Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

No infection name. Computer becoming unusable [Closed]


  • This topic is locked This topic is locked

#1
Thumperness

Thumperness

    Member

  • Member
  • PipPip
  • 41 posts
First of all, thank you for taking the time to check my post.

I have not been able to find a name for what's infecting my computer. This is an HP all in one machine running Windows 7.

My current anti-virus is Windows Security Essentials (Up to date)

My symptoms are hard to explain and vague be we can tell things are just not right. It runs quite slow. There are pop up videos that play while browsing that we can not get to shut off. I have tried to run Malwarebytes Anti-Malware. It finds about 56+ 'infections' and wants to keep on scanning but it gets locked up to the point of having to hold in the power button to get it to shut down so we can reboot. It does the same thing if I try to run it in safe mode.

I downloaded OTL and began the quick scan. It also freezes after a while. The file it is working on when it freezes says "Scanning HKEY_LOCAL_MACHINE Internet Explorer Toolbars..."

I am not sure where to go from here

Thanx in advance for any help you can provide.
  • 0

Advertisements


#2
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts
Hello and welcome to Geeks to Go! My nickname is Pystryker :) , and I will be helping you with your issue today.


Before we get started, I have a few things I need to go over with you

  • Please do not install any new software during the cleaning process other than the tools I provide for you. This can hinder the cleaning process.
  • Please subscribe to this topic. By subscribing, the board will notify you when a new reply is added to your topic. You can find instructions on how to do that by clicking here.
  • If any of your security programs give you a warning about any tool I ask you to use, please do not worry. All the links and tools I provide to you will be safe.

  • Please read through my instructions carefully and completely before executing them.
  • Please make sure that all the programs I ask you to download are downloaded to and run from your Desktop.
  • Please make sure you print out these instructions so that you will be able to refer to them while working on your machine. Part of the solution(s) to your problem may involve us working in Safe Mode and you will need them to go by.
  • Please do not run any tools other than the ones I ask you to, when I ask you to. Some of these tools can be very dangerous if used improperly. Also, if you use a tool that I have not requested you use, it can cause false positives, thereby delaying the complete cleaning of your machine.
  • Please read through my instructions carefully and make sure you complete them from start to finish. I will make sure that I lay the instructions out in a step by step order to make them easy to follow
  • This is a complicated process. It requires several steps, patience, and careful following of my instructions in the order they are given to diagnose your problems to get your machine back in working order.
  • Please stay with me until the end of all steps and procedures and I declare your system clean. Just because there is a lack of symptoms does not indicate a clean machine. I promise to do the same for you.
  • Please make sure you reply within 3 days to my responses, if there is no reply within 3 days, the topic will be closed and you will need to request the topic be reopened.
  • Before we get started, please remember we will do our best to get your machine repaired. However, there are some cases where the only solution is a reformat and reinstall of the operating system. This is a worst case scenario though.
  • It is impossible for me to know what interactions may happen between your computer's software and the tools we will use to clean your machine. Therefore, I highly recommend you backup any critical personal files on your machine before we start.
  • If possible, please have your original Windows installation disks handy, just in case.
  • If you have any questions at all, please don't hesitate to ask. There's no such thing as a stupid question when dealing with malware.
  • If you are unsure of an instruction I give you, or if something unexepected occurs, Do NOT proceed! Stop and ask for clarification of the instruction or tell me what occurred.
  • Please copy and paste the contents of any requested logs in your replies. Do not attach the log files in your replies unless requested to do so.
  • Please remember, the fixes are for your machine and your machine ONLY!



Once we have cleaned your machine, we'll have some cleanup and prevention steps to go through. We will also provide you with some information about how to reduce your chances of infection and get some protections in place to help defend you against this in the future

Please be patient while I am analyzing your logs. I know you are probably scared and very frustrated with this problem, but I am a volunteer and sometimes life does get in the way. :)

Now, let's get started, shall we? :thumbsup:


Hello :) Let's try a different tool and see if it will get us a log. :thumbsup:


Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.


Things I need to see in your next post:

FRST Log

Addition.txt Log

  • 0

#3
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Thank you for picking up my case. I am not freaking out, just annoyed.

So I downloaded and ran FRST. It ran for about .4 seconds I'd say and came to a screeching halt.

It did generate the first log: (baby steps)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2014
Ran by Wendy (administrator) on WENDY-HP on 09-03-2014 15:56:41
Running from C:\Users\Wendy\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(www.shadowexplorer.com) C:\Program Files (x86)\ShadowExplorer\sesvc.exe
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Dropbox, Inc.) C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ArcSoft, Inc.) C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_12_0_0_70_ActiveX.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7461480 2011-09-08] (Realtek Semiconductor)
HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-08-12] (PDF Complete Inc)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [ArcSoft MediaImpression Monitor] - C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe [80448 2010-12-15] (ArcSoft, Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2012-01-26] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [502912 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863360 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [RoboForm] - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [109296 2012-02-21] (Siber Systems)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [KGShareApp] - C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe [394752 2012-10-11] (Eastman Kodak Company)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIIUE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20918432 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {c46af8e6-a1c2-11e2-a415-047d7b09fc67} - G:\7001TPain.exe
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {f5f150a7-ea33-11e2-a65e-047d7b09fc67} - G:\KODAK_Camera_Setup_App.exe
AppInit_DLLs: C:\PROGRA~2\WS_X64~1.ENA => C:\Program Files (x86)\WS_x64.Enabler [4241408 2014-02-05] ()
AppInit_DLLs-x32: c:\progra~2\wsbeb1~1.ena => C:\Program Files (x86)\WS.Enabler [4248576 2014-02-05] ()
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://websearch.web...&cc=US&unqvl=48
SearchScopes: HKLM - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo....psg&type=HPDTDF
SearchScopes: HKLM - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia....h={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.web...&cc=US&unqvl=48
SearchScopes: HKLM-x32 - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo....psg&type=HPDTDF
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.web...&cc=US&unqvl=48
SearchScopes: HKLM-x32 - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia....h={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKCU - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://search.yahoo....psg&type=HPDTDF
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.web...&cc=US&unqvl=48
SearchScopes: HKCU - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://en.wikipedia....h={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
BHO: AlLCheapPriice - {00E6AE54-5D2A-ADFC-589F-0F01A405FB3C} - C:\ProgramData\AlLCheapPriice\NW0XRGE.x64.dll ()
BHO: goreAtsaveur - {0905F18C-4358-07B8-550F-3DDBEB78D1B6} - C:\Program Files (x86)\goreAtsaveur\3HR6nxxN.x64.dll ()
BHO: YoutubeAdblocker - {24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} - C:\Program Files (x86)\YoutubeAdblocker\2wXyNSCHEn.x64.dll ()
BHO: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.x64.dll ()
BHO: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.x64.dll ()
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: AlLCheapPriice - {00E6AE54-5D2A-ADFC-589F-0F01A405FB3C} - C:\ProgramData\AlLCheapPriice\NW0XRGE.dll ()
BHO-x32: goreAtsaveur - {0905F18C-4358-07B8-550F-3DDBEB78D1B6} - C:\Program Files (x86)\goreAtsaveur\3HR6nxxN.dll ()
BHO-x32: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
BHO-x32: YoutubeAdblocker - {24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} - C:\Program Files (x86)\YoutubeAdblocker\2wXyNSCHEn.dll ()
BHO-x32: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.dll ()
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.dll ()
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)

Then it froze on file: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar

When I rebooted and tried it again I popped up with some odd boxes. See screenshot attached.

It took me several freeze ups and reboots to even get this post up for you.

Enjoy

Attached Thumbnails

  • Screen Shot.jpg

  • 0

#4
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

Thank you for picking up my case. I am not freaking out, just annoyed.


Hello :) You are quite welcome, we'll get this squared away.

Let's get rid of the adware I see, and then see if we can get a complete log. :thumbsup:



Please disable your antivirus for the duration of my instructions. Don't forget to re-enable them after you have completed the steps.


Step1: AdwCleaner


Download ADWcleaner by clicking here. Please save it to your Desktop


Posted Image

  • Double click (Vista and 7 Users)right click the adwcleaner.exe file and click Run as Adminstrator and accept the UAC prompt to run AdwCleaner
  • Close any open windows or browsers.
  • Pause your Anti-Virus program if it is running.
  • Once it starts, click on the Scan button.
  • Let the scan complete itself. This may take a few minutes.
  • Once the scan has finished, it will say "Pending, uncheck elements you don't want to remove.", don't worry about unchecking anything and then click the Clean button. When finished, it will ask to reboot. Please reboot.
  • When the machine has rebooted, a log will be produced. Please copy/paste that in your next reply. Here's how:
  • Click the Report button and the log will open. Copy and Paste the contents of the log file into your next reply.
This report is also saved at C:\AdwCleaner[R0].txt

Step 2: Junkware Removal Tool


Posted Image Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.


Step 3: TDSSKiller


Please download the latest version of TDSSKiller from here and save it to your Desktop.
  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Put a checkmark beside loaded modules.

    Posted Image
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.

  • Click the Start Scan button.

    Posted Image
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.

    Posted Image

    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.



Step 4: FRST Scan


Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.



Things I need to see in your next post:

AdwCleaner Log

Junkware Removal Tool Log

TDSSKiller Log

FRST Log

  • 0

#5
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
# AdwCleaner v3.020 - Report created 09/03/2014 at 19:04:15
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Wendy - WENDY-HP
# Running from : C:\Users\Wendy\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\AI_RecycleBin
Folder Deleted : C:\ProgramData\SNT
Folder Deleted : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\ProgramData\AlLCheapPriice
Folder Deleted : C:\ProgramData\goreAtsaveur
[/!\] Not Deleted ( Junction ) : C:\ProgramData\YoutubeAdblocker
Folder Deleted : C:\Program Files (x86)\SNT
Folder Deleted : C:\Program Files (x86)\tuguu sl
Folder Deleted : C:\Program Files (x86)\YoutubeAdblocker
Folder Deleted : C:\Program Files (x86)\AlLCheapPriice
Folder Deleted : C:\Program Files (x86)\goreAtsaveur
Folder Deleted : C:\Windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Wendy\AppData\Local\torch
Folder Deleted : C:\Users\Wendy\AppData\Roaming\strongvault

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hhbgpoakplhahbklhkcfbpicgjcaoglk
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{38495740-0035-4471-851E-F5BBB86AB085}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{72D89EBF-0C5D-4190-91FD-398E45F1D007}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255185504}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266186604}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FEB62B15-CC00-4736-AAEC-BA046C9DFF73}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440244184404}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1E28287-1A31-4B0F-8D05-AA8C465D3C5A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1F8EDE97-36D5-422A-B8F0-9406E2D87C60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550255185504}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660266186604}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Microsoft\IntelliType Pro\AppSpecific\Iminent.exe
Key Deleted : HKCU\Software\tuguu sl
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\InfoAtoms
Key Deleted : HKLM\Software\Updater By Sweetpacks
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA41BB14-E67B-1653-C57B-5CA99418A866}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Toolbar Cleaner
Key Deleted : [x64] HKLM\SOFTWARE\DomaIQ
Key Deleted : [x64] HKLM\SOFTWARE\Updater By Sweetpacks
Key Deleted : HKLM\Software\Classes\Installer\Features\0C776EBEBCBCFBE408892EE7B12517FC
Key Deleted : HKLM\Software\Classes\Installer\Products\0C776EBEBCBCFBE408892EE7B12517FC

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518

Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v32.0.1700.107

[ File : C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [7244 octets] - [09/03/2014 19:02:48]
AdwCleaner[S0].txt - [6652 octets] - [09/03/2014 19:04:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6712 octets] ##########


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 7 Home Premium x64
Ran by Wendy on Sun 03/09/2014 at 19:17:28.14
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\vafplayer
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\strongvaultapp_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\strongvaultapp_rasmancs
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{442E3BBA-1B43-4913-9040-037B42A662B1}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{442E3BBA-1B43-4913-9040-037B42A662B1}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{24BB0ECF-B673-C03D-DBC6-99F4775AC0CE}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{24BB0ECF-B673-C03D-DBC6-99F4775AC0CE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{24BB0ECF-B673-C03D-DBC6-99F4775AC0CE}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0010CAFE-D433-4382-83EE-B3CA79EFEF22}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{001E16E8-1B53-4390-A4FD-75FCF1CE4546}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0025A381-0087-4BEB-8E25-4ACEB87F8022}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{008EED3F-41DF-47D1-AD2F-752FE2F6F5DA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{00DCBA94-D553-4D8A-A70F-2F02BA683FD1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{01381DD6-5FFA-4231-8EA2-D4393133BEDF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0182FC3A-855A-4016-9DCA-C7EF5681E066}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{019152EC-0DC5-44C3-8361-394829BAD648}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{01A56D2C-55AA-4766-9188-F51755940323}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{01C144D3-5D78-482A-AB8E-29C6BEBDBB28}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{01C1F574-58FA-4183-97A5-077FC1B54564}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{01E15DF4-0ECB-4648-AA6E-98B039D1ACFA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0226B344-B9B2-4747-AF4C-2281F97BAD4A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{022DD119-27D3-4390-8BE7-1F1EFB45C75C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{026271C0-234E-4E34-A400-F1F217FFF7D1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{02737825-3995-4739-9FCD-9766518079AC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{02E8152F-A61C-4AC6-97F7-1D741447DB27}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{02EBC02D-C263-4D3C-AE50-CD00F6EA999B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{035097F5-BD8D-4473-A9F7-C0F818E06C33}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0370B111-6BB6-46E9-8BE6-877649C36AE6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{03793682-E190-492F-A1AF-2EB7D49907BA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{03D4F3DE-B8AC-4247-98DA-8749EA8B1E23}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{03F32C40-0023-487E-972A-F10260DE9A3B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{043E1E61-BE98-4240-87BF-EB9C6D2470FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{045C39B4-B6F6-473E-8E29-784F4BE9F8BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{04C9069F-73F1-4885-837D-B66C142C699E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{050EB26A-1A72-4CAE-B243-4BF964CACDF4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{05B57C72-C1CA-4AB2-8F04-DA3849BAB1A7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{05B92E02-8DF5-4CD4-9C30-C1F21C5A05BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{05CF828D-751B-4B9D-9EDE-1BCCF3FF1471}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{06574DA7-2B34-495A-8323-2B260DB2D5B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0700895A-2C59-4D32-BF25-F9E388621EB8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0712BE3F-BFEC-4E5B-938D-47F080E9D11A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{07134A1F-AFDC-440F-B320-09D4AF6F7F0E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{074C87C5-829B-4E9F-820D-F611BE06EA4E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{077E1D2A-EDF3-4361-B404-65F5CBF46CBA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{07B274BB-D64B-491C-BB17-068F42DA347B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{07D2A8A7-EEB6-45BA-B757-76F2DD5BEDA5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{081DF94F-EF02-4EE6-8616-16EF71D4AE4E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{08476A6E-5881-4FBF-A20F-20D1BBE01853}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0869CCE1-ABAE-4E7B-BDA6-A99FCAFE40BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{08709585-C931-4EC1-8BD6-ED9759123F03}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0876488C-0CF6-4ECA-9EE6-F9FED24E383C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0880FA39-1188-472E-B371-2D5C90CA6FAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{08E9F238-108A-4A98-A49B-40573C587A75}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{090CEAD5-1AD9-4E7C-9B4A-00110611ABEF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09685B28-9683-41FF-A23B-385CA68C79CA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{096A0A85-0384-4204-AFDD-9C2992B440BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09815E85-18A4-4F4E-B244-544C05266232}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09C0AC7F-6D4A-4AF5-ABFD-386FFF472BEE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09C45133-02F2-4CB6-B0FA-3EA5449671F0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09E39E29-58DB-4456-A58D-CBED310FE67D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{09EAD8A4-EC99-412C-B993-FF8517A45C73}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0A16DD3C-131E-405F-A9AA-05A0B785563D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0A3D2D7F-9022-402F-816D-302767CE18B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0A671497-4BDF-442C-8100-84C3C13DB860}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0A6FCFCE-707A-4F7B-B8D1-26F13FFEE4FC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0AA06B90-7809-413B-9431-EA26F1B949B7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0ABCC25E-D686-4EBA-AB95-2BA9A634F208}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0B59420B-8E14-445A-8158-5548F82B1F68}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0B5D92F5-5FC6-4907-A3DA-3C794381951A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0B7AD56B-FF70-44C6-82C2-42F4E4823B86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0B7BD934-E5FA-4005-9744-DE002FDF5190}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0B7F9EE3-9328-43C6-9F5F-21BD1C83FF69}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0BAB3788-B742-4E46-97D2-00F0DD7898A4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0BDBC17B-DA7E-49E3-B243-B74705AF71F7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0BF82470-BC18-4B68-BC42-CD990B534ADC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0C0E7BD6-84AA-4FB7-BFD0-3EB90849576E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0C85D149-01AD-4EFC-AD60-222043AB34B5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0CC4CA94-D4A5-44DF-B098-F8254FB76AD5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0D06606B-D069-4931-9507-4CA99F8A55BA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0D2008D0-0409-4834-80C5-D674EA0FF283}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0D36A81E-EBDD-4C92-BC95-889521A44903}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0D78869D-26B1-4B3D-97AA-B3924C125566}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0DA6075F-1ECC-4856-87B7-EE74E4EF1A77}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0DBE800C-0611-4B98-A537-903EF6A9CD8D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0DD97246-8766-464C-A031-C3DB92F06871}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0E4A2E3F-C510-4918-B0ED-595EFD4576AE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0E793EE8-59C4-4890-A6F8-D92243D39D3B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0E7D9069-1724-4DB5-AEE9-DC8DE0B0C3CA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0EC27168-CA21-433F-B61E-EF37328B40C3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0ED7B8C9-73C4-4813-B83B-20449252A2C3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0F0ADD3F-DFDA-4F43-A3A4-3E0AE64D777A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0F16BFAA-70CE-47AC-A63E-4475C34FAB5B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0F173E4D-001F-4515-A6BD-118B299F6FA8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0F29F18C-4B66-4847-8A75-C023BBF2CA5F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0F6632B6-517B-4D9C-A676-D4475E03766E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0FB89C11-3266-4AEC-B635-60FADE00675E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{0FD64D35-D559-4B4B-93ED-E8DDEB446944}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{10014B7F-57D2-4A36-886B-3E0EDBD56167}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{104E4047-644A-44DC-8342-71540CB6D96F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{10BE4F7C-B8D1-4700-BA50-5C21C04346E8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1109FF79-EC13-41C1-A5CC-5095E8D3B851}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{110CAB44-DE73-41EC-87D9-107143BAF7A4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{11435A3E-4743-4EB3-BC05-D23D070F545B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1178B639-1050-40D2-9BE5-9F2B64F24B10}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{11A022D6-5B04-4500-851E-6EEB16778270}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{11BE2CAE-D95D-4B19-9EDD-CFFE87F43B14}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{11EE8CBB-F950-4BF3-BAE2-C410423719FB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{11F30338-A707-45F6-B6E7-9770DC8213CA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1236B0AC-D4A1-4046-AD04-9C43D14753D4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1245CC6F-7D95-4232-9175-889DE529E52C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{12B6DCF1-94F5-4A99-B540-C01BBD0D69DB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{12E0C3BD-05F1-45C6-9A3E-8AF71AA46E78}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{134CE4B6-613F-48A5-A2E3-2E612F05214E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{13695248-50B4-4514-BBD5-8C35180C29D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{138D83E7-C217-4C12-A315-5F7EE498FB69}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{13D78B74-16E5-4F63-8371-08C128B19CCF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{13DDBF96-0697-4661-8F2B-5B682CBFB763}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{14259DA4-DEB4-44E3-8B89-74E8158F4AE2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{144AC059-9E1F-4D3D-A724-887081AAAA6B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{144DF00D-12C2-4FAE-B9E6-5AF7B00A6357}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{14760DC2-C919-4FE2-815B-9A76851DF383}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{14A396B5-7C8F-406F-92FF-701CBB244474}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{14F0B213-517E-4B63-8E7B-BE2270620D8F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{151764C0-2269-4BF0-8C15-EBB10996E055}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1537C68F-031E-4236-B777-CE599E1F9966}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15612605-D0E3-4A1D-9E97-5D56B052B762}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15918100-3458-4366-8620-1D85ABD21D9F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{159B7F08-5B25-4DA6-BFC8-EB1E7735E44B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15B28EAE-D247-45D7-ACEA-B46B38A4DB5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15BC5468-8EDA-4611-9327-7F802D1EB09B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15D2F5C2-AF53-4853-823A-4F37DD9CEA5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15DDBAB8-4DB6-4671-8495-B271B089A3BF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{15F7A6F6-90F1-46DB-9CFF-4C79D3900921}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{169D3675-2C32-4F1E-9E69-F245230A7239}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1708D079-1FEC-4F36-A402-AF65AA8381F7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{170D77E6-9845-4DED-A413-292C808F1CFB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{173EB7C2-CBE1-41EB-AC65-76DD892B8A42}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{17669A89-2EDC-4D17-AFED-D74FB6A46D9E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{178A1079-178F-468D-A151-D2DB76A15A11}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{17CDFA04-0CF7-409B-83DA-A71A66909A62}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{17E2C5A5-6F7B-4D73-989F-4CC807BD0419}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{181397DC-C0A8-4AE4-A3C2-F49151E00CDC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{187ADDE7-3790-4161-96A9-E5014AE0A217}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{18C7DF2B-94E4-4F05-9A28-A5333745EBC4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{18CB04A2-368A-480B-96DD-144C7A242437}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{18FA0715-C93E-442D-898E-CB11E0A00A18}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1964064C-166D-419C-87B3-C5CF0423159F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{19AEE821-8C73-491E-AF32-8091B5ABBD4F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1A1315BF-E208-41DD-91F9-BA76D66F31BF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1A62A8A1-90DA-4966-A6E9-50E82D23DFD8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1A6D6B37-E7A6-4F4E-BB78-F83ABF40CA4D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1AD2EAF8-4070-4260-B359-89D2832A5717}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1AF68A7A-DD01-477F-88CB-0E171BB66C42}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1B25C98F-8F57-415B-A543-F32EB8496644}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1B3701B2-DA61-4103-958D-E142FD37012F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1B616B9A-01B1-4DC5-9601-D20FC6B2B691}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1BDDEEE4-8A2E-4387-A41E-DF82AD65F4FB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1BEB57D7-8BB9-44AD-86DE-28BEE304D7A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1D0AB20C-F0B3-4A8E-874D-D73CDC66CAB8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1D1764FE-8156-4FCD-9BBC-305228A124E7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1D9FEDD5-AD1C-467B-A758-1B84A5CD5C93}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1DC5F4BE-C64D-41F4-80CD-D2A3B879C0E2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1DDF9B38-2700-49F6-AC3F-036B5350AC6B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1DDFD4B3-5C9B-42D8-BF0A-82BAB1CB83EA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1E7E14C5-F871-4FB1-9DAA-2CB62096F9A7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1E83B661-BA47-45AE-85EC-A05BB8FC8CE6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1E8DD618-3779-4C87-BAD1-9DAE48445F45}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1E959511-1A46-4E02-B506-CDDF712455E2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1EC20292-90BE-47FF-AF3C-40AFBEBA5B4D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1F2246E1-9348-4A38-94E8-59F6F87A9E1D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1F913051-3BCD-41D5-A8C1-B12361A4D87C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1FCAFEDC-C965-482E-AEFE-20EF2587B62B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1FE9A3B4-B57A-4251-BAD2-DBE5C5C08853}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{1FEBA25F-B4DF-4C73-AAD9-DAC7A6D01F73}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{200C2BB8-134C-452D-845F-4CF1D5A05C8A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2020E0B7-C876-4171-9361-6BB311D151D2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{20DD78A9-E6D9-4702-9EC6-E87579E50251}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{21009FB0-2CBA-49AB-AF68-37FC004484D0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{214EAD12-CD14-43B9-8217-3C10FCA612C4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{216A7AB1-F569-4538-9AA3-5D5B91898292}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{21BDE01D-0F31-49A8-8821-2CF1B55774CE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2230D3D5-CA69-4A5D-A88C-AA308E673BFC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2298CEB8-E371-4962-A391-4D610C6554E0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{22AB936C-CBA7-41C0-A4A0-8A9DDDB75558}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{22BC1DB1-BC1B-4DEC-ABD9-8D68C5E26C98}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{22C69510-47CF-4073-9FD8-F060D3D87101}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{22F12B32-C136-488B-91C4-D610323A8D53}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{235BC0E5-7433-4D84-9822-401B346668A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{237115BC-4084-4C5A-B294-7FF534436365}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{23B42E92-2525-422C-949A-DC01AFB589BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2431092B-2541-46CD-A437-DB3A3B6FE6FB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{24477246-9475-4658-8595-D33A62A0A0A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{24DE0456-706E-4D6F-8EA3-8BF9D97D43CD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{24E75768-CEC2-4213-8580-1DC332D6072D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2507F7CF-63F2-47BD-AD18-8C57185C5736}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2540E889-3897-4418-A4A8-43879040A1F0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2553A0CA-530E-48F8-BC7C-201C2A180CF1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{255881C6-1D0A-4CCD-891F-87C78BFC9536}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{25740534-A0F5-49B5-9891-BD8B90AC583A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{257701A1-F605-4B1F-9414-7938EC0D9F60}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{257F1837-DC42-490A-A162-7FD91DEDC80D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{25A0B245-145A-45CD-9E89-C82E183145FA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{25F4FC49-D121-4B25-A982-067449CBC9D2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{25FB0BBE-7194-4C1C-8157-46AFDF6F9DC7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2659457A-6A43-4794-AC97-11DBC37B80CD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{26790267-C0E6-44E5-ABD1-48A5B4853BAB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{26A56318-77D7-47D6-8EA5-64C3F7BD6615}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{26D614C0-1678-4F29-9F1D-6F847B2EB641}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{26F262F5-EC26-4A12-8019-124996C085B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27025771-32F1-487F-9639-BCDBC9D47994}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{270E07A8-A600-4F3D-AAF3-68B8B2A42269}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27163FE9-FE17-47F5-9065-AD8C26ADA5BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2758F8CD-0C74-411A-A0EA-A79191E741ED}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2771D82E-0090-463B-B4F6-11E89208ADCE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{278C7ABA-1F27-4D82-BAF4-B55EE41EA8F2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27D589D1-B8A3-422E-AB1D-7F15C6A9132B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27D6C316-6FA5-4030-A57C-53F85B04D923}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27D73A49-AA54-4B9F-88A1-FD27E3E175CA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27DE1BE2-06BD-4C39-A76D-8B12F285EB97}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{27E876CC-87A7-475B-A176-357347F49261}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{28207A77-ADC8-43B4-8CC4-26A8D07A2884}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{282AC3FA-2E10-4C30-9772-3F5B96931A5D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{28731E4B-1C37-4702-9B84-25570B86B9B7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2886F008-E2B4-410B-88E0-FC8922873EAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2960673E-A6D2-41DF-9C92-2388E66E1D2D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{296FB035-5F0E-4F18-8B4B-A9F7B9B421F2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2982DDED-0613-402F-A137-38A84E08F94D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{29A9B488-8560-44AD-AD96-4B148AAF2134}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{29B1D979-87C1-414E-82F7-DA53A11AA943}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{29B8BEA1-C877-4C0F-BDDF-774F65097C85}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{29DB705A-FA76-43B2-9893-1AFCC510C47A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{29DD7120-C535-4C5B-91C9-E21BAABCB3C2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2A7252B7-AFCE-4A6A-8546-6CE826118DA7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2A837F4D-B1C1-4742-B23F-670A0E349BE7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2ABE1BD8-1A53-42A1-9605-116AB141A975}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2AC84986-B213-472E-B775-A3A0B7232B37}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2AF8D032-BD65-441B-B965-349EC17CB61F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2AF90180-D59B-46F7-ACE9-B1CB3818D015}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2B30755B-0DF5-450D-A96F-9828E2E4F1CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2B555818-2203-40E6-AAD3-3AF04CA8655E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2B7398B1-4CD5-4879-A02D-E52B86C14500}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2B77822E-58C4-45B7-B6C3-C4E6F9D6B454}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2B84279A-C389-4C9D-93CE-9DE901DA92E1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2BC3469E-5326-4B65-8577-24331F5917D2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2BE49B14-DD87-46F0-AEE8-C847759FDCCB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2C57C0AA-A152-4E83-9DB5-0FE14DC59217}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2C7D551A-5EDB-445F-874D-B16D8E4EE816}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2C8D860D-4240-4BEF-BE68-FE7E5187CA22}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2C9C71D3-7A9B-45D1-9697-316EC2C321A6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2C9E0A45-8766-47DE-8124-7E88A1233BD0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2CE7F81A-8242-41ED-8EF6-75185610146C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2D1FAB30-0260-48E6-BF2F-44A3CB1FB9FB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2D6A210F-F253-4509-8F93-183B063107E5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2DB2C1B6-6F37-4511-9C33-4279C53AC21E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2DE0B32C-C2D3-4142-84D4-34379FA1F346}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2E040681-305D-49AA-8AF8-6966F5A95077}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2E59342D-9057-45BC-99BB-956743516CAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2E5F5620-32DD-4881-A6BC-4FB0BF8E6858}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2E77190E-1F16-4E53-8B19-C62A07159607}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2F74244E-9482-4447-A18D-D8695D98CECF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2F7E2A81-F915-4F02-89A4-E9BDD494A333}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2F89FA31-4F16-45CB-A836-0D9E41D2540D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{2FE11EA4-4C72-460D-A84C-56F44E988F86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{300D402D-35DC-457C-AC98-48A8FB66B6D1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30297873-0494-47E5-B795-5DDF02569760}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30700547-77F9-4E1D-8A38-19F4FB1994B6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3080CCDD-14A8-4687-A428-BD0A336BB3FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30B2A5B3-F7A0-4AA4-8D1A-1C6CAECC50E6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30B800C6-F640-4501-888D-7630DA09C943}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30E02B98-105D-40BE-9AFF-A1D299181B26}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30EF2900-8086-4EDB-98DA-30BEA9AD28C2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{30F59D8C-98A8-4989-A6E4-7736D2EB3DE8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{31026C1A-F075-48FD-8EE3-49AAA0D665A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{318441DF-FD1D-4A40-ADB7-C7C7453A4AD0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{31BF3C43-23CD-478F-9DE2-2616897412C6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{31FF9EBA-A1A3-44E1-9E2E-15B7C6BCEB62}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{321EFD0F-EF7F-471E-8FA6-8AF7B888742D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{322B945D-B8B6-4CB2-855E-4C49D3E02DE9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{32BD2F2E-F536-41D7-ADE1-D8EC9637E320}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{32CDDA97-9918-4546-87B5-7AE69D727EFE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{32E15324-B4C7-4348-A395-32BE9A0A906A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3329C618-D98D-4542-8AA6-98BCB89BEBDA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3377291F-8010-41F0-BA71-A8ADDE03A423}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{33A72986-44FB-426A-9179-D45315715DF8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{33B2887F-A9B7-4436-BDC1-5A173FC9CD86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{33D4C506-6433-49A2-9825-F2EAA7DAFD67}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{340B193A-3660-40AE-9481-49CFD9E89EF9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3412C260-5A58-47CE-95C2-66DD6F01D7B8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3424E98F-5C6A-4C34-8E01-171EC4FFA2B1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{346447E4-E5C4-45C1-A291-5F09C38696DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3491362F-11E4-47DC-B4FD-2FC1ABB1177B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34A7462C-7E76-4487-B1CC-24C1F01E6509}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34ADDBCA-F67B-4C5C-A566-9B41DA896372}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34D9D619-B9B3-4197-8293-99D51F0D9CEF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34DE2A59-C88B-48B9-B6EA-9A7D77B962A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34E63ACB-849A-4DDD-858E-70E86FB61358}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{34F059AC-ACA5-4415-8FAE-46EC1FD3E5BD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3530E23A-B9AA-46A5-BD6F-C2E8536DCDBC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{359A5A2F-5D15-4B1A-AD89-5E043EC85D51}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{35BB4B6E-1348-4D2B-B3B9-3E353524DB28}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{35D420EB-E3C6-4E85-939D-33EEC8CE0451}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{35DB0061-60E9-4AA1-AA3D-9A4075B51216}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3629CFAB-88FF-4D3B-83AD-B28B26E569EE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{365C6EAF-CF18-48DF-A9F3-D393B667CFFD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{365FF97F-3822-468C-AB44-1AF8EBBB78BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{367497C2-45B4-4145-A64E-3BD6ACE2AA79}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{36A73DA5-651A-48FC-932B-F199EFC2345A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{36A7D912-F928-46EB-9B3C-C9716F91E8BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{36AC3186-9041-44D0-A969-1EAD0D023700}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{37076091-8561-4AF2-BDC5-4C1CEF2902B1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3725C8A5-0153-4684-9B60-FE45A6F6376D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3777F214-C4A8-4C70-92EE-C16642410316}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{37860C1D-D84D-4A66-A0B4-EC2888842CEC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{37BC4ABD-A2EB-40FF-AE81-354F7CE3F128}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{37F7088B-DC3F-4CBC-90EE-88592C83AC8F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{381E68B6-982D-4BA2-86CE-FF2C5C02F26B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3858CEF6-8E3E-48EC-BD60-25DD94C4126C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{385D560E-8433-44C5-A598-58A56DB445F6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{386AD270-01E8-45AC-9E2C-3CB3389F1C08}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{386C9369-54C7-4D2A-9D33-99AFD940FF84}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3889B6BF-EFCC-40AD-B3E9-43711502CD43}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{38967FDB-BFD1-4E18-A978-0A7F9748AFCD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{38EC6042-3D7B-44E5-8523-EFD37532EF1C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{391AF103-D039-495F-8C8C-D4098DAA2A5F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3923AB03-2E7C-46C3-BDD5-B6DDB3F2662F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3949BD18-B52B-485E-B44E-285706A35A6A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{39536619-D826-4F0F-B651-20C8F885A9A1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{39AFDF24-227A-4387-A3AB-9CFE10C2E39E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3A24243A-5212-4229-A745-0949F721A221}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3A98BB0A-A43C-4D5A-8C8F-D85AA849372C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3AB1A52B-6482-4C5F-B579-2FF80B1DC6CA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3AEDE6D9-0556-4927-8B2C-6B31E570A4D0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3B0708B2-08FF-4CE8-BE0F-2B092776553F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3B2F3103-A3B8-462B-86DC-D9CA2B26ED5F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3B3106F1-E7DA-4DD3-B658-7E226209E355}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3B46B012-6386-45A9-90B0-AF7D953501A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3BA204F1-BAE5-478B-BF7C-F2612D82625E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3BAEE862-768A-4124-B33B-40639B719A7A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3BB1BAB0-C7D4-4007-A4FA-F6EF344C2A86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3C5AC937-C57E-45EC-99F0-24FBDA84D1D2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3CB44C8A-3821-4A93-BB88-36C922DE3A0F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3CCD8DE2-EC78-4C51-AC92-731871AC7702}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3CD1DC8C-1311-43A2-BD22-705B26F4EAFA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3D057A62-6885-490A-8CF4-601E01FBF88F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3D41E7D3-4F3B-40A8-9A17-78BAB17031BA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3D7F39FE-00FE-4659-B806-8B7506348905}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3D87355D-AF5A-46CB-B24D-CAEE7F6D974C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3DA4D7E6-8829-4812-ADCC-31E484E0488C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3DE3E69D-DE3C-4B59-94C8-06293211DDFC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3DFCBF66-DF27-43A5-910E-77740034056D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3E3ECE7C-C361-448D-9B82-8116BC8D2BD4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3E6E9A8E-0ABB-44C4-854A-B2773C382F6D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3EAB2EC8-20C7-4750-9CFC-93E6ABC9D0BD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3ED01F5D-7E09-44DE-8ADF-7FD76F9EBA87}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{3FB60723-634C-47BB-A93B-E442E7255BDC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4003B9F9-B2E3-46BA-8109-8E87FA5E93A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{408796E9-8224-482B-B79D-F97AAF8B5B24}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{40E80A0D-A5E6-4C9B-98B4-B1823D0BF732}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{41061AA5-1471-4C26-81ED-47EDD97D6069}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{416142ED-B204-4D7F-97C0-048A6A2DDA6B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{41737A9A-32C7-4D5A-A820-644FEE9EF88C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{41D25028-42F8-4EAF-8778-8EB00A010F57}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4278B659-DABB-48F3-9568-CA7FB6552D37}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4290D3C9-7E5A-4D6D-89FE-5DAB1E5A22C3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{42FB70CD-7942-4A95-80B9-5925679C231C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{431BF616-4E9C-4A28-8DE2-706D6A198FB7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{434BF321-2C32-414E-82ED-38D24FCEEB16}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{43691891-DCA6-4CCF-B6DA-51911F7E2C73}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{43AB3DD3-CCFB-4FB1-8B37-06DF0C8867E1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{43FCC237-B9C9-44AF-9274-0A473AC1564F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{44018942-8743-42E4-8E29-B80AC57E77CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{443E4500-CBA6-4F04-8B30-395C7BEDC478}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4483769C-D35E-4FDE-8AC6-6537566ECA98}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{448918B5-2514-4D8F-BCE0-6806695ED4AE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4491B791-15D9-4C84-AD64-477D902555D7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{449A39FC-96DF-4D85-ABBE-93A2DAF0EE92}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{44BDA705-B03B-4E7E-9956-CAF46BFA9721}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{44BE3481-997C-4677-852E-9290F528F9EB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4510D85A-3F4A-404B-B103-230AD2507398}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{45409DDC-CD11-4ADC-B134-EE07742C9697}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{45530CAD-FA81-4BA9-9972-1ED15D74CAC5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{455AA3C3-AB29-4875-B8D5-17BA49C2EE5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{45B89580-B4CE-4C70-8D96-1EAD64E01CF2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{46142547-1FB9-4C3C-9C23-0C1F42372457}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{46B0F494-0CA4-45E9-86BC-187692E22F44}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{46E52BA8-210B-4422-B956-3AF963F1AA5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4703EE41-E40A-4685-90B4-CE253BCC0592}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{471B2155-FFDA-4F17-9253-FD22AB10FE13}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{472B700F-1513-4DDA-A360-83AB5C2295FA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{47465348-350E-4174-BF7D-D1C65D036002}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{47656FC8-07B3-4121-8A3E-28FF7E651344}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{47D5AFFB-63B6-45DB-8A7B-F4C10FC59AFB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{48381894-2FC6-4E67-A5CA-1B317FB96753}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{48C4C084-323B-4216-BC2A-5B956B799EF1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{48C96904-A719-46C3-AD40-AEA35BFB7493}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{49082163-005E-4A5F-B58D-980BD517CF5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4919C344-A654-408A-99F9-31B414B4B2DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4933AA62-76AE-48CA-8019-7BA28688A497}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4940C07C-03D0-47A4-BE8A-F08907CF4EF3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{495C6169-B74B-4CAE-B64D-9CFF9D335AC7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{498D94C7-2D04-4175-8658-FD5AB828EEBD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4993087A-BE3D-40FF-BB35-3DE9BF50FFEB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{49DA06EF-3CA0-4081-AB86-267BBADBFE12}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4A031BD1-7545-463E-BA18-BF36D3002DF8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4A5CC469-DA63-45FD-969D-8CF70FB2FBD9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4A8B48E1-EF7F-41AB-8558-E8F681A81DFA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4A99AB4A-A2A4-4B58-8C3B-C7F53F2CEC19}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4AC74141-20C5-40FA-AB59-D88D1A8BA4FE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4B1AB405-17EA-4231-8BDD-58379F8A31E0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4B232271-90BF-4E30-9302-877FA6780535}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4B9B5857-5D6B-4701-A946-71BA0F849188}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4BF66666-F5BF-4BA3-B5E3-641839F342B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4C99F49E-E4F8-431B-B600-97B697CFE975}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4C9D3FE5-04C1-4BEC-9CD1-6D0BF862B233}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4CA8F2C9-93E1-4FC9-AD6B-6F5F340D3919}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4CB5947E-EE31-4A5B-999B-3E54DFFF9078}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4D5AB5A5-4DA9-4757-BF9F-D54DBBBDA0E5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4D84C726-A527-4DA9-BAFD-374BB78A6586}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4DBADB07-61F1-4B57-A324-CB5D47316BD2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4DF04347-13D2-4A2E-94E7-873E585F5AB5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4E43D402-AFA3-4D13-A808-A2556FF02895}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4E805664-315B-4F4C-A6F4-9678EF70AFA7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4EA9D321-BDF6-42FB-A532-7D0D90009335}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4F1A88BE-FFC0-4158-9D6D-D44BEA15CFFA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4F6D8210-F3D5-4CC1-AC4F-E01C07FFB97F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4F9C0210-5D3A-4687-9BE3-01FCB9D06831}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4FD00D3C-F228-4F96-BF77-B5E9CFC1AEAC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4FD01333-9499-46C1-879E-B16486B57EBC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{4FEC8083-2E66-4FEA-A51F-66523997740D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5054B2B0-8EC4-4BE1-B433-BC63409EDC10}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{508201E5-ADF2-4778-9FE0-DE2379C5C79E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5092CC69-A865-4DEA-AEF0-73809AD3D1F4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{50D59CB2-E92E-4191-9E52-7CA9FB4B8F87}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{50F31229-FCCB-4A37-8E80-6838937854B5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{50FADCB8-CD45-4FB1-901A-292D856E6546}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{51314555-D2E0-48E3-8F9D-9B567E1BEB47}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{51EA0B4C-0D91-43A4-BBCC-D32838565B73}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{524C5CCB-567E-4043-B16D-5B93741CA4F6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{52C15126-B334-488F-BA83-0CD10568F902}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{52CBDCE4-E330-402E-8665-B64DCC56BDEF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{52DA63F8-777D-4B49-BA76-99CC6C02AB16}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{530F6BE1-85EB-4F1D-BB63-3A3D89B8A3CD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{532D6D0E-BE6E-42DB-87C9-B6B12A1BC6B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{539CEDD3-FB87-4C99-857A-648A5B370F82}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{53B47A66-5E7D-4409-987E-EEE4E8804B48}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{545E85B3-3228-4264-9369-D6F572F3D663}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{54802DC3-82D4-4D22-8CD7-32F7E36761E2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{54AB938B-869E-454C-B50C-C79FC70ED070}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{55269F63-EB59-47F3-BECA-F5FB14574F88}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5536961B-89DB-43A6-8C50-D7A08EC41E3C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{554FD50C-A639-485F-8D2B-B6D9F5300B92}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{555F14AE-CEDD-41A0-A99F-D891F5A661F6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5562838D-8B83-4A66-B818-775DD25A5C91}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5571658A-9225-49C3-8831-527108A5218B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{55807B6E-31C2-42E2-B148-BF113DA8030F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{567900CB-D139-4C27-90E7-7C88206AA70B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{56A8A094-7A54-4C10-A895-7D6092391B45}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{56D534C0-2E7B-40DF-AC6D-475DAC68947C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{575416F2-8D9C-470B-BA5E-54921E43DE03}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5769410D-50F0-4B2F-9EE8-45A88D4F5C4A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{57811824-EA55-4BD2-8EA4-B0F5113E98A0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{578A8566-4234-4D1C-AD6B-49D0FA03D559}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{57B0C94E-E34C-48E6-B02F-536896887B86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{57B35846-51E6-4FEE-9E3A-810C07AC4E37}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5893FB3B-4601-4290-86A0-6A958ABEC16E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5896B7D3-99D8-4037-9BD2-B6496CDC5541}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{58BA7648-5B50-452C-BFCA-196AF02A6FE2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5907F6D3-5F8F-4511-AF9A-33F6FB6DDAA8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{59C7101A-0019-4D1B-88C2-57E2172A28CC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5A010B84-F402-4F33-846D-05D50A889B07}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5A94F200-4B4A-4086-9B2F-7B13D53C2D66}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5AFA1A25-D284-4E8F-8D10-558652BAFE34}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5B098245-D376-4EB6-9B23-5854336A3452}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5B3B6E26-34BC-48C5-9187-792699BBAF71}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5B4CBC5D-C2CD-4002-BC09-4911BD6F2E31}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5B5CAA2F-F6ED-499B-B832-74CDF8F4D981}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5BD491C9-A4A7-4D59-B9EA-2F1A3D5F1542}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5BDC2732-8DD2-4E77-B7F9-A29BB1E21778}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5C173813-0C4F-431A-B7E6-2C8252E46DD2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5C7198A6-B582-4C8E-9FA6-32B919F69731}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5C7C507B-1474-4548-A429-3E390B9F4DBF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5CF9DA69-6DB3-413F-AC15-4AA3175672D6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D040542-F78E-4B41-B080-1BB10A1496EB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D055FA7-F9D9-4175-84A1-4D0957B66A83}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D332413-F283-448C-987B-E9449D0A67FD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D5A92AA-946B-479B-A5D9-A278C366352F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D6D6C08-CC09-47F1-BA61-52F18BF22619}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5D757C0B-0DBA-40C8-9051-1E9E5A4BCE3C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5DD40AD0-74F8-48F6-923F-0F44B7769726}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5DFD67EE-6093-4FAE-8225-80DA16018A8F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5E11486A-2E42-41B5-9C1B-F03F070F1700}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5E479E3D-DDE1-48F6-9B20-42DE2308D786}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5EB0D724-34DC-4389-B33C-0EAEE67A2EC9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5F07BCC4-B7A0-4914-8C94-FEF76B6F27BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5F657A90-CDAC-4F74-A7C1-67789E1225F3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5F8DEFEF-52DB-4902-A9E4-768F95C8A35B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5F976905-5D3B-469B-8D60-EA8DF94ADC08}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{5F994CD1-A312-44D8-88F1-2906E6A440DB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{603C9EAC-8BB2-4B7B-B0A9-E2EA9A0806BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6047B36F-8422-4C86-90E6-6588C2F80BBD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6048CBB5-E094-4ECD-9A37-0424AC9B0C71}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6091E606-BBCE-42EF-AFA3-07DDBC0DB606}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{60B537FF-3AB5-46A5-9397-3F6DB771D386}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{60DC92DF-38B6-4C19-9E60-101149C3D130}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6104C0A6-52FD-45F8-8651-D02365226E1B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{61118666-19BC-440C-8753-D2ACEF098B05}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{611AECC8-6489-4B1E-874F-CADF5306302A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{611FC263-F3BE-4F69-87A5-3A4749DA3BCA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{61BBAEAA-71B1-4AF8-8680-3DDCCAFE57F6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{624A4EDB-ACAC-4318-ABAE-5563EBA6A7C0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{624C1EBD-3674-4A54-BFE2-E9E8622D01DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{62597A84-5FA0-4448-839B-1F15D77259CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{625E713E-55C8-4877-BC3B-7D02736E5FE7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6266584C-74BB-487D-92FB-77A911383D89}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6273B172-835D-4792-A765-F55E54130838}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{62858C5D-07FB-4E0A-BD27-F75AF00A3636}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{62C4EC2F-0D1B-4198-A0AF-3C7E587622FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{62EA124F-0F92-45C1-8CD2-B292FE194FFB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{63CE439C-5D20-4B1F-A4DC-D699D4DC24C1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{645113CC-21AB-458D-BB92-EA3F9D25A231}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{64733FE7-4BB3-499B-A483-023EDA7DD7AF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{650C0ACD-A876-4D86-84CF-A6E7BC8E5356}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{650D40BA-C205-4EE2-AA59-D77A20CF1E50}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6528D628-947A-45B7-BD31-DF4BB3E1DD13}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6582C0FF-E657-4006-8665-9ED72DF716A8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6597FD5A-3D47-4C6F-97AA-939B3D58C1E4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{65FC3B00-9B5B-44F2-995D-E7AE3C43D7FA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{662C99B4-0B99-4629-BC84-4997A5DD7818}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{665A2D0C-50FA-4CC5-9ABE-8896E1C7D660}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{665D43DD-F5D9-4E03-9151-592B325BB760}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{666BE412-E537-4A8B-9926-F04F2470B5B5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{66C0D0DD-7D23-4FCB-BE26-232A6F816C50}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{671A8F76-2ED1-49CB-80FF-A15992F93D21}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{672690B4-3213-474C-AD9E-BD338ACCC4E7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6793E79F-FD5B-4BD3-98AA-1B181034103C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{67E18EA1-E179-4892-8550-A64E37BCAF27}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6829D226-2013-4805-9EA9-251570B274A7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{68507B79-C6AA-4D77-946C-4339089AA172}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{68DF2745-1564-4C88-B8F7-EE3856E240FE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{69A3C308-1EE4-4D48-BDA7-A586FA6E01CE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{69C29D04-FB6E-491E-820A-6732A45CBA5A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{69E95A36-8CC0-4712-8B28-0E76A8877B80}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6A0772C0-5479-450E-A39D-228F8893EAD2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6A86BF41-BB34-4C39-A094-FD0DF455DA8A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6A937C3A-3D39-4457-B7CF-B244491F6B31}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6A995FF3-1F8A-4CB5-9720-2DB3639920D3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6B36E064-ED03-463B-B5DE-B3066C21FFC3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6BB03C45-C11C-4FFA-B36A-E1E40E1E50CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6BBB0AD7-2AEB-4905-BD81-895978048C7F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6BF3CC4D-EC8C-4282-BCE1-6484A6037997}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6C49A066-098F-4D3F-9F61-FB5CCDB6EC83}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6CA90BBF-55DD-4E7C-B598-5ED6AC4C8010}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6D2C0F75-E61A-42AF-B4EC-472E9DE52125}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6D52AF7D-3904-4869-9F9A-CB86F7408A5E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6DACB7B7-82CE-40BF-998B-5C5A0AB7D47B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6DB6BA20-6E49-4621-9D8F-65B4BD4053ED}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6DD6D811-9A88-4CC8-98FC-EF47C0DB140E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6E3DA57C-4535-498C-B5E3-1697148B0CF2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6E901620-9E6D-41D3-98F6-26DBFF96522A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6E9CEC36-1E3A-4736-81FE-A099127D26A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6E9D4C0B-40D8-45D0-A5FE-28E5284AF548}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6EB61FEE-FF2E-425F-8F63-9890757DB443}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6F554268-FF5B-4EAB-96FA-5D6C82137937}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6F64CB9C-F841-4094-87D7-E120EE7CBBFF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{6FD447FD-9739-49A1-9B2A-502D5F2A1A1A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{700DF39C-06F9-42D4-8C44-767B2EEFB12E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{70746B3C-158A-4FC0-9553-61E30F803BDC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7096EC8F-AE41-497A-9E0B-2F943CA84908}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{710F7E32-DD54-47AF-948D-21D56610FEB1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{711C7C1A-8961-412A-AEC7-83171509A690}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{718BECAD-DD07-4647-8234-76685C6B54AD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{718C128C-00FF-4462-AB9B-62DC9E9CB306}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{718D2515-472F-4343-A643-D24AB229DFDB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{71EC5563-25BE-4976-87A6-C5DC8A733B11}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7290B467-8B9F-412B-8686-21BB44A7A772}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{72ABC841-330E-4488-909C-92D7A069B0F9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{72F91FDE-1F3A-435E-8D9D-F4DC2182242C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7313B9B3-1D32-46AA-A92C-788635B71387}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{73148468-5B09-4BEB-A269-3B03CDF3E498}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{737E392A-7BE5-4784-BD92-5D08C09F03D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{737F6B42-627F-4BE3-92D5-5A1C9997B01F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{73DA056C-16ED-4B18-B5EB-DDA33B1BE87C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{73F6B060-0A5C-4AD4-970B-FA28BF432331}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{742369B0-A242-44A3-AC27-43A7ECC9612F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{744C7F19-6917-4487-9B84-CEECC8958A8B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7455FCD0-5897-4316-8270-75A23B445D87}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7498E472-B32C-4D89-B803-83F89B8463C6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{74A04BF8-63B2-42E5-8F05-7C1B75A93CA8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{74CE543E-C7DF-4E7F-AD58-6271AF07B1BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{74DECB3A-6248-43F0-B29B-FF33E56C5C52}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{74EED28A-846E-4981-B259-C57AA65A4B43}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7537A1C3-8464-418D-B25D-E8BBC7E99198}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7561FA56-2A53-4B88-B88F-632A43D88E56}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{75AEBA87-027A-43D0-8554-8C698E554C02}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{75CDE6A3-CEE7-4A0F-A540-DA3D9B75C7F8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{75DC3F91-D267-4443-B873-6C59DE6C770D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{75F0D6E0-5095-44F8-9F8C-E32FA85E5CBF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7616D29C-92A2-4F44-9582-215C48B7EEDC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{762290C1-E70F-4481-BBA0-0E1D69DDBB70}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7685E307-0AA0-466B-8D1E-F02B68972CA1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{76C78D4A-8216-442E-B119-59CCAF940F15}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{770D578A-5E22-48FA-9E50-6C943E7DE90A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{77105E67-AE1A-4AB5-A5D2-3345EBE1808C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{773188E8-3BD8-4271-91C1-4B460EE6A2B6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7738CBF3-4171-452A-8744-C3E47636F586}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{777FFBB1-038E-427C-B2CA-4C7F748DE467}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{778BEB6B-B039-43EE-936D-944652731BBC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7790A973-07FA-4747-96DE-BE6C77FCA685}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{779A049D-6662-4272-8723-21525020F4DD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{77CFDDF1-1624-43B3-9EC2-25C8ABD9D28F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{77DE8E2D-94A4-4DC0-9458-1E6211B1E77E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{77F06A6D-3D04-4D8D-BF90-38A81CB333D4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{780AEA4D-356E-4BE8-8A99-4392C2EBFAB2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7810780D-9E2B-4E5F-8FC5-89A952ADEDAD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7811242E-2675-4718-BB93-87EF162CC196}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7835200A-E4E6-4BD4-82E1-841B0F55D3B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78898168-7F5E-47F9-97F9-B386E70F2DA8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78A0BF97-C405-4DFC-B427-0C4A85E74F78}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78BA49D0-ED2B-4DAE-8817-C81B3BA13107}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78BE9897-0447-4210-941C-1FC205F64985}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78CC8C00-A9AE-4E33-BE82-496DE469E475}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78D426C8-7E13-4F4B-8358-1ABA4AB1CDA3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{78E20312-6B01-4EBA-BC9F-8CFEDB071CFC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7937C840-625A-4048-A435-452CA4B90EF8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{795C3CEE-5A90-49E6-B41D-1E23810E9353}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{79686A6F-A294-4BBF-BD4E-D2502CE67129}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7974F921-739A-4C95-9E93-E4BB350171BB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{79FA89EB-8296-4C71-B390-7BF8873FE787}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7A092A9C-E175-46A9-9F95-B019048FB9DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7A1E91BD-1809-47FE-B1D2-AE8A6D73E5DF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7A3841BD-077C-4542-A42F-6FB1184B2BD8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7ACC6627-BE68-457E-99BD-2E6CF8D8396B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7ADD2640-5862-49A7-A269-BE2B5DDD2324}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7B13AB9A-5AD3-4978-8569-574BA0465855}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7B23D354-7D38-45BC-9257-0C6A4BF2C408}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7B2D64A6-ACB4-4233-A56A-6B9044302227}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7B55C58B-AC46-4F21-9706-CEA52B7EA5F0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7B9F1669-C2BF-49DC-8813-D7371D08D47B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7BD1C9F7-9567-4E75-B463-228561D520C9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7BDA2943-6995-4396-8D26-B36793A58B43}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7C25E21D-6ABC-4782-94E1-24336A2E5C84}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7C6A581C-A4C8-4D06-88FD-019AA858B3E5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7C86107F-7EE6-48A4-B23A-12E0E11B8007}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7D20F3CF-193D-4106-9FCE-9EB7DE3E8A05}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7D7F1D67-7834-43EE-8447-50D03BE869E4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7D8AF6BE-6E3C-45D4-96E3-887D48E14350}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7D968298-638D-4EDE-AF34-06098FA8F69B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7D9DAEA4-CBEA-4BD4-B2E7-02447C770D0A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7DA688EE-FC8A-41FC-89DA-592C59AAD8A6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7E1BC12D-1B44-4A82-8E6D-E07C81A17FD0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7F32E71B-F7FF-4C2D-8AC0-489ED8A47102}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7F5DB632-9A7A-4B58-9F81-A0FD0A740736}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7F7D5630-5C08-419D-8148-AF4F4DE9AE09}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7F923650-E796-432C-A620-FBFC0FADE19B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7FBAF5D9-8BFF-43A9-A821-5CD2DF62FB2A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7FDE35AC-B3D8-45D0-A011-C2CED4C49B1F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{7FDF9685-6B82-46F7-8B8F-C0EBADA70AF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{80C06472-F9D9-432B-A16F-83EF7924879B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{80C83D4C-919A-4296-823E-FA4B0B39D0FD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{813F4BF0-A590-47EA-AA38-F9FCD2116942}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{818B00F0-6881-4F8B-9916-7B7E797FF970}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{81C94602-3DA0-43F3-BB30-93CFEEBED761}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{81EB01C3-F2FD-41E7-B20D-EB40A31A57E5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8208171F-2F26-450E-BF23-5FBB7F7A58EE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{824292FF-B52B-4035-AD18-CD62510694B6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{82C958DB-F0FB-4ED4-AAFE-62FB5F7C7C7C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{82F1E797-8AFB-4BA7-BA80-8BD46FD2AD62}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8338BCF9-8EAD-4764-8C97-AF42E510230C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{834C48A0-8430-4333-B8B4-8DA428D85A28}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{837C6FCC-D052-4CF3-8C5C-40A2D4E0D988}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{83934040-3116-49FF-BA16-C70C49FE7F5D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{839E68BD-44D8-46C2-861E-644C3EBE7062}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{839F92E0-687E-473F-B3BB-A85A2219BF0C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{83BC9FB2-D7C1-4B34-8674-E7047CF4B69A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{83D7CC7E-C956-4E53-866D-91C402310DD4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8415F967-1456-4E04-BF41-05E716D135B0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{84255D3B-B6BD-4185-94AC-593B911EEB17}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8434F2E8-CB5F-42C1-9773-C79D4683FE48}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{84839473-42CB-4339-9A69-3EB4D2201578}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{84E88060-B20B-48AB-8ABD-F39BEEA6364B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8555A7B1-996B-4618-B7A8-60D63A156B6E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{85BC3D01-A482-4590-A6C6-0068779861EF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{860CDF79-2C8A-4BC1-9D52-61F2E2DCE017}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{861B12F6-5134-4470-8804-F09FC27AF22E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{862ABEF2-3052-49C0-88E9-46DB061F5F46}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{86449029-D0F7-467D-93CC-395EC69C518F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8661A4AA-F2A4-4DC7-BF89-E92DA3013A24}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8669C5CA-91ED-47D5-B40F-4E899638A854}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{86B7ECA2-DEF1-4E65-9FC8-879AEA316730}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{86DBF88A-8B27-41A7-83D0-2107E0BD5E25}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{86F1FA9C-48D4-42E4-A902-2B6CE92E1BF7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{87425AB2-D19F-4F10-81F4-478B7C2B1659}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8755EE91-6940-42E0-8BCA-B2C634C2C56D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{87A47AA5-2721-4EC5-9A41-28A36237AD6F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{87DE7EC6-5EDE-4D85-9C7F-52C6EA54D6EA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{885B9399-880B-43EE-A2DC-7A27669EEFC0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{885D60F1-41CE-4BD2-8B34-D340AFF1A95F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{886375B3-8D45-4693-8CA3-D256249DA22F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{88761DBA-5C08-4081-8FA4-C788F60B0974}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{88A2336C-55F7-42E0-95AC-0FAA914BD626}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{890541A7-27E8-4912-8370-42C758C3C50F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8958374A-9004-4F16-8914-66C71EA04EDF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8962128E-B9D6-4555-873A-52A6BB39915A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8981FCD9-C618-41AE-8875-BB386EABE567}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{898AD4D6-89D6-4DD1-842F-84FC015B8AF9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{898EDD2E-1206-481A-846A-0413154C2451}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{89C65EA5-AA85-422B-9CF6-0BB145DF2F65}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{89D411E8-6E75-44EE-B0A1-F45DECEDCE75}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8A6F3079-0A5B-4A59-90C5-D07FE2F5AB40}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8A9E2F25-7871-4904-9291-6FC010D1CAA4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8ACD778A-F19F-48B8-89E7-6057BAE80076}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8AE66C14-8D9F-4698-9CF9-FB84AF51BBE0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8B6FEED4-4A66-4F86-9F7C-E67C341A5F7B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8BA5711D-742A-478D-A427-69D5715F1DAB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8BBC9C30-3B0E-425C-BB53-6144367E06AE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8BD787D3-840C-4BE8-AD77-B3F92EAB53C6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8BEB7745-433C-497C-86BA-5391B12BD0F5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8C5EF0C8-5826-4679-A3DD-532EB5E890E8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8C8AA745-42F8-4AB1-B46B-91FA262C726B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8CB34AB9-27C2-4C26-BDC7-92910F0C7337}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8CD01D93-5FE8-4A86-BA8B-13FB8BF09BB9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8CF1F165-B08C-433A-999C-43B027EE5B35}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8D35ECF5-CAD9-4BC3-9238-B5CFB4C213B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8D40E7BB-3C4E-4452-868E-2AED862ADFA7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8D833B32-6CA3-4254-81AC-A5A8B3495042}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8D9B3136-261E-43C2-A68A-A88704154E59}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8DC06A7A-45E4-4CC5-A525-545BAC3083B5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8E209F78-DA96-48E9-BBED-142FB9F30CFF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8F36CB88-9A85-4C85-8EE1-4A1EBB6C57D8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8F39C099-2EA3-42BA-B5E1-CD50A5706A09}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8F3D2F3F-0BAE-4A48-93AA-9AEF16F87003}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8F442499-92B3-4A3E-B5A3-85E53E466384}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8F8CCBE5-593C-470B-A6C1-0652FBB9A196}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8FA2FC7A-CEE0-47D3-A17B-020B9D5EC939}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8FBE741A-748F-4D27-987F-4B18DAA906A4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{8FC64B60-80BD-4F0B-9875-0253514DC325}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{900FF911-A4E4-4752-B5B6-BB96A6831153}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{90197111-89F9-4027-9D04-9BE26D999258}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9070C99E-29F5-4B0A-8CA0-7F5C4D6335E2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{90D7BA1F-E987-46FB-9045-9E41B88A141F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9117DFB2-FA9D-45AC-BF04-7E9240FDF7E0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91182106-E05E-41C7-86BB-0509358D841D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{911864FF-CCF4-4083-97D6-57144DB7B1C5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91632511-6A5A-4502-8296-DADEAD802E75}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91755147-8A65-42B0-A2EC-0AB8D44F63FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91AF9541-95CE-4689-A395-CB54C2C8E543}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91AFD2B9-6DBA-4373-B461-7727C1DCFBC8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91B44671-DE33-48E1-B4CD-2510DC521AAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{91E5AA08-8DA9-45FE-9436-55397565031C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92118C18-C61B-46E0-867C-FE65C9D0897B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92647F05-049F-482B-AFF3-BAE7D1EEB49F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{926AF858-53A1-473B-9AD3-DBA2C681D2E3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92B86BB8-0EA7-4B89-BCCC-757F2D7814E6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92BEAFE4-7FE2-4A90-A7FB-148BAD0B738A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92C513E9-1207-48D6-AEFA-2CED2D566A7D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92CE7024-9ACE-4863-9EAD-65C5002A7286}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{92E6E5A4-EDAA-44C5-8B0C-9E8CC27C9E4C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{930FA550-8BC1-4859-B177-DC584CBB8D97}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9325F5A8-FAEE-489D-934E-0C88A1E24C64}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9342C0C9-FA8F-41D2-AE75-6B04EF0717F9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{935A4595-1BB9-4B33-ADDA-C0E76EAFAA6C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9370F32E-BD6A-4788-ABF4-1F69F90FDD2F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{93914104-3F63-447C-8552-6F300B3844B4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{939C7CD2-DDD0-4A79-AD1D-84F0332024BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{93CFF4C5-C453-4021-BB80-27F800BA7CF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{93D72E07-CE77-4FB3-97A2-5B93CC1907C7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9428E6C0-FBB5-4EAC-B64F-1E38C8C8580B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9437C607-2A98-46E8-BFCE-1581B3550610}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{944AAFDE-EE40-42DD-816F-63F69D72C505}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9459F5BD-C117-4966-9799-361CEA79C72B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{94641A2D-373F-4DEB-9420-236CFBCC3700}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9498B3E2-1A19-4022-B691-A9D5D227728E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{94AB0BBE-9AC4-4BE6-9744-AFF5E0CCA59B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{94B03E34-AEEF-4CA1-B84B-E9746B245C0B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{94C17854-8A71-410E-9A71-67A04FA78C58}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{94DE6A2B-CCDE-4717-96AE-DCAFE1A4B905}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{951B7F9F-8FCF-45E1-B34E-121D1CB97347}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{95386349-6202-407A-9743-EAC7DBA11CE7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{953D2451-318E-4965-9009-375C62FB163D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9554EB00-1D2E-4CB0-86EB-D007EB3DDCDF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{957286A5-3862-4250-8A37-8823F0CE21A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{95EFCAB3-3A50-4CB7-B37F-F245C08DE63E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{95F96A93-D801-4C7E-8801-F28F8B6389F3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{962ED4A0-D04F-428B-90F9-D69B3C78B796}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{96502ACD-7838-499D-B2C8-E8CD40C2104E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{965AF62C-28C7-42E4-992E-8F851F753F6D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{96AE20D6-4BA3-45DA-B5AA-F60B21D7ACD6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{971F154F-3862-4C23-A50A-3E6E2C91574B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{974F9B23-36CA-4BDA-8B8F-B628EAA53481}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{978E361D-6B77-47F7-ADF1-EAFBC8691A02}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{97963326-3ED4-438A-BFC1-69CAB5F9C764}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{97BFD167-C7F7-43FF-A90B-A79B5EF416D7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{97FBC484-D4DD-424A-A70B-D18C2C05ACBF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{980AEB11-0F07-4F40-B084-6F6D6D1E6D26}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9832DCBC-B253-40EC-BBA7-0B6D3B3494D4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{987239BC-7A30-4521-82C4-C8924B26F088}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{98A14526-8B04-4AC3-8BA3-C8A00FEFA6CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{98E06135-DE0A-4582-9C40-734CA9F610B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{997F11FD-B8D9-476B-8931-FF29EE442557}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{99AA90F4-C5ED-41BF-BD61-D17DDB463E9C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9A206AC5-6B86-4B9E-A072-364EFF228564}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9A74D455-F5C1-43B8-A1BD-53C45A95915B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9A8178F4-9746-484F-B188-BFC20F1865DA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9AF46940-F208-4DA1-9AE0-8BCE24A0F69E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9B5B6C1A-381C-44BC-9471-474A5CEBA51E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9BAF5057-55F4-415D-8F4C-23071CF24110}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9BAFD0DE-CC7E-417E-9903-BE723E8A34C8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9BC4861C-280B-4BA5-871E-E64BA4710BFE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9BD701D8-86B1-476C-AAD6-4FFFAA303173}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9BE2DCCB-CFD5-4F63-BFEA-BDE29F4FBDA9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9C15F33C-FD49-4D44-8C81-753746CF5E4D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9C5A60D0-B461-4E9E-AB87-888AED0EE1AD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9CAF2B98-2721-40DF-AE01-D97C47670CDA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9CB5243A-E27A-4D39-8673-078AF5E16105}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9CE5FD72-C957-4266-A4C5-92DBC4021D9A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9CF1D919-3990-442C-BC3B-9150B2103BBC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9D0E74D9-0019-4DE8-8539-6C7CF9508F04}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9D1C3BE2-6517-4CD0-9A7E-50CCA129B158}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9D215A31-1E03-42D2-B931-4F7248F7400C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9D546CA7-88F6-4152-B4D5-A67FAD7EE8D3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9D982468-2584-49EA-A35F-76C6D22EE530}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9E250A60-F19E-4EB2-AA8F-DA014E3459B5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9E2AC12B-98C9-423E-AEF9-75B5819E653F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9E7965CE-E350-4A4D-8BAF-E3F2436CB6FC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9EAEEDBF-B38E-470F-A1B2-8321F6431FEF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9EF917F3-EAA5-41DE-A032-52B203AD8496}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F082B06-C226-4084-8A96-5807767DC4DA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F0A1934-6025-45E9-B585-D12C28A7D926}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F0F62E2-98FE-4A6C-B8A6-23DE21FAB40F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F12E2F4-33E4-4874-B318-67B8A6E94E41}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F2834D7-3BAF-451F-AABE-0F825EEDEB3C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F43F16E-B025-45B4-ADC2-1A3381D3AD95}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F5CB43F-8E5C-47CD-9B6C-43DF193FAC5F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9F60EFD0-3267-4FC8-9075-9A1C48A0F84E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{9FCF75C6-6BA9-4239-BEB4-40BD1ED8CE17}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A04C60A6-1C79-44F9-9CAE-1BBC7A2C53CB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A086605E-C796-4244-97A3-4574F0417725}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A0C57967-73BF-42E7-B34F-33FA2DA32BE3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A0C7A549-B628-4A38-987C-C755ACCFFAED}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A0D13315-BA89-4613-8CBF-CAB083519D44}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A12F83E6-CE71-4B3C-AF8F-717301946AF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A19C0D4B-A379-4223-B14F-C2E7A52684FD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A1B57B40-5B65-497B-BF52-ED92C3461D8E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A1C5B270-231C-469A-BBE9-2C0CB141EC49}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A1D4D911-13E7-46E9-AC49-06C50A8770AA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A1FA5316-3F9F-4B12-8D8B-B6491D7D301C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A2DB10C7-1BEA-4C76-84B9-8A588ECB0716}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A33A2576-2476-4EFD-BB4C-29F78552B910}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A348C0FD-DBEF-4E94-BA3E-CE54B2501926}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A348F265-41FE-4E67-B8AB-97D3F70BF615}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A3975E8F-3ABA-4C76-933F-02FB8AC33844}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A3A4AEF0-6EB6-4337-BE1A-70DAF6D539E9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A3A7D12C-E9C5-479D-889D-3EBEF36FC2C1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A3F3FA1D-3EBC-47E0-9B19-1E31285092B8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A43B9D8A-CAD9-41CB-B437-F69581EFCB49}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A4463D59-8944-4A71-B9F1-8555B09AF0AF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A461666A-54AD-4208-9C74-F3D3F2938B6B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A4A2D503-48D6-4FA9-91D7-D60D0B182DF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A528A1F9-02A7-4C9B-AB02-806CE6C3C129}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A54E0236-BA02-469E-9310-A8937C8091CD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A5686C19-2B7B-4BC5-ABB7-95E0B4FE8011}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A600EBC8-2768-44AF-8C16-E52B9EA28C43}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A63F75FC-3BDA-4F31-B2B7-C4322F3CDD1F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A66848E7-A09D-4C10-8007-A26034027096}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A7092EE5-81D6-416C-B3F0-C8266B38CB48}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A7636A14-127E-40FE-8F74-7494F309CDD4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A781783D-2016-4BCD-AF8C-61FC3EA7C28E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A787B099-F493-435F-9D77-2870D642EB3C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A7B22D0E-7293-462B-BAF7-79B23ABBB2E1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A7DD4CE0-2EAA-4EE8-A8B3-39FBDB3AAF7C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A81C2A4C-8050-4DD0-B6B0-F889B806E113}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A8382DF9-C66B-4E8C-A31B-3B82DB0D0EB7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A886ACC6-B287-4980-A90B-983EACE652DA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A8B62E4B-9885-417D-AEC0-E80F39C3FC84}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A8CC99CA-509B-4146-96F6-E7A886119638}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A911067E-B75D-4C7C-ACE7-3E34228FCCCC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A94469DD-6560-425F-9512-C64442346097}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A95B0A97-8DAD-40FB-A665-BCE50D36184F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A99A468B-55F4-4099-9F86-5271C78F8903}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A9B2AF6A-81D2-49AB-AE54-00059C35BDDE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A9E4E273-789D-4998-BA58-4D1A70140011}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{A9F8232E-88E8-4AA4-807D-E2DE5A511D4F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AA032418-E26E-424E-B909-31A2098647B6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AA37D35F-BE96-4836-A81C-6E79387373FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AA567346-52DC-4585-B066-14127D64EF39}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AA80FF92-23B1-42B4-8AE8-98767ACD61EE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AB03F1B9-2212-4805-B7C0-7CE1A30DA731}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AB163BAB-DA25-4277-8081-B44643EB083F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ABE233A9-CF34-4221-BA86-2B67FA8788FE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AC23B29F-0983-4643-B92B-820EEAEA014D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AC429991-E23F-4B7D-A163-D4FBC7FEF4B2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AC60DF8F-3400-4D90-8EA0-8BAB2D2F2D6A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AC73609F-0110-45C1-A27E-B107A1D108C4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ACBC66E0-E5D4-47FB-A168-C92306CAFE96}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ACC8120C-FDCF-4850-BBD4-73B8D3DD9E2C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AD1F9B12-EB29-42CA-805C-AF5E3C6AFAE3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AD2DCDFC-991A-4837-AE1E-FE2E298FA969}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AD9941AD-2EA2-4390-A706-9253BB74772E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ADA10127-867F-4E54-B0EB-1004A5D88C16}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ADB3F31D-58DF-4AAD-A6C2-6DC1ABC79156}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ADD35242-A16B-436C-B125-4E86790ACB92}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE0CC592-FDBD-4BC9-B62C-64AB1FFB666C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE430568-27BF-4884-A9EF-656FFFCFE4B1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE59F1FF-A26E-47E5-A296-928475BD2444}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE611DF3-E783-45EE-BB79-948D6D571B6B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE6264A7-73A0-4A70-83F2-418B513C6ABC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE633767-EFDE-46AD-9507-A6C95260E61E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AE8E1A16-F630-4D2E-B08D-73EF455733F9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AEE8CDB5-F40C-4061-8D06-76EC12933B52}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AEEEE098-C3EB-4A2F-BE1A-CB8146DE6DED}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AF223972-7507-45E4-8A2C-57E27189DF58}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AF258C61-2FA4-45B5-8B1A-D3CBEBC7CB72}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AF56972B-3224-411B-9935-08AE294B9457}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AFB0B009-3037-478F-8FA5-7D3E61780D3F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AFCA9810-A29F-489D-A379-BAF59EDA2857}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{AFF266B2-68BD-4F08-9266-475A7B2AE942}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B06FF620-E4E5-4A6B-8107-58E9741D54F5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B083D2DD-403A-4AA4-8250-C85305B8390E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B18B9557-829F-4C6C-BB67-0A18B6B4DABF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B19AF8E4-C942-4B5B-A9BA-DE48F2D2F526}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B1EABA82-2B02-4DF0-A58A-FFD88B48AD4E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B2001BDD-5D75-414F-8103-0B40195DDAB5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B23E6730-8D3E-49BA-93CA-8BC7D7D2EFDA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B24C027F-05C9-4EE8-8B5D-325A8FAA4EC4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B268EBDA-8C98-42ED-809E-01EFE1650196}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B28C0B4E-A6CB-49F5-BA36-44312DF734AC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B314DB69-189C-4471-AD8C-826C08D97573}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B33C2C93-4F27-4934-8DED-25D57CA0D6FF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B3BF580D-CEEE-4EE0-A184-21FB162F99A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B3C99E53-F28F-49A4-9A91-E237A839A313}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B3D765ED-AB2B-459A-98AE-3B1024AF12BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B3E8B0FE-320C-4038-B414-473D4C9D5B87}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B3F45304-B6C9-4ADA-AD01-FCB8BF0FFD36}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B44BE637-CF02-42EF-8AB4-C0F5DA395E63}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B455A482-07C4-4765-A154-878A28F19794}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B4AC7549-FCD9-4398-B033-42EA84BC7722}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B4C6668C-C5A9-40A1-80BC-9B3054C102B4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B4C7B44E-A6DF-4DB6-850D-EE1476416849}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B4DE8E3E-9F7A-4F19-8EDC-885CFE17C43B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B57DB2CB-A090-442F-929D-3B6693433398}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B6A00EE3-981B-4528-B853-F192DC7F5FF8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B6BB9E51-E314-4C85-93F6-B4C7711BEE09}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B7023E3B-5305-40F9-9152-3101F937B828}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B7187E99-C105-47C8-902E-01E97884097A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B7AA8E5B-04EB-47C5-B242-ECC4DA1864B4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B7E75D0C-E953-4207-9A0A-40BEAA055B79}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B80C6E35-CF5B-48FB-9307-6815C6D7E94B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B85F08FE-0595-4BE1-B1F0-B29BBE020A40}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B8766C43-986E-4939-9ED0-756F48A05C76}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B885AFB7-54B5-4488-AFB9-54E541AA4846}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B8DA1708-9181-4983-9DCD-8B1AF297C19F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B8DC5C51-174E-4257-8F9D-5C66468B932B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B8E77703-40F9-4DE8-B8D0-EA2B0536C049}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B8F990CA-D1BE-4BD4-9E11-544A026A9AD4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B9082023-C266-4F59-ADCA-1128A63E113A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B91C5693-8137-46C4-820C-4A866CC047B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B93F6CCA-82D6-4039-A9E6-C38F91856BCC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B9416A62-FFA9-4753-BFC5-287C9D5F698B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B94CD6DC-3B2D-488C-BFE3-E1446CCE29EA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B9739EF8-932B-4FAC-A0AE-ACA433CAD8E5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{B9F1A0A9-5255-47C7-BAF2-E28EA73D9DC3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BA5F4494-7039-47F5-8F1A-C5A5A85CABBD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BA5F9DC8-14E7-4CDD-99AE-3BA8D63624DD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BA7703E1-A275-4614-AAD0-4B57A7DC34E7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BA8C03B1-3618-41A0-99C8-C99FB352250E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BA93C028-66BE-4518-908D-820A348800A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BAA2C23F-4162-4E5B-A850-4D4120C87DCD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BB15BC75-78CE-4667-918E-CD78BE1FB88C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BB99AFFF-F4E0-49D4-9DB4-3DA212B667F3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BBBE5EE4-20E1-4967-9568-B2BEBC7780CE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BBD6A74B-D380-4566-997D-F14411605F84}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BC68B9CD-56A4-40B0-AE82-4E24CFC904EC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BC90576A-8AD1-4CE0-AC92-BD81B1EF204B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BCB29349-FD6F-4A6C-A6FE-17B5E26F15D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BCBC4C4E-26DD-49AF-8603-C19A6CF649AB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BCFEB95F-B48F-44CF-9870-0CDB962FDF42}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BCFFA8C9-9D37-4C7A-BAF5-108A561C978E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BD52E6F9-B7DD-4031-8E4D-186998E347EE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BD6EB5FC-6927-4048-982F-AF768C35B0BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BD76C7A9-C8CF-4D0B-A62D-02446F52C62C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BD92ECF0-D60C-44F3-80F0-032DB1C93DE7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BDA7C5D8-AB7E-42F4-B760-0AF44E65B02A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BE3893B2-5435-4CD8-91F7-D8A098662CD7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BE6B1583-933A-44EA-9C9F-4E00681419C3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BEB285ED-7200-40DC-9A8B-4F38D6BE5E10}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BEB8147E-9A17-4D06-943C-6B6C46937438}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BEBC2953-086D-4FB3-A7A3-8D7D20C02ED4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BEBFCBE3-6D58-4225-ADE2-C959343E8B6D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{BFBB097F-0D4A-481C-9220-0154C7135580}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C01B56F0-93B2-414A-84E6-B3B6A3FCC1FE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C02B2049-43E7-47BA-A619-EBB5751B801D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C0AA6CB0-52F0-44DD-8C52-C00963FBDF6A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C0DD691F-1034-4B0B-8C41-1BE127351053}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C0F980A9-0947-46D6-B692-E9D9117F67DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C0FDDF1F-0413-46A4-A5D6-89B0FDFC6D49}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C113FE02-8D49-45D2-A16E-FD482311AA55}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C12B7FC1-3FBE-455C-8B89-C9D4857A742F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C16925ED-F8F0-4CF4-8F30-D565D2F20DA9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C1A622A1-7BF7-4BEE-8EB0-F93C13216E3B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C1CDEFDC-7DB6-4E4F-9AD6-D503FD6B52EB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C1DC87A0-134D-4433-961A-60F3D07733E6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C21B638C-749A-4975-9EAA-C348D81AB0EC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C21CE57B-AD65-464B-AFAD-3E1DE23156E8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C226B5B2-81BB-4323-B56D-F95FA9C8AE94}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C2913241-2A33-43AC-9559-358E1179AFC8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C2A5853A-21CA-4CD2-98E1-C5EFB4EFEFE5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C2B516DF-E1B1-4804-9745-5C30DE88042C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C2D38824-8360-4335-AFB2-6083F149C917}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C3145025-D005-4CDB-A238-5351E9A4CA9C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C328CCC5-E9BF-4DBA-8A58-26287C3573DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C32FC666-5E83-4BDC-A734-1B8B8A627944}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C373968A-6821-4EE7-B9C9-1BF28CA44DF0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C3AC6DB3-F6A3-4E5E-A2F7-796A99BDB7D3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C52F8CBD-E8AB-4FD0-A554-8F5A24F1AC9C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C57E474A-F3C0-4459-BAD7-57630DFF5CA8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C5AC6B35-4D91-4396-97F0-B32CEE3A6745}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C5B619FC-01F2-485C-8A9A-E5B85D55E84A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C61D4271-E98F-4ABA-90FF-9CFCDAE8A8EB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C62A1129-BF17-497F-86A7-AF525F86960F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C64019CB-CA4F-4904-809A-6F25E8D2EE3A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C64C0D52-29CF-4D8B-B829-EA0D17322288}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C6AA8198-AC19-4EFD-95F3-1E88B948E4D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C6AEFB5C-1273-46B0-972B-0754185DD821}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C6C6EB2A-C2F8-4378-A353-D216E858282A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C6D4FB69-90AF-469E-A66E-E704A5D97604}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C6F598F6-055B-4347-825B-D4130F8EF0B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C719325D-E0CB-40DE-B9BD-27E9096A115A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C733E86F-D7D5-4C08-9F04-2A62D0C3F7D1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C7536D50-3F4A-4A6E-8889-6B9EB2B8557E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C7700973-F803-446C-B9FC-0CC0A6B92E4A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C799AF31-D645-413B-A2F6-4EB5D0BA62D1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C79F27DA-96E3-4A49-858F-B8CF57CC9C02}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C7D4B948-AB28-4929-BEC7-DB664B6F5C71}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C7EEF4C7-5D7A-46D1-A4CA-1C67DB0B3993}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C7F96667-1EA7-42AE-941B-8EAEA4F99F90}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C81FEDEA-B004-4C2F-93E7-4DFB3F68E220}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C8E2C652-C584-46FC-977E-9AAE6C698D49}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C8EE8EC8-4B9F-4A54-92E3-E4E4CC10DCAA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C8FF9EAD-68C0-4A6F-98DE-0B34666EFECE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C910F6F6-A2FE-4380-BF32-D44F43C83DA4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C9452030-4385-4B27-82BB-62E9CF04B327}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C945249B-B218-4ADA-8943-0FC1E3D6139E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C94E1C38-80EC-4C9D-B265-60724E041263}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{C98AAC4A-8E6A-4752-8392-D028CB0BD836}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA19090C-0B02-4645-A03F-05BE754D897E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA5DBF19-3926-40D9-A29F-70BD61E3989F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA60ABE4-7EAD-4205-95D4-CEC44B0EB725}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA6239C7-7AF2-43A2-BAC1-860961FFADF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA6C67FB-BA67-4F24-92CE-41740216F127}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CA961E73-E38E-4F67-ADBA-9F9AB77DC584}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CAA36A19-F822-4BCC-A53B-19691B0B0848}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CB5FBEDB-C2F6-499B-A259-9EBE749D1A55}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CB843B12-E24B-4FCB-9BA4-ED96D821DB65}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CBA52896-A883-47EB-91F4-6E02654C41A1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CBC9D26F-03B2-4046-8E5C-659C15D827E0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CBE3061B-9A9D-47E2-ABF7-CDA0EE98C154}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CC57EE28-2AAD-4F56-9077-5926C8A4A27C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CC87DA0C-549E-479D-B3F4-9C1C6E903C9E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CCBD57D6-E408-463C-87FF-998A8D90615D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CCDAA9D9-55ED-47B8-BC9A-47E45FED2DA5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CCE42852-C67E-45D7-8CDB-30A85FEF3038}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CD0AA816-72FA-433B-95FF-A23F6908C61B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CD0CFD1A-C930-4E15-AC8A-6D6D00968F5D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CD14FD7E-4A37-47CE-A5CA-419FE328C5C5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CD860FF6-832A-4ED9-8FFC-9303DBBC1DB2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CDE8EC8D-9AA8-4F6C-AB5B-CE755DD79B49}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CE3F6733-4C7F-4794-8570-FE1587D333B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CE7085E6-4319-49CF-8D8C-E144D43C6469}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CEA62EF8-E000-4FA6-9DD9-D697C28A5F79}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CED6DD9F-AF52-47F4-9ECE-9BEF4DABDD56}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF030EA9-E341-4888-AE0A-4F993A5C6822}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF1FBD6B-3438-402C-B0F5-BC04AD7127DD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF471C60-77AD-40ED-8221-A2057D5D1804}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF492137-BA2E-48F1-947A-E7C1AEA35C07}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF6CEE77-C416-473A-A19A-66933EAB98D1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{CF7C61C6-609E-4955-9F6C-3C5171E4D9A4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D012FB65-ADC7-4F43-A11C-10B71E503248}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D02EEDFB-AEBC-4A9E-B8F6-2E41D3E7DEB4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0390692-1268-4D02-AE8F-834DB33BB333}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D03F81A9-3286-448E-91C4-B3ABDBA6CC71}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0494589-E233-4F9E-8D9B-23C666DEA109}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0A20AE0-5028-48CE-A593-38FEA36817DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0B0DD8D-0BD6-4777-B268-1B67D892535A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0D9B09D-C167-4E51-8A53-11AADD94DC25}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0F084C7-66F1-45D4-9357-0CA373D0F19E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D0F5D0B5-8A1C-42BD-947E-D72478BCEA71}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D128637D-D68D-4530-9025-AA24E8DCF5D4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D13F1004-C0FA-4FF5-B443-F07B5468AAF6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D147F9FA-2943-4267-A765-800141E67F27}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D18DC305-CE7A-429E-9102-D44B2CE94297}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D1CC777F-6DA7-4212-9BD7-9C00993A2A0E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D1E0B0EF-5E24-461B-9123-B713E98F1B69}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D1EF014B-13BA-4719-A0AF-05F196D8C511}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2195DBC-67D3-4065-8657-A3D80FE2F23B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D21A2C93-58DC-4435-B18A-94237EDF4EF1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D21AA88F-BB2B-4FA2-837B-960B217C4B16}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2435D74-801F-4D44-9682-A9A2183A05BF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2622E13-BE6C-4DDA-A64F-8100FFE8DACE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D269FFF1-223C-40F4-9FED-90CB5E69EF90}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D276AD5F-E1F0-4B7C-8037-77D6864C5076}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2B0E46A-DA2E-4BC0-A74B-8BFE3DEF3960}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2BE1F33-7E76-47D6-9BB4-8C6A26005900}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D2C73617-CD87-4934-B94E-AE347A229711}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D3146C58-2DAB-495C-9DE3-E5C8B96C33BA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D3493AF3-E1DD-4419-8C96-A2D23DC241AD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D3518273-D96C-4FA0-8069-6BE6CF810180}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D362EAB8-1511-4EE8-ABE6-F2C1CD3EA9F0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D392EEA0-6FAC-4956-A838-1119B8D621C3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D39976CE-7836-4E82-8D12-75489CA9DC47}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D423E9F4-853A-45E6-BBD6-116DED1D4948}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D4395B20-C69A-440C-8BBF-55F5742E3440}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D4AA3DA9-4A70-4F4F-A803-FD2E1D115DC5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D52FB1B3-09A9-480C-866C-43F4237D7EAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D5301834-B828-4BE3-9E20-59FCFB9AC224}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D54FEABF-AC10-4DE4-BD5A-BEC03E1B0ECC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D5587ABD-AB65-4775-9E88-3062D31D2919}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D566FD77-0285-4FA0-9824-12A57BAD15CF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D5B16A27-C1FF-425C-863E-F33ADBE8C7A4}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D5D0684F-54C8-49AA-A0F8-2AF2BD3C4093}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D5D5D085-2B9C-4CF0-B743-48BF155BEAAF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D61BEC9F-9F9F-4ACE-903B-533882C682D3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D6292E74-EFD3-409E-955B-EB668A013CFE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D62AF884-012D-4F66-8462-F5F477840735}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D636F634-8CE0-47F4-8845-5D649E6E1F37}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D702D059-F8B1-4053-A050-F314DC215314}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D7386DE2-1D47-4380-85B1-90E0948F9565}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D75F6567-DE21-4FEE-9AE0-23877C46E825}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D794CB6C-0F36-4FF7-8868-EBC07085E35F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D7A216D1-C93C-4D43-87E8-31E256AAF310}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D7ACA75E-9A78-45FC-958E-64D7822E0468}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D7DAD0D7-E09A-4D90-B886-DE24A4BED623}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D839CBD4-36C5-4241-A7B4-47C1C5613772}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D86E5A48-718B-499A-B334-AD7041E5D945}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D87E6C0F-AABB-4C62-95C8-6FA7E5A6F882}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D8AA678F-B690-4008-B510-7DBEC170E93C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{D9FB4024-2EC4-47BF-9212-C348C20A2862}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DA105223-E62A-4636-81D1-980959A74A52}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DA2F037A-4DD3-4AF0-BCBC-27C4C39396BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DA56680E-CE4F-4735-BA06-5D93E5F2239F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DADD1E92-197F-40EA-B8AB-8E21A7944810}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DB32830E-D542-4FC4-81EC-B915AE75E30C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DB6801A0-0B24-4D4D-881E-C8D8FF864985}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DB7DD5C9-4BD0-434A-A6DE-05BDF21B54D8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DB7E998C-B9CA-4A39-9516-FAC8F2BD1833}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DB82EDEF-2BCD-476C-AFA4-39454DBDE8AE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DBB56C79-4460-43DA-B3D2-8C36AEB34A39}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DBC611F5-4C3A-44F8-9FED-E209FEB5973A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DC00295B-6ACD-48E9-B001-82D86FEC4B76}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DC432D53-D287-449C-A790-A763652EC809}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DD160144-9D47-4034-987A-FB0486309BB0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DD1F6679-83AA-4F0B-B6A5-1CADD2D3C5B0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DD6A6225-8E9C-40B1-9E60-7230B4BE5F43}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DD775AAE-2A26-4609-8D0B-039CAF4688D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DDE56D6B-B24D-4A97-95B1-4A891BA98D8E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DE4741CD-234C-405E-B6F2-8CDCFA5BC134}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DE5A7D58-0029-4E78-8DDA-573DC0CDED05}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DE73D857-08F6-4BE8-BED1-2487CD9F362A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DE7BEA4F-C475-48A0-BEFE-5926E27A170E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DEF5471B-85CA-4840-B401-81FA04B43F05}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DF2FE3F7-6A1E-4D12-ACE2-61B604B2575A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DF7BF0BE-75C3-4C61-A7F5-37752EB04F22}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DFC6C42E-1434-4C53-BEEB-03F93CD7F694}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{DFF9C101-A934-4627-9067-E3BE94427FFC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E00C536E-0D86-412D-9091-7B004742DC86}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E059BCA3-79DC-4225-AC68-393C18506E15}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E062149A-3BC4-43B1-8543-61B16CB44F80}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E0AE356D-0891-4B34-8312-5A242A6C161B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E0BE32E1-1A70-4485-BC39-7A86DBCD1ED1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E0F8E297-DD99-4097-8CA3-BDE074637439}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E16DFD2D-7E1E-4083-BAF9-A4B101C3E4BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E1722807-423E-4088-B73D-FF9E94FBDE1F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E18C68F8-6EF2-4F87-9C71-909F8D399674}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E1D2759F-F06B-4D68-BA46-933234A78A25}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2613197-5324-45BB-8760-3B3551D72A04}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2AB15E0-F9D3-43C0-863F-15B95F5620BC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2BFA461-550D-4351-8961-0FC8ADC7B6C5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2C88A53-F2C5-4096-8687-6A25272EC87B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2CE68F8-98DB-4282-AC4F-EDBC5DFC71E2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2E2FBD8-0162-4461-8969-E303ED4E832E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E2F9EEEF-4005-4756-840B-A085A80D9C0D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E3830BAD-E4FE-429A-8370-B2C43A335582}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E384688E-4A25-473B-9B2D-9ADFD4599AA1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E39CE82F-92B5-47A5-A064-1FDC0D5B4488}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E3B85613-A61F-4C7F-B0A9-4E7F058547A9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E3C0BDCB-0B63-410D-9271-0DCA8FD9668C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E45115FF-4B2A-40CA-8AD1-ECD03970E051}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E467B312-5A2E-4C37-AF52-A110BEF90578}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E4B311B3-E980-4B53-894B-1451F849F808}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E4D8F8FE-6E04-4170-91BB-BC9D5E023C37}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E4F91254-ED1B-4345-B9C7-7E9B98FBF99A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E558D4DB-307D-499B-8821-C88B9461C308}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E5A286A5-30FD-4767-A9AF-30CF12ABAF08}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E5E5A0C7-22A4-46B6-A86D-1403446CB8AA}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E6146393-C7D4-4677-890D-EA9B07E7801C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E65D05DE-A9A6-42A5-818B-BB320FF4BF30}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E6760CCB-315D-442E-B15F-028D4AD6A2DC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E681F0E7-E1A8-451A-97C0-BB401A26DA7D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E68D82CA-66AA-440A-A911-02E805DF266F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E692C00C-D9B6-48A3-9471-77F36564E83C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E6D67441-DA58-4B0A-8566-5FF5DD901EAC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E6F22C54-55ED-4535-A013-6B3B2348E7CC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E7251428-0A5F-4114-B22E-6F4BFB9C3A4B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E76954C1-B324-4EEE-B0D3-00D2A8DE8920}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E886CCD6-B6D2-4574-B7D5-A7062D3D2589}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E8C412A7-BA37-4882-91D8-E67041739444}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E8D2B685-C7F6-4987-A5D0-975BE562EF17}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E8DBCF9B-9E20-4BA8-947B-F562FBE292A3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E8E0FC9B-BDA7-490F-A2C8-656D2FA5A79C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E936F0A8-D7C1-435D-A187-0DCF8E376EFC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E9B68AC2-168B-4267-A45A-910BD3A3EB45}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E9E27E2E-EC85-4A2D-885B-1FC65AFC949A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E9E31F9A-93B9-4F39-AD64-DE231C38F25F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E9E4AC0A-BD46-44E4-B7A2-266E8CECB85C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{E9ED4F15-F18F-4B5E-9E74-9AA6BB30DDCF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EA1ACC97-3F99-43A9-8848-0C6AD661339D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EA2C8612-E8F2-4519-9368-916D952B2015}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EAA02C68-F937-416F-B9DC-D836748DEF2D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EB00E68C-B694-404D-8D68-73301FBA5B28}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EB4787DB-FF92-4919-9719-20F65BAD2048}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EB49E386-8123-4C35-A22C-80B942EA5DD1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EB4E1EBB-7549-4C9E-A17F-F4D71558A187}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EB73E216-2892-4C41-B546-C1BA10EA7DD5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EBA2337B-9BB0-48E1-A9A6-1AD3828F815B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EC0F7D08-1B1E-4F48-84D6-FC5A0C61CD59}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EC1764B1-66DC-4E69-8C8F-EE7176F98D0F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EC5A438D-7D5D-4621-A2EF-4F6D00B1E67E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EC82FF42-4A6A-4208-97F7-082086BF07CC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EC9D35AA-7AA7-4362-A52C-B8F35E16E00B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ECD1E96E-851D-4FDD-B0B8-27EEF01EB19C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ECE34454-8B8B-4143-B941-4D6FB5CA35B9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ED3BFDE3-0504-4F88-A255-C58FE254EE28}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ED3F558A-2B4A-4015-A5E4-97499BB15B2F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{ED52B69C-D42A-430A-A25E-D6AE7E179DE9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EDA4D16C-BE68-4C1C-9864-101C5D1B3700}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EDBB8FEB-A3B9-4528-A27F-4DD434DD4B7A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EDD48F74-837C-4D5A-8E5F-CFB94FE7A1E9}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EE65724B-6777-4F0B-AFEC-71DC039BBAD7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EE68BC1D-1B09-42DB-8EB5-AE25E6C32D68}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EE874520-3E9C-41B7-9010-1C42188B3F5D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EE950BBA-EB36-450F-8DDE-ADEB555BCA21}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EEB249CB-96BF-4353-852F-BCBF2FB04FBF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EF120D16-5133-45A4-AC8F-6423877EFF59}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EF3DDDE8-35FB-4D7A-91B7-4D63550105D0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{EF5CE343-486D-411A-A127-549FB986D389}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F0025C21-EB02-4BD7-90D9-7E7149F533E3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F047FA8C-1595-42AA-80AA-7D96374176AB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F04E5514-3B0F-439F-B813-65C4F390F9DB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F05A1E97-3D48-48A5-B731-87909645890D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F08E1389-D152-452D-8A4C-F4333F6B85F0}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F09CFB40-4918-4C38-B7BB-DEFE66E72AB3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F0AB28A0-65AC-4373-874D-18B6175203F3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F0EEEEA1-3DF3-4D13-8435-18156346EA98}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F11F8ED1-9047-43E0-A301-D0711442D2BE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F1594E51-EB35-49FC-91CF-BEC743B9C7DE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F1985832-E01D-4FC9-8768-BBCD610DA310}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F1C62C6A-A78E-4924-82B6-4AC9427DBADF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F212C204-04CD-442E-8709-F4B24EC39E10}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F220C848-A340-4E16-9DA5-9388E212068B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F24A2E21-47C7-4B8D-B2D4-2891F03B310B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F27E9046-5EFD-4DB7-9A2E-036109B7F437}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F28CE33A-4A5F-4DD0-BA38-4CF2EB2AB17F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F2E27EFF-CC92-4E69-B046-4CBF66F8FF4D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F2ED1F12-13B6-4828-BDAC-4CA26E7ED699}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F2F4EC19-49BC-48BD-8760-E119A4AB378B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F3154958-83E2-485A-8E15-0B5A667BAB96}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F32B9EF6-9AFA-45E7-A2A4-C7CD74B6C4A5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F3F57438-B859-48DA-BE78-0A070D6F0570}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F407D39C-E62A-490A-A188-3DA299A1228F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F4502F7F-8B41-4686-90C9-C869CF3F9729}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F4506074-DAEA-416B-AC94-A8B239C5CED6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F46093DC-DB63-43BF-A768-D5FF82DBAFC3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F477D703-34E0-4005-BD89-9F08F5B4E6C1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F4AC8D84-2674-4ACB-BBA7-FE35C8099307}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F52BCB2D-575D-43AB-8740-2F95941E9456}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F5C09E0D-35AB-4AF9-88E8-7A80712037B7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F69F641D-BED2-4A0F-8BD0-CED9AB1AED32}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F6BF4516-8C35-487F-84B0-C5BEC7A2241B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F70BA963-0208-4A7E-A6BD-7611BEA4E6A2}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F7583E54-D15D-49B9-955E-E99459FC06FD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F7B10672-42A2-4070-92B7-E166C89F4DCB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F7B85AE2-BD5B-4CD1-A03A-2D6E28F48886}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F7D3D5A2-833B-4F2A-BA5F-917E8524817F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F7F9E119-912B-43CE-9248-4F424B45916A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F84468E8-FE15-4A86-BFC7-EDC2CBBB218E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F847B5F8-1D68-4680-AA9C-9DEA0DAF4BB7}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F8525CBC-C3A8-4977-9A86-5129AB4D8FDE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F860C5EE-3F09-4700-8809-DAC935F6187D}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F9A760FC-4014-438E-833C-FB75B800E6D6}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F9C50FAA-0465-48C0-9DEC-152F7BFBAF56}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{F9F4879E-3CE9-4367-928A-43825CB33214}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FA641E61-5E1D-4F73-9065-9C6738A379E1}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FA774186-968C-4B19-B4F2-C59C98DF728C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FA9E3DEE-0557-4628-9300-1247546D610A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FAADF818-D8E9-4567-9257-F48544D1D3C8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FAC1982C-1D1F-4778-ADC3-A4FD59285C81}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FAE1F31B-9784-44B4-BB82-D4893F1D6DDD}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB085721-0604-44A3-B8DC-EDE491541C5C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB08BD73-D5FE-46C7-8E20-A504395078EB}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB0E22E0-0343-4C0E-89DD-E424374C7815}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB13791B-0841-4E78-A79F-35EAF54D5639}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB3D599A-F177-4B5C-A56D-743ACE0BB54C}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB66E1F0-D419-41DD-96FF-F2E5761273CF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB6CA1F9-4CBB-4F7D-B33E-722465808600}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB7E1CEF-A31E-44ED-A1A1-4B868C287AC8}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB8DFCB1-F2D7-4F01-BF06-22B116B1F25B}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FB95AEA5-AB54-4201-BBF6-862D8E2F97EF}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FBB30489-E5C8-4D8F-88C2-6F9D9C9CE20F}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FBC21155-214D-4DB4-8203-98F0D3BE278A}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FC06D626-6677-49A9-AD8C-8845D558D736}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FC2B0CD9-067E-43AD-8DBC-694C9B0CD187}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FC346FE8-530F-4AFC-9EA8-4102BD33E7CE}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FC97AA2E-11D0-4167-B3FB-C9EED3200B35}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FCDA8B44-0D40-45B2-A85E-C8EB171960D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FCFA94D7-CEAF-4AAB-8996-79EAA91D02CC}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FD5A62B1-57FF-492F-80F1-A2AD88BD015E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FD64667D-E2EA-46C1-BED4-72BEECB651D5}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FD819A30-7644-4EF0-8129-8DA7DFFA28B3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FE7F33FB-E350-42C1-8822-55312F7359E3}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FF4FA48B-A6A4-496F-98F8-088F0D367904}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FF74E902-819A-4C28-AF8E-1974AB41326E}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FFC8DADA-0C76-4EE2-B883-985672DB3F75}
Successfully deleted: [Empty Folder] C:\Users\Wendy\appdata\local\{FFE8A03A-9F69-43AC-A6FF-85B2FAA0F814}



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sun 03/09/2014 at 19:39:25.76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2014
Ran by Wendy (administrator) on WENDY-HP on 09-03-2014 20:04:03
Running from C:\Users\Wendy\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(www.shadowexplorer.com) C:\Program Files (x86)\ShadowExplorer\sesvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Dropbox, Inc.) C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(ArcSoft, Inc.) C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7461480 2011-09-08] (Realtek Semiconductor)
HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-08-12] (PDF Complete Inc)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [ArcSoft MediaImpression Monitor] - C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe [80448 2010-12-15] (ArcSoft, Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2012-01-26] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [502912 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863360 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [RoboForm] - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [109296 2012-02-21] (Siber Systems)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [KGShareApp] - C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe [394752 2012-10-11] (Eastman Kodak Company)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIIUE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20918432 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {c46af8e6-a1c2-11e2-a415-047d7b09fc67} - G:\7001TPain.exe
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {f5f150a7-ea33-11e2-a65e-047d7b09fc67} - G:\KODAK_Camera_Setup_App.exe
AppInit_DLLs: C:\PROGRA~2\WS_X64~1.ENA => C:\Program Files (x86)\WS_x64.Enabler [4241408 2014-02-05] ()
AppInit_DLLs-x32: c:\progra~2\wsbeb1~1.ena => C:\Program Files (x86)\WS.Enabler [4248576 2014-02-05] ()
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
SearchScopes: HKLM - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
BHO: YoutubeAdblocker - {24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} - C:\Program Files (x86)\YoutubeAdblocker\2wXyNSCHEn.x64.dll No File
BHO: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.x64.dll No File
BHO: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.x64.dll ()
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
BHO-x32: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.dll No File
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.dll ()
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)


This is as far as FRST got before it stopped again on the same exact spot (Maybe ran .8 seconds this time. I let it sit this time for a while. It went to the blue screen of death and reboot after a while.

I will post the TDSSKiller in a minute. I have to reboot again. The loaded modules has to reload and reboot.

FYI, IE has stopped working and I had to switch to Chrome.
  • 0

#6
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
20:18:07.0058 3776 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
20:18:09.0461 3776 ============================================================
20:18:09.0461 3776 Current date / time: 2014/03/09 20:18:09.0461
20:18:09.0461 3776 SystemInfo:
20:18:09.0461 3776
20:18:09.0461 3776 OS Version: 6.1.7601 ServicePack: 1.0
20:18:09.0461 3776 Product type: Workstation
20:18:09.0461 3776 ComputerName: WENDY-HP
20:18:09.0461 3776 UserName: Wendy
20:18:09.0461 3776 Windows directory: C:\Windows
20:18:09.0461 3776 System windows directory: C:\Windows
20:18:09.0461 3776 Running under WOW64
20:18:09.0461 3776 Processor architecture: Intel x64
20:18:09.0461 3776 Number of processors: 2
20:18:09.0461 3776 Page size: 0x1000
20:18:09.0461 3776 Boot type: Normal boot
20:18:09.0461 3776 ============================================================
20:18:13.0136 3776 BG loaded
20:18:15.0374 3776 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:18:15.0499 3776 ============================================================
20:18:15.0499 3776 \Device\Harddisk0\DR0:
20:18:15.0593 3776 MBR partitions:
20:18:15.0593 3776 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
20:18:15.0593 3776 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x7250D000
20:18:15.0593 3776 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x7253F800, BlocksNum 0x21C6800
20:18:15.0593 3776 ============================================================
20:18:16.0295 3776 C: <-> \Device\Harddisk0\DR0\Partition2
20:18:16.0856 3776 D: <-> \Device\Harddisk0\DR0\Partition3
20:18:16.0856 3776 ============================================================
20:18:16.0856 3776 Initialize success
20:18:16.0856 3776 ============================================================
20:18:41.0006 4648 ============================================================
20:18:41.0006 4648 Scan started
20:18:41.0006 4648 Mode: Manual; SigCheck; TDLFS;
20:18:41.0006 4648 ============================================================
20:18:46.0122 4648 ================ Scan system memory ========================
20:18:46.0122 4648 System memory - ok
20:18:46.0122 4648 ================ Scan services =============================
20:18:50.0808 4648 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
20:19:11.0494 4648 1394ohci - ok
20:19:11.0572 4648 [ DD81D91FF3B0763C392422865C9AC12E ] 1a34a8e0 C:\Windows\system32\rundll32.exe
20:19:11.0650 4648 1a34a8e0 - ok
20:19:11.0759 4648 [ B33CF4DE909A5B30F526D82053A63C8E ] ABBYY.Licensing.FineReader.Sprint.9.0 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
20:19:11.0790 4648 ABBYY.Licensing.FineReader.Sprint.9.0 - ok
20:19:11.0853 4648 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
20:19:11.0931 4648 ACDaemon - ok
20:19:11.0962 4648 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
20:19:11.0993 4648 ACPI - ok
20:19:12.0009 4648 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
20:19:12.0227 4648 AcpiPmi - ok
20:19:12.0352 4648 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:19:12.0368 4648 AdobeARMservice - ok
20:19:12.0477 4648 [ F7AB315A4D400CA876381D1E188A2E20 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
20:19:12.0508 4648 AdobeFlashPlayerUpdateSvc - ok
20:19:12.0586 4648 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
20:19:12.0648 4648 adp94xx - ok
20:19:12.0695 4648 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
20:19:12.0726 4648 adpahci - ok
20:19:12.0758 4648 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
20:19:12.0789 4648 adpu320 - ok
20:19:12.0851 4648 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
20:19:13.0584 4648 AeLookupSvc - ok
20:19:13.0647 4648 [ D1E343BC00136CE03C4D403194D06A80 ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
20:19:13.0662 4648 AERTFilters - ok
20:19:13.0772 4648 [ 6CCD1135320109D6B219F1A6E04AD9F6 ] Afc C:\Windows\syswow64\drivers\Afc.sys
20:19:13.0787 4648 Afc - ok
20:19:13.0834 4648 [ 79059559E89D06E8B80CE2944BE20228 ] AFD C:\Windows\system32\drivers\afd.sys
20:19:13.0912 4648 AFD - ok
20:19:13.0959 4648 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
20:19:13.0974 4648 agp440 - ok
20:19:14.0021 4648 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
20:19:14.0097 4648 ALG - ok
20:19:14.0150 4648 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
20:19:14.0173 4648 aliide - ok
20:19:14.0234 4648 [ 4EAAAAB8759644D572522FBCDD196A13 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
20:19:14.0302 4648 AMD External Events Utility - ok
20:19:14.0363 4648 AMD FUEL Service - ok
20:19:14.0408 4648 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
20:19:14.0433 4648 amdide - ok
20:19:14.0475 4648 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
20:19:14.0523 4648 AmdK8 - ok
20:19:14.0932 4648 [ 22A14DF59FB8D0BE918C597988AF4296 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
20:19:15.0183 4648 amdkmdag - ok
20:19:15.0233 4648 [ EE22D3ED6D55A855E709F811CCCA97ED ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
20:19:15.0283 4648 amdkmdap - ok
20:19:15.0320 4648 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
20:19:15.0372 4648 AmdPPM - ok
20:19:15.0409 4648 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
20:19:15.0439 4648 amdsata - ok
20:19:15.0463 4648 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
20:19:15.0491 4648 amdsbs - ok
20:19:15.0505 4648 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
20:19:15.0528 4648 amdxata - ok
20:19:15.0550 4648 [ 2FBB00A7616106B95104574C6CD640C2 ] amd_sata C:\Windows\system32\drivers\amd_sata.sys
20:19:15.0571 4648 amd_sata - ok
20:19:15.0600 4648 [ 87D0D7645CB0D53220649BD5FE15D93E ] amd_xata C:\Windows\system32\drivers\amd_xata.sys
20:19:15.0631 4648 amd_xata - ok
20:19:15.0674 4648 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
20:19:15.0803 4648 AppID - ok
20:19:15.0837 4648 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
20:19:15.0918 4648 AppIDSvc - ok
20:19:15.0971 4648 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
20:19:16.0004 4648 Appinfo - ok
20:19:16.0112 4648 [ F518545E5B7623AD49ABE7F8776EFA46 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:19:16.0132 4648 Apple Mobile Device - ok
20:19:16.0169 4648 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
20:19:16.0194 4648 arc - ok
20:19:16.0230 4648 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
20:19:16.0255 4648 arcsas - ok
20:19:16.0455 4648 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
20:19:16.0543 4648 aspnet_state - ok
20:19:16.0577 4648 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
20:19:16.0661 4648 AsyncMac - ok
20:19:16.0709 4648 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
20:19:16.0737 4648 atapi - ok
20:19:16.0784 4648 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
20:19:16.0878 4648 AudioEndpointBuilder - ok
20:19:16.0898 4648 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
20:19:16.0975 4648 AudioSrv - ok
20:19:17.0003 4648 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
20:19:17.0073 4648 AxInstSV - ok
20:19:17.0114 4648 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
20:19:17.0167 4648 b06bdrv - ok
20:19:17.0222 4648 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
20:19:17.0268 4648 b57nd60a - ok
20:19:17.0302 4648 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
20:19:17.0347 4648 BDESVC - ok
20:19:17.0358 4648 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
20:19:17.0435 4648 Beep - ok
20:19:17.0473 4648 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
20:19:17.0527 4648 BFE - ok
20:19:17.0576 4648 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll
20:19:17.0656 4648 BITS - ok
20:19:17.0689 4648 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
20:19:17.0723 4648 blbdrive - ok
20:19:17.0755 4648 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
20:19:17.0792 4648 Bonjour Service - ok
20:19:17.0850 4648 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
20:19:17.0894 4648 bowser - ok
20:19:17.0925 4648 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
20:19:17.0988 4648 BrFiltLo - ok
20:19:18.0003 4648 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
20:19:18.0034 4648 BrFiltUp - ok
20:19:18.0066 4648 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
20:19:18.0112 4648 Browser - ok
20:19:18.0159 4648 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
20:19:18.0237 4648 Brserid - ok
20:19:18.0253 4648 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
20:19:18.0300 4648 BrSerWdm - ok
20:19:18.0331 4648 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
20:19:18.0393 4648 BrUsbMdm - ok
20:19:18.0424 4648 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
20:19:18.0471 4648 BrUsbSer - ok
20:19:18.0502 4648 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
20:19:18.0549 4648 BTHMODEM - ok
20:19:18.0580 4648 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
20:19:18.0674 4648 bthserv - ok
20:19:18.0783 4648 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
20:19:18.0846 4648 c2cautoupdatesvc - ok
20:19:18.0924 4648 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
20:19:19.0002 4648 c2cpnrsvc - ok
20:19:19.0126 4648 [ A3AD13CA2747953DDD4C9AE4FB925BEC ] CalendarSynchService C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
20:19:19.0158 4648 CalendarSynchService ( UnsignedFile.Multi.Generic ) - warning
20:19:19.0158 4648 CalendarSynchService - detected UnsignedFile.Multi.Generic (1)
20:19:19.0205 4648 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
20:19:19.0283 4648 cdfs - ok
20:19:19.0314 4648 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
20:19:19.0361 4648 cdrom - ok
20:19:19.0423 4648 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
20:19:19.0501 4648 CertPropSvc - ok
20:19:19.0548 4648 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
20:19:19.0595 4648 circlass - ok
20:19:19.0610 4648 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
20:19:19.0641 4648 CLFS - ok
20:19:19.0782 4648 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
20:19:19.0813 4648 clr_optimization_v2.0.50727_32 - ok
20:19:19.0860 4648 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
20:19:19.0875 4648 clr_optimization_v2.0.50727_64 - ok
20:19:19.0953 4648 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
20:19:20.0421 4648 clr_optimization_v4.0.30319_32 - ok
20:19:20.0437 4648 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
20:19:20.0749 4648 clr_optimization_v4.0.30319_64 - ok
20:19:20.0843 4648 [ 50F92C943F18B070F166D019DFAB3D9A ] clwvd C:\Windows\system32\DRIVERS\clwvd.sys
20:19:20.0858 4648 clwvd - ok
20:19:20.0936 4648 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
20:19:20.0999 4648 CmBatt - ok
20:19:21.0045 4648 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
20:19:21.0077 4648 cmdide - ok
20:19:21.0123 4648 [ EBF28856F69CF094A902F884CF989706 ] CNG C:\Windows\system32\Drivers\cng.sys
20:19:21.0186 4648 CNG - ok
20:19:21.0186 4648 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
20:19:21.0217 4648 Compbatt - ok
20:19:21.0233 4648 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
20:19:21.0357 4648 CompositeBus - ok
20:19:21.0373 4648 COMSysApp - ok
20:19:21.0404 4648 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
20:19:21.0435 4648 crcdisk - ok
20:19:21.0482 4648 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
20:19:21.0545 4648 CryptSvc - ok
20:19:21.0591 4648 [ E6CE7188CC47AE5DAFDAF552D370C52F ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
20:19:21.0623 4648 dc3d - ok
20:19:21.0685 4648 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
20:19:21.0779 4648 DcomLaunch - ok
20:19:21.0794 4648 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
20:19:21.0888 4648 defragsvc - ok
20:19:21.0935 4648 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
20:19:21.0997 4648 DfsC - ok
20:19:22.0028 4648 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
20:19:22.0091 4648 Dhcp - ok
20:19:22.0106 4648 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
20:19:22.0184 4648 discache - ok
20:19:22.0215 4648 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
20:19:22.0247 4648 Disk - ok
20:19:22.0278 4648 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
20:19:22.0325 4648 Dnscache - ok
20:19:22.0356 4648 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
20:19:22.0434 4648 dot3svc - ok
20:19:22.0465 4648 [ B42ED0320C6E41102FDE0005154849BB ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys
20:19:22.0512 4648 Dot4 - ok
20:19:22.0527 4648 [ E9F5969233C5D89F3C35E3A66A52A361 ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys
20:19:22.0574 4648 Dot4Print - ok
20:19:22.0605 4648 [ FD05A02B0370BC3000F402E543CA5814 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys
20:19:22.0637 4648 dot4usb - ok
20:19:22.0668 4648 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
20:19:22.0746 4648 DPS - ok
20:19:22.0793 4648 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
20:19:22.0824 4648 drmkaud - ok
20:19:22.0886 4648 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
20:19:22.0934 4648 DXGKrnl - ok
20:19:22.0965 4648 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
20:19:23.0043 4648 EapHost - ok
20:19:23.0106 4648 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
20:19:23.0199 4648 ebdrv - ok
20:19:23.0230 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS C:\Windows\System32\lsass.exe
20:19:23.0293 4648 EFS - ok
20:19:23.0355 4648 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
20:19:23.0418 4648 ehRecvr - ok
20:19:23.0449 4648 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
20:19:23.0480 4648 ehSched - ok
20:19:23.0511 4648 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
20:19:23.0558 4648 elxstor - ok
20:19:23.0620 4648 [ 1E0764A8A8F39BAAEB271DA597422584 ] EpsonCustomerParticipation C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
20:19:23.0667 4648 EpsonCustomerParticipation - ok
20:19:23.0698 4648 [ 20ECD0A490A121CB34F553FAD1DBBD39 ] EpsonScanSvc C:\Windows\system32\EscSvc64.exe
20:19:23.0714 4648 EpsonScanSvc - ok
20:19:23.0730 4648 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
20:19:23.0776 4648 ErrDev - ok
20:19:23.0823 4648 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
20:19:23.0901 4648 EventSystem - ok
20:19:23.0933 4648 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
20:19:24.0027 4648 exfat - ok
20:19:24.0043 4648 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
20:19:24.0152 4648 fastfat - ok
20:19:24.0199 4648 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
20:19:24.0277 4648 Fax - ok
20:19:24.0339 4648 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
20:19:24.0386 4648 fdc - ok
20:19:24.0433 4648 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
20:19:24.0495 4648 fdPHost - ok
20:19:24.0526 4648 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
20:19:24.0604 4648 FDResPub - ok
20:19:24.0620 4648 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
20:19:24.0651 4648 FileInfo - ok
20:19:24.0698 4648 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
20:19:24.0963 4648 Filetrace - ok
20:19:25.0502 4648 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
20:19:25.0533 4648 flpydisk - ok
20:19:25.0580 4648 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
20:19:25.0611 4648 FltMgr - ok
20:19:25.0673 4648 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
20:19:25.0751 4648 FontCache - ok
20:19:25.0783 4648 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
20:19:25.0814 4648 FontCache3.0.0.0 - ok
20:19:25.0876 4648 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
20:19:25.0939 4648 FsDepends - ok
20:19:25.0970 4648 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
20:19:26.0017 4648 Fs_Rec - ok
20:19:26.0141 4648 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
20:19:26.0235 4648 fvevol - ok
20:19:26.0297 4648 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
20:19:26.0360 4648 gagp30kx - ok
20:19:26.0407 4648 [ C403C5DB49A0F9AAF4F2128EDC0106D8 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
20:19:26.0438 4648 GamesAppService - ok
20:19:26.0547 4648 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
20:19:26.0594 4648 GEARAspiWDM - ok
20:19:26.0656 4648 [ 14908F4F9005C29DE8F5587E271390EE ] gfibto C:\Windows\system32\drivers\gfibto.sys
20:19:26.0687 4648 gfibto - ok
20:19:26.0750 4648 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
20:19:26.0843 4648 gpsvc - ok
20:19:26.0953 4648 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:19:26.0968 4648 gupdate - ok
20:19:26.0984 4648 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:19:27.0015 4648 gupdatem - ok
20:19:27.0077 4648 [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
20:19:27.0109 4648 gusvc - ok
20:19:27.0155 4648 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
20:19:27.0265 4648 hcw85cir - ok
20:19:27.0343 4648 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
20:19:27.0405 4648 HdAudAddService - ok
20:19:27.0499 4648 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys
20:19:27.0577 4648 HDAudBus - ok
20:19:27.0608 4648 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
20:19:27.0639 4648 HidBatt - ok
20:19:27.0655 4648 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
20:19:27.0701 4648 HidBth - ok
20:19:27.0748 4648 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
20:19:27.0795 4648 HidIr - ok
20:19:27.0826 4648 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
20:19:27.0920 4648 hidserv - ok
20:19:27.0967 4648 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
20:19:27.0998 4648 HidUsb - ok
20:19:28.0045 4648 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
20:19:28.0123 4648 hkmsvc - ok
20:19:28.0154 4648 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
20:19:28.0216 4648 HomeGroupListener - ok
20:19:28.0247 4648 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
20:19:28.0294 4648 HomeGroupProvider - ok
20:19:28.0341 4648 [ 2A8B93A01621E100A578E83C768AFA2C ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
20:19:28.0357 4648 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - warning
20:19:28.0357 4648 HP Support Assistant Service - detected UnsignedFile.Multi.Generic (1)
20:19:28.0481 4648 [ 6A181452D4E240B8ECC7614B9A19BDE9 ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
20:19:28.0513 4648 HPClientSvc - ok
20:19:28.0669 4648 [ 1DAE5C46D42B02A6D5862E1482EFB390 ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
20:19:28.0700 4648 hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
20:19:28.0700 4648 hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
20:19:28.0762 4648 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
20:19:28.0793 4648 hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
20:19:28.0793 4648 hpqddsvc - detected UnsignedFile.Multi.Generic (1)
20:19:28.0981 4648 [ D2946D9F020AE76E9CEF9B4A6DF838C0 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
20:19:29.0043 4648 hpqwmiex - ok
20:19:29.0090 4648 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
20:19:29.0121 4648 HpSAMD - ok
20:19:29.0511 4648 [ F37882F128EFACEFE353E0BAE2766909 ] HPSLPSVC C:\Users\Wendy\AppData\Local\Temp\7zS420F\hpslpsvc64.dll
20:19:29.0573 4648 HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning
20:19:29.0573 4648 HPSLPSVC - detected UnsignedFile.Multi.Generic (1)
20:19:29.0636 4648 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
20:19:29.0870 4648 HTTP - ok
20:19:29.0885 4648 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
20:19:29.0917 4648 hwpolicy - ok
20:19:29.0963 4648 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys
20:19:29.0995 4648 i8042prt - ok
20:19:30.0026 4648 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
20:19:30.0073 4648 iaStorV - ok
20:19:30.0213 4648 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
20:19:30.0275 4648 idsvc - ok
20:19:30.0369 4648 IEEtwCollectorService - ok
20:19:30.0650 4648 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
20:19:31.0149 4648 igfx - ok
20:19:31.0243 4648 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
20:19:31.0305 4648 iirsp - ok
20:19:32.0023 4648 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll
20:19:32.0085 4648 IKEEXT - ok
20:19:32.0210 4648 [ 64B3B92710075149855F23CA3124FE2B ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
20:19:32.0319 4648 IntcAzAudAddService - ok
20:19:32.0366 4648 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
20:19:32.0397 4648 intelide - ok
20:19:32.0444 4648 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\drivers\intelppm.sys
20:19:32.0475 4648 intelppm - ok
20:19:32.0522 4648 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
20:19:32.0615 4648 IPBusEnum - ok
20:19:32.0647 4648 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
20:19:32.0740 4648 IpFilterDriver - ok
20:19:32.0771 4648 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
20:19:32.0834 4648 iphlpsvc - ok
20:19:32.0865 4648 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
20:19:32.0927 4648 IPMIDRV - ok
20:19:32.0943 4648 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
20:19:33.0037 4648 IPNAT - ok
20:19:33.0099 4648 [ 7E4F8065367AE5BA387262D57B868DF5 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
20:19:33.0131 4648 iPod Service - ok
20:19:33.0194 4648 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
20:19:33.0225 4648 IRENUM - ok
20:19:33.0256 4648 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
20:19:33.0287 4648 isapnp - ok
20:19:33.0303 4648 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
20:19:33.0350 4648 iScsiPrt - ok
20:19:33.0365 4648 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
20:19:33.0396 4648 kbdclass - ok
20:19:33.0412 4648 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
20:19:33.0490 4648 kbdhid - ok
20:19:33.0521 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso C:\Windows\system32\lsass.exe
20:19:33.0552 4648 KeyIso - ok
20:19:33.0599 4648 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
20:19:33.0615 4648 KSecDD - ok
20:19:33.0677 4648 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
20:19:33.0693 4648 KSecPkg - ok
20:19:33.0724 4648 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
20:19:33.0833 4648 ksthunk - ok
20:19:33.0864 4648 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
20:19:33.0989 4648 KtmRm - ok
20:19:34.0067 4648 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll
20:19:34.0146 4648 LanmanServer - ok
20:19:34.0193 4648 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
20:19:34.0271 4648 LanmanWorkstation - ok
20:19:34.0302 4648 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
20:19:34.0380 4648 lltdio - ok
20:19:34.0411 4648 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
20:19:34.0505 4648 lltdsvc - ok
20:19:34.0536 4648 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
20:19:34.0599 4648 lmhosts - ok
20:19:34.0661 4648 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
20:19:34.0692 4648 LSI_FC - ok
20:19:34.0708 4648 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
20:19:34.0739 4648 LSI_SAS - ok
20:19:34.0755 4648 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
20:19:34.0786 4648 LSI_SAS2 - ok
20:19:34.0801 4648 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
20:19:34.0833 4648 LSI_SCSI - ok
20:19:34.0864 4648 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
20:19:34.0942 4648 luafv - ok
20:19:35.0004 4648 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
20:19:35.0035 4648 Mcx2Svc - ok
20:19:35.0051 4648 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
20:19:35.0082 4648 megasas - ok
20:19:35.0113 4648 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
20:19:35.0145 4648 MegaSR - ok
20:19:35.0191 4648 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
20:19:35.0254 4648 MMCSS - ok
20:19:35.0269 4648 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
20:19:35.0363 4648 Modem - ok
20:19:35.0379 4648 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
20:19:35.0425 4648 monitor - ok
20:19:35.0472 4648 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
20:19:35.0488 4648 mouclass - ok
20:19:35.0519 4648 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
20:19:35.0581 4648 mouhid - ok
20:19:35.0597 4648 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
20:19:35.0628 4648 mountmgr - ok
20:19:35.0691 4648 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
20:19:35.0722 4648 MpFilter - ok
20:19:35.0784 4648 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
20:19:35.0815 4648 mpio - ok
20:19:35.0831 4648 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
20:19:35.0909 4648 mpsdrv - ok
20:19:35.0971 4648 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
20:19:36.0081 4648 MpsSvc - ok
20:19:36.0112 4648 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
20:19:36.0143 4648 MRxDAV - ok
20:19:36.0174 4648 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
20:19:36.0221 4648 mrxsmb - ok
20:19:36.0268 4648 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
20:19:36.0315 4648 mrxsmb10 - ok
20:19:36.0330 4648 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
20:19:36.0361 4648 mrxsmb20 - ok
20:19:36.0408 4648 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
20:19:36.0439 4648 msahci - ok
20:19:36.0471 4648 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
20:19:36.0502 4648 msdsm - ok
20:19:36.0533 4648 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
20:19:36.0595 4648 MSDTC - ok
20:19:36.0642 4648 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
20:19:36.0705 4648 Msfs - ok
20:19:36.0751 4648 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
20:19:36.0814 4648 mshidkmdf - ok
20:19:36.0876 4648 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
20:19:36.0907 4648 msisadrv - ok
20:19:36.0939 4648 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
20:19:37.0032 4648 MSiSCSI - ok
20:19:37.0048 4648 msiserver - ok
20:19:37.0079 4648 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
20:19:37.0157 4648 MSKSSRV - ok
20:19:37.0188 4648 [ 7675E15D1B2180745E4DA4D26AAD7385 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
20:19:37.0204 4648 MsMpSvc - ok
20:19:37.0251 4648 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
20:19:37.0313 4648 MSPCLOCK - ok
20:19:37.0329 4648 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
20:19:37.0407 4648 MSPQM - ok
20:19:37.0422 4648 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
20:19:37.0453 4648 MsRPC - ok
20:19:37.0500 4648 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
20:19:37.0516 4648 mssmbios - ok
20:19:37.0531 4648 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
20:19:37.0609 4648 MSTEE - ok
20:19:37.0641 4648 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
20:19:37.0687 4648 MTConfig - ok
20:19:37.0703 4648 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
20:19:37.0734 4648 Mup - ok
20:19:37.0765 4648 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
20:19:37.0859 4648 napagent - ok
20:19:37.0937 4648 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
20:19:38.0015 4648 NativeWifiP - ok
20:19:38.0093 4648 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
20:19:38.0140 4648 NDIS - ok
20:19:38.0155 4648 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
20:19:38.0233 4648 NdisCap - ok
20:19:38.0265 4648 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
20:19:38.0327 4648 NdisTapi - ok
20:19:38.0343 4648 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
20:19:38.0421 4648 Ndisuio - ok
20:19:38.0483 4648 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
20:19:38.0577 4648 NdisWan - ok
20:19:38.0592 4648 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
20:19:38.0670 4648 NDProxy - ok
20:19:38.0717 4648 [ D5AC41AE382738483FAFFBD7E373D49A ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
20:19:38.0733 4648 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:19:38.0733 4648 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:19:38.0748 4648 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
20:19:38.0826 4648 NetBIOS - ok
20:19:38.0842 4648 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
20:19:38.0920 4648 NetBT - ok
20:19:38.0935 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon C:\Windows\system32\lsass.exe
20:19:38.0951 4648 Netlogon - ok
20:19:38.0998 4648 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
20:19:39.0076 4648 Netman - ok
20:19:39.0154 4648 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:19:39.0201 4648 NetMsmqActivator - ok
20:19:39.0201 4648 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:19:39.0232 4648 NetPipeActivator - ok
20:19:39.0263 4648 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
20:19:39.0341 4648 netprofm - ok
20:19:39.0419 4648 [ 570813483F26B5C8D984BCA5BB70B50D ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys
20:19:39.0481 4648 netr28x - ok
20:19:39.0481 4648 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:19:39.0513 4648 NetTcpActivator - ok
20:19:39.0544 4648 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
20:19:39.0575 4648 NetTcpPortSharing - ok
20:19:39.0606 4648 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
20:19:39.0637 4648 nfrd960 - ok
20:19:39.0669 4648 [ ACE8C64C57E4A711473C8BC10ADF692B ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
20:19:39.0700 4648 NisDrv - ok
20:19:39.0731 4648 [ 6247E8B31ED0A9D6BC5A26276E49BEB3 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
20:19:39.0762 4648 NisSrv - ok
20:19:39.0809 4648 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
20:19:39.0871 4648 NlaSvc - ok
20:19:39.0918 4648 [ 351533ACC2A069B94E80BBFC177E8FDF ] NPF C:\Windows\system32\drivers\npf.sys
20:19:39.0934 4648 NPF - ok
20:19:39.0965 4648 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
20:19:40.0027 4648 Npfs - ok
20:19:40.0074 4648 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
20:19:40.0152 4648 nsi - ok
20:19:40.0168 4648 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
20:19:40.0230 4648 nsiproxy - ok
20:19:40.0324 4648 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
20:19:40.0433 4648 Ntfs - ok
20:19:40.0464 4648 [ A2F750E416D1C628BDCDC2075AC33BC6 ] NuidFltr C:\Windows\system32\DRIVERS\NuidFltr.sys
20:19:40.0495 4648 NuidFltr - ok
20:19:40.0527 4648 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
20:19:40.0589 4648 Null - ok
20:19:40.0667 4648 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
20:19:40.0698 4648 nvraid - ok
20:19:40.0729 4648 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
20:19:40.0745 4648 nvstor - ok
20:19:40.0776 4648 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
20:19:40.0807 4648 nv_agp - ok
20:19:40.0823 4648 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
20:19:40.0854 4648 ohci1394 - ok
20:19:40.0885 4648 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
20:19:40.0932 4648 p2pimsvc - ok
20:19:40.0963 4648 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
20:19:40.0995 4648 p2psvc - ok
20:19:41.0026 4648 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\drivers\parport.sys
20:19:41.0057 4648 Parport - ok
20:19:41.0088 4648 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
20:19:41.0104 4648 partmgr - ok
20:19:41.0119 4648 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
20:19:41.0166 4648 PcaSvc - ok
20:19:41.0182 4648 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
20:19:41.0213 4648 pci - ok
20:19:41.0244 4648 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
20:19:41.0275 4648 pciide - ok
20:19:41.0307 4648 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
20:19:41.0369 4648 pcmcia - ok
20:19:41.0385 4648 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
20:19:41.0400 4648 pcw - ok
20:19:41.0431 4648 pdfcDispatcher - ok
20:19:41.0463 4648 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
20:19:41.0556 4648 PEAUTH - ok
20:19:41.0665 4648 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
20:19:41.0712 4648 PerfHost - ok
20:19:41.0775 4648 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
20:19:41.0884 4648 pla - ok
20:19:41.0915 4648 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
20:19:41.0977 4648 PlugPlay - ok
20:19:42.0009 4648 [ 37F6046CDC630442D7DC087501FF6FC6 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
20:19:42.0040 4648 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
20:19:42.0040 4648 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic (1)
20:19:42.0087 4648 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
20:19:42.0118 4648 PNRPAutoReg - ok
20:19:42.0149 4648 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
20:19:42.0180 4648 PNRPsvc - ok
20:19:42.0211 4648 [ 32D374C60778253B81FA76C2FE19E155 ] Point64 C:\Windows\system32\DRIVERS\point64.sys
20:19:42.0227 4648 Point64 - ok
20:19:42.0289 4648 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
20:19:42.0399 4648 PolicyAgent - ok
20:19:42.0414 4648 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
20:19:42.0492 4648 Power - ok
20:19:42.0523 4648 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
20:19:42.0601 4648 PptpMiniport - ok
20:19:42.0633 4648 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
20:19:42.0664 4648 Processor - ok
20:19:42.0711 4648 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
20:19:42.0773 4648 ProfSvc - ok
20:19:42.0789 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage C:\Windows\system32\lsass.exe
20:19:42.0804 4648 ProtectedStorage - ok
20:19:42.0835 4648 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
20:19:42.0913 4648 Psched - ok
20:19:42.0945 4648 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
20:19:43.0023 4648 ql2300 - ok
20:19:43.0054 4648 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
20:19:43.0085 4648 ql40xx - ok
20:19:43.0163 4648 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
20:19:43.0241 4648 QWAVE - ok
20:19:43.0288 4648 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
20:19:43.0335 4648 QWAVEdrv - ok
20:19:43.0350 4648 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
20:19:43.0428 4648 RasAcd - ok
20:19:43.0444 4648 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
20:19:43.0506 4648 RasAgileVpn - ok
20:19:43.0537 4648 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
20:19:43.0615 4648 RasAuto - ok
20:19:43.0647 4648 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
20:19:43.0725 4648 Rasl2tp - ok
20:19:43.0818 4648 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
20:19:43.0896 4648 RasMan - ok
20:19:43.0912 4648 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
20:19:43.0990 4648 RasPppoe - ok
20:19:44.0005 4648 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
20:19:44.0083 4648 RasSstp - ok
20:19:44.0130 4648 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
20:19:44.0208 4648 rdbss - ok
20:19:44.0224 4648 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
20:19:44.0271 4648 rdpbus - ok
20:19:44.0286 4648 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
20:19:44.0349 4648 RDPCDD - ok
20:19:44.0364 4648 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
20:19:44.0442 4648 RDPENCDD - ok
20:19:44.0458 4648 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
20:19:44.0520 4648 RDPREFMP - ok
20:19:44.0583 4648 [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
20:19:44.0629 4648 RdpVideoMiniport - ok
20:19:44.0661 4648 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
20:19:44.0692 4648 RDPWD - ok
20:19:44.0739 4648 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
20:19:44.0770 4648 rdyboost - ok
20:19:44.0801 4648 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
20:19:44.0895 4648 RemoteAccess - ok
20:19:44.0941 4648 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
20:19:45.0035 4648 RemoteRegistry - ok
20:19:45.0051 4648 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
20:19:45.0129 4648 RpcEptMapper - ok
20:19:45.0160 4648 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
20:19:45.0207 4648 RpcLocator - ok
20:19:45.0222 4648 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll
20:19:45.0300 4648 RpcSs - ok
20:19:45.0347 4648 [ A56A70933B5511916C410836685B116A ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys
20:19:45.0378 4648 RSPCIESTOR - ok
20:19:45.0425 4648 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
20:19:45.0503 4648 rspndr - ok
20:19:45.0597 4648 [ 9140DB0911DE035FED0A9A77A2D156EA ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
20:19:45.0643 4648 RTL8167 - ok
20:19:45.0659 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs C:\Windows\system32\lsass.exe
20:19:45.0690 4648 SamSs - ok
20:19:45.0706 4648 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
20:19:45.0737 4648 sbp2port - ok
20:19:45.0784 4648 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
20:19:45.0846 4648 SCardSvr - ok
20:19:45.0877 4648 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
20:19:45.0955 4648 scfilter - ok
20:19:45.0987 4648 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
20:19:46.0080 4648 Schedule - ok
20:19:46.0111 4648 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
20:19:46.0174 4648 SCPolicySvc - ok
20:19:46.0189 4648 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
20:19:46.0236 4648 SDRSVC - ok
20:19:46.0267 4648 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
20:19:46.0345 4648 secdrv - ok
20:19:46.0392 4648 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
20:19:46.0455 4648 seclogon - ok
20:19:46.0455 4648 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
20:19:46.0548 4648 SENS - ok
20:19:46.0579 4648 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
20:19:46.0626 4648 SensrSvc - ok
20:19:46.0657 4648 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\drivers\serenum.sys
20:19:46.0689 4648 Serenum - ok
20:19:46.0720 4648 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\drivers\serial.sys
20:19:46.0751 4648 Serial - ok
20:19:46.0782 4648 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
20:19:46.0813 4648 sermouse - ok
20:19:46.0845 4648 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
20:19:46.0923 4648 SessionEnv - ok
20:19:46.0985 4648 [ 02DED435FCAA1C02959051AF636E154A ] sesvc C:\Program Files (x86)\ShadowExplorer\sesvc.exe
20:19:47.0016 4648 sesvc ( UnsignedFile.Multi.Generic ) - warning
20:19:47.0016 4648 sesvc - detected UnsignedFile.Multi.Generic (1)
20:19:47.0047 4648 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
20:19:47.0063 4648 sffdisk - ok
20:19:47.0094 4648 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
20:19:47.0141 4648 sffp_mmc - ok
20:19:47.0157 4648 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
20:19:47.0188 4648 sffp_sd - ok
20:19:47.0219 4648 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
20:19:47.0266 4648 sfloppy - ok
20:19:47.0297 4648 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
20:19:47.0391 4648 SharedAccess - ok
20:19:47.0422 4648 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:19:47.0500 4648 ShellHWDetection - ok
20:19:47.0531 4648 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
20:19:47.0547 4648 SiSRaid2 - ok
20:19:47.0562 4648 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
20:19:47.0593 4648 SiSRaid4 - ok
20:19:47.0656 4648 [ 50D9949020E02B847CD48F1243FCB895 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
20:19:47.0687 4648 SkypeUpdate - ok
20:19:47.0718 4648 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
20:19:47.0796 4648 Smb - ok
20:19:47.0827 4648 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
20:19:47.0859 4648 SNMPTRAP - ok
20:19:47.0968 4648 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
20:19:48.0015 4648 spldr - ok
20:19:48.0046 4648 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
20:19:48.0093 4648 Spooler - ok
20:19:48.0186 4648 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
20:19:48.0327 4648 sppsvc - ok
20:19:48.0342 4648 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
20:19:48.0420 4648 sppuinotify - ok
20:19:48.0451 4648 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
20:19:48.0498 4648 srv - ok
20:19:48.0529 4648 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
20:19:48.0576 4648 srv2 - ok
20:19:48.0592 4648 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
20:19:48.0607 4648 srvnet - ok
20:19:48.0670 4648 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
20:19:48.0748 4648 SSDPSRV - ok
20:19:48.0795 4648 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
20:19:48.0873 4648 SstpSvc - ok
20:19:48.0904 4648 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
20:19:48.0919 4648 stexstor - ok
20:19:48.0966 4648 [ DECACB6921DED1A38642642685D77DAC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
20:19:49.0013 4648 StillCam - ok
20:19:49.0044 4648 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
20:19:49.0091 4648 stisvc - ok
20:19:49.0107 4648 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys
20:19:49.0138 4648 swenum - ok
20:19:49.0185 4648 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
20:19:49.0278 4648 swprv - ok
20:19:49.0341 4648 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
20:19:49.0419 4648 SysMain - ok
20:19:49.0450 4648 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:19:49.0497 4648 TabletInputService - ok
20:19:49.0512 4648 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
20:19:49.0590 4648 TapiSrv - ok
20:19:49.0621 4648 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
20:19:49.0809 4648 TBS - ok
20:19:49.0887 4648 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
20:19:49.0965 4648 Tcpip - ok
20:19:49.0996 4648 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
20:19:50.0058 4648 TCPIP6 - ok
20:19:50.0089 4648 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
20:19:50.0121 4648 tcpipreg - ok
20:19:50.0167 4648 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
20:19:50.0214 4648 TDPIPE - ok
20:19:50.0245 4648 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
20:19:50.0292 4648 TDTCP - ok
20:19:50.0323 4648 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
20:19:50.0386 4648 tdx - ok
20:19:50.0417 4648 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys
20:19:50.0448 4648 TermDD - ok
20:19:50.0495 4648 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
20:19:50.0573 4648 TermService - ok
20:19:50.0589 4648 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
20:19:50.0620 4648 Themes - ok
20:19:50.0667 4648 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
20:19:50.0729 4648 THREADORDER - ok
20:19:50.0760 4648 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
20:19:50.0838 4648 TrkWks - ok
20:19:50.0885 4648 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:19:50.0979 4648 TrustedInstaller - ok
20:19:51.0025 4648 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
20:19:51.0103 4648 tssecsrv - ok
20:19:51.0166 4648 [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
20:19:51.0244 4648 TsUsbFlt - ok
20:19:51.0275 4648 [ AD64450A4ABE076F5CB34CC08EEACB07 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
20:19:51.0291 4648 TsUsbGD - ok
20:19:51.0322 4648 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
20:19:51.0384 4648 tunnel - ok
20:19:51.0431 4648 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
20:19:51.0447 4648 uagp35 - ok
20:19:51.0478 4648 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
20:19:51.0556 4648 udfs - ok
20:19:51.0603 4648 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
20:19:51.0634 4648 UI0Detect - ok
20:19:51.0649 4648 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
20:19:51.0681 4648 uliagpkx - ok
20:19:51.0696 4648 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
20:19:51.0727 4648 umbus - ok
20:19:51.0743 4648 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
20:19:51.0790 4648 UmPass - ok
20:19:51.0805 4648 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
20:19:51.0899 4648 upnphost - ok
20:19:51.0946 4648 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
20:19:51.0977 4648 USBAAPL64 - ok
20:19:52.0024 4648 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
20:19:52.0086 4648 usbccgp - ok
20:19:52.0117 4648 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
20:19:52.0164 4648 usbcir - ok
20:19:52.0211 4648 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
20:19:52.0242 4648 usbehci - ok
20:19:52.0273 4648 [ 573D192E268F0C5B486B7E96F661E538 ] usbfilter C:\Windows\system32\drivers\usbfilter.sys
20:19:52.0289 4648 usbfilter - ok
20:19:52.0320 4648 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
20:19:52.0351 4648 usbhub - ok
20:19:52.0383 4648 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
20:19:52.0414 4648 usbohci - ok
20:19:52.0445 4648 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
20:19:52.0492 4648 usbprint - ok
20:19:52.0523 4648 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\drivers\usbscan.sys
20:19:52.0554 4648 usbscan - ok
20:19:52.0570 4648 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:19:52.0632 4648 USBSTOR - ok
20:19:52.0648 4648 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
20:19:52.0679 4648 usbuhci - ok
20:19:52.0710 4648 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
20:19:52.0757 4648 usbvideo - ok
20:19:52.0773 4648 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
20:19:52.0851 4648 UxSms - ok
20:19:52.0866 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc C:\Windows\system32\lsass.exe
20:19:52.0897 4648 VaultSvc - ok
20:19:52.0929 4648 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
20:19:52.0960 4648 vdrvroot - ok
20:19:52.0991 4648 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
20:19:53.0069 4648 vds - ok
20:19:53.0116 4648 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
20:19:53.0147 4648 vga - ok
20:19:53.0163 4648 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
20:19:53.0225 4648 VgaSave - ok
20:19:53.0272 4648 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
20:19:53.0287 4648 vhdmp - ok
20:19:53.0319 4648 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
20:19:53.0350 4648 viaide - ok
20:19:53.0365 4648 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
20:19:53.0397 4648 volmgr - ok
20:19:53.0412 4648 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
20:19:53.0443 4648 volmgrx - ok
20:19:53.0459 4648 [ DF8126BD41180351A093A3AD2FC8903B ] volsnap C:\Windows\system32\drivers\volsnap.sys
20:19:53.0490 4648 volsnap - ok
20:19:53.0506 4648 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
20:19:53.0537 4648 vsmraid - ok
20:19:53.0584 4648 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
20:19:53.0693 4648 VSS - ok
20:19:53.0709 4648 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
20:19:53.0755 4648 vwifibus - ok
20:19:53.0771 4648 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
20:19:53.0818 4648 vwififlt - ok
20:19:53.0833 4648 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
20:19:53.0911 4648 W32Time - ok
20:19:53.0958 4648 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
20:19:53.0989 4648 WacomPen - ok
20:19:54.0005 4648 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
20:19:54.0083 4648 WANARP - ok
20:19:54.0099 4648 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
20:19:54.0161 4648 Wanarpv6 - ok
20:19:54.0208 4648 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
20:19:54.0270 4648 WatAdminSvc - ok
20:19:54.0317 4648 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
20:19:54.0395 4648 wbengine - ok
20:19:54.0411 4648 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
20:19:54.0457 4648 WbioSrvc - ok
20:19:54.0473 4648 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
20:19:54.0535 4648 wcncsvc - ok
20:19:54.0551 4648 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:19:54.0567 4648 WcsPlugInService - ok
20:19:54.0598 4648 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
20:19:54.0613 4648 Wd - ok
20:19:54.0676 4648 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
20:19:54.0738 4648 Wdf01000 - ok
20:19:54.0769 4648 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
20:19:54.0863 4648 WdiServiceHost - ok
20:19:54.0879 4648 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
20:19:54.0910 4648 WdiSystemHost - ok
20:19:54.0957 4648 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
20:19:54.0988 4648 WebClient - ok
20:19:55.0019 4648 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
20:19:55.0097 4648 Wecsvc - ok
20:19:55.0128 4648 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
20:19:55.0191 4648 wercplsupport - ok
20:19:55.0206 4648 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
20:19:55.0269 4648 WerSvc - ok
20:19:55.0300 4648 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
20:19:55.0362 4648 WfpLwf - ok
20:19:55.0393 4648 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
20:19:55.0409 4648 WIMMount - ok
20:19:55.0425 4648 WinDefend - ok
20:19:55.0456 4648 WinHttpAutoProxySvc - ok
20:19:55.0503 4648 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
20:19:55.0565 4648 Winmgmt - ok
20:19:55.0659 4648 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
20:19:55.0768 4648 WinRM - ok
20:19:55.0815 4648 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
20:19:55.0846 4648 WinUsb - ok
20:19:55.0877 4648 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
20:19:55.0924 4648 Wlansvc - ok
20:19:55.0971 4648 [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
20:19:56.0002 4648 wlcrasvc - ok
20:19:56.0080 4648 [ 2BACD71123F42CEA603F4E205E1AE337 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:19:56.0158 4648 wlidsvc - ok
20:19:56.0189 4648 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
20:19:56.0220 4648 WmiAcpi - ok
20:19:56.0251 4648 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
20:19:56.0298 4648 wmiApSrv - ok
20:19:56.0329 4648 WMPNetworkSvc - ok
20:19:56.0345 4648 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
20:19:56.0376 4648 WPCSvc - ok
20:19:56.0392 4648 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
20:19:56.0407 4648 WPDBusEnum - ok
20:19:56.0439 4648 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
20:19:56.0517 4648 ws2ifsl - ok
20:19:56.0532 4648 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll
20:19:56.0579 4648 wscsvc - ok
20:19:56.0579 4648 WSearch - ok
20:19:56.0688 4648 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
20:19:56.0782 4648 wuauserv - ok
20:19:56.0829 4648 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
20:19:56.0875 4648 WudfPf - ok
20:19:56.0907 4648 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
20:19:56.0938 4648 WUDFRd - ok
20:19:56.0985 4648 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
20:19:57.0016 4648 wudfsvc - ok
20:19:57.0047 4648 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
20:19:57.0109 4648 WwanSvc - ok
20:19:57.0125 4648 ================ Scan global ===============================
20:19:57.0141 4648 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
20:19:57.0187 4648 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
20:19:57.0203 4648 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
20:19:57.0234 4648 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
20:19:57.0297 4648 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
20:19:57.0297 4648 [Global] - ok
20:19:57.0297 4648 ================ Scan MBR ==================================
20:19:57.0328 4648 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:19:58.0217 4648 \Device\Harddisk0\DR0 - ok
20:19:58.0217 4648 ================ Scan VBR ==================================
20:19:58.0248 4648 [ 1470106AD3479F5DBF710BA510487A54 ] \Device\Harddisk0\DR0\Partition1
20:19:58.0264 4648 \Device\Harddisk0\DR0\Partition1 - ok
20:19:58.0279 4648 [ EE04B945AB654310768530EB73E64ED7 ] \Device\Harddisk0\DR0\Partition2
20:19:58.0295 4648 \Device\Harddisk0\DR0\Partition2 - ok
20:19:58.0357 4648 [ E5D5065C0A1D7B925EC4E41F2BC089B1 ] \Device\Harddisk0\DR0\Partition3
20:19:58.0389 4648 \Device\Harddisk0\DR0\Partition3 - ok
20:19:58.0389 4648 ================ Scan active images ========================
20:19:58.0404 4648 [ 3E588B60EC061686BA05D33574A344C6 ] C:\Windows\System32\drivers\crashdmp.sys
20:19:58.0404 4648 C:\Windows\System32\drivers\crashdmp.sys - ok
20:19:58.0420 4648 [ 9BBD8B5855BC6578957F82341F9CDE5A ] C:\Windows\System32\drivers\Diskdump.sys
20:19:58.0420 4648 C:\Windows\System32\drivers\Diskdump.sys - ok
20:19:58.0420 4648 [ 2FBB00A7616106B95104574C6CD640C2 ] C:\Windows\System32\drivers\amd_sata.sys
20:19:58.0420 4648 C:\Windows\System32\drivers\amd_sata.sys - ok
20:19:58.0435 4648 [ 814DB88F2641691575A455CF25354098 ] C:\Windows\System32\drivers\dumpfve.sys
20:19:58.0435 4648 C:\Windows\System32\drivers\dumpfve.sys - ok
20:19:58.0451 4648 [ F036CE71586E93D94DAB220D7BDF4416 ] C:\Windows\System32\drivers\cdrom.sys
20:19:58.0451 4648 C:\Windows\System32\drivers\cdrom.sys - ok
20:19:58.0451 4648 [ 16A47CE2DECC9B099349A5F840654746 ] C:\Windows\System32\drivers\beep.sys
20:19:58.0467 4648 C:\Windows\System32\drivers\beep.sys - ok
20:19:58.0467 4648 [ 9899284589F75FA8724FF3D16AED75C1 ] C:\Windows\System32\drivers\null.sys
20:19:58.0467 4648 C:\Windows\System32\drivers\null.sys - ok
20:19:58.0482 4648 [ 53E92A310193CB3C03BEA963DE7D9CFC ] C:\Windows\System32\drivers\vga.sys
20:19:58.0482 4648 C:\Windows\System32\drivers\vga.sys - ok
20:19:58.0498 4648 [ E7353D59C9842BC7299FAEB7E7E09340 ] C:\Windows\System32\drivers\videoprt.sys
20:19:58.0498 4648 C:\Windows\System32\drivers\videoprt.sys - ok
20:19:58.0498 4648 [ FC438D1430B28618E2D0C7C332A710AD ] C:\Windows\System32\drivers\watchdog.sys
20:19:58.0498 4648 C:\Windows\System32\drivers\watchdog.sys - ok
20:19:58.0513 4648 [ CEA6CC257FC9B7715F1C2B4849286D24 ] C:\Windows\System32\drivers\RDPCDD.sys
20:19:58.0513 4648 C:\Windows\System32\drivers\RDPCDD.sys - ok
20:19:58.0529 4648 [ BB5971A4F00659529A5C44831AF22365 ] C:\Windows\System32\drivers\RDPENCDD.sys
20:19:58.0529 4648 C:\Windows\System32\drivers\RDPENCDD.sys - ok
20:19:58.0529 4648 [ 216F3FA57533D98E1F74DED70113177A ] C:\Windows\System32\drivers\RDPREFMP.sys
20:19:58.0529 4648 C:\Windows\System32\drivers\RDPREFMP.sys - ok
20:19:58.0545 4648 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] C:\Windows\System32\drivers\msfs.sys
20:19:58.0545 4648 C:\Windows\System32\drivers\msfs.sys - ok
20:19:58.0560 4648 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] C:\Windows\System32\drivers\npfs.sys
20:19:58.0560 4648 C:\Windows\System32\drivers\npfs.sys - ok
20:19:58.0560 4648 [ 6F020A220388ECA0AB6062DC27BD16B6 ] C:\Windows\System32\drivers\tdi.sys
20:19:58.0560 4648 C:\Windows\System32\drivers\tdi.sys - ok
20:19:58.0576 4648 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] C:\Windows\System32\drivers\tdx.sys
20:19:58.0576 4648 C:\Windows\System32\drivers\tdx.sys - ok
20:19:58.0591 4648 [ 79059559E89D06E8B80CE2944BE20228 ] C:\Windows\System32\drivers\afd.sys
20:19:58.0591 4648 C:\Windows\System32\drivers\afd.sys - ok
20:19:58.0591 4648 [ 09594D1089C523423B32A4229263F068 ] C:\Windows\System32\drivers\netbt.sys
20:19:58.0591 4648 C:\Windows\System32\drivers\netbt.sys - ok
20:19:58.0607 4648 [ 611B23304BF067451A9FDEE01FBDD725 ] C:\Windows\System32\drivers\wfplwf.sys
20:19:58.0607 4648 C:\Windows\System32\drivers\wfplwf.sys - ok
20:19:58.0623 4648 [ 0557CF5A2556BD58E26384169D72438D ] C:\Windows\System32\drivers\pacer.sys
20:19:58.0623 4648 C:\Windows\System32\drivers\pacer.sys - ok
20:19:58.0638 4648 [ 6A3D66263414FF0D6FA754C646612F3F ] C:\Windows\System32\drivers\vwififlt.sys
20:19:58.0638 4648 C:\Windows\System32\drivers\vwififlt.sys - ok
20:19:58.0638 4648 [ 86743D9F5D2B1048062B14B1D84501C4 ] C:\Windows\System32\drivers\netbios.sys
20:19:58.0638 4648 C:\Windows\System32\drivers\netbios.sys - ok
20:19:58.0654 4648 [ 356AFD78A6ED4457169241AC3965230C ] C:\Windows\System32\drivers\wanarp.sys
20:19:58.0654 4648 C:\Windows\System32\drivers\wanarp.sys - ok
20:19:58.0669 4648 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] C:\Windows\System32\drivers\termdd.sys
20:19:58.0669 4648 C:\Windows\System32\drivers\termdd.sys - ok
20:19:58.0669 4648 [ 77F665941019A1594D887A74F301FA2F ] C:\Windows\System32\drivers\rdbss.sys
20:19:58.0669 4648 C:\Windows\System32\drivers\rdbss.sys - ok
20:19:58.0685 4648 [ E7F5AE18AF4168178A642A9247C63001 ] C:\Windows\System32\drivers\nsiproxy.sys
20:19:58.0685 4648 C:\Windows\System32\drivers\nsiproxy.sys - ok
20:19:58.0701 4648 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] C:\Windows\System32\drivers\mssmbios.sys
20:19:58.0701 4648 C:\Windows\System32\drivers\mssmbios.sys - ok
20:19:58.0701 4648 [ 13096B05847EC78F0977F2C0F79E9AB3 ] C:\Windows\System32\drivers\discache.sys
20:19:58.0701 4648 C:\Windows\System32\drivers\discache.sys - ok
20:19:58.0716 4648 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] C:\Windows\System32\drivers\dfsc.sys
20:19:58.0716 4648 C:\Windows\System32\drivers\dfsc.sys - ok
20:19:58.0732 4648 [ 61583EE3C3A17003C4ACD0475646B4D3 ] C:\Windows\System32\drivers\blbdrive.sys
20:19:58.0732 4648 C:\Windows\System32\drivers\blbdrive.sys - ok
20:19:58.0747 4648 [ 3566A8DAAFA27AF944F5D705EAA64894 ] C:\Windows\System32\drivers\tunnel.sys
20:19:58.0747 4648 C:\Windows\System32\drivers\tunnel.sys - ok
20:19:58.0747 4648 [ F0970A4BC8395659C22BF53D0FADF16F ] C:\Windows\System32\smss.exe
20:19:58.0747 4648 C:\Windows\System32\smss.exe - ok
20:19:58.0763 4648 [ CAAAC014C5C56A69F710B5F1B836DE22 ] C:\Windows\System32\ntdll.dll
20:19:58.0763 4648 C:\Windows\System32\ntdll.dll - ok
20:19:58.0779 4648 [ EE22D3ED6D55A855E709F811CCCA97ED ] C:\Windows\System32\drivers\atikmpag.sys
20:19:58.0779 4648 C:\Windows\System32\drivers\atikmpag.sys - ok
20:19:58.0779 4648 [ 22A14DF59FB8D0BE918C597988AF4296 ] C:\Windows\System32\drivers\atikmdag.sys
20:19:58.0779 4648 C:\Windows\System32\drivers\atikmdag.sys - ok
20:19:58.0794 4648 [ 88612F1CE3BF42256913BF6E61C70D52 ] C:\Windows\System32\drivers\dxgkrnl.sys
20:19:58.0794 4648 C:\Windows\System32\drivers\dxgkrnl.sys - ok
20:19:58.0810 4648 [ 1F04CFB79DD5FB7694468CE3FB3DCC31 ] C:\Windows\System32\drivers\dxgmms1.sys
20:19:58.0810 4648 C:\Windows\System32\drivers\dxgmms1.sys - ok
20:19:58.0810 4648 [ 6CCD1135320109D6B219F1A6E04AD9F6 ] C:\Windows\SysWOW64\drivers\afc.sys
20:19:58.0810 4648 C:\Windows\SysWOW64\drivers\afc.sys - ok
20:19:58.0825 4648 [ 8E98D21EE06192492A5671A6144D092F ] C:\Windows\System32\drivers\GEARAspiWDM.sys
20:19:58.0825 4648 C:\Windows\System32\drivers\GEARAspiWDM.sys - ok
20:19:58.0841 4648 [ 765A92D428A8DB88B960DA5A8D6089DC ] C:\Windows\System32\drivers\usbohci.sys
20:19:58.0841 4648 C:\Windows\System32\drivers\usbohci.sys - ok
20:19:58.0857 4648 [ 12FEB33791920678F8433701C822BCFD ] C:\Windows\System32\drivers\usbport.sys
20:19:58.0857 4648 C:\Windows\System32\drivers\usbport.sys - ok
20:19:58.0857 4648 [ 573D192E268F0C5B486B7E96F661E538 ] C:\Windows\System32\drivers\usbfilter.sys
20:19:58.0857 4648 C:\Windows\System32\drivers\usbfilter.sys - ok
20:19:58.0872 4648 [ 18A85013A3E0F7E1755365D287443965 ] C:\Windows\System32\drivers\usbehci.sys
20:19:58.0872 4648 C:\Windows\System32\drivers\usbehci.sys - ok
20:19:58.0888 4648 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] C:\Windows\System32\drivers\hdaudbus.sys
20:19:58.0888 4648 C:\Windows\System32\drivers\hdaudbus.sys - ok
20:19:58.0888 4648 [ 570813483F26B5C8D984BCA5BB70B50D ] C:\Windows\System32\drivers\netr28x.sys
20:19:58.0888 4648 C:\Windows\System32\drivers\netr28x.sys - ok
20:19:58.0903 4648 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] C:\Windows\System32\drivers\vwifibus.sys
20:19:58.0903 4648 C:\Windows\System32\drivers\vwifibus.sys - ok
20:19:58.0919 4648 [ 9140DB0911DE035FED0A9A77A2D156EA ] C:\Windows\System32\drivers\Rt64win7.sys
20:19:58.0919 4648 C:\Windows\System32\drivers\Rt64win7.sys - ok
20:19:58.0919 4648 [ A56A70933B5511916C410836685B116A ] C:\Windows\System32\drivers\RtsPStor.sys
20:19:58.0919 4648 C:\Windows\System32\drivers\RtsPStor.sys - ok
20:19:58.0935 4648 [ 1E56388B3FE0D031C44144EB8C4D6217 ] C:\Windows\System32\drivers\amdppm.sys
20:19:58.0935 4648 C:\Windows\System32\drivers\amdppm.sys - ok
20:19:58.0950 4648 [ 03EDB043586CCEBA243D689BDDA370A8 ] C:\Windows\System32\drivers\CompositeBus.sys
20:19:58.0950 4648 C:\Windows\System32\drivers\CompositeBus.sys - ok
20:19:58.0950 4648 [ 50F92C943F18B070F166D019DFAB3D9A ] C:\Windows\System32\drivers\clwvd.sys
20:19:58.0950 4648 C:\Windows\System32\drivers\clwvd.sys - ok
20:19:58.0966 4648 [ 24FBF5CC5C04150073C315A7C83521EE ] C:\Windows\System32\drivers\ks.sys
20:19:58.0966 4648 C:\Windows\System32\drivers\ks.sys - ok
20:19:58.0981 4648 [ 6869281E78CB31A43E969F06B57347C4 ] C:\Windows\System32\drivers\ksthunk.sys
20:19:58.0981 4648 C:\Windows\System32\drivers\ksthunk.sys - ok
20:19:58.0981 4648 [ 7ECFF9B22276B73F43A99A15A6094E90 ] C:\Windows\System32\drivers\agilevpn.sys
20:19:58.0981 4648 C:\Windows\System32\drivers\agilevpn.sys - ok
20:19:58.0997 4648 [ 30639C932D9FEF22B31268FE25A1B6E5 ] C:\Windows\System32\drivers\ndistapi.sys
20:19:58.0997 4648 C:\Windows\System32\drivers\ndistapi.sys - ok
20:19:59.0013 4648 [ 471815800AE33E6F1C32FB1B97C490CA ] C:\Windows\System32\drivers\rasl2tp.sys
20:19:59.0013 4648 C:\Windows\System32\drivers\rasl2tp.sys - ok
20:19:59.0028 4648 [ 53F7305169863F0A2BDDC49E116C2E11 ] C:\Windows\System32\drivers\ndiswan.sys
20:19:59.0028 4648 C:\Windows\System32\drivers\ndiswan.sys - ok
20:19:59.0028 4648 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] C:\Windows\System32\drivers\raspppoe.sys
20:19:59.0028 4648 C:\Windows\System32\drivers\raspppoe.sys - ok
20:19:59.0044 4648 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] C:\Windows\System32\drivers\raspptp.sys
20:19:59.0044 4648 C:\Windows\System32\drivers\raspptp.sys - ok
20:19:59.0059 4648 [ E8B1E447B008D07FF47D016C2B0EEECB ] C:\Windows\System32\drivers\rassstp.sys
20:19:59.0059 4648 C:\Windows\System32\drivers\rassstp.sys - ok
20:19:59.0059 4648 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] C:\Windows\System32\drivers\kbdclass.sys
20:19:59.0059 4648 C:\Windows\System32\drivers\kbdclass.sys - ok
20:19:59.0075 4648 [ 7D27EA49F3C1F687D357E77A470AEA99 ] C:\Windows\System32\drivers\mouclass.sys
20:19:59.0075 4648 C:\Windows\System32\drivers\mouclass.sys - ok
20:19:59.0091 4648 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] C:\Windows\System32\drivers\swenum.sys
20:19:59.0091 4648 C:\Windows\System32\drivers\swenum.sys - ok
20:19:59.0091 4648 [ DC54A574663A895C8763AF0FA1FF7561 ] C:\Windows\System32\drivers\umbus.sys
20:19:59.0091 4648 C:\Windows\System32\drivers\umbus.sys - ok
20:19:59.0106 4648 [ 8D1196CFBB223621F2C67D45710F25BA ] C:\Windows\System32\drivers\usbhub.sys
20:19:59.0106 4648 C:\Windows\System32\drivers\usbhub.sys - ok
20:19:59.0122 4648 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] C:\Windows\System32\drivers\ndproxy.sys
20:19:59.0122 4648 C:\Windows\System32\drivers\ndproxy.sys - ok
20:19:59.0122 4648 [ E0D3CD5841E5C7BE7B94BA946AF1E498 ] C:\Windows\System32\drivers\drmk.sys
20:19:59.0137 4648 C:\Windows\System32\drivers\drmk.sys - ok
20:19:59.0137 4648 [ 1E0B4CBBA91C6B041A14ECC2186F7E24 ] C:\Windows\System32\drivers\portcls.sys
20:19:59.0137 4648 C:\Windows\System32\drivers\portcls.sys - ok
20:19:59.0153 4648 [ 64B3B92710075149855F23CA3124FE2B ] C:\Windows\System32\drivers\RTKVHD64.sys
20:19:59.0153 4648 C:\Windows\System32\drivers\RTKVHD64.sys - ok
20:19:59.0169 4648 [ 3B536A8BEC3B4F23FFDFD78B11A2AB93 ] C:\Windows\System32\autochk.exe
20:19:59.0169 4648 C:\Windows\System32\autochk.exe - ok
20:19:59.0169 4648 [ 6C60B5ACA7442EFB794082CDACFC001C ] C:\Windows\System32\ole32.dll
20:19:59.0169 4648 C:\Windows\System32\ole32.dll - ok
20:19:59.0184 4648 [ FFA06EF43987ED0DD42AD59B260C0C78 ] C:\Windows\System32\drivers\usbd.sys
20:19:59.0184 4648 C:\Windows\System32\drivers\usbd.sys - ok
20:19:59.0184 4648 [ DCA68B0943D6FA415F0C56C92158A83A ] C:\Windows\System32\drivers\usbccgp.sys
20:19:59.0184 4648 C:\Windows\System32\drivers\usbccgp.sys - ok
20:19:59.0200 4648 [ 597C3699384E53CC59587ED50CCE5CA2 ] C:\Windows\System32\drivers\hidclass.sys
20:19:59.0200 4648 C:\Windows\System32\drivers\hidclass.sys - ok
20:19:59.0215 4648 [ 856E76B3641746ABBC2946BED1372098 ] C:\Windows\System32\drivers\hidparse.sys
20:19:59.0215 4648 C:\Windows\System32\drivers\hidparse.sys - ok
20:19:59.0215 4648 [ 9592090A7E2B61CD582B612B6DF70536 ] C:\Windows\System32\drivers\hidusb.sys
20:19:59.0215 4648 C:\Windows\System32\drivers\hidusb.sys - ok
20:19:59.0231 4648 [ B4F29F65AD3114051F01E9403346047F ] C:\Windows\System32\imagehlp.dll
20:19:59.0231 4648 C:\Windows\System32\imagehlp.dll - ok
20:19:59.0247 4648 [ A2F750E416D1C628BDCDC2075AC33BC6 ] C:\Windows\System32\drivers\nuidfltr.sys
20:19:59.0247 4648 C:\Windows\System32\drivers\nuidfltr.sys - ok
20:19:59.0247 4648 [ 263B6E451526A90FF8B1CEC759F22956 ] C:\Windows\System32\wininet.dll
20:19:59.0247 4648 C:\Windows\System32\wininet.dll - ok
20:19:59.0262 4648 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] C:\Windows\System32\drivers\mouhid.sys
20:19:59.0262 4648 C:\Windows\System32\drivers\mouhid.sys - ok
20:19:59.0278 4648 [ 32D374C60778253B81FA76C2FE19E155 ] C:\Windows\System32\drivers\point64.sys
20:19:59.0278 4648 C:\Windows\System32\drivers\point64.sys - ok
20:19:59.0278 4648 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] C:\Windows\System32\drivers\kbdhid.sys
20:19:59.0278 4648 C:\Windows\System32\drivers\kbdhid.sys - ok
20:19:59.0293 4648 [ AD662B34B161198B9D66A564EDDA7D43 ] C:\Windows\System32\shell32.dll
20:19:59.0293 4648 C:\Windows\System32\shell32.dll - ok
20:19:59.0309 4648 [ 1F775DA4CF1A3A1834207E975A72E9D7 ] C:\Windows\System32\drivers\usbvideo.sys
20:19:59.0309 4648 C:\Windows\System32\drivers\usbvideo.sys - ok
20:19:59.0309 4648 [ C431EAF5CAA1C82CAC2534A2EAB348A3 ] C:\Windows\System32\msctf.dll
20:19:59.0309 4648 C:\Windows\System32\msctf.dll - ok
20:19:59.0325 4648 [ 4BBFA57F594F7E8A8EDC8F377184C3F0 ] C:\Windows\System32\ws2_32.dll
20:19:59.0325 4648 C:\Windows\System32\ws2_32.dll - ok
20:19:59.0340 4648 [ 6300AD525D639CECBB3D144B6D7B30F9 ] C:\Windows\System32\iertutil.dll
20:19:59.0340 4648 C:\Windows\System32\iertutil.dll - ok
20:19:59.0356 4648 [ F7CE0C81C545364020ED8203CF0A633E ] C:\Windows\System32\difxapi.dll
20:19:59.0356 4648 C:\Windows\System32\difxapi.dll - ok
20:19:59.0356 4648 [ 25983DE69B57142039AC8D95E71CD9C9 ] C:\Windows\System32\clbcatq.dll
20:19:59.0356 4648 C:\Windows\System32\clbcatq.dll - ok
20:19:59.0371 4648 [ D87E1E59C73C1F98D5DED5B3850C40F5 ] C:\Windows\System32\psapi.dll
20:19:59.0371 4648 C:\Windows\System32\psapi.dll - ok
20:19:59.0387 4648 [ AA2C08CE85653B1A0D2E4AB407FA176C ] C:\Windows\System32\imm32.dll
20:19:59.0387 4648 C:\Windows\System32\imm32.dll - ok
20:19:59.0387 4648 [ 044FE45FFD6AD40E3BBBE60B7F41BABE ] C:\Windows\System32\nsi.dll
20:19:59.0387 4648 C:\Windows\System32\nsi.dll - ok
20:19:59.0403 4648 [ 9835E63E09F824D22B689D2BB789BAB9 ] C:\Windows\System32\comdlg32.dll
20:19:59.0403 4648 C:\Windows\System32\comdlg32.dll - ok
20:19:59.0418 4648 [ 796B47A4B82EF1C39F13435B88834C48 ] C:\Windows\System32\lpk.dll
20:19:59.0418 4648 C:\Windows\System32\lpk.dll - ok
20:19:59.0418 4648 [ 4E4FFB09D895AA000DD56D1404F69A7E ] C:\Windows\System32\Wldap32.dll
20:19:59.0418 4648 C:\Windows\System32\Wldap32.dll - ok
20:19:59.0434 4648 [ 83404DCBCE4925B6A5A77C5170F46D86 ] C:\Windows\System32\sechost.dll
20:19:59.0434 4648 C:\Windows\System32\sechost.dll - ok
20:19:59.0449 4648 [ EAF32CB8C1F810E4715B4DFBE785C7FF ] C:\Windows\System32\shlwapi.dll
20:19:59.0449 4648 C:\Windows\System32\shlwapi.dll - ok
20:19:59.0449 4648 [ 26036E228D2467DE6975AD819C22C043 ] C:\Windows\System32\rpcrt4.dll
20:19:59.0449 4648 C:\Windows\System32\rpcrt4.dll - ok
20:19:59.0465 4648 [ 28C0B5024F5C5A438E78B188CFC81B7F ] C:\Windows\System32\normaliz.dll
20:19:59.0465 4648 C:\Windows\System32\normaliz.dll - ok
20:19:59.0481 4648 [ D8973E71F1B35CD3F3DEA7C12D49D0F0 ] C:\Windows\System32\kernel32.dll
20:19:59.0481 4648 C:\Windows\System32\kernel32.dll - ok
20:19:59.0481 4648 [ 56325BB1FF19F2A5AC8713756AC41140 ] C:\Windows\System32\gdi32.dll
20:19:59.0481 4648 C:\Windows\System32\gdi32.dll - ok
20:19:59.0496 4648 [ FE70103391A64039A921DBFFF9C7AB1B ] C:\Windows\System32\user32.dll
20:19:59.0496 4648 C:\Windows\System32\user32.dll - ok
20:19:59.0512 4648 [ 5D8E6C95156ED1F79A63D1EADE6F9ED5 ] C:\Windows\System32\setupapi.dll
20:19:59.0512 4648 C:\Windows\System32\setupapi.dll - ok
20:19:59.0512 4648 [ 22874047B810B5B174C68ACD7C0B6510 ] C:\Windows\System32\urlmon.dll
20:19:59.0512 4648 C:\Windows\System32\urlmon.dll - ok
20:19:59.0527 4648 [ DBF99FD9CAF75CA66D042BD8D050FF71 ] C:\Windows\System32\usp10.dll
20:19:59.0527 4648 C:\Windows\System32\usp10.dll - ok
20:19:59.0543 4648 [ C06B32165E23A72A898B7A89679AD754 ] C:\Windows\System32\oleaut32.dll
20:19:59.0543 4648 C:\Windows\System32\oleaut32.dll - ok
20:19:59.0543 4648 [ C391FC68282A000CDF953F8B6B55D2EF ] C:\Windows\System32\msvcrt.dll
20:19:59.0543 4648 C:\Windows\System32\msvcrt.dll - ok
20:19:59.0559 4648 [ 63A580C88CFAF72A92550940054569EF ] C:\Windows\System32\advapi32.dll
20:19:59.0559 4648 C:\Windows\System32\advapi32.dll - ok
20:19:59.0574 4648 [ 72723D3E4781BADC62C3180C137E7B23 ] C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
20:19:59.0574 4648 C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll - ok
20:19:59.0590 4648 [ 9094039A00485F71C4DE64BF51F64C46 ] C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
20:19:59.0590 4648 C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll - ok
20:19:59.0590 4648 [ B22C00ED0491FD7B8803D7DDE2849F4C ] C:\Windows\System32\KernelBase.dll
20:19:59.0590 4648 C:\Windows\System32\KernelBase.dll - ok
20:19:59.0605 4648 [ 64A4AB126E24FD3F58EBE64852773DB5 ] C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
20:19:59.0605 4648 C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
20:19:59.0621 4648 [ 2477A28081BDAEE622CF045ACF8EE124 ] C:\Windows\System32\cfgmgr32.dll
20:19:59.0621 4648 C:\Windows\System32\cfgmgr32.dll - ok
20:19:59.0637 4648 [ F49E92B50CED5C9F1725D3C0329FD933 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
20:19:59.0637 4648 C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
20:19:59.0637 4648 [ 0E6FBF19D9DFBB77316C23DF91F8A101 ] C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
20:19:59.0637 4648 C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
20:19:59.0652 4648 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\System32\comctl32.dll
20:19:59.0652 4648 C:\Windows\System32\comctl32.dll - ok
20:19:59.0668 4648 [ 06FEC9E8117103BB1141A560E98077DA ] C:\Windows\System32\devobj.dll
20:19:59.0668 4648 C:\Windows\System32\devobj.dll - ok
20:19:59.0668 4648 [ 959041D7014C97133D859B45BCA0FC58 ] C:\Windows\System32\wintrust.dll
20:19:59.0668 4648 C:\Windows\System32\wintrust.dll - ok
20:19:59.0683 4648 [ AFC3DB5C6EB8CA8017DDB81D6C0AD02A ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
20:19:59.0683 4648 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
20:19:59.0699 4648 [ 780F6ECC4F55D76C9730E6B6C9B31913 ] C:\Windows\System32\crypt32.dll
20:19:59.0699 4648 C:\Windows\System32\crypt32.dll - ok
20:19:59.0699 4648 [ 884415BD4269C02EAF8E2613BF85500D ] C:\Windows\System32\msasn1.dll
20:19:59.0699 4648 C:\Windows\System32\msasn1.dll - ok
20:19:59.0715 4648 [ 9C278785347BCC991F8EA2999D90F58D ] C:\Windows\SysWOW64\normaliz.dll
20:19:59.0715 4648 C:\Windows\SysWOW64\normaliz.dll - ok
20:19:59.0730 4648 [ BF24D6F2ED97FE830BFD52B246F98E67 ] C:\Windows\System32\drivers\dxapi.sys
20:19:59.0730 4648 C:\Windows\System32\drivers\dxapi.sys - ok
20:19:59.0746 4648 [ F2BF71FCEAB8FB8A691408C478E2FF4C ] C:\Windows\System32\win32k.sys
20:19:59.0746 4648 C:\Windows\System32\win32k.sys - ok
20:19:59.0746 4648 [ 60C2862B4BF0FD9F582EF344C2B1EC72 ] C:\Windows\System32\csrss.exe
20:19:59.0746 4648 C:\Windows\System32\csrss.exe - ok
20:19:59.0761 4648 [ 216BABD555BC550952320EEA89C25DDF ] C:\Windows\System32\csrsrv.dll
20:19:59.0761 4648 C:\Windows\System32\csrsrv.dll - ok
20:19:59.0777 4648 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\System32\basesrv.dll
20:19:59.0777 4648 C:\Windows\System32\basesrv.dll - ok
20:19:59.0793 4648 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\System32\winsrv.dll
20:19:59.0793 4648 C:\Windows\System32\winsrv.dll - ok
20:19:59.0793 4648 [ B03D591DC7DA45ECE20B3B467E6AADAA ] C:\Windows\System32\drivers\monitor.sys
20:19:59.0793 4648 C:\Windows\System32\drivers\monitor.sys - ok
20:19:59.0808 4648 [ F29FE765E1448EF371CFE05BFAC74ADB ] C:\Windows\System32\tsddd.dll
20:19:59.0808 4648 C:\Windows\System32\tsddd.dll - ok
20:19:59.0824 4648 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\System32\sxssrv.dll
20:19:59.0824 4648 C:\Windows\System32\sxssrv.dll - ok
20:19:59.0824 4648 [ 94355C28C1970635A31B3FE52EB7CEBA ] C:\Windows\System32\wininit.exe
20:19:59.0824 4648 C:\Windows\System32\wininit.exe - ok
20:19:59.0839 4648 [ 2C942733A5983DD4502219FF37C7EBC7 ] C:\Windows\System32\profapi.dll
20:19:59.0839 4648 C:\Windows\System32\profapi.dll - ok
20:19:59.0855 4648 [ 2CF92B295DC74DC89FBFF888F30EA912 ] C:\PROGRA~2\WS_X64~1.ENA
20:19:59.0855 4648 C:\PROGRA~2\WS_X64~1.ENA - ok
20:19:59.0855 4648 [ 943F527DF79E6B400104341AA7023C75 ] C:\Windows\System32\cdd.dll
20:19:59.0855 4648 C:\Windows\System32\cdd.dll - ok
20:19:59.0871 4648 [ C2A8CB1275ECB85D246A9ECC02A728E3 ] C:\Windows\System32\RpcRtRemote.dll
20:19:59.0871 4648 C:\Windows\System32\RpcRtRemote.dll - ok
20:19:59.0886 4648 [ 78523A26F5604C0568FE9D1CE86E36F4 ] C:\Windows\System32\KBDUS.DLL
20:19:59.0886 4648 C:\Windows\System32\KBDUS.DLL - ok
20:19:59.0902 4648 [ 1151B1BAA6F350B1DB6598E0FEA7C457 ] C:\Windows\System32\winlogon.exe
20:19:59.0902 4648 C:\Windows\System32\winlogon.exe - ok
20:19:59.0902 4648 [ 0D9764D58C5EFD672B7184854B152E5E ] C:\Windows\System32\winsta.dll
20:19:59.0902 4648 C:\Windows\System32\winsta.dll - ok
20:19:59.0917 4648 [ B26B1801356760841C3BC69F9F91537F ] C:\Windows\System32\WlS0WndH.dll
20:19:59.0917 4648 C:\Windows\System32\WlS0WndH.dll - ok
20:19:59.0933 4648 [ 9CEAD32E79A62150FE9F8557E58E008B ] C:\Windows\System32\sxs.dll
20:19:59.0933 4648 C:\Windows\System32\sxs.dll - ok
20:19:59.0949 4648 [ 784FA3DF338E2E8F5F0389D6FAC428AF ] C:\Windows\System32\cryptbase.dll
20:19:59.0949 4648 C:\Windows\System32\cryptbase.dll - ok
20:19:59.0964 4648 [ 90499F3163A9F815CF196A205EA3CD5D ] C:\Windows\System32\apphelp.dll
20:19:59.0964 4648 C:\Windows\System32\apphelp.dll - ok
20:19:59.0964 4648 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\System32\services.exe
20:19:59.0964 4648 C:\Windows\System32\services.exe - ok
20:19:59.0980 4648 [ 4D71227301DD8D09097B9E4CC6527E5A ] C:\Windows\System32\lsass.exe
20:19:59.0980 4648 C:\Windows\System32\lsass.exe - ok
20:19:59.0980 4648 [ 9662EE182644511439F1C53745DC1C88 ] C:\Windows\System32\lsm.exe
20:19:59.0980 4648 C:\Windows\System32\lsm.exe - ok
20:19:59.0995 4648 [ B08EA91C774AA734E0B9881F85CD9F42 ] C:\Windows\System32\sspicli.dll
20:19:59.0995 4648 C:\Windows\System32\sspicli.dll - ok
20:20:00.0011 4648 [ 7C46EC9CCDE6E793713FA01DB2EB918E ] C:\Windows\System32\sspisrv.dll
20:20:00.0011 4648 C:\Windows\System32\sspisrv.dll - ok
20:20:00.0011 4648 [ 086F906B1D30C0A5D35FE0F6362DAB21 ] C:\Windows\System32\lsasrv.dll
20:20:00.0011 4648 C:\Windows\System32\lsasrv.dll - ok
20:20:00.0027 4648 [ 68083118797CAF30FB2EA3E71494D67E ] C:\Windows\System32\sysntfy.dll
20:20:00.0027 4648 C:\Windows\System32\sysntfy.dll - ok
20:20:00.0042 4648 [ E914A50A151DFFE63D3935226DB5E2C1 ] C:\Windows\System32\scext.dll
20:20:00.0042 4648 C:\Windows\System32\scext.dll - ok
20:20:00.0058 4648 [ DEE7267C5D232A3B816866872CE199E6 ] C:\Windows\System32\wmsgapi.dll
20:20:00.0058 4648 C:\Windows\System32\wmsgapi.dll - ok
20:20:00.0058 4648 [ 208EAAFF40DA400190AA0605C797BEA2 ] C:\Windows\System32\secur32.dll
20:20:00.0058 4648 C:\Windows\System32\secur32.dll - ok
20:20:00.0073 4648 [ BBCDF350817BA86416C0F06B6981BE8D ] C:\Windows\System32\scesrv.dll
20:20:00.0073 4648 C:\Windows\System32\scesrv.dll - ok
20:20:00.0089 4648 [ 3A9C9BAF610B0DD4967086040B3B62A9 ] C:\Windows\System32\srvcli.dll
20:20:00.0089 4648 C:\Windows\System32\srvcli.dll - ok
20:20:00.0089 4648 [ A744BA6E04C8AA4592818178DBF89521 ] C:\Windows\System32\samsrv.dll
20:20:00.0089 4648 C:\Windows\System32\samsrv.dll - ok
20:20:00.0105 4648 [ 3A061472B38233BAFF9CFEFF2E49C46B ] C:\Windows\System32\cryptdll.dll
20:20:00.0105 4648 C:\Windows\System32\cryptdll.dll - ok
20:20:00.0120 4648 [ 3C073B0C596A0AF84933E7406766B040 ] C:\Windows\System32\wevtapi.dll
20:20:00.0120 4648 C:\Windows\System32\wevtapi.dll - ok
20:20:00.0136 4648 [ 7FBEBD2229EA5FD48D41B199EC2D541C ] C:\Windows\System32\authz.dll
20:20:00.0136 4648 C:\Windows\System32\authz.dll - ok
20:20:00.0136 4648 [ 86FE1B1F8FD42CD0DB641AB1CDB13093 ] C:\Windows\System32\cngaudit.dll
20:20:00.0136 4648 C:\Windows\System32\cngaudit.dll - ok
20:20:00.0151 4648 [ 747B9BA5412422F27934CB21131F0A3E ] C:\Windows\System32\ncrypt.dll
20:20:00.0151 4648 C:\Windows\System32\ncrypt.dll - ok
20:20:00.0167 4648 [ B9A95365E52F421A20E1501935FADDA5 ] C:\Windows\System32\bcrypt.dll
20:20:00.0167 4648 C:\Windows\System32\bcrypt.dll - ok
20:20:00.0167 4648 [ 02B64609F865A39365FF88580DF11738 ] C:\Windows\System32\msprivs.dll
20:20:00.0167 4648 C:\Windows\System32\msprivs.dll - ok
20:20:00.0183 4648 [ C6505DE3561537BA1004D638C2F93F2F ] C:\Windows\System32\netjoin.dll
20:20:00.0183 4648 C:\Windows\System32\netjoin.dll - ok
20:20:00.0198 4648 [ 50532FCD7ECF02DD169CE5C485F02534 ] C:\Windows\System32\negoexts.dll
20:20:00.0198 4648 C:\Windows\System32\negoexts.dll - ok
20:20:00.0214 4648 [ 44E1A196DFCB53B01FE4B855C3B56A15 ] C:\Windows\System32\kerberos.dll
20:20:00.0214 4648 C:\Windows\System32\kerberos.dll - ok
20:20:00.0214 4648 [ D0C2FBB6D97416B0166478FC7AE2B212 ] C:\Windows\System32\cryptsp.dll
20:20:00.0214 4648 C:\Windows\System32\cryptsp.dll - ok
20:20:00.0229 4648 [ 9A9F9F1A77D6A80EE28B57664F00013E ] C:\Windows\System32\mswsock.dll
20:20:00.0229 4648 C:\Windows\System32\mswsock.dll - ok
20:20:00.0245 4648 [ EC7CBFF96B05ECF3D366355B3C64ADCF ] C:\Windows\System32\wship6.dll
20:20:00.0245 4648 C:\Windows\System32\wship6.dll - ok
20:20:00.0245 4648 [ EF12B8385AA2849999008A977918F96B ] C:\Windows\System32\msv1_0.dll
20:20:00.0245 4648 C:\Windows\System32\msv1_0.dll - ok
20:20:00.0261 4648 [ AA339DD8BB128EF66660DFBBB59043D3 ] C:\Windows\System32\netlogon.dll
20:20:00.0261 4648 C:\Windows\System32\netlogon.dll - ok
20:20:00.0276 4648 [ E1BB958681BE311E7CFF06CFEC5F1F2B ] C:\Windows\System32\atmfd.dll
20:20:00.0276 4648 C:\Windows\System32\atmfd.dll - ok
20:20:00.0276 4648 [ 492D07D79E7024CA310867B526D9636D ] C:\Windows\System32\dnsapi.dll
20:20:00.0276 4648 C:\Windows\System32\dnsapi.dll - ok
20:20:00.0292 4648 [ 8FFE297B8449386E7B6851458B6E474E ] C:\Windows\System32\logoncli.dll
20:20:00.0292 4648 C:\Windows\System32\logoncli.dll - ok
20:20:00.0307 4648 [ 31FFED18C7B836CEC1B559347E32E151 ] C:\Windows\System32\schannel.dll
20:20:00.0307 4648 C:\Windows\System32\schannel.dll - ok
20:20:00.0323 4648 [ 95FB6CA4374E343DDD653FCC43F9D26B ] C:\Windows\System32\wdigest.dll
20:20:00.0323 4648 C:\Windows\System32\wdigest.dll - ok
20:20:00.0339 4648 [ 5D8874A8C11DDDDE29E12DE0E2013493 ] C:\Windows\System32\rsaenh.dll
20:20:00.0339 4648 C:\Windows\System32\rsaenh.dll - ok
20:20:00.0339 4648 [ 8A25506B6948EFBD5A7F37E53CCD36D9 ] C:\Windows\System32\TSpkg.dll
20:20:00.0339 4648 C:\Windows\System32\TSpkg.dll - ok
20:20:00.0354 4648 [ E08088A97F95345E181C3DFCE2C615EF ] C:\Windows\System32\pku2u.dll
20:20:00.0354 4648 C:\Windows\System32\pku2u.dll - ok
20:20:00.0370 4648 [ 7DBA64AD70C2E2481C68D9E0F7CD7840 ] C:\Windows\System32\LIVESSP.DLL
20:20:00.0370 4648 C:\Windows\System32\LIVESSP.DLL - ok
20:20:00.0385 4648 [ D6C7780A364C6BBACFA796BAB9F1B374 ] C:\Windows\System32\bcryptprimitives.dll
20:20:00.0385 4648 C:\Windows\System32\bcryptprimitives.dll - ok
20:20:00.0385 4648 [ 90BDEFC5DF334E5100EAA781D798DE1A ] C:\Windows\System32\efslsaext.dll
20:20:00.0385 4648 C:\Windows\System32\efslsaext.dll - ok
20:20:00.0401 4648 [ 52D3D5E3586988D4D9E34ACAAC33105C ] C:\Windows\System32\credssp.dll
20:20:00.0401 4648 C:\Windows\System32\credssp.dll - ok
20:20:00.0417 4648 [ ED78427259134C63ED69804D2132B86C ] C:\Windows\System32\scecli.dll
20:20:00.0417 4648 C:\Windows\System32\scecli.dll - ok
20:20:00.0417 4648 [ 7CC7DF5B654DA579613F811D8C637E29 ] C:\Windows\System32\ubpm.dll
20:20:00.0417 4648 C:\Windows\System32\ubpm.dll - ok
20:20:00.0432 4648 [ C78655BC80301D76ED4FEF1C1EA40A7D ] C:\Windows\System32\svchost.exe
20:20:00.0432 4648 C:\Windows\System32\svchost.exe - ok
20:20:00.0448 4648 [ 25FBDEF06C4D92815B353F6E792C8129 ] C:\Windows\System32\umpnpmgr.dll
20:20:00.0448 4648 C:\Windows\System32\umpnpmgr.dll - ok
20:20:00.0463 4648 [ E6EB44ABAAF1F330119F854856C53EBE ] C:\Windows\System32\SPInf.dll
20:20:00.0463 4648 C:\Windows\System32\SPInf.dll - ok
20:20:00.0463 4648 [ CD1B5AD07E5F7FEF30E055DCC9E96180 ] C:\Windows\System32\devrtl.dll
20:20:00.0463 4648 C:\Windows\System32\devrtl.dll - ok
20:20:00.0479 4648 [ 7A17485DC7D8A7AC81321A42CD034519 ] C:\Windows\System32\userenv.dll
20:20:00.0479 4648 C:\Windows\System32\userenv.dll - ok
20:20:00.0495 4648 [ 9C9307C95671AC962F3D6EB3A4A89BAE ] C:\Windows\System32\gpapi.dll
20:20:00.0495 4648 C:\Windows\System32\gpapi.dll - ok
20:20:00.0495 4648 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] C:\Windows\System32\umpo.dll
20:20:00.0495 4648 C:\Windows\System32\umpo.dll - ok
20:20:00.0510 4648 [ F6C011B46FAEEF33536B2E80F48B5CBE ] C:\Windows\System32\pcwum.dll
20:20:00.0510 4648 C:\Windows\System32\pcwum.dll - ok
20:20:00.0510 4648 [ 716175021BDA290504CE434273F666BC ] C:\Windows\System32\powrprof.dll
20:20:00.0510 4648 C:\Windows\System32\powrprof.dll - ok
20:20:00.0526 4648 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] C:\Windows\System32\drivers\luafv.sys
20:20:00.0526 4648 C:\Windows\System32\drivers\luafv.sys - ok
20:20:00.0541 4648 [ 5C627D1B1138676C0A7AB2C2C190D123 ] C:\Windows\System32\rpcss.dll
20:20:00.0541 4648 C:\Windows\System32\rpcss.dll - ok
20:20:00.0557 4648 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] C:\Windows\System32\RpcEpMap.dll
20:20:00.0557 4648 C:\Windows\System32\RpcEpMap.dll - ok
20:20:00.0557 4648 [ 16E964ABF6D1E0F0CC7822FCA9BA754D ] C:\Windows\System32\wshqos.dll
20:20:00.0557 4648 C:\Windows\System32\wshqos.dll - ok
20:20:00.0573 4648 [ 31559F3244C6BC00A52030CAA83B6B91 ] C:\Windows\System32\WSHTCPIP.DLL
20:20:00.0573 4648 C:\Windows\System32\WSHTCPIP.DLL - ok
20:20:00.0588 4648 [ 9AD9E06F8656F296D91FAE8EE5B95A27 ] C:\Windows\System32\FirewallAPI.dll
20:20:00.0588 4648 C:\Windows\System32\FirewallAPI.dll - ok
20:20:00.0604 4648 [ 7675E15D1B2180745E4DA4D26AAD7385 ] C:\Program Files\Microsoft Security Client\MsMpEng.exe
20:20:00.0604 4648 C:\Program Files\Microsoft Security Client\MsMpEng.exe - ok
20:20:00.0604 4648 [ 8077537B1600AF493E7EE1A7A5C90799 ] C:\Program Files\Microsoft Security Client\MpSvc.dll
20:20:00.0604 4648 C:\Program Files\Microsoft Security Client\MpSvc.dll - ok
20:20:00.0619 4648 [ 94E026870A55AAEAFF7853C1754091E9 ] C:\Windows\System32\version.dll
20:20:00.0619 4648 C:\Windows\System32\version.dll - ok
20:20:00.0635 4648 [ 715F03B4C7223349768013EA95D9E5B7 ] C:\Windows\System32\LogonUI.exe
20:20:00.0635 4648 C:\Windows\System32\LogonUI.exe - ok
20:20:00.0651 4648 [ BD3674BE7FC9D8D3732C83E8499576ED ] C:\Windows\System32\wtsapi32.dll
20:20:00.0651 4648 C:\Windows\System32\wtsapi32.dll - ok
20:20:00.0651 4648 [ 1C3588802EE33660E620A046A505A337 ] C:\Program Files\Microsoft Security Client\MpClient.dll
20:20:00.0666 4648 C:\Program Files\Microsoft Security Client\MpClient.dll - ok
20:20:00.0666 4648 [ 34152997FB906895290E0199AC94B85F ] C:\Windows\System32\authui.dll
20:20:00.0666 4648 C:\Windows\System32\authui.dll - ok
20:20:00.0682 4648 [ B3BFBD758506ECB50C5804AAA76318F9 ] C:\Windows\System32\cryptui.dll
20:20:00.0682 4648 C:\Windows\System32\cryptui.dll - ok
20:20:00.0697 4648 [ 1F4492FE41767CDB8B89D17655847CDD ] C:\Windows\System32\ntmarta.dll
20:20:00.0697 4648 C:\Windows\System32\ntmarta.dll - ok
20:20:00.0697 4648 [ 7FA8FDC2C2A27817FD0F624E78D3B50C ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
20:20:00.0697 4648 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll - ok
20:20:00.0713 4648 [ D68424A84A531FFA39FD8574AFBA9EE4 ] C:\Program Files\Microsoft Security Client\EppManifest.dll
20:20:00.0713 4648 C:\Program Files\Microsoft Security Client\EppManifest.dll - ok
20:20:00.0729 4648 [ 4EAAAAB8759644D572522FBCDD196A13 ] C:\Windows\System32\atiesrxx.exe
20:20:00.0729 4648 C:\Windows\System32\atiesrxx.exe - ok
20:20:00.0729 4648 [ 4E9C2DB10F7E6AE91BF761139D4B745B ] C:\Windows\System32\shacct.dll
20:20:00.0729 4648 C:\Windows\System32\shacct.dll - ok
20:20:00.0744 4648 [ 5B3EBFC3DA142324B388DDCC4465E1FF ] C:\Windows\System32\samlib.dll
20:20:00.0744 4648 C:\Windows\System32\samlib.dll - ok
20:20:00.0760 4648 [ F06BB4E336EA57511FDBAFAFCC47DE62 ] C:\Windows\System32\propsys.dll
20:20:00.0760 4648 C:\Windows\System32\propsys.dll - ok
20:20:00.0775 4648 [ 4E0BDA8060201CA9AB68545E68C1E029 ] C:\Program Files\Microsoft Security Client\MpRTP.dll
20:20:00.0775 4648 C:\Program Files\Microsoft Security Client\MpRTP.dll - ok
20:20:00.0775 4648 [ F3D202F53A222D5F6944D459B73CF967 ] C:\Windows\System32\fltLib.dll
20:20:00.0775 4648 C:\Windows\System32\fltLib.dll - ok
20:20:00.0791 4648 [ E17D455BD1FC7E99994E5C19B1BC3A64 ] C:\Program Files\Microsoft Security Client\MsMpLics.dll
20:20:00.0791 4648 C:\Program Files\Microsoft Security Client\MsMpLics.dll - ok
20:20:00.0807 4648 [ D29E998E8277666982B4F0303BF4E7AF ] C:\Windows\System32\uxtheme.dll
20:20:00.0807 4648 C:\Windows\System32\uxtheme.dll - ok
20:20:00.0807 4648 [ C6B88D62F20AC646C6BD5C032EC2FAF9 ] C:\Windows\System32\drivers\MpFilter.sys
20:20:00.0807 4648 C:\Windows\System32\drivers\MpFilter.sys - ok
20:20:00.0822 4648 [ 6011714C8C5C55CBFFAD24D61E879FBD ] C:\Windows\System32\wevtsvc.dll
20:20:00.0822 4648 C:\Windows\System32\wevtsvc.dll - ok
20:20:00.0838 4648 [ 18CAAF21CBA3EAEE17BBA5D3807F29B8 ] C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll
20:20:00.0838 4648 C:\Windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_2b25b14c71ebf230\GdiPlus.dll - ok
20:20:00.0853 4648 [ F30A16105C6C685390074EE69BC175B0 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpengine.dll
20:20:00.0853 4648 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpengine.dll - ok
20:20:00.0869 4648 [ F23FEF6D569FCE88671949894A8BECF1 ] C:\Windows\System32\audiosrv.dll
20:20:00.0869 4648 C:\Windows\System32\audiosrv.dll - ok
20:20:00.0869 4648 [ C4C183E6551084039EC862DA1C945E3D ] C:\Windows\System32\FntCache.dll
20:20:00.0869 4648 C:\Windows\System32\FntCache.dll - ok
20:20:00.0885 4648 [ E40E80D0304A73E8D269F7141D77250B ] C:\Windows\System32\mmcss.dll
20:20:00.0885 4648 C:\Windows\System32\mmcss.dll - ok
20:20:00.0900 4648 [ 3CB6A7286422C72C34DAB54A5DFF1A34 ] C:\Windows\System32\dui70.dll
20:20:00.0900 4648 C:\Windows\System32\dui70.dll - ok
20:20:00.0900 4648 [ 227E2C382A1E02F8D4965E664D3BBE43 ] C:\Windows\System32\MMDevAPI.dll
20:20:00.0916 4648 C:\Windows\System32\MMDevAPI.dll - ok
20:20:00.0916 4648 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] C:\Windows\System32\profsvc.dll
20:20:00.0916 4648 C:\Windows\System32\profsvc.dll - ok
20:20:00.0931 4648 [ 78A1E65207484B7F8D3217507745F47C ] C:\Windows\System32\avrt.dll
20:20:00.0931 4648 C:\Windows\System32\avrt.dll - ok
20:20:00.0947 4648 [ 588CD0C78A7FAAE4186B5EEA0AF3ED67 ] C:\Windows\System32\adtschema.dll
20:20:00.0947 4648 C:\Windows\System32\adtschema.dll - ok
20:20:00.0947 4648 [ 8CCDE014A4CDF84564E03ACE064CA753 ] C:\Windows\System32\duser.dll
20:20:00.0947 4648 C:\Windows\System32\duser.dll - ok
20:20:00.0963 4648 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] C:\Windows\System32\wlansvc.dll
20:20:00.0963 4648 C:\Windows\System32\wlansvc.dll - ok
20:20:00.0978 4648 [ D7F1EF374A90709B31591823B002F918 ] C:\Windows\System32\SndVolSSO.dll
20:20:00.0978 4648 C:\Windows\System32\SndVolSSO.dll - ok
20:20:00.0978 4648 [ 896F15A6434D93EDB42519D5E18E6B50 ] C:\Windows\System32\hid.dll
20:20:00.0978 4648 C:\Windows\System32\hid.dll - ok
20:20:00.0994 4648 [ DA1B7075260F3872585BFCDD668C648B ] C:\Windows\System32\dwmapi.dll
20:20:00.0994 4648 C:\Windows\System32\dwmapi.dll - ok
20:20:01.0009 4648 [ D5CCA1453B98A5801E6D5FF0FF89DC6C ] C:\Windows\System32\audiodg.exe
20:20:01.0009 4648 C:\Windows\System32\audiodg.exe - ok
20:20:01.0025 4648 [ 6F8B48F3D343E4B186AB6A9E302B7E16 ] C:\Windows\System32\xmllite.dll
20:20:01.0025 4648 C:\Windows\System32\xmllite.dll - ok
20:20:01.0041 4648 [ 50544D04AD845C43130B70212EC05CCD ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
20:20:01.0041 4648 C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
20:20:01.0041 4648 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] C:\Windows\System32\netprofm.dll
20:20:01.0041 4648 C:\Windows\System32\netprofm.dll - ok
20:20:01.0056 4648 [ 3D7BB6DD7A87B3E36E44CA94444247A8 ] C:\Windows\System32\WindowsCodecs.dll
20:20:01.0056 4648 C:\Windows\System32\WindowsCodecs.dll - ok
20:20:01.0056 4648 [ 58775492FFD419248B08325E583C527F ] C:\Windows\System32\atl.dll
20:20:01.0056 4648 C:\Windows\System32\atl.dll - ok
20:20:01.0072 4648 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] C:\Windows\System32\gpsvc.dll
20:20:01.0072 4648 C:\Windows\System32\gpsvc.dll - ok
20:20:01.0087 4648 [ F0344071948D1A1FA732231785A0664C ] C:\Windows\System32\themeservice.dll
20:20:01.0087 4648 C:\Windows\System32\themeservice.dll - ok
20:20:01.0103 4648 [ DA6B67270FD9DB3697B20FCE94950741 ] C:\Windows\System32\drivers\fltMgr.sys
20:20:01.0103 4648 C:\Windows\System32\drivers\fltMgr.sys - ok
20:20:01.0103 4648 [ 4166F82BE4D24938977DD1746BE9B8A0 ] C:\Windows\System32\es.dll
20:20:01.0103 4648 C:\Windows\System32\es.dll - ok
20:20:01.0119 4648 [ A3DB3C17EE6CAE65D53602B4E80BCCBC ] C:\Windows\System32\PSHED.DLL
20:20:01.0119 4648 C:\Windows\System32\PSHED.DLL - ok
20:20:01.0134 4648 [ 46BB91A169B9B31FF44EB04C48EC1D41 ] C:\Windows\System32\nlaapi.dll
20:20:01.0134 4648 C:\Windows\System32\nlaapi.dll - ok
20:20:01.0134 4648 [ 1A47D52E303B7543E4E6026595B95422 ] C:\Windows\System32\comres.dll
20:20:01.0134 4648 C:\Windows\System32\comres.dll - ok
20:20:01.0150 4648 [ C32AB8FA018EF34C0F113BD501436D21 ] C:\Windows\System32\Sens.dll
20:20:01.0150 4648 C:\Windows\System32\Sens.dll - ok
20:20:01.0165 4648 [ EF2AE43BCD46ABB13FC3E5B2B1935C73 ] C:\Windows\System32\winmm.dll
20:20:01.0165 4648 C:\Windows\System32\winmm.dll - ok
20:20:01.0165 4648 [ A77BE7CB3222B4FB0AC6C71D1C2698D4 ] C:\Windows\System32\dsrole.dll
20:20:01.0165 4648 C:\Windows\System32\dsrole.dll - ok
20:20:01.0181 4648 [ BE097F5BB10F9079FCEB2DC4E7E20F02 ] C:\Windows\System32\slc.dll
20:20:01.0181 4648 C:\Windows\System32\slc.dll - ok
20:20:01.0197 4648 [ 1473768973453DE50DC738C2955FC4DD ] C:\Windows\System32\wdmaud.drv
20:20:01.0197 4648 C:\Windows\System32\wdmaud.drv - ok
20:20:01.0212 4648 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] C:\Windows\System32\uxsms.dll
20:20:01.0212 4648 C:\Windows\System32\uxsms.dll - ok
20:20:01.0212 4648 [ 8560FFFC8EB3A806DCD4F82252CFC8C6 ] C:\Windows\System32\ksuser.dll
20:20:01.0212 4648 C:\Windows\System32\ksuser.dll - ok
20:20:01.0228 4648 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] C:\Windows\System32\MPSSVC.dll
20:20:01.0228 4648 C:\Windows\System32\MPSSVC.dll - ok
20:20:01.0243 4648 [ 1538831CF8AD2979A04C423779465827 ] C:\Windows\System32\drivers\lltdio.sys
20:20:01.0243 4648 C:\Windows\System32\drivers\lltdio.sys - ok
20:20:01.0243 4648 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] C:\Windows\System32\drivers\nwifi.sys
20:20:01.0243 4648 C:\Windows\System32\drivers\nwifi.sys - ok
20:20:01.0259 4648 [ B0945E538CF906BBDDC5A11C8EE868CC ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
20:20:01.0259 4648 C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
20:20:01.0275 4648 [ 9F2BACD5E1776A4BB7CC0EC3C3A4F96D ] C:\Windows\System32\winbrand.dll
20:20:01.0275 4648 C:\Windows\System32\winbrand.dll - ok
20:20:01.0275 4648 [ 136185F9FB2CC61E573E676AA5402356 ] C:\Windows\System32\drivers\ndisuio.sys
20:20:01.0275 4648 C:\Windows\System32\drivers\ndisuio.sys - ok
20:20:01.0290 4648 [ 009220ECDCCDB2A4423F2C8CDA2C223F ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpasbase.vdm
20:20:01.0290 4648 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpasbase.vdm - ok
20:20:01.0306 4648 [ DDC86E4F8E7456261E637E3552E804FF ] C:\Windows\System32\drivers\rspndr.sys
20:20:01.0306 4648 C:\Windows\System32\drivers\rspndr.sys - ok
20:20:01.0306 4648 [ F993A32249B66C9D622EA5592A8B76B8 ] C:\Windows\System32\lmhsvc.dll
20:20:01.0306 4648 C:\Windows\System32\lmhsvc.dll - ok
20:20:01.0321 4648 [ D54BFDF3E0C953F823B3D0BFE4732528 ] C:\Windows\System32\nsisvc.dll
20:20:01.0321 4648 C:\Windows\System32\nsisvc.dll - ok
20:20:01.0337 4648 [ DC220AE6F64819099F7EBD6F137E32E7 ] C:\Windows\System32\AudioSes.dll
20:20:01.0337 4648 C:\Windows\System32\AudioSes.dll - ok
20:20:01.0337 4648 [ 2B81776DA02017A37FE26C662827470E ] C:\Windows\System32\IPHLPAPI.DLL
20:20:01.0337 4648 C:\Windows\System32\IPHLPAPI.DLL - ok
20:20:01.0353 4648 [ 4C9210E8F4E052F6A4EB87716DA0C24C ] C:\Windows\System32\winnsi.dll
20:20:01.0353 4648 C:\Windows\System32\winnsi.dll - ok
20:20:01.0368 4648 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] C:\Windows\System32\dnsrslvr.dll
20:20:01.0368 4648 C:\Windows\System32\dnsrslvr.dll - ok
20:20:01.0368 4648 [ F9EC845C5EECF20E9A67F9F805F2EF1F ] C:\Windows\System32\keyiso.dll
20:20:01.0368 4648 C:\Windows\System32\keyiso.dll - ok
20:20:01.0384 4648 [ 1B7C3A37362C7B2890168C5FC61C8D9B ] C:\Windows\System32\msacm32.drv
20:20:01.0384 4648 C:\Windows\System32\msacm32.drv - ok
20:20:01.0399 4648 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] C:\Windows\System32\eapsvc.dll
20:20:01.0399 4648 C:\Windows\System32\eapsvc.dll - ok
20:20:01.0399 4648 [ B73A6E4B319AFFE64582AC5C1801BB3F ] C:\Windows\System32\nrpsrv.dll
20:20:01.0399 4648 C:\Windows\System32\nrpsrv.dll - ok
20:20:01.0415 4648 [ 10AC5CE9F78DC281A1BBD9B8CC587B8A ] C:\Windows\System32\msacm32.dll
20:20:01.0415 4648 C:\Windows\System32\msacm32.dll - ok
20:20:01.0431 4648 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] C:\Windows\System32\dhcpcore.dll
20:20:01.0431 4648 C:\Windows\System32\dhcpcore.dll - ok
20:20:01.0446 4648 [ 87356377F31DA5F20A833811CD59499C ] C:\Windows\System32\eapphost.dll
20:20:01.0446 4648 C:\Windows\System32\eapphost.dll - ok
20:20:01.0446 4648 [ D07EB640618F96490DB88C3CE58DB608 ] C:\Windows\System32\FWPUCLNT.DLL
20:20:01.0446 4648 C:\Windows\System32\FWPUCLNT.DLL - ok
20:20:01.0462 4648 [ CA2A0750ED830678997695FF61B04C30 ] C:\Windows\System32\midimap.dll
20:20:01.0462 4648 C:\Windows\System32\midimap.dll - ok
20:20:01.0477 4648 [ 3CC16A849E6092E43909F48EF0E60306 ] C:\Windows\System32\dhcpcore6.dll
20:20:01.0477 4648 C:\Windows\System32\dhcpcore6.dll - ok
20:20:01.0477 4648 [ C2762A57DF0EE85E63CE4893C5215313 ] C:\Windows\System32\VaultCredProvider.dll
20:20:01.0477 4648 C:\Windows\System32\VaultCredProvider.dll - ok
20:20:01.0493 4648 [ 885D0942E0F28DB90919BE3129ECF279 ] C:\Windows\System32\dnsext.dll
20:20:01.0493 4648 C:\Windows\System32\dnsext.dll - ok
20:20:01.0509 4648 [ 8563BA40DF4F1E93A61B70E2C8B60CF8 ] C:\Windows\System32\SmartcardCredentialProvider.dll
20:20:01.0509 4648 C:\Windows\System32\SmartcardCredentialProvider.dll - ok
20:20:01.0509 4648 [ 5EDBB34736DD7AC1A73CF8792A835E10 ] C:\Windows\System32\AudioEng.dll
20:20:01.0509 4648 C:\Windows\System32\AudioEng.dll - ok
20:20:01.0524 4648 [ F568F7C08458D69E4FCD8675BBB107E4 ] C:\Windows\System32\dhcpcsvc.dll
20:20:01.0524 4648 C:\Windows\System32\dhcpcsvc.dll - ok
20:20:01.0540 4648 [ 9FCA3A84338ADEF2AFF67CDA46EF8539 ] C:\Windows\System32\umb.dll
20:20:01.0540 4648 C:\Windows\System32\umb.dll - ok
20:20:01.0540 4648 [ A648C4A06DE367065B24056D067B4460 ] C:\Windows\System32\wlanmsm.dll
20:20:01.0540 4648 C:\Windows\System32\wlanmsm.dll - ok
20:20:01.0555 4648 [ BF352E73615F5461AA6884472435A544 ] C:\Windows\System32\BioCredProv.dll
20:20:01.0555 4648 C:\Windows\System32\BioCredProv.dll - ok
20:20:01.0571 4648 [ 3C06D5A929B798D0B13F6481242A0FD2 ] C:\Windows\System32\dhcpcsvc6.dll
20:20:01.0571 4648 C:\Windows\System32\dhcpcsvc6.dll - ok
20:20:01.0571 4648 [ C1395286B822E306B4FE1568A8A77813 ] C:\Windows\System32\AUDIOKSE.dll
20:20:01.0571 4648 C:\Windows\System32\AUDIOKSE.dll - ok
20:20:01.0587 4648 [ 06A1386B6E3A0CBC368665C1840906F4 ] C:\Windows\System32\wlansec.dll
20:20:01.0587 4648 C:\Windows\System32\wlansec.dll - ok
20:20:01.0602 4648 [ 796B8123A7859AFD3A4AE10514DBAEB5 ] C:\Windows\System32\winbio.dll
20:20:01.0602 4648 C:\Windows\System32\winbio.dll - ok
20:20:01.0602 4648 [ 4403D5ECE7D8323CAF1207D1AA38FA01 ] C:\Windows\System32\credui.dll
20:20:01.0602 4648 C:\Windows\System32\credui.dll - ok
20:20:01.0618 4648 [ 73FCB7919DEE80EE556F2E498594EBAE ] C:\Windows\System32\onex.dll
20:20:01.0618 4648 C:\Windows\System32\onex.dll - ok
20:20:01.0633 4648 [ 44B9C66177651F3F53C87B665D58D17A ] C:\Windows\System32\vaultcli.dll
20:20:01.0633 4648 C:\Windows\System32\vaultcli.dll - ok
20:20:01.0649 4648 [ EEEA40F0EDB0A6E5359E539E15D0BC77 ] C:\Windows\System32\netapi32.dll
20:20:01.0649 4648 C:\Windows\System32\netapi32.dll - ok
20:20:01.0649 4648 [ 3FC897842306CC0FCF072A24583A0B4C ] C:\Windows\System32\RtkAPO64.dll
20:20:01.0649 4648 C:\Windows\System32\RtkAPO64.dll - ok
20:20:01.0665 4648 [ 65522E77A1360DBC8D199DA3BF5EFFE4 ] C:\Windows\System32\eappprxy.dll
20:20:01.0665 4648 C:\Windows\System32\eappprxy.dll - ok
20:20:01.0680 4648 [ 6CECA4C6A489C9B2E6073AFDAAE3F607 ] C:\Windows\System32\netutils.dll
20:20:01.0680 4648 C:\Windows\System32\netutils.dll - ok
20:20:01.0696 4648 [ 3C91392D448F6E5D525A85B7550D8BA9 ] C:\Windows\System32\wkscli.dll
20:20:01.0696 4648 C:\Windows\System32\wkscli.dll - ok
20:20:01.0696 4648 [ 0D753307D274F3688BD21C377B616700 ] C:\Windows\System32\eappcfg.dll
20:20:01.0696 4648 C:\Windows\System32\eappcfg.dll - ok
20:20:01.0711 4648 [ FC51229C7D4AFA0D6F186133728B95AB ] C:\Windows\System32\samcli.dll
20:20:01.0711 4648 C:\Windows\System32\samcli.dll - ok
20:20:01.0727 4648 [ 972C3301DB3DA91AE06A95F6B4160B1B ] C:\Windows\System32\certCredProvider.dll
20:20:01.0727 4648 C:\Windows\System32\certCredProvider.dll - ok
20:20:01.0727 4648 [ 730BF204A595D5B6D7DC57A247CC741C ] C:\Windows\System32\wlgpclnt.dll
20:20:01.0727 4648 C:\Windows\System32\wlgpclnt.dll - ok
20:20:01.0743 4648 [ 032229246107C5C7211E6D1498B52D3D ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL
20:20:01.0743 4648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL - ok
20:20:01.0758 4648 [ 97E43F324BE1503CB2FFB058534688DA ] C:\Windows\System32\l2gpstore.dll
20:20:01.0758 4648 C:\Windows\System32\l2gpstore.dll - ok
20:20:01.0774 4648 [ 7F1B4C6FF3B85F9ADF74055187B8A22C ] C:\Windows\System32\wlanutil.dll
20:20:01.0774 4648 C:\Windows\System32\wlanutil.dll - ok
20:20:01.0774 4648 [ 7D5645EE0EA77D539828433D9B95F5EB ] C:\Windows\System32\WinSCard.dll
20:20:01.0774 4648 C:\Windows\System32\WinSCard.dll - ok
20:20:01.0789 4648 [ 99B91C5D2FCEF218CAD3600ECB62A799 ] C:\Windows\System32\msxml6.dll
20:20:01.0789 4648 C:\Windows\System32\msxml6.dll - ok
20:20:01.0805 4648 [ 87FA0C48C3B2E9FEE518818FE26B15B5 ] C:\Windows\System32\rasplap.dll
20:20:01.0805 4648 C:\Windows\System32\rasplap.dll - ok
20:20:01.0805 4648 [ 019CD868461B646E09BDF04474C19341 ] C:\Windows\System32\rasapi32.dll
20:20:01.0805 4648 C:\Windows\System32\rasapi32.dll - ok
20:20:01.0821 4648 [ B28DEEC597C8DEB70C744C7CF9210E3E ] C:\Windows\System32\rasman.dll
20:20:01.0821 4648 C:\Windows\System32\rasman.dll - ok
20:20:01.0836 4648 [ B53C4B69B695EDA1B7E41D35CA4244E2 ] C:\Windows\System32\rtutils.dll
20:20:01.0836 4648 C:\Windows\System32\rtutils.dll - ok
20:20:01.0852 4648 [ 973ADB6AD47AC047F900C0D760AB6BE2 ] C:\Windows\System32\AERTAR64.dll
20:20:01.0852 4648 C:\Windows\System32\AERTAR64.dll - ok
20:20:01.0852 4648 [ 6F3C559B82F2912354BE5B098744CC8C ] C:\Windows\System32\WMALFXGFXDSP.dll
20:20:01.0852 4648 C:\Windows\System32\WMALFXGFXDSP.dll - ok
20:20:01.0867 4648 [ 9BC8610C32C96A2983A65DC21CAFA921 ] C:\Windows\System32\UXInit.dll
20:20:01.0867 4648 C:\Windows\System32\UXInit.dll - ok
20:20:01.0883 4648 [ 0620FE89F70FC0895DC312EEBAA62B06 ] C:\Windows\System32\atieclxx.exe
20:20:01.0883 4648 C:\Windows\System32\atieclxx.exe - ok
20:20:01.0883 4648 [ 54B5DCD55B223BC5DF50B82E1E9E86B1 ] C:\Windows\System32\mfplat.dll
20:20:01.0883 4648 C:\Windows\System32\mfplat.dll - ok
20:20:01.0899 4648 [ AAF932B4011D14052955D4B212A4DA8D ] C:\Windows\System32\shsvcs.dll
20:20:01.0899 4648 C:\Windows\System32\shsvcs.dll - ok
20:20:01.0914 4648 [ 500CE062629FB734989AEEC2A23A6CD8 ] C:\Windows\System32\atiadlxx.dll
20:20:01.0914 4648 C:\Windows\System32\atiadlxx.dll - ok
20:20:01.0914 4648 [ 03706015DB44368375AEBE6339490E66 ] C:\Windows\System32\netcfgx.dll
20:20:01.0914 4648 C:\Windows\System32\netcfgx.dll - ok
20:20:01.0930 4648 [ 262F6592C3299C005FD6BEC90FC4463A ] C:\Windows\System32\schedsvc.dll
20:20:01.0930 4648 C:\Windows\System32\schedsvc.dll - ok
20:20:01.0945 4648 [ 6084C4446117A83E01B88B4156674E6A ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpasdlta.vdm
20:20:01.0945 4648 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpasdlta.vdm - ok
20:20:01.0945 4648 [ BC414631876B2F28B8DAB08E849C12C5 ] C:\Windows\System32\ktmw32.dll
20:20:01.0945 4648 C:\Windows\System32\ktmw32.dll - ok
20:20:01.0961 4648 [ 00000000000000000000000000000000 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpavbase.vdm
20:20:01.0961 4648 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpavbase.vdm - ok
20:20:01.0977 4648 [ 53ED61BC2AABA7B265CB1C19157E6626 ] C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpavdlta.vdm
20:20:01.0977 4648 C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{82907500-02ED-4D10-BA75-6349409A1580}\mpavdlta.vdm - ok
20:20:01.0992 4648 [ 945E54F23C72D37B8CD1987AF0DB63BF ] C:\Windows\System32\fveapi.dll
20:20:01.0992 4648 C:\Windows\System32\fveapi.dll - ok
20:20:01.0992 4648 [ 5AA945234E9D4CCE4F715276B9AA712C ] C:\Windows\System32\imageres.dll
20:20:01.0992 4648 C:\Windows\System32\imageres.dll - ok
20:20:02.0008 4648 [ 694865362F0965779F92BCFE97712323 ] C:\Windows\System32\tbs.dll
20:20:02.0008 4648 C:\Windows\System32\tbs.dll - ok
20:20:02.0023 4648 [ 891ECFD08E2C538B7948CBC45106D697 ] C:\Windows\System32\fvecerts.dll
20:20:02.0023 4648 C:\Windows\System32\fvecerts.dll - ok
20:20:02.0039 4648 [ 6DC4A7242F565C9E9C9CCC7BB0FA75C7 ] C:\Windows\System32\taskcomp.dll
20:20:02.0039 4648 C:\Windows\System32\taskcomp.dll - ok
20:20:02.0039 4648 [ 8269210DAF3B12BC8300631B28A2A442 ] C:\Windows\System32\wiarpc.dll
20:20:02.0039 4648 C:\Windows\System32\wiarpc.dll - ok
20:20:02.0055 4648 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] C:\Windows\System32\drivers\http.sys
20:20:02.0055 4648 C:\Windows\System32\drivers\http.sys - ok
20:20:02.0070 4648 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] C:\Windows\System32\spoolsv.exe
20:20:02.0070 4648 C:\Windows\System32\spoolsv.exe - ok
20:20:02.0070 4648 [ 82974D6A2FD19445CC5171FC378668A4 ] C:\Windows\System32\BFE.DLL
20:20:02.0070 4648 C:\Windows\System32\BFE.DLL - ok
20:20:02.0086 4648 [ 6C02A83164F5CC0A262F4199F0871CF5 ] C:\Windows\System32\drivers\bowser.sys
20:20:02.0086 4648 C:\Windows\System32\drivers\bowser.sys - ok
20:20:02.0101 4648 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] C:\Windows\System32\drivers\mpsdrv.sys
20:20:02.0101 4648 C:\Windows\System32\drivers\mpsdrv.sys - ok
20:20:02.0101 4648 [ A5D9106A73DC88564C825D317CAC68AC ] C:\Windows\System32\drivers\mrxsmb.sys
20:20:02.0101 4648 C:\Windows\System32\drivers\mrxsmb.sys - ok
20:20:02.0117 4648 [ D711B3C1D5F42C0C2415687BE09FC163 ] C:\Windows\System32\drivers\mrxsmb10.sys
20:20:02.0117 4648 C:\Windows\System32\drivers\mrxsmb10.sys - ok
20:20:02.0133 4648 [ C67F8A962B2534224D5908D16D2AD3CE ] C:\Windows\System32\wfapigp.dll
20:20:02.0133 4648 C:\Windows\System32\wfapigp.dll - ok
20:20:02.0133 4648 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] C:\Windows\System32\drivers\mrxsmb20.sys
20:20:02.0133 4648 C:\Windows\System32\drivers\mrxsmb20.sys - ok
20:20:02.0148 4648 [ 851A1382EED3E3A7476DB004F4EE3E1A ] C:\Windows\System32\wkssvc.dll
20:20:02.0148 4648 C:\Windows\System32\wkssvc.dll - ok
20:20:02.0164 4648 [ 1834B31C749B86DAC233BBBA1C03BC48 ] C:\Windows\System32\mscms.dll
20:20:02.0164 4648 C:\Windows\System32\mscms.dll - ok
20:20:02.0179 4648 [ DD81D91FF3B0763C392422865C9AC12E ] C:\Windows\System32\rundll32.exe
20:20:02.0179 4648 C:\Windows\System32\rundll32.exe - ok
20:20:02.0179 4648 [ 3AEAA8B561E63452C655DC0584922257 ] C:\Windows\System32\pcasvc.dll
20:20:02.0179 4648 C:\Windows\System32\pcasvc.dll - ok
20:20:02.0195 4648 [ 6313F223E817CC09AA41811DAA7F541D ] C:\Windows\System32\snmptrap.exe
20:20:02.0195 4648 C:\Windows\System32\snmptrap.exe - ok
20:20:02.0211 4648 [ 10EAB90C1AE8271B5FE5A8930987EE5C ] C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll
20:20:02.0211 4648 C:\Program Files\Windows Live\Mesh\WLRemoteServiceResource.dll - ok
20:20:02.0226 4648 [ E9A0777DCA9148157E0EF9B71D7DE353 ] C:\Windows\System32\RdpGroupPolicyExtension.dll
20:20:02.0226 4648 C:\Windows\System32\RdpGroupPolicyExtension.dll - ok
20:20:02.0226 4648 [ 4004299B7AF4CBFF6540F1798899A11F ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll
20:20:02.0226 4648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll - ok
20:20:02.0242 4648 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] C:\Windows\System32\sstpsvc.dll
20:20:02.0242 4648 C:\Windows\System32\sstpsvc.dll - ok
20:20:02.0257 4648 [ 908ACB1F594274965A53926B10C81E89 ] C:\Windows\System32\provsvc.dll
20:20:02.0257 4648 C:\Windows\System32\provsvc.dll - ok
20:20:02.0257 4648 [ 51138BEEA3E2C21EC44D0932C71762A8 ] C:\Windows\SysWOW64\rundll32.exe
20:20:02.0257 4648 C:\Windows\SysWOW64\rundll32.exe - ok
20:20:02.0273 4648 [ A2B0924D50F4435FD389499047CE553A ] C:\Windows\SysWOW64\ntdll.dll
20:20:02.0273 4648 C:\Windows\SysWOW64\ntdll.dll - ok
20:20:02.0289 4648 [ 70833F5A59F65908698093889C34BCA2 ] C:\Windows\System32\wow64.dll
20:20:02.0289 4648 C:\Windows\System32\wow64.dll - ok
20:20:02.0304 4648 [ 5674E21E82CFBEA36DDAD5DB285D6DBC ] C:\Windows\System32\wow64win.dll
20:20:02.0304 4648 C:\Windows\System32\wow64win.dll - ok
20:20:02.0304 4648 [ 3EE3AA76D8AB6D5644C4C8F34471CEB3 ] C:\Windows\System32\wow64cpu.dll
20:20:02.0304 4648 C:\Windows\System32\wow64cpu.dll - ok
20:20:02.0320 4648 [ 365A5034093AD9E04F433046C4CDF6AB ] C:\Windows\SysWOW64\kernel32.dll
20:20:02.0320 4648 C:\Windows\SysWOW64\kernel32.dll - ok
20:20:02.0335 4648 [ 1B7343C3765638D4D17CB925F84F8ABE ] C:\Windows\SysWOW64\KernelBase.dll
20:20:02.0335 4648 C:\Windows\SysWOW64\KernelBase.dll - ok
20:20:02.0335 4648 [ 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 ] C:\Windows\SysWOW64\user32.dll
20:20:02.0335 4648 C:\Windows\SysWOW64\user32.dll - ok
20:20:02.0351 4648 [ 56E3313690866F99CD17AA1342F64AE1 ] C:\Windows\SysWOW64\gdi32.dll
20:20:02.0351 4648 C:\Windows\SysWOW64\gdi32.dll - ok
20:20:02.0367 4648 [ CC23295DA8F7B5C53F93804D2F5D30EB ] C:\Windows\SysWOW64\lpk.dll
20:20:02.0367 4648 C:\Windows\SysWOW64\lpk.dll - ok
20:20:02.0367 4648 [ B7230010D97787AF3D25E4C82F2B06B9 ] C:\Windows\SysWOW64\usp10.dll
20:20:02.0367 4648 C:\Windows\SysWOW64\usp10.dll - ok
20:20:02.0382 4648 [ 9DC80A8AAAAAC397BDAB3C67165A824E ] C:\Windows\SysWOW64\msvcrt.dll
20:20:02.0382 4648 C:\Windows\SysWOW64\msvcrt.dll - ok
20:20:02.0398 4648 [ D67472125471784DE7147946EDA25FEB ] C:\Windows\SysWOW64\advapi32.dll
20:20:02.0398 4648 C:\Windows\SysWOW64\advapi32.dll - ok
20:20:02.0413 4648 [ CFC97F07904067A1E5FAE195D534DA3A ] C:\Windows\SysWOW64\sechost.dll
20:20:02.0413 4648 C:\Windows\SysWOW64\sechost.dll - ok
20:20:02.0413 4648 [ 4DC999CED9429939D75682EBD7D48901 ] C:\Windows\SysWOW64\rpcrt4.dll
20:20:02.0413 4648 C:\Windows\SysWOW64\rpcrt4.dll - ok
20:20:02.0429 4648 [ 42B924C5F3924C1EB2539F22C10D7DF1 ] C:\Windows\SysWOW64\sspicli.dll
20:20:02.0429 4648 C:\Windows\SysWOW64\sspicli.dll - ok
20:20:02.0445 4648 [ F08F6FCD09F9BE94C37ACC1B344685FF ] C:\Windows\SysWOW64\cryptbase.dll
20:20:02.0445 4648 C:\Windows\SysWOW64\cryptbase.dll - ok
20:20:02.0460 4648 [ E7B9D5FF20FFDD4AAE2EF1D1B8C27A37 ] C:\Windows\SysWOW64\imagehlp.dll
20:20:02.0460 4648 C:\Windows\SysWOW64\imagehlp.dll - ok
20:20:02.0460 4648 [ 863F793D15B4026B1A5FDECA873D4D84 ] C:\Windows\SysWOW64\apphelp.dll
20:20:02.0460 4648 C:\Windows\SysWOW64\apphelp.dll - ok
20:20:02.0476 4648 [ 96C70BD48D49B87475F4572DEDC62EB9 ] C:\Windows\AppPatch\AcLayers.dll
20:20:02.0476 4648 C:\Windows\AppPatch\AcLayers.dll - ok
20:20:02.0491 4648 [ E02781D4871844DCD30DF1D69A650F78 ] C:\Windows\SysWOW64\shell32.dll
20:20:02.0491 4648 C:\Windows\SysWOW64\shell32.dll - ok
20:20:02.0507 4648 [ 8CC3C111D653E96F3EA1590891491D71 ] C:\Windows\SysWOW64\shlwapi.dll
20:20:02.0507 4648 C:\Windows\SysWOW64\shlwapi.dll - ok
20:20:02.0523 4648 [ 928CF7268086631F54C3D8E17238C6DD ] C:\Windows\SysWOW64\ole32.dll
20:20:02.0523 4648 C:\Windows\SysWOW64\ole32.dll - ok
20:20:02.0538 4648 [ 6C765E82B57F2E66CE9C54AC238471D9 ] C:\Windows\SysWOW64\oleaut32.dll
20:20:02.0538 4648 C:\Windows\SysWOW64\oleaut32.dll - ok
20:20:02.0538 4648 [ D15618A0FF8DBC2C5BF3726BACC75A0B ] C:\Windows\SysWOW64\userenv.dll
20:20:02.0538 4648 C:\Windows\SysWOW64\userenv.dll - ok
20:20:02.0554 4648 [ C733D233B623B7FFCE5031E4B756EE26 ] C:\Windows\SysWOW64\profapi.dll
20:20:02.0554 4648 C:\Windows\SysWOW64\profapi.dll - ok
20:20:02.0569 4648 [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8 ] C:\Windows\SysWOW64\winspool.drv
20:20:02.0569 4648 C:\Windows\SysWOW64\winspool.drv - ok
20:20:02.0569 4648 [ B9A8CBCFCD3EC9D2EA4740AF347BF108 ] C:\Windows\SysWOW64\mpr.dll
20:20:02.0569 4648 C:\Windows\SysWOW64\mpr.dll - ok
20:20:02.0585 4648 [ 7E067D5C3EF2BB87B3E07DCD61286390 ] C:\Windows\AppPatch\acwow64.dll
20:20:02.0585 4648 C:\Windows\AppPatch\acwow64.dll - ok
20:20:02.0601 4648 [ 702254574E7E52052DE39408457B7149 ] C:\Windows\SysWOW64\version.dll
20:20:02.0601 4648 C:\Windows\SysWOW64\version.dll - ok
20:20:02.0601 4648 [ A6F09E5669D9A19035F6D942CAA15882 ] C:\Windows\SysWOW64\imm32.dll
20:20:02.0601 4648 C:\Windows\SysWOW64\imm32.dll - ok
20:20:02.0616 4648 [ C9618BC9B2B0FD7C1138D8774795A79B ] C:\Windows\SysWOW64\msctf.dll
20:20:02.0616 4648 C:\Windows\SysWOW64\msctf.dll - ok
20:20:02.0632 4648 [ CBA05000A4AB534CE58D80E098A90C03 ] C:\PROGRA~2\WSBEB1~1.ENA
20:20:02.0632 4648 C:\PROGRA~2\WSBEB1~1.ENA - ok
20:20:02.0632 4648 [ 6377051C63D5552A311935C67E9FDFDC ] C:\Windows\SysWOW64\nsi.dll
20:20:02.0632 4648 C:\Windows\SysWOW64\nsi.dll - ok
20:20:02.0647 4648 [ 7FF15A4F092CD4A96055BA69F903E3E9 ] C:\Windows\SysWOW64\ws2_32.dll
20:20:02.0647 4648 C:\Windows\SysWOW64\ws2_32.dll - ok
20:20:02.0663 4648 [ A90DC9ABD65DB1A8902F361103029952 ] C:\Windows\SysWOW64\IPHLPAPI.DLL
20:20:02.0663 4648 C:\Windows\SysWOW64\IPHLPAPI.DLL - ok
20:20:02.0663 4648 [ CFF35B879D1618D42C86644C717BA947 ] C:\Windows\SysWOW64\winnsi.dll
20:20:02.0663 4648 C:\Windows\SysWOW64\winnsi.dll - ok
20:20:02.0679 4648 [ 9A85ABCE0FDD1AF8E79E731EB0B679F3 ] C:\Windows\SysWOW64\dhcpcsvc.dll
20:20:02.0679 4648 C:\Windows\SysWOW64\dhcpcsvc.dll - ok
20:20:02.0694 4648 [ C8E676CCE2A53999336FA90301518E62 ] C:\PROGRA~2\WSSvc.dll
20:20:02.0694 4648 C:\PROGRA~2\WSSvc.dll - ok
20:20:02.0694 4648 [ B33CF4DE909A5B30F526D82053A63C8E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
20:20:02.0694 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe - ok
20:20:02.0710 4648 [ BE8BD75FD8BE17B95365619D0B34CDBC ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineObj.dll
20:20:02.0710 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineObj.dll - ok
20:20:02.0725 4648 [ 86F1895AE8C5E8B17D99ECE768A70732 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\msvcr71.dll
20:20:02.0725 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\msvcr71.dll - ok
20:20:02.0741 4648 [ 39D3E26AC0C684BCBEA6D2EA99035440 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineNet.dll
20:20:02.0741 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\FineNet.dll - ok
20:20:02.0757 4648 [ 2FCA0D2C59A855C54BAFA22AA329DF0F ] C:\Windows\SysWOW64\netapi32.dll
20:20:02.0757 4648 C:\Windows\SysWOW64\netapi32.dll - ok
20:20:02.0757 4648 [ 20B3934DB73EABA2B49B7177873CB81F ] C:\Windows\SysWOW64\netutils.dll
20:20:02.0757 4648 C:\Windows\SysWOW64\netutils.dll - ok
20:20:02.0772 4648 [ 5CCDCD40E732D54E0F7451AC66AC1C87 ] C:\Windows\SysWOW64\srvcli.dll
20:20:02.0772 4648 C:\Windows\SysWOW64\srvcli.dll - ok
20:20:02.0788 4648 [ 68ECCA523ED760AAFC03C5D587569859 ] C:\Windows\SysWOW64\samcli.dll
20:20:02.0788 4648 C:\Windows\SysWOW64\samcli.dll - ok
20:20:02.0803 4648 [ 9C89246184979A070B0C6CCF61C68136 ] C:\Windows\SysWOW64\wininet.dll
20:20:02.0803 4648 C:\Windows\SysWOW64\wininet.dll - ok
20:20:02.0803 4648 [ E5A4A1326A02F8E7B59E6C3270CE7202 ] C:\Windows\SysWOW64\wkscli.dll
20:20:02.0803 4648 C:\Windows\SysWOW64\wkscli.dll - ok
20:20:02.0819 4648 [ 589CBC4989F750E1DA35625AB481CF43 ] C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
20:20:02.0819 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll - ok
20:20:02.0835 4648 [ 2E33DFD10F28F86C3FC40EE123CC3904 ] C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
20:20:02.0835 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
20:20:02.0835 4648 [ 6951562DC4625EEFC6EACD52AD165866 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
20:20:02.0835 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
20:20:02.0850 4648 [ 3BE0D923AA45A4DBE091C2D84F0B4FE7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
20:20:02.0850 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll - ok
20:20:02.0866 4648 [ 34CBED7698D557DDB43F8732FBC2ACB9 ] C:\Windows\SysWOW64\iertutil.dll
20:20:02.0866 4648 C:\Windows\SysWOW64\iertutil.dll - ok
20:20:02.0881 4648 [ DB8AA8CCA66DBD641C2B942ED5C15CE5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\AbbyyZlib.dll
20:20:02.0881 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\AbbyyZlib.dll - ok
20:20:02.0881 4648 [ 6A13B4F3B3F575F1E24B877B9359AABA ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
20:20:02.0881 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
20:20:02.0897 4648 [ FD50B596A5C2FC595AAE0D5A791B939A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensingShared.dll
20:20:02.0897 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensingShared.dll - ok
20:20:02.0913 4648 [ 539C49CEBB3C50957AC8A09D95ECD880 ] C:\Windows\SysWOW64\shfolder.dll
20:20:02.0913 4648 C:\Windows\SysWOW64\shfolder.dll - ok
20:20:02.0928 4648 [ 2DE87B444AA507D6DD2BA2FE739B047C ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing0.dll
20:20:02.0928 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing0.dll - ok
20:20:02.0928 4648 [ 803260C5EE2EE9289C6D53087EC50017 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing1.dll
20:20:02.0928 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing1.dll - ok
20:20:02.0944 4648 [ BEDE8BC1F0FE794829269C115C1A588E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing13.dll
20:20:02.0944 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing13.dll - ok
20:20:02.0959 4648 [ AEFD4172AAC818D987D26EDAF4A3B7C5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing14.dll
20:20:02.0959 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing14.dll - ok
20:20:02.0975 4648 [ 81DA9DF8C65BBB4CA871B5E2728674D5 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing15.dll
20:20:02.0975 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing15.dll - ok
20:20:02.0991 4648 [ 08E688BEE5FEF9214B9BB15CFB36E23A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing16.dll
20:20:02.0991 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing16.dll - ok
20:20:03.0006 4648 [ F5E2D6E3FF6238893215585A04192AD7 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing17.dll
20:20:03.0006 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing17.dll - ok
20:20:03.0006 4648 [ 9EF03D654D3AE8DA10F2D089B859337E ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing2.dll
20:20:03.0006 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing2.dll - ok
20:20:03.0022 4648 [ D7EE31A22CA2781FC6EBD12C831F6B59 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing23.dll
20:20:03.0022 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing23.dll - ok
20:20:03.0037 4648 [ 74BAF2D00BD902B80D69BE42A61F83DD ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing24.dll
20:20:03.0037 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing24.dll - ok
20:20:03.0053 4648 [ 42E2F8798B445F76671C88C155C1F18D ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing26.dll
20:20:03.0053 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing26.dll - ok
20:20:03.0053 4648 [ 239935CF6E2A2D464AB66E51EB067D66 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing3.dll
20:20:03.0053 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing3.dll - ok
20:20:03.0069 4648 [ 1AA94A15B0CE226341F4D731225D924C ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing5.dll
20:20:03.0069 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing5.dll - ok
20:20:03.0084 4648 [ F85AF7D697A2E3C9E69380C7AABA8F69 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing6.dll
20:20:03.0084 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing6.dll - ok
20:20:03.0100 4648 [ 7E13358593468500BDE154C5C497EC1A ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing63.dll
20:20:03.0100 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing63.dll - ok
20:20:03.0115 4648 [ 80D7A6E0EA9845F8D20E932DAFA4AC60 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing64.dll
20:20:03.0115 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing64.dll - ok
20:20:03.0115 4648 [ 28A3EED9BB0A781677E8F28BA4040FF6 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing65.dll
20:20:03.0115 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing65.dll - ok
20:20:03.0131 4648 [ C70FDA0C297D51B0A42E7AA322856541 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing69.dll
20:20:03.0131 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing69.dll - ok
20:20:03.0147 4648 [ F1B54578D13C99842EC23238284162F9 ] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing7.dll
20:20:03.0147 4648 C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\ProductLicensing7.dll - ok
20:20:03.0162 4648 [ ADC420616C501B45D26C0FD3EF1E54E4 ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
20:20:03.0162 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe - ok
20:20:03.0162 4648 [ A543AC1F7138376D778D630A35FCBC4C ] C:\Windows\SysWOW64\psapi.dll
20:20:03.0162 4648 C:\Windows\SysWOW64\psapi.dll - ok
20:20:03.0178 4648 [ 5997D769CDB108390DCFAEBF442BF816 ] C:\Windows\SysWOW64\RpcRtRemote.dll
20:20:03.0178 4648 C:\Windows\SysWOW64\RpcRtRemote.dll - ok
20:20:03.0193 4648 [ 7548C242D95CBFF76908360AD629C09F ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\ArcCon.dll
20:20:03.0193 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\ArcCon.dll - ok
20:20:03.0209 4648 [ B362181ED3771DC03B4141927C80F801 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
20:20:03.0209 4648 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
20:20:03.0209 4648 [ 5D9DC6332A4FC66388B09BBE7CF53750 ] C:\Windows\SysWOW64\urlmon.dll
20:20:03.0209 4648 C:\Windows\SysWOW64\urlmon.dll - ok
20:20:03.0225 4648 [ 1C60E09CA1C3A045BC4D367F67C915B7 ] C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
20:20:03.0225 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
20:20:03.0240 4648 [ CC09E0C9A2D89C6E71D093DC8BD121B7 ] C:\Windows\SysWOW64\crypt32.dll
20:20:03.0240 4648 C:\Windows\SysWOW64\crypt32.dll - ok
20:20:03.0240 4648 [ A6C29DB53ECA94FA8591C5388D604B82 ] C:\Windows\SysWOW64\msi.dll
20:20:03.0240 4648 C:\Windows\SysWOW64\msi.dll - ok
20:20:03.0256 4648 [ 938F39B50BAFE13D6F58C7790682C010 ] C:\Windows\SysWOW64\msasn1.dll
20:20:03.0256 4648 C:\Windows\SysWOW64\msasn1.dll - ok
20:20:03.0271 4648 [ 68EAAEDF0365168B804E8728368FA946 ] C:\Windows\SysWOW64\wintrust.dll
20:20:03.0271 4648 C:\Windows\SysWOW64\wintrust.dll - ok
20:20:03.0287 4648 [ CDBE9690CF2B8409FACAD94FAC9479C9 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
20:20:03.0287 4648 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok
20:20:03.0303 4648 [ D1E343BC00136CE03C4D403194D06A80 ] C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
20:20:03.0303 4648 C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe - ok
20:20:03.0303 4648 [ 3FD15B4611D9BDA3F8013548C0ECAECA ] C:\Windows\SysWOW64\ntmarta.dll
20:20:03.0303 4648 C:\Windows\SysWOW64\ntmarta.dll - ok
20:20:03.0318 4648 [ A8BB45F9ECAD993461E0FEF8E2A99152 ] C:\Windows\SysWOW64\Wldap32.dll
20:20:03.0318 4648 C:\Windows\SysWOW64\Wldap32.dll - ok
20:20:03.0334 4648 [ A567B70468A04F4BA64339D1CAF78E58 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
20:20:03.0334 4648 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe - ok
20:20:03.0334 4648 [ 4F096D96285E06CD51AEF7D2D3DE04DA ] C:\Windows\System32\msvcp100.dll
20:20:03.0334 4648 C:\Windows\System32\msvcp100.dll - ok
20:20:03.0349 4648 [ DF3CA8D16BDED6A54977B30E66864D33 ] C:\Windows\System32\msvcr100.dll
20:20:03.0349 4648 C:\Windows\System32\msvcr100.dll - ok
20:20:03.0365 4648 [ 671A40A97B7105D802A61D05E5477748 ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
20:20:03.0365 4648 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll - ok
20:20:03.0381 4648 [ 6AF588B2525F7AF76BB8B1DD7D59C4BC ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll
20:20:03.0381 4648 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\device.dll - ok
20:20:03.0381 4648 [ F518545E5B7623AD49ABE7F8776EFA46 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
20:20:03.0381 4648 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe - ok
20:20:03.0396 4648 [ BC83108B18756547013ED443B8CDB31B ] C:\Windows\SysWOW64\msvcp100.dll
20:20:03.0396 4648 C:\Windows\SysWOW64\msvcp100.dll - ok
20:20:03.0412 4648 [ 0E37FBFA79D349D672456923EC5FBBE3 ] C:\Windows\SysWOW64\msvcr100.dll
20:20:03.0412 4648 C:\Windows\SysWOW64\msvcr100.dll - ok
20:20:03.0427 4648 [ A8704A10FFDE468F4AB18EBF82A9A86F ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll
20:20:03.0427 4648 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcp80.dll - ok
20:20:03.0427 4648 [ EC6BA7C92FA5B2AA4AFDF4DF22AEDAB7 ] C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll
20:20:03.0427 4648 C:\Windows\winsxs\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_88e41e092fab0294\msvcr80.dll - ok
20:20:03.0443 4648 [ 29158B1DC3F86D4B0D6A127FE586ADFF ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll
20:20:03.0443 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\AppleVersions.dll - ok
20:20:03.0443 4648 [ 0E059FCB8F61BFC50014537564A9B26A ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll
20:20:03.0443 4648 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\platform.dll - ok
20:20:03.0459 4648 [ E26E6A97B94304F78B3A2D85C6056CC2 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll
20:20:03.0459 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\YSCrashDump.dll - ok
20:20:03.0474 4648 [ 461299398E15909598B7002B3FAABCE8 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll
20:20:03.0474 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CoreFoundation.dll - ok
20:20:03.0490 4648 [ EA6C35EBF9F3ED65724E1D65F09E6E7F ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll
20:20:03.0490 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\objc.dll - ok
20:20:03.0505 4648 [ 0D2B530F060C050265D67C191C8A89DE ] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
20:20:03.0505 4648 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll - ok
20:20:03.0521 4648 [ 357BE883C5236BFC7341CB9E82308908 ] C:\Windows\System32\wlanapi.dll
20:20:03.0521 4648 C:\Windows\System32\wlanapi.dll - ok
20:20:03.0521 4648 [ 8EAEB0ED23A98DE0F0C812D756E47CE9 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll
20:20:03.0521 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\ASL.dll - ok
20:20:03.0537 4648 [ 5760B2B5BAA3449C045B6FA222205F60 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll
20:20:03.0537 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libdispatch.dll - ok
20:20:03.0552 4648 [ D5AEFAD57C08349A4393D987DF7C715D ] C:\Windows\SysWOW64\winmm.dll
20:20:03.0552 4648 C:\Windows\SysWOW64\winmm.dll - ok
20:20:03.0552 4648 [ BCE7DD8098CE6DD28EE2B0D5D5028B47 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll
20:20:03.0552 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuin.dll - ok
20:20:03.0568 4648 [ 922563953E405AA9762F90778B711F77 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll
20:20:03.0568 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libicuuc.dll - ok
20:20:03.0583 4648 [ 54023DF1A9A7D481B4762B09ECCA330F ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt49.dll
20:20:03.0583 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\icudt49.dll - ok
20:20:03.0599 4648 [ 3452419032093CAB86ED6F5885B01F89 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
20:20:03.0599 4648 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll - ok
20:20:03.0599 4648 [ 2EC5693E2EE393F3A97BBB6C46D67779 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll
20:20:03.0599 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\pthreadVC2.dll - ok
20:20:03.0615 4648 [ 10FB16B50AFFDA6D44588F3C445DC273 ] C:\Windows\SysWOW64\setupapi.dll
20:20:03.0615 4648 C:\Windows\SysWOW64\setupapi.dll - ok
20:20:03.0630 4648 [ F436E847FA799ECD75AD8C313673F450 ] C:\Windows\SysWOW64\cfgmgr32.dll
20:20:03.0630 4648 C:\Windows\SysWOW64\cfgmgr32.dll - ok
20:20:03.0646 4648 [ 2EEFF4502F5E13B1BED4A04CCAD64C08 ] C:\Windows\SysWOW64\devobj.dll
20:20:03.0646 4648 C:\Windows\SysWOW64\devobj.dll - ok
20:20:03.0661 4648 [ DF13A51A5C591887D2EC6AE64CEED0FA ] C:\Windows\SysWOW64\wsock32.dll
20:20:03.0661 4648 C:\Windows\SysWOW64\wsock32.dll - ok
20:20:03.0661 4648 [ 6A6B2EE4565A178035BE2A4FF6F2C968 ] C:\Windows\SysWOW64\wtsapi32.dll
20:20:03.0661 4648 C:\Windows\SysWOW64\wtsapi32.dll - ok
20:20:03.0677 4648 [ 062373995EAE5F0EAC9EAA9192136BFB ] C:\Windows\SysWOW64\dnssd.dll
20:20:03.0677 4648 C:\Windows\SysWOW64\dnssd.dll - ok
20:20:03.0693 4648 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] C:\Program Files\Bonjour\mDNSResponder.exe
20:20:03.0693 4648 C:\Program Files\Bonjour\mDNSResponder.exe - ok
20:20:03.0693 4648 [ E94C583CDE2348950155F2AF2876F34D ] C:\Windows\SysWOW64\mswsock.dll
20:20:03.0693 4648 C:\Windows\SysWOW64\mswsock.dll - ok
20:20:03.0708 4648 [ EE5C8E27C37B79CB54A2FCEEED2DC262 ] C:\Windows\SysWOW64\WSHTCPIP.DLL
20:20:03.0708 4648 C:\Windows\SysWOW64\WSHTCPIP.DLL - ok
20:20:03.0724 4648 [ B26B5EB92C3D91885CC8595B03DFB3DB ] C:\Program Files\Microsoft Security Client\MpAsDesc.dll
20:20:03.0724 4648 C:\Program Files\Microsoft Security Client\MpAsDesc.dll - ok
20:20:03.0724 4648 [ 9C8E85B318BE2619170D7A9D684CDFB5 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll
20:20:03.0724 4648 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\MobileDevice.dll - ok
20:20:03.0739 4648 [ 9E530C6F0EEE34CCEAC8104838AB68C7 ] C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
20:20:03.0739 4648 C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe - ok
20:20:03.0755 4648 [ 725AB72D5DD462F2EDAF1A6C59C8CFB5 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
20:20:03.0755 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll - ok
20:20:03.0771 4648 [ 218A400108F280428FA22282D3268BBC ] C:\Windows\System32\wscapi.dll
20:20:03.0771 4648 C:\Windows\System32\wscapi.dll - ok
20:20:03.0771 4648 [ F5CEF064C7E6D95DA86B9D064A56A969 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
20:20:03.0771 4648 C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
20:20:03.0786 4648 [ 6BDF91038CB78269B8063617597A6D4F ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll
20:20:03.0786 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\CFNetwork.dll - ok
20:20:03.0802 4648 [ CA9F7888B524D8100B977C81F44C3234 ] C:\Windows\SysWOW64\winhttp.dll
20:20:03.0802 4648 C:\Windows\SysWOW64\winhttp.dll - ok
20:20:03.0802 4648 [ FB19FC5951A88F3C523E35C2C98D23C0 ] C:\Windows\SysWOW64\webio.dll
20:20:03.0802 4648 C:\Windows\SysWOW64\webio.dll - ok
20:20:03.0817 4648 [ 4EDB186C455CDEADA24A708AAB884AE3 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
20:20:03.0817 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll - ok
20:20:03.0833 4648 [ 57A6362D71B5003C48EE21F2DBB624B1 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll
20:20:03.0833 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\SQLite3.dll - ok
20:20:03.0849 4648 [ 96B14B79C71CE4A7783184CC8B5DBCE8 ] C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
20:20:03.0849 4648 C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe - ok
20:20:03.0864 4648 [ 8CD1DEE212E52B9C22E66DBA44991D32 ] C:\Windows\SysWOW64\httpapi.dll
20:20:03.0864 4648 C:\Windows\SysWOW64\httpapi.dll - ok
20:20:03.0880 4648 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] C:\Windows\System32\dps.dll
20:20:03.0880 4648 C:\Windows\System32\dps.dll - ok
20:20:03.0880 4648 [ 6B400F211BEE880A37A1ED0368776BF4 ] C:\Windows\System32\cryptsvc.dll
20:20:03.0880 4648 C:\Windows\System32\cryptsvc.dll - ok
20:20:03.0895 4648 [ 5893EBDCE371174AC89ECD7731DD6D77 ] C:\Windows\SysWOW64\pcwum.dll
20:20:03.0895 4648 C:\Windows\SysWOW64\pcwum.dll - ok
20:20:03.0911 4648 [ BAAFAF9CEAEC0B73C2A3550A01F6CECB ] C:\Windows\System32\taskschd.dll
20:20:03.0911 4648 C:\Windows\System32\taskschd.dll - ok
20:20:03.0911 4648 [ A6B726DCA228F7878E38368A1BDC68BE ] C:\Windows\System32\cryptnet.dll
20:20:03.0911 4648 C:\Windows\System32\cryptnet.dll - ok
20:20:03.0927 4648 [ 1E0764A8A8F39BAAEB271DA597422584 ] C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
20:20:03.0927 4648 C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe - ok
20:20:03.0942 4648 [ 0E2F58F6E698EDCB9E58FAD0CBCD0567 ] C:\Windows\System32\vssapi.dll
20:20:03.0942 4648 C:\Windows\System32\vssapi.dll - ok
20:20:03.0942 4648 [ 0015ACFBBDD164A8A730009908868CA7 ] C:\Windows\System32\winspool.drv
20:20:03.0942 4648 C:\Windows\System32\winspool.drv - ok
20:20:03.0958 4648 [ 287923557447D7E4BDD7E65B1F0F5428 ] C:\Windows\System32\vsstrace.dll
20:20:03.0958 4648 C:\Windows\System32\vsstrace.dll - ok
20:20:03.0958 4648 [ 58F4493BF748A3A89689997B7BD00E95 ] C:\Windows\System32\winhttp.dll
20:20:03.0958 4648 C:\Windows\System32\winhttp.dll - ok
20:20:03.0973 4648 [ 603EBD34E216C5654A2D774EAC98D278 ] C:\Windows\System32\webio.dll
20:20:03.0973 4648 C:\Windows\System32\webio.dll - ok
20:20:03.0989 4648 [ 802496CB59A30349F9A6DD22D6947644 ] C:\Windows\System32\FDResPub.dll
20:20:03.0989 4648 C:\Windows\System32\FDResPub.dll - ok
20:20:04.0005 4648 [ F1B205F932F62F94506A5F332C895DAF ] C:\Windows\System32\WSDApi.dll
20:20:04.0005 4648 C:\Windows\System32\WSDApi.dll - ok
20:20:04.0005 4648 [ AFB5B500AD69E24ED1BC15D1161641EF ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
20:20:04.0005 4648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL - ok
20:20:04.0020 4648 [ C55516D98DD5D8F0153C2A9B4227DA86 ] C:\Windows\System32\webservices.dll
20:20:04.0020 4648 C:\Windows\System32\webservices.dll - ok
20:20:04.0036 4648 [ F9D908DE6B166DAC9B89BF62FA291CE8 ] C:\Program Files\Bonjour\mdnsNSP.dll
20:20:04.0036 4648 C:\Program Files\Bonjour\mdnsNSP.dll - ok
20:20:04.0051 4648 [ 6A181452D4E240B8ECC7614B9A19BDE9 ] C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
20:20:04.0051 4648 C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe - ok
20:20:04.0051 4648 [ 88351B29B622B30962D2FEB6CA8D860B ] C:\Windows\System32\rasadhlp.dll
20:20:04.0051 4648 C:\Windows\System32\rasadhlp.dll - ok
20:20:04.0067 4648 [ B5055B51BAA0FD0A736A88653DA3C1C0 ] C:\Windows\System32\fundisc.dll
20:20:04.0067 4648 C:\Windows\System32\fundisc.dll - ok
20:20:04.0083 4648 [ 45CFBFA8EDC3DF4E2B7FB0D0260FE051 ] C:\Windows\System32\localspl.dll
20:20:04.0083 4648 C:\Windows\System32\localspl.dll - ok
20:20:04.0098 4648 [ 4BD79D03984226DB22D19BBE79369E0E ] C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_044aad0bab1eb146\mfc90u.dll
20:20:04.0098 4648 C:\Windows\winsxs\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_044aad0bab1eb146\mfc90u.dll - ok
20:20:04.0098 4648 [ 3285481F5C12305CA104A6C493CA5A0B ] C:\Windows\System32\spoolss.dll
20:20:04.0098 4648 C:\Windows\System32\spoolss.dll - ok
20:20:04.0114 4648 [ C5AC93CF3BA30D367FB49148A2B673B9 ] C:\Windows\System32\PrintIsolationProxy.dll
20:20:04.0114 4648 C:\Windows\System32\PrintIsolationProxy.dll - ok
20:20:04.0129 4648 [ 12A0531ADED17176D6B0CBFE8F9B4326 ] C:\Windows\System32\cpwmon64.dll
20:20:04.0129 4648 C:\Windows\System32\cpwmon64.dll - ok
20:20:04.0145 4648 [ EC03B2D63A9A3AB25A7062CC9036F453 ] C:\Windows\System32\E_YLMIUE.DLL
20:20:04.0145 4648 C:\Windows\System32\E_YLMIUE.DLL - ok
20:20:04.0145 4648 [ D1690C013B8F6B5A7955B589D7644B3E ] C:\Windows\System32\enppmon.dll
20:20:04.0145 4648 C:\Windows\System32\enppmon.dll - ok
20:20:04.0161 4648 [ BCEA9AB347E53BC03B2E36BE0B8BA0EF ] C:\Windows\System32\httpapi.dll
20:20:04.0161 4648 C:\Windows\System32\httpapi.dll - ok
20:20:04.0176 4648 [ 1658E808E4D4889C66DE47EC87F1DED1 ] C:\Windows\System32\msvcp60.dll
20:20:04.0176 4648 C:\Windows\System32\msvcp60.dll - ok
20:20:04.0192 4648 [ 81D38F895C26BD9EE13C230AA67F2F94 ] C:\Windows\System32\enpres.dll
20:20:04.0192 4648 C:\Windows\System32\enpres.dll - ok
20:20:04.0192 4648 [ C835670705596AE67EE7E0AE92A12071 ] C:\Windows\System32\HPZLLLHN.DLL
20:20:04.0192 4648 C:\Windows\System32\HPZLLLHN.DLL - ok
20:20:04.0207 4648 [ 19E41CCCEE697CC9465396B370929792 ] C:\Windows\System32\FXSMON.dll
20:20:04.0207 4648 C:\Windows\System32\FXSMON.dll - ok
20:20:04.0223 4648 [ 06C364E9A8E3AD34897D2B49CAA9D100 ] C:\Windows\System32\HPZ3LLHN.DLL
20:20:04.0223 4648 C:\Windows\System32\HPZ3LLHN.DLL - ok
20:20:04.0223 4648 [ D233C7FEAE3FAA25F93A9E6B46815ADC ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll
20:20:04.0223 4648 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcr90.dll - ok
20:20:04.0239 4648 [ 3757A25805E1E61547EE2D776D1E6D7D ] C:\Windows\System32\pdfc_port.dll
20:20:04.0239 4648 C:\Windows\System32\pdfc_port.dll - ok
20:20:04.0254 4648 [ 32A3C8600AF124CBAAD845F13CFAE3CB ] C:\Windows\System32\tcpmon.dll
20:20:04.0254 4648 C:\Windows\System32\tcpmon.dll - ok
20:20:04.0254 4648 [ 93518C6EDE0B61BCBD02BDB02BD05FEE ] C:\Windows\System32\snmpapi.dll
20:20:04.0254 4648 C:\Windows\System32\snmpapi.dll - ok
20:20:04.0270 4648 [ FFF9D00CF16397C64317F213484F94BD ] C:\Windows\System32\wsnmp32.dll
20:20:04.0270 4648 C:\Windows\System32\wsnmp32.dll - ok
20:20:04.0285 4648 [ 9028D1621C43DF8DFBD1C76860412A11 ] C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll
20:20:04.0285 4648 C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll - ok
20:20:04.0301 4648 [ E424B3EF666B184CEE0B6871AAA8C9F6 ] C:\Windows\System32\msimg32.dll
20:20:04.0301 4648 C:\Windows\System32\msimg32.dll - ok
20:20:04.0301 4648 [ DF72A9936D0C3F517083119648814B09 ] C:\Windows\System32\usbmon.dll
20:20:04.0301 4648 C:\Windows\System32\usbmon.dll - ok
20:20:04.0317 4648 [ A1D7E3ADCDB07DDB6F423862DCB1A52B ] C:\Windows\System32\WSDMon.dll
20:20:04.0317 4648 C:\Windows\System32\WSDMon.dll - ok
20:20:04.0332 4648 [ 241AF87821FDA0F5792037B779F49BE0 ] C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll
20:20:04.0332 4648 C:\Windows\winsxs\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_08e61857a83bc251\msvcp90.dll - ok
20:20:04.0332 4648 [ 4581716B4BF76ACFD8E167EB0B26D82A ] C:\Windows\System32\fdPnp.dll
20:20:04.0332 4648 C:\Windows\System32\fdPnp.dll - ok
20:20:04.0348 4648 [ 1D626FE2E13C1CE49CA0136CFF214E93 ] C:\Windows\System32\spool\prtprocs\x64\winprint.dll
20:20:04.0348 4648 C:\Windows\System32\spool\prtprocs\x64\winprint.dll - ok
20:20:04.0363 4648 [ 43604DB56E81FD75E87C85387765DF37 ] C:\Windows\System32\spool\prtprocs\x64\HPZPPLHN.DLL
20:20:04.0363 4648 C:\Windows\System32\spool\prtprocs\x64\HPZPPLHN.DLL - ok
20:20:04.0379 4648 [ D918AF3EA07D248F911F7C6B801AA1E3 ] C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_01c9581e60cbee58\MFC90ENU.DLL
20:20:04.0379 4648 C:\Windows\winsxs\amd64_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_01c9581e60cbee58\MFC90ENU.DLL - ok
20:20:04.0395 4648 [ 67CF11E00D026A5C0C88EA5F84D501E5 ] C:\Windows\System32\win32spl.dll
20:20:04.0395 4648 C:\Windows\System32\win32spl.dll - ok
20:20:04.0395 4648 [ 54A47F6B5E09A77E61649109C6A08866 ] C:\Windows\SysWOW64\svchost.exe
20:20:04.0395 4648 C:\Windows\SysWOW64\svchost.exe - ok
20:20:04.0410 4648 [ D5AC41AE382738483FAFFBD7E373D49A ] C:\Windows\System32\HPZinw12.dll
20:20:04.0410 4648 C:\Windows\System32\HPZinw12.dll - ok
20:20:04.0426 4648 [ E36112A8A6C7F840169A7E92C12F4203 ] C:\Windows\System32\wsock32.dll
20:20:04.0426 4648 C:\Windows\System32\wsock32.dll - ok
20:20:04.0426 4648 [ 351533ACC2A069B94E80BBFC177E8FDF ] C:\Windows\System32\drivers\npf.sys
20:20:04.0426 4648 C:\Windows\System32\drivers\npf.sys - ok
20:20:04.0441 4648 [ 344789398EC3EE5A4E00C52B31847946 ] C:\Windows\System32\IKEEXT.DLL
20:20:04.0441 4648 C:\Windows\System32\IKEEXT.DLL - ok
20:20:04.0457 4648 [ 8AD77806D336673F270DB31645267293 ] C:\Windows\System32\nlasvc.dll
20:20:04.0457 4648 C:\Windows\System32\nlasvc.dll - ok
20:20:04.0473 4648 [ 1727B2A2F379A32B864C096FA794AADC ] C:\Windows\System32\aepic.dll
20:20:04.0473 4648 C:\Windows\System32\aepic.dll - ok
20:20:04.0473 4648 [ 20B5060889E5BB239AF87E3E57B97867 ] C:\Program Files (x86)\PDF Complete\pdfsvc.exe
20:20:04.0473 4648 C:\Program Files (x86)\PDF Complete\pdfsvc.exe - ok
20:20:04.0488 4648 [ C6DCD1D11ED6827F05C00773C3E7053C ] C:\Windows\System32\sfc.dll
20:20:04.0488 4648 C:\Windows\System32\sfc.dll - ok
20:20:04.0488 4648 [ D4FAC263861BAE06971C7F7D0A8EBF15 ] C:\Windows\System32\ncsi.dll
20:20:04.0488 4648 C:\Windows\System32\ncsi.dll - ok
20:20:04.0504 4648 [ 895C9AB0A855547445C4181195230757 ] C:\Windows\System32\sfc_os.dll
20:20:04.0504 4648 C:\Windows\System32\sfc_os.dll - ok
20:20:04.0519 4648 [ 507D5567A0A4EE86C4B0CE2CE1777025 ] C:\Windows\System32\inetpp.dll
20:20:04.0519 4648 C:\Windows\System32\inetpp.dll - ok
20:20:04.0519 4648 [ 99E8EEF42FE2F4AF29B08C3355DD7685 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddsvc.dll
20:20:04.0519 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddsvc.dll - ok
20:20:04.0535 4648 [ 4909501F53DA2EB6603848944C45F524 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddcmn.dll
20:20:04.0535 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddcmn.dll - ok
20:20:04.0551 4648 [ 2BBF3FDB70B8965DFA0258CBAB41ECCE ] C:\Windows\System32\ssdpapi.dll
20:20:04.0551 4648 C:\Windows\System32\ssdpapi.dll - ok
20:20:04.0566 4648 [ 77B5035BC6EDF4D1B6265391AECEE4C0 ] C:\Windows\System32\vpnikeapi.dll
20:20:04.0566 4648 C:\Windows\System32\vpnikeapi.dll - ok
20:20:04.0582 4648 [ 29D8A3F28222C72606901852ACD20D73 ] C:\Windows\System32\spool\drivers\x64\3\E_YMAIIUE.DLL
20:20:04.0582 4648 C:\Windows\System32\spool\drivers\x64\3\E_YMAIIUE.DLL - ok
20:20:04.0597 4648 [ 4C39358EBDD2FFCD9132A30E1EC31E16 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
20:20:04.0597 4648 C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok
20:20:04.0613 4648 [ 1BF0CB861A48FEB1638228760750F3CB ] C:\Windows\System32\cscapi.dll
20:20:04.0613 4648 C:\Windows\System32\cscapi.dll - ok
20:20:04.0629 4648 [ 038BCAB439A4CFD39B5EECCE793E9B19 ] C:\Windows\System32\spool\drivers\x64\3\E_YUICIUE.DLL
20:20:04.0629 4648 C:\Windows\System32\spool\drivers\x64\3\E_YUICIUE.DLL - ok
20:20:04.0644 4648 [ 75F5E1FE8D55CF8E577E0EC5F2290D3F ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll
20:20:04.0644 4648 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll - ok
20:20:04.0644 4648 [ 5AC3CB53406CB9AABB25D46B3385528F ] C:\Windows\System32\spool\drivers\x64\3\unidrvui.dll
20:20:04.0644 4648 C:\Windows\System32\spool\drivers\x64\3\unidrvui.dll - ok
20:20:04.0660 4648 [ E81F5A2F6D52215C0E84F2849503EBA8 ] C:\Windows\System32\tcpmib.dll
20:20:04.0660 4648 C:\Windows\System32\tcpmib.dll - ok
20:20:04.0675 4648 [ EFEC3847B47CC9357D5C33BBAB59B7EB ] C:\Windows\System32\mgmtapi.dll
20:20:04.0675 4648 C:\Windows\System32\mgmtapi.dll - ok
20:20:04.0691 4648 [ FF5688D309347F2720911D8796912834 ] C:\Windows\SysWOW64\clbcatq.dll
20:20:04.0691 4648 C:\Windows\SysWOW64\clbcatq.dll - ok
20:20:04.0691 4648 [ 6E3754AFF0B2DC3208D53E306EF6FD45 ] C:\Windows\System32\spool\drivers\x64\3\E_YAUDIUE.DLL
20:20:04.0691 4648 C:\Windows\System32\spool\drivers\x64\3\E_YAUDIUE.DLL - ok
20:20:04.0707 4648 [ ADE2BCD1FDE5C9669FCE1F4541AB46DD ] C:\Windows\System32\spool\drivers\x64\3\UNIDRV.DLL
20:20:04.0707 4648 C:\Windows\System32\spool\drivers\x64\3\UNIDRV.DLL - ok
20:20:04.0722 4648 [ 7321F18D1F820612ED0E9F2D4B578A7E ] C:\Windows\SysWOW64\cryptsp.dll
20:20:04.0722 4648 C:\Windows\SysWOW64\cryptsp.dll - ok
20:20:04.0722 4648 [ ED8EC63F7522DF4852147C84EC62C36A ] C:\Windows\SysWOW64\rsaenh.dll
20:20:04.0722 4648 C:\Windows\SysWOW64\rsaenh.dll - ok
20:20:04.0738 4648 [ A152552B3F447E99051AD7A96FA308EF ] C:\Windows\System32\spool\drivers\x64\3\HPZUILHN.DLL
20:20:04.0738 4648 C:\Windows\System32\spool\drivers\x64\3\HPZUILHN.DLL - ok
20:20:04.0753 4648 [ 68769C3356B3BE5D1C732C97B9A80D6E ] C:\Windows\System32\drivers\PEAuth.sys
20:20:04.0753 4648 C:\Windows\System32\drivers\PEAuth.sys - ok
20:20:04.0753 4648 [ 210FCACAF902B2CD47CF9FD17D846146 ] C:\Windows\System32\aeevts.dll
20:20:04.0753 4648 C:\Windows\System32\aeevts.dll - ok
20:20:04.0769 4648 [ 352B3DC62A0D259A82A052238425C872 ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
20:20:04.0769 4648 C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - ok
20:20:04.0785 4648 [ 20D6830A18E4892C06BF3DA5D66FF52E ] C:\Windows\System32\spool\drivers\x64\3\E_YASKIUE.DLL
20:20:04.0785 4648 C:\Windows\System32\spool\drivers\x64\3\E_YASKIUE.DLL - ok
20:20:04.0785 4648 [ 37F6046CDC630442D7DC087501FF6FC6 ] C:\Windows\System32\HPZipm12.dll
20:20:04.0785 4648 C:\Windows\System32\HPZipm12.dll - ok
20:20:04.0800 4648 [ 3EA8A16169C26AFBEB544E0E48421186 ] C:\Windows\System32\drivers\secdrv.sys
20:20:04.0800 4648 C:\Windows\System32\drivers\secdrv.sys - ok
20:20:04.0816 4648 [ 02DED435FCAA1C02959051AF636E154A ] C:\Program Files (x86)\ShadowExplorer\sesvc.exe
20:20:04.0816 4648 C:\Program Files (x86)\ShadowExplorer\sesvc.exe - ok
20:20:04.0831 4648 [ A08C010D859F8EB42BDD7E1D55B8CA27 ] C:\Windows\System32\mscoree.dll
20:20:04.0831 4648 C:\Windows\System32\mscoree.dll - ok
20:20:04.0831 4648 [ CDA59C183B3DB8CF35380836ADD74AAD ] C:\Windows\System32\compstui.dll
20:20:04.0831 4648 C:\Windows\System32\compstui.dll - ok
20:20:04.0847 4648 [ D44067027714CC58B8AB0AC38FDA1A0B ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
20:20:04.0847 4648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll - ok
20:20:04.0863 4648 [ 08A3D436AC1CE90626FEAA1DAF8B3430 ] C:\Windows\System32\spool\drivers\x64\3\E_YAPRIUE.DLL
20:20:04.0863 4648 C:\Windows\System32\spool\drivers\x64\3\E_YAPRIUE.DLL - ok
20:20:04.0863 4648 [ B24232BCA42AA784A5C951B74B7789D3 ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
20:20:04.0863 4648 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll - ok
20:20:04.0878 4648 [ 9A0C06765A63EDA88184A0CFE96D5423 ] C:\Windows\System32\spool\drivers\x64\3\E_YABRIUE.DLL
20:20:04.0878 4648 C:\Windows\System32\spool\drivers\x64\3\E_YABRIUE.DLL - ok
20:20:04.0894 4648 [ 4C5F631BE4BA554D482FFE85133C0EC5 ] C:\Windows\System32\spool\drivers\x64\3\E_YBA7IUE.DLL
20:20:04.0894 4648 C:\Windows\System32\spool\drivers\x64\3\E_YBA7IUE.DLL - ok
20:20:04.0909 4648 [ 6CEF7856A3EFAC59470F6208F0F585CE ] C:\Windows\System32\mpr.dll
20:20:04.0909 4648 C:\Windows\System32\mpr.dll - ok
20:20:04.0909 4648 [ B3E76A119F522F981D672DD93ED74081 ] C:\Windows\System32\spool\drivers\x64\3\E_YBL6IUE.DLL
20:20:04.0909 4648 C:\Windows\System32\spool\drivers\x64\3\E_YBL6IUE.DLL - ok
20:20:04.0941 4648 [ 9FA56171C452530E2F51E3238B52140B ] C:\Windows\System32\bidispl.dll
20:20:04.0941 4648 C:\Windows\System32\bidispl.dll - ok
20:20:04.0941 4648 [ 05ED7941B21C09A585F4D6A1841CE448 ] C:\Windows\System32\spool\drivers\x64\3\E_YBEWIUE.DLL
20:20:04.0941 4648 C:\Windows\System32\spool\drivers\x64\3\E_YBEWIUE.DLL - ok
20:20:04.0956 4648 [ 7D16196C58287F15272DD885F8DA7F0E ] C:\Windows\System32\spool\drivers\x64\3\E_YERSIUE.DLL
20:20:04.0956 4648 C:\Windows\System32\spool\drivers\x64\3\E_YERSIUE.DLL - ok
20:20:04.0972 4648 [ AB44EE3B916F1626B9C4222F2B6F2DE4 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\bb750d3baf928f94ea3977e96af9769f\mscorlib.ni.dll
20:20:04.0972 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\mscorlib\bb750d3baf928f94ea3977e96af9769f\mscorlib.ni.dll - ok
20:20:04.0987 4648 [ C8E8B8239FCF17BEA10E751BE5854631 ] C:\Windows\System32\FXSRESM.dll
20:20:04.0987 4648 C:\Windows\System32\FXSRESM.dll - ok
20:20:04.0987 4648 [ 1B1431D9520C7578AD5633ED2A70625F ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll
20:20:04.0987 4648 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorjit.dll - ok
20:20:05.0003 4648 [ DE9EC2C90DA5A74ACA19AF8CF564748E ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System\350ed175b92e48f5249a1bab538872e5\System.ni.dll
20:20:05.0003 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System\350ed175b92e48f5249a1bab538872e5\System.ni.dll - ok
20:20:05.0019 4648 [ 3F2C5D443777650ACD8FE56AC1E34D25 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\7934f9795ad87e109e4df93b3a5cdf06\System.ServiceProcess.ni.dll
20:20:05.0019 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceProce#\7934f9795ad87e109e4df93b3a5cdf06\System.ServiceProcess.ni.dll - ok
20:20:05.0019 4648 [ 50D9949020E02B847CD48F1243FCB895 ] C:\Program Files (x86)\Skype\Updater\Updater.exe
20:20:05.0019 4648 C:\Program Files (x86)\Skype\Updater\Updater.exe - ok
20:20:05.0034 4648 [ C7113C1DE9319A494728ACE1F78E2E37 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\b1e4721fb4cc9314a4ec7a81d68b9fba\System.ServiceModel.ni.dll
20:20:05.0034 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel\b1e4721fb4cc9314a4ec7a81d68b9fba\System.ServiceModel.ni.dll - ok
20:20:05.0050 4648 [ 27E461F0BE5BFF5FC737328F749538C3 ] C:\Windows\System32\drivers\srvnet.sys
20:20:05.0050 4648 C:\Windows\System32\drivers\srvnet.sys - ok
20:20:05.0065 4648 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] C:\Windows\System32\sysmain.dll
20:20:05.0065 4648 C:\Windows\System32\sysmain.dll - ok
20:20:05.0065 4648 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] C:\Windows\System32\wiaservc.dll
20:20:05.0065 4648 C:\Windows\System32\wiaservc.dll - ok
20:20:05.0081 4648 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] C:\Windows\System32\drivers\tcpipreg.sys
20:20:05.0081 4648 C:\Windows\System32\drivers\tcpipreg.sys - ok
20:20:05.0097 4648 [ 0364256B4A2A93A8C8CDA6B3B5A0EFF5 ] C:\Windows\System32\wiatrace.dll
20:20:05.0097 4648 C:\Windows\System32\wiatrace.dll - ok
20:20:05.0112 4648 [ 19B07E7E8915D701225DA41CB3877306 ] C:\Windows\System32\wbem\WMIsvc.dll
20:20:05.0112 4648 C:\Windows\System32\wbem\WMIsvc.dll - ok
20:20:05.0112 4648 [ 7E7AFD841694F6AC397E99D75CEAD49D ] C:\Windows\System32\trkwks.dll
20:20:05.0112 4648 C:\Windows\System32\trkwks.dll - ok
20:20:05.0128 4648 [ 2BACD71123F42CEA603F4E205E1AE337 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:20:05.0128 4648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE - ok
20:20:05.0143 4648 [ 7DB5AA22A8A8E5C2D335F44853C1F6DE ] C:\Windows\System32\wbemcomn.dll
20:20:05.0143 4648 C:\Windows\System32\wbemcomn.dll - ok
20:20:05.0159 4648 [ 0255C22D99602534F15CBB8D9B6F152F ] C:\Windows\System32\wbem\WinMgmtR.dll
20:20:05.0159 4648 C:\Windows\System32\wbem\WinMgmtR.dll - ok
20:20:05.0175 4648 [ 0C52762C606BCF6A377D5E4688191A6B ] C:\Windows\System32\wbem\WmiDcPrv.dll
20:20:05.0175 4648 C:\Windows\System32\wbem\WmiDcPrv.dll - ok
20:20:05.0175 4648 [ A3F5E8EC1316C3E2562B82694A251C9E ] C:\Windows\System32\wbem\fastprox.dll
20:20:05.0175 4648 C:\Windows\System32\wbem\fastprox.dll - ok
20:20:05.0190 4648 [ EE26D130808D16C0E417BBBED0451B34 ] C:\Windows\System32\ntdsapi.dll
20:20:05.0190 4648 C:\Windows\System32\ntdsapi.dll - ok
20:20:05.0206 4648 [ B837D1528CE2E3CB79F09496BC08DDC6 ] C:\Windows\System32\SensApi.dll
20:20:05.0206 4648 C:\Windows\System32\SensApi.dll - ok
20:20:05.0206 4648 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL
20:20:05.0206 4648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\SQMAPI.DLL - ok
20:20:05.0221 4648 [ 666A60F6F5E719856FF6254E0966EFF7 ] C:\Windows\System32\wbem\wbemprox.dll
20:20:05.0221 4648 C:\Windows\System32\wbem\wbemprox.dll - ok
20:20:05.0237 4648 [ 9689A9C7F7C2A1A423CDA2C3B43FFF65 ] C:\Windows\System32\wer.dll
20:20:05.0237 4648 C:\Windows\System32\wer.dll - ok
20:20:05.0237 4648 [ 5EB55F661DEBF156E126160BCD4D89F8 ] C:\Windows\System32\wbem\wbemcore.dll
20:20:05.0253 4648 C:\Windows\System32\wbem\wbemcore.dll - ok
20:20:05.0253 4648 [ 7523E7D2AB0C49585C0C199264B2BD73 ] C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
20:20:05.0253 4648 C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll - ok
20:20:05.0268 4648 [ 20ECD0A490A121CB34F553FAD1DBBD39 ] C:\Windows\System32\escsvc64.exe
20:20:05.0268 4648 C:\Windows\System32\escsvc64.exe - ok
20:20:05.0284 4648 [ 0D298133C359AB8CB9EB4FA178BF3947 ] C:\Windows\System32\msxml3.dll
20:20:05.0284 4648 C:\Windows\System32\msxml3.dll - ok
20:20:05.0284 4648 [ 087D8668C71634A3A3761135ABF16EEE ] C:\Windows\System32\wbem\esscli.dll
20:20:05.0284 4648 C:\Windows\System32\wbem\esscli.dll - ok
20:20:05.0299 4648 [ 08C2957BB30058E663720C5606885653 ] C:\Windows\System32\iphlpsvc.dll
20:20:05.0299 4648 C:\Windows\System32\iphlpsvc.dll - ok
20:20:05.0315 4648 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] C:\Windows\System32\drivers\srv2.sys
20:20:05.0315 4648 C:\Windows\System32\drivers\srv2.sys - ok
20:20:05.0331 4648 [ 27B9E163740A226B65E4B9E186117911 ] C:\Windows\System32\sqmapi.dll
20:20:05.0331 4648 C:\Windows\System32\sqmapi.dll - ok
20:20:05.0346 4648 [ 2A46FFE841EC43001D5A293A54DB34DE ] C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
20:20:05.0346 4648 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE - ok
20:20:05.0346 4648 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] C:\Windows\System32\drivers\srv.sys
20:20:05.0346 4648 C:\Windows\System32\drivers\srv.sys - ok
20:20:05.0362 4648 [ 7B38D7916A7CD058C16A0A6CA5077901 ] C:\Windows\System32\wdscore.dll
20:20:05.0362 4648 C:\Windows\System32\wdscore.dll - ok
20:20:05.0377 4648 [ 718B6F51AB7F6FE2988A36868F9AD3AB ] C:\Windows\System32\wbem\wbemsvc.dll
20:20:05.0377 4648 C:\Windows\System32\wbem\wbemsvc.dll - ok
20:20:05.0377 4648 [ 0143DB80DACFB7C2B5B7009ED9063353 ] C:\Windows\System32\wbem\wmiutils.dll
20:20:05.0377 4648 C:\Windows\System32\wbem\wmiutils.dll - ok
20:20:05.0393 4648 [ D9F42719019740BAA6D1C6D536CBDAA6 ] C:\Windows\System32\srvsvc.dll
20:20:05.0393 4648 C:\Windows\System32\srvsvc.dll - ok
20:20:05.0409 4648 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] C:\Windows\System32\browser.dll
20:20:05.0409 4648 C:\Windows\System32\browser.dll - ok
20:20:05.0409 4648 [ CFEFA40DDE34659BE5211966EAD86437 ] C:\Windows\System32\netmsg.dll
20:20:05.0409 4648 C:\Windows\System32\netmsg.dll - ok
20:20:05.0424 4648 [ 3B367397320C26DBA890B260F80D1B1B ] C:\Windows\System32\hnetcfg.dll
20:20:05.0424 4648 C:\Windows\System32\hnetcfg.dll - ok
20:20:05.0440 4648 [ 0AB34456654C283DAA13B8D2BA21439B ] C:\Windows\System32\wbem\repdrvfs.dll
20:20:05.0440 4648 C:\Windows\System32\wbem\repdrvfs.dll - ok
20:20:05.0455 4648 [ FF80CAD87555E8E4D2CFD7B9058343F8 ] C:\Windows\System32\sscore.dll
20:20:05.0455 4648 C:\Windows\System32\sscore.dll - ok
20:20:05.0455 4648 [ 81749E073AC5857B044A686B406E5244 ] C:\Windows\System32\clusapi.dll
20:20:05.0455 4648 C:\Windows\System32\clusapi.dll - ok
20:20:05.0471 4648 [ 344FCC9850C3A8A3B4D3C65151AF8E4C ] C:\Windows\System32\resutils.dll
20:20:05.0471 4648 C:\Windows\System32\resutils.dll - ok
20:20:05.0487 4648 [ FEB91B4DA0D540865260A33838654FA3 ] C:\Windows\System32\nci.dll
20:20:05.0487 4648 C:\Windows\System32\nci.dll - ok
20:20:05.0502 4648 [ A1634D092A8D5ACF3E1520B8B69BA138 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\56734d9160d5c03582064f3dd08194e0\SMDiagnostics.ni.dll
20:20:05.0502 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\SMDiagnostics\56734d9160d5c03582064f3dd08194e0\SMDiagnostics.ni.dll - ok
20:20:05.0502 4648 [ 1FD1215C4B622EB21D50BC6F80821023 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\d6a43130081227fd48defe1a87040123\System.Configuration.ni.dll
20:20:05.0518 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Configuration\d6a43130081227fd48defe1a87040123\System.Configuration.ni.dll - ok
20:20:05.0518 4648 [ DDD0357A92FA843EFF8915ED17253D6C ] C:\Windows\System32\wbem\WmiPrvSD.dll
20:20:05.0518 4648 C:\Windows\System32\wbem\WmiPrvSD.dll - ok
20:20:05.0533 4648 [ 547BE09D331BBCF57F3AF5B4FC02C310 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\210e87c409d2f08e7503e9ab1e12db11\System.Xml.ni.dll
20:20:05.0533 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Xml\210e87c409d2f08e7503e9ab1e12db11\System.Xml.ni.dll - ok
20:20:05.0549 4648 [ D41FEBD098234F02485A4EA98D4730A4 ] C:\Windows\System32\ncobjapi.dll
20:20:05.0549 4648 C:\Windows\System32\ncobjapi.dll - ok
20:20:05.0549 4648 [ 6F40D6FB05E0C1E5402812B426971AF0 ] C:\Windows\System32\wbem\wbemess.dll
20:20:05.0549 4648 C:\Windows\System32\wbem\wbemess.dll - ok
20:20:05.0565 4648 [ 2E483EC51216B52C711C7EC642798BB7 ] C:\Windows\System32\sti.dll
20:20:05.0565 4648 C:\Windows\System32\sti.dll - ok
20:20:05.0580 4648 [ D7623880851662CA53DABFBEA70D918D ] C:\Windows\System32\spool\drivers\x64\3\EFXGI09A.DLL
20:20:05.0580 4648 C:\Windows\System32\spool\drivers\x64\3\EFXGI09A.DLL - ok
20:20:05.0580 4648 [ 3B809816F75EB7235ACF1C3B584B1F31 ] C:\Windows\System32\spool\drivers\x64\3\EFXMI09A.DLL
20:20:05.0580 4648 C:\Windows\System32\spool\drivers\x64\3\EFXMI09A.DLL - ok
20:20:05.0596 4648 [ 9E22608ED14099113117515E8D31B224 ] C:\Windows\System32\spool\drivers\x64\3\EFXUI09A.DLL
20:20:05.0596 4648 C:\Windows\System32\spool\drivers\x64\3\EFXUI09A.DLL - ok
20:20:05.0611 4648 [ 63018B783332C0109B9D4D6CA938C281 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\b73fbf8a2db2192752ad2b13744a393b\System.Runtime.Serialization.ni.dll
20:20:05.0611 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\b73fbf8a2db2192752ad2b13744a393b\System.Runtime.Serialization.ni.dll - ok
20:20:05.0627 4648 [ C8FD104866AA94C7727AEF88EDE81060 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\d35bf98744994820e194a9a01f433bde\System.IdentityModel.ni.dll
20:20:05.0627 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.IdentityModel\d35bf98744994820e194a9a01f433bde\System.IdentityModel.ni.dll - ok
20:20:05.0643 4648 [ 1DAE5C46D42B02A6D5862E1482EFB390 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqcxs08.dll
20:20:05.0643 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqcxs08.dll - ok
20:20:05.0643 4648 [ BF1FC3F79B863C914687A737C2F3D681 ] C:\Windows\System32\wdi.dll
20:20:05.0643 4648 C:\Windows\System32\wdi.dll - ok
20:20:05.0658 4648 [ 1EA7969E3271CBC59E1730697DC74682 ] C:\Windows\System32\qmgr.dll
20:20:05.0658 4648 C:\Windows\System32\qmgr.dll - ok
20:20:05.0674 4648 [ F7073C962C4FB7C415565DDE109DE49F ] C:\Windows\System32\npmproxy.dll
20:20:05.0674 4648 C:\Windows\System32\npmproxy.dll - ok
20:20:05.0689 4648 [ BD9EB3958F213F96B97B1D897DEE006D ] C:\Windows\System32\hidserv.dll
20:20:05.0689 4648 C:\Windows\System32\hidserv.dll - ok
20:20:05.0689 4648 [ BF4AC709BE5BF64F331F5D67773A0C82 ] C:\Windows\System32\perftrack.dll
20:20:05.0689 4648 C:\Windows\System32\perftrack.dll - ok
20:20:05.0705 4648 [ 29409ED7400CA5BCCC30C0EE5147A60D ] C:\Windows\System32\bitsperf.dll
20:20:05.0705 4648 C:\Windows\System32\bitsperf.dll - ok
20:20:05.0721 4648 [ 93221146D4EBBF314C29B23CD6CC391D ] C:\Windows\System32\wpdbusenum.dll
20:20:05.0721 4648 C:\Windows\System32\wpdbusenum.dll - ok
20:20:05.0721 4648 [ 919001D2BB17DF06CA3F8AC16AD039F6 ] C:\Windows\SysWOW64\sxs.dll
20:20:05.0721 4648 C:\Windows\SysWOW64\sxs.dll - ok
20:20:05.0736 4648 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] C:\Windows\System32\IPSECSVC.DLL
20:20:05.0736 4648 C:\Windows\System32\IPSECSVC.DLL - ok
20:20:05.0752 4648 [ D9431DCF90B0253773F51FDEFE7FD42F ] C:\Windows\System32\bitsigd.dll
20:20:05.0752 4648 C:\Windows\System32\bitsigd.dll - ok
20:20:05.0752 4648 [ F37882F128EFACEFE353E0BAE2766909 ] C:\Users\Wendy\AppData\Local\Temp\7zS420F\HPSLPSVC64.DLL
20:20:05.0752 4648 C:\Users\Wendy\AppData\Local\Temp\7zS420F\HPSLPSVC64.DLL - ok
20:20:05.0767 4648 [ 4449D23E8F197862F1B16F1E6C89C36C ] C:\Windows\System32\diagperf.dll
20:20:05.0767 4648 C:\Windows\System32\diagperf.dll - ok
20:20:05.0783 4648 [ 96DB78C9C50CEED9DA5050EFFEE272A2 ] C:\Windows\System32\upnp.dll
20:20:05.0783 4648 C:\Windows\System32\upnp.dll - ok
20:20:05.0799 4648 [ 9BC93C9ACFA34DB5A41B89357B31E4ED ] C:\Windows\System32\FwRemoteSvr.dll
20:20:05.0799 4648 C:\Windows\System32\FwRemoteSvr.dll - ok
20:20:05.0799 4648 [ E64D9EC8018C55873B40FDEE9DBEF5B3 ] C:\Windows\System32\PortableDeviceApi.dll
20:20:05.0799 4648 C:\Windows\System32\PortableDeviceApi.dll - ok
20:20:05.0814 4648 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] C:\Windows\System32\ssdpsrv.dll
20:20:05.0814 4648 C:\Windows\System32\ssdpsrv.dll - ok
20:20:05.0830 4648 [ 58A0CDABEA255616827B1C22C9994466 ] C:\Windows\System32\NapiNSP.dll
20:20:05.0830 4648 C:\Windows\System32\NapiNSP.dll - ok
20:20:05.0830 4648 [ 613C8CE10A5FDE582BA5FA64C4D56AAA ] C:\Windows\System32\pnrpnsp.dll
20:20:05.0830 4648 C:\Windows\System32\pnrpnsp.dll - ok
20:20:05.0845 4648 [ CF636C92B762B26F0B39B38E92380A09 ] C:\Windows\System32\oleacc.dll
20:20:05.0845 4648 C:\Windows\System32\oleacc.dll - ok
20:20:05.0861 4648 [ 2E2072EB48238FCA8FBB7A9F5FABAC45 ] C:\Windows\System32\winrnr.dll
20:20:05.0861 4648 C:\Windows\System32\winrnr.dll - ok
20:20:05.0877 4648 [ 9719E3D834F5C8C43F56A93DFA497023 ] C:\Windows\System32\pnpts.dll
20:20:05.0877 4648 C:\Windows\System32\pnpts.dll - ok
20:20:05.0877 4648 [ E811F8510B133E70CF6E509FB809824F ] C:\Windows\System32\wdiasqmmodule.dll
20:20:05.0877 4648 C:\Windows\System32\wdiasqmmodule.dll - ok
20:20:05.0892 4648 [ E1B22739C933BE33F53DB58C5393ADD3 ] C:\Windows\System32\Apphlpdm.dll
20:20:05.0892 4648 C:\Windows\System32\Apphlpdm.dll - ok
20:20:05.0908 4648 [ AFA79C343F9D1555F7E5D5FA70BB2A14 ] C:\Windows\System32\PortableDeviceConnectApi.dll
20:20:05.0908 4648 C:\Windows\System32\PortableDeviceConnectApi.dll - ok
20:20:05.0908 4648 [ 639774C9ACD063F028F6084ABF5593AD ] C:\Windows\System32\taskhost.exe
20:20:05.0908 4648 C:\Windows\System32\taskhost.exe - ok
20:20:05.0923 4648 [ E629F1A051C82795DDFFD3E8D4855811 ] C:\Windows\System32\dimsjob.dll
20:20:05.0923 4648 C:\Windows\System32\dimsjob.dll - ok
20:20:05.0939 4648 [ 35CB97CBC3EDC463418ED4997AAB29B6 ] C:\Windows\System32\pautoenr.dll
20:20:05.0939 4648 C:\Windows\System32\pautoenr.dll - ok
20:20:05.0939 4648 [ 79AFFC7FEEA9CD2FEFEA5EF3B631A02C ] C:\Windows\System32\ndiscapCfg.dll
20:20:05.0955 4648 C:\Windows\System32\ndiscapCfg.dll - ok
20:20:05.0955 4648 [ 3D6AF45673C4B31CDECD7F80AF09D443 ] C:\Windows\System32\rascfg.dll
20:20:05.0955 4648 C:\Windows\System32\rascfg.dll - ok
20:20:05.0970 4648 [ 2DF29664ED261F0FC448E58F338F0671 ] C:\Windows\System32\mprapi.dll
20:20:05.0970 4648 C:\Windows\System32\mprapi.dll - ok
20:20:05.0986 4648 [ 94DFBB481BF51158B216E23C5C1C9D6E ] C:\Windows\System32\certcli.dll
20:20:05.0986 4648 C:\Windows\System32\certcli.dll - ok
20:20:06.0001 4648 [ 1CF21800E337F4039AAD4C94B4280EE4 ] C:\Windows\System32\mprmsg.dll
20:20:06.0001 4648 C:\Windows\System32\mprmsg.dll - ok
20:20:06.0001 4648 [ 263B26106606A010CF877472B535E4BB ] C:\Windows\System32\CertEnroll.dll
20:20:06.0001 4648 C:\Windows\System32\CertEnroll.dll - ok
20:20:06.0017 4648 [ 55DE45B116711881C852D2841E4C84DD ] C:\Windows\System32\tcpipcfg.dll
20:20:06.0017 4648 C:\Windows\System32\tcpipcfg.dll - ok
20:20:06.0033 4648 [ AC5DF873913B00E554D8F553459BC431 ] C:\Windows\System32\qmgrprxy.dll
20:20:06.0033 4648 C:\Windows\System32\qmgrprxy.dll - ok
20:20:06.0033 4648 [ 85B45B4B285B159ACDB355FC8C1E8925 ] C:\Windows\SysWOW64\qmgrprxy.dll
20:20:06.0033 4648 C:\Windows\SysWOW64\qmgrprxy.dll - ok
20:20:06.0048 4648 [ AC0C9CEA1218DAB1994AF8B28E680BD9 ] C:\Windows\System32\wlaninst.dll
20:20:06.0048 4648 C:\Windows\System32\wlaninst.dll - ok
20:20:06.0064 4648 [ 5A406C9C8E0880D3EABADC5DFD1ACDAE ] C:\Windows\System32\wwaninst.dll
20:20:06.0064 4648 C:\Windows\System32\wwaninst.dll - ok
20:20:06.0079 4648 [ 198803E5E93E29967DFB0BCFD0186151 ] C:\Windows\System32\spfileq.dll
20:20:06.0079 4648 C:\Windows\System32\spfileq.dll - ok
20:20:06.0079 4648 [ 46863C4CC5B68EB09EA2D5EEF0F1193A ] C:\Windows\System32\radardt.dll
20:20:06.0079 4648 C:\Windows\System32\radardt.dll - ok
20:20:06.0095 4648 [ A8EDB86FC2A4D6D1285E4C70384AC35A ] C:\Windows\System32\dllhost.exe
20:20:06.0095 4648 C:\Windows\System32\dllhost.exe - ok
20:20:06.0111 4648 [ A0A2C1D812C231C9BFE119FDC68E341B ] C:\Windows\System32\IDStore.dll
20:20:06.0111 4648 C:\Windows\System32\IDStore.dll - ok
20:20:06.0111 4648 [ 418E881201583A3039D81F43E39E6C78 ] C:\Windows\SysWOW64\winsta.dll
20:20:06.0111 4648 C:\Windows\SysWOW64\winsta.dll - ok
20:20:06.0126 4648 [ 23566F9723771108D2E6CD768AC27407 ] C:\Windows\System32\AtBroker.exe
20:20:06.0126 4648 C:\Windows\System32\AtBroker.exe - ok
20:20:06.0142 4648 [ 5F639198C4137075DA50E61C23963C11 ] C:\Windows\System32\drprov.dll
20:20:06.0142 4648 C:\Windows\System32\drprov.dll - ok
20:20:06.0142 4648 [ 65EA57712340C09B1B0C427B4848AE05 ] C:\Windows\System32\taskeng.exe
20:20:06.0142 4648 C:\Windows\System32\taskeng.exe - ok
20:20:06.0157 4648 [ BC566D17914B07ABAAB3A5A385CC3300 ] C:\Windows\System32\ntlanman.dll
20:20:06.0157 4648 C:\Windows\System32\ntlanman.dll - ok
20:20:06.0173 4648 [ B32AB94A432289AC2DF77A3DCAD32EED ] C:\Windows\System32\davclnt.dll
20:20:06.0173 4648 C:\Windows\System32\davclnt.dll - ok
20:20:06.0189 4648 [ 45B24A357C801CE62052FE0CDC8BD4D2 ] C:\Windows\System32\davhlpr.dll
20:20:06.0189 4648 C:\Windows\System32\davhlpr.dll - ok
20:20:06.0204 4648 [ BAFE84E637BF7388C96EF48D4D3FDD53 ] C:\Windows\System32\userinit.exe
20:20:06.0204 4648 C:\Windows\System32\userinit.exe - ok
20:20:06.0220 4648 [ 94EEAC26F57811BD1AEFC164412F7FCE ] C:\Windows\System32\PlaySndSrv.dll
20:20:06.0220 4648 C:\Windows\System32\PlaySndSrv.dll - ok
20:20:06.0235 4648 [ F162D5F5E845B9DC352DD1BAD8CEF1BC ] C:\Windows\System32\dwm.exe
20:20:06.0235 4648 C:\Windows\System32\dwm.exe - ok
20:20:06.0235 4648 [ F11A57E91FDAECFB41A5CB21EB1EBC8E ] C:\Windows\System32\dssenh.dll
20:20:06.0235 4648 C:\Windows\System32\dssenh.dll - ok
20:20:06.0251 4648 [ FCFCD1101C5DA23B4B95F93D02B2C169 ] C:\Windows\System32\dwmredir.dll
20:20:06.0251 4648 C:\Windows\System32\dwmredir.dll - ok
20:20:06.0267 4648 [ 1F1CA9E99DD5BF918BE0BF30B5A42FDA ] C:\Windows\System32\MsCtfMonitor.dll
20:20:06.0267 4648 C:\Windows\System32\MsCtfMonitor.dll - ok
20:20:06.0267 4648 [ 4BA77A5EF71C14C764B0ED4701683E3E ] C:\Windows\System32\dwmcore.dll
20:20:06.0267 4648 C:\Windows\System32\dwmcore.dll - ok
20:20:06.0282 4648 [ F09A9A1AD21FE618C4C8B0A0D830C886 ] C:\Windows\System32\msutb.dll
20:20:06.0282 4648 C:\Windows\System32\msutb.dll - ok
20:20:06.0298 4648 [ 9BB99503D6A4DD62569EDE9E5E2672A5 ] C:\Windows\System32\HotStartUserAgent.dll
20:20:06.0298 4648 C:\Windows\System32\HotStartUserAgent.dll - ok
20:20:06.0313 4648 [ 805A52C5AE26C28E88FDD9BCCFE6F312 ] C:\Windows\System32\TSChannel.dll
20:20:06.0313 4648 C:\Windows\System32\TSChannel.dll - ok
20:20:06.0313 4648 [ 9AE80F6A66B30E3ED8CDF858CF28B11B ] C:\Windows\System32\d3d10_1.dll
20:20:06.0313 4648 C:\Windows\System32\d3d10_1.dll - ok
20:20:06.0329 4648 [ 522B0466ED967A0762E9AF5B37D8F40A ] C:\Windows\System32\esent.dll
20:20:06.0329 4648 C:\Windows\System32\esent.dll - ok
20:20:06.0345 4648 [ 506708142BC63DABA64F2D3AD1DCD5BF ] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
20:20:06.0345 4648 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe - ok
20:20:06.0345 4648 [ 63F72417CA38D8FC8F53709649B589E3 ] C:\Windows\System32\d3d10_1core.dll
20:20:06.0345 4648 C:\Windows\System32\d3d10_1core.dll - ok
20:20:06.0360 4648 [ 1D283DD3AE2312EEE624E8B8C46F6ADB ] C:\ProgramData\SetApp\WS.Enabler\WS.Enabler.exe
20:20:06.0360 4648 C:\ProgramData\SetApp\WS.Enabler\WS.Enabler.exe - ok
20:20:06.0376 4648 [ 332FEAB1435662FC6C672E25BEB37BE3 ] C:\Windows\explorer.exe
20:20:06.0376 4648 C:\Windows\explorer.exe - ok
20:20:06.0391 4648 [ 8DFB5752FCE145A6B295093C0A8BE131 ] C:\Windows\System32\dxgi.dll
20:20:06.0391 4648 C:\Windows\System32\dxgi.dll - ok
20:20:06.0391 4648 [ 4C92EB7535CAA1681A77D928FBF9771F ] C:\Windows\System32\d3d11.dll
20:20:06.0391 4648 C:\Windows\System32\d3d11.dll - ok
20:20:06.0407 4648 [ 8D796CC19572EC1C401F8F213C8F9AC0 ] C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
20:20:06.0407 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe - ok
20:20:06.0423 4648 [ A7495E342A2EE0160812AC856C11F6CF ] C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll
20:20:06.0423 4648 C:\Program Files (x86)\Google\Update\1.3.22.3\goopdate.dll - ok
20:20:06.0423 4648 [ EED05D42D91835064703E2318552ED25 ] C:\Windows\System32\ExplorerFrame.dll
20:20:06.0423 4648 C:\Windows\System32\ExplorerFrame.dll - ok
20:20:06.0438 4648 [ D1F1D20DADF0C6882306126026E54EE2 ] C:\Windows\System32\aticfx64.dll
20:20:06.0438 4648 C:\Windows\System32\aticfx64.dll - ok
20:20:06.0454 4648 [ 18AB2E5A40064ED5F7791AC5946A90F3 ] C:\Windows\SysWOW64\msimg32.dll
20:20:06.0454 4648 C:\Windows\SysWOW64\msimg32.dll - ok
20:20:06.0469 4648 [ 43964FA89CCF97BA6BE34D69455AC65F ] C:\Windows\SysWOW64\uxtheme.dll
20:20:06.0469 4648 C:\Windows\SysWOW64\uxtheme.dll - ok
20:20:06.0469 4648 [ 1C045AA40FC86CAF02D64B6218DC1DD6 ] C:\Windows\System32\atiuxp64.dll
20:20:06.0469 4648 C:\Windows\System32\atiuxp64.dll - ok
20:20:06.0485 4648 [ 465BEA35F7ED4A4A57686DEA7EA10F47 ] C:\Windows\SysWOW64\cscapi.dll
20:20:06.0485 4648 C:\Windows\SysWOW64\cscapi.dll - ok
20:20:06.0501 4648 [ 53223B673A3FA2F9A4D1C31C8D3F6CD8 ] C:\Windows\SysWOW64\dbghelp.dll
20:20:06.0501 4648 C:\Windows\SysWOW64\dbghelp.dll - ok
20:20:06.0501 4648 [ 6935BD1DD8CD2149DAC2C395F33EFF08 ] C:\Windows\System32\atidxx64.dll
20:20:06.0501 4648 C:\Windows\System32\atidxx64.dll - ok
20:20:06.0516 4648 [ 58A14C45A5CD2528F10A889E7B0C3FC2 ] C:\Windows\winsxs\x86_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_51cd0a7abbe4e19b\ATL90.dll
20:20:06.0516 4648 C:\Windows\winsxs\x86_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_51cd0a7abbe4e19b\ATL90.dll - ok
20:20:06.0532 4648 [ 6F8EB694504B5A797317BDAB5DBA6B45 ] C:\Users\Wendy\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
20:20:06.0532 4648 C:\Users\Wendy\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll - ok
20:20:06.0547 4648 [ 465680BDE344CE4FF6646626AA3A9125 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
20:20:06.0547 4648 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe - ok
20:20:06.0563 4648 [ A7A8CA53D9C9FD90C07AB0EB38E5316B ] C:\Windows\System32\dbghelp.dll
20:20:06.0563 4648 C:\Windows\System32\dbghelp.dll - ok
20:20:06.0563 4648 [ 024352FEEC9042260BB4CFB4D79A206B ] C:\Windows\System32\EhStorShell.dll
20:20:06.0563 4648 C:\Windows\System32\EhStorShell.dll - ok
20:20:06.0579 4648 [ 037A719DAD50603202C978CD802623E4 ] C:\Windows\System32\ntshrui.dll
20:20:06.0579 4648 C:\Windows\System32\ntshrui.dll - ok
20:20:06.0594 4648 [ 1D63F4366288B8A7595397E27010FD44 ] C:\Windows\System32\IconCodecService.dll
20:20:06.0594 4648 C:\Windows\System32\IconCodecService.dll - ok
20:20:06.0610 4648 [ 9D2A2369AB4B08A4905FE72DB104498F ] C:\Windows\System32\appinfo.dll
20:20:06.0610 4648 C:\Windows\System32\appinfo.dll - ok
20:20:06.0610 4648 [ 49E5753D923F1AC63B22D3DCB0B47E00 ] C:\Windows\System32\uDWM.dll
20:20:06.0610 4648 C:\Windows\System32\uDWM.dll - ok
20:20:06.0625 4648 [ 9CCBA5E2489E603BB1578D1D541252A8 ] C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
20:20:06.0625 4648 C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe - ok
20:20:06.0641 4648 [ 39C5F32747B3414D1BB216FDB1DEFC58 ] C:\Windows\SysWOW64\dwmapi.dll
20:20:06.0641 4648 C:\Windows\SysWOW64\dwmapi.dll - ok
20:20:06.0641 4648 [ C5A99A4C0DC9F0F5A95BA0C83D30A549 ] C:\Windows\SysWOW64\mstask.dll
20:20:06.0641 4648 C:\Windows\SysWOW64\mstask.dll - ok
20:20:06.0657 4648 [ 414DA952A35BF5D50192E28263B40577 ] C:\Windows\SysWOW64\shsvcs.dll
20:20:06.0657 4648 C:\Windows\SysWOW64\shsvcs.dll - ok
20:20:06.0672 4648 [ 8B74CEC6980D4816B0037AE9A27E538F ] C:\Windows\SysWOW64\slc.dll
20:20:06.0672 4648 C:\Windows\SysWOW64\slc.dll - ok
20:20:06.0688 4648 [ 2830A9EFE11204426F429F4F2DFBCD10 ] C:\Program Files (x86)\Google\Update\1.3.22.3\goopdateres_en.dll
20:20:06.0688 4648 C:\Program Files (x86)\Google\Update\1.3.22.3\goopdateres_en.dll - ok
20:20:06.0703 4648 [ 025E7DBDB98866ED3CB2D4DDA70B364D ] C:\Windows\System32\runonce.exe
20:20:06.0703 4648 C:\Windows\System32\runonce.exe - ok
20:20:06.0703 4648 [ DD79A6B15C2F28DE98DF4852AAF6B13B ] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe
20:20:06.0703 4648 C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe - ok
20:20:06.0719 4648 [ 0A94DE4AA9864D312E60D747FD249ABE ] C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll
20:20:06.0719 4648 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsec.dll - ok
20:20:06.0735 4648 [ 850BD2D2D9CB5894935C3B6333CAD6FD ] C:\Windows\System32\riched20.dll
20:20:06.0735 4648 C:\Windows\System32\riched20.dll - ok
20:20:06.0750 4648 [ F0E839CDE31A9FF7F2D77A901099D334 ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\981815c04012453ded108530fbdc4646\System.Drawing.ni.dll
20:20:06.0750 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Drawing\981815c04012453ded108530fbdc4646\System.Drawing.ni.dll - ok
20:20:06.0766 4648 [ F057F73C56937749F0652F8E9326BE1C ] C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\c97010ae0b7cd474407b3824041fbb40\System.Windows.Forms.ni.dll
20:20:06.0766 4648 C:\Windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Forms\c97010ae0b7cd474407b3824041fbb40\System.Windows.Forms.ni.dll - ok
20:20:06.0766 4648 [ D44741F65A1D71F65814A12CF6E2400A ] C:\Windows\SysWOW64\runonce.exe
20:20:06.0766 4648 C:\Windows\SysWOW64\runonce.exe - ok
20:20:06.0781 4648 [ 12C45E3CB6D65F73209549E2D02ECA7A ] C:\Windows\SysWOW64\propsys.dll
20:20:06.0781 4648 C:\Windows\SysWOW64\propsys.dll - ok
20:20:06.0797 4648 [ 372948BB5E41CE42341C4398DE572E56 ] C:\Windows\SysWOW64\secur32.dll
20:20:06.0797 4648 C:\Windows\SysWOW64\secur32.dll - ok
20:20:06.0813 4648 [ AD7B9C14083B52BC532FBA5948342B98 ] C:\Windows\SysWOW64\cmd.exe
20:20:06.0813 4648 C:\Windows\SysWOW64\cmd.exe - ok
20:20:06.0828 4648 [ BF95EA5809E3BBF55370F7CB309FEBD0 ] C:\Windows\System32\conhost.exe
20:20:06.0828 4648 C:\Windows\System32\conhost.exe - ok
20:20:06.0828 4648 [ 326C7F76A29897A892AA7726E91C1C67 ] C:\Windows\SysWOW64\winbrand.dll
20:20:06.0828 4648 C:\Windows\SysWOW64\winbrand.dll - ok
20:20:06.0844 4648 [ 79FA7D8B488F90EDE325963379A6F738 ] C:\Windows\SysWOW64\ieframe.dll
20:20:06.0844 4648 C:\Windows\SysWOW64\ieframe.dll - ok
20:20:06.0859 4648 [ 60F4AEFA103D421EA4A40E31409B4756 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
20:20:06.0859 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
20:20:06.0859 4648 [ 2C4A87CA8C00E98EFDCFA2E8EC9A3503 ] C:\Windows\SysWOW64\shdocvw.dll
20:20:06.0859 4648 C:\Windows\SysWOW64\shdocvw.dll - ok
20:20:06.0875 4648 [ 49ACA548B2423F1C67898E6AC719A9A6 ] C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
20:20:06.0875 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
20:20:06.0891 4648 [ 4B78B431F225FD8624C5655CB1DE7B61 ] C:\Windows\System32\aelupsvc.dll
20:20:06.0891 4648 C:\Windows\System32\aelupsvc.dll - ok
20:20:06.0891 4648 [ 178A34E5554DCE485E1262DDF027960C ] C:\Users\Wendy\AppData\Local\Temp\E47B7E7C-F3E2-4720-BE9D-956FA1D34743.exe
20:20:06.0891 4648 C:\Users\Wendy\AppData\Local\Temp\E47B7E7C-F3E2-4720-BE9D-956FA1D34743.exe - ok
20:20:06.0906 4648 [ AD7FB087A238883D1618F29F7BBBD584 ] C:\Windows\SysWOW64\ncrypt.dll
20:20:06.0906 4648 C:\Windows\SysWOW64\ncrypt.dll - ok
20:20:06.0922 4648 [ CE71B9119A258EDD0A05B37D7B0F92E3 ] C:\Windows\SysWOW64\bcrypt.dll
20:20:06.0922 4648 C:\Windows\SysWOW64\bcrypt.dll - ok
20:20:06.0937 4648 [ E8449FE262D7406BCB2AC2A45C53EC5F ] C:\Windows\SysWOW64\bcryptprimitives.dll
20:20:06.0937 4648 C:\Windows\SysWOW64\bcryptprimitives.dll - ok
20:20:06.0953 4648 [ 1097F3035BAF46CED8B332B3564C5108 ] C:\Windows\SysWOW64\gpapi.dll
20:20:06.0953 4648 C:\Windows\SysWOW64\gpapi.dll - ok
20:20:06.0953 4648 [ 7B851A8018B1EA00A69707A390004884 ] C:\Windows\SysWOW64\cryptnet.dll
20:20:06.0953 4648 C:\Windows\SysWOW64\cryptnet.dll - ok
20:20:06.0969 4648 [ 6F8E3B7B70E1BBA871212940C1FBDF60 ] C:\Windows\SysWOW64\SensApi.dll
20:20:06.0969 4648 C:\Windows\SysWOW64\SensApi.dll - ok
20:20:06.0984 4648 [ 5B2E4E90C04FB9AE9F2C5E99FF59B283 ] C:\Windows\SysWOW64\WindowsCodecs.dll
20:20:06.0984 4648 C:\Windows\SysWOW64\WindowsCodecs.dll - ok
20:20:06.0984 4648 [ 846D0E4DB261CFAF363902E41498E961 ] C:\Windows\SysWOW64\EhStorShell.dll
20:20:06.0984 4648 C:\Windows\SysWOW64\EhStorShell.dll - ok
20:20:07.0000 4648 [ 03F3B770DFBED6131653CEDA8CA780F0 ] C:\Windows\SysWOW64\ntshrui.dll
20:20:07.0000 4648 C:\Windows\SysWOW64\ntshrui.dll - ok
20:20:07.0015 4648 [ 827CB0D6C3F8057EA037FF271F8E9795 ] C:\Windows\SysWOW64\imageres.dll
20:20:07.0015 4648 C:\Windows\SysWOW64\imageres.dll - ok
20:20:07.0031 4648 [ B7F55E2AE978D3D34F7876EE5D689AAE ] C:\Program Files (x86)\Cyberlink\YouCam\YCMMirage.exe
20:20:07.0031 4648 C:\Program Files (x86)\Cyberlink\YouCam\YCMMirage.exe - ok
20:20:07.0031 4648 [ C9564CF4976E7E96B4052737AA2492B4 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
20:20:07.0031 4648 C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
20:20:07.0047 4648 [ 5BB8C06EB5EA4BA22EE8A678F2D79B25 ] C:\Windows\SysWOW64\devenum.dll
20:20:07.0047 4648 C:\Windows\SysWOW64\devenum.dll - ok
20:20:07.0062 4648 [ 7069AAB8536F29ED7323140973A2894B ] C:\Windows\SysWOW64\msdmo.dll
20:20:07.0062 4648 C:\Windows\SysWOW64\msdmo.dll - ok
20:20:07.0062 4648 [ E24FE90E9DE8D8AE70E59F7B01675DEF ] C:\Windows\SysWOW64\avicap32.dll
20:20:07.0062 4648 C:\Windows\SysWOW64\avicap32.dll - ok
20:20:07.0093 4648 [ C335EC1182AC10B188705554E0BC1186 ] C:\Windows\SysWOW64\msvfw32.dll
20:20:07.0093 4648 C:\Windows\SysWOW64\msvfw32.dll - ok
20:20:07.0093 4648 [ 24498D084FAA7A459C91066EC241E1CE ] C:\Windows\SysWOW64\vfwwdm32.dll
20:20:07.0093 4648 C:\Windows\SysWOW64\vfwwdm32.dll - ok
20:20:07.0109 4648 [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9 ] C:\Windows\SysWOW64\sfc.dll
20:20:07.0109 4648 C:\Windows\SysWOW64\sfc.dll - ok
20:20:07.0125 4648 [ 84799328D87B3091A3BDD251E1AD31F9 ] C:\Windows\SysWOW64\sfc_os.dll
20:20:07.0125 4648 C:\Windows\SysWOW64\sfc_os.dll - ok
20:20:07.0125 4648 [ 162D247E995EAEBF3EF4289069E1111C ] C:\Windows\SysWOW64\devrtl.dll
20:20:07.0125 4648 C:\Windows\SysWOW64\devrtl.dll - ok
20:20:07.0140 4648 [ FB10715E4099AF9FA389C71873245226 ] C:\Windows\System32\timedate.cpl
20:20:07.0140 4648 C:\Windows\System32\timedate.cpl - ok
20:20:07.0156 4648 [ E6F0F82788E8BD0F7A616350EFA0761C ] C:\Windows\System32\actxprxy.dll
20:20:07.0156 4648 C:\Windows\System32\actxprxy.dll - ok
20:20:07.0156 4648 [ 23B001185B7C3CB1F4BDEB143E6B45B7 ] C:\Windows\System32\shdocvw.dll
20:20:07.0156 4648 C:\Windows\System32\shdocvw.dll - ok
20:20:07.0171 4648 [ A0A65D306A5490D2EB8E7DE66898ECFD ] C:\Windows\System32\linkinfo.dll
20:20:07.0171 4648 C:\Windows\System32\linkinfo.dll - ok
20:20:07.0187 4648 [ 4E5FE39C1076D115EC8BFCFE14D75B80 ] C:\Windows\SysWOW64\credssp.dll
20:20:07.0187 4648 C:\Windows\SysWOW64\credssp.dll - ok
20:20:07.0203 4648 [ 73E8667A19FEEDD856DF2695E9E511D4 ] C:\Windows\SysWOW64\wship6.dll
20:20:07.0203 4648 C:\Windows\SysWOW64\wship6.dll - ok
20:20:07.0203 4648 [ B40420876B9288E0A1C8CCA8A84E5DC9 ] C:\Windows\SysWOW64\dnsapi.dll
20:20:07.0203 4648 C:\Windows\SysWOW64\dnsapi.dll - ok
20:20:07.0218 4648 [ 12B79422A23814429CDA9E734C58F78F ] C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL
20:20:07.0218 4648 C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL - ok
20:20:07.0234 4648 [ 40947436A70E0034E41123DF5A0A7702 ] C:\Program Files (x86)\Bonjour\mdnsNSP.dll
20:20:07.0234 4648 C:\Program Files (x86)\Bonjour\mdnsNSP.dll - ok
20:20:07.0234 4648 [ 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 ] C:\Windows\System32\msftedit.dll
20:20:07.0234 4648 C:\Windows\System32\msftedit.dll - ok
20:20:07.0249 4648 [ ED6EE83D61EBC683C2CD8E899EA6FEBE ] C:\Windows\SysWOW64\rasadhlp.dll
20:20:07.0249 4648 C:\Windows\SysWOW64\rasadhlp.dll - ok
20:20:07.0265 4648 [ 2EBD0C5B090125AECF017C57344C45AB ] C:\Windows\System32\msls31.dll
20:20:07.0265 4648 C:\Windows\System32\msls31.dll - ok
20:20:07.0281 4648 [ 2BCBA6052374959A30BD7948444DBB79 ] C:\Windows\System32\gameux.dll
20:20:07.0281 4648 C:\Windows\System32\gameux.dll - ok
20:20:07.0296 4648 [ 7DBA84667DC18877AEF693E3543DFAD7 ] C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
20:20:07.0296 4648 C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll - ok
20:20:07.0296 4648 [ F0D0E883EBBDC7615DC9EDEA0FFB2817 ] C:\Windows\SysWOW64\FWPUCLNT.DLL
20:20:07.0296 4648 C:\Windows\SysWOW64\FWPUCLNT.DLL - ok
20:20:07.0312 4648 [ 4C2C4640BF23AAFCF90519E0F34436CE ] C:\Windows\System32\DeviceCenter.dll
20:20:07.0312 4648 C:\Windows\System32\DeviceCenter.dll - ok
20:20:07.0327 4648 [ AF758E5EC649A5CC750B7A41A79B48E5 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
20:20:07.0327 4648 C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe - ok
20:20:07.0327 4648 [ 554A50B5310E702029D3A675459108FF ] C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
20:20:07.0327 4648 C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe - ok
20:20:07.0343 4648 [ 6860E32B7335EC62295673AA2106A407 ] C:\Program Files\Microsoft Security Client\msseces.exe
20:20:07.0343 4648 C:\Program Files\Microsoft Security Client\msseces.exe - ok
20:20:07.0359 4648 [ 102CF6879887BBE846A00C459E6D4ABC ] C:\Windows\SysWOW64\riched20.dll
20:20:07.0359 4648 C:\Windows\SysWOW64\riched20.dll - ok
20:20:07.0374 4648 [ 24F4B480F335A6C724AF352253C5D98B ] C:\Windows\System32\thumbcache.dll
20:20:07.0374 4648 C:\Windows\System32\thumbcache.dll - ok
20:20:07.0374 4648 [ 9843083FA1E4A655195DF4D7A687C576 ] C:\Program Files\Microsoft Device Center\itype.exe
20:20:07.0374 4648 C:\Program Files\Microsoft Device Center\itype.exe - ok
20:20:07.0390 4648 [ C9AEBF3A8363AC7FF23ACE4DFA9B6D82 ] C:\Program Files\Microsoft Security Client\MsMpRes.dll
20:20:07.0390 4648 C:\Program Files\Microsoft Security Client\MsMpRes.dll - ok
20:20:07.0405 4648 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Microsoft Device Center\SQMAPI.dll
20:20:07.0405 4648 C:\Program Files\Microsoft Device Center\SQMAPI.dll - ok
20:20:07.0405 4648 [ 770FF1850E70B98777F5978FC8FD5D57 ] C:\Program Files\Microsoft Device Center\ipoint.exe
20:20:07.0405 4648 C:\Program Files\Microsoft Device Center\ipoint.exe - ok
20:20:07.0421 4648 [ FB4045578F5180BDB1963AB352B78548 ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
20:20:07.0421 4648 C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
20:20:07.0437 4648 [ 405F4D32D2185F1F1BD753D8EEAFFB3A ] C:\Windows\System32\networkexplorer.dll
20:20:07.0437 4648 C:\Windows\System32\networkexplorer.dll - ok
20:20:07.0437 4648 [ 93812FDC01AA864195816CD814445F95 ] C:\Program Files\Microsoft Security Client\sqmapi.dll
20:20:07.0437 4648 C:\Program Files\Microsoft Security Client\sqmapi.dll - ok
20:20:07.0452 4648 [ 3511279A08BC1BA7CA601AFC1E91700C ] C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
20:20:07.0452 4648 C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe - ok
20:20:07.0468 4648 [ 24AEADAC6157CBC67A950C0547836975 ] C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
20:20:07.0468 4648 C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll - ok
20:20:07.0483 4648 [ 6B37C69B226D6C53E4896AF747987ECC ] C:\Program Files\Microsoft Device Center\dpgcmd.dll
20:20:07.0483 4648 C:\Program Files\Microsoft Device Center\dpgcmd.dll - ok
20:20:07.0499 4648 [ 2987D8263B96C6097951C30483021B81 ] C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe
20:20:07.0499 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe - ok
20:20:07.0499 4648 [ 69754747274B76E7FAF287239333D7E6 ] C:\Windows\System32\msiltcfg.dll
20:20:07.0499 4648 C:\Windows\System32\msiltcfg.dll - ok
20:20:07.0515 4648 [ 585FED4CDB8034B8B58AEB8008255817 ] C:\Windows\System32\opengl32.dll
20:20:07.0515 4648 C:\Windows\System32\opengl32.dll - ok
20:20:07.0530 4648 [ 5EB6E9C8BE1ACC5830780E0F9A846255 ] C:\Windows\System32\msi.dll
20:20:07.0530 4648 C:\Windows\System32\msi.dll - ok
20:20:07.0546 4648 [ 477D46C89AE0325A17DD38A8882B3552 ] C:\Program Files (x86)\Kodak\KODAK Share Button App\router.dll
20:20:07.0546 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\router.dll - ok
20:20:07.0546 4648 [ 5BD26A4BF7D9D3FF9469ED87DA6DA5EA ] C:\Program Files (x86)\Kodak\KODAK Share Button App\nativeservices.pyd
20:20:07.0546 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\nativeservices.pyd - ok
20:20:07.0561 4648 [ F2967C0A97C0EA67D79D7F557213950D ] C:\Windows\System32\glu32.dll
20:20:07.0561 4648 C:\Windows\System32\glu32.dll - ok
20:20:07.0577 4648 [ A6C09924C6730DE8DEED9890A12AA691 ] C:\Windows\System32\ddraw.dll
20:20:07.0577 4648 C:\Windows\System32\ddraw.dll - ok
20:20:07.0577 4648 [ A5ED9421B8D09ED4F57CDA386307713E ] C:\Windows\System32\dciman32.dll
20:20:07.0577 4648 C:\Windows\System32\dciman32.dll - ok
20:20:07.0593 4648 [ 9110FFAD124283F37D38771BB60556AF ] C:\Windows\System32\dsound.dll
20:20:07.0593 4648 C:\Windows\System32\dsound.dll - ok
20:20:07.0608 4648 [ 6ECE746BB283927604DA192CA0D1403D ] C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE
20:20:07.0608 4648 C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE - ok
20:20:07.0624 4648 [ 292D5B2D417B0984E6B7F91B47157BE9 ] C:\Program Files\Microsoft Device Center\Components\Commands\DPGHnt\DPGHnt.dll
20:20:07.0624 4648 C:\Program Files\Microsoft Device Center\Components\Commands\DPGHnt\DPGHnt.dll - ok
20:20:07.0639 4648 [ 0805289E121F3E3C458C970B08314EB2 ] C:\Windows\System32\RtkCfg64.dll
20:20:07.0639 4648 C:\Windows\System32\RtkCfg64.dll - ok
20:20:07.0639 4648 [ AB7B2E854E4876AD818A560F5FEB4942 ] C:\Program Files (x86)\Kodak\KODAK Share Button App\libeay32.dll
20:20:07.0639 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\libeay32.dll - ok
20:20:07.0655 4648 [ 935186665A34CAE2FA881A8A1BE80DF2 ] C:\Program Files (x86)\Skype\Phone\Skype.exe
20:20:07.0655 4648 C:\Program Files (x86)\Skype\Phone\Skype.exe - ok
20:20:07.0671 4648 [ 30F3D3E322C5339004415D7BC8BF246E ] C:\Program Files (x86)\Kodak\KODAK Share Button App\python26.dll
20:20:07.0671 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\python26.dll - ok
20:20:07.0671 4648 [ B54921381A950C8215FB363B485C432B ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
20:20:07.0671 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe - ok
20:20:07.0686 4648 [ 5046E55184021406C27E8D48A1B2C9D2 ] C:\Windows\System32\l3codeca.acm
20:20:07.0686 4648 C:\Windows\System32\l3codeca.acm - ok
20:20:07.0702 4648 [ 9989169651234D5B9BF3C8FF0FC38974 ] C:\Windows\System32\spool\drivers\x64\3\E_YLMWIUE.DLL
20:20:07.0702 4648 C:\Windows\System32\spool\drivers\x64\3\E_YLMWIUE.DLL - ok
20:20:07.0717 4648 [ C637FC4638A96165256B28D38DE7B953 ] C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
20:20:07.0717 4648 C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe - ok
20:20:07.0717 4648 [ 29BAD398C82369BFC1E709B536520960 ] C:\Program Files (x86)\PDF Complete\pdfsty.exe
20:20:07.0717 4648 C:\Program Files (x86)\PDF Complete\pdfsty.exe - ok
20:20:07.0733 4648 [ 94A4D6915D4F572309DF6137E1846528 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
20:20:07.0733 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - ok
20:20:07.0749 4648 [ 58FC1B36032F03342E4C02813F80DAC1 ] C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe
20:20:07.0749 4648 C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe - ok
20:20:07.0764 4648 [ C3761661C17C2248A9379A8FB89E3DE1 ] C:\Windows\System32\stobject.dll
20:20:07.0764 4648 C:\Windows\System32\stobject.dll - ok
20:20:07.0764 4648 [ F146E2BA475893DD77B2370DC1211FC6 ] C:\Windows\System32\drivers\64401060.sys
20:20:07.0764 4648 C:\Windows\System32\drivers\64401060.sys - ok
20:20:07.0780 4648 [ 2DFF01852A06A7D80B74FABB0B2556E5 ] C:\Program Files (x86)\Kodak\KODAK Share Button App\boost_python-vc90-mt-1_40.dll
20:20:07.0780 4648 C:\Program Files (x86)\Kodak\KODAK Share Button App\boost_python-vc90-mt-1_40.dll - ok
20:20:07.0795 4648 [ 72860972F8196EBB3C896F53D2B95470 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\HpqSRmon.exe
20:20:07.0795 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\HpqSRmon.exe - ok
20:20:07.0811 4648 [ 550484DB12FA37141F4EE4F9FBAACFEC ] C:\Windows\System32\spool\drivers\x64\3\E_YASRIUE.DLL
20:20:07.0811 4648 C:\Windows\System32\spool\drivers\x64\3\E_YASRIUE.DLL - ok
20:20:07.0827 4648 [ F1278B3514EA6FA9BC39B20D26139AAC ] C:\Windows\SysWOW64\msiltcfg.dll
20:20:07.0827 4648 C:\Windows\SysWOW64\msiltcfg.dll - ok
20:20:07.0827 4648 [ F832EEEA97CDDA1AF577E721F652A0D1 ] C:\Windows\System32\batmeter.dll
20:20:07.0827 4648 C:\Windows\System32\batmeter.dll - ok
20:20:07.0842 4648 [ 4E2BFC88C6E482EA9483E6FBAC3EB52E ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpquio08.dll
20:20:07.0842 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpquio08.dll - ok
20:20:07.0858 4648 [ 4CB7CEE3F7540B0BEDBD158D75F06509 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
20:20:07.0858 4648 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe - ok
20:20:07.0858 4648 [ 0CAF25ACC9C2E8C5A5682EBDCFD01708 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.rsc
20:20:07.0858 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.rsc - ok
20:20:07.0873 4648 [ 007863E45F25AA47A4C30D0930BBFD85 ] C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
20:20:07.0873 4648 C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
20:20:07.0889 4648 [ C23C087CEBABB8B5CD6EB8DBA08EB7F7 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtao08.dll
20:20:07.0889 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtao08.dll - ok
20:20:07.0905 4648 [ 048EA4B978851788E9F5E8E4F081DF7A ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
20:20:07.0905 4648 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe - ok
20:20:07.0920 4648 [ 2FAD69503166BF30ED15B64DAA1B116D ] C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
20:20:07.0920 4648 C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe - ok
20:20:07.0920 4648 [ 9ACCBC5891BA51B5B29C1A88F80D4CE3 ] C:\Program Files (x86)\QuickTime\QTTask.exe
20:20:07.0920 4648 C:\Program Files (x86)\QuickTime\QTTask.exe - ok
20:20:07.0936 4648 [ BDBA829B2BEB50642EBC0F9AE65C82DD ] C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe
20:20:07.0936 4648 C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe - ok
20:20:07.0951 4648 [ A7810B302294793DE88542AAE177D1B1 ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
20:20:07.0951 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe - ok
20:20:07.0967 4648 [ 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 ] C:\Windows\System32\prnfldr.dll
20:20:07.0967 4648 C:\Windows\System32\prnfldr.dll - ok
20:20:07.0983 4648 [ 5B6E8E09BE6401A7E022F52FDFCB2FF8 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
20:20:07.0983 4648 C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - ok
20:20:07.0998 4648 [ E1946CF6A39ACDE3A62AB2053FBE3EB7 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll
20:20:07.0998 4648 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon_main.dll - ok
20:20:08.0014 4648 [ 9419ABF3163B6F0E3AD3DD2B381C879F ] C:\Windows\SysWOW64\WinSCard.dll
20:20:08.0014 4648 C:\Windows\SysWOW64\WinSCard.dll - ok
20:20:08.0029 4648 [ 242713213B95368F9A3C1563272C0028 ] C:\Windows\System32\spool\drivers\x64\3\E_YASOIUE.DLL
20:20:08.0029 4648 C:\Windows\System32\spool\drivers\x64\3\E_YASOIUE.DLL - ok
20:20:08.0029 4648 [ 2A436796758BF2555A26C770FE8A6FEE ] C:\Windows\System32\fdProxy.dll
20:20:08.0029 4648 C:\Windows\System32\fdProxy.dll - ok
20:20:08.0045 4648 [ 42A9CB6906D9A8BEDC83B57163E62924 ] C:\Windows\System32\DXP.dll
20:20:08.0045 4648 C:\Windows\System32\DXP.dll - ok
20:20:08.0061 4648 [ 8E01332CC4B68BC6B5B7EFFE374442AA ] C:\Windows\SysWOW64\oleacc.dll
20:20:08.0061 4648 C:\Windows\SysWOW64\oleacc.dll - ok
20:20:08.0061 4648 [ 80B19357DD892DD587B45BC3792D0FD4 ] C:\Program Files (x86)\Kodak\MediaImpression\USBStorageManager.dll
20:20:08.0061 4648 C:\Program Files (x86)\Kodak\MediaImpression\USBStorageManager.dll - ok
20:20:08.0076 4648 [ 5685F06FDE6374256365AF36F1984973 ] C:\Program Files (x86)\Kodak\MediaImpression\RctXMLBase.dll
20:20:08.0076 4648 C:\Program Files (x86)\Kodak\MediaImpression\RctXMLBase.dll - ok
20:20:08.0092 4648 [ 86F33213C450FED3C7E32F9473415E7E ] C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
20:20:08.0092 4648 C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe - ok
20:20:08.0107 4648 [ 8608FB2C0383CDECD405E2611F04ED68 ] C:\Windows\SysWOW64\atiadlxy.dll
20:20:08.0107 4648 C:\Windows\SysWOW64\atiadlxy.dll - ok
20:20:08.0107 4648 [ F2A24E4AEC0F8D5DBAB10CB87A8EFED2 ] C:\Windows\SysWOW64\sti.dll
20:20:08.0107 4648 C:\Windows\SysWOW64\sti.dll - ok
20:20:08.0123 4648 [ F400694D7D2785F60133C20F7F2F4F7A ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
20:20:08.0123 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac - ok
20:20:08.0139 4648 [ D1DE1EAFDE97BE41CF6585027FF3E732 ] C:\Windows\SysWOW64\comdlg32.dll
20:20:08.0139 4648 C:\Windows\SysWOW64\comdlg32.dll - ok
20:20:08.0139 4648 [ 0B0E075EF0AE1CD8526D6D851E684224 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
20:20:08.0139 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe - ok
20:20:08.0154 4648 [ A1D4F80F18D81E444D55D10BB3ADA8F6 ] C:\Program Files (x86)\Kodak\MediaImpression\MagPCMac.dll
20:20:08.0154 4648 C:\Program Files (x86)\Kodak\MediaImpression\MagPCMac.dll - ok
20:20:08.0170 4648 [ B087F2B901570F6EF62F6C2E01A480F3 ] C:\Windows\SysWOW64\wiatrace.dll
20:20:08.0170 4648 C:\Windows\SysWOW64\wiatrace.dll - ok
20:20:08.0185 4648 [ 55436C4848E1EB25644C70EF78D53FF9 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
20:20:08.0185 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe - ok
20:20:08.0185 4648 [ E2A17BCC08D92F42E08AF6BA2F93ABA7 ] C:\Windows\SysWOW64\ExplorerFrame.dll
20:20:08.0185 4648 C:\Windows\SysWOW64\ExplorerFrame.dll - ok
20:20:08.0201 4648 [ 92DBF0A4C9239169010FC6E07859C82E ] C:\Windows\System32\ActionCenter.dll
20:20:08.0201 4648 C:\Windows\System32\ActionCenter.dll - ok
20:20:08.0201 4648 [ 59A6413FB2CC89FD8651B1D2962FB8B9 ] C:\Program Files (x86)\Kodak\MediaImpression\msvcp60.dll
20:20:08.0201 4648 C:\Program Files (x86)\Kodak\MediaImpression\msvcp60.dll - ok
20:20:08.0217 4648 [ 263E9A047D17CD50BAA9D3C02910D18D ] C:\Windows\System32\oledlg.dll
20:20:08.0217 4648 C:\Windows\System32\oledlg.dll - ok
20:20:08.0232 4648 [ 2BC7C9FD0A9F2C9AFC373F3AD1EE3891 ] C:\Windows\System32\Syncreg.dll
20:20:08.0232 4648 C:\Windows\System32\Syncreg.dll - ok
20:20:08.0232 4648 [ C836175870E00ACC546066632E15BD10 ] C:\Windows\ehome\ehSSO.dll
20:20:08.0232 4648 C:\Windows\ehome\ehSSO.dll - ok
20:20:08.0263 4648 [ 936F728E04ACCF3F38801CFFCF1E3F40 ] C:\Windows\SysWOW64\oledlg.dll
20:20:08.0263 4648 C:\Windows\SysWOW64\oledlg.dll - ok
20:20:08.0263 4648 [ CCDA8E6A2AC68FD417A8BB8D88CBFDAC ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
20:20:08.0263 4648 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe - ok
20:20:08.0279 4648 [ 6E1F8165C365D35C8E3C045AF0CDD481 ] C:\Windows\SysWOW64\duser.dll
20:20:08.0279 4648 C:\Windows\SysWOW64\duser.dll - ok
20:20:08.0279 4648 [ 9AB16E665D109F2B72A13B3C3EBA4860 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXLDB.dll
20:20:08.0279 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXLDB.dll - ok
20:20:08.0295 4648 [ B4E6C1B28AF8806008CB654C716ABAFA ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
20:20:08.0295 4648 C:\Program Files (x86)\iTunes\iTunesHelper.exe - ok
20:20:08.0310 4648 [ A42F2C1EB3B66C54FB3C7B79D30C1A6D ] C:\Windows\System32\netshell.dll
20:20:08.0310 4648 C:\Windows\System32\netshell.dll - ok
20:20:08.0326 4648 [ EE06B85BC69F18826302348A2AD089E0 ] C:\Windows\SysWOW64\dui70.dll
20:20:08.0326 4648 C:\Windows\SysWOW64\dui70.dll - ok
20:20:08.0326 4648 [ 1E09DFA4048196C9D3CC40C485A39422 ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
20:20:08.0326 4648 C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe - ok
20:20:08.0341 4648 [ D995CBBC28A615659A8A0CE6A9C9856D ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCFG.dll
20:20:08.0341 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCFG.dll - ok
20:20:08.0357 4648 [ E3CD8CA170EBFE8ABAC23E7CA44B6292 ] C:\Users\Wendy\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
20:20:08.0357 4648 C:\Users\Wendy\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll - ok
20:20:08.0357 4648 [ FC7D52D0E8719B8E0CCBA1648F38CCCE ] C:\Program Files (x86)\iTunes\iTunesHelper.dll
20:20:08.0357 4648 C:\Program Files (x86)\iTunes\iTunesHelper.dll - ok
20:20:08.0373 4648 [ 18BC58E7F9C49C2979642118B64A16EC ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCSR.dll
20:20:08.0373 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXCSR.dll - ok
20:20:08.0388 4648 [ 9076AB590F112D7230694B570498B410 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUIMGCDC.dll
20:20:08.0388 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUIMGCDC.dll - ok
20:20:08.0404 4648 [ B0B59E13EEC2FA1584DE87B72B56E370 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUCMNMSG.dll
20:20:08.0404 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUCMNMSG.dll - ok
20:20:08.0419 4648 [ 58B8702C20DE211D1FCB248D2FDD71D1 ] C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe
20:20:08.0419 4648 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe - ok
20:20:08.0435 4648 [ C1070A91B14A4E12D90B1A421C72F88D ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUSVCCLT.dll
20:20:08.0435 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUSVCCLT.dll - ok
20:20:08.0435 4648 [ E7368F0A8D19445EAF5C5D0DBB8B8DAB ] C:\Windows\System32\AltTab.dll
20:20:08.0435 4648 C:\Windows\System32\AltTab.dll - ok
20:20:08.0451 4648 [ C746F3BF98E92FB137B5BD2B8B5925BD ] C:\Windows\System32\FXSST.dll
20:20:08.0451 4648 C:\Windows\System32\FXSST.dll - ok
20:20:08.0466 4648 [ A88110E864EEB5B2334F645D00591AC3 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXRCV.dll
20:20:08.0466 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXRCV.dll - ok
20:20:08.0466 4648 [ FF2AA9A817482AEC14980F07C94E26D0 ] C:\Program Files (x86)\EPSON Software\FAX Utility\EbpD4Fax.dll
20:20:08.0466 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\EbpD4Fax.dll - ok
20:20:08.0482 4648 [ B846321446376F84C1065AAFF1D7BDB2 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUADRFIL.dll
20:20:08.0482 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUADRFIL.dll - ok
20:20:08.0497 4648 [ 68F07A4750EEC27B4F6E85015798F26E ] C:\Windows\System32\spool\drivers\x64\3\E_YLGRIUE.DLL
20:20:08.0497 4648 C:\Windows\System32\spool\drivers\x64\3\E_YLGRIUE.DLL - ok
20:20:08.0497 4648 [ A89DA68A9BBF7F9B07A840FEC31B99D8 ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll
20:20:08.0497 4648 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\iTunesHelper.dll - ok
20:20:08.0513 4648 [ 650CAEA856943E29F25A25D31E004B18 ] C:\Windows\System32\FXSAPI.dll
20:20:08.0513 4648 C:\Windows\System32\FXSAPI.dll - ok
20:20:08.0529 4648 [ 7A6F66796DF720708FF522421F115C40 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDRVUTL.dll
20:20:08.0529 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDRVUTL.dll - ok
20:20:08.0544 4648 [ E01A6CF39DF4929633302E9B47C71968 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUSTMMSG.dll
20:20:08.0544 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUSTMMSG.dll - ok
20:20:08.0560 4648 [ 749949494676218FFA99501F4AA22ECC ] C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
20:20:08.0560 4648 C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe - ok
20:20:08.0560 4648 [ C8FDF0FA9E97E2FAAF3F814716AAA881 ] C:\Windows\System32\WPDShServiceObj.dll
20:20:08.0560 4648 C:\Windows\System32\WPDShServiceObj.dll - ok
20:20:08.0575 4648 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] C:\Windows\System32\FXSSVC.exe
20:20:08.0575 4648 C:\Windows\System32\FXSSVC.exe - ok
20:20:08.0591 4648 [ 8815A00387ADE03CD685405E7ADB2552 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FULEPP.dll
20:20:08.0591 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FULEPP.dll - ok
20:20:08.0591 4648 [ 69C3EC44371298D2DBBC3972F3F5A4D9 ] C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll
20:20:08.0591 4648 C:\Program Files (x86)\iTunes\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.dll - ok
20:20:08.0607 4648 [ 8002143CF9031F2FC92888164E22DBEB ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FULEPPRes.dll
20:20:08.0607 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FULEPPRes.dll - ok
20:20:08.0622 4648 [ 6EF5F3F18413C367195F06E503AB86A6 ] C:\Windows\SysWOW64\d3d9.dll
20:20:08.0622 4648 C:\Windows\SysWOW64\d3d9.dll - ok
20:20:08.0638 4648 [ 10F815BE90A66AAFC6C713D1BD626064 ] C:\Windows\System32\pnidui.dll
20:20:08.0638 4648 C:\Windows\System32\pnidui.dll - ok
20:20:08.0653 4648 [ 803E0619BCC2996C6DE695B13877B899 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUVERDLG.dll
20:20:08.0653 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUVERDLG.dll - ok
20:20:08.0653 4648 [ 0385325946BF0B630EDF2CC6AD71C2BE ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRBDEV.dll
20:20:08.0653 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRBDEV.dll - ok
20:20:08.0669 4648 [ 5D3B3BA5050EED0C75013DD9804335B9 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXCFGRes.dll
20:20:08.0669 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXCFGRes.dll - ok
20:20:08.0685 4648 [ C863E5A2417DF0F2A31ED32C3B2CB23F ] C:\Windows\SysWOW64\mshtml.dll
20:20:08.0685 4648 C:\Windows\SysWOW64\mshtml.dll - ok
20:20:08.0685 4648 [ 5DD9F33B754196CFB8CE8773ACC609EF ] C:\Program Files (x86)\EPSON Software\FAX Utility\fufaxtif.dll
20:20:08.0685 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\fufaxtif.dll - ok
20:20:08.0700 4648 [ 2031DCC0083A134AF9451CD1402FFCE3 ] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll
20:20:08.0700 4648 C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll - ok
20:20:08.0716 4648 [ 1207A51D603E98758013EFCB3E7FA742 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENCM.dll
20:20:08.0716 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENCM.dll - ok
20:20:08.0731 4648 [ 77B1471A490B53B24EFE136F09F76550 ] C:\Windows\SysWOW64\d3d8thk.dll
20:20:08.0731 4648 C:\Windows\SysWOW64\d3d8thk.dll - ok
20:20:08.0731 4648 [ 51A34398C23DD48AA9614C2C7BFE222A ] C:\Program Files (x86)\EPSON Software\Event Manager\ScanEngine30.dll
20:20:08.0731 4648 C:\Program Files (x86)\EPSON Software\Event Manager\ScanEngine30.dll - ok
20:20:08.0747 4648 [ B9F0A4020AA98B7A20287BF7FE99A1FD ] C:\Windows\System32\QUTIL.DLL
20:20:08.0747 4648 C:\Windows\System32\QUTIL.DLL - ok
20:20:08.0763 4648 [ 5DD2D09A0804CF1A9443F5A3D6FE01B0 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotra08.dll
20:20:08.0763 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotra08.dll - ok
20:20:08.0778 4648 [ 4F3CD1C59EA71401E155C432BCECE180 ] C:\Windows\System32\PortableDeviceTypes.dll
20:20:08.0778 4648 C:\Windows\System32\PortableDeviceTypes.dll - ok
20:20:08.0778 4648 [ 487F44B08EFEAF5AD087878357B9403D ] C:\Windows\SysWOW64\pdh.dll
20:20:08.0778 4648 C:\Windows\SysWOW64\pdh.dll - ok
20:20:08.0794 4648 [ 1A1CEF512F488D45BB624C148E53356D ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnMgr10.dll
20:20:08.0794 4648 C:\Program Files (x86)\EPSON Software\Event Manager\ScnMgr10.dll - ok
20:20:08.0809 4648 [ 930C61F63FB900CEE15D4EEB98BD5238 ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnCom10.dll
20:20:08.0809 4648 C:\Program Files (x86)\EPSON Software\Event Manager\ScnCom10.dll - ok
20:20:08.0809 4648 [ 04CB7C8FDC6D9640DD82A527208F72C4 ] C:\Windows\System32\UIAnimation.dll
20:20:08.0809 4648 C:\Windows\System32\UIAnimation.dll - ok
20:20:08.0825 4648 [ 08DFDBD2FD4EA951DC46B1C7661ED35A ] C:\Windows\SysWOW64\powrprof.dll
20:20:08.0825 4648 C:\Windows\SysWOW64\powrprof.dll - ok
20:20:08.0841 4648 [ 903E85BA90D0A9D32368B200634B2B67 ] C:\Program Files (x86)\EPSON Software\Event Manager\ScnEps25.dll
20:20:08.0841 4648 C:\Program Files (x86)\EPSON Software\Event Manager\ScnEps25.dll - ok
20:20:08.0856 4648 [ D9225DB92D870038F1CB95B26408BBC7 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotra08.rsc
20:20:08.0856 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotra08.rsc - ok
20:20:08.0856 4648 [ 8569E35D00F45972E506502EEE622BA4 ] C:\Windows\System32\srchadmin.dll
20:20:08.0856 4648 C:\Windows\System32\srchadmin.dll - ok
20:20:08.0872 4648 [ 4F6E72B34ED3DC53DCC5E8708E60B61F ] C:\Windows\SysWOW64\security.dll
20:20:08.0872 4648 C:\Windows\SysWOW64\security.dll - ok
20:20:08.0887 4648 [ 384EAA703F243B6D51798BA921B799EA ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotradd.dll
20:20:08.0887 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpotradd.dll - ok
20:20:08.0887 4648 [ E3E811471DE781900FF21C1FD84E941E ] C:\Windows\SysWOW64\ntdsapi.dll
20:20:08.0887 4648 C:\Windows\SysWOW64\ntdsapi.dll - ok
20:20:08.0903 4648 [ 163A95975E1D8819E653AA3E961371CA ] C:\Windows\twain_32.dll
20:20:08.0903 4648 C:\Windows\twain_32.dll - ok
20:20:08.0919 4648 [ F7A256EC899C72B4ECDD2C02CB592EFD ] C:\Windows\System32\bthprops.cpl
20:20:08.0919 4648 C:\Windows\System32\bthprops.cpl - ok
20:20:08.0934 4648 [ 85683DF1F917E4D7F6BE1A04986BF1C8 ] C:\Windows\SysWOW64\msacm32.dll
20:20:08.0934 4648 C:\Windows\SysWOW64\msacm32.dll - ok
20:20:08.0950 4648 [ D3AF5CFA390814ACA3965B34CA2DDC5B ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENUTIL.dll
20:20:08.0950 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENUTIL.dll - ok
20:20:08.0950 4648 [ 15B7225BBA691E4CF8A3D06238D46AE6 ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
20:20:08.0950 4648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll - ok
20:20:08.0965 4648 [ 8EA53101FF2B15BDFF934B62A8FB326D ] C:\Windows\SysWOW64\logoncli.dll
20:20:08.0965 4648 C:\Windows\SysWOW64\logoncli.dll - ok
20:20:08.0981 4648 [ 84174CA0E190BB9D1EFD0F005FE13B35 ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll
20:20:08.0981 4648 C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18120_none_72d2e82386681b36\GdiPlus.dll - ok
20:20:08.0981 4648 [ 4EE367B8B1964160A1F1B80095183D3A ] C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
20:20:08.0981 4648 C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin - ok
20:20:08.0997 4648 [ E0B340996A41C9A75DFA3B99BBA9C500 ] C:\Windows\System32\SearchIndexer.exe
20:20:08.0997 4648 C:\Windows\System32\SearchIndexer.exe - ok
20:20:09.0012 4648 [ 77823E431B74579925C581331AE84476 ] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
20:20:09.0012 4648 C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll - ok
20:20:09.0012 4648 [ DB02F4D37E5F7F07A0D0F9FAA68249EE ] C:\Windows\System32\ieframe.dll
20:20:09.0012 4648 C:\Windows\System32\ieframe.dll - ok
20:20:09.0028 4648 [ 8EE6BDE1D572677AA35707C52C585F75 ] C:\Windows\SysWOW64\mlang.dll
20:20:09.0028 4648 C:\Windows\SysWOW64\mlang.dll - ok
20:20:09.0043 4648 [ 6FC30299BCA75E7D694422428FBC77A8 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagCore.dll
20:20:09.0043 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagCore.dll - ok
20:20:09.0059 4648 [ E79A397561EDED918DAF43563CD28372 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENNW.dll
20:20:09.0059 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\ENNW.dll - ok
20:20:09.0059 4648 [ 9CC69E21A1ACA941C7DAE1F13212F233 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagPCMac.dll
20:20:09.0059 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagPCMac.dll - ok
20:20:09.0075 4648 [ B010CF886420EE29C2C276646721D255 ] C:\Windows\SysWOW64\wlanapi.dll
20:20:09.0075 4648 C:\Windows\SysWOW64\wlanapi.dll - ok
20:20:09.0090 4648 [ 59A6413FB2CC89FD8651B1D2962FB8B9 ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\msvcp60.dll
20:20:09.0090 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\msvcp60.dll - ok
20:20:09.0106 4648 [ AF58E8CC1DAB877BFF3328108777D4B3 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDEVCOM.dll
20:20:09.0106 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUDEVCOM.dll - ok
20:20:09.0137 4648 [ 3C69CE161C7007E9AD53A325492D446A ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqrif08.dll
20:20:09.0137 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqrif08.dll - ok
20:20:09.0137 4648 [ 1D6A771D1D702AE07919DB52C889A249 ] C:\Windows\SysWOW64\wlanutil.dll
20:20:09.0137 4648 C:\Windows\SysWOW64\wlanutil.dll - ok
20:20:09.0153 4648 [ 139D3AB6AA920C34C50CBFFB9EB7D222 ] C:\Windows\SysWOW64\avrt.dll
20:20:09.0153 4648 C:\Windows\SysWOW64\avrt.dll - ok
20:20:09.0168 4648 [ 75CEF0D7583535D2B6A7922AF93AA505 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommon.dll
20:20:09.0168 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommon.dll - ok
20:20:09.0168 4648 [ B0A41262968DD6FCE3933527892D4A24 ] C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqmif08.dll
20:20:09.0168 4648 C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqmif08.dll - ok
20:20:09.0184 4648 [ A9A8FED9CCEE587A956879F35394562C ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUSNMPUT.dll
20:20:09.0184 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUSNMPUT.dll - ok
20:20:09.0199 4648 [ 703FFD301AB900B047337C5D40FD6F96 ] C:\Windows\SysWOW64\olepro32.dll
20:20:09.0199 4648 C:\Windows\SysWOW64\olepro32.dll - ok
20:20:09.0199 4648 [ 6357E2B68753A1F5CF4A68A25C4FD14A ] C:\Windows\SysWOW64\wsnmp32.dll
20:20:09.0199 4648 C:\Windows\SysWOW64\wsnmp32.dll - ok
20:20:09.0215 4648 [ C939E909CC23598B10F78FA0A109F755 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIEngine.dll
20:20:09.0215 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIEngine.dll - ok
20:20:09.0231 4648 [ 28CA821606669BB9215CE010767720FA ] C:\Windows\SysWOW64\cryptui.dll
20:20:09.0231 4648 C:\Windows\SysWOW64\cryptui.dll - ok
20:20:09.0246 4648 [ 6E9A40A51F6588DB3F0FF3687512B4D2 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommonET.dll
20:20:09.0246 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommonET.dll - ok
20:20:09.0262 4648 [ A0B5D04C293FE83E13498BC4E1A1293F ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIInter.dll
20:20:09.0262 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIInter.dll - ok
20:20:09.0262 4648 [ 7F8678C59F188528D60104E697C2361E ] C:\Windows\SysWOW64\mscms.dll
20:20:09.0262 4648 C:\Windows\SysWOW64\mscms.dll - ok
20:20:09.0277 4648 [ 971559CD4D3FB291320A8EE2AABE3876 ] C:\Program Files (x86)\EPSON Software\FAX Utility\FUUSBHLP.dll
20:20:09.0277 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\FUUSBHLP.dll - ok
20:20:09.0293 4648 [ 65AF88D89E9F1F43198EB7D4DBF2E34B ] C:\Program Files\Internet Explorer\sqmapi.dll
20:20:09.0293 4648 C:\Program Files\Internet Explorer\sqmapi.dll - ok
20:20:09.0309 4648 [ 9F0DD3CB715986BA9811F6E98CF08EF4 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUPRBDEVRes.dll
20:20:09.0309 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUPRBDEVRes.dll - ok
20:20:09.0324 4648 [ 589DF683A6C81424A6CECE52ABF98A50 ] C:\Windows\System32\tquery.dll
20:20:09.0324 4648 C:\Windows\System32\tquery.dll - ok
20:20:09.0324 4648 [ 21BFA433415377C6C9E428202BDFA9F9 ] C:\Users\Wendy\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
20:20:09.0324 4648 C:\Users\Wendy\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll - ok
20:20:09.0340 4648 [ 0302B9F7322651E8E21FE0326A7CA37B ] C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXSTM.dll
20:20:09.0340 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Resource\FUFAXSTM.dll - ok
20:20:09.0355 4648 [ FB2BE4175BF06D592F2C95E5863CA198 ] C:\Windows\twain_32\escndv\wf2520.ds
20:20:09.0355 4648 C:\Windows\twain_32\escndv\wf2520.ds - ok
20:20:09.0371 4648 [ B3EE7BD189C5925D4C0D2BBFCA00FDD1 ] C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe
20:20:09.0371 4648 C:\Program Files\Microsoft Games\Minesweeper\MineSweeper.exe - ok
20:20:09.0371 4648 [ 0EB1510A539AF2DC59C890E57496EA92 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIImage.dll
20:20:09.0371 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIImage.dll - ok
20:20:09.0387 4648 [ FE798CC2F350E3567E75266F37B98BE2 ] C:\Program Files (x86)\Common Files\ArcSoft\Bin\magPltfm.dll
20:20:09.0387 4648 C:\Program Files (x86)\Common Files\ArcSoft\Bin\magPltfm.dll - ok
20:20:09.0402 4648 [ E544B0BB96398852238DA57E27089424 ] C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRNSYS.dll
20:20:09.0402 4648 C:\Program Files (x86)\EPSON Software\FAX Utility\Library\FUPRNSYS.dll - ok
20:20:09.0402 4648 [ 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 ] C:\Windows\SysWOW64\mapi32.dll
20:20:09.0402 4648 C:\Windows\SysWOW64\mapi32.dll - ok
20:20:09.0418 4648 [ 816B681CC308FAA128EDCB90643DCED7 ] C:\Windows\SysWOW64\icm32.dll
20:20:09.0418 4648 C:\Windows\SysWOW64\icm32.dll - ok
20:20:09.0433 4648 [ 7568CC720ACE4D03B84AF97817E745EF ] C:\Windows\System32\mssrch.dll
20:20:09.0433 4648 C:\Windows\System32\mssrch.dll - ok
20:20:09.0433 4648 [ E4561704CBFA193761743E5AF746C669 ] C:\Windows\SysWOW64\msxml3.dll
20:20:09.0449 4648 C:\Windows\SysWOW64\msxml3.dll - ok
20:20:09.0449 4648 [ A7934B26A096F39B15960E0A56C1C8C4 ] C:\Windows\SysWOW64\bidispl.dll
20:20:09.0449 4648 C:\Windows\SysWOW64\bidispl.dll - ok
20:20:09.0465 4648 [ DEC1426BF15A07E4B26DC7F479EDAA60 ] C:\Program Files (x86)\Common Files\System\ado\msado15.dll
20:20:09.0465 4648 C:\Program Files (x86)\Common Files\System\ado\msado15.dll - ok
20:20:09.0480 4648 [ 4CB173F3A848153D9A1A056CFCC752DC ] C:\Windows\twain_32\hpsj_0003\hpsj_0003.ds
20:20:09.0480 4648 C:\Windows\twain_32\hpsj_0003\hpsj_0003.ds - ok
20:20:09.0480 4648 [ 3121A79D13A61562BE9CC902CD46B542 ] C:\Windows\System32\msidle.dll
20:20:09.0480 4648 C:\Windows\System32\msidle.dll - ok
20:20:09.0496 4648 [ 7E4F8065367AE5BA387262D57B868DF5 ] C:\Program Files\iPod\bin\iPodService.exe
20:20:09.0496 4648 C:\Program Files\iPod\bin\iPodService.exe - ok
20:20:09.0511 4648 [ ACE1BB07E0377E37A2C514CD2EC119B1 ] C:\Windows\System32\mssprxy.dll
20:20:09.0511 4648 C:\Windows\System32\mssprxy.dll - ok
20:20:09.0511 4648 [ 5963633010616B25503EE126F55E8DE4 ] C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90.dll
20:20:09.0511 4648 C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90.dll - ok
20:20:09.0527 4648 [ A99C4D1B5E7E794EC5779CF14F431932 ] C:\Windows\SysWOW64\msdart.dll
20:20:09.0527 4648 C:\Windows\SysWOW64\msdart.dll - ok
20:20:09.0543 4648 [ 81FB155132AE12BA18119D5B36A85476 ] C:\Windows\System32\msvcr110_clr0400.dll
20:20:09.0543 4648 C:\Windows\System32\msvcr110_clr0400.dll - ok
20:20:09.0543 4648 [ C9FB9038B15036CA28CF0B4BE2BED9BD ] C:\Windows\System32\en-US\tquery.dll.mui
20:20:09.0543 4648 C:\Windows\System32\en-US\tquery.dll.mui - ok
20:20:09.0558 4648 [ CD1E79968BF5866D2FD509F713D082A9 ] C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll
20:20:09.0558 4648 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.dll - ok
20:20:09.0574 4648 [ 9108540E866F75C7AF2B91DD921A8091 ] C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
20:20:09.0574 4648 C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
20:20:09.0589 4648 [ E72831417985680AAF432610DE880E53 ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\AcStBmhE.exe
20:20:09.0589 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\AcStBmhE.exe - ok
20:20:09.0605 4648 [ B65D867F7692BBECD5D1A3B137F7E335 ] C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll
20:20:09.0605 4648 C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.dll - ok
20:20:09.0621 4648 [ E2095C5CBE19CB17F8C6B07A5805B784 ] C:\Program Files (x86)\Common Files\System\Ole DB\oledb32.dll
20:20:09.0621 4648 C:\Program Files (x86)\Common Files\System\Ole DB\oledb32.dll - ok
20:20:09.0636 4648 [ 847D3AE376C0817161A14A82C8922A9E ] C:\Windows\System32\netman.dll
20:20:09.0636 4648 C:\Windows\System32\netman.dll - ok
20:20:09.0636 4648 [ C0E2E7898707E94BAA38DADF676DBAC8 ] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcBmhE.dll
20:20:09.0636 4648 C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcBmhE.dll - ok
20:20:09.0652 4648 [ D2155709E336C3BC15729EB87FEC6064 ] C:\Windows\System32\rasdlg.dll
20:20:09.0652 4648 C:\Windows\System32\rasdlg.dll - ok
20:20:09.0667 4648 [ B81737A402CA1BCEC7CDD33261E0D820 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\abf62e6545d2802fc60286678a67e6bf\mscorlib.ni.dll
20:20:09.0667 4648 C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\abf62e6545d2802fc60286678a67e6bf\mscorlib.ni.dll - ok
20:20:09.0683 4648 [ B89137476D554DF13421DF8F5F5789EC ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\sal3.dll
20:20:09.0683 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\sal3.dll - ok
20:20:09.0683 4648 [ 8859C0357D3C1499BEF65C7D5BBF7A40 ] C:\Program Files (x86)\Common Files\System\Ole DB\oledb32r.dll
20:20:09.0683 4648 C:\Program Files (x86)\Common Files\System\Ole DB\oledb32r.dll - ok
20:20:09.0699 4648 [ F9AFD12BB4B1CFA5FCC0A5B37C604FD2 ] C:\Windows\System32\dot3api.dll
20:20:09.0699 4648 C:\Windows\System32\dot3api.dll - ok
20:20:09.0714 4648 [ E4FCA0F99A41E460C84016DEFD31E6EF ] C:\Windows\System32\wlanhlp.dll
20:20:09.0714 4648 C:\Windows\System32\wlanhlp.dll - ok
20:20:09.0730 4648 [ 715BFF236158F61C042928A53C0D5AA8 ] C:\Program Files\Windows NT\Accessories\wordpad.exe
20:20:09.0730 4648 C:\Program Files\Windows NT\Accessories\wordpad.exe - ok
20:20:09.0730 4648 [ ED12110CD5BFE686F645E145A7DD28C5 ] C:\Windows\SysWOW64\comsvcs.dll
20:20:09.0730 4648 C:\Windows\SysWOW64\comsvcs.dll - ok
20:20:09.0745 4648 [ CCFA2FC955EE4CB4157AFDD5F11E52E7 ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\uwinapi.dll
20:20:09.0745 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\uwinapi.dll - ok
20:20:09.0761 4648 [ 4513B7400878973F9B1BA71153B4F4CF ] C:\Program Files (x86)\OpenOffice.org 3\program\sofficeapp.dll
20:20:09.0761 4648 C:\Program Files (x86)\OpenOffice.org 3\program\sofficeapp.dll - ok
20:20:09.0777 4648 [ FCD4E3223AB57109D09F03EF74D9B181 ] C:\Program Files (x86)\OpenOffice.org 3\program\comphelpMSC.dll
20:20:09.0777 4648 C:\Program Files (x86)\OpenOffice.org 3\program\comphelpMSC.dll - ok
20:20:09.0777 4648 [ 6699A112A3BDC9B52338512894EBA9D6 ] C:\Program Files\Windows Media Player\wmpnscfg.exe
20:20:09.0777 4648 C:\Program Files\Windows Media Player\wmpnscfg.exe - ok
20:20:09.0792 4648 [ FBFCA1A574D47EE575448B719CBBF2E4 ] C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL
20:20:09.0792 4648 C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL - ok
20:20:09.0808 4648 [ 5DA219F57A9076FB6FBD3C9C3713A672 ] C:\Windows\System32\WWanAPI.dll
20:20:09.0808 4648 C:\Windows\System32\WWanAPI.dll - ok
20:20:09.0823 4648 [ 0503D60AFCED7CB601C7CA70C08E8CAC ] C:\Windows\twain_32\wiatwain.ds
20:20:09.0823 4648 C:\Windows\twain_32\wiatwain.ds - ok
20:20:09.0823 4648 [ 9262BF9AF67CA4499F7DAE1FB2AA58E0 ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll
20:20:09.0823 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll - ok
20:20:09.0839 4648 [ 80279007CAB3549A5999348BD0C23732 ] C:\Windows\SysWOW64\wiadss.dll
20:20:09.0839 4648 C:\Windows\SysWOW64\wiadss.dll - ok
20:20:09.0855 4648 [ F10E5311E5093FA3C00FF88C54C32FCA ] C:\Windows\SysWOW64\atl.dll
20:20:09.0855 4648 C:\Windows\SysWOW64\atl.dll - ok
20:20:09.0870 4648 [ 62C7AACC746C9723468A8F2169ED3E85 ] C:\Windows\System32\wwapi.dll
20:20:09.0870 4648 C:\Windows\System32\wwapi.dll - ok
20:20:09.0870 4648 [ 1D1EAA16D193C6A2D45981ED3914D22A ] C:\Windows\SysWOW64\msimtf.dll
20:20:09.0870 4648 C:\Windows\SysWOW64\msimtf.dll - ok
20:20:09.0886 4648 [ 6B851E682A36453E1B1EE297FFB6E2AB ] C:\Windows\System32\QAGENT.DLL
20:20:09.0886 4648 C:\Windows\System32\QAGENT.DLL - ok
20:20:09.0901 4648 [ A0849FBA350AA979617856770F8AA1D2 ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\salhelper3MSC.dll
20:20:09.0901 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\salhelper3MSC.dll - ok
20:20:09.0917 4648 [ 5A72F87F75A5EA7B46DC3AD87302FE00 ] C:\Windows\SysWOW64\msjetoledb40.dll
20:20:09.0917 4648 C:\Windows\SysWOW64\msjetoledb40.dll - ok
20:20:09.0917 4648 [ 7AD794FA7B80EC3F97097DA7E7011347 ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\cppu3.dll
20:20:09.0917 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\cppu3.dll - ok
20:20:09.0933 4648 [ 99280392987A1A96C756A9F38C4CE396 ] C:\Windows\SysWOW64\jscript9.dll
20:20:09.0933 4648 C:\Windows\SysWOW64\jscript9.dll - ok
20:20:09.0948 4648 [ B6F943D2D99307BFD7D2ADFA3B866813 ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\stlport_vc7145.dll
20:20:09.0948 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\stlport_vc7145.dll - ok
20:20:09.0948 4648 [ 3B65DE77A896E55A2705B9C14254484C ] C:\Program Files (x86)\EPSON Software\Event Manager\EPNSM.dll
20:20:09.0948 4648 C:\Program Files (x86)\EPSON Software\Event Manager\EPNSM.dll - ok
20:20:09.0964 4648 [ C9380B96A0D51B8109D19D13467ADA0B ] C:\Windows\SysWOW64\msjet40.dll
20:20:09.0964 4648 C:\Windows\SysWOW64\msjet40.dll - ok
20:20:09.0979 4648 [ 637124CDBFF5819CB8A8478838A33048 ] C:\Program Files (x86)\EPSON Software\Event Manager\ESPSUTL.dll
20:20:09.0979 4648 C:\Program Files (x86)\EPSON Software\Event Manager\ESPSUTL.dll - ok
20:20:09.0995 4648 [ E6AEF6498578702ED3E8024D9792F30B ] C:\Program Files (x86)\OpenOffice.org 3\program\ucbhelper4MSC.dll
20:20:09.0995 4648 C:\Program Files (x86)\OpenOffice.org 3\program\ucbhelper4MSC.dll - ok
20:20:09.0995 4648 [ C7494C67A6BF6FE914808E42F8265FEF ] C:\Program Files\Windows Media Player\wmpnssci.dll
20:20:09.0995 4648 C:\Program Files\Windows Media Player\wmpnssci.dll - ok
20:20:10.0011 4648 [ 0BA65122FFA7E37564EE86422DBF7AE8 ] C:\Windows\SysWOW64\nlaapi.dll
20:20:10.0011 4648 C:\Windows\SysWOW64\nlaapi.dll - ok
20:20:10.0026 4648 [ C820C516CB162FD1845E2612A65536CB ] C:\Program Files (x86)\OpenOffice.org 3\program\vos3MSC.dll
20:20:10.0026 4648 C:\Program Files (x86)\OpenOffice.org 3\program\vos3MSC.dll - ok
20:20:10.0042 4648 [ 7FB936AA67FA487F59529C9A4907685E ] C:\Program Files (x86)\OpenOffice.org 3\program\deploymentmisc.dll
20:20:10.0042 4648 C:\Program Files (x86)\OpenOffice.org 3\program\deploymentmisc.dll - ok
20:20:10.0057 4648 [ 0B7E85364CB878E2AD531DB7B601A9E5 ] C:\Windows\SysWOW64\NapiNSP.dll
20:20:10.0057 4648 C:\Windows\SysWOW64\NapiNSP.dll - ok
20:20:10.0057 4648 [ 2FC3769842EB87578032E8B6C1DE9A08 ] C:\Program Files (x86)\OpenOffice.org 3\program\tl.dll
20:20:10.0057 4648 C:\Program Files (x86)\OpenOffice.org 3\program\tl.dll - ok
20:20:10.0073 4648 [ A9F3BFC9345F49614D5859EC95B9E994 ] C:\Program Files\Windows Media Player\wmpnetwk.exe
20:20:10.0073 4648 C:\Program Files\Windows Media Player\wmpnetwk.exe - ok
20:20:10.0089 4648 [ 4167AE99A4CC521848E5471FA83A9EED ] C:\Program Files (x86)\OpenOffice.org 3\program\basegfx.dll
20:20:10.0089 4648 C:\Program Files (x86)\OpenOffice.org 3\program\basegfx.dll - ok
20:20:10.0104 4648 [ 5CF640EDDB1E40A5AB1BB743BCDEC610 ] C:\Windows\SysWOW64\pnrpnsp.dll
20:20:10.0104 4648 C:\Windows\SysWOW64\pnrpnsp.dll - ok
20:20:10.0104 4648 [ 1F55C7C1E338047DC5E329011A781FB3 ] C:\Windows\SysWOW64\mswstr10.dll
20:20:10.0104 4648 C:\Windows\SysWOW64\mswstr10.dll - ok
20:20:10.0120 4648 [ 5DF5D8CFD9B9573FA3B2C89D9061A240 ] C:\Windows\SysWOW64\winrnr.dll
20:20:10.0120 4648 C:\Windows\SysWOW64\winrnr.dll - ok
20:20:10.0135 4648 [ 870285A6C2429CFC47FF95DA49313664 ] C:\Windows\SysWOW64\msjter40.dll
20:20:10.0135 4648 C:\Windows\SysWOW64\msjter40.dll - ok
20:20:10.0135 4648 [ 0219B6F2329F4C1BC24580C83D0F3645 ] C:\Windows\SysWOW64\msjint40.dll
20:20:10.0135 4648 C:\Windows\SysWOW64\msjint40.dll - ok
20:20:10.0151 4648 [ D2A90407F02E2B2B7D636EF402BEBA59 ] C:\Program Files (x86)\OpenOffice.org 3\program\i18nisolang1MSC.dll
20:20:10.0151 4648 C:\Program Files (x86)\OpenOffice.org 3\program\i18nisolang1MSC.dll - ok
20:20:10.0198 4648 [ 1F27643C4C626457FCE8F047AE1CD7E1 ] C:\Windows\SysWOW64\dxva2.dll
20:20:10.0198 4648 C:\Windows\SysWOW64\dxva2.dll - ok
20:20:10.0213 4648 [ 750726E5868345AB2D46850EB1E60DF9 ] C:\Program Files (x86)\OpenOffice.org 3\program\utl.dll
20:20:10.0213 4648 C:\Program Files (x86)\OpenOffice.org 3\program\utl.dll - ok
20:20:10.0231 4648 [ AA0AC5B8C45AF41D1215B156272FC869 ] C:\Windows\SysWOW64\aticfx32.dll
20:20:10.0231 4648 C:\Windows\SysWOW64\aticfx32.dll - ok
20:20:10.0241 4648 [ 423982DD851406A52B6399DDB196C606 ] C:\Windows\System32\wmdrmdev.dll
20:20:10.0242 4648 C:\Windows\System32\wmdrmdev.dll - ok
20:20:10.0254 4648 [ FC877611E178FA17E23F99D9694590A0 ] C:\Program Files (x86)\Common Files\microsoft shared\DAO\dao360.dll
20:20:10.0254 4648 C:\Program Files (x86)\Common Files\microsoft shared\DAO\dao360.dll - ok
20:20:10.0265 4648 [ 218B2BA51244F5285904AE03F5898112 ] C:\Program Files (x86)\OpenOffice.org 3\program\xcr.dll
20:20:10.0265 4648 C:\Program Files (x86)\OpenOffice.org 3\program\xcr.dll - ok
20:20:10.0279 4648 [ 365EB15783B9BE4DB9C2A6064532B2BC ] C:\Program Files (x86)\OpenOffice.org 3\program\sfx.dll
20:20:10.0279 4648 C:\Program Files (x86)\OpenOffice.org 3\program\sfx.dll - ok
20:20:10.0279 4648 [ 2C1055E2C6D42753241FB2A129136994 ] C:\Windows\System32\drmv2clt.dll
20:20:10.0279 4648 C:\Windows\System32\drmv2clt.dll - ok
20:20:10.0295 4648 [ 73D1680C94C1B57F6D8E49B2AE8122ED ] C:\Windows\SysWOW64\vbajet32.dll
20:20:10.0295 4648 C:\Windows\SysWOW64\vbajet32.dll - ok
20:20:10.0310 4648 [ EFF10B20A6F094BC75385791C526546D ] C:\Windows\SysWOW64\expsrv.dll
20:20:10.0310 4648 C:\Windows\SysWOW64\expsrv.dll - ok
20:20:10.0310 4648 [ 5D09A0DCE86829EB91A82EA13691CAC6 ] C:\Windows\SysWOW64\atiu9pag.dll
20:20:10.0310 4648 C:\Windows\SysWOW64\atiu9pag.dll - ok
20:20:10.0326 4648 [ EB9F220E8DC22310B199AE6A49B7E168 ] C:\Windows\SysWOW64\atiumdag.dll
20:20:10.0326 4648 C:\Windows\SysWOW64\atiumdag.dll - ok
20:20:10.0341 4648 [ 8CBBB27369F9F07BC5E874E750EAF9D0 ] C:\Windows\System32\wmp.dll
20:20:10.0341 4648 C:\Windows\System32\wmp.dll - ok
20:20:10.0357 4648 [ 3F50200237961034FACE602373838980 ] C:\Windows\SysWOW64\FirewallAPI.dll
20:20:10.0357 4648 C:\Windows\SysWOW64\FirewallAPI.dll - ok
20:20:10.0357 4648 [ 3BDA50E1839E245BD83534F8DEAF9DFD ] C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
20:20:10.0357 4648 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll - ok
20:20:10.0373 4648 [ F774DB03213C2014363DE8D22DD6BBEF ] C:\Windows\SysWOW64\msjtes40.dll
20:20:10.0373 4648 C:\Windows\SysWOW64\msjtes40.dll - ok
20:20:10.0388 4648 [ 17AD6A5E8A3E68D3F77894B02B88BF92 ] C:\Program Files (x86)\Common Files\System\ado\msadrh15.dll
20:20:10.0388 4648 C:\Program Files (x86)\Common Files\System\ado\msadrh15.dll - ok
20:20:10.0404 4648 [ CDD76188ECF2EA78EB816151D0130327 ] C:\Program Files (x86)\OpenOffice.org 3\program\fwe.dll
20:20:10.0404 4648 C:\Program Files (x86)\OpenOffice.org 3\program\fwe.dll - ok
20:20:10.0404 4648 [ CC22C9FB26428FEAB01526F2A23B30FC ] C:\Program Files (x86)\OpenOffice.org 3\program\fwi.dll
20:20:10.0404 4648 C:\Program Files (x86)\OpenOffice.org 3\program\fwi.dll - ok
20:20:10.0419 4648 [ ACF3A47CE86B6E89616C4D3A692A4422 ] C:\Program Files (x86)\OpenOffice.org 3\program\svl.dll
20:20:10.0419 4648 C:\Program Files (x86)\OpenOffice.org 3\program\svl.dll - ok
20:20:10.0435 4648 [ 950E73D43BA3D8415EF788D301CBE364 ] C:\Windows\SysWOW64\Macromed\Flash\Flash32_12_0_0_70.ocx
20:20:10.0435 4648 C:\Windows\SysWOW64\Macromed\Flash\Flash32_12_0_0_70.ocx - ok
20:20:10.0451 4648 [ 336B257EC1D65F97B149BA032F41B428 ] C:\Program Files (x86)\OpenOffice.org 3\program\sot.dll
20:20:10.0451 4648 C:\Program Files (x86)\OpenOffice.org 3\program\sot.dll - ok
20:20:10.0466 4648 [ 561714DFA385FA4E35D81DCF8014377F ] C:\Program Files (x86)\OpenOffice.org 3\program\svt.dll
20:20:10.0466 4648 C:\Program Files (x86)\OpenOffice.org 3\program\svt.dll - ok
20:20:10.0466 4648 [ 2402608897A8BCBAC7469A7DB1C874DA ] C:\Windows\SysWOW64\atiumdva.dll
20:20:10.0466 4648 C:\Windows\SysWOW64\atiumdva.dll - ok
20:20:10.0482 4648 [ FE085839DF8AF76F958F0184E5C173B6 ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System\4d4a15d5d7968df7dedd4cf853848d90\System.ni.dll
20:20:10.0482 4648 C:\Windows\assembly\NativeImages_v4.0.30319_64\System\4d4a15d5d7968df7dedd4cf853848d90\System.ni.dll - ok
20:20:10.0497 4648 [ 5F49FBF4E018ABB9C4ADC4A8D57F9C76 ] C:\Program Files (x86)\OpenOffice.org 3\program\i18nutilMSC.dll
20:20:10.0497 4648 C:\Program Files (x86)\OpenOffice.org 3\program\i18nutilMSC.dll - ok
20:20:10.0513 4648 [ F6CB86F2E560E2536BBA522F97BC6039 ] C:\Program Files (x86)\OpenOffice.org 3\program\icuuc40.dll
20:20:10.0513 4648 C:\Program Files (x86)\OpenOffice.org 3\program\icuuc40.dll - ok
20:20:10.0513 4648 [ EC00034A5D1E094FCFFA6AF27EBF9604 ] C:\Program Files (x86)\OpenOffice.org 3\program\icudt40.dll
20:20:10.0513 4648 C:\Program Files (x86)\OpenOffice.org 3\program\icudt40.dll - ok
20:20:10.0529 4648 [ 81F08948A0F1475894C99D4D19A158A8 ] C:\Windows\SysWOW64\wshqos.dll
20:20:10.0529 4648 C:\Windows\SysWOW64\wshqos.dll - ok
20:20:10.0544 4648 [ AB272BBFB05A8585C3405EFA9F605774 ] C:\Windows\System32\wmploc.DLL
20:20:10.0544 4648 C:\Windows\System32\wmploc.DLL - ok
20:20:10.0544 4648 [ AA6F6457116B559B76BC6A012CB4C293 ] C:\Windows\SysWOW64\schannel.dll
20:20:10.0544 4648 C:\Windows\SysWOW64\schannel.dll - ok
20:20:10.0560 4648 [ 220159496484D34009DE71CA1A68E0D4 ] C:\Windows\System32\wbem\NCProv.dll
20:20:10.0560 4648 C:\Windows\System32\wbem\NCProv.dll - ok
20:20:10.0575 4648 [ 0E85C11F8850D524B02181C6E02BA9AE ] C:\Windows\SysWOW64\dsound.dll
20:20:10.0575 4648 C:\Windows\SysWOW64\dsound.dll - ok
20:20:10.0591 4648 [ 5E08AC958BE05247FF1539E0D1CE7905 ] C:\Windows\SysWOW64\dinput8.dll
20:20:10.0591 4648 C:\Windows\SysWOW64\dinput8.dll - ok
20:20:10.0591 4648 [ F2F7EED54D0970CACE9A579A562AFA7A ] C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\7926c26400ff262c7fc48b729377085b\System.Drawing.ni.dll
20:20:10.0591 4648 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\7926c26400ff262c7fc48b729377085b\System.Drawing.ni.dll - ok
20:20:10.0607 4648 [ 31DCF8ED7C7D8C87EB5379AD122A328E ] C:\Program Files (x86)\OpenOffice.org 3\URE\bin\jvmfwk3.dll
20:20:10.0607 4648 C:\Program Files (x86)\OpenOffice.org 3\URE\bin\jvmfwk3.dll - ok
20:20:10.0622 4648 [ 1330EA93145B834D1A6ED1F1AC3163FC ] C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
20:20:10.0622 4648 C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll - ok
20:20:10.0638 4648 [ E49ED3AA10FB8A5EEAC8FB926BA73FCC ] C:\Program Files (x86)\Skype\Updater\Updater.dll
20:20:10.0638 4648 C:\Program Files (x86)\Skype\Updater\Updater.dll - ok
20:20:10.0653 4648 [ 81F6C1AE23B1C493D9E996C3103915D7 ] C:\Windows\SysWOW64\dhcpcsvc6.dll
20:20:10.0653 4648 C:\Windows\SysWOW64\dhcpcsvc6.dll - ok
20:20:10.0653 4648 [ EC120FACE13767CCFB18FB2EA170AC83 ] C:\Program Files (x86)\OpenOffice.org 3\program\tk.dll
20:20:10.0653 4648 C:\Program Files (x86)\OpenOffice.org 3\program\tk.dll - ok
20:20:10.0669 4648 [ 5987EA8A82C53359BCD2C29D6588583E ] C:\Windows\SysWOW64\linkinfo.dll
20:20:10.0669 4648 C:\Windows\SysWOW64\linkinfo.dll - ok
20:20:10.0685 4648 ============================================================
20:20:10.0685 4648 Scan finished
20:20:10.0685 4648 ============================================================
20:20:10.0700 4628 Detected object count: 8
20:20:10.0700 4628 Actual detected object count: 8
20:20:26.0425 4628 CalendarSynchService ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0425 4628 CalendarSynchService ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0425 4628 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0425 4628 HP Support Assistant Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0425 4628 hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0425 4628 hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0425 4628 hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0425 4628 hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0441 4628 HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0441 4628 HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0441 4628 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0441 4628 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0441 4628 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0441 4628 Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:20:26.0441 4628 sesvc ( UnsignedFile.Multi.Generic ) - skipped by user
20:20:26.0441 4628 sesvc ( UnsignedFile.Multi.Generic ) - User select action: Skip


So here's the story on this one. I run the software and it wants to update itself or continue. If I try to update, the courser spins a little and just stops. nothing downloads. If I just continue, it seems to do it's thing alright.
  • 0

#7
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

So here's the story on this one. I run the software and it wants to update itself or continue. If I try to update, the courser spins a little and just stops. nothing downloads. If I just continue, it seems to do it's thing alright.


The TDSS log is clean, as the items it detected are legitimate files. The AdwCleaner and Junkware tool got rid of a bunch of adware as well. Let's run a FRST fix and then see if we can get a complete FRST log.

If not, then we may have to go into Safe Mode to try and get it. :thumbsup:


Step 1: FRST Fix


  • Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy.
  • Right-click in the open notepad and select Paste).
  • Save it on the desktop as fixlist.txt

Start
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
HKLM-x32\...\Run: [] - [X]
AppInit_DLLs: C:\PROGRA~2\WS_X64~1.ENA => C:\Program Files (x86)\WS_x64.Enabler [4241408 2014-02-05] ()
AppInit_DLLs-x32: c:\progra~2\wsbeb1~1.ena => C:\Program Files (x86)\WS.Enabler [4248576 2014-02-05] ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
BHO: YoutubeAdblocker - {24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} - C:\Program Files (x86)\YoutubeAdblocker\2wXyNSCHEn.x64.dll No File
BHO: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.x64.dll No File
End


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.


Run FRST and press the Fix button just once and wait. The tool will make a log on the desktop (Fixlog.txt) please post it in your next reply.


After the fix runs and the machine reboots, see if FRST will run till completion. :)


Things I need to see in your next post:

FRST Fix Log

FRST Scan Log

  • 0

#8
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
So I ran the fix and guess what happened. IE works now. LOL

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-03-2014
Ran by Wendy at 2014-03-10 17:12:48 Run:1
Running from C:\Users\Wendy\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
HKLM-x32\...\Run: [] - [X]
AppInit_DLLs: C:\PROGRA~2\WS_X64~1.ENA => C:\Program Files (x86)\WS_x64.Enabler [4241408 2014-02-05] ()
AppInit_DLLs-x32: c:\progra~2\wsbeb1~1.ena => C:\Program Files (x86)\WS.Enabler [4248576 2014-02-05] ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
BHO: YoutubeAdblocker - {24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} - C:\Program Files (x86)\YoutubeAdblocker\2wXyNSCHEn.x64.dll No File
BHO: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.x64.dll No File
End
*****************

[3204] c:\programdata\setapp\ws.enabler\WS.Enabler.exe => Process closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
"C:\\PROGRA~2\\WS_X64~1.ENA" => Value Data removed successfully.
"c:\\progra~2\\wsbeb1~1.ena" => Value Data removed successfully.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} => Key deleted successfully.
HKCR\CLSID\{24BB0ECF-B673-C03D-DBC6-99F4775AC0CE} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{462FC244-2ABD-FCA4-7037-2BAECA8A687E} => Key deleted successfully.
HKCR\CLSID\{462FC244-2ABD-FCA4-7037-2BAECA8A687E} => Key deleted successfully.


The system needed a reboot.

==== End of Fixlog ====

I'll post the FRST run here in a few minutes. wanted to get this up before it crashed again.


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2014
Ran by Wendy (administrator) on WENDY-HP on 10-03-2014 17:20:23
Running from C:\Users\Wendy\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(www.shadowexplorer.com) C:\Program Files (x86)\ShadowExplorer\sesvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Dropbox, Inc.) C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(ArcSoft, Inc.) C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Microsoft Corporation) C:\Windows\system32\wbem\WMIADAP.EXE


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7461480 2011-09-08] (Realtek Semiconductor)
HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-08-12] (PDF Complete Inc)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [ArcSoft MediaImpression Monitor] - C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe [80448 2010-12-15] (ArcSoft, Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2012-01-26] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [502912 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863360 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [RoboForm] - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [109296 2012-02-21] (Siber Systems)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [KGShareApp] - C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe [394752 2012-10-11] (Eastman Kodak Company)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIIUE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20918432 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {c46af8e6-a1c2-11e2-a415-047d7b09fc67} - G:\7001TPain.exe
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {f5f150a7-ea33-11e2-a65e-047d7b09fc67} - G:\KODAK_Camera_Setup_App.exe
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
SearchScopes: HKLM - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
BHO: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.x64.dll ()
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
BHO-x32: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.dll No File
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.dll ()
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKCU - &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM {AEA3991E-3109-4C98-989E-33994FEB1A91} http://content.syste...i64_4.5.1.0.cab
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

Chrome:
=======
CHR HomePage: hxxp://websearch.webisgreat.info/?pid=1810&r=2014/02/05&hid=7917110145827562517&lg=EN&cc=US&unqvl=48
CHR Extension: (Google Docs) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-12]
CHR Extension: (Skype Click to Call) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-27]
CHR Extension: (Google Wallet) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-12]
CHR HKLM-x32\...\Chrome\Extension: [lfffjahnfbocnaooecgijfnbpcfekoik] - C:\ProgramData\adawaretb\shortcuts\chrome\adawaretb.crx [2014-01-12]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

S2 1a34a8e0; C:\Program Files (x86)\WSSvc.dll [175952 2014-02-05] ()
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-12-19] (Advanced Micro Devices, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748640 2014-01-03] (Microsoft Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
R2 HPSLPSVC; C:\Users\Wendy\AppData\Local\Temp\7zS420F\hpslpsvc64.dll [1039360 2011-11-14] (Hewlett-Packard Co.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-08-12] (PDF Complete Inc)
R2 sesvc; C:\Program Files (x86)\ShadowExplorer\sesvc.exe [9216 2013-01-02] (www.shadowexplorer.com)

==================== Drivers (Whitelisted) ====================

R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-04-30] (GFI Software)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2012-10-14] (CACE Technologies, Inc.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-09 20:07 - 2014-03-09 20:07 - 00000000 ____D () C:\Windows\Minidump
2014-03-09 20:04 - 2014-03-10 17:21 - 00017448 _____ () C:\Users\Wendy\Desktop\FRST.txt
2014-03-09 19:43 - 2014-03-09 19:43 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Wendy\Desktop\tdsskiller.exe
2014-03-09 19:39 - 2014-03-09 19:39 - 00141159 _____ () C:\Users\Wendy\Desktop\JRT.txt
2014-03-09 19:17 - 2014-03-09 19:17 - 00000000 ____D () C:\Windows\ERUNT
2014-03-09 19:16 - 2014-03-09 19:16 - 01037734 _____ (Thisisu) C:\Users\Wendy\Desktop\JRT.exe
2014-03-09 19:10 - 2014-03-09 19:10 - 00006840 _____ () C:\Users\Wendy\Desktop\AdwCleaner[S0].txt
2014-03-09 19:07 - 2014-03-09 19:07 - 00000000 __SHD () C:\found.000
2014-03-09 18:59 - 2014-03-09 19:04 - 00000000 ____D () C:\AdwCleaner
2014-03-09 18:46 - 2014-03-09 18:46 - 01244192 _____ () C:\Users\Wendy\Desktop\adwcleaner.exe
2014-03-09 16:04 - 2014-03-09 16:04 - 00016384 ___SH () C:\Users\Wendy\Desktop\Thumbs.db
2014-03-09 15:56 - 2014-03-10 17:20 - 00000000 ____D () C:\FRST
2014-03-09 15:51 - 2014-03-09 15:51 - 02157056 _____ (Farbar) C:\Users\Wendy\Desktop\FRST64.exe
2014-03-08 17:03 - 2014-03-09 16:01 - 00000000 ___RD () C:\Users\Wendy\Desktop\PC Fix
2014-03-02 22:28 - 2014-03-06 22:28 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForWendy
2014-03-02 22:28 - 2014-03-06 22:28 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForWendy.job
2014-03-02 21:28 - 2013-12-18 22:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-03-02 21:27 - 2014-03-02 21:27 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-02 21:27 - 2013-12-18 22:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-03-02 21:27 - 2013-12-18 22:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-03-02 21:27 - 2013-12-18 22:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-02-28 15:22 - 2014-02-28 15:22 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Skype
2014-02-22 10:57 - 2014-02-22 10:58 - 00443344 _____ (Installer Technology Co) C:\Users\Wendy\Downloads\Setup_ODM.exe
2014-02-18 17:54 - 2014-02-18 17:55 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-18 17:54 - 2014-02-18 17:55 - 00000000 ____D () C:\Program Files\iTunes
2014-02-18 17:54 - 2014-02-18 17:55 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-18 17:54 - 2014-02-18 17:54 - 00000000 ____D () C:\Program Files\iPod
2014-02-14 04:07 - 2013-12-21 05:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-14 04:07 - 2013-12-21 04:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-14 04:06 - 2014-02-06 08:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-14 04:06 - 2014-02-06 07:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-14 04:06 - 2014-02-06 07:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-14 04:06 - 2014-02-06 07:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-14 04:06 - 2014-02-06 07:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-14 04:06 - 2014-02-06 07:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-14 04:06 - 2014-02-06 06:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-14 04:06 - 2014-02-06 06:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-14 04:06 - 2014-02-06 06:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-14 04:06 - 2014-02-06 06:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-14 04:06 - 2014-02-06 06:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-14 04:06 - 2014-02-06 06:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-14 04:06 - 2014-02-06 06:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-14 04:06 - 2014-02-06 06:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-14 04:06 - 2014-02-06 06:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-14 04:06 - 2014-02-06 06:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-14 04:06 - 2014-02-06 06:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-14 04:06 - 2014-02-06 06:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-14 04:06 - 2014-02-06 06:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-14 04:06 - 2014-02-06 05:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-14 04:06 - 2014-02-06 05:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-14 04:06 - 2014-02-06 05:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-14 04:06 - 2014-02-06 05:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-14 04:06 - 2014-02-06 05:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-14 04:06 - 2014-02-06 05:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-14 04:06 - 2014-02-06 05:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-14 04:06 - 2014-02-06 05:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-14 04:06 - 2014-02-06 05:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-14 04:06 - 2014-02-06 05:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-14 04:06 - 2014-02-06 05:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-14 04:06 - 2014-02-06 05:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-14 04:06 - 2014-02-06 05:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-14 04:06 - 2014-02-06 05:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-14 04:06 - 2014-02-06 05:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-14 04:06 - 2014-02-06 04:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-14 04:06 - 2014-02-06 04:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-14 04:06 - 2014-02-06 04:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-14 04:06 - 2014-02-06 04:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-14 04:06 - 2014-02-06 04:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-13 12:28 - 2013-12-31 19:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-13 12:28 - 2013-12-31 19:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-13 12:28 - 2013-12-05 22:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-13 12:28 - 2013-12-05 22:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-13 12:28 - 2013-12-05 22:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-13 12:28 - 2013-12-05 22:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-13 12:28 - 2013-12-03 22:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-13 12:28 - 2013-12-03 22:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-13 12:28 - 2013-12-03 22:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-13 12:28 - 2013-12-03 22:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-13 12:28 - 2013-12-03 21:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-13 12:27 - 2013-12-24 19:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-13 12:27 - 2013-12-24 18:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-13 12:27 - 2013-11-26 04:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-13 12:27 - 2013-11-22 18:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\fgejccepmcmjgjjcdafbldiancceehch
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\AllTubeNoAdds

==================== One Month Modified Files and Folders =======

2014-03-10 17:21 - 2014-03-09 20:04 - 00017448 _____ () C:\Users\Wendy\Desktop\FRST.txt
2014-03-10 17:20 - 2014-03-09 15:56 - 00000000 ____D () C:\FRST
2014-03-10 17:19 - 2012-02-19 11:45 - 01182891 _____ () C:\Windows\WindowsUpdate.log
2014-03-10 17:16 - 2012-07-22 21:51 - 00000000 ___RD () C:\Users\Wendy\Dropbox
2014-03-10 17:16 - 2012-06-23 21:08 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Dropbox
2014-03-10 17:16 - 2012-02-19 01:32 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Skype
2014-03-10 17:15 - 2014-02-05 16:35 - 00000428 ____H () C:\Windows\Tasks\WS.Enabler-S-71009536.job
2014-03-10 17:15 - 2014-02-05 16:35 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-03-10 17:15 - 2014-01-12 16:02 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-10 17:15 - 2013-05-26 08:58 - 00003706 _____ () C:\Windows\setupact.log
2014-03-10 17:15 - 2013-02-24 10:27 - 00000008 __RSH () C:\Users\Wendy\ntuser.pol
2014-03-10 17:15 - 2012-02-19 11:46 - 00000000 ____D () C:\Users\Wendy
2014-03-10 17:15 - 2011-11-08 22:35 - 00000000 ____D () C:\ProgramData\PDFC
2014-03-10 17:15 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-10 17:13 - 2013-04-29 18:55 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-10 17:12 - 2014-01-12 16:02 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-10 17:12 - 2009-07-13 23:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-03-10 17:05 - 2012-02-22 21:02 - 00000000 ____D () C:\Users\Wendy\AppData\Local\CrashDumps
2014-03-10 00:52 - 2012-02-18 22:47 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6EE1D7B0-A7B9-4C07-8946-C7619DFE31C3}
2014-03-09 22:00 - 2012-04-22 21:43 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-03-09 22:00 - 2012-02-19 23:00 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-03-09 20:24 - 2009-07-14 00:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-09 20:24 - 2009-07-14 00:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-09 20:07 - 2014-03-09 20:07 - 00000000 ____D () C:\Windows\Minidump
2014-03-09 20:07 - 2011-11-09 00:49 - 00293831 ____N () C:\Windows\Minidump\030914-16957-01.dmp
2014-03-09 19:43 - 2014-03-09 19:43 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Wendy\Desktop\tdsskiller.exe
2014-03-09 19:39 - 2014-03-09 19:39 - 00141159 _____ () C:\Users\Wendy\Desktop\JRT.txt
2014-03-09 19:17 - 2014-03-09 19:17 - 00000000 ____D () C:\Windows\ERUNT
2014-03-09 19:16 - 2014-03-09 19:16 - 01037734 _____ (Thisisu) C:\Users\Wendy\Desktop\JRT.exe
2014-03-09 19:10 - 2014-03-09 19:10 - 00006840 _____ () C:\Users\Wendy\Desktop\AdwCleaner[S0].txt
2014-03-09 19:09 - 2013-08-18 12:50 - 00214136 _____ () C:\Windows\PFRO.log
2014-03-09 19:07 - 2014-03-09 19:07 - 00000000 __SHD () C:\found.000
2014-03-09 19:04 - 2014-03-09 18:59 - 00000000 ____D () C:\AdwCleaner
2014-03-09 19:02 - 2014-02-05 16:34 - 00000000 ____D () C:\ProgramData\8360cf0e318ba6db
2014-03-09 18:46 - 2014-03-09 18:46 - 01244192 _____ () C:\Users\Wendy\Desktop\adwcleaner.exe
2014-03-09 16:34 - 2012-02-19 11:46 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Macromedia
2014-03-09 16:05 - 2009-07-14 01:13 - 00782470 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-09 16:04 - 2014-03-09 16:04 - 00016384 ___SH () C:\Users\Wendy\Desktop\Thumbs.db
2014-03-09 16:01 - 2014-03-08 17:03 - 00000000 ___RD () C:\Users\Wendy\Desktop\PC Fix
2014-03-09 15:51 - 2014-03-09 15:51 - 02157056 _____ (Farbar) C:\Users\Wendy\Desktop\FRST64.exe
2014-03-08 17:22 - 2013-07-12 00:04 - 00000000 ____D () C:\Windows\pss
2014-03-08 17:22 - 2012-02-18 22:47 - 00000000 ___RD () C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-08 17:20 - 2012-02-25 21:35 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Deployment
2014-03-06 22:28 - 2014-03-02 22:28 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForWendy
2014-03-06 22:28 - 2014-03-02 22:28 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForWendy.job
2014-03-03 19:15 - 2009-07-14 01:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-03-03 13:56 - 2013-12-18 20:58 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Epson
2014-03-03 13:55 - 2012-02-26 13:44 - 00000000 ___RD () C:\Users\Wendy\Desktop\Scanning a Doc to email
2014-03-02 21:28 - 2013-12-15 16:53 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-02 21:27 - 2014-03-02 21:27 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-02 21:27 - 2013-04-20 04:16 - 00000000 ____D () C:\Program Files (x86)\Java
2014-02-28 15:22 - 2014-02-28 15:22 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Skype
2014-02-28 15:22 - 2012-02-19 01:32 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-02-28 15:22 - 2011-11-08 22:17 - 00000000 ____D () C:\ProgramData\Skype
2014-02-27 04:02 - 2011-02-11 13:15 - 00774592 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-23 19:38 - 2013-07-17 14:56 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\ArcSoft
2014-02-22 10:58 - 2014-02-22 10:57 - 00443344 _____ (Installer Technology Co) C:\Users\Wendy\Downloads\Setup_ODM.exe
2014-02-20 22:51 - 2012-02-19 00:49 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Windows Live
2014-02-20 22:39 - 2013-04-29 18:55 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-20 22:39 - 2013-04-29 18:55 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-20 22:39 - 2013-04-29 18:55 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-18 17:55 - 2014-02-18 17:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-18 17:55 - 2014-02-18 17:54 - 00000000 ____D () C:\Program Files\iTunes
2014-02-18 17:55 - 2014-02-18 17:54 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-18 17:54 - 2014-02-18 17:54 - 00000000 ____D () C:\Program Files\iPod
2014-02-18 17:49 - 2012-02-19 14:07 - 00000000 ____D () C:\ProgramData\Apple
2014-02-18 17:40 - 2013-12-18 20:54 - 00000000 ____D () C:\Program Files (x86)\EPSON Software
2014-02-17 04:18 - 2013-08-11 03:09 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-17 04:00 - 2012-02-19 11:39 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-15 15:35 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\rescache
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\fgejccepmcmjgjjcdafbldiancceehch
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\AllTubeNoAdds

Some content of TEMP:
====================
C:\Users\Wendy\AppData\Local\Temp\jn6d0luc.dll
C:\Users\Wendy\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\MediaImpressionCodec.exe
C:\Users\Wendy\AppData\Local\Temp\mediaimpression_2.0.24.1050_2.0.24.1127.exe
C:\Users\Wendy\AppData\Local\Temp\mediaimpression_2.0.24.1127_2.0.24.1216_update_all.exe
C:\Users\Wendy\AppData\Local\Temp\Quarantine.exe
C:\Users\Wendy\AppData\Local\Temp\setup.exe
C:\Users\Wendy\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Wendy\AppData\Local\Temp\sp64126.exe
C:\Users\Wendy\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Wendy\AppData\Local\Temp\y-bt4qqk.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-03-10 00:55

==================== End Of Log ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-03-2014
Ran by Wendy at 2014-03-10 17:21:57
Running from C:\Users\Wendy\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Microsoft Security Essentials (Disabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Disabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

==================== Installed Programs ======================

3100_3200_3300_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
3100_3200_3300trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
3200 (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
802.11n Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 3.02.03.0 - Ralink)
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.)
AIO_CDB_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
AllTubeNoAdds (HKLM-x32\...\{643CAF08-2DA3-3CF1-0842-64205CD6F435}) (Version: - AAllTuubaeNOAddss)
AMD Accelerated Video Transcoding (Version: 12.5.100.21219 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Install Manager (HKLM\...\{5E03A267-415E-5383-FA8F-3CE4145663B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Fuel (Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
AMD Media Foundation Decoders (Version: 1.0.71219.1540 - Advanced Micro Devices, Inc.) Hidden
AMD Steady Video Plug-In (Version: 2.06.0000 - AMD) Hidden
AMD VISION Engine Control Center (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
Apple Application Support (HKLM-x32\...\{21FC2093-6E43-460B-B9B0-5F5AA35BBB0F}) (Version: 3.0 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}) (Version: 7.1.0.32 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft MediaImpression Codec (HKLM-x32\...\{CED1DF63-8B30-43F2-B9D9-75CCB2D40D96}) (Version: 1.0.0.0 - ArcSoft)
ArcSoft MediaImpression for Kodak (HKLM-x32\...\{C975D391-7BF6-44A0-A4FF-EDF3CFD88F68}) (Version: 2.0.24.1127 - ArcSoft)
Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Blio (HKLM-x32\...\{741006D1-7B2B-4E33-B2B0-831F282EEF64}) (Version: 2.2.8188 - K-NFB Reading Technology, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Bubble Wrap (HKLM-x32\...\{5BFFDDEB-AFD7-499F-BB13-7A6EAD927CDA}_is1) (Version: 1.0.0.0 - XM Asia Pacific Pte Ltd)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Catalina Savings Printer (HKLM-x32\...\{37331C16-3E97-4A20-80D8-BFB43AB0E2FB}) (Version: 1.0.0 - Catalina Marketing Corp)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.01 - Piriform)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden
Coupon Printer for Windows (HKLM-x32\...\Coupon Printer for Windows5.0.0.4) (Version: 5.0.0.4 - Coupons.com Incorporated) <==== ATTENTION
Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version: - )
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.0.4417 - CyberLink Corp.)
CyberLink YouCam (x32 Version: 3.5.0.4417 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.)
Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.1.1 - SEIKO EPSON CORPORATION)
EPSON Connect version 1.0 (HKLM-x32\...\EPSON Connect_is1) (Version: 1.0 - Epson America Inc.)
Epson Customer Participation (HKLM\...\{814FA673-A085-403C-9545-747FC1495069}) (Version: 1.4.0.0 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM-x32\...\{44F72193-F59C-4303-BAE8-E3E4BC1C122C}) (Version: 3.01.0003 - Seiko Epson Corporation)
Epson E-Web Print (HKLM-x32\...\{CEC98C2A-9ED5-49DA-9F3A-92434E0A4FA3}) (Version: 1.19.0000 - SEIKO EPSON CORPORATION)
Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.30.00 - SEIKO EPSON CORPORATION)
Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - )
EPSON Printer Finder (HKLM-x32\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON WF-2540 Series Printer Uninstall (HKLM\...\EPSON WF-2540 Series) (Version: - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION)
Facebook (HKLM-x32\...\{8AE50893-3A87-4439-9A57-942ED43F7189}) (Version: 1.1.0004 - Hewlett-Packard)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Farmscapes (x32 Version: 2.2.0.98 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 32.0.1700.107 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.4805.320 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hoyle Card Games (x32 Version: 2.2.0.95 - WildTangent) Hidden
HP Application Assistant (HKLM\...\{B34A07DD-C6F7-414A-AE63-01019482EAF0}) (Version: 1.0.393.3870 - Hewlett-Packard)
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Calendar (HKLM-x32\...\{2B38E0FA-D8A5-4EBF-A018-E3C1C8E7A2E2}) (Version: 5.1.4245.23508 - Hewlett-Packard)
HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden
HP Clock (HKLM-x32\...\{0EEC4E49-D4C2-4E23-87F2-B5641F1A09E4}) (Version: 5.1.4244.16367 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.8 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP LinkUp (HKLM-x32\...\{7E750542-55BC-4300-8B7B-AC2A762FB435}) (Version: 2.01.029 - Hewlett-Packard)
HP Magic Canvas (HKLM-x32\...\{DDFDC9D6-4220-41F8-BF9A-8E7512C4EF52}) (Version: 5.1.15.0 - Hewlett-Packard)
HP Magic Canvas Tutorials (HKLM-x32\...\{858FCB65-7C6D-4BA4-AD80-A3CB3744CE09}_is1) (Version: 5.0.0.3 - Hewlett-Packard)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.1.21091.0 - Hewlett-Packard Company)
HP MovieStore (x32 Version: 2.1.091 - Hewlett-Packard) Hidden
HP Notes (HKLM-x32\...\{86BAB08A-5E66-4C53-82E3-C1E91673C7CA}) (Version: 5.1.4274.30382 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (HKLM\...\{B61ED343-0B14-4241-999C-490CB1A20DA4}) (Version: 13.0 - HP)
HP RSS (HKLM-x32\...\{A35E58D6-2A0F-4051-983B-79342081338E}) (Version: 5.1.4301.21494 - Hewlett-Packard)
HP Setup (HKLM-x32\...\{F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}) (Version: 9.0.15076.3891 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.2.14901.3869 - Hewlett-Packard Company)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 11.00.0001 - Hewlett-Packard)
HP TouchSmart RecipeBox (HKLM-x32\...\{20714B53-FC73-4F9C-9687-49EB237D6FD7}) (Version: 3.0.3830.27730 - Hewlett-Packard)
HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.12.1.0 - Hewlett-Packard)
HP Weather (HKLM-x32\...\{8364E531-493B-4B05-8041-09D5CE38B975}) (Version: 5.1.4295.16450 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
ieSpell (HKLM-x32\...\ieSpell) (Version: 2.6.4 (build 573) - Red Egg Software)
iTunes (HKLM\...\{96B53CA8-5ABB-49D8-96F1-F6C0D73A76C6}) (Version: 11.1.4.62 - Apple Inc.)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
join.me (HKCU\...\JoinMe) (Version: 1.9.0.130 - LogMeIn, Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Keyboard Classroom 2.0 (HKLM-x32\...\{FDF04055-C441-403B-92DF-D4BD87556E05}_is1) (Version: - Keyboarding4Kids LLC)
Kobo (HKLM-x32\...\Kobo) (Version: 2.0.3 - Kobo Inc.)
KODAK Share Button App (HKLM-x32\...\{F5930CDE-2FF5-4A8D-9DBD-3177C816D4A9}) (Version: 4.05.0000.0000 - Eastman Kodak Company)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4507 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.4507 - CyberLink Corp.) Hidden
Letters from Nowhere 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Luxor HD (x32 Version: 2.2.0.98 - WildTangent) Hidden
Macromedia Dreamweaver MX (HKLM-x32\...\{8B4AB829-DFD3-436D-B808-D9733D76C590}) (Version: 6.0 - Macromedia)
Macromedia Extension Manager (HKLM-x32\...\{A5BA14E0-7384-11D4-BAE7-00409631A2C8}) (Version: 1.5 - Macromedia)
Macromedia Fireworks MX (HKLM-x32\...\{930B2432-43D4-11D5-9871-00C04F8EEB39}) (Version: 6 - Macromedia)
Macromedia Flash MX (HKLM-x32\...\{3BE480ED-E17A-431A-981C-5C2EDDBCD3BF}) (Version: 6 - Macromedia)
Macromedia FreeHand 10 (HKLM-x32\...\{4D826618-59C6-11D4-976E-00C04F8EEB39}) (Version: 10 - Macromedia)
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Metric Converter (HKLM-x32\...\{D0661463-50F7-4A1E-83CB-37CC590589AE}_is1) (Version: 1.0.0.0 - XM Asia Pacific Pte Ltd)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 1.1.500.0 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (Version: 1.1.500.0 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Network64 (Version: 130.0.572.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
OpenOffice.org 3.4.1 (HKLM-x32\...\{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}) (Version: 3.41.9593 - Apache Software Foundation)
opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.65 - PDF Complete, Inc)
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Playfire (HKLM-x32\...\{c83da516-5f71-430b-896a-c080a5761317}) (Version: 0.0.50.0 - Playfire)
Playfire (x32 Version: 0.0.50.0 - Playfire) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.5705 - CyberLink Corp.)
Power2Go (x32 Version: 6.1.5705 - CyberLink Corp.) Hidden
PressReader (HKLM-x32\...\{912CED74-88D3-4C5B-ACB0-132318649765}) (Version: 5.11.0721.0 - NewspaperDirect Inc.)
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6456 - Realtek Semiconductor Corp.)
Recovery Manager (x32 Version: 5.5.0.4424 - CyberLink Corp.) Hidden
Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard)
RoboForm 7-7-2 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-7-2 - Siber Systems)
RollerCoaster Tycoon 3: Platinum (x32 Version: 2.2.0.98 - WildTangent) Hidden
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
ShadowExplorer 0.9 (HKLM-x32\...\ShadowExplorer_is1) (Version: 0.9.462.0 - ShadowExplorer.com)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
Shutterfly Express Uploader (HKLM-x32\...\com.Shutterfly.ExpressUploader) (Version: 1.1.0.0 - Shutterfly, Inc.)
Shutterfly Express Uploader (x32 Version: 1.1.0 - Shutterfly, Inc.) Hidden
Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.0.14735.1561 - Microsoft Corporation)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software Updater (HKLM-x32\...\{6DFBE8A2-CDBF-453E-B34C-32F202FCEE4C}) (Version: 4.2.1 - SEIKO EPSON CORPORATION) <==== ATTENTION
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Speckie (HKLM\...\{36B03F5E-5F9A-4C54-B255-B897B948FD06}) (Version: 2.4.8 - Versoworks)
Spot (HKLM-x32\...\{3D171340-B528-42E0-92E4-BDA7AEEF6F32}_is1) (Version: 1.0.0.0 - XM Asia Pacific Pte Ltd)
Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab CYRI (64-bit) (HKLM\...\{15AD6738-23E8-4AE6-93E9-434E717EECB2}) (Version: 4.5.1.0 - Husdawg, LLC)
Tap Tap Bear (HKLM-x32\...\{A393CDFF-BEB8-48EA-990D-2EB35B311D23}_is1) (Version: 1.0.0.0 - XM Asia Pacific Pte Ltd)
The Treasures of Mystery Island: The Ghost Ship (x32 Version: 2.2.0.98 - WildTangent) Hidden
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
TSHostedAppLauncher (x32 Version: 5.1.15.0 - Hewlett-Packard) Hidden
UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
VUDU To Go (HKLM-x32\...\com.vudu.air.Downloader) (Version: 2.0.9 - Vudu)
VUDU To Go (x32 Version: 2.0.9 - Vudu) Hidden
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
WildTangent Games App (HP Games) (x32 Version: 4.0.5.32 - WildTangent) Hidden
Windows Driver Package - Eastman Kodak KODAK Digital Camera (01/29/2010 1.4.1.0) (HKLM\...\3D970B9F930E7AAE23C06D39A1AC98548C90B442) (Version: 01/29/2010 1.4.1.0 - Eastman Kodak)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
WS.Enabler (HKLM-x32\...\S-71009536) (Version: 1.2.0.1066 - PremiumSoft) <==== ATTENTION
WS.Supporter 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{1a34a8e0}) (Version: - Verified Publisher) <==== ATTENTION
Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version: - )
YNAB 4 version 4.3.75 (HKLM-x32\...\com.ynab.YNAB4.LiveCaptive_is1) (Version: 4.3.75 - YouNeedABudget.com)
Zinio Reader 4 (HKLM-x32\...\ZinioReader4) (Version: 4.2.4164 - Zinio LLC)
Zinio Reader 4 (x32 Version: 4.2.4164 - Zinio LLC) Hidden
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden

==================== Restore Points =========================

09-03-2014 21:04:37 Scheduled Checkpoint

==================== Hosts content: ==========================

2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {01C72626-4921-4C09-B603-5210D447ECC1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12] (Google Inc.)
Task: {05891DCA-4FD9-4FB7-B565-F663A29ACD04} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {157D87FB-04A1-4D02-9569-375D0776CE31} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform....NICMJNDJCMKJBJ"
Task: {492A72E1-CD30-43CC-8A71-2A51C64DB7F2} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => c:\Program Files\Microsoft Device Center\devicecenter.exe [2012-06-26] (Microsoft)
Task: {5C458BC5-5EE2-4667-A5A2-2384F81618B7} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Device Center\ipoint.exe [2012-06-26] (Microsoft Corporation)
Task: {683AF5FB-9F5A-42A2-9FA3-456313120D46} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {7930BAA9-44A0-4A07-9A00-351DE3BF31C5} - System32\Tasks\WS.Enabler-S-71009536 => c:\programdata\setapp\ws.enabler\WS.Enabler.exe [2014-02-05] () <==== ATTENTION
Task: {92BA3BC3-3B6F-4ABA-9216-D395AB4A7B18} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12] (Google Inc.)
Task: {9346CFF9-C158-4BDF-B1D8-630E39E48069} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-08-17] (CyberLink)
Task: {954D2280-45F7-4CA4-991D-482A58AC3BAD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {A0D914CA-30E5-418A-AFE8-857927273403} - System32\Tasks\HPCeeScheduleForWendy => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {C1387412-C230-4583-99F6-7CB08199F135} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-04-23] (Piriform Ltd)
Task: {C5283EAF-C9CF-4CEE-9897-065BB79553FA} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Device Center\itype.exe [2012-06-26] (Microsoft Corporation)
Task: {C8F2DA7C-7621-401F-ABBC-C665AE5BAF0D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-02-10] (Hewlett-Packard)
Task: {D3060D99-0C1B-4395-B7FB-37384E199D9A} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2012-02-21] (Siber Systems)
Task: {DCBFE6F4-A52C-4508-854E-8C045B6F5188} - System32\Tasks\{10EF5062-FADE-4238-95E4-4EA61663B88F}-Kodak Share Button App Camera detect => C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe [2012-10-11] (Eastman Kodak Company)
Task: {E4CA150D-7900-4935-9A08-8C1CFB5C1D62} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20] (Adobe Systems Incorporated)
Task: {E9492205-18DA-43AB-80DB-995FBFC536D1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-12-12] (Hewlett-Packard Company)
Task: {FD4908E0-49BC-4A6E-9711-C677A629462A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-02-10] (Hewlett-Packard)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForWendy.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\WS.Enabler-S-71009536.job => c:\programdata\setapp\ws.enabler\WS.Enabler.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2012-02-26 13:39 - 2009-11-05 09:40 - 00085504 _____ () C:\Windows\System32\cpwmon64.dll
2012-12-19 16:32 - 2012-12-19 16:32 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2014-02-05 16:35 - 2014-02-05 16:35 - 00729600 _____ () c:\programdata\setapp\ws.enabler\WS.Enabler.exe
2012-12-19 16:32 - 2012-12-19 16:32 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-10-18 19:55 - 2013-10-18 19:55 - 25100288 _____ () C:\Users\Wendy\AppData\Roaming\Dropbox\bin\libcef.dll
2012-08-10 16:51 - 2012-08-10 16:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2009-07-13 17:03 - 2009-07-13 21:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\Temp:E05694F3

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\09932864.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\37808555.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\09932864.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\37808555.sys => ""="Driver"

==================== Disabled items from MSCONFIG ==============

MSCONFIG\startupfolder: C:^Users^Wendy^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^CurseClientStartup.ccip => C:\Windows\pss\CurseClientStartup.ccip.Startup

==================== Faulty Device Manager Devices =============

Name: Photosmart 3200 series
Description: Photosmart 3200 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Photosmart 3200 series
Description: Photosmart 3200 series
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/10/2014 05:21:10 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)
Description: The performance counter name string value in the registry is not formatted correctly. The malformed string is 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据. The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values.

Error: (03/10/2014 05:04:55 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0x1844
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (03/10/2014 03:58:21 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0x188c
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (03/09/2014 08:21:46 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)
Description: The performance counter name string value in the registry is not formatted correctly. The malformed string is 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据. The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values.

Error: (03/09/2014 08:20:37 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0xe2c
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (03/09/2014 08:15:41 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0x14c0
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (03/09/2014 08:12:27 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)
Description: The performance counter name string value in the registry is not formatted correctly. The malformed string is 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据. The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values.

Error: (03/09/2014 08:08:37 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0x14f8
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3

Error: (03/09/2014 07:50:47 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)
Description: The performance counter name string value in the registry is not formatted correctly. The malformed string is 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据. The first DWORD in the Data section contains the index value to the malformed string while the second and third DWORDs in the Data section contain the last valid index values.

Error: (03/09/2014 07:44:35 PM) (Source: Application Error) (User: )
Description: Faulting application name: iexplore.exe, version: 11.0.9600.16518, time stamp: 0x52f34819
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc0000005
Fault offset: 0x000000000005339d
Faulting process id: 0xc88
Faulting application start time: 0xiexplore.exe0
Faulting application path: iexplore.exe1
Faulting module path: iexplore.exe2
Report Id: iexplore.exe3


System errors:
=============
Error: (03/10/2014 04:18:25 AM) (Source: Service Control Manager) (User: )
Description: The Adobe Flash Player Update Service service failed to start due to the following error:
%%1053

Error: (03/10/2014 04:18:24 AM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Adobe Flash Player Update Service service to connect.

Error: (03/09/2014 08:07:43 PM) (Source: BugCheck) (User: )
Description: 0x1000007e (0xffffffffc0000006, 0xfffff88000d8d4fe, 0xfffff880029f26b8, 0xfffff880029f1f10)C:\Windows\Minidump\030914-16957-01.dmp030914-16957-01

Error: (03/09/2014 08:07:42 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 8:06:58 PM on ‎3/‎9/‎2014 was unexpected.

Error: (03/09/2014 08:05:03 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.


Microsoft Office Sessions:
=========================
Error: (03/10/2014 05:21:10 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)
Description: 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据1600000000AC5E0000AD5E0000600B0000

Error: (03/10/2014 05:04:55 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339d184401cf3ca4621ce96cC:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dlla0a935a6-a897-11e3-b83b-047d7b09fc67

Error: (03/10/2014 03:58:21 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339d188c01cf3c9b1594647fC:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dll541011e0-a88e-11e3-b83b-047d7b09fc67

Error: (03/09/2014 08:21:46 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)
Description: 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据1600000000AC5E0000AD5E0000600B0000

Error: (03/09/2014 08:20:37 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339de2c01cf3bf68eb77656C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dllcd30b78d-a7e9-11e3-b83b-047d7b09fc67

Error: (03/09/2014 08:15:41 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339d14c001cf3bf5debf1888C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dll1d254ebd-a7e9-11e3-96dc-047d7b09fc67

Error: (03/09/2014 08:12:27 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)
Description: 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据1600000000AC5E0000AD5E0000600B0000

Error: (03/09/2014 08:08:37 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339d14f801cf3bf4e13b40f6C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dll2007d257-a7e8-11e3-96dc-047d7b09fc67

Error: (03/09/2014 07:50:47 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)
Description: 㼩⹢慌挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰱⱥ⥦㭽朊慢彲瘮㵤畦据楴湯戨挬搬攬昬本笩晩ℨ⥣桴潲⁷牅潲⡲椢⤢瘻牡栠ℽ昡洬⠽ⰰ执牡⹟摷⠩⥢活籼戨牛嵤洽渽睥朠慢彲漮⡤⥢㬩㵤⹭摡⡤ⱣⱤⱥⱦ⥧椻⡦⹤⥧敲畴湲搠攻砽⡤㬩⹤㵧㭥⹥牳㵣㭢⹥慇搽戻愮摤癅湥䱴獩整敮㽲⹢摡䕤敶瑮楌瑳湥牥挨琮卯牴湩⡧Ⱙⱥ⥨戺愮瑴捡䕨敶瑮礨⡤⹣潴瑓楲杮⤨Ⱙ⥥琻⭤㬫敲畴湲搠㭽摸昽湵瑣潩⡮笩慶⁲㵢摺挬朽㽤畦据楴湯搨笩敲畴湲戠挮污⡬⹣牳Ᵽ⹣慇搬紩昺湵瑣潩⡮⥤摻戽挮污⡬⹣牳Ᵽ⹣慇搬㬩晩ℨ⥤敲畴湲搠㭽敲畴湲挠㭽朊慢彲䄮㵤畦据楴湯戨笩晩⠨ⰰ执牡⹟摤⠩⥢籼戡籼⹢⥡敲畴湲ㄡ瘻牡挠戽献捲椻⡦〨本慢彲欮⥤挨⤩敲畴湲挠昮⡢⥢瘻牡搠戽琮灹ⱥ㵥⹢㭧⹣敲潭敶癅湥䱴獩整敮㽲⹣敲潭敶癅湥䱴獩整敮⡲Ɽⱥ⹢⥢挺搮瑥捡䕨敶瑮☦⹣敤慴档癅湥⡴摹搨Ⱙ⥥琻ⵤ㬭搨⠽ⰰ执牡⹟摷⠩⥣㼩⠨ⰰ执牡⹟摱⠩Ɽ⥢〬㴽⹤♢⠦⹤牳㵣畮汬挬牛嵤渽汵⥬㨩〨本慢彲渮⥤戨㬩敲畴湲〡㭽摹昽湵瑣潩⡮⥢牻瑥牵⁢湩猠㽤摳扛㩝摳扛㵝漢≮戫㭽䌊㵤畦据楴湯戨挬搬攬笩慶⁲㵦㬱晩戨⠽ⰰ执牡⹟摷⠩⥢椩⡦㵣⹢孡⹣潴瑓楲杮⤨⥝潦⡲㵣〨本慢彲瘮⥡挨Ⱙ㵢㬰㱢⹣敬杮桴戻⬫笩慶⁲㵧季嵢朻☦⹧㵢搽☦朡愮☦昨㴦ㄡ㴡䈽⡤Ⱨ⥥紩敲畴湲䈠潯敬湡昨紩䈻㵤畦据楴湯戨挬笩慶⁲㵤⹢慇攬戽搮籼⹢牳㭣⹢扩☦〨本慢彲䄮⥤戨㬩敲畴湲搠挮污⡬ⱥ⥣㭽稊㵤畦据楴湯戨挬笩晩戨愮爩瑥牵Ⅾ㬰晩ℨ摧笩慶⁲㵤籣⡼ⰰ执牡⹟⥎∨楷摮睯攮敶瑮⤢攬渽睥朠慢彲椮⡤Ɽ桴獩Ⱙ㵦〡椻⡦⠡㸰⹤敫䍹摯籥發楯⁤ℰ搽爮瑥牵噮污敵⤩瑻笺慶⁲㵧ㄡ椻⡦㴰搽欮祥潃敤琩祲摻欮祥潃敤ⴽ㬱牢慥絴慣捴⡨⥨杻ℽ細晩木籼潶摩〠㴽⹤敲畴湲慖畬⥥⹤敲畴湲慖畬㵥〡摽嬽㭝潦⡲㵧⹥㭢㭧㵧⹧慰敲瑮潎敤搩瀮獵⡨⥧昻牯瘨牡朠戽琮灹ⱥ㵭⹤敬杮桴ㄭ℻⹥♧〦㴼㭭⵭⤭⹥㵢孤嵭昬㴦摃搨浛ⱝⱧ〡攬㬩潦⡲㵭㬰攡朮☦㱭⹤敬杮桴活⬫攩戮搽浛ⱝ♦䌽⡤孤嵭本ℬⰱ⥥牽瑥牵給敲畴湲䈠⡤Ɫ敮⁷执牡⹟摩挨琬楨⥳紩※执牡⹟摷昽湵瑣潩⡮⥢扻戽牛嵤爻瑥牵⁢湩瑳湡散景朠慢彲漮㽤㩢畮汬㭽摄∽彟汣獯牵彥癥湥獴晟彮⬢ㄨ㥅䴪瑡⹨慲摮浯⤨㸾〾㬩执牡⹟摵昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慦⠩⥢房戺䑛嵤籼戨䑛嵤昽湵瑣潩⡮⥣牻瑥牵⹢慨摮敬癅湥⡴⥣⥽㭽ਊ捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻执牡⹟摅昽湵瑣潩⡮Ɫ⥣牻瑥牵畦据楴湯⤨瑻祲牻瑥牵⹢灡汰⡹Ᵽ牡畧敭瑮⥳捽瑡档搨笩〨本慢彲䔮⠩⥤絽㭽执牡⹟摇昽湵瑣潩⡮ⱢⱣ⥤摻⠽ⰰ执牡⹟摅⠩Ɽ潶摩〠㬩〨本慢彲倮⠩ⱢⱣⱤ潶摩〠瘬楯⁤⤰⠻ⰰ执牡⹟摆⠩Ɫ⥣㭽朊慢彲䘮㵤畦据楴湯戨挬笩晩戨椠獮慴据潥⁦楷摮睯䔮敬敭瑮笩慶⁲㵤〨本慢彲䠮⠩执牡⹟ⱆ攢≱⸩⡓Ɫ⥣椻⡦⥤晩木慢彲䨮☦⁤湩瑳湡散景眠湩潤⹷潍獵䕥敶瑮☦⹢楤灳瑡档癅湥⥴登牡攠眽湩潤⹷潤畣敭瑮挮敲瑡䕥敶瑮∨潍獵䕥敶瑮⤢攻椮楮䵴畯敳癅湥⡴⹤祴数ℬⰰ〡搬瘮敩ⱷ⹤敤慴汩搬献牣敥塮搬献牣敥奮搬挮楬湥塴搬挮楬湥奴搬挮牴䭬祥搬愮瑬敋ⱹ⹤桳晩䭴祥搬洮瑥䭡祥搬戮瑵潴Ɱ⹤敲慬整呤牡敧⥴戻搮獩慰捴䕨敶瑮攨紩汥敳戠搮獩慰捴䕨敶瑮☦⹢楤灳瑡档癅湥⡴⥤絽਻紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡䰠㭤慶⁲摈䠻㵤畦据楴湯戨挬搬攬昬笩晩⠨ⰰ执牡⹟慥⠩⥣笩潦⡲慶⁲㵧㬰㱧⹣敬杮桴朻⬫䠩⡤Ɫ季嵧搬攬昬㬩敲畴湲渠汵絬㵤〨本慢彲甮⥤搨㬩敲畴湲〨本慢彲欮⥤戨㼩⹢托挨搬攬昬㨩〨本慢彲瘮⥤戨挬搬ℬⰰⱥ⥦㭽执牡⹟摉昽湵瑣潩⡮⥢瑻楨⹳㵆㭢桴獩伮笽絽⠻ⰰ执牡⹟⥳木慢彲䤮Ɽ执牡⹟慓㬩慶⁲摊嬽㭝执牡⹟摉瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摋琨楨ⱳⱢⱣⱤ⥥㭽执牡⹟摉瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦牻瑥牵摋琨楨ⱳⱢⱣⱤⱥ⥦㭽瘊牡䬠㵤畦据楴湯戨挬搬攬昬本笩〨本慢彲攮⥡搨簩⡼摊せ㵝Ɽ㵤摊㬩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫笩慶⁲㵭〨本慢彲倮⠩Ᵽ孤嵨攬籼⹢慨摮敬癅湥ⱴ籦ⅼⰱ籧扼䘮籼⥢椻⡦洡戩敲歡戻伮浛欮祥㵝絭敲畴湲戠㭽执牡⹟摉瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥牻瑥牵摌琨楨ⱳⱢⱣⱤ⥥㭽摌昽湵瑣潩⡮ⱢⱣⱤⱥⱦ⥧楻⡦〨本慢彲攮⥡搨⤩潦⡲慶⁲㵨㬰㱨⹤敬杮桴栻⬫䰩⡤ⱢⱣ孤嵨攬昬本㬩汥敳捻䠽⡤ⱣⱤ籥扼栮湡汤䕥敶瑮昬本籼⹢籆扼㬩晩ℨ⥣敲畴湲戠戻伮捛欮祥㵝絣敲畴湲戠㭽执牡⹟摍昽湵瑣潩⡮⥢⡻ⰰ执牡⹟捯⠩⹢ⱏ执牡⹟摁㬩⹢㵏絻㭽朠慢彲䤮⹤牰瑯瑯灹⹥㵇畦据楴湯⤨杻慢彲䤮⹤⹃⹇慣汬琨楨⥳⠻ⰰ执牡⹟摍⠩桴獩紩朻慢彲䤮⹤牰瑯瑯灹⹥慨摮敬癅湥㵴畦据楴湯⤨瑻牨睯䔠牲牯∨≪㬩㭽朊慢彲丮㵤畦据楴湯戨笩执牡⹟摉挮污⡬桴獩戬㬩桴獩樮㵡籢瑼楨絳⠻ⰰ执牡⹟⥳木慢彲丮Ɽ执牡⹟摉㬩执牡⹟摎瀮潲潴祴数戮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮戮挮污⡬桴獩戬挬搬攬紩਻执牡⹟摎瀮潲潴祴数䨮昽湵瑣潩⡮ⱢⱣⱤⱥ⥦楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨昬籼桴獩樮⥡搻朽慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦⠻ⰰ执牡⹟摆⠩Ɫ摏挨⤩爻瑥牵絤敲畴湲朠慢彲丮⹤⹃⹊慣汬琨楨ⱳⱢⱣⱤⱥ⥦㭽执牡⹟摎瀮潲潴祴数刮昽湵瑣潩⡮ⱢⱣⱤ⥥楻⡦⥤楻⡦昢湵瑣潩≮㴡祴数景搠琩牨睯渠睥吠灹䕥牲牯∨畆据楴湯攠灸捥整≤㬩㵤〨本慢彲䔮⥤搨琬楨⹳慪㬩㵤执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬㬩〨本慢彲䘮⥤戨伬⡤⥣㬩敲畴湲搠牽瑥牵执牡⹟摎䌮刮挮污⡬桴獩戬挬搬攬紩※慶⁲摏昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟慥⠩⥢⠿ⰰ执牡⹟慲⠩Ɫ摏㨩〨本慢彲渮⠩⥢房戺房琮卯牴湩⡧㨩絢਻执牡⹟㵑畦据楴湯戨笩执牡⹟摎挮污⡬桴獩㬩桴獩愮戽㭽〨本慢彲献⠩执牡⹟ⱑ执牡⹟摎㬩执牡⹟⹑牰瑯瑯灹⹥㵇畦据楴湯⤨瑻楨⹳㵡畮汬朻慢彲儮䌮䜮挮污⡬桴獩紩਻捽瑡档攨笩执牡⹟䑟浵䕰捸灥楴湯攨紩琊祲੻慶⁲摐昽湵瑣潩⡮笩桴獩䰮∽煥㬢桴獩戮琽楨⹳㵡畮汬琻楨⹳㵫㬰桴獩搮笽絽⠻ⰰ执牡⹟⥳倨Ɽ执牡⹟慔㬩摐瀮潲潴祴数䬮昽湵瑣潩⡮Ɫ⥣楻⡦朡慢彲䨮籼〨本慢彲䰮⠩⤹椩⡦⁣湩瑳湡散景䄠牲祡昩牯瘨牡搠椠⥣桴獩䬮戨挬摛⥝攻獬筥㵤〨本慢彲瀮⠩桴獩漮琬楨ⱳ⥢瘻牡攠琽楨⹳⭫㭣桴獩欮⬫戻献瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩Ⱒ⥥琻楨⹳孤嵥搽戻☦⹢摡䕤敶瑮楌瑳湥牥房愮摤癅湥䱴獩整敮⡲ⱣⱤㄡ㨩♢戦愮瑴捡䕨敶瑮房愮瑴捡䕨敶瑮∨湯⬢Ᵽ⥤⠺ⰰ执牡⹟⥅䔨牲牯∨恫⬢⥢紩㭽倊⹤牰瑯瑯灹⹥㵓畦据楴湯戨挬笩晩木慢彲䨮☦⠡ⰰ执牡⹟⥌㤨⤩敲畴湲渠汵㭬晩挨椠獮慴据潥⁦牁慲⥹登牡搠渽汵ⱬ㭥潦⡲⁥湩挠笩慶⁲㵦桴獩匮戨挬敛⥝昻☦搨昽紩敲畴湲搠摽渽汵㭬桴獩愮☦桴獩愮琮灹㵥挽☦桴獩戮㴽♢⠦㵤桴獩愮琬楨⹳㵡畮汬㬩晩攨戽朮瑥瑁牴扩瑵⡥搢瑡ⵡ煥摩⤢戩爮浥癯䅥瑴楲畢整∨慤慴攭楱≤Ⱙ攨琽楨⹳孤嵥㼩⹢敲潭敶癅湥䱴獩整敮㽲⹢敲潭敶癅湥䱴獩整敮⡲Ᵽⱥㄡ㨩⹢敤慴档癅湥♴戦搮瑥捡䕨敶瑮∨湯⬢Ᵽ⥥⠺ⰰ执牡⹟⥅䔨牲牯∨恬⬢⥢㬩敲畴湲搠㭽倠⹤牰瑯瑯灹⹥㵯畦据楴湯戨挬笩桴獩愮挽琻楨⹳㵢㭢⹣牰癥湥䑴晥畡瑬挿瀮敲敶瑮敄慦汵⡴㨩⹣敲畴湲慖畬㵥ㄡ㭽⠊ⰰ执牡⹟慑⠩执牡⹟ⱆ敮⁷摐㬩紊慣捴⡨⥥杻慢彲弮畄灭硅散瑰潩⡮⥥੽牴筹瘊牡堠㭤慶⁲摗瘻牡嘠㭤慶⁲摕瘻牡吠㭤慶⁲摓瘻牡儠㭤摑昽湵瑣潩⡮⥢登牡挠⠽ⰰ执牡⹟慣⠩⥢爻瑥牵≮牡慲≹㴽籣≼扯敪瑣㴢挽☦渢浵敢≲㴽祴数景戠氮湥瑧絨朻慢彲刮㵤畦据楴湯戨挬搬笩敲畴湲㈠㴾牡畧敭瑮⹳敬杮桴朿慢彲渮⹡汳捩⹥慣汬戨挬㨩执牡⹟慮献楬散挮污⡬ⱢⱣ⥤㭽摓⼽♛㸼✢⽝吻㵤✯术唻㵤∯术嘻㵤㸯术圻㵤㰯术堻㵤☯术਻执牡⹟摙昽湵瑣潩⡮⥢楻⡦匡⹤整瑳戨⤩敲畴湲戠ⴻℱ戽椮摮硥晏∨∦☩⠦㵢⹢敲汰捡⡥摘∬愦灭∻⤩ⴻℱ戽椮摮硥晏∨∼☩⠦㵢⹢敲汰捡⡥摗∬氦㭴⤢㬩ㄭ㴡⹢湩敤佸⡦㸢⤢☦戨戽爮灥慬散嘨Ɽ☢瑧∻⤩ⴻℱ戽椮摮硥晏✨✢☩⠦㵢⹢敲汰捡⡥摕∬焦潵㭴⤢㬩ㄭ㴡⹢湩敤佸⡦✢⤢☦戨戽爮灥慬散吨Ɽ☢㌣㬹⤢㬩敲畴湲戠㭽朊慢彲娮㵤畦据楴湯戨挬笩桴獩眮摩桴戽琻楨⹳敨杩瑨挽㭽执牡⹟摚瀮潲潴祴数␮昽湵瑣潩⡮笩敲畴湲渠睥朠慢彲娮⡤桴獩眮摩桴琬楨⹳敨杩瑨紩朻慢彲娮⹤牰瑯瑯灹⹥散汩昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨散汩琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨散汩琨楨⹳敨杩瑨㬩敲畴湲琠楨絳朻慢彲娮⹤牰瑯瑯灹⹥汦潯㵲畦据楴湯⤨瑻楨⹳楷瑤㵨慍桴昮潬牯琨楨⹳楷瑤⥨琻楨⹳敨杩瑨䴽瑡⹨汦潯⡲桴獩栮楥桧⥴爻瑥牵桴獩㭽执牡⹟摚瀮潲潴祴数爮畯摮昽湵瑣潩⡮笩桴獩眮摩桴䴽瑡⹨潲湵⡤桴獩眮摩桴㬩桴獩栮楥桧㵴慍桴爮畯摮琨楨⹳敨杩瑨㬩敲畴湲琠楨絳਻慶⁲搤␻㵤朡慢彲䨮籼执牡⹟♊㤦㴼执牡⹟扐朻慢彲愮㵥朡慢彲砮♢Ω执牡⹟籊杼慢彲䨮☦执牡⹟♊㤦㴼执牡⹟扐籼执牡⹟扸☦〨本慢彲䰮⠩ㄢ㤮ㄮ⤢朻慢彲戮㵥执牡⹟♊Ω〨本慢彲䰮⠩㤢⤢朻慢彲挮㵥执牡⹟籊杼慢彲眮籢杼慢彲礮㭢执牡⹟敤昽湵瑣潩⡮⥢扻戽挮慬獳慎敭爻瑥牵⡮ⰰ执牡⹟⥮戨☩戦洮瑡档⼨卜⼫⥧籼嵛㭽执牡⹟敦昽湵瑣潩⡮Ɫ⥣登牡搠⠽ⰰ执牡⹟敤⠩⥢攬⠽ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱昬搽氮湥瑧⭨⹥敬杮桴⠻ⰰ执牡⹟敥⠩Ɽ⥥戻挮慬獳慎敭搽樮楯⡮•⤢爻瑥牵⹤敬杮桴㴽給朻慢彲栮㵥畦据楴湯戨挬笩慶⁲㵤〨本慢彲搮⥥戨Ⱙ㵤〨本慢彲朮⥥搨⠬ⰰ执牡⹟摒⠩牡畧敭瑮ⱳ⤱㬩⹢汣獡乳浡㵥⹤潪湩∨∠紩朻慢彲攮㵥畦据楴湯戨挬笩潦⡲慶⁲㵤㬰㱤⹣敬杮桴搻⬫⠩ⰰ执牡⹟慵⠩Ɫ季嵤簩扼瀮獵⡨季嵤紩※执牡⹟敧昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慱⠩Ɫ畦据楴湯戨笩敲畴湲⠡ⰰ执牡⹟慵⠩Ᵽ⥢⥽㭽执牡⹟敩昽湵瑣潩⡮Ɫ⥣牻瑥牵⡮ⰰ执牡⹟慵⠩〨本慢彲搮⥥戨Ⱙ⥣㭽瘊牡爠㭥慶⁲敱瘻牡瀠㭥慶⁲敬瘻牡洠㭥慶⁲敪朻慢彲刮昽湵瑣潩⡮⥢牻瑥牵⡮ⰰ执牡⹟⥮戨㼩楷摮睯搮捯浵湥⹴敧䕴敬敭瑮祂摉戨㨩絢朻慢彲欮㵥畦据楴湯戨挬笩慶⁲㵤籣睼湩潤⹷潤畣敭瑮爻瑥牵⹤畱牥卹汥捥潴䅲汬☦⹤畱牥卹汥捥潴㽲⹤畱牥卹汥捥潴䅲汬∨∮戫㨩敪戨挬紩朻慢彲匮昽湵瑣潩⡮Ɫ⥣登牡搠挽籼楷摮睯搮捯浵湥ⱴ㵥畮汬搻焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯政搽焮敵祲敓敬瑣牯∨∮戫㨩㵥敪戨挬嬩崰爻瑥牵籥湼汵絬਻敪昽湵瑣潩⡮Ɫ⥣登牡搠攬昬本搻眽湩潤⹷潤畣敭瑮搻挽籼㭤晩搨焮敵祲敓敬瑣牯汁♬搦焮敵祲敓敬瑣牯☦⥢敲畴湲搠焮敵祲敓敬瑣牯汁⡬∢⠫㽢⸢⬢㩢∢⤩椻⡦♢搦朮瑥汅浥湥獴祂汃獡乳浡⥥登牡栠搽朮瑥汅浥湥獴祂汃獡乳浡⡥⥢爻瑥牵絨㵨⹤敧䕴敬敭瑮䉳呹条慎敭∨∪㬩晩戨笩㵧絻昻牯攨昽〽搻栽敛㭝⭥⤫登牡洠搽挮慬獳慎敭∻畦据1600000000AC5E0000AD5E0000600B0000

Error: (03/09/2014 07:44:35 PM) (Source: Application Error)(User: )
Description: iexplore.exe11.0.9600.1651852f34819ntdll.dll6.1.7601.18247521eaf24c0000005000000000005339dc8801cf3bf186c2e613C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SYSTEM32\ntdll.dllc4bf2867-a7e4-11e3-97e1-047d7b09fc67


CodeIntegrity Errors:
===================================
Date: 2013-06-04 16:51:21.872
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Common Files\ATI Technologies\Multimedia\AMDMFTDecoder_64.dll because the set of per-page image hashes could not be found on the system.

Date: 2012-11-23 21:50:47.299
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-23 21:50:47.222
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-23 21:50:27.507
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-23 21:50:27.409
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Percentage of memory in use: 47%
Total physical RAM: 3700.64 MB
Available physical RAM: 1947.54 MB
Total Pagefile: 7399.47 MB
Available Pagefile: 5325.94 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:914.53 GB) (Free:858.27 GB) NTFS
Drive d: (HP_RECOVERY) (Fixed) (Total:16.89 GB) (Free:2.11 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 38805571)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=915 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Edited by Thumperness, 10 March 2014 - 03:25 PM.

  • 0

#9
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

So I ran the fix and guess what happened. IE works now. LOL


Good to see that :) and that we have a full log to work with. There's something unusual in there I want to check out, so it will probably be the morning before I post further intructions. :thumbsup:
  • 0

#10
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts
Hello, we have some work to do, so let's get started. :)


Step 1: Uninstall a Program

Please uninstall the following program from your computer as it is a known to have adware included in it's software.

Coupon Printer for Windows


Step 2: FRST Fix

  • Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy.
  • Right-click in the open notepad and select Paste).
  • Save it on the desktop as fixlist.txt

Start
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
BHO-x32: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.dll No File
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2014-02-22 10:57 - 2014-02-22 10:58 - 00443344 _____ (Installer Technology Co) C:\Users\Wendy\Downloads\Setup_ODM.exe
Task: {7930BAA9-44A0-4A07-9A00-351DE3BF31C5} - System32\Tasks\WS.Enabler-S-71009536 => c:\programdata\setapp\ws.enabler\WS.Enabler.exe [2014-02-05] () <==== ATTENTION
Task: C:\Windows\Tasks\WS.Enabler-S-71009536.job => c:\programdata\setapp\ws.enabler\WS.Enabler.exe <==== ATTENTION
2014-02-05 16:35 - 2014-02-05 16:35 - 00729600 _____ () c:\programdata\setapp\ws.enabler\WS.Enabler.exe
AlternateDataStreams: C:\ProgramData\Temp:E05694F3
2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
End


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.


Run FRST and press the Fix button just once and wait. The tool will make a log on the desktop (Fixlog.txt) please post it in your next reply.


Step 3: Uninstall Internet Explorer


The log shows that your Internet Explorer is corrupted and needs to be replaced. Even though it is working now, the registry entries for it are corrupted and need to be replaced. Please follow the instructions below.

  • To remove it, go to Start >> Control Panel >> Programs and Features.
  • In the left column, click on " View Installed Updates"
  • Scroll down until you come to the blue subtitle "Microsoft Windows"
  • Under this category you will see "Internet Explorer 11" listed as an update.
  • Highlight it and choose Uninstall.
  • This definitely will take a while, so don't interrupt it until it's done.

Once the removal is complete, then please go to http://www.microsoft.com and select downloads, and then select Internet Explorer.


Step 4: Temporary File Cleaner


Download TFC by OldTimer to your desktop
  • Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. Let it run uninterrupted to completion.
  • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.


Step 5: FRST Scan


Finally, let's get a fresh FRST scan to make sure all the baddies are gone before we continue on.

Start FRST and press the scan button. Please post the resulting log.



Things I need to see in your next post:

FRST Fix Log

FRST Log

  • 0

Advertisements


#11
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-03-2014
Ran by Wendy at 2014-03-11 15:31:31 Run:2
Running from C:\Users\Wendy\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
() c:\programdata\setapp\ws.enabler\WS.Enabler.exe
BHO-x32: SNT - {462FC244-2ABD-FCA4-7037-2BAECA8A687E} - C:\Program Files (x86)\SNT\_GbYOA1J.dll No File
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
2014-02-22 10:57 - 2014-02-22 10:58 - 00443344 _____ (Installer Technology Co) C:\Users\Wendy\Downloads\Setup_ODM.exe
Task: {7930BAA9-44A0-4A07-9A00-351DE3BF31C5} - System32\Tasks\WS.Enabler-S-71009536 => c:\programdata\setapp\ws.enabler\WS.Enabler.exe [2014-02-05] () <==== ATTENTION
Task: C:\Windows\Tasks\WS.Enabler-S-71009536.job => c:\programdata\setapp\ws.enabler\WS.Enabler.exe <==== ATTENTION
2014-02-05 16:35 - 2014-02-05 16:35 - 00729600 _____ () c:\programdata\setapp\ws.enabler\WS.Enabler.exe
AlternateDataStreams: C:\ProgramData\Temp:E05694F3
2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
End
*****************

[3156] c:\programdata\setapp\ws.enabler\WS.Enabler.exe => Process closed successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{462FC244-2ABD-FCA4-7037-2BAECA8A687E} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{462FC244-2ABD-FCA4-7037-2BAECA8A687E} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Value deleted successfully.
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
C:\Users\Wendy\Downloads\Setup_ODM.exe => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7930BAA9-44A0-4A07-9A00-351DE3BF31C5} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7930BAA9-44A0-4A07-9A00-351DE3BF31C5} => Key deleted successfully.
C:\Windows\System32\Tasks\WS.Enabler-S-71009536 => Moved successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WS.Enabler-S-71009536 => Key deleted successfully.
C:\Windows\Tasks\WS.Enabler-S-71009536.job => Moved successfully.
c:\programdata\setapp\ws.enabler\WS.Enabler.exe => Moved successfully.
C:\ProgramData\Temp => ":E05694F3" ADS removed successfully.
C:\Windows\system32\Drivers\etc\hosts => Moved successfully.

==== End of Fixlog ====


-----------------------------------------------------------------------------------------------------------------------------------------------------



Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2014
Ran by Wendy (administrator) on WENDY-HP on 11-03-2014 16:31:47
Running from C:\Users\Wendy\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(www.shadowexplorer.com) C:\Program Files (x86)\ShadowExplorer\sesvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\KODAK Share Button App\Listener.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIUE.EXE
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Dropbox, Inc.) C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(ArcSoft, Inc.) C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\FAX Utility\FUFAXSTM.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\GCalService.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Calendar\Service\HPTouchSmartSyncCalReminderApp.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7461480 2011-09-08] (Realtek Semiconductor)
HKLM\...\Run: [hpsysdrv] - c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [IntelliType Pro] - c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] - c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [658424 2011-08-12] (PDF Complete Inc)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ArcSoft MediaImpression Monitor] - C:\Program Files (x86)\Kodak\MediaImpression\ArcMonitor.exe [80448 2010-12-15] (ArcSoft, Inc.)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2012-01-26] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [502912 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863360 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [RoboForm] - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [109296 2012-02-21] (Siber Systems)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [KGShareApp] - C:\Program Files (x86)\Kodak\KODAK Share Button App\KGShare_App.exe [394752 2012-10-11] (Eastman Kodak Company)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIIUE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20918432 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {c46af8e6-a1c2-11e2-a415-047d7b09fc67} - G:\7001TPain.exe
HKU\S-1-5-21-2648024842-566332332-2718937300-1001\...\MountPoints2: {f5f150a7-ea33-11e2-a65e-047d7b09fc67} - G:\KODAK_Camera_Setup_App.exe
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Wendy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?...U220DHP&pc=U220
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
SearchScopes: HKLM - {442E3BBA-1B43-4913-9040-037B42A662B1} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.co...w={searchTerms}
BHO: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.x64.dll ()
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: AllTubeNoAdds - {8CF420C1-5324-EC8D-BA65-47B740B6560B} - C:\ProgramData\AllTubeNoAdds\U3B.dll ()
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
Toolbar: HKCU - &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (Siber Systems Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM {AEA3991E-3109-4C98-989E-33994FEB1A91} http://content.syste...i64_4.5.1.0.cab
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)

Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

Chrome:
=======
CHR HomePage: hxxp://websearch.webisgreat.info/?pid=1810&r=2014/02/05&hid=7917110145827562517&lg=EN&cc=US&unqvl=48
CHR Extension: (Google Docs) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-12]
CHR Extension: (Skype Click to Call) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-27]
CHR Extension: (Google Wallet) - C:\Users\Wendy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-12]
CHR HKLM-x32\...\Chrome\Extension: [lfffjahnfbocnaooecgijfnbpcfekoik] - C:\ProgramData\adawaretb\shortcuts\chrome\adawaretb.crx [2014-01-12]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]

==================== Services (Whitelisted) =================

S2 1a34a8e0; C:\Program Files (x86)\WSSvc.dll [175952 2014-02-05] ()
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-12-19] (Advanced Micro Devices, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748640 2014-01-03] (Microsoft Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation)
R2 HPSLPSVC; C:\Users\Wendy\AppData\Local\Temp\7zS420F\hpslpsvc64.dll [1039360 2011-11-14] (Hewlett-Packard Co.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1128952 2011-08-12] (PDF Complete Inc)
R2 sesvc; C:\Program Files (x86)\ShadowExplorer\sesvc.exe [9216 2013-01-02] (www.shadowexplorer.com)

==================== Drivers (Whitelisted) ====================

R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-04-30] (GFI Software)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2012-10-14] (CACE Technologies, Inc.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-11 16:31 - 2014-03-11 16:31 - 00016819 _____ () C:\Users\Wendy\Desktop\FRST.txt
2014-03-11 16:02 - 2014-03-11 16:02 - 00448512 _____ (OldTimer Tools) C:\Users\Wendy\Desktop\TFC.exe
2014-03-11 15:48 - 2014-03-11 15:48 - 58082952 _____ (Microsoft Corporation) C:\Users\Wendy\Desktop\EIE11_EN-US_MCM_WIN764.EXE
2014-03-11 14:48 - 2014-03-11 14:49 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-11 14:48 - 2014-03-11 14:49 - 00000000 ____D () C:\Program Files\iTunes
2014-03-11 14:48 - 2014-03-11 14:49 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-11 14:48 - 2014-03-11 14:48 - 00000000 ____D () C:\Program Files\iPod
2014-03-11 14:36 - 2014-03-11 14:37 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-03-11 14:36 - 2014-03-11 14:36 - 00001847 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-03-10 19:13 - 2014-03-10 19:13 - 00000000 ____D () C:\Users\Wendy\AppData\Local\{2064DD90-F261-4688-86B7-9AC862875355}
2014-03-09 20:07 - 2014-03-09 20:07 - 00000000 ____D () C:\Windows\Minidump
2014-03-09 19:43 - 2014-03-09 19:43 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Wendy\Desktop\tdsskiller.exe
2014-03-09 19:17 - 2014-03-09 19:17 - 00000000 ____D () C:\Windows\ERUNT
2014-03-09 19:16 - 2014-03-09 19:16 - 01037734 _____ (Thisisu) C:\Users\Wendy\Desktop\JRT.exe
2014-03-09 19:07 - 2014-03-09 19:07 - 00000000 __SHD () C:\found.000
2014-03-09 18:59 - 2014-03-09 19:04 - 00000000 ____D () C:\AdwCleaner
2014-03-09 18:46 - 2014-03-09 18:46 - 01244192 _____ () C:\Users\Wendy\Desktop\adwcleaner.exe
2014-03-09 16:04 - 2014-03-09 16:04 - 00016384 ___SH () C:\Users\Wendy\Desktop\Thumbs.db
2014-03-09 15:56 - 2014-03-11 16:31 - 00000000 ____D () C:\FRST
2014-03-09 15:51 - 2014-03-09 15:51 - 02157056 _____ (Farbar) C:\Users\Wendy\Desktop\FRST64.exe
2014-03-08 17:03 - 2014-03-09 16:01 - 00000000 ___RD () C:\Users\Wendy\Desktop\PC Fix
2014-03-02 22:28 - 2014-03-10 21:28 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForWendy
2014-03-02 22:28 - 2014-03-10 21:28 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForWendy.job
2014-03-02 21:28 - 2013-12-18 22:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-03-02 21:27 - 2014-03-02 21:27 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-02 21:27 - 2013-12-18 22:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-03-02 21:27 - 2013-12-18 22:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-03-02 21:27 - 2013-12-18 22:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-02-28 15:22 - 2014-02-28 15:22 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Skype
2014-02-13 12:28 - 2013-12-31 19:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-13 12:28 - 2013-12-31 19:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-13 12:28 - 2013-12-05 22:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-13 12:28 - 2013-12-05 22:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-13 12:28 - 2013-12-05 22:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-13 12:28 - 2013-12-05 22:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-13 12:28 - 2013-12-03 22:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-13 12:28 - 2013-12-03 22:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-13 12:28 - 2013-12-03 22:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-13 12:28 - 2013-12-03 22:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-13 12:28 - 2013-12-03 22:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-13 12:28 - 2013-12-03 22:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-13 12:28 - 2013-12-03 22:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-13 12:28 - 2013-12-03 21:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-13 12:28 - 2013-12-03 21:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-13 12:27 - 2013-12-24 19:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-13 12:27 - 2013-12-24 18:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-13 12:27 - 2013-11-26 04:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-13 12:27 - 2013-11-22 18:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\fgejccepmcmjgjjcdafbldiancceehch
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\AllTubeNoAdds

==================== One Month Modified Files and Folders =======

2014-03-11 16:32 - 2014-03-11 16:31 - 00016819 _____ () C:\Users\Wendy\Desktop\FRST.txt
2014-03-11 16:31 - 2014-03-09 15:56 - 00000000 ____D () C:\FRST
2014-03-11 16:30 - 2012-07-22 21:51 - 00000000 ___RD () C:\Users\Wendy\Dropbox
2014-03-11 16:30 - 2012-06-23 21:08 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Dropbox
2014-03-11 16:30 - 2012-02-19 01:32 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Skype
2014-03-11 16:29 - 2014-01-12 16:02 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-11 16:29 - 2013-05-26 08:58 - 00003930 _____ () C:\Windows\setupact.log
2014-03-11 16:29 - 2011-11-08 22:35 - 00000000 ____D () C:\ProgramData\PDFC
2014-03-11 16:29 - 2009-07-14 01:08 - 00032550 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-03-11 16:29 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-11 16:28 - 2012-02-19 11:45 - 01258479 _____ () C:\Windows\WindowsUpdate.log
2014-03-11 16:13 - 2013-04-29 18:55 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-11 16:02 - 2014-03-11 16:02 - 00448512 _____ (OldTimer Tools) C:\Users\Wendy\Desktop\TFC.exe
2014-03-11 16:02 - 2009-07-14 00:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-11 16:02 - 2009-07-14 00:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-11 16:00 - 2012-02-18 22:47 - 00003926 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6EE1D7B0-A7B9-4C07-8946-C7619DFE31C3}
2014-03-11 15:55 - 2013-11-15 04:00 - 00021161 _____ () C:\Windows\IE11_main.log
2014-03-11 15:55 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-03-11 15:49 - 2014-01-12 16:02 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-11 15:48 - 2014-03-11 15:48 - 58082952 _____ (Microsoft Corporation) C:\Users\Wendy\Desktop\EIE11_EN-US_MCM_WIN764.EXE
2014-03-11 15:44 - 2014-01-12 16:02 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-11 15:44 - 2014-01-12 16:02 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-11 14:49 - 2014-03-11 14:48 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-11 14:49 - 2014-03-11 14:48 - 00000000 ____D () C:\Program Files\iTunes
2014-03-11 14:49 - 2014-03-11 14:48 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-11 14:48 - 2014-03-11 14:48 - 00000000 ____D () C:\Program Files\iPod
2014-03-11 14:37 - 2014-03-11 14:36 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-03-11 14:36 - 2014-03-11 14:36 - 00001847 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-03-10 21:28 - 2014-03-02 22:28 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForWendy
2014-03-10 21:28 - 2014-03-02 22:28 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForWendy.job
2014-03-10 19:16 - 2009-07-14 01:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-03-10 19:13 - 2014-03-10 19:13 - 00000000 ____D () C:\Users\Wendy\AppData\Local\{2064DD90-F261-4688-86B7-9AC862875355}
2014-03-10 17:15 - 2014-02-05 16:35 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-03-10 17:15 - 2013-02-24 10:27 - 00000008 __RSH () C:\Users\Wendy\ntuser.pol
2014-03-10 17:15 - 2012-02-19 11:46 - 00000000 ____D () C:\Users\Wendy
2014-03-10 17:12 - 2009-07-13 23:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-03-10 17:05 - 2012-02-22 21:02 - 00000000 ____D () C:\Users\Wendy\AppData\Local\CrashDumps
2014-03-09 22:00 - 2012-04-22 21:43 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-03-09 22:00 - 2012-02-19 23:00 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-03-09 20:07 - 2014-03-09 20:07 - 00000000 ____D () C:\Windows\Minidump
2014-03-09 20:07 - 2011-11-09 00:49 - 00293831 ____N () C:\Windows\Minidump\030914-16957-01.dmp
2014-03-09 19:43 - 2014-03-09 19:43 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Wendy\Desktop\tdsskiller.exe
2014-03-09 19:17 - 2014-03-09 19:17 - 00000000 ____D () C:\Windows\ERUNT
2014-03-09 19:16 - 2014-03-09 19:16 - 01037734 _____ (Thisisu) C:\Users\Wendy\Desktop\JRT.exe
2014-03-09 19:09 - 2013-08-18 12:50 - 00214136 _____ () C:\Windows\PFRO.log
2014-03-09 19:07 - 2014-03-09 19:07 - 00000000 __SHD () C:\found.000
2014-03-09 19:04 - 2014-03-09 18:59 - 00000000 ____D () C:\AdwCleaner
2014-03-09 19:02 - 2014-02-05 16:34 - 00000000 ____D () C:\ProgramData\8360cf0e318ba6db
2014-03-09 18:46 - 2014-03-09 18:46 - 01244192 _____ () C:\Users\Wendy\Desktop\adwcleaner.exe
2014-03-09 16:34 - 2012-02-19 11:46 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Macromedia
2014-03-09 16:05 - 2009-07-14 01:13 - 00782470 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-09 16:04 - 2014-03-09 16:04 - 00016384 ___SH () C:\Users\Wendy\Desktop\Thumbs.db
2014-03-09 16:01 - 2014-03-08 17:03 - 00000000 ___RD () C:\Users\Wendy\Desktop\PC Fix
2014-03-09 15:51 - 2014-03-09 15:51 - 02157056 _____ (Farbar) C:\Users\Wendy\Desktop\FRST64.exe
2014-03-08 17:22 - 2013-07-12 00:04 - 00000000 ____D () C:\Windows\pss
2014-03-08 17:22 - 2012-02-18 22:47 - 00000000 ___RD () C:\Users\Wendy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-08 17:20 - 2012-02-25 21:35 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Deployment
2014-03-03 13:56 - 2013-12-18 20:58 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\Epson
2014-03-03 13:55 - 2012-02-26 13:44 - 00000000 ___RD () C:\Users\Wendy\Desktop\Scanning a Doc to email
2014-03-02 21:28 - 2013-12-15 16:53 - 00000000 ____D () C:\ProgramData\Oracle
2014-03-02 21:27 - 2014-03-02 21:27 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-02 21:27 - 2013-04-20 04:16 - 00000000 ____D () C:\Program Files (x86)\Java
2014-02-28 15:22 - 2014-02-28 15:22 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Skype
2014-02-28 15:22 - 2012-02-19 01:32 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-02-28 15:22 - 2011-11-08 22:17 - 00000000 ____D () C:\ProgramData\Skype
2014-02-27 04:02 - 2011-02-11 13:15 - 00774592 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-23 19:38 - 2013-07-17 14:56 - 00000000 ____D () C:\Users\Wendy\AppData\Roaming\ArcSoft
2014-02-20 22:51 - 2012-02-19 00:49 - 00000000 ____D () C:\Users\Wendy\AppData\Local\Windows Live
2014-02-20 22:39 - 2013-04-29 18:55 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-20 22:39 - 2013-04-29 18:55 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-20 22:39 - 2013-04-29 18:55 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-18 17:49 - 2012-02-19 14:07 - 00000000 ____D () C:\ProgramData\Apple
2014-02-18 17:40 - 2013-12-18 20:54 - 00000000 ____D () C:\Program Files (x86)\EPSON Software
2014-02-17 04:18 - 2013-08-11 03:09 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-17 04:00 - 2012-02-19 11:39 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-15 15:35 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\rescache
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\fgejccepmcmjgjjcdafbldiancceehch
2014-02-12 17:30 - 2014-02-12 17:30 - 00000000 ____D () C:\ProgramData\AllTubeNoAdds

Some content of TEMP:
====================
C:\Users\Wendy\AppData\Local\Temp\jn6d0luc.dll
C:\Users\Wendy\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Wendy\AppData\Local\Temp\MediaImpressionCodec.exe
C:\Users\Wendy\AppData\Local\Temp\mediaimpression_2.0.24.1050_2.0.24.1127.exe
C:\Users\Wendy\AppData\Local\Temp\mediaimpression_2.0.24.1127_2.0.24.1216_update_all.exe
C:\Users\Wendy\AppData\Local\Temp\Quarantine.exe
C:\Users\Wendy\AppData\Local\Temp\setup.exe
C:\Users\Wendy\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Wendy\AppData\Local\Temp\sp64126.exe
C:\Users\Wendy\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Wendy\AppData\Local\Temp\y-bt4qqk.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-03-10 00:55

==================== End Of Log ============================
  • 0

#12
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts
Looking good, let's continue. :)

Please disable your antivirus for the duration of my instructions. Don't forget to re-enable them after you have completed the steps.

Step 1: Reset Chrome Homepage


Changing Chrome's Homepage

We need to change your homepage in Chrome. Please follow the instructions below.

  • Open Chrome and type this in the address bar: chrome:settings
  • When the Settings page opens, look under On Startup and then click Open a specific set of pages and click Set Pages
  • When the window opens, type in any page you wish as your new start page.
  • Once you have typed in your new home page, close the window.


Step 2: FRST Fix


  • Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy.
  • Right-click in the open notepad and select Paste).
  • Save it on the desktop as fixlist.txt

Start
S2 1a34a8e0; C:\Program Files (x86)\WSSvc.dll [175952 2014-02-05] ()
C:\Program Files (x86)\WSSvc.dll
End


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system.


Run FRST and press the Fix button just once and wait. The tool will make a log on the desktop (Fixlog.txt) please post it in your next reply.


Step 3: Scan with Malwarebytes Anti-Malware


  • Please open the program.
  • Click on the Update tab then click Check for Updates

    Posted Image
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, check the following settings:
    • On the Settings tab, Scanner Settings, leave the default boxes checked but change the drop-down boxes to Show in results list and check for removal.

    Posted Image
  • On the Scanner tab, check Perform quick scan.

    Posted Image
  • When the scan is complete, click OK, then Show Results to view the results.

    Posted Image
  • Make sure that everything is checked, and click Remove Selected.

    Posted Image
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and Paste the entire report in your next reply.


Step 4: Scan with ESET Online Scanner


Please note: You can use Internet Explorer or Firefox for this step. Either browser used will have to be ran in admin mode.

Right click on either the Internet Explorer icon or the Firefox icon in the Start Menu or Quick Launch Bar on the Task bar and select Run as Administrator from the menu.

If you use Firefox, you will be prompted to download esetsmartinstaller_enu.exe. Please do so, then double click it to install it.

Please click on this link and then click the ESET Online Scanner bar ---->Posted Image

  • Select the option YES, I accept the Terms of Use then click on Start
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked.
  • Make sure that the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
  • Scan for potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth Technology
  • Now click on Start
  • The virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically. The scan may take several hours.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • Now click on Finish
  • Use notepad to open the logfile located at C:\Program Files(x86)\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.


Step 5: Scan with SecurityCheck


Download Security CheckPosted Image by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.



Things I need to see in your next post:


FRST Fix Log

MBAM Log

ESET Online Scanner Log

SecurityCheck Log

Question: How is the computer running?

  • 0

#13
Thumperness

Thumperness

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
I am still with you. Life just got busy for a little bit.

When I got to malware bytes it locked up about 8 min. in.

I am trying ESET right now
  • 0

#14
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

I am still with you. Life just got busy for a little bit.

When I got to malware bytes it locked up about 8 min. in.

I am trying ESET right now


No worries, we'll do this on the schedule that works best for you. :) How long did MBAM sit, and did you happen to see what file it was on when it stopped?
  • 0

#15
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0