Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Windows 7 won't boot: C0000135 error code [Solved]


  • This topic is locked This topic is locked

#1
themontrealer

themontrealer

    New Member

  • Member
  • Pip
  • 8 posts

Hi

 

I hope someone can help me here. I have all my kids pictures since they were born on my computer and now it won't boot.

 

I get the c0000135 error code when »I boot. I do not have some past registry backup that I can use.

 

Here is the log from FRST:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-09-2015
Ran by SYSTEM on MININT-M9T9DUS (12-09-2015 21:12:42)
Running from I:\
Platform: Windows 7 Home Premium (X64) Language: Anglais (États-Unis)
Internet Explorer Version 9
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2014-11-22] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-07-27] (Intel® Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2014-10-19] (IDT, Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-06-29] (Apple Inc.)
HKLM\...\Run: [MRT] => C:\Windows\system32\MRT.exe [134753440 2015-08-26] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPConnectionManager] => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-02-15] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-02] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2011-01-25] (cyberlink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-03-16] (EasyBits Software AS)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-12-09] (Nullsoft, Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1686528 2012-03-27] (Wondershare)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1243656 2013-12-09] (Easybits)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-16] (Apple Inc.)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2015-08-08] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [904824 2015-08-19] (BlueStack Systems, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\Marc-Olivier\...\Run: [HP Officejet 6700 (NET)] => C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\Marc-Olivier\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [Itibiti.exe] => C:\Program Files (x86)\Itibiti Soft Phone\Itibiti.exe
HKU\Marc-Olivier\...\Run: [Bubble Suite] => "C:\Users\Marc-Olivier\AppData\Roaming\Nosibay\Bubble Suite\Bubble Suite.exe" /winstartup
HKU\Marc-Olivier\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-04-06] (Siber Systems)
HKU\Marc-Olivier\...\Run: [xpersMacromedia] => C:\Users\Marc-Olivier\AppData\Roaming\Macromedia\xpersMacromedia.exe [122880 2015-09-12] (CLOSER looker 2012)
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
HKU\Marc-Olivier\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Internet Explorer\iexplore.exe [758000 2015-08-14] (Microsoft Corporation)
HKU\Marc-Olivier\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944 2015-08-27] (Google Inc.)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => No File
Startup: C:\Users\Marc-Olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outil de détection de support PMB.lnk [2011-12-11]
ShortcutTarget: Outil de détection de support PMB.lnk -> C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-08-19] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304 2015-08-19] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [839288 2015-08-19] (BlueStack Systems, Inc.)
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [241648 2011-01-25] (CyberLink)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-07-27] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-08-19] (BlueStack Systems)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-11] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [47632 2009-10-20] (CACE Technologies, Inc.)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S2 ccEvtMgr; no ImagePath
S2 ccSetMgr; no ImagePath
S3 navapsvc; no ImagePath
S3 SAVRT; no ImagePath
S1 SAVRTPEL; no ImagePath
S1 solktppf; \??\C:\Windows\system32\drivers\solktppf.sys [X]
S1 srkektch; \??\C:\Windows\system32\drivers\srkektch.sys [X]
S3 TlntSvr; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-12 21:03 - 2015-09-12 21:12 - 00000000 ____D C:\FRST
2015-09-12 11:28 - 2015-09-12 11:28 - 09983584 _____ (MEGA Limited) C:\Users\Marc-Olivier\Downloads\MEGAsyncSetup.exe
2015-09-12 11:28 - 2015-09-12 11:28 - 02842682 _____ C:\Users\Marc-Olivier\Downloads\Angry Birds 2.zip
2015-09-12 10:54 - 2015-09-12 10:54 - 00000218 _____ C:\Users\Marc-Olivier\AppData\Local\recently-used.xbel
2015-09-12 10:30 - 2015-09-12 10:30 - 00001829 _____ C:\Users\Public\Desktop\Apps.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00001809 _____ C:\Users\Public\Desktop\Start BlueStacks.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\ProgramData\BlueStacks
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2015-09-12 10:29 - 2015-09-12 10:29 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Bluestacks
2015-09-12 06:52 - 2015-09-12 06:52 - 00003228 _____ C:\Windows\System32\Tasks\HPCeeScheduleForMarc-Olivier
2015-09-12 06:52 - 2015-09-12 06:52 - 00000360 _____ C:\Windows\Tasks\HPCeeScheduleForMarc-Olivier.job
2015-09-11 04:39 - 2015-08-27 10:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2015-09-11 04:39 - 2015-08-27 10:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 01461760 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 00112640 _____ (Microsoft Corporation) C:\Windows\System32\smss.exe
2015-09-11 04:39 - 2015-07-22 16:01 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe
2015-09-11 04:39 - 2015-07-22 15:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\apisetschema.dll
2015-09-11 04:39 - 2015-06-25 02:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe
2015-09-11 04:39 - 2015-06-25 02:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2015-09-11 04:39 - 2015-06-25 02:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2015-09-11 04:39 - 2015-06-25 01:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00046080 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-09-11 04:38 - 2015-09-01 17:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2015-09-11 04:38 - 2015-09-01 17:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2015-09-11 04:38 - 2015-09-01 17:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 03165696 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 02606080 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00696320 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00037888 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00139776 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\WinSetupUI.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\wu.upgrade.ps.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-09-11 04:38 - 2015-08-26 09:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-09-11 04:38 - 2015-08-04 10:03 - 00692672 _____ (Microsoft Corporation) C:\Windows\System32\winload.efi
2015-09-11 04:38 - 2015-08-04 10:00 - 00616360 _____ (Microsoft Corporation) C:\Windows\System32\winresume.efi
2015-09-11 04:38 - 2015-08-04 09:56 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\appidapi.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\appidsvc.dll
2015-09-11 04:38 - 2015-08-04 09:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\System32\appidpolicyconverter.exe
2015-09-11 04:38 - 2015-08-04 09:55 - 00017920 _____ (Microsoft Corporation) C:\Windows\System32\appidcertstorecheck.exe
2015-09-11 04:38 - 2015-08-04 09:47 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-09-11 04:38 - 2015-08-04 08:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\appid.sys
2015-09-06 18:56 - 2015-09-06 18:56 - 00028554 _____ C:\Users\Marc-Olivier\Downloads\TheKillersDiscography - ThePirateBay.TO.torrent
2015-09-06 14:10 - 2015-09-06 15:12 - 00000000 ____D C:\users\TEMP
2015-08-25 05:59 - 2015-08-25 06:51 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\webex
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\WebEx
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\ProgramData\WebEx
2015-08-21 23:00 - 2015-08-14 15:49 - 17889792 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2015-08-21 23:00 - 2015-08-14 15:38 - 02158080 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2015-08-21 23:00 - 2015-08-14 15:37 - 02382848 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2015-08-21 23:00 - 2015-08-14 15:03 - 12386816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-21 23:00 - 2015-08-14 14:56 - 01804288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-21 23:00 - 2015-08-14 14:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-18 16:56 - 2015-08-18 16:56 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2015-08-15 23:13 - 2015-07-30 05:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 23:13 - 2015-07-30 05:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 12:31 - 2015-07-28 12:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
2015-08-15 12:31 - 2015-07-28 12:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\System32\appraiser.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\System32\invagent.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\System32\devinv.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\acmigration.dll
2015-08-15 12:31 - 2015-07-28 11:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2015-08-15 12:31 - 2015-07-15 10:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 10:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys
2015-08-15 12:31 - 2015-07-15 10:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\wow64.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\System32\wdigest.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\System32\sysmain.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\System32\schannel.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\System32\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe
2015-08-15 12:31 - 2015-07-15 10:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\srclient.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\credssp.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msmmsp.dll
2015-08-15 12:31 - 2015-07-15 10:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe
2015-08-15 12:31 - 2015-07-15 10:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\System32\auditpol.exe
2015-08-15 12:31 - 2015-07-15 10:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll
2015-08-15 12:31 - 2015-07-15 10:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\System32\msobjs.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-15 12:31 - 2015-07-15 09:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 09:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-15 12:31 - 2015-07-15 09:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-15 12:31 - 2015-07-15 09:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-15 12:31 - 2015-07-15 09:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-15 12:31 - 2015-07-15 09:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys
2015-08-15 12:31 - 2015-07-15 08:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-15 12:31 - 2015-07-15 08:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-15 12:31 - 2015-07-15 08:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:30 - 2015-07-22 13:59 - 00448512 _____ (Microsoft Corporation) C:\Windows\System32\html.iec
2015-08-15 12:30 - 2015-07-22 13:56 - 02344448 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2015-08-15 12:30 - 2015-07-22 13:55 - 10936832 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01392128 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01387520 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2015-08-15 12:30 - 2015-07-22 13:49 - 01494016 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 13:48 - 00816640 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00599040 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00237056 _____ (Microsoft Corporation) C:\Windows\System32\url.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00173568 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 13:48 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00453120 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00282112 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00096768 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00055296 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe
2015-08-15 12:30 - 2015-07-22 13:47 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 13:46 - 00248320 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2015-08-15 12:30 - 2015-07-22 12:54 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-15 12:30 - 2015-07-22 12:51 - 01810432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-15 12:30 - 2015-07-22 12:47 - 09751040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 12:45 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00718336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 12:42 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-15 12:30 - 2015-07-14 19:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\basesrv.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-15 12:30 - 2015-07-01 12:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01838080 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01550336 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\FntCache.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-15 12:29 - 2015-07-10 09:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2015-08-15 12:29 - 2015-07-10 09:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-12 11:45 - 2011-12-10 19:20 - 00000000 ____D C:\Users\Marc-Olivier\Documents\OLD PC
2015-09-12 11:29 - 2011-09-27 01:54 - 01774916 _____ C:\Windows\WindowsUpdate.log
2015-09-12 11:21 - 2011-12-24 12:05 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-12 10:56 - 2011-12-10 12:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\Macromedia
2015-09-12 10:53 - 2011-12-24 12:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Google
2015-09-12 10:34 - 2014-01-07 16:46 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2015-09-12 10:30 - 2009-07-13 19:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-09-12 10:21 - 2009-07-13 18:34 - 00000698 _____ C:\Windows\win.ini
2015-09-12 07:14 - 2011-12-10 22:02 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\BitLord
2015-09-12 07:14 - 2011-12-10 22:00 - 00000000 ____D C:\Users\Marc-Olivier\Documents\BitLord
2015-09-12 07:03 - 2011-12-24 12:05 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-12 07:02 - 2015-07-01 15:52 - 00000000 ____D C:\Windows\System32\MRT
2015-09-12 06:59 - 2011-12-10 16:27 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-12 06:54 - 2011-12-10 13:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Adobe
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:50 - 2011-06-21 18:19 - 02852754 _____ C:\Windows\System32\perfh00C.dat
2015-09-12 06:50 - 2011-06-21 18:19 - 00858920 _____ C:\Windows\System32\perfc00C.dat
2015-09-12 06:50 - 2009-07-13 21:13 - 00006264 _____ C:\Windows\System32\PerfStringBackup.INI
2015-09-11 18:38 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-11 18:38 - 2009-07-13 20:51 - 00198338 _____ C:\Windows\setupact.log
2015-09-11 10:39 - 2015-01-11 06:16 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\MBAMSwissArmy.sys
2015-09-10 16:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2015-09-06 14:14 - 2009-07-13 21:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-09-06 07:28 - 2011-12-11 12:52 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-09-04 11:16 - 2015-01-11 09:21 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-04 11:15 - 2011-12-10 14:54 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\CrashDumps
2015-08-30 04:16 - 2011-12-24 12:05 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-30 04:16 - 2011-12-24 12:05 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-26 14:37 - 2012-10-27 15:42 - 134753440 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2015-08-25 13:38 - 2012-04-09 18:22 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\mIRC
2015-08-22 14:51 - 2011-12-11 09:18 - 00000000 ____D C:\my dvd
2015-08-21 23:16 - 2010-11-20 19:47 - 00716672 _____ C:\Windows\PFRO.log
2015-08-21 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\TAPI
2015-08-21 15:32 - 2015-01-11 06:16 - 00001104 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-21 15:32 - 2015-01-11 06:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-16 00:10 - 2013-10-12 16:49 - 00000000 ____D C:\Windows\rescache
2015-08-15 23:32 - 2014-08-05 18:00 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-15 23:32 - 2011-06-21 18:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-15 23:32 - 2009-07-13 20:45 - 04933472 _____ C:\Windows\System32\FNTCACHE.DAT
2015-08-15 23:29 - 2014-12-13 05:38 - 00000000 ____D C:\Windows\System32\appraiser
2015-08-15 23:29 - 2014-10-20 17:38 - 00000000 ___SD C:\Windows\System32\CompatTel

ZeroAccess:
C:\$Recycle.Bin\S-1-5-21-556112324-2183500595-550056916-1001\$a2abea2b6d2bf1de397aaa92e29a3b6a

Files to move or delete:
====================
C:\ProgramData\jKVW13gI.dat
C:\Users\Marc-Olivier\update-walking-dead.bat

Some files in TEMP:
====================
C:\Users\Marc-Olivier\AppData\Local\Temp\2SKKKKKKK.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\7-zip32.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\ApnStub.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\AskSLib.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dyndata_7330014.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\Extract.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\HPHelpUpdater.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\InstallFlashPlayer.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\Installhelper.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\jre-6u30-windows-i586-iftw-rv.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc722.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc732.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc742.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mml.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\ose00000.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\pjfhd8xj.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\Resource.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\setup_15420-24_F497.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52407.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52509.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP53462.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54373.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54620.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54714.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54841.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54900.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55068.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55094.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55101.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55102.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55104.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55107.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55109.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55150.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp58915.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp64126.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SRAssetsHelper.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\tmpd6bd3e0c.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\TubeToolbox_Setup.EXE
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is2E3A.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is62F0.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is8D1B.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is915F.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_isE93E.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_isF771.exe

==================== Known DLLs (Whitelisted) =========================

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points =========================

==================== Memory info ===========================

Percentage of memory in use: 12%
Total physical RAM: 8139.86 MB
Available physical RAM: 7150.19 MB
Total Virtual: 8138.01 MB
Available Virtual: 7159.09 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:444.1 GB) (Free:17.22 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (RECOVERY) (Fixed) (Total:21.37 GB) (Free:2.26 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive g: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32
Drive h: (CDROM) (CDROM) (Total:0.17 GB) (Free:0 GB) CDFS
Drive i: (Lexar) (Removable) (Total:14.9 GB) (Free:12.98 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.25 GB) (Free:0.25 GB) NTFS
Drive y: () (Fixed) (Total:465.76 GB) (Free:430.51 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 49F8DF88)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7FADDFC5)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=444.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21.4 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 14.9 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=14.9 GB) - (Type=0C)

LastRegBack: 2015-09-11 07:20

==================== End of FRST.txt ============================

 

I also attached a search file for LPK.dll

 

 

 

Please help!

 

Thanks

 

 

 

 

 

Attached Files


  • 0

Advertisements


#2
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

Hello themontrealer,

Welcome to Geekstogo.

Download the attached fixlist.txt file and save it on the flashdrive as fixlist.txt

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Please enter System Recovery Options, as we've done previously.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Also tell me if your computer has booted up normally after the fix.

Attached Files


  • 0

#3
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Hi Emeraldnzl

 

Thanks for the quick reply, this forum is great!

 

I first had a black screen saying the integrity of my drive (FAT32) had to be checked and then I got the same blue screen with error code c0000135.

 

Here is the fixlog:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:12-09-2015
Ran by SYSTEM (2015-09-13 00:03:10) Run:2
Running from I:\
Boot Mode: Recovery
==============================================

fixlist content:
*****************
HKLM-x32\...\Run: [] => [X]
HKU\Marc-Olivier\...\Run: [Itibiti.exe] => C:\Program Files (x86)\Itibiti Soft Phone\Itibiti.exe
C:\Program Files (x86)\Itibiti Soft Phone
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => No File
S1 solktppf; \??\C:\Windows\system32\drivers\solktppf.sys [X]
S1 srkektch; \??\C:\Windows\system32\drivers\srkektch.sys [X]
C:\Windows\system32\drivers\solktppf.sys
C:\Windows\system32\drivers\srkektch.sys
C:\$Recycle.Bin\S-1-5-21-556112324-2183500595-550056916-1001\$a2abea2b6d2bf1de397aaa92e29a3b6a
C:\ProgramData\jKVW13gI.dat
C:\Users\Marc-Olivier\update-walking-dead.bat
C:\Users\Marc-Olivier\AppData\Local\Temp\2SKKKKKKK.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\7-zip32.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\ApnStub.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\AskSLib.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dyndata_7330014.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\Extract.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\HPHelpUpdater.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\InstallFlashPlayer.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\Installhelper.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\jre-6u30-windows-i586-iftw-rv.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc722.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc732.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc742.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\mml.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\ose00000.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\pjfhd8xj.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\Resource.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\setup_15420-24_F497.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52407.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52509.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP53462.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54373.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54620.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54714.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54841.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54900.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55068.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55094.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55101.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55102.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55104.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55107.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55109.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55150.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp58915.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\sp64126.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\SRAssetsHelper.dll
C:\Users\Marc-Olivier\AppData\Local\Temp\tmpd6bd3e0c.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\TubeToolbox_Setup.EXE
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is2E3A.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is62F0.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is8D1B.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_is915F.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_isE93E.exe
C:\Users\Marc-Olivier\AppData\Local\Temp\_isF771.exe
Emptytemp:
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKU\Marc-Olivier\Software\Microsoft\Windows\CurrentVersion\Run\\Itibiti.exe => value removed successfully
"C:\Program Files (x86)\Itibiti Soft Phone" => File/Folder not found.
"C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll" => Value data removed successfully.
solktppf => service removed successfully
srkektch => service removed successfully
"C:\Windows\system32\drivers\solktppf.sys" => File/Folder not found.
"C:\Windows\system32\drivers\srkektch.sys" => File/Folder not found.
C:\$Recycle.Bin\S-1-5-21-556112324-2183500595-550056916-1001\$a2abea2b6d2bf1de397aaa92e29a3b6a => moved successfully
C:\ProgramData\jKVW13gI.dat => moved successfully
C:\Users\Marc-Olivier\update-walking-dead.bat => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\2SKKKKKKK.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\7-zip32.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\ApnStub.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\AskSLib.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dialogs.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\drm_dyndata_7330014.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\Extract.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\HPHelpUpdater.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\InstallFlashPlayer.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\Installhelper.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\jre-6u30-windows-i586-iftw-rv.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc722.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc732.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\mirc742.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\mml.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\ose00000.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\pjfhd8xj.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\Resource.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\setup_15420-24_F497.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52407.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP52509.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP53462.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54373.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\sp54620.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54714.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54841.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP54900.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55068.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55094.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55101.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55102.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55104.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55107.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55109.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SP55150.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\sp58915.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\sp64126.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\SRAssetsHelper.dll => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\tmpd6bd3e0c.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\TubeToolbox_Setup.EXE => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPSA.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\UninstallHPTCA.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_is2E3A.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_is62F0.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_is8D1B.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_is915F.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_isE93E.exe => moved successfully
C:\Users\Marc-Olivier\AppData\Local\Temp\_isF771.exe => moved successfully
Emptytemp: => Error: This directive works only outside recovery mode.

==== End of Fixlog 00:03:14 ====


  • 0

#4
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

Oh dear I overlooked that the Emptytemp: command doesn't work in RE.

 

Not to worry it made no difference to that fix.

 

Moving on

 

I assume you ran a search for LPK.DLL because it was missing? The reason I ask is because it seems to be there. Maybe the hive is corrupted.

 

Tell me when you return.

 

Meantime

 

Download the attached fixlist.txt file and save it on the flashdrive as fixlist.txt

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Please enter System Recovery Options, as we've done previously.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
 

 

Attached Files


  • 0

#5
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Hi again,

 

The LPK search was only because I saw someone including it in another post with a similar issue. I

 

I just ran the fix, still have the same error code.

 

Here is the log:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:12-09-2015
Ran by SYSTEM (2015-09-13 00:30:15) Run:3
Running from I:\
Boot Mode: Recovery
==============================================

fixlist content:
*****************
LastRegBack: 2015-09-11 07:20
*****************

DEFAULT => copied successfully to System32\config\HiveBackup
DEFAULT => restored successfully from registry back up
SAM => copied successfully to System32\config\HiveBackup
SAM => restored successfully from registry back up
SECURITY => copied successfully to System32\config\HiveBackup
SECURITY => restored successfully from registry back up
SOFTWARE => copied successfully to System32\config\HiveBackup
SOFTWARE => restored successfully from registry back up
SYSTEM => copied successfully to System32\config\HiveBackup
SYSTEM => restored successfully from registry back up

==== End of Fixlog 00:30:26 ====


  • 0

#6
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

The LPK search was only because I saw someone including it in another post with a similar issue.


Thank you for that explanation. I don't see that file as missing so we will have a look at other possibilities. :)

Please run another scan with FRST and post the log back here.
  • 0

#7
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Thank you for helping me on this.

 

I dont know if it helps but before I get the blue screen error, Windows is trying to do an update that stops at 3 from 27461. All this also started after I downloaded what was probably a virus: angry birds 2 zip.

 

Here is the log:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-09-2015
Ran by SYSTEM on MININT-S0N7M28 (13-09-2015 00:40:49)
Running from I:\
Platform: Windows 7 Home Premium (X64) Language: Anglais (États-Unis)
Internet Explorer Version 9
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2014-11-22] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-07-27] (Intel® Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2014-10-19] (IDT, Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-06-29] (Apple Inc.)
HKLM\...\Run: [MRT] => C:\Windows\system32\MRT.exe [134753440 2015-08-26] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPConnectionManager] => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-02-15] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-02] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2011-01-25] (cyberlink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-03-16] (EasyBits Software AS)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-12-09] (Nullsoft, Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1686528 2012-03-27] (Wondershare)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1243656 2013-12-09] (Easybits)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-16] (Apple Inc.)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2015-08-08] (Renesas Electronics Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\Marc-Olivier\...\Run: [HP Officejet 6700 (NET)] => C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\Marc-Olivier\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [Bubble Suite] => "C:\Users\Marc-Olivier\AppData\Roaming\Nosibay\Bubble Suite\Bubble Suite.exe" /winstartup
HKU\Marc-Olivier\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-04-06] (Siber Systems)
HKU\Marc-Olivier\...\Run: [xpersMacromedia] => C:\Users\Marc-Olivier\AppData\Roaming\Macromedia\xpersMacromedia.exe [122880 2015-09-12] (CLOSER looker 2012)
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
HKU\Marc-Olivier\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Internet Explorer\iexplore.exe [758000 2015-08-14] (Microsoft Corporation)
HKU\Marc-Olivier\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944 2015-08-27] (Google Inc.)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => No File
Startup: C:\Users\Marc-Olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outil de détection de support PMB.lnk [2011-12-11]
ShortcutTarget: Outil de détection de support PMB.lnk -> C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [241648 2011-01-25] (CyberLink)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-07-27] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [47632 2009-10-20] (CACE Technologies, Inc.)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S2 ccEvtMgr; no ImagePath
S2 ccSetMgr; no ImagePath
S3 navapsvc; no ImagePath
S3 SAVRT; no ImagePath
S1 SAVRTPEL; no ImagePath
S1 solktppf; \??\C:\Windows\system32\drivers\solktppf.sys [X]
S1 srkektch; \??\C:\Windows\system32\drivers\srkektch.sys [X]
S3 TlntSvr; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-13 00:30 - 2015-09-13 00:30 - 00000000 ____D C:\Windows\System32\config\HiveBackup
2015-09-12 21:03 - 2015-09-13 00:40 - 00000000 ____D C:\FRST
2015-09-12 11:28 - 2015-09-12 11:28 - 09983584 _____ (MEGA Limited) C:\Users\Marc-Olivier\Downloads\MEGAsyncSetup.exe
2015-09-12 11:28 - 2015-09-12 11:28 - 02842682 _____ C:\Users\Marc-Olivier\Downloads\Angry Birds 2.zip
2015-09-12 10:54 - 2015-09-12 10:54 - 00000218 _____ C:\Users\Marc-Olivier\AppData\Local\recently-used.xbel
2015-09-12 10:30 - 2015-09-12 10:30 - 00001829 _____ C:\Users\Public\Desktop\Apps.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00001809 _____ C:\Users\Public\Desktop\Start BlueStacks.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\ProgramData\BlueStacks
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2015-09-12 10:29 - 2015-09-12 10:29 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Bluestacks
2015-09-12 06:52 - 2015-09-12 06:52 - 00003228 _____ C:\Windows\System32\Tasks\HPCeeScheduleForMarc-Olivier
2015-09-12 06:52 - 2015-09-12 06:52 - 00000360 _____ C:\Windows\Tasks\HPCeeScheduleForMarc-Olivier.job
2015-09-11 04:39 - 2015-08-27 10:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2015-09-11 04:39 - 2015-08-27 10:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 01461760 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 00112640 _____ (Microsoft Corporation) C:\Windows\System32\smss.exe
2015-09-11 04:39 - 2015-07-22 16:01 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe
2015-09-11 04:39 - 2015-07-22 15:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\apisetschema.dll
2015-09-11 04:39 - 2015-06-25 02:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe
2015-09-11 04:39 - 2015-06-25 02:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2015-09-11 04:39 - 2015-06-25 02:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2015-09-11 04:39 - 2015-06-25 01:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00046080 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-09-11 04:38 - 2015-09-01 17:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2015-09-11 04:38 - 2015-09-01 17:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2015-09-11 04:38 - 2015-09-01 17:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 03165696 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 02606080 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00696320 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00037888 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00139776 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\WinSetupUI.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\wu.upgrade.ps.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-09-11 04:38 - 2015-08-26 09:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-09-11 04:38 - 2015-08-04 10:03 - 00692672 _____ (Microsoft Corporation) C:\Windows\System32\winload.efi
2015-09-11 04:38 - 2015-08-04 10:00 - 00616360 _____ (Microsoft Corporation) C:\Windows\System32\winresume.efi
2015-09-11 04:38 - 2015-08-04 09:56 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\appidapi.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\appidsvc.dll
2015-09-11 04:38 - 2015-08-04 09:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\System32\appidpolicyconverter.exe
2015-09-11 04:38 - 2015-08-04 09:55 - 00017920 _____ (Microsoft Corporation) C:\Windows\System32\appidcertstorecheck.exe
2015-09-11 04:38 - 2015-08-04 09:47 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-09-11 04:38 - 2015-08-04 08:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\appid.sys
2015-09-06 18:56 - 2015-09-06 18:56 - 00028554 _____ C:\Users\Marc-Olivier\Downloads\TheKillersDiscography - ThePirateBay.TO.torrent
2015-09-06 14:10 - 2015-09-06 15:12 - 00000000 ____D C:\users\TEMP
2015-08-25 05:59 - 2015-08-25 06:51 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\webex
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\WebEx
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\ProgramData\WebEx
2015-08-21 23:00 - 2015-08-14 15:49 - 17889792 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2015-08-21 23:00 - 2015-08-14 15:38 - 02158080 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2015-08-21 23:00 - 2015-08-14 15:37 - 02382848 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2015-08-21 23:00 - 2015-08-14 15:03 - 12386816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-21 23:00 - 2015-08-14 14:56 - 01804288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-21 23:00 - 2015-08-14 14:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-18 16:56 - 2015-08-18 16:56 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2015-08-15 23:13 - 2015-07-30 05:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 23:13 - 2015-07-30 05:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 12:31 - 2015-07-28 12:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
2015-08-15 12:31 - 2015-07-28 12:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\System32\appraiser.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\System32\invagent.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\System32\devinv.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\acmigration.dll
2015-08-15 12:31 - 2015-07-28 11:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2015-08-15 12:31 - 2015-07-15 10:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 10:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys
2015-08-15 12:31 - 2015-07-15 10:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\wow64.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\System32\wdigest.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\System32\sysmain.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\System32\schannel.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\System32\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe
2015-08-15 12:31 - 2015-07-15 10:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\srclient.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\credssp.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msmmsp.dll
2015-08-15 12:31 - 2015-07-15 10:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe
2015-08-15 12:31 - 2015-07-15 10:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\System32\auditpol.exe
2015-08-15 12:31 - 2015-07-15 10:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll
2015-08-15 12:31 - 2015-07-15 10:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\System32\msobjs.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-15 12:31 - 2015-07-15 09:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 09:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-15 12:31 - 2015-07-15 09:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-15 12:31 - 2015-07-15 09:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-15 12:31 - 2015-07-15 09:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-15 12:31 - 2015-07-15 09:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys
2015-08-15 12:31 - 2015-07-15 08:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-15 12:31 - 2015-07-15 08:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-15 12:31 - 2015-07-15 08:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:30 - 2015-07-22 13:59 - 00448512 _____ (Microsoft Corporation) C:\Windows\System32\html.iec
2015-08-15 12:30 - 2015-07-22 13:56 - 02344448 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2015-08-15 12:30 - 2015-07-22 13:55 - 10936832 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01392128 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01387520 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2015-08-15 12:30 - 2015-07-22 13:49 - 01494016 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 13:48 - 00816640 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00599040 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00237056 _____ (Microsoft Corporation) C:\Windows\System32\url.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00173568 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 13:48 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00453120 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00282112 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00096768 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00055296 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe
2015-08-15 12:30 - 2015-07-22 13:47 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 13:46 - 00248320 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2015-08-15 12:30 - 2015-07-22 12:54 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-15 12:30 - 2015-07-22 12:51 - 01810432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-15 12:30 - 2015-07-22 12:47 - 09751040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 12:45 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00718336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 12:42 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-15 12:30 - 2015-07-14 19:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\basesrv.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-15 12:30 - 2015-07-01 12:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01838080 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01550336 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\FntCache.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-15 12:29 - 2015-07-10 09:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2015-08-15 12:29 - 2015-07-10 09:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-13 00:03 - 2011-12-10 12:58 - 00000000 ____D C:\users\Marc-Olivier
2015-09-12 11:45 - 2011-12-10 19:20 - 00000000 ____D C:\Users\Marc-Olivier\Documents\OLD PC
2015-09-12 11:29 - 2011-09-27 01:54 - 01774916 _____ C:\Windows\WindowsUpdate.log
2015-09-12 11:21 - 2011-12-24 12:05 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-12 10:56 - 2011-12-10 12:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\Macromedia
2015-09-12 10:53 - 2011-12-24 12:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Google
2015-09-12 10:34 - 2014-01-07 16:46 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2015-09-12 10:30 - 2009-07-13 19:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-09-12 10:21 - 2009-07-13 18:34 - 00000698 _____ C:\Windows\win.ini
2015-09-12 07:14 - 2011-12-10 22:02 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\BitLord
2015-09-12 07:14 - 2011-12-10 22:00 - 00000000 ____D C:\Users\Marc-Olivier\Documents\BitLord
2015-09-12 07:11 - 2015-07-01 15:52 - 00000000 ____D C:\Windows\System32\MRT
2015-09-12 07:03 - 2011-12-24 12:05 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-12 06:59 - 2011-12-10 16:27 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-12 06:54 - 2011-12-10 13:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Adobe
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:50 - 2011-06-21 18:19 - 02852754 _____ C:\Windows\System32\perfh00C.dat
2015-09-12 06:50 - 2011-06-21 18:19 - 00858920 _____ C:\Windows\System32\perfc00C.dat
2015-09-12 06:50 - 2009-07-13 21:13 - 00006264 _____ C:\Windows\System32\PerfStringBackup.INI
2015-09-11 18:38 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-11 18:38 - 2009-07-13 20:51 - 00198338 _____ C:\Windows\setupact.log
2015-09-11 10:39 - 2015-01-11 06:16 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\MBAMSwissArmy.sys
2015-09-10 16:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2015-09-06 14:14 - 2009-07-13 21:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-09-06 07:28 - 2011-12-11 12:52 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-09-04 11:16 - 2015-01-11 09:21 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-04 11:15 - 2011-12-10 14:54 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\CrashDumps
2015-08-30 04:16 - 2011-12-24 12:05 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-30 04:16 - 2011-12-24 12:05 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-26 14:37 - 2012-10-27 15:42 - 134753440 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2015-08-25 13:38 - 2012-04-09 18:22 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\mIRC
2015-08-22 14:51 - 2011-12-11 09:18 - 00000000 ____D C:\my dvd
2015-08-21 23:16 - 2010-11-20 19:47 - 00716672 _____ C:\Windows\PFRO.log
2015-08-21 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\TAPI
2015-08-21 15:32 - 2015-01-11 06:16 - 00001104 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-21 15:32 - 2015-01-11 06:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-16 00:10 - 2013-10-12 16:49 - 00000000 ____D C:\Windows\rescache
2015-08-15 23:32 - 2014-08-05 18:00 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-15 23:32 - 2011-06-21 18:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-15 23:32 - 2009-07-13 20:45 - 04933472 _____ C:\Windows\System32\FNTCACHE.DAT
2015-08-15 23:29 - 2014-12-13 05:38 - 00000000 ____D C:\Windows\System32\appraiser
2015-08-15 23:29 - 2014-10-20 17:38 - 00000000 ___SD C:\Windows\System32\CompatTel

==================== Known DLLs (Whitelisted) =========================

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points =========================

==================== Memory info ===========================

Percentage of memory in use: 12%
Total physical RAM: 8139.86 MB
Available physical RAM: 7147.17 MB
Total Virtual: 8138.01 MB
Available Virtual: 7157.52 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:444.1 GB) (Free:17.1 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (RECOVERY) (Fixed) (Total:21.37 GB) (Free:2.26 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive g: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32
Drive h: (CDROM) (CDROM) (Total:0.17 GB) (Free:0 GB) CDFS
Drive i: (Lexar) (Removable) (Total:14.9 GB) (Free:12.98 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.25 GB) (Free:0.25 GB) NTFS
Drive y: () (Fixed) (Total:465.76 GB) (Free:430.51 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 49F8DF88)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7FADDFC5)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=444.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21.4 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 14.9 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=14.9 GB) - (Type=0C)

LastRegBack: 2015-09-11 07:20

==================== End of FRST.txt ============================


  • 0

#8
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

Hello themontrealer,

 

Just to tell you I may have to finish here for today soon. We have guests coming to dinner lol.

 

For now though

 

Let's try again.

 

Download the attached fixlist.txt file and save it on the flashdrive as fixlist.txt

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Please enter System Recovery Options, as we've done previously.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
 

Attached Files


  • 0

#9
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Hi

 

I realize we are on different time zones (I am New York City time, I believe you are in New Zealand).

 

I tried the last fix, still have the same error code.

 

Here is the log:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-09-2015
Ran by SYSTEM on MININT-QISMNCG (13-09-2015 09:03:38)
Running from I:\
Platform: Windows 7 Home Premium (X64) Language: Anglais (États-Unis)
Internet Explorer Version 9
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2014-11-22] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-07-27] (Intel® Corporation)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1128448 2014-10-19] (IDT, Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-06-29] (Apple Inc.)
HKLM\...\Run: [MRT] => C:\Windows\system32\MRT.exe [134753440 2015-08-26] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPConnectionManager] => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [94264 2011-02-15] (Hewlett-Packard Development Company L.P.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [87336 2010-02-02] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2011-01-25] (cyberlink)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-03-16] (EasyBits Software AS)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-09] (Hewlett-Packard)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2011-12-09] (Nullsoft, Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1686528 2012-03-27] (Wondershare)
HKLM-x32\...\Run: [Magic Desktop for HP notification] => C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe [1243656 2013-12-09] (Easybits)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-16] (Apple Inc.)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2015-08-08] (Renesas Electronics Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\Marc-Olivier\...\Run: [HP Officejet 6700 (NET)] => C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\Marc-Olivier\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.)
HKU\Marc-Olivier\...\Run: [Bubble Suite] => "C:\Users\Marc-Olivier\AppData\Roaming\Nosibay\Bubble Suite\Bubble Suite.exe" /winstartup
HKU\Marc-Olivier\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-04-06] (Siber Systems)
HKU\Marc-Olivier\...\Run: [xpersMacromedia] => C:\Users\Marc-Olivier\AppData\Roaming\Macromedia\xpersMacromedia.exe [122880 2015-09-12] (CLOSER looker 2012)
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
HKU\Marc-Olivier\...\RunOnce: [Uninstall C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc-Olivier\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
HKU\Marc-Olivier\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Internet Explorer\iexplore.exe [758000 2015-08-14] (Microsoft Corporation)
HKU\Marc-Olivier\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944 2015-08-27] (Google Inc.)
Startup: C:\Users\Marc-Olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outil de détection de support PMB.lnk [2011-12-11]
ShortcutTarget: Outil de détection de support PMB.lnk -> C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [241648 2011-01-25] (CyberLink)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-07-27] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2009-10-20] (CACE Technologies, Inc.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [47632 2009-10-20] (CACE Technologies, Inc.)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S2 ccEvtMgr; no ImagePath
S2 ccSetMgr; no ImagePath
S3 navapsvc; no ImagePath
S3 SAVRT; no ImagePath
S1 SAVRTPEL; no ImagePath
S3 TlntSvr; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-13 00:30 - 2015-09-13 00:30 - 00000000 ____D C:\Windows\System32\config\HiveBackup
2015-09-12 21:03 - 2015-09-13 09:03 - 00000000 ____D C:\FRST
2015-09-12 11:28 - 2015-09-12 11:28 - 09983584 _____ (MEGA Limited) C:\Users\Marc-Olivier\Downloads\MEGAsyncSetup.exe
2015-09-12 11:28 - 2015-09-12 11:28 - 02842682 _____ C:\Users\Marc-Olivier\Downloads\Angry Birds 2.zip
2015-09-12 10:54 - 2015-09-12 10:54 - 00000218 _____ C:\Users\Marc-Olivier\AppData\Local\recently-used.xbel
2015-09-12 10:30 - 2015-09-12 10:30 - 00001829 _____ C:\Users\Public\Desktop\Apps.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00001809 _____ C:\Users\Public\Desktop\Start BlueStacks.lnk
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\ProgramData\BlueStacks
2015-09-12 10:30 - 2015-09-12 10:30 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2015-09-12 10:29 - 2015-09-12 10:29 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Bluestacks
2015-09-12 06:52 - 2015-09-12 06:52 - 00003228 _____ C:\Windows\System32\Tasks\HPCeeScheduleForMarc-Olivier
2015-09-12 06:52 - 2015-09-12 06:52 - 00000360 _____ C:\Windows\Tasks\HPCeeScheduleForMarc-Olivier.job
2015-09-11 04:39 - 2015-08-27 10:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2015-09-11 04:39 - 2015-08-27 10:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 10:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-09-11 04:39 - 2015-08-27 09:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-09-11 04:39 - 2015-08-27 09:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 01461760 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2015-09-11 04:39 - 2015-07-22 16:02 - 00112640 _____ (Microsoft Corporation) C:\Windows\System32\smss.exe
2015-09-11 04:39 - 2015-07-22 16:01 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe
2015-09-11 04:39 - 2015-07-22 15:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\apisetschema.dll
2015-09-11 04:39 - 2015-06-25 02:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe
2015-09-11 04:39 - 2015-06-25 02:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2015-09-11 04:39 - 2015-06-25 02:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2015-09-11 04:39 - 2015-06-25 01:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00046080 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll
2015-09-11 04:38 - 2015-09-01 19:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-11 04:38 - 2015-09-01 18:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-09-11 04:38 - 2015-09-01 18:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-09-11 04:38 - 2015-09-01 17:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2015-09-11 04:38 - 2015-09-01 17:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2015-09-11 04:38 - 2015-09-01 17:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 03165696 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 02606080 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00696320 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00037888 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2015-09-11 04:38 - 2015-08-26 10:07 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00139776 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\WinSetupUI.dll
2015-09-11 04:38 - 2015-08-26 10:06 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2015-09-11 04:38 - 2015-08-26 10:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\wu.upgrade.ps.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-09-11 04:38 - 2015-08-26 09:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-09-11 04:38 - 2015-08-26 09:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-09-11 04:38 - 2015-08-04 10:03 - 00692672 _____ (Microsoft Corporation) C:\Windows\System32\winload.efi
2015-09-11 04:38 - 2015-08-04 10:00 - 00616360 _____ (Microsoft Corporation) C:\Windows\System32\winresume.efi
2015-09-11 04:38 - 2015-08-04 09:56 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\appidapi.dll
2015-09-11 04:38 - 2015-08-04 09:56 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\appidsvc.dll
2015-09-11 04:38 - 2015-08-04 09:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\System32\appidpolicyconverter.exe
2015-09-11 04:38 - 2015-08-04 09:55 - 00017920 _____ (Microsoft Corporation) C:\Windows\System32\appidcertstorecheck.exe
2015-09-11 04:38 - 2015-08-04 09:47 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-09-11 04:38 - 2015-08-04 08:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\appid.sys
2015-09-06 18:56 - 2015-09-06 18:56 - 00028554 _____ C:\Users\Marc-Olivier\Downloads\TheKillersDiscography - ThePirateBay.TO.torrent
2015-09-06 14:10 - 2015-09-06 15:12 - 00000000 ____D C:\users\TEMP
2015-08-25 05:59 - 2015-08-25 06:51 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\webex
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\WebEx
2015-08-25 05:59 - 2015-08-25 05:59 - 00000000 ____D C:\ProgramData\WebEx
2015-08-21 23:00 - 2015-08-14 15:49 - 17889792 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2015-08-21 23:00 - 2015-08-14 15:38 - 02158080 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2015-08-21 23:00 - 2015-08-14 15:37 - 02382848 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2015-08-21 23:00 - 2015-08-14 15:03 - 12386816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-21 23:00 - 2015-08-14 14:56 - 01804288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-21 23:00 - 2015-08-14 14:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-08-18 16:56 - 2015-08-18 16:56 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2015-08-15 23:13 - 2015-07-30 05:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 23:13 - 2015-07-30 05:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 12:31 - 2015-07-28 12:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
2015-08-15 12:31 - 2015-07-28 12:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\System32\appraiser.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\System32\invagent.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\System32\devinv.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2015-08-15 12:31 - 2015-07-28 12:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\acmigration.dll
2015-08-15 12:31 - 2015-07-28 11:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2015-08-15 12:31 - 2015-07-15 10:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 10:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2015-08-15 12:31 - 2015-07-15 10:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys
2015-08-15 12:31 - 2015-07-15 10:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\wow64.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\System32\wdigest.dll
2015-08-15 12:31 - 2015-07-15 10:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\System32\sysmain.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\System32\schannel.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\System32\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe
2015-08-15 12:31 - 2015-07-15 10:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\srclient.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\credssp.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 10:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msmmsp.dll
2015-08-15 12:31 - 2015-07-15 10:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe
2015-08-15 12:31 - 2015-07-15 10:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\System32\auditpol.exe
2015-08-15 12:31 - 2015-07-15 10:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll
2015-08-15 12:31 - 2015-07-15 10:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\System32\msobjs.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 10:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-08-15 12:31 - 2015-07-15 09:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-08-15 12:31 - 2015-07-15 09:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-15 12:31 - 2015-07-15 09:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-15 12:31 - 2015-07-15 09:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-15 12:31 - 2015-07-15 09:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-15 12:31 - 2015-07-15 09:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-15 12:31 - 2015-07-15 09:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-15 12:31 - 2015-07-15 09:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-08-15 12:31 - 2015-07-15 09:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 09:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys
2015-08-15 12:31 - 2015-07-15 08:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys
2015-08-15 12:31 - 2015-07-15 08:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-15 12:31 - 2015-07-15 08:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-15 12:31 - 2015-07-15 08:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-08-15 12:31 - 2015-07-15 08:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-08-15 12:30 - 2015-07-22 13:59 - 00448512 _____ (Microsoft Corporation) C:\Windows\System32\html.iec
2015-08-15 12:30 - 2015-07-22 13:56 - 02344448 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2015-08-15 12:30 - 2015-07-22 13:55 - 10936832 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01392128 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2015-08-15 12:30 - 2015-07-22 13:50 - 01387520 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2015-08-15 12:30 - 2015-07-22 13:49 - 01494016 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 13:48 - 00816640 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00729088 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00599040 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00237056 _____ (Microsoft Corporation) C:\Windows\System32\url.dll
2015-08-15 12:30 - 2015-07-22 13:48 - 00173568 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 13:48 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00453120 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00282112 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00096768 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00055296 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 13:47 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe
2015-08-15 12:30 - 2015-07-22 13:47 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 13:46 - 00248320 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2015-08-15 12:30 - 2015-07-22 12:54 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-15 12:30 - 2015-07-22 12:51 - 01810432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-15 12:30 - 2015-07-22 12:47 - 09751040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-15 12:30 - 2015-07-22 12:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-15 12:30 - 2015-07-22 12:45 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-08-15 12:30 - 2015-07-22 12:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00718336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-15 12:30 - 2015-07-22 12:44 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-08-15 12:30 - 2015-07-22 12:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-08-15 12:30 - 2015-07-22 12:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-08-15 12:30 - 2015-07-22 12:42 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-15 12:30 - 2015-07-14 19:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\basesrv.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll
2015-08-15 12:30 - 2015-07-10 09:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-15 12:30 - 2015-07-10 09:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-15 12:30 - 2015-07-10 09:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-08-15 12:30 - 2015-07-01 12:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-15 12:30 - 2015-07-01 12:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01838080 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01550336 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2015-08-15 12:29 - 2015-07-30 10:06 - 01148416 _____ (Microsoft Corporation) C:\Windows\System32\FntCache.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-15 12:29 - 2015-07-30 09:57 - 01081856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-15 12:29 - 2015-07-10 09:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2015-08-15 12:29 - 2015-07-10 09:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-15 12:29 - 2015-07-09 09:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-13 00:03 - 2011-12-10 12:58 - 00000000 ____D C:\users\Marc-Olivier
2015-09-12 11:45 - 2011-12-10 19:20 - 00000000 ____D C:\Users\Marc-Olivier\Documents\OLD PC
2015-09-12 11:29 - 2011-09-27 01:54 - 01774916 _____ C:\Windows\WindowsUpdate.log
2015-09-12 11:21 - 2011-12-24 12:05 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-12 10:56 - 2011-12-10 12:59 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\Macromedia
2015-09-12 10:53 - 2011-12-24 12:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Google
2015-09-12 10:34 - 2014-01-07 16:46 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2015-09-12 10:30 - 2009-07-13 19:20 - 00000000 __RHD C:\Users\Public\Libraries
2015-09-12 10:21 - 2009-07-13 18:34 - 00000698 _____ C:\Windows\win.ini
2015-09-12 07:14 - 2011-12-10 22:02 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\BitLord
2015-09-12 07:14 - 2011-12-10 22:00 - 00000000 ____D C:\Users\Marc-Olivier\Documents\BitLord
2015-09-12 07:11 - 2015-07-01 15:52 - 00000000 ____D C:\Windows\System32\MRT
2015-09-12 07:03 - 2011-12-24 12:05 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-12 06:59 - 2011-12-10 16:27 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-12 06:54 - 2011-12-10 13:05 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\Adobe
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:52 - 2009-07-13 20:45 - 00032064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-12 06:50 - 2011-06-21 18:19 - 02852754 _____ C:\Windows\System32\perfh00C.dat
2015-09-12 06:50 - 2011-06-21 18:19 - 00858920 _____ C:\Windows\System32\perfc00C.dat
2015-09-12 06:50 - 2009-07-13 21:13 - 00006264 _____ C:\Windows\System32\PerfStringBackup.INI
2015-09-11 18:38 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-11 18:38 - 2009-07-13 20:51 - 00198338 _____ C:\Windows\setupact.log
2015-09-11 10:39 - 2015-01-11 06:16 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\MBAMSwissArmy.sys
2015-09-10 16:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2015-09-06 14:14 - 2009-07-13 21:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-09-06 07:28 - 2011-12-11 12:52 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2015-09-04 11:16 - 2015-01-11 09:21 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-04 11:15 - 2011-12-10 14:54 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Local\CrashDumps
2015-08-30 04:16 - 2011-12-24 12:05 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-30 04:16 - 2011-12-24 12:05 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-26 14:37 - 2012-10-27 15:42 - 134753440 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2015-08-25 13:38 - 2012-04-09 18:22 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\mIRC
2015-08-22 14:51 - 2011-12-11 09:18 - 00000000 ____D C:\my dvd
2015-08-21 23:16 - 2010-11-20 19:47 - 00716672 _____ C:\Windows\PFRO.log
2015-08-21 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\TAPI
2015-08-21 15:32 - 2015-01-11 06:16 - 00001104 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-21 15:32 - 2015-01-11 06:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-16 00:10 - 2013-10-12 16:49 - 00000000 ____D C:\Windows\rescache
2015-08-15 23:32 - 2014-08-05 18:00 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-15 23:32 - 2011-06-21 18:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-08-15 23:32 - 2009-07-13 20:45 - 04933472 _____ C:\Windows\System32\FNTCACHE.DAT
2015-08-15 23:29 - 2014-12-13 05:38 - 00000000 ____D C:\Windows\System32\appraiser
2015-08-15 23:29 - 2014-10-20 17:38 - 00000000 ___SD C:\Windows\System32\CompatTel

==================== Known DLLs (Whitelisted) =========================

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points =========================

==================== Memory info ===========================

Percentage of memory in use: 12%
Total physical RAM: 8139.86 MB
Available physical RAM: 7146.28 MB
Total Virtual: 8138.01 MB
Available Virtual: 7155.94 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:444.1 GB) (Free:17.1 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive d: (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.16 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (RECOVERY) (Fixed) (Total:21.37 GB) (Free:2.26 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive g: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32
Drive h: (CDROM) (CDROM) (Total:0.17 GB) (Free:0 GB) CDFS
Drive i: (Lexar) (Removable) (Total:14.9 GB) (Free:12.98 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.25 GB) (Free:0.25 GB) NTFS
Drive y: () (Fixed) (Total:465.76 GB) (Free:430.51 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 49F8DF88)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7FADDFC5)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=444.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=21.4 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 14.9 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=14.9 GB) - (Type=0C)

LastRegBack: 2015-09-11 07:20

==================== End of FRST.txt ============================

 

 

 

 

 

 

 

Many thanks


  • 0

#10
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

I believe you are in New Zealand


Yep, that's me. :thumbsup:

You didn't include the Fixlog.txt. While I can see it worked from the log you posted I do like to see how FRST handles the fixes. It allows me to see the results of any ancillory commands that I might have included and if there is any problem that needs to be attended to.

Don't worry now but please follow the instructions in the future. :)

Moving on

I see this in your logs:

C:\Users\Marc-Olivier\Documents\OLD PC

have you recently changed things on this PC?

Tell me when you return.

Now

Download the attached fixlist.txt file and save it on the flashdrive as fixlist.txt

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Please enter System Recovery Options, as we've done previously.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

When the fix is completed attempt a reboot. If you are still having the same problem try booting into Safe Mode.

Boot into Safe Mode:

1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, tap F8 continually.
3) If you are asked what mode to bootup in press Esc to boot in the default settings
4) Instead of Windows loading as normal, a menu should appear
5) Select the option to run Windows in Safe Mode.

Tell me how it went.

So when you return please post

  • Fixlog.txt
  • tell me if there have been any changes to the PC recently
  • tell me about the boot up attempt

Attached Files


  • 0

Advertisements


#11
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Thanks for being back!

 

First, the OLD PC is a backup of my previous PC I made years ago. Nothing related.

 

I can't see how to attache files but here is a copy paste of the fixlog:

 

Fix result of Farbar Recovery Scan Tool (x64) Version:12-09-2015
Ran by SYSTEM (2015-09-13 17:33:22) Run:5
Running from I:\
Boot Mode: Recovery
==============================================

fixlist content:
*****************
2015-08-18 16:56 - 2015-08-18 16:56 - 00000000 ____D C:\Users\Marc-Olivier\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2015-09-12 10:54 - 2015-09-12 10:54 - 00000218 _____ C:\Users\Marc-Olivier\AppData\Local\recently-used.xbel
Folder: C:\users\TEMP
*****************

C:\Users\Marc-Olivier\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 => moved successfully
C:\Users\Marc-Olivier\AppData\Local\recently-used.xbel => moved successfully

========================= Folder: C:\users\TEMP ========================

2015-09-06 14:14 - 2015-09-13 09:03 - 0262144 _____ () C:\users\TEMP\NtUser.Dat
2015-09-06 14:14 - 2015-09-13 09:03 - 0005120 ___SH () C:\users\TEMP\NtUser.Dat.LOG1
2015-09-06 14:14 - 2015-09-06 14:14 - 0000000 ___SH () C:\users\TEMP\NtUser.Dat.LOG2
2015-09-06 14:14 - 2015-09-06 14:14 - 0065536 ___SH () C:\users\TEMP\NtUser.Dat{88362d7b-54e4-11e5-9a58-ac7289b619c5}.TM.blf
2015-09-06 14:14 - 2015-09-06 14:14 - 0524288 ___SH () C:\users\TEMP\NtUser.Dat{88362d7b-54e4-11e5-9a58-ac7289b619c5}.TMContainer00000000000000000001.regtrans-ms
2015-09-06 14:14 - 2015-09-06 14:14 - 0524288 ___SH () C:\users\TEMP\NtUser.Dat{88362d7b-54e4-11e5-9a58-ac7289b619c5}.TMContainer00000000000000000002.regtrans-ms
2015-09-06 15:12 - 2015-09-06 15:12 - 0065536 ___SH () C:\users\TEMP\NtUser.Dat{a31ae846-54ec-11e5-a213-ac7289b619c5}.TM.blf
2015-09-06 15:12 - 2015-09-06 15:12 - 0524288 ___SH () C:\users\TEMP\NtUser.Dat{a31ae846-54ec-11e5-a213-ac7289b619c5}.TMContainer00000000000000000001.regtrans-ms
2015-09-06 15:12 - 2015-09-06 15:12 - 0524288 ___SH () C:\users\TEMP\NtUser.Dat{a31ae846-54ec-11e5-a213-ac7289b619c5}.TMContainer00000000000000000002.regtrans-ms
2015-09-06 14:10 - 2015-09-06 14:10 - 0000000 ___HD () C:\users\TEMP\AppData
2015-09-06 14:10 - 2015-09-06 14:10 - 0000000 ____D () C:\users\TEMP\AppData\Roaming
2015-09-06 14:10 - 2015-09-06 14:10 - 0000000 ____D () C:\users\TEMP\AppData\Roaming\Microsoft
2015-09-06 14:10 - 2015-09-06 14:12 - 0000000 ____D () C:\users\TEMP\AppData\Roaming\Microsoft\SystemCertificates

====== End of Folder: ======

==== End of Fixlog 17:33:23 ====

 

I tried booting and got the same c0000135 error code.

 

I then tried to press F8 and was able to get things started on Safe Mode. But then while the Windows files were loading the screen froze and the blue screen with C0000135 reappered...


  • 0

#12
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

but here is a copy paste of the fixlog:


We prefer logs to be pasted into the thread. :)

Question:

Have you tried a Startup Repair?

If you have your installation disk or a System Repair Disk  (see spoiler below if you don't have one) then try a Startup Repair.

Spoiler


Go to Win 7 Startup Repair for instructions on how to carry out a Startup Repair.

If that doesn't work then using System Recovery Options as you did for running FRST do this:

On the System Recovery Options menu you will get the following options:

        Startup Repair
        System Restore
        Windows Complete PC Restore
        Windows Memory Diagnostic Tool
        Command Prompt

 

  • Access the Command Prompt option.
  •     In the command window type in notepad and press Enter.
  •     The notepad opens. Under File menu select Open.
  •     Select "Computer" and find your hard drive letter and close the notepad.
  •     In the command window type CD\ and press Enter
  •     Note: Replace letter C with the drive letter of your hard drive.
  • Type the following command, and then press ENTER:
     

    sfc /scannow

    Please note that there is a single space between sfc and /scannow.
  •     When prompted, type in Y and press Enter.

Allow System File Scanner to complete its run.

After that has done it's work see if you can boot up.

If you are unable to boot up after that then try this:

On the System Recovery Options menu you will get the following options:

        Startup Repair
        System Restore
        Windows Complete PC Restore
        Windows Memory Diagnostic Tool
        Command Prompt


  

  • Select Command Prompt
  •     In the command window type in notepad and press Enter.
  •     The notepad opens. Under File menu select Open.
  •     Select "Computer" and find your hard drive letter and close the notepad.
  •     In the command window type C: and press Enter
  •     Note: Replace letter C with the drive letter of your hard drive.
  •     Type in chkdsk /b and press Enter (notice the gap... it should be there.)
  •     When prompted, type in Y and press Enter.
  •     Allow chkdsk to perform all 5 stages. This may take some time, so please be patient.
  •     When complete, close the Command Prompt window, and click on the Restart button to restart your computer.

    Please let me know whether there is any change with starting up your computer.

If you are able to boot up from any of the above methods then download the latest version of FRST to your machines desktop and run a FRST scan with the Additions box ticked - see instructions below:

Important - We ask that the tools we use be downloaded to your computers desktop.

If you are unsure about how to do that, please press the Show button beside Spoiler below to see guides for the most popular browsers:

Spoiler

Next

Please download Farbar Recovery Scan Tool from here and save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
 

  • Right click to run as administrator. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called (FRST.txt) in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run, it makes also another log (Addition.txt). Please also paste that into your reply.

  • 0

#13
themontrealer

themontrealer

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

Tried both the system repair and chkdsk... With the same result»: error code c0000135...

 

ANy other ideas on how to resolve this?

 

Many thanks


  • 0

#14
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

When you ran sfc /scannow  was there any message i.e. did it find any errors?

 

Same question for chkdsk?

 

Tell me when you return.

 

Meantime

 

Download the attached fixlist.txt file and save it on the flashdrive as fixlist.txt

NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

Please enter System Recovery Options, as we've done previously.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Attached File  fixlist.txt   206bytes   162 downloads


  • 0

#15
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,008 posts

Are you still with us?

 

Any luck with boot up after that last fix?


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP