 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\AppData\Roaming\hpqLog 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\AppData\Roaming\Hewlett-Packard 2016-05-26 16:56 - 2016-05-03 13:53 - 00000000 ____D C:\Users\MSSQLSERVER\AppData\Roaming\Adobe 2016-05-26 16:52 - 2014-02-21 09:26 - 00155328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hadrres.dll 2016-05-26 16:52 - 2014-02-21 09:26 - 00073408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fssres.dll 2016-05-26 16:52 - 2014-02-21 09:20 - 00088768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQLSERVER-sqlctr12.1.4100.1.dll 2016-05-26 16:52 - 2014-02-21 09:20 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQL12.MSSQLSERVER-sqlagtctr.dll 2016-05-26 16:52 - 2014-02-21 05:20 - 00045760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-ReportServer-rsctr12.1.4100.1.dll 2016-05-26 16:51 - 2016-05-26 16:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0 2016-05-26 16:46 - 2016-05-26 16:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2016-05-26 16:45 - 2016-05-26 16:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2016-05-26 16:44 - 2016-05-27 10:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2016-05-26 16:43 - 2016-05-26 16:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014 2016-05-26 16:43 - 2016-05-26 16:43 - 00000000 ____D C:\Users\Mark\Documents\Visual Studio 2010 2016-05-26 16:42 - 2016-05-26 16:44 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2016-05-26 16:41 - 2016-05-26 16:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0 2016-05-26 16:40 - 2016-05-26 16:44 - 00000000 ____D C:\WINDOWS\system32\1033 2016-05-26 16:40 - 2016-05-26 16:40 - 00000000 ____D C:\WINDOWS\symbols 2016-05-26 16:40 - 2016-05-26 16:40 - 00000000 ____D C:\WINDOWS\PCHEALTH 2016-05-26 16:40 - 2016-05-26 16:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 10.0 2016-05-26 16:40 - 2016-05-26 16:40 - 00000000 ____D C:\Program Files\Microsoft Help Viewer 2016-05-26 16:40 - 2016-05-26 16:40 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2016-05-26 15:39 - 2016-05-27 10:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2016-05-26 14:58 - 2016-05-26 14:58 - 00222282 _____ C:\Users\Mark\Downloads\DataWarehouse Maturity Assessment Questionaire for IT.pdf 2016-05-26 13:36 - 2016-05-26 13:36 - 00074704 _____ C:\Users\Mark\Downloads\Data Management Article.zip 2016-05-26 13:36 - 2016-05-26 13:36 - 00000000 ____D C:\Users\Mark\Downloads\Data Management Article 2016-05-26 13:30 - 2016-05-26 13:31 - 00000000 ____D C:\Users\Mark\Downloads\Security Master project 2016-05-26 13:30 - 2016-05-26 13:30 - 04644228 _____ C:\Users\Mark\Downloads\Security Master project.zip 2016-05-26 12:32 - 2016-05-26 13:33 - 00000000 ____D C:\Users\Mark\Downloads\Cognos catelog 2016-05-26 12:32 - 2016-05-26 12:32 - 02611250 _____ C:\Users\Mark\Downloads\Cognos catelog.zip 2016-05-12 18:54 - 2016-05-12 18:54 - 00002304 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk 2016-05-12 13:58 - 2016-05-12 13:58 - 00000000 ____D C:\Users\Mark\Downloads\RightMgt 2016-05-11 23:45 - 2016-05-11 23:45 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-05-11 17:41 - 2016-04-23 00:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-05-11 17:41 - 2016-04-23 00:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-11 17:41 - 2016-04-23 00:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-11 17:41 - 2016-04-23 00:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-05-11 17:40 - 2016-04-23 01:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-05-11 17:40 - 2016-04-23 01:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-11 17:40 - 2016-04-23 01:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-05-11 17:40 - 2016-04-23 01:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-05-11 17:40 - 2016-04-23 01:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-11 17:40 - 2016-04-23 00:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-11 17:40 - 2016-04-23 00:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-11 17:40 - 2016-04-23 00:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-05-11 17:40 - 2016-04-23 00:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-05-11 17:40 - 2016-04-23 00:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-11 17:39 - 2016-05-06 00:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-11 17:39 - 2016-05-06 00:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-05-11 17:39 - 2016-05-06 00:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-11 17:39 - 2016-05-05 23:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-11 17:39 - 2016-05-05 23:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-11 17:39 - 2016-05-05 23:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-11 17:39 - 2016-04-23 02:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-11 17:39 - 2016-04-23 02:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-11 17:39 - 2016-04-23 01:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-05-11 17:39 - 2016-04-23 01:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-05-11 17:39 - 2016-04-23 01:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-11 17:39 - 2016-04-23 01:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-11 17:39 - 2016-04-23 01:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-11 17:39 - 2016-04-23 01:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-11 17:39 - 2016-04-23 01:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-11 17:39 - 2016-04-23 01:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2016-05-11 17:39 - 2016-04-23 01:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-05-11 17:39 - 2016-04-23 01:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-05-11 17:39 - 2016-04-23 01:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-11 17:39 - 2016-04-23 01:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-11 17:39 - 2016-04-23 01:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-11 17:39 - 2016-04-23 01:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-11 17:39 - 2016-04-23 01:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-11 17:39 - 2016-04-23 01:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2016-05-11 17:39 - 2016-04-23 01:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-11 17:39 - 2016-04-23 01:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-05-11 17:39 - 2016-04-23 01:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-11 17:39 - 2016-04-23 01:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-11 17:39 - 2016-04-23 01:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-05-11 17:39 - 2016-04-23 01:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-11 17:39 - 2016-04-23 01:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll 2016-05-11 17:39 - 2016-04-23 01:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-11 17:39 - 2016-04-23 01:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-05-11 17:39 - 2016-04-23 01:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-11 17:39 - 2016-04-23 01:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2016-05-11 17:39 - 2016-04-23 01:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-11 17:39 - 2016-04-23 01:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2016-05-11 17:39 - 2016-04-23 01:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-11 17:39 - 2016-04-23 00:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-11 17:39 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-11 17:39 - 2016-04-23 00:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-11 17:39 - 2016-04-23 00:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-11 17:39 - 2016-04-23 00:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-11 17:39 - 2016-04-23 00:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-11 17:39 - 2016-04-23 00:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-11 17:39 - 2016-04-23 00:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-11 17:39 - 2016-04-23 00:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-11 17:39 - 2016-04-23 00:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-11 17:39 - 2016-04-23 00:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-11 17:39 - 2016-04-23 00:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-11 17:39 - 2016-04-23 00:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-11 17:39 - 2016-04-23 00:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-11 17:39 - 2016-04-23 00:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-11 17:39 - 2016-04-23 00:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-11 17:39 - 2016-04-23 00:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-11 17:39 - 2016-04-23 00:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-11 17:39 - 2016-04-23 00:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-11 17:39 - 2016-04-23 00:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-11 17:39 - 2016-04-23 00:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-11 17:39 - 2016-04-23 00:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-05-11 17:39 - 2016-04-23 00:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2016-05-11 17:39 - 2016-04-23 00:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-11 17:39 - 2016-04-23 00:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-11 17:39 - 2016-04-23 00:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-11 17:39 - 2016-04-23 00:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-11 17:39 - 2016-04-23 00:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-11 17:39 - 2016-04-23 00:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-11 17:39 - 2016-04-23 00:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-11 17:39 - 2016-04-23 00:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-11 17:39 - 2016-04-23 00:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-05-11 17:39 - 2016-04-23 00:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-11 17:39 - 2016-04-23 00:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-11 17:39 - 2016-04-23 00:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-11 17:39 - 2016-04-23 00:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-11 17:39 - 2016-04-23 00:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-05-11 17:39 - 2016-04-23 00:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-05-11 17:39 - 2016-04-23 00:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-11 17:39 - 2016-04-23 00:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-11 17:39 - 2016-04-23 00:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-05-11 17:39 - 2016-04-23 00:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-05-11 17:39 - 2016-04-23 00:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2016-05-11 17:39 - 2016-04-23 00:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-05-11 17:39 - 2016-04-23 00:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-05-11 17:39 - 2016-04-23 00:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-05-11 17:39 - 2016-04-23 00:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-05-11 17:39 - 2016-04-23 00:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-11 17:39 - 2016-04-23 00:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-05-11 17:39 - 2016-04-23 00:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-11 17:39 - 2016-04-23 00:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-05-11 17:39 - 2016-04-23 00:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-05-11 17:39 - 2016-04-23 00:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-11 17:39 - 2016-04-23 00:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-11 17:39 - 2016-04-22 23:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-05-11 17:39 - 2016-04-22 22:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-11 17:38 - 2016-05-05 23:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-11 17:38 - 2016-04-23 01:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-11 17:38 - 2016-04-23 00:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-11 17:38 - 2016-04-23 00:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-11 17:38 - 2016-04-23 00:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-11 17:38 - 2016-04-23 00:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-11 17:38 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-11 17:38 - 2016-04-23 00:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-11 17:38 - 2016-04-23 00:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-11 17:38 - 2016-04-23 00:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2016-05-11 17:38 - 2016-04-23 00:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-11 17:38 - 2016-04-23 00:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-11 17:38 - 2016-04-23 00:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2016-05-11 17:38 - 2016-04-23 00:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe 2016-05-11 17:38 - 2016-04-23 00:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2016-05-11 17:38 - 2016-04-23 00:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-11 17:38 - 2016-04-23 00:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll 2016-05-11 17:38 - 2016-04-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2016-05-11 17:38 - 2016-04-23 00:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2016-05-11 17:38 - 2016-04-23 00:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2016-05-11 17:38 - 2016-04-23 00:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll 2016-05-11 17:38 - 2016-04-23 00:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll 2016-05-11 17:38 - 2016-04-23 00:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-11 17:38 - 2016-04-23 00:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2016-05-11 17:38 - 2016-04-23 00:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-05-11 17:38 - 2016-04-23 00:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2016-05-11 17:38 - 2016-04-22 22:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-11 17:38 - 2016-04-18 18:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml 2016-05-11 15:28 - 2016-05-11 15:30 - 169713992 _____ (Apple Inc.) C:\Users\Mark\Downloads\iTunes6464Setup.exe 2016-05-05 09:52 - 2016-05-05 09:52 - 00000148 _____ C:\Users\Mark\Desktop\Jobs.txt 2016-05-05 00:08 - 2016-05-05 00:08 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-05-04 23:43 - 2016-05-04 23:43 - 00000000 _____ C:\WINDOWS\eeventmanager.INI 2016-05-04 21:06 - 2016-05-04 21:06 - 00000044 _____ C:\WINDOWS\XP-820.ini 2016-05-04 21:06 - 2016-05-04 21:06 - 00000000 ____D C:\Users\Mark\AppData\Roaming\Leadertech 2016-05-04 21:03 - 2016-07-11 14:03 - 00000935 _____ C:\WINDOWS\Tasks\EPSON XP-820 Series Update {A5E2B1CE-400E-4C77-88D5-AA2C7FEF9355}.job 2016-05-04 21:03 - 2016-05-04 21:03 - 00004132 _____ C:\WINDOWS\System32\Tasks\EPSON XP-820 Series Update {A5E2B1CE-400E-4C77-88D5-AA2C7FEF9355} 2016-05-04 21:03 - 2016-05-04 21:03 - 00000000 ____D C:\Program Files\Common Files\EPSON 2016-05-04 20:59 - 2016-05-04 20:59 - 00000165 _____ C:\Users\Public\Desktop\Epson XP-820 User’s Guide.url 2016-05-04 20:57 - 2016-05-04 20:57 - 00000000 ____D C:\Program Files\EPSON 2016-05-04 20:56 - 2016-05-04 20:56 - 00001007 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2016-05-04 20:56 - 2014-02-25 00:00 - 00466944 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\esxw2ud.dll 2016-05-04 20:56 - 2012-05-17 00:00 - 00144560 _____ (Seiko Epson Corporation) C:\WINDOWS\system32\escsvc64.exe 2016-05-04 20:55 - 2013-12-06 04:05 - 00179712 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\E_YLMBNME.DLL 2016-05-04 20:55 - 2011-03-15 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\E_YD4BNME.DLL 2016-05-04 20:55 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\E_GCINST.DLL 2016-05-04 20:28 - 2016-05-04 20:31 - 201557944 _____ C:\Users\Mark\Downloads\epson15811.exe 2016-05-03 22:55 - 2016-05-03 22:55 - 00000000 ____D C:\Users\Mark\Documents\MarksWork 2016-05-03 22:20 - 2016-03-29 03:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-05-03 22:19 - 2016-04-02 00:13 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-05-03 22:19 - 2016-04-01 23:19 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-05-03 22:19 - 2016-03-29 03:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-05-03 22:19 - 2016-03-29 03:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-05-03 22:19 - 2016-02-23 06:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-05-03 22:19 - 2016-02-23 06:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-05-03 22:19 - 2016-02-23 05:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-05-03 22:19 - 2016-02-23 04:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-05-03 22:18 - 2016-03-29 03:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-05-03 22:18 - 2016-03-29 03:02 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-05-03 22:18 - 2016-03-29 03:00 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-05-03 22:18 - 2016-03-29 02:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-05-03 22:18 - 2016-03-29 02:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2016-05-03 22:18 - 2016-03-29 02:05 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-05-03 22:18 - 2016-02-24 05:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2016-05-03 22:18 - 2016-02-24 01:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-05-03 22:18 - 2016-02-24 01:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-05-03 22:18 - 2016-02-23 06:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-05-03 22:18 - 2016-02-23 03:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-05-03 22:18 - 2016-02-23 02:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-05-03 22:18 - 2016-02-23 02:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-05-03 22:17 - 2016-03-29 06:20 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-05-03 22:17 - 2016-03-29 06:18 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-05-03 22:17 - 2016-03-29 05:56 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-05-03 22:17 - 2016-03-29 05:37 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-05-03 22:17 - 2016-03-29 05:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-05-03 22:17 - 2016-03-29 03:20 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-05-03 22:17 - 2016-03-29 03:14 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-05-03 22:17 - 2016-03-29 02:32 - 01098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-05-03 22:17 - 2016-03-29 02:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-05-03 22:17 - 2016-03-29 01:45 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2016-05-03 22:17 - 2016-03-01 01:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-05-03 22:17 - 2016-03-01 01:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-05-03 22:17 - 2016-02-24 02:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-05-03 22:17 - 2016-02-23 06:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-05-03 22:17 - 2016-02-23 06:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-05-03 22:17 - 2016-02-23 06:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-05-03 22:17 - 2016-02-23 06:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-05-03 22:17 - 2016-02-23 05:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-05-03 22:17 - 2016-02-23 05:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-05-03 22:17 - 2016-02-23 05:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2016-05-03 22:17 - 2016-02-23 05:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2016-05-03 22:17 - 2016-02-23 05:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-05-03 22:17 - 2016-02-23 05:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2016-05-03 22:17 - 2016-02-23 04:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2016-05-03 22:17 - 2016-02-23 04:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-05-03 22:17 - 2016-02-23 04:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-05-03 22:17 - 2016-02-23 04:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-05-03 22:17 - 2016-02-23 04:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2016-05-03 22:17 - 2016-02-23 03:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-05-03 22:17 - 2016-02-23 02:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2016-05-03 22:17 - 2016-02-23 02:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-05-03 22:17 - 2016-02-23 02:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-05-03 22:16 - 2016-05-03 22:16 - 00002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2016-05-03 22:16 - 2016-05-03 22:16 - 00002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2016-05-03 22:16 - 2016-03-29 01:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2016-05-03 22:15 - 2016-03-29 03:05 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-05-03 22:15 - 2016-03-29 02:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-05-03 22:15 - 2016-02-24 05:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-05-03 22:15 - 2016-02-24 02:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2016-05-03 22:15 - 2016-02-24 02:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-05-03 22:15 - 2016-02-24 02:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2016-05-03 22:15 - 2016-02-23 06:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-05-03 22:15 - 2016-02-23 05:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-05-03 22:15 - 2016-02-23 04:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-05-03 22:15 - 2016-02-23 04:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-05-03 22:15 - 2016-02-23 03:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-05-03 22:15 - 2016-02-23 03:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-05-03 22:15 - 2016-02-23 03:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-05-03 22:15 - 2016-02-23 03:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-05-03 22:15 - 2016-02-23 03:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-05-03 22:14 - 2016-03-29 06:22 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-05-03 22:14 - 2016-03-29 06:22 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-05-03 22:14 - 2016-03-29 06:20 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-05-03 22:14 - 2016-03-29 06:20 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-05-03 22:14 - 2016-03-29 06:11 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-05-03 22:14 - 2016-03-29 05:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2016-05-03 22:14 - 2016-03-29 05:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2016-05-03 22:14 - 2016-03-29 05:08 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-05-03 22:14 - 2016-03-29 05:08 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-05-03 22:14 - 2016-03-29 04:26 - 02403680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-05-03 22:14 - 2016-03-29 04:26 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-05-03 22:14 - 2016-03-29 04:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-05-03 22:14 - 2016-03-29 04:21 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2016-05-03 22:14 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2016-05-03 22:14 - 2016-03-29 03:36 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2016-05-03 22:14 - 2016-03-29 03:30 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-05-03 22:14 - 2016-03-29 03:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll 2016-05-03 22:14 - 2016-03-29 03:27 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-05-03 22:14 - 2016-03-29 03:22 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-05-03 22:14 - 2016-03-29 03:20 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-05-03 22:14 - 2016-03-29 03:19 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-05-03 22:14 - 2016-03-29 03:11 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-05-03 22:14 - 2016-03-29 03:09 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-05-03 22:14 - 2016-03-29 03:07 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2016-05-03 22:14 - 2016-03-29 03:06 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-05-03 22:14 - 2016-03-29 03:02 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-05-03 22:14 - 2016-03-29 03:00 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-05-03 22:14 - 2016-03-29 02:55 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2016-05-03 22:14 - 2016-03-29 02:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll 2016-05-03 22:14 - 2016-03-29 02:42 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-05-03 22:14 - 2016-03-29 02:40 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-05-03 22:14 - 2016-03-29 02:36 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-05-03 22:14 - 2016-03-29 02:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-05-03 22:14 - 2016-03-29 02:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2016-05-03 22:14 - 2016-03-29 02:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-05-03 22:14 - 2016-03-29 02:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2016-05-03 22:14 - 2016-03-29 02:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-05-03 22:14 - 2016-03-29 02:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll 2016-05-03 22:14 - 2016-03-29 02:17 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-05-03 22:14 - 2016-03-29 02:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-05-03 22:14 - 2016-03-29 02:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-05-03 22:14 - 2016-03-29 02:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2016-05-03 22:14 - 2016-03-29 02:05 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-05-03 22:14 - 2016-03-29 02:04 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-05-03 22:14 - 2016-03-29 01:43 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-05-03 22:14 - 2016-03-29 01:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-05-03 22:14 - 2016-03-29 01:26 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2016-05-03 22:14 - 2016-03-29 01:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2016-05-03 22:14 - 2016-02-24 04:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2016-05-03 22:14 - 2016-02-24 04:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2016-05-03 22:14 - 2016-02-24 04:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2016-05-03 22:14 - 2016-02-24 04:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-05-03 22:14 - 2016-02-24 03:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll 2016-05-03 22:14 - 2016-02-24 03:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2016-05-03 22:14 - 2016-02-24 03:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2016-05-03 22:14 - 2016-02-24 03:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-05-03 22:14 - 2016-02-24 02:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-05-03 22:14 - 2016-02-24 02:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2016-05-03 22:14 - 2016-02-24 02:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-05-03 22:14 - 2016-02-24 02:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2016-05-03 22:14 - 2016-02-24 02:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2016-05-03 22:14 - 2016-02-24 02:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-05-03 22:14 - 2016-02-24 02:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-05-03 22:14 - 2016-02-24 02:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-05-03 22:14 - 2016-02-24 02:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-05-03 22:14 - 2016-02-24 02:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-05-03 22:14 - 2016-02-24 02:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2016-05-03 22:14 - 2016-02-24 02:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-05-03 22:14 - 2016-02-24 02:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll 2016-05-03 22:14 - 2016-02-24 02:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2016-05-03 22:14 - 2016-02-24 02:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-05-03 22:14 - 2016-02-24 02:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-05-03 22:14 - 2016-02-24 02:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2016-05-03 22:14 - 2016-02-24 02:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2016-05-03 22:14 - 2016-02-24 02:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-05-03 22:14 - 2016-02-23 07:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2016-05-03 22:14 - 2016-02-23 07:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-05-03 22:14 - 2016-02-23 06:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-05-03 22:14 - 2016-02-23 06:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll 2016-05-03 22:14 - 2016-02-23 05:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-05-03 22:14 - 2016-02-23 05:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2016-05-03 22:14 - 2016-02-23 05:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-05-03 22:14 - 2016-02-23 05:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-05-03 22:14 - 2016-02-23 05:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-05-03 22:14 - 2016-02-23 05:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2016-05-03 22:14 - 2016-02-23 04:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-05-03 22:14 - 2016-02-23 04:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-05-03 22:14 - 2016-02-23 04:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2016-05-03 22:14 - 2016-02-23 04:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2016-05-03 22:14 - 2016-02-23 04:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll 2016-05-03 22:14 - 2016-02-23 04:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2016-05-03 22:14 - 2016-02-23 04:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-05-03 22:14 - 2016-02-23 04:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2016-05-03 22:14 - 2016-02-23 04:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-05-03 22:14 - 2016-02-23 04:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-05-03 22:14 - 2016-02-23 04:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-05-03 22:14 - 2016-02-23 04:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-05-03 22:14 - 2016-02-23 04:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-05-03 22:14 - 2016-02-23 04:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2016-05-03 22:14 - 2016-02-23 04:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-05-03 22:14 - 2016-02-23 04:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-05-03 22:14 - 2016-02-23 04:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-05-03 22:14 - 2016-02-23 04:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-05-03 22:14 - 2016-02-23 03:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll 2016-05-03 22:14 - 2016-02-23 03:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2016-05-03 22:14 - 2016-02-23 03:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll 2016-05-03 22:14 - 2016-02-23 03:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-05-03 22:14 - 2016-02-23 03:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2016-05-03 22:14 - 2016-02-23 03:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2016-05-03 22:14 - 2016-02-23 03:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2016-05-03 22:14 - 2016-02-23 03:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-05-03 22:14 - 2016-02-08 23:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2016-05-03 22:14 - 2016-02-08 23:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2016-05-03 22:13 - 2016-04-02 00:10 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2016-05-03 22:13 - 2016-04-02 00:10 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-05-03 22:13 - 2016-04-01 23:25 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2016-05-03 22:13 - 2016-04-01 23:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll 2016-05-03 22:13 - 2016-03-29 06:23 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-05-03 22:13 - 2016-03-29 06:15 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2016-05-03 22:13 - 2016-03-29 06:05 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-05-03 22:13 - 2016-03-29 06:02 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-05-03 22:13 - 2016-03-29 06:02 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2016-05-03 22:13 - 2016-03-29 05:25 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2016-05-03 22:13 - 2016-03-29 05:18 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-05-03 22:13 - 2016-03-29 05:11 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe 2016-05-03 22:13 - 2016-03-29 05:10 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll 2016-05-03 22:13 - 2016-03-29 05:09 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll 2016-05-03 22:13 - 2016-03-29 05:07 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll 2016-05-03 22:13 - 2016-03-29 04:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll 2016-05-03 22:13 - 2016-03-29 04:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll 2016-05-03 22:13 - 2016-03-29 04:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll 2016-05-03 22:13 - 2016-03-29 04:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll 2016-05-03 22:13 - 2016-03-29 04:07 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll 2016-05-03 22:13 - 2016-03-29 03:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2016-05-03 22:13 - 2016-03-29 03:57 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll 2016-05-03 22:13 - 2016-03-29 03:51 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2016-05-03 22:13 - 2016-03-29 03:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2016-05-03 22:13 - 2016-03-29 03:50 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2016-05-03 22:13 - 2016-03-29 03:50 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll 2016-05-03 22:13 - 2016-03-29 03:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2016-05-03 22:13 - 2016-03-29 03:48 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-05-03 22:13 - 2016-03-29 03:46 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll 2016-05-03 22:13 - 2016-03-29 03:44 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll 2016-05-03 22:13 - 2016-03-29 03:36 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2016-05-03 22:13 - 2016-03-29 03:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2016-05-03 22:13 - 2016-03-29 03:35 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-05-03 22:13 - 2016-03-29 03:34 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2016-05-03 22:13 - 2016-03-29 03:33 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-05-03 22:13 - 2016-03-29 03:23 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-05-03 22:13 - 2016-03-29 03:21 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-05-03 22:13 - 2016-03-29 03:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll 2016-05-03 22:13 - 2016-03-29 03:18 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2016-05-03 22:13 - 2016-03-29 03:17 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-05-03 22:13 - 2016-03-29 03:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll 2016-05-03 22:13 - 2016-03-29 03:08 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-05-03 22:13 - 2016-03-29 03:08 - 00841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-05-03 22:13 - 2016-03-29 03:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll 2016-05-03 22:13 - 2016-03-29 03:03 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-05-03 22:13 - 2016-03-29 02:59 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-05-03 22:13 - 2016-03-29 02:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-05-03 22:13 - 2016-03-29 02:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-05-03 22:13 - 2016-03-29 02:49 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-05-03 22:13 - 2016-03-29 02:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-05-03 22:13 - 2016-03-29 02:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-05-03 22:13 - 2016-03-29 02:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll 2016-05-03 22:13 - 2016-03-29 02:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-05-03 22:13 - 2016-03-29 02:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-05-03 22:13 - 2016-03-29 02:32 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2016-05-03 22:13 - 2016-03-29 02:29 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2016-05-03 22:13 - 2016-03-29 02:01 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2016-05-03 22:13 - 2016-03-29 01:45 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll 2016-05-03 22:13 - 2016-03-29 01:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2016-05-03 22:13 - 2016-03-29 01:35 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-05-03 22:13 - 2016-03-29 01:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-05-03 22:13 - 2016-03-29 01:26 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2016-05-03 22:13 - 2016-03-29 01:21 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll 2016-05-03 22:13 - 2016-02-24 04:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2016-05-03 22:13 - 2016-02-24 04:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe 2016-05-03 22:13 - 2016-02-24 04:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll 2016-05-03 22:13 - 2016-02-24 04:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2016-05-03 22:13 - 2016-02-24 03:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll 2016-05-03 22:13 - 2016-02-24 03:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll 2016-05-03 22:13 - 2016-02-24 03:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2016-05-03 22:13 - 2016-02-24 03:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2016-05-03 22:13 - 2016-02-24 03:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll 2016-05-03 22:13 - 2016-02-24 03:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-05-03 22:13 - 2016-02-24 03:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll 2016-05-03 22:13 - 2016-02-24 03:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2016-05-03 22:13 - 2016-02-24 03:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2016-05-03 22:13 - 2016-02-24 03:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll 2016-05-03 22:13 - 2016-02-24 03:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll 2016-05-03 22:13 - 2016-02-24 03:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2016-05-03 22:13 - 2016-02-24 03:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll 2016-05-03 22:13 - 2016-02-24 03:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2016-05-03 22:13 - 2016-02-24 03:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2016-05-03 22:13 - 2016-02-24 03:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2016-05-03 22:13 - 2016-02-24 03:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll 2016-05-03 22:13 - 2016-02-24 03:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-05-03 22:13 - 2016-02-24 03:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-05-03 22:13 - 2016-02-24 02:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-05-03 22:13 - 2016-02-24 02:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll 2016-05-03 22:13 - 2016-02-24 02:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2016-05-03 22:13 - 2016-02-24 02:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll 2016-05-03 22:13 - 2016-02-24 02:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2016-05-03 22:13 - 2016-02-24 02:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-05-03 22:13 - 2016-02-24 02:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-05-03 22:13 - 2016-02-24 02:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll 2016-05-03 22:13 - 2016-02-24 02:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2016-05-03 22:13 - 2016-02-24 02:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll 2016-05-03 22:13 - 2016-02-24 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2016-05-03 22:13 - 2016-02-24 02:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll 2016-05-03 22:13 - 2016-02-24 02:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2016-05-03 22:13 - 2016-02-24 02:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-05-03 22:13 - 2016-02-24 02:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll 2016-05-03 22:13 - 2016-02-24 02:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll 2016-05-03 22:13 - 2016-02-24 02:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll 2016-05-03 22:13 - 2016-02-24 02:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-05-03 22:13 - 2016-02-24 02:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-05-03 22:13 - 2016-02-24 02:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2016-05-03 22:13 - 2016-02-24 01:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2016-05-03 22:13 - 2016-02-24 01:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll 2016-05-03 22:13 - 2016-02-23 06:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2016-05-03 22:13 - 2016-02-23 05:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2016-05-03 22:13 - 2016-02-23 05:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-05-03 22:13 - 2016-02-23 05:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-05-03 22:13 - 2016-02-23 04:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-05-03 22:13 - 2016-02-23 04:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-05-03 22:12 - 2016-03-29 04:16 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys 2016-05-03 22:12 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2016-05-03 22:12 - 2016-03-29 04:07 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2016-05-03 22:12 - 2016-03-29 04:06 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll 2016-05-03 22:12 - 2016-03-29 04:00 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe 2016-05-03 22:12 - 2016-03-29 04:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll 2016-05-03 22:12 - 2016-03-29 03:57 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll 2016-05-03 22:12 - 2016-03-29 03:55 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys 2016-05-03 22:12 - 2016-03-29 03:55 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll 2016-05-03 22:12 - 2016-03-29 03:54 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-05-03 22:12 - 2016-03-29 03:53 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-05-03 22:12 - 2016-03-29 03:52 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe 2016-05-03 22:12 - 2016-03-29 03:50 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll 2016-05-03 22:12 - 2016-03-29 03:34 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2016-05-03 22:12 - 2016-03-29 03:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll 2016-05-03 22:12 - 2016-03-29 03:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll 2016-05-03 22:12 - 2016-03-29 03:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll 2016-05-03 22:12 - 2016-03-29 03:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll 2016-05-03 22:12 - 2016-03-29 03:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll 2016-05-03 22:12 - 2016-03-29 03:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe 2016-05-03 22:12 - 2016-03-29 03:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll 2016-05-03 22:12 - 2016-03-29 03:00 - 00235008 _____ C:\WINDOWS\system32\MTF.dll 2016-05-03 22:12 - 2016-03-29 03:00 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-05-03 22:12 - 2016-03-29 02:59 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-05-03 22:12 - 2016-03-29 02:59 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2016-05-03 22:12 - 2016-03-29 02:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll 2016-05-03 22:12 - 2016-03-29 02:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2016-05-03 22:12 - 2016-03-29 02:27 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll 2016-05-03 22:12 - 2016-03-29 02:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2016-05-03 22:12 - 2016-03-29 01:27 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2016-05-03 22:12 - 2016-03-29 01:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2016-05-03 22:12 - 2016-02-24 03:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll 2016-05-03 22:12 - 2016-02-24 03:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll 2016-05-03 22:12 - 2016-02-24 03:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-05-03 22:12 - 2016-02-24 03:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2016-05-03 22:12 - 2016-02-24 03:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2016-05-03 22:12 - 2016-02-24 02:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll 2016-05-03 22:12 - 2016-02-24 02:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll 2016-05-03 22:12 - 2016-02-24 02:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll 2016-05-03 22:12 - 2016-02-24 02:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll 2016-05-03 22:12 - 2016-02-24 02:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll 2016-05-03 22:12 - 2016-02-24 02:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2016-05-03 22:12 - 2016-02-24 02:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll 2016-05-03 22:12 - 2016-02-23 05:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys 2016-05-03 22:12 - 2016-02-23 05:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-05-03 22:12 - 2016-02-23 04:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2016-05-03 22:12 - 2016-02-23 04:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2016-05-03 22:12 - 2016-02-23 04:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll 2016-05-03 22:12 - 2016-02-23 03:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll 2016-05-03 22:06 - 2016-05-03 22:06 - 03300032 _____ (Microsoft Corporation) C:\Users\Mark\Downloads\Setup.X86.en-US_O365HomePremRetail_abab3f13-c8ea-464e-9228-adee451a766b_TX_PR_ (2).exe 2016-05-03 21:56 - 2016-05-03 22:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools 2016-05-03 21:55 - 2016-05-03 21:55 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-05-03 21:42 - 2016-05-03 21:42 - 03300032 _____ (Microsoft Corporation) C:\Users\Mark\Downloads\Setup.X86.en-US_O365HomePremRetail_abab3f13-c8ea-464e-9228-adee451a766b_TX_PR_ (1).exe 2016-05-03 21:39 - 2016-05-03 21:40 - 03300032 _____ (Microsoft Corporation) C:\Users\Mark\Downloads\Setup.X86.en-US_O365HomePremRetail_abab3f13-c8ea-464e-9228-adee451a766b_TX_PR_.exe 2016-05-03 17:54 - 2016-05-03 18:29 - 2582112256 _____ C:\Users\Mark\Downloads\en_sql_server_2014_developer_edition_with_service_pack_1_x86_dvd_6668541.iso 2016-05-03 14:35 - 2016-05-03 15:00 - 00000000 ___DC C:\WINDOWS\Panther 2016-05-03 14:30 - 2016-05-03 14:30 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-05-03 14:28 - 2016-05-03 20:24 - 00000000 ____D C:\Users\Mark\AppData\Local\MicrosoftEdge 2016-05-03 14:27 - 2016-05-03 14:27 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-05-03 14:27 - 2016-05-03 14:27 - 00000000 ____D C:\Program Files\MSBuild 2016-05-03 14:27 - 2016-05-03 14:27 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2016-05-03 14:27 - 2016-05-03 14:27 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-05-03 14:27 - 2016-05-03 14:27 - 00000000 ____D C:\inetpub 2016-05-03 14:26 - 2016-05-03 14:26 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-05-03 14:26 - 2016-05-03 14:26 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-05-03 14:26 - 2015-10-23 21:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2016-05-03 14:26 - 2015-10-23 21:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-05-03 14:26 - 2015-10-23 21:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2016-05-03 14:26 - 2015-10-23 21:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-05-03 14:26 - 2015-10-23 21:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-05-03 14:26 - 2015-10-23 21:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-05-03 14:25 - 2016-05-12 14:44 - 00002364 _____ C:\Users\Mark\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-05-03 14:23 - 2016-05-03 14:23 - 00000000 ____D C:\Users\Mark\AppData\Local\ActiveSync 2016-05-03 14:20 - 2016-05-03 14:20 - 00000000 ____D C:\Users\Mark\AppData\Local\Publishers 2016-05-03 14:19 - 2016-05-03 14:29 - 00000000 ____D C:\Users\Mark\AppData\Local\Comms 2016-05-03 14:18 - 2016-07-08 11:49 - 00000000 __SHD C:\Users\Mark\IntelGraphicsProfiles 2016-05-03 14:18 - 2016-05-03 23:54 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2016-05-03 14:18 - 2016-05-03 14:18 - 00000000 ____D C:\Users\Mark\AppData\Local\TileDataLayer 2016-05-03 14:17 - 2016-05-03 14:17 - 00000020 ___SH C:\Users\Mark\ntuser.ini 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default\My Documents 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default\Documents\My Videos 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default\Documents\My Music 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures 2016-05-03 14:07 - 2016-05-03 14:07 - 00000000 _SHDL C:\Users\Default User\Documents\My Music 2016-05-03 13:53 - 2016-05-03 22:03 - 00000000 ____D C:\Users\Default\AppData\Roaming\Compatibility Verifier 2016-05-03 13:53 - 2016-05-03 22:03 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Compatibility Verifier 2016-05-03 13:53 - 2016-05-03 13:53 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\Documents\hp.system.package.metadata 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\Documents\hp.applications.package.appdata 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\AppData\Roaming\hpqLog 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\AppData\Roaming\Hewlett-Packard 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default\AppData\Roaming\Adobe 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\Documents\hp.system.package.metadata 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\Documents\hp.applications.package.appdata 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\AppData\Roaming\hpqLog 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Hewlett-Packard 2016-05-03 13:53 - 2016-05-03 13:53 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Adobe 2016-05-03 13:45 - 2016-05-03 13:45 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2016-05-03 13:43 - 2016-07-08 12:04 - 00000000 ____D C:\Users\Mark 2016-05-03 13:43 - 2016-05-03 13:43 - 00000000 _SHDL C:\Users\Mark\My Documents 2016-05-03 13:43 - 2016-05-03 13:43 - 00000000 _SHDL C:\Users\Mark\Documents\My Videos 2016-05-03 13:43 - 2016-05-03 13:43 - 00000000 _SHDL C:\Users\Mark\Documents\My Pictures 2016-05-03 13:43 - 2016-05-03 13:43 - 00000000 _SHDL C:\Users\Mark\Documents\My Music 2016-05-03 13:42 - 2016-07-08 12:02 - 01178058 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-05-03 13:42 - 2016-05-27 10:27 - 01193498 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2016-05-03 13:39 - 2016-05-03 13:39 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2016-05-03 13:39 - 2016-05-03 13:39 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2016-05-03 13:39 - 2016-05-03 13:39 - 00000000 ____D C:\WINDOWS\system32\SRSLabs 2016-05-03 13:39 - 2016-05-03 13:39 - 00000000 ____D C:\Program Files\Realtek 2016-05-03 13:39 - 2015-08-27 21:20 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2016-05-03 13:39 - 2015-08-27 21:20 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2016-05-03 13:38 - 2016-05-03 13:46 - 00000000 ____D C:\Program Files\Intel 2016-05-03 13:38 - 2016-05-03 13:38 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2016-05-03 13:38 - 2016-05-03 13:38 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2016-05-03 13:38 - 2016-05-03 13:38 - 00000000 ____D C:\Program Files\Synaptics 2016-04-28 03:53 - 2016-04-28 03:53 - 00430248 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll 2016-04-28 03:53 - 2016-04-28 03:53 - 00267440 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo31-1.dll 2016-04-28 03:53 - 2016-04-28 03:53 - 00052904 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys 2016-04-28 03:53 - 2016-04-28 03:53 - 00052392 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys 2016-04-24 18:04 - 2016-04-24 18:04 - 00635120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll 2016-04-24 18:04 - 2016-04-24 18:04 - 00390408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll 2016-04-24 18:04 - 2016-04-24 18:04 - 00333080 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll 2016-04-24 18:04 - 2016-04-24 18:04 - 00088816 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll 2016-04-24 16:01 - 2016-04-24 16:01 - 00439536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll 2016-04-24 16:01 - 2016-04-24 16:01 - 00267016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll 2016-04-24 16:01 - 2016-04-24 16:01 - 00243480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll 2016-04-24 16:01 - 2016-04-24 16:01 - 00085232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll ==================== Three Months Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-07-11 14:41 - 2014-01-30 19:35 - 00000000 ____D C:\Users\Mark\AppData\Roaming\Open Download Manager 2016-07-11 13:30 - 2013-07-03 19:36 - 00002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-07-11 13:30 - 2013-07-03 19:36 - 00002296 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-07-10 20:53 - 2013-07-03 19:16 - 00004150 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{ECA9C05A-7803-4D07-8898-9EA6C3FD99F4} 2016-07-10 03:59 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-07-08 21:52 - 2015-10-30 03:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-07-08 13:21 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-07-08 12:05 - 2015-09-14 18:58 - 00000000 ___RD C:\Users\Mark\OneDrive 2016-07-08 12:02 - 2015-10-30 03:21 - 00000000 ____D C:\WINDOWS\INF 2016-07-08 11:11 - 2016-02-13 09:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-07-08 10:51 - 2013-07-03 19:13 - 00000000 ____D C:\Users\Mark\AppData\Local\Packages 2016-07-08 00:03 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2016-07-08 00:03 - 2015-10-30 02:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-07-08 00:01 - 2013-07-03 19:57 - 00000000 ____D C:\ProgramData\APN 2016-07-07 18:44 - 2015-08-01 16:51 - 00000000 ____D C:\Program Files (x86)\DX-Ball 2016-07-07 18:44 - 2014-01-16 21:47 - 00000000 ____D C:\Program Files\Trend Micro 2016-07-07 18:44 - 2013-03-14 01:24 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-07-07 18:44 - 2012-10-19 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2016-07-07 18:26 - 2013-03-14 01:34 - 00000000 ____D C:\ProgramData\Temp 2016-07-07 18:12 - 2012-10-19 22:17 - 00000000 ____D C:\Program Files (x86)\HP Games 2016-07-07 18:04 - 2012-10-19 22:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2016-07-07 16:39 - 2014-01-13 21:46 - 00000000 ____D C:\Users\Mark\AppData\LocalLow\{74260F28-67CC-A0D9-D004-608D8CEA44FE} 2016-07-07 16:26 - 2014-01-16 17:16 - 00000000 ____D C:\Program Files (x86)\Desura 2016-07-07 16:21 - 2013-11-02 10:27 - 00000000 ____D C:\Program Files (x86)\RealNetworks 2016-07-07 16:21 - 2013-11-02 10:26 - 00000000 ____D C:\Users\Mark\AppData\Roaming\Real 2016-07-07 16:00 - 2014-03-20 18:39 - 00000000 ____D C:\Users\Mark\Documents\My Games 2016-07-07 15:34 - 2015-06-20 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-07-06 20:39 - 2014-01-16 21:17 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2016-07-06 14:34 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-07-06 13:57 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2016-07-06 13:57 - 2014-12-05 16:37 - 00000258 __RSH C:\ProgramData\ntuser.pol 2016-07-06 13:51 - 2013-07-03 19:38 - 00000000 ____D C:\Users\Mark\AppData\Local\ElevatedDiagnostics 2016-07-06 11:16 - 2014-03-04 23:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2016-07-01 11:19 - 2016-01-25 10:32 - 00003574 _____ C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2831008254-3413696649-1044918524-1001 2016-07-01 11:19 - 2016-01-25 10:32 - 00003514 _____ C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2831008254-3413696649-1044918524-1001 2016-06-21 05:01 - 2015-10-30 03:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-06-21 04:59 - 2012-10-19 22:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-06-17 11:17 - 2016-02-13 09:20 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-06-17 03:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\rescache 2016-06-17 03:38 - 2015-10-30 03:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-06-17 03:22 - 2016-02-13 09:11 - 00357152 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-06-17 03:18 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-06-17 03:18 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-06-17 03:18 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-06-15 12:54 - 2013-08-26 12:44 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-06-15 12:45 - 2013-07-13 17:19 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-06-14 14:33 - 2015-10-30 03:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-06-14 14:33 - 2015-10-30 03:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Files in the root of some directories ======= 2014-01-16 21:35 - 2014-01-16 21:35 - 0000036 _____ () C:\Users\Mark\AppData\Local\housecall.guid.cache 2016-05-26 19:49 - 2016-05-26 19:49 - 0000017 _____ () C:\Users\Mark\AppData\Local\resmon.resmoncfg 2015-07-28 06:35 - 2016-05-02 16:49 - 0000112 _____ () C:\ProgramData\tv62c2Ol2.dat Files to move or delete: ==================== C:\ProgramData\tv62c2Ol2.dat Some files in TEMP: ==================== C:\Users\Mark\AppData\Local\Temp\HPSFUpdater.exe C:\Users\Mark\AppData\Local\Temp\UninstallHPSA.exe ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} {26c79726-79ab-11e4-824f-806e6f6e6963} {c0eb1a67-8c6e-11e2-98b7-cfbc9dfebea7} {c0eb1a68-8c6e-11e2-98b7-cfbc9dfebea7} timeout 0 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale en-US inherit {globalsettings} default {current} resumeobject {069ac10c-8c72-11e2-be71-7446a0cb56d0} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmware Application (101fffff) ------------------------------- identifier {26c79726-79ab-11e4-824f-806e6f6e6963} description Internal Hard Disk or Solid State Disk Firmware Application (101fffff) ------------------------------- identifier {c0eb1a67-8c6e-11e2-98b7-cfbc9dfebea7} description USB Drive (UEFI) Firmware Application (101fffff) ------------------------------- identifier {c0eb1a68-8c6e-11e2-98b7-cfbc9dfebea7} description Internal CD/DVD ROM Drive (UEFI) Windows Boot Loader ------------------- identifier {069ac104-8c72-11e2-be71-7446a0cb56d0} device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{069ac105-8c72-11e2-be71-7446a0cb56d0} path \windows\system32\winload.efi description Windows Recovery Environment locale en-US inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{069ac105-8c72-11e2-be71-7446a0cb56d0} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {069ac109-8c72-11e2-be71-7446a0cb56d0} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{069ac10a-8c72-11e2-be71-7446a0cb56d0} path \windows\system32\winload.efi description Windows Recovery Environment locale en-US inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{069ac10a-8c72-11e2-be71-7446a0cb56d0} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale en-US inherit {bootloadersettings} recoverysequence {069ac10e-8c72-11e2-be71-7446a0cb56d0} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {069ac10c-8c72-11e2-be71-7446a0cb56d0} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {069ac10e-8c72-11e2-be71-7446a0cb56d0} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{069ac10f-8c72-11e2-be71-7446a0cb56d0} path \windows\system32\winload.efi description Windows Recovery Environment locale en-US inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{069ac10f-8c72-11e2-be71-7446a0cb56d0} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {069ac107-8c72-11e2-be71-7446a0cb56d0} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale en-US inherit {resumeloadersettings} recoverysequence {069ac109-8c72-11e2-be71-7446a0cb56d0} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Resume from Hibernate --------------------- identifier {069ac10c-8c72-11e2-be71-7446a0cb56d0} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale en-US inherit {resumeloadersettings} recoverysequence {069ac10e-8c72-11e2-be71-7446a0cb56d0} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Resume from Hibernate --------------------- identifier {c0eb1a6b-8c6e-11e2-98b7-cfbc9dfebea7} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale en-US inherit {resumeloadersettings} recoverysequence {069ac104-8c72-11e2-be71-7446a0cb56d0} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Windows Memory Diagnostic locale en-US inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {069ac105-8c72-11e2-be71-7446a0cb56d0} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\WindowsRE\boot.sdi Device options -------------- identifier {069ac106-8c72-11e2-be71-7446a0cb56d0} description Windows Setup ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Device options -------------- identifier {069ac10b-8c72-11e2-be71-7446a0cb56d0} description Windows Setup ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Device options -------------- identifier {069ac10f-8c72-11e2-be71-7446a0cb56d0} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2016-07-05 09:23 ==================== End of FRST.txt ============================