Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

dotdo ads in every browser


  • Please log in to reply

#1
beckyp2001

beckyp2001

    New Member

  • Member
  • Pip
  • 7 posts

New installation of Windows 10 and even before I could add the antivirus (Kaspersky) and Malwarebytes, I got infected. A bogus, bad copy of Malwarebytes is how it came in I think. I have run Malwarebytes, ad-aware, Kaspersky and cc cleaner trying to get rid of this. Lots of infections have been found and claimed to be quarantined or deleted, yet every time I open a new browser window, ads continue to popup. I've also deleted the cache of all three browsers, Microsoft Edge, Firefox and Google Chrome.

 

Logs:

 

FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-09-2015 01
Ran by Becky (administrator) on DESKTOP-HESCRH0 (28-09-2015 10:37:52)
Running from C:\Users\Becky\Desktop
Loaded Profiles: Becky (Available Profiles: Becky)
Platform: Windows 10 Enterprise (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Samsung) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Samsung) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Intuit) C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
(godly) C:\Windows\debonair.exe
(Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
() C:\Program Files (x86)\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
(Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avpui.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(windows 99) C:\Program Files (x86)\curtain\calculator.exe
() C:\Program Files (x86)\glow\branch.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Program Files (x86)\curtain\relation.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Copyright 2013 SAMSUNG) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTray.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(Bartels Media GmbH) C:\Program Files (x86)\PhraseExpress\phraseexpress.exe
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TimounterMonitor.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
(Joyent, Inc) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe
(Microsoft Corporation) C:\Windows\regedit.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDesktop.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\ieetwcollector.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
 

==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8529152 2015-09-26] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-26] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [cutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKLM\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM\...\Run: [autoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [140568 2007-10-30] (Acronis)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Samsung Link] => C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [607584 2015-03-18] (Copyright 2013 SAMSUNG)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTray.exe [9558752 2015-08-27] ()
HKLM-x32\...\Run: [cutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKLM-x32\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM-x32\...\Run: [autoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2595616 2007-10-30] (Acronis)
HKLM-x32\...\Run: [AcronisTimounterMonitor] => C:\Program Files (x86)\Acronis\TrueImageHome\TimounterMonitor.exe [909208 2007-10-30] (Acronis)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3498728 2015-06-29] (Adobe Systems Inc.)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [rutoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [dutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-09-28] (Siber Systems)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\MountPoints2: {5e9cf559-648d-11e5-9bc2-806e6f6e6963} - "H:\setup.exe"
Lsa: [Authentication Packages] msv1_0 relog_ap
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [SmartFTP Drop] -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\sfShellTools.dll [2014-03-11] (SmartSoft Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\i1Profiler Tray.lnk [2015-09-26]
ShortcutTarget: i1Profiler Tray.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2015-09-26]
ShortcutTarget: PhraseExpress.lnk -> C:\Program Files (x86)\PhraseExpress\phraseexpress.exe (Bartels Media GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk [2015-09-26]
ShortcutTarget: QuickBooks Update Agent.lnk -> C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\XRGamma.lnk [2015-09-26]
ShortcutTarget: XRGamma.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\XRGamma.exe (LOGO Kommunikations- und Drucktechnik GmbH & Co. KG)
Startup: C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\intr.lnk [2015-09-26]
ShortcutTarget: intr.lnk -> C:\Program Files (x86)\curtain\calculator.exe (windows 99)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 1 <======= ATTENTION (Restriction - ProxySettings)
ProxyEnable: [HKLM] => Proxy is enabled.
ProxyEnable: [HKLM-x32] => Proxy is enabled.
ProxyServer: [HKLM] => http=127.0.0.1:8877;https=127.0.0.1:8877
ProxyServer: [HKLM-x32] => http=127.0.0.1:8877;https=127.0.0.1:8877
ProxyEnable: [S-1-5-21-3588804255-3441825186-3011144637-1001] => Proxy is enabled.
ProxyServer: [S-1-5-21-3588804255-3441825186-3011144637-1001] => http=127.0.0.1:8877;https=127.0.0.1:8877
Tcpip\Parameters: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{5b2c375d-5403-43d0-9d71-61718ebc5642}: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{62f64533-ed80-477c-aa7a-3e1a17db5c11}: [DhcpNameServer] 192.168.11.1
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Handler-x32: intu-help-qb1 - {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files (x86)\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll [2007-11-12] (TODO: <Company name>)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler-x32: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows\SysWOW64\mscoree.dll [2015-07-10] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\Becky\AppData\Roaming\Mozilla\Firefox\Profiles\3s6jy4wj.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-28] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-28] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-02-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-02-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox [2015-09-26]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-09-28]
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
FF Extension: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi [2015-09-26]
FF HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
 
Chrome:
=======
CHR Profile: C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-28]
CHR Extension: (Google Docs) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-28]
CHR Extension: (Google Drive) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-28]
CHR Extension: (YouTube) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Google Search) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-28]
CHR Extension: (Kaspersky Protection) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2015-09-28]
CHR Extension: (Adobe Acrobat - Create PDF) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-09-28]
CHR Extension: (Google Sheets) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-28]
CHR Extension: (Google Docs Offline) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-28]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-28]
CHR Extension: (Gmail) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-28]
CHR Extension: (RoboForm Password Manager) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2015-09-28]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2015-06-29]
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [1846464 2015-09-10] (Adobe Systems, Incorporated)
R2 AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe [404360 2013-12-21] (Samsung) [File not signed]
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe [194000 2015-09-26] (Kaspersky Lab ZAO)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-26] (NVIDIA Corporation)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe [712432 2015-08-27] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-26] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-26] (NVIDIA Corporation)
R2 pretty; C:\Windows\debonair.exe [14336 2015-09-26] (godly) [File not signed]
R2 QBCFMonitorService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [20480 2007-11-12] (Intuit) [File not signed]
S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [61440 2007-05-24] (Intuit Inc.) [File not signed]
R2 Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [616288 2015-03-18] (Copyright 2013 SAMSUNG)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TryAndDecideService; C:\Program Files (x86)\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe [492720 2007-10-30] ()
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [83312 2014-04-10] (X-Rite Inc.)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 asstahci64; C:\Windows\System32\drivers\asstahci64.sys [88936 2015-06-17] (Asmedia Technology)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-26] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [171192 2015-06-30] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [937656 2015-06-30] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-09-26] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [78008 2015-06-26] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-28] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-09-26] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-26] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-10] (NVIDIA Corporation)
R3 SrvHsfPCIe; C:\Windows\system32\DRIVERS\VSTBS36.SYS [287744 2015-07-10] (Conexant Systems, Inc.)
R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [452040 2015-01-22] (BitDefender S.R.L.)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
R2 WinI2C-DDC; C:\Windows\system32\drivers\DDCDrv.sys [20832 2014-05-14] (Nicomsoft Ltd.)
R2 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [10240 2014-05-14] (Nicomsoft Ltd.) [File not signed]
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 

==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-09-28 10:37 - 2015-09-28 10:37 - 00031089 _____ C:\Users\Becky\Desktop\FRST.txt
2015-09-28 10:37 - 2015-09-28 10:37 - 00000000 ____D C:\FRST
2015-09-28 10:36 - 2015-09-28 10:37 - 02192384 _____ (Farbar) C:\Users\Becky\Desktop\FRST64.exe
2015-09-28 10:36 - 2015-09-28 10:36 - 02192384 _____ (Farbar) C:\Users\Becky\Downloads\FRST64.exe
2015-09-28 10:11 - 2015-09-28 10:11 - 00002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-28 10:11 - 2015-09-28 10:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-28 10:10 - 2015-09-28 10:15 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-28 10:10 - 2015-09-28 10:15 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-28 10:10 - 2015-09-28 10:10 - 00929872 _____ (Google Inc.) C:\Users\Becky\Downloads\ChromeSetup (1).exe
2015-09-28 10:10 - 2015-09-28 10:10 - 00003986 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-28 10:10 - 2015-09-28 10:10 - 00003754 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-28 10:03 - 2015-09-28 10:03 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_Becky_HistoryPrediction.bin
2015-09-28 09:59 - 2015-09-28 10:00 - 00007398 _____ C:\Users\Becky\Desktop\cc_20150928_095952.reg
2015-09-28 09:56 - 2015-09-28 09:56 - 00052340 _____ C:\Users\Becky\Desktop\cc_20150928_095620.reg
2015-09-28 09:52 - 2015-09-28 09:52 - 00002870 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\Program Files\CCleaner
2015-09-28 09:49 - 2015-09-28 09:50 - 06677440 _____ (Piriform Ltd) C:\Users\Becky\Downloads\ccsetup510.exe
2015-09-28 09:19 - 2015-09-28 09:19 - 276274740 _____ C:\Users\Becky\Desktop\reg backup 092815.reg
2015-09-28 06:19 - 2015-09-28 06:19 - 00000000 ____D C:\Windows\system32\SleepStudy
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-09-28 06:15 - 2015-09-28 06:15 - 00005250 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0
2015-09-28 04:59 - 2015-09-28 04:59 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Lavasoft
2015-09-28 04:40 - 2015-09-28 04:40 - 00000000 ____D C:\Users\Becky\AppData\Roaming\LavasoftStatistics
2015-09-28 04:40 - 2015-09-28 04:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2015-09-28 04:40 - 2015-09-28 04:40 - 00000000 ____D C:\Program Files\Lavasoft
2015-09-28 04:39 - 2015-09-28 04:39 - 00000000 ____D C:\ProgramData\Lavasoft
2015-09-28 04:39 - 2015-09-28 04:39 - 00000000 ____D C:\Program Files\Common Files\Lavasoft
2015-09-28 04:38 - 2015-09-28 04:39 - 02012464 _____ C:\Users\Becky\Downloads\Adaware_Installer.exe
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Users\Becky\AppData\Local\VS Revo Group
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Program Files\VS Revo Group
2015-09-28 04:31 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2015-09-28 04:15 - 2015-09-28 04:21 - 00000031 _____ C:\ProgramData\fd4_sys.d
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.FontGear.data
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FontDoctor for Windows
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Program Files (x86)\FontDoctor for Windows
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AV Bros. Page Curl Pro 2.2
2015-09-28 03:19 - 2015-09-28 03:22 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2 (64 Bit)
2015-09-28 02:33 - 2015-09-28 02:33 - 00000000 ____D C:\Users\Becky\AppData\Local\Macromedia
2015-09-28 02:32 - 2015-09-28 10:28 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-09-28 02:32 - 2015-09-28 02:32 - 00003806 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-09-28 01:13 - 2015-09-28 03:24 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2015-09-27 04:52 - 2015-09-27 04:59 - 729936528 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\AcrobatPro_11_Web_WWMUI.exe
2015-09-27 04:37 - 2015-09-27 04:37 - 00001170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk
2015-09-27 04:37 - 2015-09-27 04:37 - 00001158 _____ C:\Users\Public\Desktop\Adobe Content Viewer.lnk
2015-09-27 04:35 - 2015-09-27 04:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5.5
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\Users\Becky\Adobe Flash Builder 4.7
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Builder 4.7
2015-09-26 22:55 - 2015-09-26 22:55 - 00001418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CC.lnk
2015-09-26 22:52 - 2015-09-26 22:52 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InCopy CC 2015.lnk
2015-09-26 22:47 - 2015-09-26 22:47 - 00001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CC (64bit).lnk
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SAMSUNG
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\.swt
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Upload
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2015-09-26 22:44 - 2015-09-26 22:45 - 00000000 ____D C:\Program Files\Samsung
2015-09-26 22:42 - 2015-09-26 22:42 - 00001430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Fireworks CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2015-09-26 22:38 - 2015-09-26 22:38 - 00001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Edge Animate CC 2015.lnk
2015-09-26 22:36 - 2015-09-27 04:19 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn-Time
2015-09-26 22:34 - 2015-09-26 22:34 - 00001033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Professional CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Muse CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.adobe.AdobeMuseCC.2015.0
2015-09-26 22:24 - 2015-09-26 22:24 - 00001109 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2015.lnk
2015-09-26 22:18 - 2015-09-26 22:18 - 00001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2015.lnk
2015-09-26 22:10 - 2015-09-26 22:10 - 00001271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk
2015-09-26 22:09 - 2015-09-26 22:09 - 00001377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk
2015-09-26 22:00 - 2015-09-26 22:00 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2015.lnk
2015-09-26 21:53 - 2015-09-26 21:53 - 00001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00000000 ____D C:\ProgramData\ALM
2015-09-26 21:32 - 2015-09-26 21:32 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk
2015-09-26 21:26 - 2015-09-26 21:26 - 00003634 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky
2015-09-26 21:26 - 2015-09-26 21:26 - 00000000 ____D C:\Users\Becky\AppData\Roaming\NVIDIA
2015-09-26 21:22 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\Documents\Adobe
2015-09-26 21:22 - 2015-09-28 03:26 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-09-26 21:22 - 2015-09-26 21:22 - 00001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2015-09-26 21:21 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Adobe
2015-09-26 21:20 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-09-26 21:15 - 2015-09-28 10:04 - 00000000 ___RD C:\Users\Becky\Creative Cloud Files
2015-09-26 20:56 - 2015-09-28 10:04 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-09-26 20:56 - 2015-09-26 20:56 - 00001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2015-09-26 20:55 - 2015-09-28 03:19 - 00000000 ____D C:\ProgramData\Adobe
2015-09-26 20:55 - 2015-09-28 01:13 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-09-26 20:53 - 2015-09-28 10:04 - 00000000 ____D C:\Users\Becky\AppData\Local\Adobe
2015-09-26 20:53 - 2015-09-26 20:53 - 00686768 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\CreativeCloudSet-Up.exe
2015-09-26 20:43 - 2015-09-28 10:16 - 00004206 _____ C:\Windows\System32\Tasks\Open URL by RoboForm
2015-09-26 20:43 - 2015-09-28 10:16 - 00003592 _____ C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2015-09-26 20:35 - 2015-09-26 20:35 - 00000000 ____D C:\Users\Becky\AppData\Roaming\RoboForm
2015-09-26 20:30 - 2015-09-28 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\Users\Becky\Documents\My RoboForm Data
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\ProgramData\RoboForm
2015-09-26 20:29 - 2015-09-26 20:30 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup-ems12.exe
2015-09-26 20:21 - 2015-09-26 20:21 - 02816040 _____ C:\Users\Becky\Downloads\SecurityTaskManager_Setup.exe
2015-09-26 20:10 - 2015-09-28 10:36 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-09-26 20:10 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-09-26 17:35 - 2015-09-28 10:03 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-26 17:35 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2015-09-26 17:34 - 2015-09-26 17:34 - 01728112 _____ (Kaspersky Lab) C:\Users\Becky\Downloads\kts16.0.0.614en_8244.exe
2015-09-26 17:34 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00937656 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00171192 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2015-09-26 17:24 - 2015-09-26 17:30 - 00000000 ____D C:\Users\Becky\AppData\Local\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-26 17:23 - 2015-09-26 17:24 - 00243688 _____ C:\Users\Becky\Downloads\Firefox Setup Stub 41.0.exe
2015-09-26 16:40 - 2015-09-26 16:40 - 00002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-09-26 16:40 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-09-26 16:39 - 2015-09-26 16:39 - 00000000 ____D C:\Program Files (x86)\WinZip
2015-09-26 16:38 - 2015-09-26 17:46 - 00000000 ____D C:\ProgramData\Intuit
2015-09-26 16:38 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\WinZip
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Users\Public\Documents\Intuit
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickBooks
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Program Files (x86)\Intuit
2015-09-26 16:38 - 2007-07-30 14:44 - 03518464 _____ (Amyuni Technologies http://www.amyuni.com)C:\Windows\SysWOW64\cdintf300.dll
2015-09-26 16:38 - 2007-06-28 14:09 - 01843200 _____ (Apache Software Foundation) C:\Windows\SysWOW64\acXMLParser.dll
2015-09-26 16:37 - 2015-09-26 16:37 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\MSBuild
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-09-26 16:36 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-09-26 16:36 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-09-26 16:34 - 2015-09-26 16:34 - 00002021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Ignition.lnk
2015-09-26 16:34 - 2015-09-26 16:34 - 00000000 ____D C:\Program Files (x86)\LogMeIn Ignition
2015-09-26 16:33 - 2015-09-26 16:33 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SmartFTP
2015-09-26 16:31 - 2015-09-26 16:32 - 00000000 ____D C:\Program Files (x86)\Color Wheel Expert
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\Users\Becky\AppData\Roaming\X-Rite
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Wheel Expert
2015-09-26 16:31 - 2000-05-22 00:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2015-09-26 16:31 - 2000-05-22 00:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2015-09-26 16:30 - 2015-09-28 10:02 - 00000000 ____D C:\Users\Becky\Documents\PhraseExpress
2015-09-26 16:29 - 2015-09-28 09:54 - 00000000 ____D C:\Windows\Panther
2015-09-26 16:27 - 2015-09-26 16:27 - 00711712 _____ (Acronis) C:\Windows\system32\Drivers\timntr.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00593440 _____ (Acronis) C:\Windows\system32\Drivers\tdrpman.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00229408 _____ (Acronis) C:\Windows\system32\Drivers\snapman.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00081952 _____ (Acronis) C:\Windows\system32\Drivers\tifsfilt.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-09-26 16:27 - 2015-09-26 16:27 - 00000000 ____D C:\ProgramData\Acronis
2015-09-26 16:27 - 2015-09-26 16:27 - 00000000 ____D C:\Program Files (x86)\Acronis
2015-09-26 16:27 - 2007-02-16 16:40 - 00011264 _____ (Acronis) C:\Windows\system32\relog_ap.dll
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Font Manager
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\Program Files (x86)\Font Manager
2015-09-26 16:16 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-09-26 16:16 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:15 - 00000000 ____D C:\Windows\PCHEALTH
2015-09-26 16:13 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-26 16:13 - 2015-09-26 21:05 - 00000000 ____D C:\Users\Becky\AppData\Local\Microsoft Help
2015-09-26 16:13 - 2015-09-26 16:15 - 00000000 ____D C:\Program Files\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-09-26 16:12 - 2015-09-28 10:03 - 00001328 ____H C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job
2015-09-26 16:12 - 2015-09-26 16:12 - 00003624 _____ C:\Windows\System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 __RHD C:\MSOCache
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 ____D C:\Users\Becky\AppData\Roaming\WinRAR
2015-09-26 16:11 - 2015-09-28 08:00 - 00000428 _____ C:\Windows\Tasks\X-Rite Device Services Software Updater.job
2015-09-26 16:11 - 2015-09-26 16:11 - 00003034 _____ C:\Windows\System32\Tasks\X-Rite Device Services Software Updater
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\Program Files (x86)\X-Rite
2015-09-26 16:11 - 2014-05-14 11:35 - 00145920 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00131584 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00125440 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00108032 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\system32\Drivers\DDCDrv.sys
2015-09-26 16:11 - 2014-05-14 11:35 - 00010240 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\Drivers\DDCDrv.sys
2015-09-26 16:09 - 2015-09-26 20:22 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\Windows\System32\Tasks\HardDiskSentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:03 - 2015-09-26 16:04 - 00000000 ____D C:\Program Files\WinRAR
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Program Files\Unlocker
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn Time
2015-09-26 16:00 - 2015-09-26 16:30 - 00000000 ____D C:\Users\Becky\AppData\Roaming\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Users\Public\Documents\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Program Files (x86)\PhraseExpress
2015-09-26 15:59 - 2015-09-26 15:59 - 00003294 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003242 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003238 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003210 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003206 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00002757 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center.lnk
2015-09-26 15:59 - 2015-09-26 15:59 - 00000000 ____D C:\Program Files\Microsoft Mouse and Keyboard Center
2015-09-26 15:50 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-26 15:50 - 2015-09-26 15:50 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Malwarebytes
2015-09-26 15:50 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-09-26 15:40 - 2015-09-28 10:37 - 00003884 _____ C:\Windows\System32\Tasks\Grapyy11710998Updates
2015-09-26 15:40 - 2015-09-28 10:37 - 00003734 _____ C:\Windows\System32\Tasks\MySyy11710998ytemy
2015-09-26 15:39 - 2015-09-28 10:37 - 00003884 _____ C:\Windows\System32\Tasks\Grapy54522894 pdates
2015-09-26 15:39 - 2015-09-28 10:37 - 00003720 _____ C:\Windows\System32\Tasks\MySystemTools
2015-09-26 15:39 - 2015-09-28 10:37 - 00003624 _____ C:\Windows\System32\Tasks\Grap74136321 ptes
2015-09-26 15:39 - 2015-09-28 10:03 - 00003938 _____ C:\Windows\System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954
2015-09-26 15:39 - 2015-09-28 10:03 - 00000374 ____H C:\Windows\Tasks\IHNENOVEVNVDRGKC.job
2015-09-26 15:39 - 2015-09-28 10:03 - 00000000 ____D C:\Program Files (x86)\curtain
2015-09-26 15:39 - 2015-09-26 15:39 - 00003856 _____ C:\Windows\System32\Tasks\69944620
2015-09-26 15:39 - 2015-09-26 15:39 - 00003450 _____ C:\Windows\System32\Tasks\IHNENOVEVNVDRGKC
2015-09-26 15:39 - 2015-09-26 15:39 - 00000110 _____ C:\Users\Becky\AppData\Local\dottmpfile.txt
2015-09-26 15:39 - 2015-09-26 15:39 - 00000050 _____ C:\Windows\key.ini
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Users\Becky\AppData\Local\yuntnani
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Users\Becky\AppData\Local\59159294
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\ProgramData\28341ff220e0446c9fff27c4493d622e
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Program Files (x86)\test
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Program Files (x86)\gusty
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\a
2015-09-26 15:31 - 2015-09-28 10:14 - 00000000 ____D C:\Users\Becky\AppData\Local\Google
2015-09-26 15:31 - 2015-09-28 10:11 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-26 15:31 - 2015-09-28 06:05 - 00000000 ____D C:\Program Files (x86)\MediaPlayerVideos 1.2
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 __SHD C:\Recovery
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 ____D C:\Users\Becky\AppData\Local\PeerDistRepub
2015-09-26 15:30 - 2015-09-26 15:30 - 00568056 _____ C:\Users\Becky\Downloads\ChromeSetup.exe
2015-09-26 15:30 - 2015-09-26 15:30 - 00000000 ____D C:\Program Files (x86)\Siber Systems
2015-09-26 15:29 - 2015-09-26 15:29 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup (1).exe
2015-09-26 15:28 - 2015-09-26 15:28 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64 (1).exe
2015-09-26 15:02 - 2015-09-26 15:02 - 05621954 _____ C:\Users\Becky\Downloads\ASMEDIA_Win7_8_10-Ver3160.zip
2015-09-26 15:02 - 2015-09-26 15:02 - 00000000 ____D C:\Program Files (x86)\ASM106xSATA
2015-09-26 15:01 - 2015-09-26 15:02 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL (1).zip
2015-09-26 15:01 - 2015-09-26 15:01 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 04785968 _____ C:\Users\Becky\Downloads\Chipset_Win10_V10117.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Users\Becky\Downloads\Chipset_Win10_V10117
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Program Files\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 64189410 _____ C:\Users\Becky\Downloads\MEI_Win10_V11001155.zip
2015-09-26 14:58 - 2015-09-26 14:58 - 00001769 _____ C:\Windows\Language_trs.ini
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Downloads\MEI_Win10_V11001155
2015-09-26 14:54 - 2015-09-26 14:54 - 00014336 _____ (godly) C:\Windows\debonair.exe
2015-09-26 14:54 - 2015-09-26 14:54 - 00000019 _____ C:\Windows\SysWOW64\76760595.bat
2015-09-26 14:52 - 2015-09-01 20:20 - 00077400 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-09-26 14:52 - 2015-09-01 19:25 - 03586560 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2015-09-26 14:52 - 2015-09-01 19:25 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2015-09-26 14:52 - 2015-08-27 01:36 - 03620736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-09-26 14:52 - 2015-08-27 01:32 - 00608936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 01:04 - 21874688 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-09-26 14:52 - 2015-08-27 00:55 - 24594944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 00:54 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 02350592 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 01774592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:49 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-09-26 14:52 - 2015-08-27 00:47 - 12503552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-09-26 14:52 - 2015-08-27 00:42 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.PicturePassword.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:39 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:08 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-26 14:52 - 2015-08-20 01:07 - 08019296 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-09-26 14:52 - 2015-08-20 01:06 - 00609592 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-09-26 14:52 - 2015-08-20 01:02 - 22324656 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2015-09-26 14:52 - 2015-08-20 00:21 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2015-09-26 14:52 - 2015-08-20 00:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:13 - 02235904 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:55 - 00373072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-09-26 14:52 - 2015-08-18 02:54 - 01396064 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:27 - 01771592 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 02:12 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2015-09-26 14:52 - 2015-08-18 02:07 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-09-26 14:52 - 2015-08-18 02:04 - 01234944 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-09-26 14:52 - 2015-08-18 02:04 - 00859136 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 01294336 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2015-09-26 14:52 - 2015-08-18 01:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:56 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2015-09-26 14:52 - 2015-08-18 01:55 - 02178560 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00247296 _____ C:\Windows\system32\facecredentialprovider.dll
2015-09-26 14:52 - 2015-08-18 01:52 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:50 - 01795072 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-18 01:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-17 23:44 - 00008847 _____ C:\Windows\system32\ResPriHMImageList
2015-09-26 14:50 - 2015-07-05 05:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-09-26 14:49 - 2015-09-26 14:50 - 00000000 ____D C:\Windows\system32\MRT
2015-09-26 14:49 - 2015-08-26 18:37 - 134753440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 04532304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 02462648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-09-26 14:49 - 2015-08-11 04:23 - 16706560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 04:06 - 02662400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-11 04:05 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-09-26 14:49 - 2015-08-11 04:03 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-09-26 14:49 - 2015-08-11 03:57 - 13024768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 03:45 - 01820672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 02415104 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 01679360 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-09-26 14:49 - 2015-08-08 01:00 - 01985024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-09-26 14:49 - 2015-08-04 23:49 - 00783112 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-09-26 14:49 - 2015-08-04 22:54 - 01274880 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2015-09-26 14:49 - 2015-08-03 21:59 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 08613200 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 01983840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-09-26 14:49 - 2015-08-02 20:56 - 06878256 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 20:22 - 01601536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2015-09-26 14:49 - 2015-08-02 20:18 - 03780096 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2015-09-26 14:49 - 2015-08-02 20:15 - 01290752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2015-09-26 14:49 - 2015-07-30 01:24 - 01561872 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-09-26 14:49 - 2015-07-30 01:16 - 02147080 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-09-26 14:49 - 2015-07-30 01:09 - 01562968 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-09-26 14:49 - 2015-07-30 01:06 - 01043872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-09-26 14:49 - 2015-07-30 01:03 - 02116448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-09-26 14:49 - 2015-07-29 23:26 - 01867160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-09-26 14:49 - 2015-07-29 22:49 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-29 22:15 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:04 - 01714176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-26 00:13 - 06488312 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 23:28 - 05118024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 22:49 - 04760576 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-25 22:38 - 04350464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-23 21:40 - 03248640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-09-26 14:49 - 2015-07-23 21:39 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-09-26 14:49 - 2015-07-21 22:54 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-09-26 14:49 - 2015-07-21 22:11 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-09-26 14:49 - 2015-07-18 02:29 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2015-09-26 14:49 - 2015-07-17 22:52 - 04169728 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-09-26 14:49 - 2015-07-16 21:31 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-09-26 14:49 - 2015-07-15 22:44 - 02741760 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-09-26 14:49 - 2015-07-15 22:27 - 02207744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-09-26 14:49 - 2015-07-14 21:41 - 01135312 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2015-09-26 14:49 - 2015-07-14 21:22 - 02112512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-09-26 14:49 - 2015-07-14 20:47 - 04611584 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-09-26 14:49 - 2015-07-11 19:18 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2015-09-26 14:49 - 2015-07-10 20:17 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 20:04 - 03362816 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-09-26 14:49 - 2015-07-10 20:03 - 03248128 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-09-26 14:49 - 2015-07-10 19:51 - 04398080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 19:41 - 03687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-09-26 14:49 - 2015-07-10 19:40 - 02606080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-09-26 14:49 - 2015-07-10 04:53 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2015-09-26 14:49 - 2015-07-10 04:31 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-09-26 14:48 - 2015-08-12 23:22 - 02093056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2015-09-26 14:48 - 2015-08-12 23:20 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-12 22:53 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-11 05:04 - 01087296 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-09-26 14:48 - 2015-08-11 05:03 - 00442208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-09-26 14:48 - 2015-08-11 05:02 - 00554744 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 05:02 - 00292856 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 05:02 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2015-09-26 14:48 - 2015-08-11 04:52 - 00993104 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:50 - 01643872 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 04048808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-09-26 14:48 - 2015-08-11 04:40 - 02151208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 00918320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-09-26 14:48 - 2015-08-11 04:38 - 00454000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 04:37 - 00243800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 04:26 - 00845664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 04:20 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 04:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2015-09-26 14:48 - 2015-08-11 04:18 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 04:16 - 02416640 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ C:\Windows\system32\diagtrack_wininternal.dll
2015-09-26 14:48 - 2015-08-11 04:13 - 00413184 _____ C:\Windows\system32\diagtrack_win.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 02446336 _____ C:\Windows\system32\InputService.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 04:10 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 04:09 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 01178112 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2015-09-26 14:48 - 2015-08-11 04:06 - 07523328 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\LocationGeofences.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\LocationPermissions.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2015-09-26 14:48 - 2015-08-11 04:01 - 01334784 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 04:00 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 04:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\syncutil.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 03:58 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 03:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01916928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 03:50 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 03:48 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 03:47 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 03:43 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-09-26 14:48 - 2015-08-11 03:42 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01112064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 03:39 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 03:38 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-09-26 14:48 - 2015-08-08 02:29 - 01822280 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-09-26 14:48 - 2015-08-08 02:01 - 01533496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-09-26 14:48 - 2015-08-05 22:17 - 00237392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-09-26 14:48 - 2015-08-05 22:17 - 00200528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-09-26 14:48 - 2015-08-05 21:22 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2015-09-26 14:48 - 2015-08-04 23:29 - 00644128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-09-26 14:48 - 2015-08-04 23:00 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-09-26 14:48 - 2015-08-04 22:39 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-09-26 14:48 - 2015-08-03 23:07 - 00102752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-09-26 14:48 - 2015-08-03 23:06 - 00583128 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-09-26 14:48 - 2015-08-03 23:06 - 00243248 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-09-26 14:48 - 2015-08-03 22:23 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2015-09-26 14:48 - 2015-08-03 21:47 - 00898560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2015-09-26 14:48 - 2015-08-02 21:32 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:19 - 00505696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2015-09-26 14:48 - 2015-08-02 21:19 - 00393568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-09-26 14:48 - 2015-08-02 21:18 - 00594472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2015-09-26 14:48 - 2015-08-02 21:18 - 00046432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys
2015-09-26 14:48 - 2015-08-02 21:17 - 00516960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-09-26 14:48 - 2015-08-02 21:17 - 00052264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-09-26 14:48 - 2015-08-02 21:12 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:49 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:31 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2015-09-26 14:48 - 2015-08-02 20:30 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_UserAccount.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModelShim.dll
2015-09-26 14:48 - 2015-08-02 20:23 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:22 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2015-09-26 14:48 - 2015-08-02 20:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2015-09-26 14:48 - 2015-08-02 20:18 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2015-09-26 14:48 - 2015-08-02 20:14 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2015-09-26 14:48 - 2015-08-02 20:10 - 01162240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2015-09-26 14:48 - 2015-08-02 20:06 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:03 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 19:59 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2015-09-26 14:48 - 2015-07-30 01:23 - 00527952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-09-26 14:48 - 2015-07-30 01:21 - 00816576 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01200400 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01025840 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:15 - 00632168 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-09-26 14:48 - 2015-07-30 01:14 - 00333168 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-09-26 14:48 - 2015-07-30 01:05 - 00501008 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-09-26 14:48 - 2015-07-30 00:24 - 00252768 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2015-09-26 14:48 - 2015-07-29 23:29 - 00705520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-09-26 14:48 - 2015-07-29 23:26 - 00877016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 00713312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00445240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00407616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00285632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00896144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00507696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2015-09-26 14:48 - 2015-07-29 23:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerShellext.exe
2015-09-26 14:48 - 2015-07-29 23:08 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2015-09-26 14:48 - 2015-07-29 23:08 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2015-09-26 14:48 - 2015-07-29 22:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00521216 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00487424 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:42 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2015-09-26 14:48 - 2015-07-29 22:40 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 01420288 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-09-26 14:48 - 2015-07-29 22:34 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 22:29 - 00654848 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-09-26 14:48 - 2015-07-29 22:07 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:04 - 00335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 21:59 - 00473088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 21:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-09-26 14:48 - 2015-07-26 00:16 - 01018568 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-09-26 14:48 - 2015-07-26 00:16 - 00858408 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-09-26 14:48 - 2015-07-26 00:14 - 01294352 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-09-26 14:48 - 2015-07-26 00:14 - 01123400 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-09-26 14:48 - 2015-07-25 22:49 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:47 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2015-09-26 14:48 - 2015-07-25 22:35 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00750592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:29 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2015-09-26 14:48 - 2015-07-23 22:30 - 00498016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-09-26 14:48 - 2015-07-23 22:18 - 00980832 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2015-09-26 14:48 - 2015-07-23 22:17 - 00695136 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 22:17 - 00521568 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-09-26 14:48 - 2015-07-23 22:12 - 00584544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 21:55 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:52 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:46 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2015-09-26 14:48 - 2015-07-23 21:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll
2015-09-26 14:48 - 2015-07-23 21:34 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2015-09-26 14:48 - 2015-07-23 21:30 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-09-26 14:48 - 2015-07-23 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2015-09-26 14:48 - 2015-07-23 21:25 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-09-26 14:48 - 2015-07-23 21:24 - 00925696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-09-26 14:48 - 2015-07-22 00:18 - 00808856 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-22 00:15 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-09-26 14:48 - 2015-07-22 00:02 - 00966424 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 23:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-09-26 14:48 - 2015-07-21 23:02 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:53 - 00762896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 22:46 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 22:21 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-09-26 14:48 - 2015-07-21 22:13 - 00677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-26 14:48 - 2015-07-21 22:10 - 00828416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:07 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 22:03 - 00623616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 21:50 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-18 23:04 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2015-09-26 14:48 - 2015-07-18 22:54 - 01168736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-09-26 14:48 - 2015-07-18 22:23 - 00505344 _____ C:\Windows\system32\EditionUpgradeManagerObj.dll
2015-09-26 14:48 - 2015-07-18 22:18 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-09-26 14:48 - 2015-07-18 22:02 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 21:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 03:47 - 00082616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2015-09-26 14:48 - 2015-07-18 02:43 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-18 02:37 - 01043968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-18 02:28 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-18 02:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2015-09-26 14:48 - 2015-07-18 00:17 - 00097128 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2015-09-26 14:48 - 2015-07-18 00:02 - 00290312 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2015-09-26 14:48 - 2015-07-17 23:06 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 01411072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
2015-09-26 14:48 - 2015-07-17 22:50 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-09-26 14:48 - 2015-07-17 22:49 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-09-26 14:48 - 2015-07-17 22:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-09-26 14:48 - 2015-07-16 23:23 - 00934752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2015-09-26 14:48 - 2015-07-16 23:13 - 00601344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-09-26 14:48 - 2015-07-16 23:12 - 00630160 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-09-26 14:48 - 2015-07-16 23:07 - 00425824 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 21:36 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2015-09-26 14:48 - 2015-07-16 21:33 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2015-09-26 14:48 - 2015-07-16 21:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\omadmprc.exe
2015-09-26 14:48 - 2015-07-16 21:32 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 07051264 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 21:24 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00869376 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2015-09-26 14:48 - 2015-07-16 21:18 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 21:05 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 20:56 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2015-09-26 14:48 - 2015-07-16 20:53 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 20:51 - 05076480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 20:50 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2015-09-26 14:48 - 2015-07-16 20:44 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 00:39 - 00061280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2015-09-26 14:48 - 2015-07-15 23:09 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2015-09-26 14:48 - 2015-07-15 23:04 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 23:03 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2015-09-26 14:48 - 2015-07-15 22:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2015-09-26 14:48 - 2015-07-15 22:47 - 00754688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 22:45 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:43 - 01602560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:41 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2015-09-26 14:48 - 2015-07-15 22:40 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2015-09-26 14:48 - 2015-07-15 22:36 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll
2015-09-26 14:48 - 2015-07-15 22:35 - 01521664 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2015-09-26 14:48 - 2015-07-15 22:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2015-09-26 14:48 - 2015-07-15 22:32 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:29 - 01380864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:19 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2015-09-26 14:48 - 2015-07-14 22:21 - 01365072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 01591856 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 00325984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-09-26 14:48 - 2015-07-14 21:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ C:\Windows\system32\LicenseManagerApi.dll
2015-09-26 14:48 - 2015-07-14 20:57 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\OmaDmAgent.dll
2015-09-26 14:48 - 2015-07-14 20:41 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.ProxyStub.dll
2015-09-26 14:48 - 2015-07-14 20:35 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\unenrollhook.dll
2015-09-26 14:48 - 2015-07-14 20:27 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.PAL.Desktop.dll
2015-09-26 14:48 - 2015-07-13 22:00 - 00208736 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:37 - 00181088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:04 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys
2015-09-26 14:48 - 2015-07-13 20:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-09-26 14:48 - 2015-07-13 20:49 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2015-09-26 14:48 - 2015-07-13 20:38 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-09-26 14:48 - 2015-07-13 20:20 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2015-09-26 14:48 - 2015-07-12 19:01 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2015-09-26 14:48 - 2015-07-12 18:30 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2015-09-26 14:48 - 2015-07-11 19:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2015-09-26 14:48 - 2015-07-11 19:25 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2015-09-26 14:48 - 2015-07-11 18:46 - 00441344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2015-09-26 14:48 - 2015-07-10 20:28 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:07 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 20:05 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 20:03 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-09-26 14:48 - 2015-07-10 20:02 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:01 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:57 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 19:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 19:42 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 03579904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-09-26 14:48 - 2015-07-10 19:34 - 00294912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 10:51 - 00823336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 10:47 - 00265480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-09-26 14:48 - 2015-07-10 10:00 - 01101792 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 09:52 - 00335248 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-09-26 14:48 - 2015-07-10 05:59 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SignInOptions.dll
2015-09-26 14:48 - 2015-07-10 05:42 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:10 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:07 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\PackageInspector.exe
2015-09-26 14:48 - 2015-07-10 05:05 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2015-09-26 14:48 - 2015-07-10 04:35 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-09-26 14:48 - 2015-07-10 04:29 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2015-09-26 14:46 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Samsung
2015-09-26 14:45 - 2015-09-26 14:45 - 00236696 _____ C:\Windows\system32\SBuySupplies.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00168288 _____ C:\Windows\system32\us006ci.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00099848 _____ (SS) C:\Windows\system32\us006ci.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\system32\us006lm.dll
2015-09-26 14:24 - 2015-09-26 22:36 - 00000000 ____D C:\Users\Becky\AppData\Local\Comms
2015-09-26 14:21 - 2015-09-26 14:21 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-26 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-13 16:57 - 00574256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-09-26 14:17 - 2015-08-26 19:37 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-09-26 14:17 - 2015-08-26 19:37 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01710568 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-09-26 14:16 - 2015-09-21 17:55 - 11198080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 01567576 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-09-26 14:16 - 2015-09-18 17:08 - 00204648 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 00040280 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 42840184 _____ C:\Windows\system32\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 22559352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 18569848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 17934400 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 16646112 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15631128 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15336024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 14945040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 13666840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12611632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12191856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03484216 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03077544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02354808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02105976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01898104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01178248 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01075320 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01064056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01001440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00986416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00945272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00787384 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00632664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00408184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00387720 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00376440 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00364152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00339760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00316120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00177088 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00072504 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00050472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-09-26 14:12 - 2015-09-26 14:13 - 304224616 _____ (NVIDIA Corporation) C:\Users\Becky\Downloads\355.98-desktop-win10-64bit-international-whql.exe
2015-09-26 14:11 - 2015-09-26 14:11 - 00061037 _____ C:\Windows\SysWOW64\CCCInstall_201509261211117521.log
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Macromedia
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\ATI
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\MicrosoftEdge
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\ATI
2015-09-26 14:10 - 2015-09-26 14:10 - 00000000 ____D C:\Users\Becky\AppData\Local\NetworkTiles
2015-09-26 14:08 - 2015-09-26 14:08 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA
2015-09-26 14:07 - 2015-09-28 10:09 - 00875126 _____ C:\Windows\system32\PerfStringBackup.INI
2015-09-26 14:07 - 2015-09-28 10:03 - 00000000 ____D C:\ProgramData\NVIDIA
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:07 - 00466736 _____ (Microsoft Corporation) C:\Windows\system32\coin98itp.dll
2015-09-26 14:07 - 2015-09-26 14:07 - 00193336 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2015-09-26 14:07 - 2015-09-13 17:04 - 06885168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 03496056 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 02558584 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00937776 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-09-26 14:07 - 2015-09-13 17:04 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-09-26 14:07 - 2015-09-11 07:17 - 05231082 _____ C:\Windows\system32\nvcoproc.bin
2015-09-26 14:06 - 2015-09-26 14:06 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435354.dll
2015-09-26 14:06 - 2015-09-26 14:06 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435354.dll
2015-09-26 14:06 - 2015-09-13 19:24 - 00034098 _____ C:\Windows\system32\nvinfo.pb
2015-09-26 14:05 - 2015-09-26 14:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-09-26 13:40 - 2015-09-26 20:56 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-26 13:40 - 2015-09-26 13:40 - 30760944 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 25308656 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 21632992 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 15727072 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 14312416 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 12062040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 10191264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 09191312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08979760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08865496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08009344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07575664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 01468224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01257952 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01213192 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01196032 _____ C:\Windows\system32\amdocl_as64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01070592 _____ C:\Windows\system32\amdocl_ld64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01005552 _____ C:\Windows\SysWOW64\amdocl_as32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00874480 _____ (AMD) C:\Windows\system32\coinst_15.20.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00807424 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00681456 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00675296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\system32\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00452576 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00377312 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00322868 _____ C:\Windows\system32\ativvaxy_vi.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00321200 _____ C:\Windows\system32\ativvaxy_vi_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00256992 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00255808 _____ C:\Windows\system32\ativvaxy_cz_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00250884 _____ C:\Windows\system32\ativvaxy_FJ.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00249088 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00243696 _____ C:\Windows\system32\clinfo.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00234420 _____ C:\Windows\system32\ativvaxy_cik.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00232752 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00201184 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00170464 _____ C:\Windows\system32\atieah64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00169152 _____ C:\Windows\system32\ativce03.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00162240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00152560 _____ C:\Windows\SysWOW64\atieah32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00152032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00143048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00131592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00113880 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111600 _____ C:\Windows\system32\hsa-thunk64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111088 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00102384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00100816 _____ C:\Windows\system32\ativce02.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00095216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00089520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00085472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00082680 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00073712 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00071152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00069600 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00064496 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00062432 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00061408 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00059360 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00039904 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-09-26 13:39 - 2015-09-26 13:40 - 47795680 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 72130592 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 39723504 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 27544560 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 22328800 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 14065952 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13243904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13108552 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07181616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07104896 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06486000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06273344 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05836400 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 05464672 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05344904 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05076976 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 04585728 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 03653631 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-09-26 13:39 - 2015-09-26 13:39 - 03337432 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03309264 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03270464 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03200501 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 03019040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02955008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02856712 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02720000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-09-26 13:39 - 2015-09-26 13:39 - 02662632 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02522728 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02453480 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02218936 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02119296 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02058880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01991776 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01985568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01804928 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01768192 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01624752 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01613712 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01530872 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01456472 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01416832 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01403096 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01354808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01351688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01231256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01183360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01141200 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01015616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01012560 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00982248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00978208 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00962432 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940640 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940328 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00905048 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00891160 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00889888 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00840048 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00833798 _____ C:\Windows\system32\amdicdxx.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00765128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00759208 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00742536 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00723232 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00713912 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00693024 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00692520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00659872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00632352 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00610136 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00588624 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00583168 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-09-26 13:39 - 2015-09-26 13:39 - 00545824 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00527824 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00517464 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00513712 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00479992 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00472832 _____ C:\Windows\system32\amdmiracast.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00461272 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00460448 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00458016 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00453848 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00440736 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00399456 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00393480 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00374096 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00366976 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00355496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352424 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00342280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00339136 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00322032 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00283928 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00267984 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264968 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264896 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00263944 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00242768 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00235040 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00232712 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00225504 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00220136 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00213488 _____ C:\Windows\system32\amdgfxinfo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00205640 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00198640 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00182888 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00176480 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00168936 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00167456 _____ C:\Windows\system32\amde31a.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00161960 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00144192 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00143344 _____ C:\Windows\system32\amdhdl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00132080 _____ C:\Windows\SysWOW64\amdhdl32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00131024 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00128504 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00127296 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00120712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00114008 _____ C:\Windows\system32\audioLibVc.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00103424 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00102912 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdWT6.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 00100544 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097912 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00094176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00093152 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00085096 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00049632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00032400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00002338 _____ C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ___RD C:\Users\Becky\OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\system32\DAX2
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Program Files\Realtek
2015-09-26 13:38 - 2015-09-28 10:02 - 00000000 ____D C:\Users\Becky
2015-09-26 13:38 - 2015-09-28 05:39 - 00000000 ____D C:\Users\Becky\AppData\Local\Packages
2015-09-26 13:38 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Adobe
2015-09-26 13:38 - 2015-09-26 17:45 - 00000000 ____D C:\Users\Becky\AppData\Local\VirtualStore
2015-09-26 13:38 - 2015-09-26 13:38 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_defaultuser0_HistoryPrediction.bin
2015-09-26 13:38 - 2015-09-26 13:38 - 00000020 ___SH C:\Users\Becky\ntuser.ini
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\TileDataLayer
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\Publishers
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 __RSD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-26 13:36 - 2015-09-26 13:36 - 00000000 ____D C:\Windows\CSC
2015-09-26 13:36 - 2015-07-10 05:59 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-09-14 20:21 - 2015-09-14 20:21 - 00005120 _____ C:\Users\Becky\AppData\Local\installer4.exe
2015-09-14 20:20 - 2015-09-14 20:20 - 00005120 _____ C:\Users\Becky\AppData\Local\installer.exe
2015-09-10 14:00 - 2015-09-10 14:00 - 00970912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00963232 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00660128 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00455328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00356528 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00247984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib120.dll
2015-09-10 08:37 - 2015-09-10 08:37 - 00008704 _____ C:\Users\Becky\AppData\Local\uid.exe
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-09-28 10:03 - 2015-07-10 07:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-28 10:03 - 2015-07-10 07:20 - 05043048 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-28 10:02 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\sru
2015-09-28 10:02 - 2015-07-10 04:05 - 00131072 ___SH C:\Windows\system32\config\BBI
2015-09-28 06:24 - 2015-07-10 05:55 - 00000000 ____D C:\Windows\CbsTemp
2015-09-28 06:17 - 2015-07-10 06:04 - 00000167 _____ C:\Windows\win.ini
2015-09-27 15:33 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\AppReadiness
2015-09-27 04:00 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\appcompat
2015-09-26 20:56 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-09-26 20:23 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-09-26 17:41 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klpd.sys
2015-09-26 17:35 - 2015-07-10 06:04 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-09-26 17:35 - 2015-07-10 04:05 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-09-26 16:29 - 2015-07-10 06:04 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-09-26 16:16 - 2015-07-10 08:29 - 00000000 ____D C:\Windows\ShellNew
2015-09-26 16:13 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\System
2015-09-26 15:30 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\Recovery
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 __RHD C:\Users\Default
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Sysprep
2015-09-26 14:54 - 2015-07-10 08:29 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PurchaseDialog
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\SysWOW64\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\appraiser
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Provisioning
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Dism
2015-09-26 14:08 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\LiveKernelReports
2015-09-26 14:07 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Help
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PrintDialog
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\MiracastView
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\spool
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\restore
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-09-15 11:12 - 2015-07-10 06:06 - 00812008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-09-15 11:12 - 2015-07-10 06:06 - 00178152 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Files in the root of some directories =======
 
2015-09-26 15:39 - 2015-09-26 15:39 - 0000110 _____ () C:\Users\Becky\AppData\Local\dottmpfile.txt
2015-09-14 20:20 - 2015-09-14 20:20 - 0005120 _____ () C:\Users\Becky\AppData\Local\installer.exe
2015-09-14 20:21 - 2015-09-14 20:21 - 0005120 _____ () C:\Users\Becky\AppData\Local\installer4.exe
2015-09-10 08:37 - 2015-09-10 08:37 - 0008704 _____ () C:\Users\Becky\AppData\Local\uid.exe
2015-09-26 13:39 - 2015-09-26 13:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-28 04:15 - 2015-09-28 04:21 - 0000031 _____ () C:\ProgramData\fd4_sys.d
 
Files to move or delete:
====================
C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job
 

==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 

LastRegBack: 2015-09-26 15:30
 
==================== End of FRST.txt ============================

Addition:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Becky (2015-09-28 10:38:14)
Running from C:\Users\Becky\Desktop
Windows 10 Enterprise (X64) (2015-09-26 18:37:20)
Boot Mode: Normal
==========================================================
 

==================== Accounts: =============================
 
Administrator (S-1-5-21-3588804255-3441825186-3011144637-500 - Administrator - Disabled)
Becky (S-1-5-21-3588804255-3441825186-3011144637-1001 - Administrator - Enabled) => C:\Users\Becky
DefaultAccount (S-1-5-21-3588804255-3441825186-3011144637-503 - Limited - Disabled)
Guest (S-1-5-21-3588804255-3441825186-3011144637-501 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Ad-Aware Antivirus (Disabled - Out of date) {B0CC18C6-E527-6EE6-874C-9D19920E5619}
AV: Kaspersky Total Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Total Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Ad-Aware Antivirus (Disabled - Out of date) {0BADF922-C31D-6168-BDFC-A66BE9891CA4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Total Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}
FW: Ad-Aware Firewall (Disabled) {88F799E3-AF48-6FBE-AC13-342C6CDD1162}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Acronis True Image Home (HKLM-x32\...\{633A06C3-B709-479A-AAB3-5EE94AD9EE4B}) (Version: 11.0.8053 - Acronis)
Ad-Aware Antivirus (HKLM\...\{18A24EC3-2BA0-4438-AA5C-A3CF81194D22}_AdAwareUpdater) (Version: 11.8.586.8535 - Lavasoft)
AdAwareInstaller (Version: 11.8.586.8535 - Lavasoft) Hidden
AdAwareUpdater (Version: 11.8.586.8535 - Lavasoft) Hidden
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.12 - Adobe Systems)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.1 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 1.4.0 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.3.0.151 - Adobe Systems Incorporated)
Adobe Creative Suite 5.5 Master Collection (HKLM-x32\...\{D57FC112-312E-4D70-860F-2DB8FB6858F0}) (Version: 5.5 - Adobe Systems Incorporated)
Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Fireworks CS6 (HKLM-x32\...\{CA7C485C-7A89-11E1-B2C8-CD54B377BC52}) (Version: 12.0.1 - Adobe Systems Incorporated)
Adobe Flash Builder 4.7 (64 Bit) (HKLM-x32\...\{848DE8E1-521D-4748-A158-517708107EF3}) (Version: 4.7 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Professional CC 2015 (HKLM-x32\...\{31390329-FFF0-11E4-85AD-AF2C4143F080}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.1.0 - Adobe Systems Incorporated)
Adobe InCopy CC 2015 (HKLM-x32\...\{9EF1DB49-6D32-1014-93B7-EB62FA572532}) (Version: 11.0.1.105 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.1.0.122 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.0.2 - Adobe Systems Incorporated)
Adobe Muse CC 2015 (HKLM-x32\...\{25CC1EC0-19D9-11E5-952D-BD72CD08879E}) (Version: 2015.0.2.4 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.2 - Adobe Systems Incorporated)
AllShare Framework DMS (HKLM\...\{83232C27-8C3F-44A5-9EB2-BB7161228ADD}) (Version: 1.3.23 - Samsung)
AntimalwareEngine (Version: 3.0.98.0 - Lavasoft) Hidden
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.6.0000 - Asmedia Technology)
AV Bros. Page Curl Pro 2.2 (Remove Only) (HKLM-x32\...\AV Bros. Page Curl Pro 2.2) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Color Wheel Expert 4.2 (HKLM-x32\...\Color Wheel Expert_is1) (Version:  - )
Font Manager 3.5 (HKLM-x32\...\Font Manager_is1) (Version:  - Alexander G Styopkin)
FontDoctor for Windows version 8.1.1 (HKLM-x32\...\{84C28FDA-A722-429B-8079-1015AF06754D}}_is1) (Version: 8.1.1 - Extensis Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version:  - HDS)
i1Profiler (HKLM-x32\...\i1Profiler_is1) (Version: 1.5.4 - X-Rite)
Intel® Chipset Device Software (x32 Version: 10.1.1.7 - Intel® Corporation) Hidden
Kaspersky Total Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Total Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
LogMeIn Ignition (HKLM-x32\...\{FDCDF6C3-4DF5-42D5-A1DC-9F8A1A2CB68A}) (Version: 1.1.51 - LogMeIn, Inc.)
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.6.140.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 41.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 en-US)) (Version: 41.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.98 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.98 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PhraseExpress v11.0.121 (HKLM-x32\...\PhraseExpress_is1) (Version: 11.0.121 - Bartels Media GmbH)
Popcorn Time (HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Popcorn Time) (Version:  - Popcorn Official)
QuickBooks Pro 2008 (HKLM-x32\...\{8ECB8220-F422-4BEB-9596-97033C533702}) (Version: 18.0.4003.606 - Intuit Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7572 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 2.5.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.7 - VS Revo Group, Ltd.)
RoboForm 7-9-16-7 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-16-7 - Siber Systems)
Samsung Link 2.0.0.1503181422 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1503181422 - Copyright 2013 SAMSUNG)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden
SmartFTP Client (HKLM\...\{3C51045E-B5F6-43CD-910C-133E0976F4F4}) (Version: 5.0.1353.0 - SmartSoft Ltd.)
SupportSoft Assisted Service (HKLM-x32\...\{5A3F6A80-7913-475E-8B96-477A952CFA43}) (Version: 15 - SupportSoft)
Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version:  - Elaborate Bytes)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinZip 11.1 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}) (Version: 11.1.7466 - WinZip Computing, S.L. )
X-Rite Device Services Manager (HKLM-x32\...\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}) (Version: 2.3.81 - X-Rite)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-C8B18A6F583E}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
 
==================== Restore Points =========================
 
26-09-2015 13:36:25 Windows Modules Installer
27-09-2015 23:08:49 Installed Adobe Acrobat XI Pro.
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-07-10 06:04 - 2015-07-10 06:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {00E4D256-3065-4BE4-B4F5-7758AA2271C5} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform....GJKJMIBNKJHIKJ"
Task: {031986C1-4FDA-4B99-8E75-D0717DFC99FE} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-09-10] (Microsoft)
Task: {1A8E1FC6-0828-41B1-94E4-4F9CE12B61AC} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_Becky => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [2011-09-14] (H.D.S. Hungary)
Task: {1E213A51-DEFA-433D-81B9-CEF47A3ADAD2} - System32\Tasks\Grapy54522894 pdates => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {2DA9898D-CBE4-487A-AC60-65993068B4D2} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {38D3D2E2-2CBA-46E1-AB1F-AFA69336C0C2} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {3C9CF5C8-F522-45A5-8DAF-7F99063124FD} - \Isiafcrakri -> No File <==== ATTENTION
Task: {4405DC50-CC74-47CC-A9D7-A9DB096BF139} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-28] (Adobe Systems Incorporated)
Task: {46EE90D4-C7A9-432D-971C-BED34A7698EC} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-09-28] (Siber Systems)
Task: {52544F2B-7E7E-4761-96A7-67244C0ED1A7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {53770880-0618-4047-BB51-DAE86A0582C7} - System32\Tasks\Grapyy11710998Updates => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {5786D43D-B8CB-4309-80B6-411DDC45DFF0} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [2014-04-10] (X-Rite Inc.)
Task: {6513EFD9-225D-4183-925E-D7847C23D135} - \PhraseProfessor Auto Updater 1.10.0.24 Core -> No File <==== ATTENTION
Task: {706166D3-7AB5-4ABA-BE1E-E20F018DD0AB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-08-26] (Microsoft Corporation)
Task: {8404DA92-D17B-4FD4-9E21-79E0762A3691} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {85B88B76-5950-4D7F-8099-7CA1369BE4BD} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {8E82897E-7669-4D6E-ADC7-B627CDB635F0} - System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70} => C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exe <==== ATTENTION
Task: {9382E907-C47C-47E1-8E6C-ED0C13ADC718} - System32\Tasks\69944620 => C:\Program Files (x86)\glow\branch.exe [2015-09-26] () <==== ATTENTION
Task: {A39D58FD-3C3F-4666-9B70-0CAEA32ECD72} - System32\Tasks\IHNENOVEVNVDRGKC => C:\ProgramData\Service1291\Service1291.exe <==== ATTENTION
Task: {AF61581E-6DD0-48CF-A39B-79FC335B5DEF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {B7A8B930-20A0-457D-8546-7EC9A0984FC5} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)
Task: {B9FFC954-D5BF-42F4-A8B7-A49F5035C8F4} - System32\Tasks\Grap74136321 ptes => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: {C7D90578-64C7-449D-A439-C16A8DEB8946} - System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954 => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: {CCA28FBA-0ACA-4C56-BF2F-4828F4809D59} - System32\Tasks\MySyy11710998ytemy => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {D5F3766D-7CF2-4642-96C8-8B5CB543964C} - \PhraseProfessor Auto Updater 1.10.0.24 Pending Update -> No File <==== ATTENTION
Task: {E040785C-1D90-4E90-B57F-EF52EB8C4DAE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {EF06B720-CB47-4AFF-9E2E-A8D719254E65} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {F41E50A1-B9FC-4087-AAFB-B38CA73A1398} - System32\Tasks\MySystemTools => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: {F435490F-7B77-4A31-A991-F2F4040181C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {FDC4929D-DCAA-4BFB-9B18-1EC33810F321} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {FF63B5E5-EEFA-4906-8429-1CB8090CA685} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-09-04] (Adobe Systems Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\IHNENOVEVNVDRGKC.job => C:\ProgramData\Service1291\Service1291.exe <==== ATTENTION
Task: C:\Windows\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe
Task: C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job => C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exeǼ/exenoupdates  /exelang 0 /noprereqs  /qr   AI_RESUME=1 ADDLOCAL=MainFeature,XRDdrivers64 ACTION=INSTALL EXECUTEACTION=INSTALL ROOTDRIVE I:\ AI_PREREQFILES=C:\Users\Becky\AppData\Local\Temp\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}\drivers64.msi AI_PREREQDIRS=C:\Users\Becky\AppData\Local\Temp AI_SETUPEXEPATH=C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exe SETUPEXEDIR=C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp <==== ATTENTION
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00116528 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\System32\us006lm.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-27 15:54 - 2015-08-27 15:54 - 00712432 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe
2015-08-27 15:57 - 2015-08-27 15:57 - 00025856 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_system-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00123656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_filesystem-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00057096 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_date_time-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 13002488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareServiceKernel.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 03549904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\RCF.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00107776 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_thread-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00911616 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_regex-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00035072 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_chrono-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00709360 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareActivation.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00474368 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareApplicationUpdater.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00847600 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareGamingMode.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00101096 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareReset.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00123104 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTime.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01011968 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDefinitionsUpdater.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00905488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDefinitionsUpdaterScheduler.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01146608 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareIgnoreList.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00243440 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareQuarantine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01050880 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiMalwareEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00206080 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiRootkitEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01210616 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScannerHistory.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01373416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScanner.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00036096 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_timer-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01019128 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScannerScheduler.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01190656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareRealTimeProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00244472 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareIncompatibles.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00938728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiSpam.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00883440 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiPhishing.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 03263736 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareParentalControl.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 02985208 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareWebProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01324280 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareEmailProtection.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00059656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_iostreams-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01312512 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareNetworkProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01013992 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwarePromo.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00365288 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareFeedback.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 02958592 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareThreatWorkAlliance.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01261800 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwarePinCode.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01014504 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareNotice.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01014000 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAvcEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01222416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareRealTimeProtectionHistory.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00469744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareStatistics.dll
2007-10-30 20:51 - 2007-10-30 20:51 - 00492720 _____ () C:\Program Files (x86)\Common Files\Acronis\Fomatik\TrueImageTryStartService.exe
2015-09-26 22:45 - 2015-03-18 14:22 - 00025088 _____ () C:\Program Files\Samsung\Samsung Link\JniSys.dll
2015-09-26 22:45 - 2015-03-18 14:22 - 02633728 _____ () C:\Program Files\Samsung\Samsung Link\scone_proxy.dll
2015-09-26 22:45 - 2015-03-18 14:22 - 02540544 _____ () C:\Program Files\Samsung\Samsung Link\scone_stub.dll
2013-12-21 11:25 - 2013-12-21 11:25 - 00036864 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\JNIInterface.dll
2013-12-21 11:26 - 2013-12-21 11:26 - 00144384 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\ASFAPI.dll
2013-12-21 11:27 - 2013-12-21 11:27 - 00018944 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\MediaDB_Manager.dll
2013-10-22 09:52 - 2013-10-22 09:52 - 00030720 _____ () C:\Windows\SYSTEM32\MediaDB64.dll
2013-10-22 09:52 - 2013-10-22 09:52 - 00908800 _____ () C:\Windows\SYSTEM32\ContentDirectoryPresenter64.dll
2013-12-21 11:27 - 2013-12-21 11:27 - 00521728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\64bit\DMS_Manager.dll
2013-07-23 19:19 - 2013-07-23 19:19 - 00016896 _____ () C:\Windows\SYSTEM32\boost_system-vc90-mt-1_47.dll
2013-07-23 19:19 - 2013-07-23 19:19 - 00299520 _____ () C:\Windows\SYSTEM32\boost_serialization-vc90-mt-1_47.dll
2013-07-23 19:19 - 2013-07-23 19:19 - 00049152 _____ () C:\Windows\SYSTEM32\boost_date_time-vc90-mt-1_47.dll
2013-07-23 19:19 - 2013-07-23 19:19 - 00058880 _____ () C:\Windows\SYSTEM32\boost_thread-vc90-mt-1_47.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-09-11 19:02 - 2015-09-11 19:02 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898728 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2010-07-14 23:44 - 2010-07-14 23:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 02794744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareShellExtension.dll
2015-09-26 14:54 - 2015-09-26 14:54 - 00012288 _____ () C:\Program Files (x86)\glow\branch.exe
2015-07-10 05:59 - 2015-07-10 05:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 05:59 - 2015-07-10 05:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-09-26 14:54 - 2015-09-26 14:54 - 00041716 _____ () C:\Program Files (x86)\curtain\relation.exe
2015-09-26 22:45 - 2015-03-18 14:22 - 00049664 _____ () C:\Program Files\Samsung\Samsung Link\JniIO.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 09558752 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTray.exe
2015-08-27 15:57 - 2015-08-27 15:57 - 00492288 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_locale-vc120-mt-1_57.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 02266344 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\HtmlFramework.dll
2015-08-27 15:57 - 2015-08-27 15:57 - 00868600 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTrayDefaultSkin.dll
2015-09-26 16:11 - 2013-11-05 13:43 - 02519552 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe
2015-09-11 19:01 - 2015-09-11 19:01 - 31958688 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2015-09-26 14:49 - 2015-08-02 20:11 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 06:00 - 2015-07-10 08:28 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-09-26 14:49 - 2015-08-11 03:58 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-09-26 14:49 - 2015-08-02 20:09 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 06:00 - 2015-07-10 08:28 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 17124072 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDesktop.exe
2015-08-27 15:57 - 2015-08-27 15:57 - 00447760 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_program_options-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 07419648 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDesktopDefaultSkin.dll
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\kpcengine.2.3.dll
2013-12-11 16:46 - 2013-12-11 16:46 - 01114624 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DMSManager.dll
2013-07-23 19:18 - 2013-07-23 19:18 - 00227840 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_serialization-vc90-mt-1_47.dll
2013-07-23 19:18 - 2013-07-23 19:18 - 00038912 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_date_time-vc90-mt-1_47.dll
2013-07-23 19:18 - 2013-07-23 19:18 - 00012800 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_system-vc90-mt-1_47.dll
2013-07-23 19:18 - 2013-07-23 19:18 - 00046592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\boost_thread-vc90-mt-1_47.dll
2013-10-22 09:48 - 2013-10-22 09:48 - 00707072 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ContentDirectoryPresenter.dll
2013-10-24 16:53 - 2013-10-24 16:53 - 00107008 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMCDP.dll
2013-12-11 16:46 - 2013-12-11 16:46 - 00102400 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\FolderCDP.dll
2013-10-24 16:53 - 2013-10-24 16:53 - 00032768 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\Autobackup.dll
2013-04-19 16:38 - 2013-04-19 16:38 - 00055808 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RosettaAllShare.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00520234 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\sqlite3.dll
2013-12-11 16:46 - 2013-12-11 16:46 - 00077312 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MetadataFramework.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 05717504 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\DCMImgExtractor.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00450560 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\MoodExtractor.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00028672 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AutoChaptering.dll
2013-10-25 19:49 - 2013-10-25 19:49 - 00028160 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AudioExtractor.dll
2013-12-11 16:45 - 2013-12-11 16:45 - 00017920 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoExtractor.dll
2013-10-25 19:53 - 2013-10-25 19:53 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageExtractor.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00013824 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\TextExtractor.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00147456 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexpat.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00012288 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoThumb.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00023040 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\RichInfoDriver.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00064000 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ID3Driver.dll
2013-10-25 19:53 - 2013-10-25 19:53 - 00117248 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ThumbnailMaker.dll
2013-12-11 16:45 - 2013-12-11 16:45 - 00134144 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\VideoMetadataDriver.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\SECMetaDriver.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00024064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\photoDriver.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 04671488 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avcodec-52.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00686080 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avformat-52.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00070656 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\avutil-50.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00152064 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\swscale-0.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00289792 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libThumbnail.dll
2013-10-25 19:53 - 2013-10-25 19:53 - 01033728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\ImageMagickWrapper.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00366592 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\tag.dll
2013-10-25 19:48 - 2013-10-25 19:48 - 00290816 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libKeyFrame.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00399826 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\libexif-12.dll.dll
2013-02-14 19:42 - 2013-02-14 19:42 - 00044032 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\us.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 01588224 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 02633728 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898720 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-09-26 14:17 - 2015-08-26 19:37 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-09-28 10:04 - 2015-09-28 10:04 - 00011264 _____ () C:\Users\Becky\AppData\Local\Temp\nsmD12B.tmp\System.dll
2015-09-26 16:11 - 2014-03-29 00:50 - 44483584 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\Prism.dll
2015-09-26 16:11 - 2014-05-14 12:46 - 07982592 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtGui4.dll
2015-09-26 16:11 - 2014-05-14 12:46 - 02147328 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtCore4.dll
2015-09-26 16:11 - 2014-05-14 12:46 - 03449344 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\CxF2_VC90MD_2.1.dll
2015-09-26 16:11 - 2014-05-14 12:46 - 00898560 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\libxml2.dll
2015-09-26 16:11 - 2014-05-14 12:46 - 00073728 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\zlib1.dll
2015-09-26 16:00 - 2015-09-09 15:27 - 00483864 _____ () C:\Program Files (x86)\PhraseExpress\pexlang.dll
2007-10-29 19:53 - 2007-10-29 19:53 - 01328408 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\fox.dll
2015-09-15 08:08 - 2015-09-15 08:08 - 40523440 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll
2015-09-15 08:08 - 2015-09-15 08:08 - 01365680 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libglesv2.dll
2015-09-15 08:08 - 2015-09-15 08:08 - 00219312 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libegl.dll
2015-09-11 16:39 - 2015-09-11 16:39 - 00124416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00121856 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ref\build\Release\binding.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00122880 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ffi\build\Release\ffi_bindings.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00188416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00085504 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\bufferutil.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00086016 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\validation.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00081408 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 

==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 

==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 

==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 

==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.11.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 

==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{2F37093D-C773-4AE6-B1F6-A9BB4C11AB6E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BE201625-6BB0-46E4-B90E-527800675CFA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{7455797C-25E0-48B5-8882-0CB0A38B0452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{2AAFA218-895A-431F-9C63-83DF7BAEDD85}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{756C6836-245E-4E8D-AB52-971356B23031}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{EBAA303A-1644-4303-B0DC-8244577C3A1D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{25527B7B-8A08-4AFF-A6CC-E5119A413711}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8AB4D3AE-76FE-4290-ADF7-15CC855A5177}] => (Allow) C:\Program Files (x86)\curtain\calculator.exe
FirewallRules: [{A380298F-B133-430F-8D09-09E13390997E}] => (Allow) C:\Program Files (x86)\curtain\calculator.exe
FirewallRules: [{0A3A154C-EC0B-4922-AD02-F309CAC078B1}] => (Allow) C:\Program Files (x86)\curtain\getcap.exe
FirewallRules: [{ECB1DB78-E0C1-4D57-9221-736B79D81812}] => (Allow) C:\Program Files (x86)\curtain\getcap.exe
FirewallRules: [{0202A1A7-C243-44CF-883F-586D2D1729C7}] => (Allow) C:\a\winonit.exe
FirewallRules: [{402F8B00-8348-489D-9719-9592F71B3933}] => (Allow) C:\a\winonit.exe
FirewallRules: [{8DFA283A-4B94-468D-B5B7-20A3E737F94B}] => (Allow) C:\Program Files (x86)\curtain\relation.exe
FirewallRules: [{B1786429-1B49-40E4-B57A-D3C6CD7470CA}] => (Allow) C:\Program Files (x86)\curtain\relation.exe
FirewallRules: [{883BF2C5-1159-4E0D-9047-5F98515EC465}] => (Allow) C:\Program Files (x86)\gusty\stage.exe
FirewallRules: [{6740BF7B-DB53-40E7-A949-0A58C8ED1A37}] => (Allow) C:\Program Files (x86)\gusty\stage.exe
FirewallRules: [{1EB16BCA-9202-4C23-A999-25C280703792}] => (Allow) C:\Program Files (x86)\glow\branch.exe
FirewallRules: [{4F659F47-9AE1-4321-93BD-552DF4DCF797}] => (Allow) C:\Program Files (x86)\glow\branch.exe
FirewallRules: [{E59C6331-48EA-4EE3-91AD-89F4D9A30418}] => (Allow) C:\a\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954.exe
FirewallRules: [{0AE7ABA5-1144-4010-9E4F-66B5C4D710C8}] => (Allow) C:\a\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954.exe
FirewallRules: [{3832DA12-9ECC-4CD7-B267-89263A98D366}] => (Allow) C:\Program Files (x86)\PhraseExpress\PhraseExpress.exe
FirewallRules: [{09A09534-944E-4016-9556-3A574DF27F00}] => (Allow) C:\Program Files\SmartFTP Client\SmartFTP.exe
FirewallRules: [{67C910DE-01CE-4813-9DB9-58C73B4E109F}] => (Allow) LPort=5454
FirewallRules: [{795ADB1B-0B42-49A2-8082-9ADF2576EB86}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{22E16675-13B4-4CFD-9ACE-70FB846FA9AA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{81241BE7-5316-418A-9ED2-28C3D320D8FA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{9D1AA06D-F0C4-40D0-A2A6-F5F6DC3345F4}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{7A7E6542-106E-46E8-B1E2-446EE5C4DFE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{002C1F07-C20C-49CF-958A-0C1AE8D140DE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6E83704E-5813-4004-B5CB-13F4A28B4E81}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{3B460958-C3D1-47B9-84F7-8818B3199478}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{463290F3-5948-4FA6-9BC2-CD8A17DDA4B3}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{A3BE2CEB-E2C3-45BB-BF07-C9F50ED5CF2E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{8D48879A-89E3-458B-A4CF-0EFED56AB613}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{B253BEC7-EE19-4104-A637-B314F1F8A4E2}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{9E41835C-A83E-4199-957A-45747323E473}] => (Allow) LPort=8743
FirewallRules: [{23FE6F32-9829-483A-86E8-90FD47C7D3A4}] => (Allow) LPort=8643
FirewallRules: [{077D52DB-2BAB-4ED5-9ACB-02B58E8A7634}] => (Allow) LPort=7676
FirewallRules: [{034B71D9-6E7E-4F1F-9C7E-8C9D2C67BB9A}] => (Allow) LPort=7679
FirewallRules: [{0BA4E00E-A9FE-430D-A4A2-9B3DBA8CCF7E}] => (Allow) LPort=24234
FirewallRules: [{C29BBBA5-9E2C-4127-B004-960B6889384A}] => (Allow) LPort=7900
FirewallRules: [{2440E535-AA1B-42AC-AF46-3647CF8EA949}] => (Allow) LPort=1900
FirewallRules: [{3B08E475-4B0F-49E9-B46F-E1C4B3E812EC}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{4A5188FE-1AEE-4D18-8A1F-1C591BBEEE3B}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{44580277-1F92-4105-A6C1-B93FBE16F92D}] => (Allow) LPort=7935
FirewallRules: [{7B1918DB-226B-4843-88EF-DF3AE87023AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Faulty Device Manager Devices =============
 
Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: Qualcomm Atheros AR938x Wireless Network Adapter
Description: Qualcomm Atheros AR938x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 

==================== Event log errors: =========================
 
Application errors:
==================
Error: (09/28/2015 10:02:45 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-HESCRH0)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (09/28/2015 10:02:45 AM) (Source: ATIeRecord) (EventID: 16396) (User: )
Description: ATI EEU PnP start/stop failed
 
Error: (09/28/2015 09:30:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 41.0.0.5738, time stamp: 0x55fb7072
Faulting module name: mozglue.dll, version: 41.0.0.5738, time stamp: 0x55fb5afb
Exception code: 0x80000003
Fault offset: 0x0000ec7e
Faulting process id: 0x12f4
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3
Faulting package full name: plugin-container.exe4
Faulting package-relative application ID: plugin-container.exe5
 
Error: (09/28/2015 09:30:35 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program firefox.exe version 41.0.0.5738 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 45c8
 
Start Time: 01d0f9f99d024286
 
Termination Time: 55
 
Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Report Id: 772f5cf2-65ed-11e5-9bd8-c86000cc28ae
 
Faulting package full name:
 
Faulting package-relative application ID:
 
Error: (09/28/2015 09:16:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 41.0.0.5738, time stamp: 0x55fb7072
Faulting module name: mozglue.dll, version: 41.0.0.5738, time stamp: 0x55fb5afb
Exception code: 0x80000003
Fault offset: 0x0000ec7e
Faulting process id: 0x41a8
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3
Faulting package full name: plugin-container.exe4
Faulting package-relative application ID: plugin-container.exe5
 
Error: (09/28/2015 09:16:06 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program firefox.exe version 41.0.0.5738 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 3648
 
Start Time: 01d0f9f6f1220137
 
Termination Time: 75
 
Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Report Id: 71d4d876-65eb-11e5-9bd8-c86000cc28ae
 
Faulting package full name:
 
Faulting package-relative application ID:
 
Error: (09/28/2015 06:00:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 41.0.0.5738, time stamp: 0x55fb7072
Faulting module name: mozglue.dll, version: 41.0.0.5738, time stamp: 0x55fb5afb
Exception code: 0x80000003
Fault offset: 0x0000ec7e
Faulting process id: 0x9ec
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3
Faulting package full name: plugin-container.exe4
Faulting package-relative application ID: plugin-container.exe5
 
Error: (09/28/2015 06:00:42 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program firefox.exe version 41.0.0.5738 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 3624
 
Start Time: 01d0f9db8c74a7c4
 
Termination Time: 96
 
Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Report Id: 25f44be3-65d0-11e5-9bd8-c86000cc28ae
 
Faulting package full name:
 
Faulting package-relative application ID:
 
Error: (09/28/2015 05:50:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 41.0.0.5738, time stamp: 0x55fb7072
Faulting module name: mozglue.dll, version: 41.0.0.5738, time stamp: 0x55fb5afb
Exception code: 0x80000003
Fault offset: 0x0000ec7e
Faulting process id: 0x1cc4
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3
Faulting package full name: plugin-container.exe4
Faulting package-relative application ID: plugin-container.exe5
 
Error: (09/28/2015 05:50:31 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program firefox.exe version 41.0.0.5738 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 33f0
 
Start Time: 01d0f9d560ef43e6
 
Termination Time: 89
 
Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Report Id: b98f9258-65ce-11e5-9bd8-c86000cc28ae
 
Faulting package full name:
 
Faulting package-relative application ID:
 

System errors:
=============
Error: (09/28/2015 10:11:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Google Update Service (gupdate) service terminated unexpectedly.  It has done this 2 time(s).
 
Error: (09/28/2015 10:10:53 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Google Update Service (gupdate) service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 10:02:47 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:47 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:47 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:47 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:47 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:46 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
 
Error: (09/28/2015 10:02:46 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 
Error: (09/28/2015 10:02:46 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HESCRH0)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
 

==================== Memory info ===========================
 
Processor: Intel® Core™ i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 34%
Total physical RAM: 16328.56 MB
Available physical RAM: 10744.36 MB
Total Virtual: 19272.56 MB
Available Virtual: 13762.25 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:930.96 GB) (Free:862.09 GB) NTFS
Drive e: (Production) (Fixed) (Total:558.91 GB) (Free:89.62 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (Art) (Fixed) (Total:1863.01 GB) (Free:211.58 GB) NTFS
Drive g: (Becky's Drive) (Fixed) (Total:1397.25 GB) (Free:306.29 GB) NTFS
Drive h: (J_CENA_X64FREV_EN-US_DV5) (CDROM) (Total:3.67 GB) (Free:0 GB) UDF
Drive i: (Beckys Drive) (Fixed) (Total:3725.9 GB) (Free:3725.57 GB) NTFS
Drive j: () (Removable) (Total:7.52 GB) (Free:7.52 GB) FAT32
Drive m: () (Removable) (Total:0.95 GB) (Free:0.13 GB) FAT
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E3D68838)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 1EC8B206)
 
Partition: GPT.
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 558.9 GB) (Disk ID: 331D369F)
Partition 1: (Active) - (Size=558.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 3 (Size: 1397.3 GB) (Disk ID: 43DB354D)
Partition 2: (Active) - (Size=1397.3 GB) - (Type=05)
 
========================================================
Disk: 4 (Size: 1863 GB) (Disk ID: 000E06C7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
========================================================
Disk: 5 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 3BFC2993)
 
Partition: GPT.
 
========================================================
Disk: 6 (Size: 973.8 MB) (Disk ID: 3A881EE4)
Partition 1: (Not Active) - (Size=973 MB) - (Type=06)
 
========================================================
Disk: 7 (Size: 7.5 GB) (Disk ID: 6D412AD6)
Partition 1: (Active) - (Size=7.5 GB) - (Type=0B)
 
==================== End of Addition.txt ============================

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Uninstall Ad-Aware Anti-Virus.  You don't want two.

 

Download the attached fixlist.txt to the same location as FRST
Run FRST and press Fix
A fix log will be generated please post that. 

 

Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer

NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.

Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).

scan-results.jpg

Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.

The report will be saved in the C:\AdwCleaner folder.



Junkware-Removal-Tool

Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site

  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

 

 

 

 

Run FRST again, check the Additions box and then Scan.  You will get two logs.  Post them both.


  • 0

#3
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Fixlog:

Fix result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Becky (2015-09-28 14:12:33) Run:1
Running from C:\Users\Becky\Desktop
Loaded Profiles: Becky (Available Profiles: Becky)
Boot Mode: Normal
==============================================

fixlist content:
*****************
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 1 <======= ATTENTION (Restriction - ProxySettings)
ProxyEnable: [HKLM] => Proxy is enabled.
ProxyEnable: [HKLM-x32] => Proxy is enabled.
ProxyServer: [HKLM] => http=127.0.0.1:8877;https=127.0.0.1:8877
ProxyServer: [HKLM-x32] => http=127.0.0.1:8877;https=127.0.0.1:8877
ProxyEnable: [S-1-5-21-3588804255-3441825186-3011144637-1001] => Proxy is enabled.
ProxyServer: [S-1-5-21-3588804255-3441825186-3011144637-1001] => http=127.0.0.1:8877;https=127.0.0.1:8877
HKLM\...\Run: [cutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKLM\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM\...\Run: [autoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM-x32\...\Run: [cutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKLM-x32\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKLM-x32\...\Run: [autoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [rutoauto] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [dutoauto] => C:\Program Files (x86)\curtain\relation.exe [41716 2015-09-26] ()
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [interpee] => C:\Program Files (x86)\curtain\calculator.exe [25600 2015-09-26] (windows 99)
Startup: C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\intr.lnk [2015-09-26]
ShortcutTarget: intr.lnk -> C:\Program Files (x86)\curtain\calculator.exe (windows 99)
R2 pretty; C:\Windows\debonair.exe [14336 2015-09-26] (godly) [File not signed]
2015-09-26 16:12 - 2015-09-28 10:03 - 00001328 ____H C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job
2015-09-26 16:12 - 2015-09-26 16:12 - 00003624 _____ C:\Windows\System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}
2015-09-26 15:40 - 2015-09-28 10:37 - 00003884 _____ C:\Windows\System32\Tasks\Grapyy11710998Updates
2015-09-26 15:40 - 2015-09-28 10:37 - 00003734 _____ C:\Windows\System32\Tasks\MySyy11710998ytemy
2015-09-26 15:39 - 2015-09-28 10:37 - 00003884 _____ C:\Windows\System32\Tasks\Grapy54522894 pdates
2015-09-26 15:39 - 2015-09-28 10:37 - 00003720 _____ C:\Windows\System32\Tasks\MySystemTools
2015-09-26 15:39 - 2015-09-28 10:37 - 00003624 _____ C:\Windows\System32\Tasks\Grap74136321 ptes
2015-09-26 15:39 - 2015-09-28 10:03 - 00003938 _____ C:\Windows\System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954
2015-09-26 15:39 - 2015-09-28 10:03 - 00000374 ____H C:\Windows\Tasks\IHNENOVEVNVDRGKC.job
2015-09-26 15:39 - 2015-09-28 10:03 - 00000000 ____D C:\Program Files (x86)\curtain
2015-09-26 15:39 - 2015-09-26 15:39 - 00003856 _____ C:\Windows\System32\Tasks\69944620
2015-09-26 15:39 - 2015-09-26 15:39 - 00003450 _____ C:\Windows\System32\Tasks\IHNENOVEVNVDRGKC
2015-09-26 15:39 - 2015-09-26 15:39 - 00000110 _____ C:\Users\Becky\AppData\Local\dottmpfile.txt
2015-09-26 15:39 - 2015-09-26 15:39 - 00000050 _____ C:\Windows\key.ini
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Users\Becky\AppData\Local\yuntnani
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Users\Becky\AppData\Local\59159294
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\ProgramData\28341ff220e0446c9fff27c4493d622e
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Program Files (x86)\test
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\Program Files (x86)\gusty
2015-09-26 15:39 - 2015-09-26 15:39 - 00000000 ____D C:\a
2015-09-26 14:54 - 2015-09-26 14:54 - 00014336 _____ (godly) C:\Windows\debonair.exe
2015-09-26 14:54 - 2015-09-26 14:54 - 00000019 _____ C:\Windows\SysWOW64\76760595.bat
2015-09-26 15:39 - 2015-09-26 15:39 - 0000110 _____ () C:\Users\Becky\AppData\Local\dottmpfile.txt
2015-09-14 20:20 - 2015-09-14 20:20 - 0005120 _____ () C:\Users\Becky\AppData\Local\installer.exe
2015-09-14 20:21 - 2015-09-14 20:21 - 0005120 _____ () C:\Users\Becky\AppData\Local\installer4.exe
2015-09-10 08:37 - 2015-09-10 08:37 - 0008704 _____ () C:\Users\Becky\AppData\Local\uid.exe
C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job
CustomCLSID: HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-C8B18A6F583E}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
Task: {1E213A51-DEFA-433D-81B9-CEF47A3ADAD2} - System32\Tasks\Grapy54522894 pdates => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {3C9CF5C8-F522-45A5-8DAF-7F99063124FD} - \Isiafcrakri -> No File <==== ATTENTION
Task: {53770880-0618-4047-BB51-DAE86A0582C7} - System32\Tasks\Grapyy11710998Updates => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {6513EFD9-225D-4183-925E-D7847C23D135} - \PhraseProfessor Auto Updater 1.10.0.24 Core -> No File <==== ATTENTION
Task: {8E82897E-7669-4D6E-ADC7-B627CDB635F0} - System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70} => C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exe <==== ATTENTION
Task: {9382E907-C47C-47E1-8E6C-ED0C13ADC718} - System32\Tasks\69944620 => C:\Program Files (x86)\glow\branch.exe [2015-09-26] () <==== ATTENTION
Task: {A39D58FD-3C3F-4666-9B70-0CAEA32ECD72} - System32\Tasks\IHNENOVEVNVDRGKC => C:\ProgramData\Service1291\Service1291.exe <==== ATTENTION
Task: {B9FFC954-D5BF-42F4-A8B7-A49F5035C8F4} - System32\Tasks\Grap74136321 ptes => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: {C7D90578-64C7-449D-A439-C16A8DEB8946} - System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954 => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: {CCA28FBA-0ACA-4C56-BF2F-4828F4809D59} - System32\Tasks\MySyy11710998ytemy => C:\Program Files (x86)\gusty\stage.exe [2015-09-26] (jagged)
Task: {D5F3766D-7CF2-4642-96C8-8B5CB543964C} - \PhraseProfessor Auto Updater 1.10.0.24 Pending Update -> No File <==== ATTENTION
Task: {F41E50A1-B9FC-4087-AAFB-B38CA73A1398} - System32\Tasks\MySystemTools => C:\Program Files (x86)\curtain\calculator.exe [2015-09-26] (windows 99)
Task: C:\Windows\Tasks\IHNENOVEVNVDRGKC.job => C:\ProgramData\Service1291\Service1291.exe <==== ATTENTION
Task: C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job => C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exeǼ/exenoupdates  /exelang 0 /noprereqs  /qr   AI_RESUME=1 ADDLOCAL=MainFeature,XRDdrivers64 ACTION=INSTALL EXECUTEACTION=INSTALL ROOTDRIVE I:\ AI_PREREQFILES=C:\Users\Becky\AppData\Local\Temp\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}\drivers64.msi AI_PREREQDIRS=C:\Users\Becky\AppData\Local\Temp AI_SETUPEXEPATH=C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp\XRD Manager.exe SETUPEXEDIR=C:\Users\Becky\AppData\Local\Temp\is-RO4JV.tmp <==== ATTENTION
FirewallRules: [{8AB4D3AE-76FE-4290-ADF7-15CC855A5177}] => (Allow) C:\Program Files (x86)\curtain\calculator.exe
FirewallRules: [{A380298F-B133-430F-8D09-09E13390997E}] => (Allow) C:\Program Files (x86)\curtain\calculator.exe
FirewallRules: [{0A3A154C-EC0B-4922-AD02-F309CAC078B1}] => (Allow) C:\Program Files (x86)\curtain\getcap.exe
FirewallRules: [{ECB1DB78-E0C1-4D57-9221-736B79D81812}] => (Allow) C:\Program Files (x86)\curtain\getcap.exe
FirewallRules: [{0202A1A7-C243-44CF-883F-586D2D1729C7}] => (Allow) C:\a\winonit.exe
FirewallRules: [{402F8B00-8348-489D-9719-9592F71B3933}] => (Allow) C:\a\winonit.exe
FirewallRules: [{8DFA283A-4B94-468D-B5B7-20A3E737F94B}] => (Allow) C:\Program Files (x86)\curtain\relation.exe
FirewallRules: [{B1786429-1B49-40E4-B57A-D3C6CD7470CA}] => (Allow) C:\Program Files (x86)\curtain\relation.exe
FirewallRules: [{883BF2C5-1159-4E0D-9047-5F98515EC465}] => (Allow) C:\Program Files (x86)\gusty\stage.exe
FirewallRules: [{6740BF7B-DB53-40E7-A949-0A58C8ED1A37}] => (Allow) C:\Program Files (x86)\gusty\stage.exe
FirewallRules: [{1EB16BCA-9202-4C23-A999-25C280703792}] => (Allow) C:\Program Files (x86)\glow\branch.exe
FirewallRules: [{4F659F47-9AE1-4321-93BD-552DF4DCF797}] => (Allow) C:\Program Files (x86)\glow\branch.exe
FirewallRules: [{E59C6331-48EA-4EE3-91AD-89F4D9A30418}] => (Allow) C:\a\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954.exe
FirewallRules: [{0AE7ABA5-1144-4010-9E4F-66B5C4D710C8}] => (Allow) C:\a\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954.exe
C:\ProgramData\Service1291

*****************

HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxySettingsPerUser => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cutoauto => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\interpee => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\autoauto => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\cutoauto => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\interpee => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\autoauto => value removed successfully
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\Microsoft\Windows\CurrentVersion\Run\\rutoauto => value removed successfully
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\Microsoft\Windows\CurrentVersion\Run\\dutoauto => value removed successfully
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\Microsoft\Windows\CurrentVersion\Run\\interpee => value removed successfully
C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\intr.lnk => moved successfully
C:\Program Files (x86)\curtain\calculator.exe => moved successfully
pretty => Unable to stop service.
pretty => service removed successfully
C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job => moved successfully
C:\Windows\System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70} => moved successfully
C:\Windows\System32\Tasks\Grapyy11710998Updates => moved successfully
C:\Windows\System32\Tasks\MySyy11710998ytemy => moved successfully
C:\Windows\System32\Tasks\Grapy54522894 pdates => moved successfully
C:\Windows\System32\Tasks\MySystemTools => moved successfully
C:\Windows\System32\Tasks\Grap74136321 ptes => moved successfully
C:\Windows\System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954 => moved successfully
C:\Windows\Tasks\IHNENOVEVNVDRGKC.job => moved successfully

"C:\Program Files (x86)\curtain" folder move:

Could not move "C:\Program Files (x86)\curtain" => Scheduled to move on reboot.

C:\Windows\System32\Tasks\69944620 => moved successfully
C:\Windows\System32\Tasks\IHNENOVEVNVDRGKC => moved successfully
C:\Users\Becky\AppData\Local\dottmpfile.txt => moved successfully
C:\Windows\key.ini => moved successfully
C:\Users\Becky\AppData\Local\yuntnani => moved successfully
C:\Users\Becky\AppData\Local\59159294 => moved successfully
C:\ProgramData\28341ff220e0446c9fff27c4493d622e => moved successfully
C:\Program Files (x86)\test => moved successfully
C:\Program Files (x86)\gusty => moved successfully
C:\a => moved successfully
C:\Windows\debonair.exe => moved successfully
C:\Windows\SysWOW64\76760595.bat => moved successfully
"C:\Users\Becky\AppData\Local\dottmpfile.txt" => File/Folder not found.
C:\Users\Becky\AppData\Local\installer.exe => moved successfully
C:\Users\Becky\AppData\Local\installer4.exe => moved successfully
C:\Users\Becky\AppData\Local\uid.exe => moved successfully
"C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job" => File/Folder not found.
"HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-C8B18A6F583E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1E213A51-DEFA-433D-81B9-CEF47A3ADAD2}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1E213A51-DEFA-433D-81B9-CEF47A3ADAD2}" => key removed successfully
C:\Windows\System32\Tasks\Grapy54522894 pdates => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Grapy54522894 pdates" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{3C9CF5C8-F522-45A5-8DAF-7F99063124FD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C9CF5C8-F522-45A5-8DAF-7F99063124FD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Isiafcrakri" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{53770880-0618-4047-BB51-DAE86A0582C7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{53770880-0618-4047-BB51-DAE86A0582C7}" => key removed successfully
C:\Windows\System32\Tasks\Grapyy11710998Updates => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Grapyy11710998Updates" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6513EFD9-225D-4183-925E-D7847C23D135}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6513EFD9-225D-4183-925E-D7847C23D135}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PhraseProfessor Auto Updater 1.10.0.24 Core => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8E82897E-7669-4D6E-ADC7-B627CDB635F0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E82897E-7669-4D6E-ADC7-B627CDB635F0}" => key removed successfully
C:\Windows\System32\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70} => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9382E907-C47C-47E1-8E6C-ED0C13ADC718}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9382E907-C47C-47E1-8E6C-ED0C13ADC718}" => key removed successfully
C:\Windows\System32\Tasks\69944620 => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\69944620" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A39D58FD-3C3F-4666-9B70-0CAEA32ECD72}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A39D58FD-3C3F-4666-9B70-0CAEA32ECD72}" => key removed successfully
C:\Windows\System32\Tasks\IHNENOVEVNVDRGKC => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IHNENOVEVNVDRGKC" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B9FFC954-D5BF-42F4-A8B7-A49F5035C8F4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9FFC954-D5BF-42F4-A8B7-A49F5035C8F4}" => key removed successfully
C:\Windows\System32\Tasks\Grap74136321 ptes => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Grap74136321 ptes" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7D90578-64C7-449D-A439-C16A8DEB8946}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7D90578-64C7-449D-A439-C16A8DEB8946}" => key removed successfully
C:\Windows\System32\Tasks\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954 => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\un3rBDYbqWtY2I01A8Ld-ni-2015-09-26-ni-11954" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCA28FBA-0ACA-4C56-BF2F-4828F4809D59}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCA28FBA-0ACA-4C56-BF2F-4828F4809D59}" => key removed successfully
C:\Windows\System32\Tasks\MySyy11710998ytemy => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySyy11710998ytemy" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D5F3766D-7CF2-4642-96C8-8B5CB543964C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5F3766D-7CF2-4642-96C8-8B5CB543964C}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PhraseProfessor Auto Updater 1.10.0.24 Pending Update => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F41E50A1-B9FC-4087-AAFB-B38CA73A1398}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F41E50A1-B9FC-4087-AAFB-B38CA73A1398}" => key removed successfully
C:\Windows\System32\Tasks\MySystemTools => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySystemTools" => key removed successfully
C:\Windows\Tasks\IHNENOVEVNVDRGKC.job => not found.
C:\Windows\Tasks\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}.job => not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8AB4D3AE-76FE-4290-ADF7-15CC855A5177} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A380298F-B133-430F-8D09-09E13390997E} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A3A154C-EC0B-4922-AD02-F309CAC078B1} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ECB1DB78-E0C1-4D57-9221-736B79D81812} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0202A1A7-C243-44CF-883F-586D2D1729C7} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{402F8B00-8348-489D-9719-9592F71B3933} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8DFA283A-4B94-468D-B5B7-20A3E737F94B} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B1786429-1B49-40E4-B57A-D3C6CD7470CA} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{883BF2C5-1159-4E0D-9047-5F98515EC465} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6740BF7B-DB53-40E7-A949-0A58C8ED1A37} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1EB16BCA-9202-4C23-A999-25C280703792} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4F659F47-9AE1-4321-93BD-552DF4DCF797} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E59C6331-48EA-4EE3-91AD-89F4D9A30418} => value removed successfully
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0AE7ABA5-1144-4010-9E4F-66B5C4D710C8} => value removed successfully
"C:\ProgramData\Service1291" => File/Folder not found.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-09-28 14:15:06)<=

C:\Program Files (x86)\curtain => Is moved successfully

==== End of Fixlog 14:15:06 ====


  • 0

#4
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Adaware log:

# AdwCleaner v5.009 - Logfile created 28/09/2015 at 14:23:05
# Updated 27/09/2015 by Xplode
# Database : 2015-09-27.1 [Server]
# Operating system : Windows 10 Enterprise  (x64)
# Username : Becky - DESKTOP-HESCRH0
# Running from : C:\Users\Becky\Downloads\AdwCleaner (1).exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\MediaPlayerVideos 1.2
[!] Folder Not Deleted : C:\Program Files (x86)\MediaPlayerVideos 1.2

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : Adobe Flash Player Updater
[-] Task Deleted : X-Rite Device Services Software Updater

***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{351A01B5-849A-ECA5-2760-EE9665E223C3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{593D67B9-3A50-EBAA-17BE-61A5EC986A22}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[-] Key Deleted : HKCU\Software\AppDataLow\Software\adawarebp
[-] Key Deleted : HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[-] Key Deleted : HKLM\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[!] Key Not Deleted : [x64] HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
[!] Key Not Deleted : HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\AppDataLow\Software\adawarebp
[!] Key Not Deleted : HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}

***** [ Web browsers ] *****

[-] [C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : aol.com
[-] [C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2154 bytes] ##########
 


  • 0

#5
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Frst log:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-09-2015 01
Ran by Becky (administrator) on DESKTOP-HESCRH0 (28-09-2015 14:43:26)
Running from C:\Users\Becky\Desktop
Loaded Profiles: Becky (Available Profiles: Becky)
Platform: Windows 10 Enterprise (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avpui.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8529152 2015-09-26] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-26] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Samsung Link] => C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [607584 2015-03-18] (Copyright 2013 SAMSUNG)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [390736 2010-09-08] (Acronis)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3498728 2015-06-29] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SAOB Monitor] => C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe [2536440 2010-09-02] (Acronis)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5479424 2010-09-08] (Acronis)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-09-28] (Siber Systems)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\MountPoints2: {5e9cf559-648d-11e5-9bc2-806e6f6e6963} - "H:\setup.exe"
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\MountPoints2: {b5fbd13e-64ac-11e5-9bd6-90f6520da38e} - "L:\LaunchU3.exe"
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [SmartFTP Drop] -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\sfShellTools.dll [2014-03-11] (SmartSoft Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\i1Profiler Tray.lnk [2015-09-26]
ShortcutTarget: i1Profiler Tray.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2015-09-26]
ShortcutTarget: PhraseExpress.lnk -> C:\Program Files (x86)\PhraseExpress\phraseexpress.exe (Bartels Media GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk [2015-09-26]
ShortcutTarget: QuickBooks Update Agent.lnk -> C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\XRGamma.lnk [2015-09-26]
ShortcutTarget: XRGamma.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\XRGamma.exe (LOGO Kommunikations- und Drucktechnik GmbH & Co. KG)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-3588804255-3441825186-3011144637-1001] => http=127.0.0.1:8877;https=127.0.0.1:8877
Tcpip\Parameters: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{5b2c375d-5403-43d0-9d71-61718ebc5642}: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{62f64533-ed80-477c-aa7a-3e1a17db5c11}: [DhcpNameServer] 192.168.11.1

Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Handler-x32: intu-help-qb1 - {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files (x86)\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll [2007-11-12] (TODO: <Company name>)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler-x32: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows\SysWOW64\mscoree.dll [2015-07-10] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Becky\AppData\Roaming\Mozilla\Firefox\Profiles\3s6jy4wj.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-28] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-28] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-02-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-02-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox [2015-09-26]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-09-28]
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
FF Extension: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi [2015-09-26]
FF HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi

Chrome:
=======
CHR Profile: C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-28]
CHR Extension: (Google Docs) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-28]
CHR Extension: (Google Drive) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-28]
CHR Extension: (YouTube) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Google Search) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-28]
CHR Extension: (Kaspersky Protection) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2015-09-28]
CHR Extension: (Adobe Acrobat - Create PDF) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-09-28]
CHR Extension: (Google Sheets) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-28]
CHR Extension: (Google Docs Offline) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-28]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-28]
CHR Extension: (Gmail) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-28]
CHR Extension: (RoboForm Password Manager) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2015-09-28]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2015-06-29]
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [1846464 2015-09-10] (Adobe Systems, Incorporated)
S2 AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe [404360 2013-12-21] (Samsung) [File not signed]
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe [194000 2015-09-26] (Kaspersky Lab ZAO)
S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-26] (NVIDIA Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-26] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-26] (NVIDIA Corporation)
S2 QBCFMonitorService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [20480 2007-11-12] (Intuit) [File not signed]
S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [61440 2007-05-24] (Intuit Inc.) [File not signed]
S2 Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [616288 2015-03-18] (Copyright 2013 SAMSUNG)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [83312 2014-04-10] (X-Rite Inc.)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 asstahci64; C:\Windows\System32\drivers\asstahci64.sys [88936 2015-06-17] (Asmedia Technology)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-26] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [171192 2015-06-30] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [937656 2015-06-30] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-09-26] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [78008 2015-06-26] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-09-26] (Intel Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-10] (NVIDIA Corporation)
R3 SrvHsfPCIe; C:\Windows\system32\DRIVERS\VSTBS36.SYS [287744 2015-07-10] (Conexant Systems, Inc.)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
R2 WinI2C-DDC; C:\Windows\system32\drivers\DDCDrv.sys [20832 2014-05-14] (Nicomsoft Ltd.)
R2 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [10240 2014-05-14] (Nicomsoft Ltd.) [File not signed]
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-28 14:40 - 2015-09-28 14:40 - 00017184 _____ C:\Users\Becky\Downloads\fixlist (1).txt
2015-09-28 14:38 - 2015-09-28 14:38 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (3).exe
2015-09-28 14:37 - 2015-09-28 14:37 - 00001174 _____ C:\Users\Becky\Desktop\JRT.txt
2015-09-28 14:35 - 2015-09-28 14:35 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (2).exe
2015-09-28 14:34 - 2015-09-28 14:34 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (1).exe
2015-09-28 14:33 - 2015-09-28 14:33 - 00000000 _____ C:\Users\Becky\Downloads\JRT.exe
2015-09-28 14:24 - 2015-09-28 14:24 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_Becky_HistoryPrediction.bin
2015-09-28 14:21 - 2015-09-28 14:23 - 00000000 ____D C:\AdwCleaner
2015-09-28 14:12 - 2015-09-28 14:12 - 00000000 ____D C:\Windows\SMSS-PFRO2172.tmp
2015-09-28 14:02 - 2015-09-28 14:00 - 00000000 _____ C:\Users\Becky\Desktop\JRT.exe
2015-09-28 13:59 - 2015-09-28 13:59 - 00017184 _____ C:\Users\Becky\Downloads\fixlist.txt
2015-09-28 13:58 - 2015-09-28 13:58 - 01670656 _____ C:\Users\Becky\Downloads\AdwCleaner (1).exe
2015-09-28 13:23 - 2015-09-28 13:23 - 01263200 _____ (Acronis) C:\Windows\system32\Drivers\tdrpm273.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00970336 _____ (Acronis) C:\Windows\system32\Drivers\timntr.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00279136 _____ (Acronis) C:\Windows\system32\Drivers\afcdp.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00277088 _____ (Acronis) C:\Windows\system32\Drivers\snapman.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00001448 _____ C:\Users\Public\Desktop\Acronis Online Backup.lnk
2015-09-28 13:23 - 2015-09-28 13:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-09-28 13:03 - 2015-09-28 13:03 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Acronis
2015-09-28 12:06 - 2015-09-28 12:06 - 01670656 _____ C:\Users\Becky\Downloads\AdwCleaner.exe
2015-09-28 11:12 - 2015-09-28 11:12 - 00000000 _____ C:\Windows\setuperr.log
2015-09-28 11:12 - 2015-09-28 11:12 - 00000000 _____ C:\Windows\setupact.log
2015-09-28 11:09 - 2015-09-28 14:35 - 00000275 _____ C:\Windows\WindowsUpdate.log
2015-09-28 11:04 - 2015-09-28 13:32 - 00002235 _____ C:\Users\Becky\Desktop\Google Chrome.lnk
2015-09-28 11:04 - 2015-09-28 12:40 - 00000650 _____ C:\Windows\PFRO.log
2015-09-28 11:01 - 2015-09-28 11:01 - 03790761 _____ C:\Users\Becky\Downloads\FontDoctor-W-8-3-0.zip
2015-09-28 10:38 - 2015-09-28 10:38 - 00058046 _____ C:\Users\Becky\Desktop\Addition.txt
2015-09-28 10:37 - 2015-09-28 14:43 - 00023393 _____ C:\Users\Becky\Desktop\FRST.txt
2015-09-28 10:37 - 2015-09-28 14:43 - 00000000 ____D C:\FRST
2015-09-28 10:36 - 2015-09-28 10:37 - 02192384 _____ (Farbar) C:\Users\Becky\Desktop\FRST64.exe
2015-09-28 10:36 - 2015-09-28 10:36 - 02192384 _____ (Farbar) C:\Users\Becky\Downloads\FRST64.exe
2015-09-28 10:11 - 2015-09-28 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-28 10:10 - 2015-09-28 14:24 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-28 10:10 - 2015-09-28 14:15 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-28 10:10 - 2015-09-28 10:10 - 00929872 _____ (Google Inc.) C:\Users\Becky\Downloads\ChromeSetup (1).exe
2015-09-28 10:10 - 2015-09-28 10:10 - 00003986 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-28 10:10 - 2015-09-28 10:10 - 00003754 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-28 09:59 - 2015-09-28 10:00 - 00007398 _____ C:\Users\Becky\Desktop\cc_20150928_095952.reg
2015-09-28 09:56 - 2015-09-28 09:56 - 00052340 _____ C:\Users\Becky\Desktop\cc_20150928_095620.reg
2015-09-28 09:52 - 2015-09-28 09:52 - 00002870 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\Program Files\CCleaner
2015-09-28 09:49 - 2015-09-28 09:50 - 06677440 _____ (Piriform Ltd) C:\Users\Becky\Downloads\ccsetup510.exe
2015-09-28 09:19 - 2015-09-28 09:19 - 276274740 _____ C:\Users\Becky\Desktop\reg backup 092815.reg
2015-09-28 06:19 - 2015-09-28 06:19 - 00000000 ____D C:\Windows\system32\SleepStudy
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-09-28 06:15 - 2015-09-28 12:51 - 00005250 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0
2015-09-28 04:39 - 2015-09-28 04:39 - 00000000 ____D C:\ProgramData\Lavasoft
2015-09-28 04:38 - 2015-09-28 04:39 - 02012464 _____ C:\Users\Becky\Downloads\Adaware_Installer.exe
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Users\Becky\AppData\Local\VS Revo Group
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Program Files\VS Revo Group
2015-09-28 04:31 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2015-09-28 04:15 - 2015-09-28 12:32 - 00000031 _____ C:\ProgramData\fd4_sys.d
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.FontGear.data
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FontDoctor for Windows
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Program Files (x86)\FontDoctor for Windows
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AV Bros. Page Curl Pro 2.2
2015-09-28 03:19 - 2015-09-28 03:22 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2 (64 Bit)
2015-09-28 02:33 - 2015-09-28 02:33 - 00000000 ____D C:\Users\Becky\AppData\Local\Macromedia
2015-09-28 01:13 - 2015-09-28 03:24 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2015-09-27 04:52 - 2015-09-27 04:59 - 729936528 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\AcrobatPro_11_Web_WWMUI.exe
2015-09-27 04:37 - 2015-09-27 04:37 - 00001170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk
2015-09-27 04:37 - 2015-09-27 04:37 - 00001158 _____ C:\Users\Public\Desktop\Adobe Content Viewer.lnk
2015-09-27 04:35 - 2015-09-27 04:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5.5
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\Users\Becky\Adobe Flash Builder 4.7
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Builder 4.7
2015-09-26 22:55 - 2015-09-26 22:55 - 00001418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CC.lnk
2015-09-26 22:52 - 2015-09-26 22:52 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InCopy CC 2015.lnk
2015-09-26 22:47 - 2015-09-26 22:47 - 00001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CC (64bit).lnk
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SAMSUNG
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\.swt
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Upload
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2015-09-26 22:44 - 2015-09-26 22:45 - 00000000 ____D C:\Program Files\Samsung
2015-09-26 22:42 - 2015-09-26 22:42 - 00001430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Fireworks CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2015-09-26 22:38 - 2015-09-26 22:38 - 00001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Edge Animate CC 2015.lnk
2015-09-26 22:36 - 2015-09-27 04:19 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn-Time
2015-09-26 22:34 - 2015-09-26 22:34 - 00001033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Professional CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Muse CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.adobe.AdobeMuseCC.2015.0
2015-09-26 22:24 - 2015-09-26 22:24 - 00001109 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2015.lnk
2015-09-26 22:18 - 2015-09-26 22:18 - 00001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2015.lnk
2015-09-26 22:10 - 2015-09-26 22:10 - 00001271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk
2015-09-26 22:09 - 2015-09-26 22:09 - 00001377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk
2015-09-26 22:00 - 2015-09-26 22:00 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2015.lnk
2015-09-26 21:53 - 2015-09-26 21:53 - 00001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00000000 ____D C:\ProgramData\ALM
2015-09-26 21:32 - 2015-09-26 21:32 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk
2015-09-26 21:26 - 2015-09-26 21:26 - 00003634 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky
2015-09-26 21:26 - 2015-09-26 21:26 - 00000000 ____D C:\Users\Becky\AppData\Roaming\NVIDIA
2015-09-26 21:22 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\Documents\Adobe
2015-09-26 21:22 - 2015-09-28 03:26 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-09-26 21:22 - 2015-09-26 21:22 - 00001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2015-09-26 21:21 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Adobe
2015-09-26 21:20 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-09-26 21:15 - 2015-09-28 14:32 - 00000000 ___RD C:\Users\Becky\Creative Cloud Files
2015-09-26 20:56 - 2015-09-28 14:25 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-09-26 20:56 - 2015-09-26 20:56 - 00001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2015-09-26 20:55 - 2015-09-28 03:19 - 00000000 ____D C:\ProgramData\Adobe
2015-09-26 20:55 - 2015-09-28 01:13 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-09-26 20:53 - 2015-09-28 14:32 - 00000000 ____D C:\Users\Becky\AppData\Local\Adobe
2015-09-26 20:53 - 2015-09-26 20:53 - 00686768 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\CreativeCloudSet-Up.exe
2015-09-26 20:43 - 2015-09-28 10:16 - 00004206 _____ C:\Windows\System32\Tasks\Open URL by RoboForm
2015-09-26 20:43 - 2015-09-28 10:16 - 00003592 _____ C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2015-09-26 20:35 - 2015-09-26 20:35 - 00000000 ____D C:\Users\Becky\AppData\Roaming\RoboForm
2015-09-26 20:30 - 2015-09-28 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\Users\Becky\Documents\My RoboForm Data
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\ProgramData\RoboForm
2015-09-26 20:29 - 2015-09-26 20:30 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup-ems12.exe
2015-09-26 20:21 - 2015-09-26 20:21 - 02816040 _____ C:\Users\Becky\Downloads\SecurityTaskManager_Setup.exe
2015-09-26 20:10 - 2015-09-28 14:24 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-09-26 20:10 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-09-26 17:35 - 2015-09-28 14:24 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-26 17:35 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2015-09-26 17:34 - 2015-09-26 17:34 - 01728112 _____ (Kaspersky Lab) C:\Users\Becky\Downloads\kts16.0.0.614en_8244.exe
2015-09-26 17:34 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00937656 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00171192 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2015-09-26 17:24 - 2015-09-26 17:30 - 00000000 ____D C:\Users\Becky\AppData\Local\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-26 17:23 - 2015-09-26 17:24 - 00243688 _____ C:\Users\Becky\Downloads\Firefox Setup Stub 41.0.exe
2015-09-26 16:40 - 2015-09-26 16:40 - 00002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-09-26 16:40 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-09-26 16:39 - 2015-09-26 16:39 - 00000000 ____D C:\Program Files (x86)\WinZip
2015-09-26 16:38 - 2015-09-26 17:46 - 00000000 ____D C:\ProgramData\Intuit
2015-09-26 16:38 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\WinZip
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Users\Public\Documents\Intuit
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickBooks
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Program Files (x86)\Intuit
2015-09-26 16:38 - 2007-07-30 14:44 - 03518464 _____ (Amyuni Technologies http://www.amyuni.com)C:\Windows\SysWOW64\cdintf300.dll
2015-09-26 16:38 - 2007-06-28 14:09 - 01843200 _____ (Apache Software Foundation) C:\Windows\SysWOW64\acXMLParser.dll
2015-09-26 16:37 - 2015-09-26 16:37 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\MSBuild
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-09-26 16:36 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-09-26 16:36 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-09-26 16:34 - 2015-09-26 16:34 - 00002021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Ignition.lnk
2015-09-26 16:34 - 2015-09-26 16:34 - 00000000 ____D C:\Program Files (x86)\LogMeIn Ignition
2015-09-26 16:33 - 2015-09-26 16:33 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SmartFTP
2015-09-26 16:31 - 2015-09-26 16:32 - 00000000 ____D C:\Program Files (x86)\Color Wheel Expert
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\Users\Becky\AppData\Roaming\X-Rite
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Wheel Expert
2015-09-26 16:31 - 2000-05-22 00:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2015-09-26 16:31 - 2000-05-22 00:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2015-09-26 16:30 - 2015-09-28 14:12 - 00000000 ____D C:\Users\Becky\Documents\PhraseExpress
2015-09-26 16:29 - 2015-09-28 09:54 - 00000000 ____D C:\Windows\Panther
2015-09-26 16:27 - 2015-09-28 13:23 - 00000000 ____D C:\Program Files (x86)\Acronis
2015-09-26 16:27 - 2015-09-26 16:27 - 00593440 _____ (Acronis) C:\Windows\system32\Drivers\tdrpman.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00081952 _____ (Acronis) C:\Windows\system32\Drivers\tifsfilt.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00000000 ____D C:\ProgramData\Acronis
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Font Manager
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\Program Files (x86)\Font Manager
2015-09-26 16:16 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-09-26 16:16 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:15 - 00000000 ____D C:\Windows\PCHEALTH
2015-09-26 16:13 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-26 16:13 - 2015-09-26 21:05 - 00000000 ____D C:\Users\Becky\AppData\Local\Microsoft Help
2015-09-26 16:13 - 2015-09-26 16:15 - 00000000 ____D C:\Program Files\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 __RHD C:\MSOCache
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 ____D C:\Users\Becky\AppData\Roaming\WinRAR
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\Program Files (x86)\X-Rite
2015-09-26 16:11 - 2014-05-14 11:35 - 00145920 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00131584 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00125440 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00108032 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\system32\Drivers\DDCDrv.sys
2015-09-26 16:11 - 2014-05-14 11:35 - 00010240 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\Drivers\DDCDrv.sys
2015-09-26 16:09 - 2015-09-26 20:22 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\Windows\System32\Tasks\HardDiskSentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:03 - 2015-09-26 16:04 - 00000000 ____D C:\Program Files\WinRAR
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Program Files\Unlocker
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn Time
2015-09-26 16:00 - 2015-09-26 16:30 - 00000000 ____D C:\Users\Becky\AppData\Roaming\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Users\Public\Documents\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Program Files (x86)\PhraseExpress
2015-09-26 15:59 - 2015-09-26 15:59 - 00003294 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003242 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003238 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003210 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003206 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00002757 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center.lnk
2015-09-26 15:59 - 2015-09-26 15:59 - 00000000 ____D C:\Program Files\Microsoft Mouse and Keyboard Center
2015-09-26 15:50 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-26 15:50 - 2015-09-26 15:50 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Malwarebytes
2015-09-26 15:50 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-09-26 15:39 - 2015-09-28 14:12 - 00003720 _____ C:\Windows\System32\Tasks\MySystemTools
2015-09-26 15:31 - 2015-09-28 10:14 - 00000000 ____D C:\Users\Becky\AppData\Local\Google
2015-09-26 15:31 - 2015-09-28 10:11 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 __SHD C:\Recovery
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 ____D C:\Users\Becky\AppData\Local\PeerDistRepub
2015-09-26 15:30 - 2015-09-26 15:30 - 00568056 _____ C:\Users\Becky\Downloads\ChromeSetup.exe
2015-09-26 15:30 - 2015-09-26 15:30 - 00000000 ____D C:\Program Files (x86)\Siber Systems
2015-09-26 15:29 - 2015-09-26 15:29 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup (1).exe
2015-09-26 15:28 - 2015-09-26 15:28 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64 (1).exe
2015-09-26 15:02 - 2015-09-26 15:02 - 05621954 _____ C:\Users\Becky\Downloads\ASMEDIA_Win7_8_10-Ver3160.zip
2015-09-26 15:02 - 2015-09-26 15:02 - 00000000 ____D C:\Program Files (x86)\ASM106xSATA
2015-09-26 15:01 - 2015-09-26 15:02 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL (1).zip
2015-09-26 15:01 - 2015-09-26 15:01 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 04785968 _____ C:\Users\Becky\Downloads\Chipset_Win10_V10117.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Users\Becky\Downloads\Chipset_Win10_V10117
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Program Files\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 64189410 _____ C:\Users\Becky\Downloads\MEI_Win10_V11001155.zip
2015-09-26 14:58 - 2015-09-26 14:58 - 00001769 _____ C:\Windows\Language_trs.ini
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Downloads\MEI_Win10_V11001155
2015-09-26 14:52 - 2015-09-01 20:20 - 00077400 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-09-26 14:52 - 2015-09-01 19:25 - 03586560 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2015-09-26 14:52 - 2015-09-01 19:25 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2015-09-26 14:52 - 2015-08-27 01:36 - 03620736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-09-26 14:52 - 2015-08-27 01:32 - 00608936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 01:04 - 21874688 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-09-26 14:52 - 2015-08-27 00:55 - 24594944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 00:54 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 02350592 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 01774592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:49 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-09-26 14:52 - 2015-08-27 00:47 - 12503552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-09-26 14:52 - 2015-08-27 00:42 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.PicturePassword.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:39 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:08 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-26 14:52 - 2015-08-20 01:07 - 08019296 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-09-26 14:52 - 2015-08-20 01:06 - 00609592 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-09-26 14:52 - 2015-08-20 01:02 - 22324656 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2015-09-26 14:52 - 2015-08-20 00:21 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2015-09-26 14:52 - 2015-08-20 00:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:13 - 02235904 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:55 - 00373072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-09-26 14:52 - 2015-08-18 02:54 - 01396064 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:27 - 01771592 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 02:12 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2015-09-26 14:52 - 2015-08-18 02:07 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-09-26 14:52 - 2015-08-18 02:04 - 01234944 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-09-26 14:52 - 2015-08-18 02:04 - 00859136 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 01294336 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2015-09-26 14:52 - 2015-08-18 01:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:56 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2015-09-26 14:52 - 2015-08-18 01:55 - 02178560 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00247296 _____ C:\Windows\system32\facecredentialprovider.dll
2015-09-26 14:52 - 2015-08-18 01:52 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:50 - 01795072 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-18 01:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-17 23:44 - 00008847 _____ C:\Windows\system32\ResPriHMImageList
2015-09-26 14:50 - 2015-07-05 05:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-09-26 14:49 - 2015-09-26 14:50 - 00000000 ____D C:\Windows\system32\MRT
2015-09-26 14:49 - 2015-08-26 18:37 - 134753440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 04532304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 02462648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-09-26 14:49 - 2015-08-11 04:23 - 16706560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 04:06 - 02662400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-11 04:05 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-09-26 14:49 - 2015-08-11 04:03 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-09-26 14:49 - 2015-08-11 03:57 - 13024768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 03:45 - 01820672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 02415104 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 01679360 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-09-26 14:49 - 2015-08-08 01:00 - 01985024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-09-26 14:49 - 2015-08-04 23:49 - 00783112 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-09-26 14:49 - 2015-08-04 22:54 - 01274880 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2015-09-26 14:49 - 2015-08-03 21:59 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 08613200 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 01983840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-09-26 14:49 - 2015-08-02 20:56 - 06878256 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 20:22 - 01601536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2015-09-26 14:49 - 2015-08-02 20:18 - 03780096 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2015-09-26 14:49 - 2015-08-02 20:15 - 01290752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2015-09-26 14:49 - 2015-07-30 01:24 - 01561872 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-09-26 14:49 - 2015-07-30 01:16 - 02147080 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-09-26 14:49 - 2015-07-30 01:09 - 01562968 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-09-26 14:49 - 2015-07-30 01:06 - 01043872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-09-26 14:49 - 2015-07-30 01:03 - 02116448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-09-26 14:49 - 2015-07-29 23:26 - 01867160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-09-26 14:49 - 2015-07-29 22:49 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-29 22:15 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:04 - 01714176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-26 00:13 - 06488312 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 23:28 - 05118024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 22:49 - 04760576 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-25 22:38 - 04350464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-23 21:40 - 03248640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-09-26 14:49 - 2015-07-23 21:39 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-09-26 14:49 - 2015-07-21 22:54 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-09-26 14:49 - 2015-07-21 22:11 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-09-26 14:49 - 2015-07-18 02:29 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2015-09-26 14:49 - 2015-07-17 22:52 - 04169728 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-09-26 14:49 - 2015-07-16 21:31 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-09-26 14:49 - 2015-07-15 22:44 - 02741760 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-09-26 14:49 - 2015-07-15 22:27 - 02207744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-09-26 14:49 - 2015-07-14 21:41 - 01135312 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2015-09-26 14:49 - 2015-07-14 21:22 - 02112512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-09-26 14:49 - 2015-07-14 20:47 - 04611584 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-09-26 14:49 - 2015-07-11 19:18 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2015-09-26 14:49 - 2015-07-10 20:17 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 20:04 - 03362816 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-09-26 14:49 - 2015-07-10 20:03 - 03248128 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-09-26 14:49 - 2015-07-10 19:51 - 04398080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 19:41 - 03687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-09-26 14:49 - 2015-07-10 19:40 - 02606080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-09-26 14:49 - 2015-07-10 04:53 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2015-09-26 14:49 - 2015-07-10 04:31 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-09-26 14:48 - 2015-08-12 23:22 - 02093056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2015-09-26 14:48 - 2015-08-12 23:20 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-12 22:53 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-11 05:04 - 01087296 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-09-26 14:48 - 2015-08-11 05:03 - 00442208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-09-26 14:48 - 2015-08-11 05:02 - 00554744 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 05:02 - 00292856 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 05:02 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2015-09-26 14:48 - 2015-08-11 04:52 - 00993104 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:50 - 01643872 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 04048808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-09-26 14:48 - 2015-08-11 04:40 - 02151208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 00918320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-09-26 14:48 - 2015-08-11 04:38 - 00454000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 04:37 - 00243800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 04:26 - 00845664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 04:20 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 04:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2015-09-26 14:48 - 2015-08-11 04:18 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 04:16 - 02416640 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ C:\Windows\system32\diagtrack_wininternal.dll
2015-09-26 14:48 - 2015-08-11 04:13 - 00413184 _____ C:\Windows\system32\diagtrack_win.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 02446336 _____ C:\Windows\system32\InputService.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 04:10 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 04:09 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 01178112 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2015-09-26 14:48 - 2015-08-11 04:06 - 07523328 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\LocationGeofences.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\LocationPermissions.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2015-09-26 14:48 - 2015-08-11 04:01 - 01334784 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 04:00 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 04:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\syncutil.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 03:58 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 03:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01916928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 03:50 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 03:48 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 03:47 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 03:43 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-09-26 14:48 - 2015-08-11 03:42 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01112064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 03:39 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 03:38 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-09-26 14:48 - 2015-08-08 02:29 - 01822280 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-09-26 14:48 - 2015-08-08 02:01 - 01533496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-09-26 14:48 - 2015-08-05 22:17 - 00237392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-09-26 14:48 - 2015-08-05 22:17 - 00200528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-09-26 14:48 - 2015-08-05 21:22 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2015-09-26 14:48 - 2015-08-04 23:29 - 00644128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-09-26 14:48 - 2015-08-04 23:00 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-09-26 14:48 - 2015-08-04 22:39 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-09-26 14:48 - 2015-08-03 23:07 - 00102752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-09-26 14:48 - 2015-08-03 23:06 - 00583128 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-09-26 14:48 - 2015-08-03 23:06 - 00243248 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-09-26 14:48 - 2015-08-03 22:23 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2015-09-26 14:48 - 2015-08-03 21:47 - 00898560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2015-09-26 14:48 - 2015-08-02 21:32 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:19 - 00505696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2015-09-26 14:48 - 2015-08-02 21:19 - 00393568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-09-26 14:48 - 2015-08-02 21:18 - 00594472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2015-09-26 14:48 - 2015-08-02 21:18 - 00046432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys
2015-09-26 14:48 - 2015-08-02 21:17 - 00516960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-09-26 14:48 - 2015-08-02 21:17 - 00052264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-09-26 14:48 - 2015-08-02 21:12 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:49 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:31 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2015-09-26 14:48 - 2015-08-02 20:30 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_UserAccount.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModelShim.dll
2015-09-26 14:48 - 2015-08-02 20:23 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:22 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2015-09-26 14:48 - 2015-08-02 20:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2015-09-26 14:48 - 2015-08-02 20:18 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2015-09-26 14:48 - 2015-08-02 20:14 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2015-09-26 14:48 - 2015-08-02 20:10 - 01162240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2015-09-26 14:48 - 2015-08-02 20:06 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:03 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 19:59 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2015-09-26 14:48 - 2015-07-30 01:23 - 00527952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-09-26 14:48 - 2015-07-30 01:21 - 00816576 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01200400 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01025840 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:15 - 00632168 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-09-26 14:48 - 2015-07-30 01:14 - 00333168 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-09-26 14:48 - 2015-07-30 01:05 - 00501008 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-09-26 14:48 - 2015-07-30 00:24 - 00252768 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2015-09-26 14:48 - 2015-07-29 23:29 - 00705520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-09-26 14:48 - 2015-07-29 23:26 - 00877016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 00713312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00445240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00407616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00285632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00896144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00507696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2015-09-26 14:48 - 2015-07-29 23:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerShellext.exe
2015-09-26 14:48 - 2015-07-29 23:08 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2015-09-26 14:48 - 2015-07-29 23:08 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2015-09-26 14:48 - 2015-07-29 22:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00521216 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00487424 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:42 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2015-09-26 14:48 - 2015-07-29 22:40 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 01420288 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-09-26 14:48 - 2015-07-29 22:34 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 22:29 - 00654848 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-09-26 14:48 - 2015-07-29 22:07 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:04 - 00335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 21:59 - 00473088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 21:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-09-26 14:48 - 2015-07-26 00:16 - 01018568 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-09-26 14:48 - 2015-07-26 00:16 - 00858408 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-09-26 14:48 - 2015-07-26 00:14 - 01294352 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-09-26 14:48 - 2015-07-26 00:14 - 01123400 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-09-26 14:48 - 2015-07-25 22:49 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:47 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2015-09-26 14:48 - 2015-07-25 22:35 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00750592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:29 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2015-09-26 14:48 - 2015-07-23 22:30 - 00498016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-09-26 14:48 - 2015-07-23 22:18 - 00980832 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2015-09-26 14:48 - 2015-07-23 22:17 - 00695136 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 22:17 - 00521568 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-09-26 14:48 - 2015-07-23 22:12 - 00584544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 21:55 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:52 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:46 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2015-09-26 14:48 - 2015-07-23 21:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll
2015-09-26 14:48 - 2015-07-23 21:34 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2015-09-26 14:48 - 2015-07-23 21:30 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-09-26 14:48 - 2015-07-23 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2015-09-26 14:48 - 2015-07-23 21:25 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-09-26 14:48 - 2015-07-23 21:24 - 00925696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-09-26 14:48 - 2015-07-22 00:18 - 00808856 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-22 00:15 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-09-26 14:48 - 2015-07-22 00:02 - 00966424 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 23:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-09-26 14:48 - 2015-07-21 23:02 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:53 - 00762896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 22:46 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 22:21 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-09-26 14:48 - 2015-07-21 22:13 - 00677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-26 14:48 - 2015-07-21 22:10 - 00828416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:07 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 22:03 - 00623616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 21:50 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-18 23:04 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2015-09-26 14:48 - 2015-07-18 22:54 - 01168736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-09-26 14:48 - 2015-07-18 22:23 - 00505344 _____ C:\Windows\system32\EditionUpgradeManagerObj.dll
2015-09-26 14:48 - 2015-07-18 22:18 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-09-26 14:48 - 2015-07-18 22:02 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 21:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 03:47 - 00082616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2015-09-26 14:48 - 2015-07-18 02:43 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-18 02:37 - 01043968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-18 02:28 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-18 02:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2015-09-26 14:48 - 2015-07-18 00:17 - 00097128 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2015-09-26 14:48 - 2015-07-18 00:02 - 00290312 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2015-09-26 14:48 - 2015-07-17 23:06 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 01411072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
2015-09-26 14:48 - 2015-07-17 22:50 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-09-26 14:48 - 2015-07-17 22:49 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-09-26 14:48 - 2015-07-17 22:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-09-26 14:48 - 2015-07-16 23:23 - 00934752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2015-09-26 14:48 - 2015-07-16 23:13 - 00601344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-09-26 14:48 - 2015-07-16 23:12 - 00630160 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-09-26 14:48 - 2015-07-16 23:07 - 00425824 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 21:36 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2015-09-26 14:48 - 2015-07-16 21:33 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2015-09-26 14:48 - 2015-07-16 21:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\omadmprc.exe
2015-09-26 14:48 - 2015-07-16 21:32 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 07051264 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 21:24 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00869376 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2015-09-26 14:48 - 2015-07-16 21:18 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 21:05 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 20:56 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2015-09-26 14:48 - 2015-07-16 20:53 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 20:51 - 05076480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 20:50 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2015-09-26 14:48 - 2015-07-16 20:44 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 00:39 - 00061280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2015-09-26 14:48 - 2015-07-15 23:09 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2015-09-26 14:48 - 2015-07-15 23:04 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 23:03 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2015-09-26 14:48 - 2015-07-15 22:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2015-09-26 14:48 - 2015-07-15 22:47 - 00754688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 22:45 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:43 - 01602560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:41 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2015-09-26 14:48 - 2015-07-15 22:40 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2015-09-26 14:48 - 2015-07-15 22:36 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll
2015-09-26 14:48 - 2015-07-15 22:35 - 01521664 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2015-09-26 14:48 - 2015-07-15 22:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2015-09-26 14:48 - 2015-07-15 22:32 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:29 - 01380864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:19 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2015-09-26 14:48 - 2015-07-14 22:21 - 01365072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 01591856 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 00325984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-09-26 14:48 - 2015-07-14 21:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ C:\Windows\system32\LicenseManagerApi.dll
2015-09-26 14:48 - 2015-07-14 20:57 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\OmaDmAgent.dll
2015-09-26 14:48 - 2015-07-14 20:41 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.ProxyStub.dll
2015-09-26 14:48 - 2015-07-14 20:35 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\unenrollhook.dll
2015-09-26 14:48 - 2015-07-14 20:27 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.PAL.Desktop.dll
2015-09-26 14:48 - 2015-07-13 22:00 - 00208736 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:37 - 00181088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:04 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys
2015-09-26 14:48 - 2015-07-13 20:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-09-26 14:48 - 2015-07-13 20:49 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2015-09-26 14:48 - 2015-07-13 20:38 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-09-26 14:48 - 2015-07-13 20:20 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2015-09-26 14:48 - 2015-07-12 19:01 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2015-09-26 14:48 - 2015-07-12 18:30 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2015-09-26 14:48 - 2015-07-11 19:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2015-09-26 14:48 - 2015-07-11 19:25 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2015-09-26 14:48 - 2015-07-11 18:46 - 00441344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2015-09-26 14:48 - 2015-07-10 20:28 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:07 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 20:05 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 20:03 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-09-26 14:48 - 2015-07-10 20:02 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:01 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:57 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 19:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 19:42 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 03579904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-09-26 14:48 - 2015-07-10 19:34 - 00294912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 10:51 - 00823336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 10:47 - 00265480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-09-26 14:48 - 2015-07-10 10:00 - 01101792 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 09:52 - 00335248 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-09-26 14:48 - 2015-07-10 05:59 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SignInOptions.dll
2015-09-26 14:48 - 2015-07-10 05:42 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:10 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:07 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\PackageInspector.exe
2015-09-26 14:48 - 2015-07-10 05:05 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2015-09-26 14:48 - 2015-07-10 04:35 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-09-26 14:48 - 2015-07-10 04:29 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2015-09-26 14:46 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Samsung
2015-09-26 14:45 - 2015-09-26 14:45 - 00236696 _____ C:\Windows\system32\SBuySupplies.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00168288 _____ C:\Windows\system32\us006ci.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00099848 _____ (SS) C:\Windows\system32\us006ci.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\system32\us006lm.dll
2015-09-26 14:24 - 2015-09-26 22:36 - 00000000 ____D C:\Users\Becky\AppData\Local\Comms
2015-09-26 14:21 - 2015-09-26 14:21 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-26 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-13 16:57 - 00574256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-09-26 14:17 - 2015-08-26 19:37 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-09-26 14:17 - 2015-08-26 19:37 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01710568 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-09-26 14:16 - 2015-09-21 17:55 - 11198080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 01567576 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-09-26 14:16 - 2015-09-18 17:08 - 00204648 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 00040280 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 42840184 _____ C:\Windows\system32\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 22559352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 18569848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 17934400 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 16646112 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15631128 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15336024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 14945040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 13666840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12611632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12191856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03484216 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03077544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02354808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02105976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01898104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01178248 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01075320 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01064056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01001440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00986416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00945272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00787384 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00632664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00408184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00387720 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00376440 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00364152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00339760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00316120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00177088 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00072504 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00050472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-09-26 14:12 - 2015-09-26 14:13 - 304224616 _____ (NVIDIA Corporation) C:\Users\Becky\Downloads\355.98-desktop-win10-64bit-international-whql.exe
2015-09-26 14:11 - 2015-09-26 14:11 - 00061037 _____ C:\Windows\SysWOW64\CCCInstall_201509261211117521.log
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Macromedia
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\ATI
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\MicrosoftEdge
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\ATI
2015-09-26 14:10 - 2015-09-26 14:10 - 00000000 ____D C:\Users\Becky\AppData\Local\NetworkTiles
2015-09-26 14:08 - 2015-09-26 14:08 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA
2015-09-26 14:07 - 2015-09-28 14:35 - 00875126 _____ C:\Windows\system32\PerfStringBackup.INI
2015-09-26 14:07 - 2015-09-28 14:24 - 00000000 ____D C:\ProgramData\NVIDIA
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:07 - 00466736 _____ (Microsoft Corporation) C:\Windows\system32\coin98itp.dll
2015-09-26 14:07 - 2015-09-26 14:07 - 00193336 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2015-09-26 14:07 - 2015-09-13 17:04 - 06885168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 03496056 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 02558584 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00937776 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-09-26 14:07 - 2015-09-13 17:04 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-09-26 14:07 - 2015-09-11 07:17 - 05231082 _____ C:\Windows\system32\nvcoproc.bin
2015-09-26 14:06 - 2015-09-26 14:06 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435354.dll
2015-09-26 14:06 - 2015-09-26 14:06 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435354.dll
2015-09-26 14:06 - 2015-09-13 19:24 - 00034098 _____ C:\Windows\system32\nvinfo.pb
2015-09-26 14:05 - 2015-09-26 14:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-09-26 13:40 - 2015-09-26 20:56 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-26 13:40 - 2015-09-26 13:40 - 30760944 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 25308656 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 21632992 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 15727072 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 14312416 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 12062040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 10191264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 09191312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08979760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08865496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08009344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07575664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 01468224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01257952 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01213192 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01196032 _____ C:\Windows\system32\amdocl_as64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01070592 _____ C:\Windows\system32\amdocl_ld64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01005552 _____ C:\Windows\SysWOW64\amdocl_as32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00874480 _____ (AMD) C:\Windows\system32\coinst_15.20.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00807424 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00681456 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00675296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\system32\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00452576 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00377312 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00322868 _____ C:\Windows\system32\ativvaxy_vi.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00321200 _____ C:\Windows\system32\ativvaxy_vi_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00256992 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00255808 _____ C:\Windows\system32\ativvaxy_cz_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00250884 _____ C:\Windows\system32\ativvaxy_FJ.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00249088 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00243696 _____ C:\Windows\system32\clinfo.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00234420 _____ C:\Windows\system32\ativvaxy_cik.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00232752 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00201184 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00170464 _____ C:\Windows\system32\atieah64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00169152 _____ C:\Windows\system32\ativce03.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00162240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00152560 _____ C:\Windows\SysWOW64\atieah32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00152032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00143048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00131592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00113880 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111600 _____ C:\Windows\system32\hsa-thunk64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111088 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00102384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00100816 _____ C:\Windows\system32\ativce02.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00095216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00089520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00085472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00082680 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00073712 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00071152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00069600 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00064496 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00062432 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00061408 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00059360 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00039904 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-09-26 13:39 - 2015-09-26 13:40 - 47795680 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 72130592 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 39723504 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 27544560 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 22328800 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 14065952 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13243904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13108552 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07181616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07104896 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06486000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06273344 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05836400 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 05464672 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05344904 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05076976 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 04585728 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 03653631 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-09-26 13:39 - 2015-09-26 13:39 - 03337432 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03309264 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03270464 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03200501 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 03019040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02955008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02856712 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02720000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-09-26 13:39 - 2015-09-26 13:39 - 02662632 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02522728 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02453480 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02218936 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02119296 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02058880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01991776 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01985568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01804928 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01768192 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01624752 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01613712 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01530872 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01456472 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01416832 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01403096 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01354808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01351688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01231256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01183360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01141200 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01015616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01012560 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00982248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00978208 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00962432 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940640 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940328 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00905048 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00891160 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00889888 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00840048 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00833798 _____ C:\Windows\system32\amdicdxx.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00765128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00759208 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00742536 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00723232 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00713912 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00693024 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00692520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00659872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00632352 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00610136 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00588624 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00583168 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-09-26 13:39 - 2015-09-26 13:39 - 00545824 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00527824 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00517464 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00513712 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00479992 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00472832 _____ C:\Windows\system32\amdmiracast.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00461272 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00460448 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00458016 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00453848 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00440736 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00399456 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00393480 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00374096 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00366976 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00355496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352424 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00342280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00339136 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00322032 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00283928 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00267984 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264968 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264896 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00263944 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00242768 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00235040 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00232712 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00225504 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00220136 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00213488 _____ C:\Windows\system32\amdgfxinfo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00205640 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00198640 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00182888 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00176480 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00168936 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00167456 _____ C:\Windows\system32\amde31a.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00161960 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00144192 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00143344 _____ C:\Windows\system32\amdhdl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00132080 _____ C:\Windows\SysWOW64\amdhdl32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00131024 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00128504 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00127296 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00120712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00114008 _____ C:\Windows\system32\audioLibVc.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00103424 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00102912 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdWT6.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 00100544 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097912 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00094176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00093152 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00085096 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00049632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00032400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00002338 _____ C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ___RD C:\Users\Becky\OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\system32\DAX2
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Program Files\Realtek
2015-09-26 13:38 - 2015-09-28 12:39 - 00000000 ____D C:\Users\Becky
2015-09-26 13:38 - 2015-09-28 05:39 - 00000000 ____D C:\Users\Becky\AppData\Local\Packages
2015-09-26 13:38 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Adobe
2015-09-26 13:38 - 2015-09-26 17:45 - 00000000 ____D C:\Users\Becky\AppData\Local\VirtualStore
2015-09-26 13:38 - 2015-09-26 13:38 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_defaultuser0_HistoryPrediction.bin
2015-09-26 13:38 - 2015-09-26 13:38 - 00000020 ___SH C:\Users\Becky\ntuser.ini
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\TileDataLayer
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\Publishers
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 __RSD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-26 13:36 - 2015-09-26 13:36 - 00000000 ____D C:\Windows\CSC
2015-09-26 13:36 - 2015-07-10 05:59 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00970912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00963232 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00660128 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00455328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00356528 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00247984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib120.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-28 14:24 - 2015-07-10 07:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-28 14:23 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\sru
2015-09-28 14:23 - 2015-07-10 04:05 - 00131072 ___SH C:\Windows\system32\config\BBI
2015-09-28 10:03 - 2015-07-10 07:20 - 05043048 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-28 06:24 - 2015-07-10 05:55 - 00000000 ____D C:\Windows\CbsTemp
2015-09-28 06:17 - 2015-07-10 06:04 - 00000167 _____ C:\Windows\win.ini
2015-09-27 15:33 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\AppReadiness
2015-09-27 04:00 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\appcompat
2015-09-26 20:56 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-09-26 20:23 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-09-26 17:41 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klpd.sys
2015-09-26 17:35 - 2015-07-10 06:04 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-09-26 17:35 - 2015-07-10 04:05 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-09-26 16:29 - 2015-07-10 06:04 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-09-26 16:16 - 2015-07-10 08:29 - 00000000 ____D C:\Windows\ShellNew
2015-09-26 16:13 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\System
2015-09-26 15:30 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\Recovery
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 __RHD C:\Users\Default
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Sysprep
2015-09-26 14:54 - 2015-07-10 08:29 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PurchaseDialog
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\SysWOW64\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\appraiser
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Provisioning
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Dism
2015-09-26 14:08 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\LiveKernelReports
2015-09-26 14:07 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Help
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PrintDialog
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\MiracastView
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\spool
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\restore
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-09-15 11:12 - 2015-07-10 06:06 - 00812008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-09-15 11:12 - 2015-07-10 06:06 - 00178152 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2015-09-26 13:39 - 2015-09-26 13:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-28 04:15 - 2015-09-28 12:32 - 0000031 _____ () C:\ProgramData\fd4_sys.d

Some files in TEMP:
====================
C:\Users\Becky\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-09-26 15:30

==================== End of FRST.txt ============================

 

Addition log:

Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Becky (2015-09-28 14:43:47)
Running from C:\Users\Becky\Desktop
Windows 10 Enterprise (X64) (2015-09-26 18:37:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3588804255-3441825186-3011144637-500 - Administrator - Disabled)
Becky (S-1-5-21-3588804255-3441825186-3011144637-1001 - Administrator - Enabled) => C:\Users\Becky
DefaultAccount (S-1-5-21-3588804255-3441825186-3011144637-503 - Limited - Disabled)
Guest (S-1-5-21-3588804255-3441825186-3011144637-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Total Security (Disabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Total Security (Disabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Total Security (Disabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acronis True Image Home 2011 (HKLM-x32\...\{04A3A6B0-8E19-49BB-82FF-65C5A55F917D}) (Version: 14.0.5519 - Acronis)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.12 - Adobe Systems)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.1 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 1.4.0 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.3.0.151 - Adobe Systems Incorporated)
Adobe Creative Suite 5.5 Master Collection (HKLM-x32\...\{D57FC112-312E-4D70-860F-2DB8FB6858F0}) (Version: 5.5 - Adobe Systems Incorporated)
Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Fireworks CS6 (HKLM-x32\...\{CA7C485C-7A89-11E1-B2C8-CD54B377BC52}) (Version: 12.0.1 - Adobe Systems Incorporated)
Adobe Flash Builder 4.7 (64 Bit) (HKLM-x32\...\{848DE8E1-521D-4748-A158-517708107EF3}) (Version: 4.7 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Professional CC 2015 (HKLM-x32\...\{31390329-FFF0-11E4-85AD-AF2C4143F080}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.1.0 - Adobe Systems Incorporated)
Adobe InCopy CC 2015 (HKLM-x32\...\{9EF1DB49-6D32-1014-93B7-EB62FA572532}) (Version: 11.0.1.105 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.1.0.122 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.0.2 - Adobe Systems Incorporated)
Adobe Muse CC 2015 (HKLM-x32\...\{25CC1EC0-19D9-11E5-952D-BD72CD08879E}) (Version: 2015.0.2.4 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.2 - Adobe Systems Incorporated)
AllShare Framework DMS (HKLM\...\{83232C27-8C3F-44A5-9EB2-BB7161228ADD}) (Version: 1.3.23 - Samsung)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.6.0000 - Asmedia Technology)
AV Bros. Page Curl Pro 2.2 (Remove Only) (HKLM-x32\...\AV Bros. Page Curl Pro 2.2) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Color Wheel Expert 4.2 (HKLM-x32\...\Color Wheel Expert_is1) (Version:  - )
Font Manager 3.5 (HKLM-x32\...\Font Manager_is1) (Version:  - Alexander G Styopkin)
FontDoctor for Windows version 8.1.1 (HKLM-x32\...\{84C28FDA-A722-429B-8079-1015AF06754D}}_is1) (Version: 8.1.1 - Extensis Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version:  - HDS)
i1Profiler (HKLM-x32\...\i1Profiler_is1) (Version: 1.5.4 - X-Rite)
Intel® Chipset Device Software (x32 Version: 10.1.1.7 - Intel® Corporation) Hidden
Kaspersky Total Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Total Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
LogMeIn Ignition (HKLM-x32\...\{FDCDF6C3-4DF5-42D5-A1DC-9F8A1A2CB68A}) (Version: 1.1.51 - LogMeIn, Inc.)
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.6.140.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 41.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 en-US)) (Version: 41.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.98 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.98 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PhraseExpress v11.0.121 (HKLM-x32\...\PhraseExpress_is1) (Version: 11.0.121 - Bartels Media GmbH)
Popcorn Time (HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Popcorn Time) (Version:  - Popcorn Official)
QuickBooks Pro 2008 (HKLM-x32\...\{8ECB8220-F422-4BEB-9596-97033C533702}) (Version: 18.0.4003.606 - Intuit Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7572 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 2.5.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.7 - VS Revo Group, Ltd.)
RoboForm 7-9-16-7 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-16-7 - Siber Systems)
Samsung Link 2.0.0.1503181422 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1503181422 - Copyright 2013 SAMSUNG)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden
SmartFTP Client (HKLM\...\{3C51045E-B5F6-43CD-910C-133E0976F4F4}) (Version: 5.0.1353.0 - SmartSoft Ltd.)
SupportSoft Assisted Service (HKLM-x32\...\{5A3F6A80-7913-475E-8B96-477A952CFA43}) (Version: 15 - SupportSoft)
Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version:  - Elaborate Bytes)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinZip 11.1 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}) (Version: 11.1.7466 - WinZip Computing, S.L. )
X-Rite Device Services Manager (HKLM-x32\...\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}) (Version: 2.3.81 - X-Rite)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)

==================== Restore Points =========================

26-09-2015 13:36:25 Windows Modules Installer
27-09-2015 23:08:49 Installed Adobe Acrobat XI Pro.

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 06:04 - 2015-07-10 06:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00E4D256-3065-4BE4-B4F5-7758AA2271C5} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform....GJKJMIBNKJHIKJ"
Task: {031986C1-4FDA-4B99-8E75-D0717DFC99FE} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-09-10] (Microsoft)
Task: {1A8E1FC6-0828-41B1-94E4-4F9CE12B61AC} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_Becky => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [2011-09-14] (H.D.S. Hungary)
Task: {2DA9898D-CBE4-487A-AC60-65993068B4D2} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {38D3D2E2-2CBA-46E1-AB1F-AFA69336C0C2} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {46EE90D4-C7A9-432D-971C-BED34A7698EC} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-09-28] (Siber Systems)
Task: {52544F2B-7E7E-4761-96A7-67244C0ED1A7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {65DC54FA-A9DF-412A-8C46-56348A328E7F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-08-26] (Microsoft Corporation)
Task: {8404DA92-D17B-4FD4-9E21-79E0762A3691} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {85B88B76-5950-4D7F-8099-7CA1369BE4BD} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {900DA37F-7791-4DC8-8500-286944B7F7EB} - System32\Tasks\MySystemTools => C:\Program Files (x86)\curtain\calculator.exe
Task: {AF61581E-6DD0-48CF-A39B-79FC335B5DEF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {B7A8B930-20A0-457D-8546-7EC9A0984FC5} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)
Task: {E040785C-1D90-4E90-B57F-EF52EB8C4DAE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {EF06B720-CB47-4AFF-9E2E-A8D719254E65} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {F435490F-7B77-4A31-A991-F2F4040181C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {FDC4929D-DCAA-4BFB-9B18-1EC33810F321} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {FF63B5E5-EEFA-4906-8429-1CB8090CA685} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-09-04] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\System32\us006lm.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-09-11 19:02 - 2015-09-11 19:02 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898728 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2010-07-14 23:44 - 2010-07-14 23:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2015-07-10 05:59 - 2015-07-10 05:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-09-26 14:49 - 2015-08-02 20:11 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 06:00 - 2015-07-10 08:28 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-09-26 14:49 - 2015-08-11 03:58 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-09-26 14:49 - 2015-08-02 20:09 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\kpcengine.2.3.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 01588224 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 02633728 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.11.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{2F37093D-C773-4AE6-B1F6-A9BB4C11AB6E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BE201625-6BB0-46E4-B90E-527800675CFA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{7455797C-25E0-48B5-8882-0CB0A38B0452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{2AAFA218-895A-431F-9C63-83DF7BAEDD85}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{756C6836-245E-4E8D-AB52-971356B23031}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{EBAA303A-1644-4303-B0DC-8244577C3A1D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{25527B7B-8A08-4AFF-A6CC-E5119A413711}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3832DA12-9ECC-4CD7-B267-89263A98D366}] => (Allow) C:\Program Files (x86)\PhraseExpress\PhraseExpress.exe
FirewallRules: [{09A09534-944E-4016-9556-3A574DF27F00}] => (Allow) C:\Program Files\SmartFTP Client\SmartFTP.exe
FirewallRules: [{67C910DE-01CE-4813-9DB9-58C73B4E109F}] => (Allow) LPort=5454
FirewallRules: [{795ADB1B-0B42-49A2-8082-9ADF2576EB86}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{22E16675-13B4-4CFD-9ACE-70FB846FA9AA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{81241BE7-5316-418A-9ED2-28C3D320D8FA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{9D1AA06D-F0C4-40D0-A2A6-F5F6DC3345F4}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{7A7E6542-106E-46E8-B1E2-446EE5C4DFE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{002C1F07-C20C-49CF-958A-0C1AE8D140DE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6E83704E-5813-4004-B5CB-13F4A28B4E81}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{3B460958-C3D1-47B9-84F7-8818B3199478}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{463290F3-5948-4FA6-9BC2-CD8A17DDA4B3}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{A3BE2CEB-E2C3-45BB-BF07-C9F50ED5CF2E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{8D48879A-89E3-458B-A4CF-0EFED56AB613}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{B253BEC7-EE19-4104-A637-B314F1F8A4E2}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{9E41835C-A83E-4199-957A-45747323E473}] => (Allow) LPort=8743
FirewallRules: [{23FE6F32-9829-483A-86E8-90FD47C7D3A4}] => (Allow) LPort=8643
FirewallRules: [{077D52DB-2BAB-4ED5-9ACB-02B58E8A7634}] => (Allow) LPort=7676
FirewallRules: [{034B71D9-6E7E-4F1F-9C7E-8C9D2C67BB9A}] => (Allow) LPort=7679
FirewallRules: [{0BA4E00E-A9FE-430D-A4A2-9B3DBA8CCF7E}] => (Allow) LPort=24234
FirewallRules: [{C29BBBA5-9E2C-4127-B004-960B6889384A}] => (Allow) LPort=7900
FirewallRules: [{2440E535-AA1B-42AC-AF46-3647CF8EA949}] => (Allow) LPort=1900
FirewallRules: [{3B08E475-4B0F-49E9-B46F-E1C4B3E812EC}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{4A5188FE-1AEE-4D18-8A1F-1C591BBEEE3B}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{44580277-1F92-4105-A6C1-B93FBE16F92D}] => (Allow) LPort=7935
FirewallRules: [{7B1918DB-226B-4843-88EF-DF3AE87023AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============

Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Qualcomm Atheros AR938x Wireless Network Adapter
Description: Qualcomm Atheros AR938x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/28/2015 02:35:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Adobe CEF Helper.exe, version: 3.3.0.149, time stamp: 0x55f82d39
Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44
Exception code: 0xc0000005
Fault offset: 0x00444106
Faulting process id: 0x2934
Faulting application start time: 0xAdobe CEF Helper.exe0
Faulting application path: Adobe CEF Helper.exe1
Faulting module path: Adobe CEF Helper.exe2
Report Id: Adobe CEF Helper.exe3
Faulting package full name: Adobe CEF Helper.exe4
Faulting package-relative application ID: Adobe CEF Helper.exe5

Error: (09/28/2015 02:25:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5

Error: (09/28/2015 02:25:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5

Error: (09/28/2015 02:25:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5

Error: (09/28/2015 02:25:01 PM) (Source: .NET Runtime) (EventID: 0) (User: )
Description: CorperfmonExt!CollectCtrs caught exception c0000090

Error: (09/28/2015 02:23:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Adobe CEF Helper.exe, version: 3.3.0.149, time stamp: 0x55f82d39
Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44
Exception code: 0xc0000005
Fault offset: 0x00444106
Faulting process id: 0x29c0
Faulting application start time: 0xAdobe CEF Helper.exe0
Faulting application path: Adobe CEF Helper.exe1
Faulting module path: Adobe CEF Helper.exe2
Report Id: Adobe CEF Helper.exe3
Faulting package full name: Adobe CEF Helper.exe4
Faulting package-relative application ID: Adobe CEF Helper.exe5

Error: (09/28/2015 02:15:54 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program HDSentinel.exe version 3.7.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: acc

Start Time: 01d0fa21fb58a6a6

Termination Time: 5

Application Path: C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe

Report Id: 52da32d6-6615-11e5-9bdd-c86000cc28ae

Faulting package full name:

Faulting package-relative application ID:

Error: (09/28/2015 02:15:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5

Error: (09/28/2015 02:15:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5

Error: (09/28/2015 02:15:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5


System errors:
=============
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Samsung Link Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The X-Rite Device Services Manager service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 15000 milliseconds: Restart the service.

Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The QBCFMonitorService service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Network Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Streamer Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The AdobeUpdateService service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Adobe Genuine Software Integrity Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Acronis Scheduler2 Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA GeForce Experience Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Acronis Nonstop Backup service service terminated unexpectedly.  It has done this 1 time(s).


==================== Memory info ===========================

Processor: Intel® Core™ i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 11%
Total physical RAM: 16328.56 MB
Available physical RAM: 14474.17 MB
Total Virtual: 19272.56 MB
Available Virtual: 17332.69 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.96 GB) (Free:862.38 GB) NTFS
Drive e: (Production) (Fixed) (Total:558.91 GB) (Free:89.62 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (Art) (Fixed) (Total:1863.01 GB) (Free:211.58 GB) NTFS
Drive g: (Becky's Drive) (Fixed) (Total:1397.25 GB) (Free:306.29 GB) NTFS
Drive h: (J_CENA_X64FREV_EN-US_DV5) (CDROM) (Total:3.67 GB) (Free:0 GB) UDF
Drive i: (Beckys Drive) (Fixed) (Total:3725.9 GB) (Free:3725.57 GB) NTFS
Drive j: () (Removable) (Total:7.52 GB) (Free:7.52 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E3D68838)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0EE981B3)

Partition: GPT.

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 558.9 GB) (Disk ID: 331D369F)
Partition 1: (Active) - (Size=558.9 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 1397.3 GB) (Disk ID: 43DB354D)
Partition 2: (Active) - (Size=1397.3 GB) - (Type=05)

========================================================
Disk: 4 (Size: 1863 GB) (Disk ID: 000E06C7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 686B730D)

Partition: GPT.

========================================================
Disk: 7 (Size: 7.5 GB) (Disk ID: 6D412AD6)
Partition 1: (Active) - (Size=7.5 GB) - (Type=0B)

==================== End of Addition.txt ============================


  • 0

#6
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

JRT log:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.3 (09.21.2015:1)
OS: Windows 10 Enterprise x64
Ran by Becky on Mon 09/28/2015 at 14:35:28.43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer



~~~ Files



~~~ Folders



~~~ Chrome


[C:\Users\Becky\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Becky\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Becky\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Becky\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 09/28/2015 at 14:37:26.30
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


  • 0

#7
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

I would uninstall Hard Disk Sentinel.  I'm seeing a lot of errors so it may not like Win 10 or vice versa.

 

I missed one of the entries so one more time on the fixlist:

 

Download the attached fixlist.txt to the same location as FRST
Run FRST and press Fix
A fix log will be generated please post that.  Run FRST again, check the Additions box and then Scan.  You will get two logs.  Post them both.

 

Are you still seeing the problem or did we get it?


  • 0

#8
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Fixlist log:

Fix result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Becky (2015-09-28 16:39:05) Run:2
Running from C:\Users\Becky\Desktop
Loaded Profiles: Becky (Available Profiles: Becky)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Task: {900DA37F-7791-4DC8-8500-286944B7F7EB} - System32\Tasks\MySystemTools => C:\Program Files (x86)\curtain\calculator.exe
*****************
 
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{900DA37F-7791-4DC8-8500-286944B7F7EB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{900DA37F-7791-4DC8-8500-286944B7F7EB}" => key removed successfully
C:\Windows\System32\Tasks\MySystemTools => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySystemTools" => key removed successfully
 
==== End of Fixlog 16:39:05 ====
 
FRST log:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-09-2015 01
Ran by Becky (administrator) on DESKTOP-HESCRH0 (28-09-2015 16:40:08)
Running from C:\Users\Becky\Desktop
Loaded Profiles: Becky (Available Profiles: Becky)
Platform: Windows 10 Enterprise (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avpui.exe
(X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\InDesign.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\SwitchBoard\SwitchBoard.exe
(Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\DynamicLinkMediaServer\32\dynamiclinkmanager.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
(Joyent, Inc) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
(Adobe Systems Incorporated.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrodist.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\AcroRd32.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\WINWORD.EXE
(SmartSoft Ltd.) C:\Program Files\SmartFTP Client\SmartFTP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
 

==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8529152 2015-09-26] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-26] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-09-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Samsung Link] => C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe [607584 2015-03-18] (Copyright 2013 SAMSUNG)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [390736 2010-09-08] (Acronis)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912 2015-09-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3498728 2015-06-29] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SAOB Monitor] => C:\Program Files (x86)\Acronis\OnlineBackupStandalone\TrueImageMonitor.exe [2536440 2010-09-02] (Acronis)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5479424 2010-09-08] (Acronis)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Run: [RoboForm] => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-09-28] (Siber Systems)
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\MountPoints2: {5e9cf559-648d-11e5-9bc2-806e6f6e6963} - "H:\setup.exe"
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\MountPoints2: {b5fbd13e-64ac-11e5-9bd6-90f6520da38e} - "L:\LaunchU3.exe"
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-09-11] ()
ShellIconOverlayIdentifiers: [SmartFTP Drop] -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\sfShellTools.dll [2014-03-11] (SmartSoft Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\i1Profiler Tray.lnk [2015-09-26]
ShortcutTarget: i1Profiler Tray.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2015-09-26]
ShortcutTarget: PhraseExpress.lnk -> C:\Program Files (x86)\PhraseExpress\phraseexpress.exe (Bartels Media GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk [2015-09-26]
ShortcutTarget: QuickBooks Update Agent.lnk -> C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe (Intuit Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\XRGamma.lnk [2015-09-26]
ShortcutTarget: XRGamma.lnk -> C:\Program Files (x86)\X-Rite\i1Profiler\XRGamma.exe (LOGO Kommunikations- und Drucktechnik GmbH & Co. KG)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
ProxyServer: [S-1-5-21-3588804255-3441825186-3011144637-1001] => http=127.0.0.1:8877;https=127.0.0.1:8877
Tcpip\Parameters: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{5b2c375d-5403-43d0-9d71-61718ebc5642}: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{62f64533-ed80-477c-aa7a-3e1a17db5c11}: [DhcpNameServer] 192.168.11.1
 
Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll [2015-09-28] (Siber Systems Inc.)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-05-08] (Adobe Systems Incorporated)
Handler-x32: intu-help-qb1 - {9B0F96C7-2E4B-433e-ABF3-043BA1B54AE3} - C:\Program Files (x86)\Intuit\QuickBooks 2008\HelpAsyncPluggableProtocol.dll [2007-11-12] (TODO: <Company name>)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler-x32: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows\SysWOW64\mscoree.dll [2015-07-10] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\Becky\AppData\Roaming\Mozilla\Firefox\Profiles\3s6jy4wj.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-28] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-09-17] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-28] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-02-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-28] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-09-17] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-02-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\FFExt\light_plugin_firefox [2015-09-26]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-09-28]
FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
FF Extension: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi [2015-09-26]
FF HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox\roboform.xpi
 
Chrome:
=======
CHR Profile: C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-28]
CHR Extension: (Google Docs) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-28]
CHR Extension: (Google Drive) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-28]
CHR Extension: (YouTube) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-28]
CHR Extension: (Google Search) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-28]
CHR Extension: (Kaspersky Protection) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2015-09-28]
CHR Extension: (Adobe Acrobat - Create PDF) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-09-28]
CHR Extension: (Google Sheets) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-28]
CHR Extension: (Google Docs Offline) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-28]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-28]
CHR Extension: (Gmail) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-28]
CHR Extension: (RoboForm Password Manager) - C:\Users\Becky\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2015-09-28]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.googl...mappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2015-06-29]
CHR HKLM-x32\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2015-09-26]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872 2015-09-15] (Adobe Systems Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [1846464 2015-09-10] (Adobe Systems, Incorporated)
S2 AllShare Framework DMS; C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe [404360 2013-12-21] (Samsung) [File not signed]
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\avp.exe [194000 2015-09-26] (Kaspersky Lab ZAO)
S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-26] (NVIDIA Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-26] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-26] (NVIDIA Corporation)
S2 QBCFMonitorService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [20480 2007-11-12] (Intuit) [File not signed]
S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [61440 2007-05-24] (Intuit Inc.) [File not signed]
S2 Samsung Link Service; C:\Program Files\Samsung\Samsung Link\Samsung Link.exe [616288 2015-03-18] (Copyright 2013 SAMSUNG)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [83312 2014-04-10] (X-Rite Inc.)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 asstahci64; C:\Windows\System32\drivers\asstahci64.sys [88936 2015-06-17] (Asmedia Technology)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-26] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [171192 2015-06-30] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [937656 2015-06-30] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-09-26] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [78008 2015-06-26] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-09-26] (Intel Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-10] (NVIDIA Corporation)
R3 SrvHsfPCIe; C:\Windows\system32\DRIVERS\VSTBS36.SYS [287744 2015-07-10] (Conexant Systems, Inc.)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
R2 WinI2C-DDC; C:\Windows\system32\drivers\DDCDrv.sys [20832 2014-05-14] (Nicomsoft Ltd.)
R2 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [10240 2014-05-14] (Nicomsoft Ltd.) [File not signed]
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 

==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-09-28 16:36 - 2015-09-28 16:36 - 00000250 _____ C:\Users\Becky\Downloads\fixlist (2).txt
2015-09-28 14:40 - 2015-09-28 14:40 - 00017184 _____ C:\Users\Becky\Downloads\fixlist (1).txt
2015-09-28 14:38 - 2015-09-28 14:38 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (3).exe
2015-09-28 14:37 - 2015-09-28 14:37 - 00001174 _____ C:\Users\Becky\Desktop\JRT.txt
2015-09-28 14:35 - 2015-09-28 14:35 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (2).exe
2015-09-28 14:34 - 2015-09-28 14:34 - 01800512 _____ (Malwarebytes) C:\Users\Becky\Downloads\JRT (1).exe
2015-09-28 14:33 - 2015-09-28 14:33 - 00000000 _____ C:\Users\Becky\Downloads\JRT.exe
2015-09-28 14:24 - 2015-09-28 14:24 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_Becky_HistoryPrediction.bin
2015-09-28 14:21 - 2015-09-28 14:23 - 00000000 ____D C:\AdwCleaner
2015-09-28 14:12 - 2015-09-28 14:12 - 00000000 ____D C:\Windows\SMSS-PFRO2172.tmp
2015-09-28 14:02 - 2015-09-28 14:00 - 00000000 _____ C:\Users\Becky\Desktop\JRT.exe
2015-09-28 13:59 - 2015-09-28 13:59 - 00017184 _____ C:\Users\Becky\Downloads\fixlist.txt
2015-09-28 13:58 - 2015-09-28 13:58 - 01670656 _____ C:\Users\Becky\Downloads\AdwCleaner (1).exe
2015-09-28 13:23 - 2015-09-28 13:23 - 01263200 _____ (Acronis) C:\Windows\system32\Drivers\tdrpm273.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00970336 _____ (Acronis) C:\Windows\system32\Drivers\timntr.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00279136 _____ (Acronis) C:\Windows\system32\Drivers\afcdp.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00277088 _____ (Acronis) C:\Windows\system32\Drivers\snapman.sys
2015-09-28 13:23 - 2015-09-28 13:23 - 00001448 _____ C:\Users\Public\Desktop\Acronis Online Backup.lnk
2015-09-28 13:23 - 2015-09-28 13:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-09-28 13:03 - 2015-09-28 13:03 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Acronis
2015-09-28 12:06 - 2015-09-28 12:06 - 01670656 _____ C:\Users\Becky\Downloads\AdwCleaner.exe
2015-09-28 11:12 - 2015-09-28 11:12 - 00000000 _____ C:\Windows\setuperr.log
2015-09-28 11:12 - 2015-09-28 11:12 - 00000000 _____ C:\Windows\setupact.log
2015-09-28 11:09 - 2015-09-28 14:35 - 00000275 _____ C:\Windows\WindowsUpdate.log
2015-09-28 11:04 - 2015-09-28 13:32 - 00002235 _____ C:\Users\Becky\Desktop\Google Chrome.lnk
2015-09-28 11:04 - 2015-09-28 12:40 - 00000650 _____ C:\Windows\PFRO.log
2015-09-28 11:01 - 2015-09-28 11:01 - 03790761 _____ C:\Users\Becky\Downloads\FontDoctor-W-8-3-0.zip
2015-09-28 10:38 - 2015-09-28 14:43 - 00035300 _____ C:\Users\Becky\Desktop\Addition.txt
2015-09-28 10:37 - 2015-09-28 16:40 - 00025539 _____ C:\Users\Becky\Desktop\FRST.txt
2015-09-28 10:37 - 2015-09-28 16:40 - 00000000 ____D C:\FRST
2015-09-28 10:36 - 2015-09-28 10:37 - 02192384 _____ (Farbar) C:\Users\Becky\Desktop\FRST64.exe
2015-09-28 10:36 - 2015-09-28 10:36 - 02192384 _____ (Farbar) C:\Users\Becky\Downloads\FRST64.exe
2015-09-28 10:11 - 2015-09-28 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-28 10:10 - 2015-09-28 16:15 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-28 10:10 - 2015-09-28 14:24 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-28 10:10 - 2015-09-28 10:10 - 00929872 _____ (Google Inc.) C:\Users\Becky\Downloads\ChromeSetup (1).exe
2015-09-28 10:10 - 2015-09-28 10:10 - 00003986 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-28 10:10 - 2015-09-28 10:10 - 00003754 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-28 09:59 - 2015-09-28 10:00 - 00007398 _____ C:\Users\Becky\Desktop\cc_20150928_095952.reg
2015-09-28 09:56 - 2015-09-28 09:56 - 00052340 _____ C:\Users\Becky\Desktop\cc_20150928_095620.reg
2015-09-28 09:52 - 2015-09-28 09:52 - 00002870 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-09-28 09:52 - 2015-09-28 09:52 - 00000000 ____D C:\Program Files\CCleaner
2015-09-28 09:49 - 2015-09-28 09:50 - 06677440 _____ (Piriform Ltd) C:\Users\Becky\Downloads\ccsetup510.exe
2015-09-28 09:19 - 2015-09-28 09:19 - 276274740 _____ C:\Users\Becky\Desktop\reg backup 092815.reg
2015-09-28 06:19 - 2015-09-28 06:19 - 00000000 ____D C:\Windows\system32\SleepStudy
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-09-28 06:17 - 2015-09-28 06:17 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-09-28 06:15 - 2015-09-28 12:51 - 00005250 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0
2015-09-28 04:39 - 2015-09-28 04:39 - 00000000 ____D C:\ProgramData\Lavasoft
2015-09-28 04:38 - 2015-09-28 04:39 - 02012464 _____ C:\Users\Becky\Downloads\Adaware_Installer.exe
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Users\Becky\AppData\Local\VS Revo Group
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2015-09-28 04:31 - 2015-09-28 04:31 - 00000000 ____D C:\Program Files\VS Revo Group
2015-09-28 04:31 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2015-09-28 04:15 - 2015-09-28 12:32 - 00000031 _____ C:\ProgramData\fd4_sys.d
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.FontGear.data
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FontDoctor for Windows
2015-09-28 04:15 - 2015-09-28 04:15 - 00000000 ____D C:\Program Files (x86)\FontDoctor for Windows
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2
2015-09-28 03:24 - 2015-09-28 03:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AV Bros. Page Curl Pro 2.2
2015-09-28 03:19 - 2015-09-28 03:22 - 00000000 ____D C:\Users\Becky\AppData\Roaming\AV Bros Page Curl Pro 2.2 (64 Bit)
2015-09-28 02:33 - 2015-09-28 02:33 - 00000000 ____D C:\Users\Becky\AppData\Local\Macromedia
2015-09-28 01:13 - 2015-09-28 03:24 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2015-09-28 01:13 - 2015-09-28 03:24 - 00002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2015-09-27 04:52 - 2015-09-27 04:59 - 729936528 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\AcrobatPro_11_Web_WWMUI.exe
2015-09-27 04:37 - 2015-09-27 04:37 - 00001170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk
2015-09-27 04:37 - 2015-09-27 04:37 - 00001158 _____ C:\Users\Public\Desktop\Adobe Content Viewer.lnk
2015-09-27 04:35 - 2015-09-27 04:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS5.5
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\Users\Becky\Adobe Flash Builder 4.7
2015-09-26 23:05 - 2015-09-26 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Builder 4.7
2015-09-26 22:55 - 2015-09-26 22:55 - 00001418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CC.lnk
2015-09-26 22:52 - 2015-09-26 22:52 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InCopy CC 2015.lnk
2015-09-26 22:47 - 2015-09-26 22:47 - 00001075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CC (64bit).lnk
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SAMSUNG
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Users\Becky\.swt
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\Upload
2015-09-26 22:45 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2015-09-26 22:44 - 2015-09-26 22:45 - 00000000 ____D C:\Program Files\Samsung
2015-09-26 22:42 - 2015-09-26 22:42 - 00001430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Fireworks CS6.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-09-26 22:42 - 2015-09-26 22:42 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2015-09-26 22:38 - 2015-09-26 22:38 - 00001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Edge Animate CC 2015.lnk
2015-09-26 22:36 - 2015-09-27 04:19 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn-Time
2015-09-26 22:34 - 2015-09-26 22:34 - 00001033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Professional CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Muse CC 2015.lnk
2015-09-26 22:27 - 2015-09-26 22:27 - 00000000 ____D C:\Users\Becky\AppData\Roaming\com.adobe.AdobeMuseCC.2015.0
2015-09-26 22:24 - 2015-09-26 22:24 - 00001109 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2015.lnk
2015-09-26 22:18 - 2015-09-26 22:18 - 00001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2015.lnk
2015-09-26 22:10 - 2015-09-26 22:10 - 00001271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2015.lnk
2015-09-26 22:09 - 2015-09-26 22:09 - 00001377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Character Animator (Preview).lnk
2015-09-26 22:00 - 2015-09-26 22:00 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2015.lnk
2015-09-26 21:53 - 2015-09-26 21:53 - 00001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2015.lnk
2015-09-26 21:45 - 2015-09-26 21:45 - 00000000 ____D C:\ProgramData\ALM
2015-09-26 21:32 - 2015-09-26 21:32 - 00001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk
2015-09-26 21:26 - 2015-09-26 21:26 - 00003634 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky
2015-09-26 21:26 - 2015-09-26 21:26 - 00000000 ____D C:\Users\Becky\AppData\Roaming\NVIDIA
2015-09-26 21:22 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\Documents\Adobe
2015-09-26 21:22 - 2015-09-28 03:26 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-09-26 21:22 - 2015-09-26 21:22 - 00001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2015-09-26 21:21 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Adobe
2015-09-26 21:20 - 2015-09-27 04:37 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-09-26 21:15 - 2015-09-28 14:32 - 00000000 ___RD C:\Users\Becky\Creative Cloud Files
2015-09-26 20:56 - 2015-09-28 14:25 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-09-26 20:56 - 2015-09-26 20:56 - 00001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2015-09-26 20:55 - 2015-09-28 03:19 - 00000000 ____D C:\ProgramData\Adobe
2015-09-26 20:55 - 2015-09-28 01:13 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-09-26 20:53 - 2015-09-28 14:32 - 00000000 ____D C:\Users\Becky\AppData\Local\Adobe
2015-09-26 20:53 - 2015-09-26 20:53 - 00686768 _____ (Adobe Systems Incorporated) C:\Users\Becky\Downloads\CreativeCloudSet-Up.exe
2015-09-26 20:43 - 2015-09-28 10:16 - 00004206 _____ C:\Windows\System32\Tasks\Open URL by RoboForm
2015-09-26 20:43 - 2015-09-28 10:16 - 00003592 _____ C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2015-09-26 20:35 - 2015-09-26 20:35 - 00000000 ____D C:\Users\Becky\AppData\Roaming\RoboForm
2015-09-26 20:30 - 2015-09-28 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\Users\Becky\Documents\My RoboForm Data
2015-09-26 20:30 - 2015-09-26 20:30 - 00000000 ____D C:\ProgramData\RoboForm
2015-09-26 20:29 - 2015-09-26 20:30 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup-ems12.exe
2015-09-26 20:21 - 2015-09-26 20:21 - 02816040 _____ C:\Users\Becky\Downloads\SecurityTaskManager_Setup.exe
2015-09-26 20:10 - 2015-09-28 14:24 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-09-26 20:10 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-26 20:10 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-09-26 20:10 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-09-26 17:35 - 2015-09-28 15:21 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
2015-09-26 17:35 - 2015-09-26 17:35 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-26 17:35 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2015-09-26 17:34 - 2015-09-26 17:34 - 01728112 _____ (Kaspersky Lab) C:\Users\Becky\Downloads\kts16.0.0.614en_8244.exe
2015-09-26 17:34 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00937656 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2015-09-26 17:34 - 2015-06-30 01:05 - 00171192 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2015-09-26 17:24 - 2015-09-26 17:30 - 00000000 ____D C:\Users\Becky\AppData\Local\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Mozilla
2015-09-26 17:24 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-26 17:23 - 2015-09-26 17:24 - 00243688 _____ C:\Users\Becky\Downloads\Firefox Setup Stub 41.0.exe
2015-09-26 16:40 - 2015-09-26 16:40 - 00002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-09-26 16:40 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-09-26 16:39 - 2015-09-26 16:39 - 00000000 ____D C:\Program Files (x86)\WinZip
2015-09-26 16:38 - 2015-09-26 17:46 - 00000000 ____D C:\ProgramData\Intuit
2015-09-26 16:38 - 2015-09-26 16:40 - 00000000 ____D C:\ProgramData\WinZip
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Users\Public\Documents\Intuit
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickBooks
2015-09-26 16:38 - 2015-09-26 16:38 - 00000000 ____D C:\Program Files (x86)\Intuit
2015-09-26 16:38 - 2007-07-30 14:44 - 03518464 _____ (Amyuni Technologies http://www.amyuni.com)C:\Windows\SysWOW64\cdintf300.dll
2015-09-26 16:38 - 2007-06-28 14:09 - 01843200 _____ (Apache Software Foundation) C:\Windows\SysWOW64\acXMLParser.dll
2015-09-26 16:37 - 2015-09-26 16:37 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files\MSBuild
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-09-26 16:36 - 2015-09-26 16:36 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-09-26 16:36 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-09-26 16:36 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 16:36 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-09-26 16:34 - 2015-09-26 16:34 - 00002021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Ignition.lnk
2015-09-26 16:34 - 2015-09-26 16:34 - 00000000 ____D C:\Program Files (x86)\LogMeIn Ignition
2015-09-26 16:33 - 2015-09-26 16:33 - 00000000 ____D C:\Users\Becky\AppData\Roaming\SmartFTP
2015-09-26 16:31 - 2015-09-26 16:32 - 00000000 ____D C:\Program Files (x86)\Color Wheel Expert
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\Users\Becky\AppData\Roaming\X-Rite
2015-09-26 16:31 - 2015-09-26 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Wheel Expert
2015-09-26 16:31 - 2000-05-22 00:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2015-09-26 16:31 - 2000-05-22 00:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2015-09-26 16:30 - 2015-09-28 14:12 - 00000000 ____D C:\Users\Becky\Documents\PhraseExpress
2015-09-26 16:29 - 2015-09-28 09:54 - 00000000 ____D C:\Windows\Panther
2015-09-26 16:27 - 2015-09-28 13:23 - 00000000 ____D C:\Program Files (x86)\Acronis
2015-09-26 16:27 - 2015-09-26 16:27 - 00593440 _____ (Acronis) C:\Windows\system32\Drivers\tdrpman.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00081952 _____ (Acronis) C:\Windows\system32\Drivers\tifsfilt.sys
2015-09-26 16:27 - 2015-09-26 16:27 - 00000000 ____D C:\ProgramData\Acronis
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Font Manager
2015-09-26 16:24 - 2015-09-26 16:24 - 00000000 ____D C:\Program Files (x86)\Font Manager
2015-09-26 16:16 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-09-26 16:16 - 2015-09-26 17:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-09-26 16:16 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:16 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-09-26 16:15 - 2015-09-26 16:15 - 00000000 ____D C:\Windows\PCHEALTH
2015-09-26 16:13 - 2015-09-28 06:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-26 16:13 - 2015-09-26 21:05 - 00000000 ____D C:\Users\Becky\AppData\Local\Microsoft Help
2015-09-26 16:13 - 2015-09-26 16:15 - 00000000 ____D C:\Program Files\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-09-26 16:13 - 2015-09-26 16:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 __RHD C:\MSOCache
2015-09-26 16:12 - 2015-09-26 16:12 - 00000000 ____D C:\Users\Becky\AppData\Roaming\WinRAR
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Rite
2015-09-26 16:11 - 2015-09-26 16:11 - 00000000 ____D C:\Program Files (x86)\X-Rite
2015-09-26 16:11 - 2014-05-14 11:35 - 00145920 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00131584 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelper.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00125440 _____ (Nicomsoft Ltd.) C:\Windows\system32\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00108032 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\DDCHelperX.dll
2015-09-26 16:11 - 2014-05-14 11:35 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\system32\Drivers\DDCDrv.sys
2015-09-26 16:11 - 2014-05-14 11:35 - 00010240 _____ (Nicomsoft Ltd.) C:\Windows\SysWOW64\Drivers\DDCDrv.sys
2015-09-26 16:09 - 2015-09-26 20:22 - 00000000 ____D C:\Program Files (x86)\Hard Disk Sentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\Windows\System32\Tasks\HardDiskSentinel
2015-09-26 16:09 - 2015-09-26 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:04 - 2015-09-26 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-26 16:03 - 2015-09-26 16:04 - 00000000 ____D C:\Program Files\WinRAR
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2015-09-26 16:03 - 2015-09-26 16:03 - 00000000 ____D C:\Program Files\Unlocker
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files\SmartFTP Client
2015-09-26 16:02 - 2015-09-26 16:02 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
2015-09-26 16:01 - 2015-09-26 16:01 - 00000000 ____D C:\Users\Becky\AppData\Local\Popcorn Time
2015-09-26 16:00 - 2015-09-26 16:30 - 00000000 ____D C:\Users\Becky\AppData\Roaming\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Users\Public\Documents\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhraseExpress
2015-09-26 16:00 - 2015-09-26 16:00 - 00000000 ____D C:\Program Files (x86)\PhraseExpress
2015-09-26 15:59 - 2015-09-26 15:59 - 00003294 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003242 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003238 _____ C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003210 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00003206 _____ C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2015-09-26 15:59 - 2015-09-26 15:59 - 00002757 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center.lnk
2015-09-26 15:59 - 2015-09-26 15:59 - 00000000 ____D C:\Program Files\Microsoft Mouse and Keyboard Center
2015-09-26 15:50 - 2015-09-26 20:10 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-26 15:50 - 2015-09-26 15:50 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Malwarebytes
2015-09-26 15:50 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-09-26 15:31 - 2015-09-28 10:14 - 00000000 ____D C:\Users\Becky\AppData\Local\Google
2015-09-26 15:31 - 2015-09-28 10:11 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 __SHD C:\Recovery
2015-09-26 15:31 - 2015-09-26 15:31 - 00000000 ____D C:\Users\Becky\AppData\Local\PeerDistRepub
2015-09-26 15:30 - 2015-09-26 15:30 - 00568056 _____ C:\Users\Becky\Downloads\ChromeSetup.exe
2015-09-26 15:30 - 2015-09-26 15:30 - 00000000 ____D C:\Program Files (x86)\Siber Systems
2015-09-26 15:29 - 2015-09-26 15:29 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup (1).exe
2015-09-26 15:28 - 2015-09-26 15:28 - 17408528 _____ (Siber Systems) C:\Users\Becky\Downloads\RoboForm-Setup.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64.exe
2015-09-26 15:26 - 2015-09-26 15:26 - 02566424 _____ (Logitech) C:\Users\Becky\Downloads\G500sFlash-64 (1).exe
2015-09-26 15:02 - 2015-09-26 15:02 - 05621954 _____ C:\Users\Becky\Downloads\ASMEDIA_Win7_8_10-Ver3160.zip
2015-09-26 15:02 - 2015-09-26 15:02 - 00000000 ____D C:\Program Files (x86)\ASM106xSATA
2015-09-26 15:01 - 2015-09-26 15:02 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL (1).zip
2015-09-26 15:01 - 2015-09-26 15:01 - 302321792 _____ C:\Users\Becky\Downloads\Audio_V6_0_1_7525_Win10_WHQL.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 04785968 _____ C:\Users\Becky\Downloads\Chipset_Win10_V10117.zip
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Users\Becky\Downloads\Chipset_Win10_V10117
2015-09-26 14:59 - 2015-09-26 14:59 - 00000000 ____D C:\Program Files\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 64189410 _____ C:\Users\Becky\Downloads\MEI_Win10_V11001155.zip
2015-09-26 14:58 - 2015-09-26 14:58 - 00001769 _____ C:\Windows\Language_trs.ini
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Intel
2015-09-26 14:58 - 2015-09-26 14:58 - 00000000 ____D C:\Users\Becky\Downloads\MEI_Win10_V11001155
2015-09-26 14:52 - 2015-09-01 20:20 - 00077400 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-09-26 14:52 - 2015-09-01 19:25 - 03586560 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2015-09-26 14:52 - 2015-09-01 19:25 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2015-09-26 14:52 - 2015-08-27 01:36 - 03620736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-09-26 14:52 - 2015-08-27 01:32 - 00608936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 01:04 - 21874688 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-09-26 14:52 - 2015-08-27 00:55 - 24594944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2015-09-26 14:52 - 2015-08-27 00:54 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 02350592 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-09-26 14:52 - 2015-08-27 00:51 - 01774592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:49 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-09-26 14:52 - 2015-08-27 00:47 - 12503552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:43 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-09-26 14:52 - 2015-08-27 00:42 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.PicturePassword.dll
2015-09-26 14:52 - 2015-08-27 00:42 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:39 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-09-26 14:52 - 2015-08-27 00:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-09-26 14:52 - 2015-08-27 00:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-09-26 14:52 - 2015-08-27 00:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-09-26 14:52 - 2015-08-27 00:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2015-09-26 14:52 - 2015-08-27 00:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-09-26 14:52 - 2015-08-27 00:08 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-09-26 14:52 - 2015-08-20 01:07 - 08019296 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-09-26 14:52 - 2015-08-20 01:06 - 00609592 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-09-26 14:52 - 2015-08-20 01:02 - 22324656 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2015-09-26 14:52 - 2015-08-20 00:21 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2015-09-26 14:52 - 2015-08-20 00:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-09-26 14:52 - 2015-08-20 00:13 - 02235904 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:55 - 00373072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-09-26 14:52 - 2015-08-18 02:54 - 01396064 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:27 - 01771592 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2015-09-26 14:52 - 2015-08-18 02:13 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 02:12 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2015-09-26 14:52 - 2015-08-18 02:07 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-09-26 14:52 - 2015-08-18 02:04 - 01234944 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-09-26 14:52 - 2015-08-18 02:04 - 00859136 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 01294336 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2015-09-26 14:52 - 2015-08-18 01:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:56 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2015-09-26 14:52 - 2015-08-18 01:55 - 02178560 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-09-26 14:52 - 2015-08-18 01:54 - 00247296 _____ C:\Windows\system32\facecredentialprovider.dll
2015-09-26 14:52 - 2015-08-18 01:52 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:50 - 01795072 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2015-09-26 14:52 - 2015-08-18 01:49 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-18 01:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2015-09-26 14:52 - 2015-08-18 01:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2015-09-26 14:52 - 2015-08-18 01:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2015-09-26 14:52 - 2015-08-18 01:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-09-26 14:52 - 2015-08-18 01:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2015-09-26 14:52 - 2015-08-17 23:44 - 00008847 _____ C:\Windows\system32\ResPriHMImageList
2015-09-26 14:50 - 2015-07-05 05:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-09-26 14:49 - 2015-09-26 14:50 - 00000000 ____D C:\Windows\system32\MRT
2015-09-26 14:49 - 2015-08-26 18:37 - 134753440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 04532304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-09-26 14:49 - 2015-08-11 05:04 - 02462648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-09-26 14:49 - 2015-08-11 04:23 - 16706560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 04:06 - 02662400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-11 04:05 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-09-26 14:49 - 2015-08-11 04:03 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-09-26 14:49 - 2015-08-11 03:57 - 13024768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-09-26 14:49 - 2015-08-11 03:45 - 01820672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 02415104 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-09-26 14:49 - 2015-08-08 01:24 - 01679360 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-09-26 14:49 - 2015-08-08 01:00 - 01985024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-09-26 14:49 - 2015-08-04 23:49 - 00783112 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-09-26 14:49 - 2015-08-04 22:54 - 01274880 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2015-09-26 14:49 - 2015-08-03 21:59 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 08613200 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 21:18 - 01983840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-09-26 14:49 - 2015-08-02 20:56 - 06878256 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-09-26 14:49 - 2015-08-02 20:22 - 01601536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2015-09-26 14:49 - 2015-08-02 20:18 - 03780096 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2015-09-26 14:49 - 2015-08-02 20:15 - 01290752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2015-09-26 14:49 - 2015-07-30 01:24 - 01561872 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-09-26 14:49 - 2015-07-30 01:16 - 02147080 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-09-26 14:49 - 2015-07-30 01:09 - 01562968 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-09-26 14:49 - 2015-07-30 01:06 - 01043872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-09-26 14:49 - 2015-07-30 01:03 - 02116448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-09-26 14:49 - 2015-07-29 23:26 - 01867160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-09-26 14:49 - 2015-07-29 22:49 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-29 22:15 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-09-26 14:49 - 2015-07-29 22:04 - 01714176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-09-26 14:49 - 2015-07-26 00:13 - 06488312 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 23:28 - 05118024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2015-09-26 14:49 - 2015-07-25 22:49 - 04760576 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-25 22:38 - 04350464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-09-26 14:49 - 2015-07-23 21:40 - 03248640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-09-26 14:49 - 2015-07-23 21:39 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-09-26 14:49 - 2015-07-21 22:54 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-09-26 14:49 - 2015-07-21 22:11 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-09-26 14:49 - 2015-07-18 02:29 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2015-09-26 14:49 - 2015-07-17 22:52 - 04169728 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-09-26 14:49 - 2015-07-16 21:31 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-09-26 14:49 - 2015-07-15 22:44 - 02741760 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-09-26 14:49 - 2015-07-15 22:27 - 02207744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-09-26 14:49 - 2015-07-14 21:41 - 01135312 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2015-09-26 14:49 - 2015-07-14 21:22 - 02112512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-09-26 14:49 - 2015-07-14 20:47 - 04611584 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-09-26 14:49 - 2015-07-11 19:18 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2015-09-26 14:49 - 2015-07-10 20:17 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 20:04 - 03362816 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-09-26 14:49 - 2015-07-10 20:03 - 03248128 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-09-26 14:49 - 2015-07-10 19:51 - 04398080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-09-26 14:49 - 2015-07-10 19:41 - 03687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-09-26 14:49 - 2015-07-10 19:40 - 02606080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-09-26 14:49 - 2015-07-10 04:53 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2015-09-26 14:49 - 2015-07-10 04:31 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-09-26 14:48 - 2015-08-12 23:22 - 02093056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2015-09-26 14:48 - 2015-08-12 23:20 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-12 22:53 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-09-26 14:48 - 2015-08-11 05:04 - 01087296 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-09-26 14:48 - 2015-08-11 05:03 - 00442208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-09-26 14:48 - 2015-08-11 05:02 - 00554744 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 05:02 - 00292856 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 05:02 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2015-09-26 14:48 - 2015-08-11 04:52 - 00993104 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:50 - 01643872 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 04048808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-09-26 14:48 - 2015-08-11 04:40 - 02151208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-09-26 14:48 - 2015-08-11 04:40 - 00918320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-09-26 14:48 - 2015-08-11 04:38 - 00454000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll
2015-09-26 14:48 - 2015-08-11 04:37 - 00243800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2015-09-26 14:48 - 2015-08-11 04:26 - 00845664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2015-09-26 14:48 - 2015-08-11 04:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 04:20 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 04:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2015-09-26 14:48 - 2015-08-11 04:18 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 04:16 - 02416640 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ C:\Windows\system32\diagtrack_wininternal.dll
2015-09-26 14:48 - 2015-08-11 04:13 - 00413184 _____ C:\Windows\system32\diagtrack_win.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 02446336 _____ C:\Windows\system32\InputService.dll
2015-09-26 14:48 - 2015-08-11 04:11 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 04:10 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 04:10 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 04:09 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 04:08 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 01178112 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-09-26 14:48 - 2015-08-11 04:07 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2015-09-26 14:48 - 2015-08-11 04:06 - 07523328 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\LocationGeofences.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\LocationPermissions.dll
2015-09-26 14:48 - 2015-08-11 04:05 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2015-09-26 14:48 - 2015-08-11 04:02 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2015-09-26 14:48 - 2015-08-11 04:01 - 01334784 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 04:00 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 04:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\syncutil.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-09-26 14:48 - 2015-08-11 03:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tetheringclient.dll
2015-09-26 14:48 - 2015-08-11 03:58 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2015-09-26 14:48 - 2015-08-11 03:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01916928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-09-26 14:48 - 2015-08-11 03:51 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2015-09-26 14:48 - 2015-08-11 03:50 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll
2015-09-26 14:48 - 2015-08-11 03:50 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-09-26 14:48 - 2015-08-11 03:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-26 14:48 - 2015-08-11 03:48 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2015-09-26 14:48 - 2015-08-11 03:47 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-09-26 14:48 - 2015-08-11 03:43 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-09-26 14:48 - 2015-08-11 03:42 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-09-26 14:48 - 2015-08-11 03:40 - 01112064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-09-26 14:48 - 2015-08-11 03:39 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-09-26 14:48 - 2015-08-11 03:38 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-09-26 14:48 - 2015-08-08 02:29 - 01822280 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-09-26 14:48 - 2015-08-08 02:01 - 01533496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-09-26 14:48 - 2015-08-05 22:17 - 00237392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-09-26 14:48 - 2015-08-05 22:17 - 00200528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-09-26 14:48 - 2015-08-05 21:22 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2015-09-26 14:48 - 2015-08-04 23:29 - 00644128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-09-26 14:48 - 2015-08-04 23:00 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-09-26 14:48 - 2015-08-04 22:39 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-09-26 14:48 - 2015-08-03 23:07 - 00102752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-09-26 14:48 - 2015-08-03 23:06 - 00583128 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-09-26 14:48 - 2015-08-03 23:06 - 00243248 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-09-26 14:48 - 2015-08-03 22:23 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2015-09-26 14:48 - 2015-08-03 21:47 - 00898560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2015-09-26 14:48 - 2015-08-02 21:32 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NotificationObjFactory.dll
2015-09-26 14:48 - 2015-08-02 21:19 - 00505696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2015-09-26 14:48 - 2015-08-02 21:19 - 00393568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-09-26 14:48 - 2015-08-02 21:18 - 00594472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2015-09-26 14:48 - 2015-08-02 21:18 - 00046432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys
2015-09-26 14:48 - 2015-08-02 21:17 - 00516960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-09-26 14:48 - 2015-08-02 21:17 - 00052264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-09-26 14:48 - 2015-08-02 21:12 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:49 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-09-26 14:48 - 2015-08-02 20:31 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2015-09-26 14:48 - 2015-08-02 20:30 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_UserAccount.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:24 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModelShim.dll
2015-09-26 14:48 - 2015-08-02 20:23 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:22 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll
2015-09-26 14:48 - 2015-08-02 20:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2015-09-26 14:48 - 2015-08-02 20:18 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:15 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2015-09-26 14:48 - 2015-08-02 20:14 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll
2015-09-26 14:48 - 2015-08-02 20:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEDataLayerHelpers.dll
2015-09-26 14:48 - 2015-08-02 20:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2015-09-26 14:48 - 2015-08-02 20:10 - 01162240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2015-09-26 14:48 - 2015-08-02 20:06 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-09-26 14:48 - 2015-08-02 20:03 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2015-09-26 14:48 - 2015-08-02 20:02 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-09-26 14:48 - 2015-08-02 19:59 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2015-09-26 14:48 - 2015-07-30 01:23 - 00527952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-09-26 14:48 - 2015-07-30 01:21 - 00816576 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01200400 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-09-26 14:48 - 2015-07-30 01:17 - 01025840 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-30 01:15 - 00632168 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-09-26 14:48 - 2015-07-30 01:14 - 00333168 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-09-26 14:48 - 2015-07-30 01:05 - 00501008 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-09-26 14:48 - 2015-07-30 00:24 - 00252768 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2015-09-26 14:48 - 2015-07-29 23:29 - 00705520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-09-26 14:48 - 2015-07-29 23:26 - 00877016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-09-26 14:48 - 2015-07-29 23:25 - 00713312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00445240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00407616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-09-26 14:48 - 2015-07-29 23:24 - 00285632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00896144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 23:22 - 00507696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2015-09-26 14:48 - 2015-07-29 23:12 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2015-09-26 14:48 - 2015-07-29 23:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerShellext.exe
2015-09-26 14:48 - 2015-07-29 23:08 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2015-09-26 14:48 - 2015-07-29 23:08 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2015-09-26 14:48 - 2015-07-29 22:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00521216 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2015-09-26 14:48 - 2015-07-29 22:52 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00487424 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:46 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:44 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-09-26 14:48 - 2015-07-29 22:44 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:42 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 22:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2015-09-26 14:48 - 2015-07-29 22:40 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 01420288 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2015-09-26 14:48 - 2015-07-29 22:38 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-09-26 14:48 - 2015-07-29 22:34 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 22:29 - 00654848 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-09-26 14:48 - 2015-07-29 22:07 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.V2.dll
2015-09-26 14:48 - 2015-07-29 22:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VoiceActivationManager.dll
2015-09-26 14:48 - 2015-07-29 22:04 - 00335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2015-09-26 14:48 - 2015-07-29 21:59 - 00473088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2015-09-26 14:48 - 2015-07-29 21:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-09-26 14:48 - 2015-07-26 00:16 - 01018568 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-09-26 14:48 - 2015-07-26 00:16 - 00858408 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-09-26 14:48 - 2015-07-26 00:14 - 01294352 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-09-26 14:48 - 2015-07-26 00:14 - 01123400 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-09-26 14:48 - 2015-07-25 22:49 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:47 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:40 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2015-09-26 14:48 - 2015-07-25 22:35 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-09-26 14:48 - 2015-07-25 22:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00750592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-09-26 14:48 - 2015-07-25 22:30 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-09-26 14:48 - 2015-07-25 22:29 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2015-09-26 14:48 - 2015-07-23 22:30 - 00498016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-09-26 14:48 - 2015-07-23 22:18 - 00980832 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2015-09-26 14:48 - 2015-07-23 22:17 - 00695136 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 22:17 - 00521568 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-09-26 14:48 - 2015-07-23 22:12 - 00584544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-09-26 14:48 - 2015-07-23 21:55 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:52 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-09-26 14:48 - 2015-07-23 21:46 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2015-09-26 14:48 - 2015-07-23 21:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll
2015-09-26 14:48 - 2015-07-23 21:34 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2015-09-26 14:48 - 2015-07-23 21:30 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-09-26 14:48 - 2015-07-23 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2015-09-26 14:48 - 2015-07-23 21:25 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-09-26 14:48 - 2015-07-23 21:24 - 00925696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2015-09-26 14:48 - 2015-07-23 21:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-09-26 14:48 - 2015-07-22 00:18 - 00808856 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-22 00:15 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-09-26 14:48 - 2015-07-22 00:02 - 00966424 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 23:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-09-26 14:48 - 2015-07-21 23:02 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-09-26 14:48 - 2015-07-21 23:00 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:55 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:53 - 00762896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-09-26 14:48 - 2015-07-21 22:46 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 22:21 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-09-26 14:48 - 2015-07-21 22:13 - 00677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-09-26 14:48 - 2015-07-21 22:10 - 00828416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2015-09-26 14:48 - 2015-07-21 22:07 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-09-26 14:48 - 2015-07-21 22:03 - 00623616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2015-09-26 14:48 - 2015-07-21 21:50 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2015-09-26 14:48 - 2015-07-18 23:04 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2015-09-26 14:48 - 2015-07-18 22:54 - 01168736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-09-26 14:48 - 2015-07-18 22:23 - 00505344 _____ C:\Windows\system32\EditionUpgradeManagerObj.dll
2015-09-26 14:48 - 2015-07-18 22:18 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-09-26 14:48 - 2015-07-18 22:02 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 21:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2015-09-26 14:48 - 2015-07-18 03:47 - 00082616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2015-09-26 14:48 - 2015-07-18 02:43 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-18 02:37 - 01043968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-18 02:28 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-18 02:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2015-09-26 14:48 - 2015-07-18 00:17 - 00097128 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2015-09-26 14:48 - 2015-07-18 00:02 - 00290312 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2015-09-26 14:48 - 2015-07-17 23:06 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 01411072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2015-09-26 14:48 - 2015-07-17 22:59 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll
2015-09-26 14:48 - 2015-07-17 22:50 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-09-26 14:48 - 2015-07-17 22:49 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-09-26 14:48 - 2015-07-17 22:49 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-09-26 14:48 - 2015-07-17 22:48 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-09-26 14:48 - 2015-07-17 22:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-09-26 14:48 - 2015-07-16 23:23 - 00934752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2015-09-26 14:48 - 2015-07-16 23:13 - 00601344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-09-26 14:48 - 2015-07-16 23:12 - 00630160 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-09-26 14:48 - 2015-07-16 23:07 - 00425824 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 21:36 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2015-09-26 14:48 - 2015-07-16 21:33 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2015-09-26 14:48 - 2015-07-16 21:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\omadmprc.exe
2015-09-26 14:48 - 2015-07-16 21:32 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 07051264 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 21:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 21:24 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00869376 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2015-09-26 14:48 - 2015-07-16 21:19 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2015-09-26 14:48 - 2015-07-16 21:18 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 21:05 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2015-09-26 14:48 - 2015-07-16 21:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-09-26 14:48 - 2015-07-16 20:56 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2015-09-26 14:48 - 2015-07-16 20:53 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-09-26 14:48 - 2015-07-16 20:51 - 05076480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2015-09-26 14:48 - 2015-07-16 20:50 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2015-09-26 14:48 - 2015-07-16 20:44 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-09-26 14:48 - 2015-07-16 00:39 - 00061280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2015-09-26 14:48 - 2015-07-15 23:09 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2015-09-26 14:48 - 2015-07-15 23:04 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 23:03 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll
2015-09-26 14:48 - 2015-07-15 22:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2015-09-26 14:48 - 2015-07-15 22:47 - 00754688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2015-09-26 14:48 - 2015-07-15 22:45 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:43 - 01602560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:41 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2015-09-26 14:48 - 2015-07-15 22:40 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2015-09-26 14:48 - 2015-07-15 22:36 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll
2015-09-26 14:48 - 2015-07-15 22:35 - 01521664 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2015-09-26 14:48 - 2015-07-15 22:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2015-09-26 14:48 - 2015-07-15 22:32 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2015-09-26 14:48 - 2015-07-15 22:29 - 01380864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-09-26 14:48 - 2015-07-15 22:19 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2015-09-26 14:48 - 2015-07-14 22:21 - 01365072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 01591856 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-09-26 14:48 - 2015-07-14 21:49 - 00325984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-09-26 14:48 - 2015-07-14 21:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ C:\Windows\system32\LicenseManagerApi.dll
2015-09-26 14:48 - 2015-07-14 20:57 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\OmaDmAgent.dll
2015-09-26 14:48 - 2015-07-14 20:41 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-09-26 14:48 - 2015-07-14 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.ProxyStub.dll
2015-09-26 14:48 - 2015-07-14 20:35 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\unenrollhook.dll
2015-09-26 14:48 - 2015-07-14 20:27 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.PAL.Desktop.dll
2015-09-26 14:48 - 2015-07-13 22:00 - 00208736 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:37 - 00181088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-09-26 14:48 - 2015-07-13 21:04 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys
2015-09-26 14:48 - 2015-07-13 20:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-09-26 14:48 - 2015-07-13 20:49 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2015-09-26 14:48 - 2015-07-13 20:38 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-09-26 14:48 - 2015-07-13 20:20 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2015-09-26 14:48 - 2015-07-12 19:01 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2015-09-26 14:48 - 2015-07-12 18:30 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2015-09-26 14:48 - 2015-07-11 19:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2015-09-26 14:48 - 2015-07-11 19:25 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2015-09-26 14:48 - 2015-07-11 18:46 - 00441344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2015-09-26 14:48 - 2015-07-10 20:28 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:07 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 20:05 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 20:03 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-09-26 14:48 - 2015-07-10 20:02 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2015-09-26 14:48 - 2015-07-10 20:01 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:57 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 19:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-09-26 14:48 - 2015-07-10 19:42 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 03579904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-09-26 14:48 - 2015-07-10 19:40 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-09-26 14:48 - 2015-07-10 19:34 - 00294912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2015-09-26 14:48 - 2015-07-10 10:51 - 00823336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 10:47 - 00265480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-09-26 14:48 - 2015-07-10 10:00 - 01101792 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-09-26 14:48 - 2015-07-10 09:52 - 00335248 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-09-26 14:48 - 2015-07-10 05:59 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SignInOptions.dll
2015-09-26 14:48 - 2015-07-10 05:42 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:10 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2015-09-26 14:48 - 2015-07-10 05:07 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\PackageInspector.exe
2015-09-26 14:48 - 2015-07-10 05:05 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2015-09-26 14:48 - 2015-07-10 04:35 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-09-26 14:48 - 2015-07-10 04:29 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2015-09-26 14:46 - 2015-09-26 22:45 - 00000000 ____D C:\ProgramData\Samsung
2015-09-26 14:45 - 2015-09-26 14:45 - 00236696 _____ C:\Windows\system32\SBuySupplies.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00168288 _____ C:\Windows\system32\us006ci.exe
2015-09-26 14:45 - 2015-09-26 14:45 - 00099848 _____ (SS) C:\Windows\system32\us006ci.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\system32\us006lm.dll
2015-09-26 14:24 - 2015-09-26 22:36 - 00000000 ____D C:\Users\Becky\AppData\Local\Comms
2015-09-26 14:21 - 2015-09-26 14:21 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-26 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-09-26 14:17 - 2015-09-13 16:57 - 00574256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-09-26 14:17 - 2015-08-26 19:37 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-09-26 14:17 - 2015-08-26 19:37 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-09-26 14:17 - 2015-08-26 19:36 - 01710568 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-09-26 14:17 - 2010-05-26 13:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2015-09-26 14:16 - 2015-09-21 17:55 - 11198080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 01567576 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-09-26 14:16 - 2015-09-18 17:08 - 00204648 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-09-26 14:16 - 2015-09-18 17:08 - 00040280 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 42840184 _____ C:\Windows\system32\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 22559352 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 18569848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 17934400 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 16646112 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15631128 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 15336024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 14945040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 13666840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12611632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 12191856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03484216 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 03077544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02354808 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 02105976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01898104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435598.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01178248 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01075320 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01064056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 01001440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00986416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00945272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00787384 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00632664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00408184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00387720 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00376440 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00364152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00339760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00316120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00177088 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 00128696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00072504 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-09-26 14:16 - 2015-08-10 23:52 - 00050472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-09-26 14:12 - 2015-09-26 14:13 - 304224616 _____ (NVIDIA Corporation) C:\Users\Becky\Downloads\355.98-desktop-win10-64bit-international-whql.exe
2015-09-26 14:11 - 2015-09-26 14:11 - 00061037 _____ C:\Windows\SysWOW64\CCCInstall_201509261211117521.log
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Macromedia
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\ATI
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\MicrosoftEdge
2015-09-26 14:11 - 2015-09-26 14:11 - 00000000 ____D C:\Users\Becky\AppData\Local\ATI
2015-09-26 14:10 - 2015-09-26 14:10 - 00000000 ____D C:\Users\Becky\AppData\Local\NetworkTiles
2015-09-26 14:08 - 2015-09-26 14:08 - 00000000 ____D C:\Users\Becky\AppData\Local\NVIDIA
2015-09-26 14:07 - 2015-09-28 14:35 - 00875126 _____ C:\Windows\system32\PerfStringBackup.INI
2015-09-26 14:07 - 2015-09-28 14:24 - 00000000 ____D C:\ProgramData\NVIDIA
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:17 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-09-26 14:07 - 2015-09-26 14:07 - 00466736 _____ (Microsoft Corporation) C:\Windows\system32\coin98itp.dll
2015-09-26 14:07 - 2015-09-26 14:07 - 00193336 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2015-09-26 14:07 - 2015-09-13 17:04 - 06885168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 03496056 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 02558584 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00937776 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-09-26 14:07 - 2015-09-13 17:04 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-09-26 14:07 - 2015-09-13 17:04 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-09-26 14:07 - 2015-09-11 07:17 - 05231082 _____ C:\Windows\system32\nvcoproc.bin
2015-09-26 14:06 - 2015-09-26 14:06 - 01898312 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435354.dll
2015-09-26 14:06 - 2015-09-26 14:06 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435354.dll
2015-09-26 14:06 - 2015-09-13 19:24 - 00034098 _____ C:\Windows\system32\nvinfo.pb
2015-09-26 14:05 - 2015-09-26 14:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-09-26 13:40 - 2015-09-26 20:56 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-26 13:40 - 2015-09-26 13:40 - 30760944 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 25308656 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 21632992 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 15727072 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 14312416 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 12062040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 10191264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 09191312 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08979760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08865496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 08009344 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07575664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 03437632 _____ C:\Windows\system32\atiumd6a.cap
2015-09-26 13:40 - 2015-09-26 13:40 - 01468224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01257952 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01213192 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 01196032 _____ C:\Windows\system32\amdocl_as64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01070592 _____ C:\Windows\system32\amdocl_ld64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 01005552 _____ C:\Windows\SysWOW64\amdocl_as32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00936928 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00874480 _____ (AMD) C:\Windows\system32\coinst_15.20.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00807424 _____ C:\Windows\SysWOW64\amdocl_ld32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00681456 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00675296 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\SysWOW64\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00660928 _____ C:\Windows\system32\atiapfxx.blb
2015-09-26 13:40 - 2015-09-26 13:40 - 00452576 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00377312 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00322868 _____ C:\Windows\system32\ativvaxy_vi.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00321200 _____ C:\Windows\system32\ativvaxy_vi_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00256992 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00255808 _____ C:\Windows\system32\ativvaxy_cz_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00250884 _____ C:\Windows\system32\ativvaxy_FJ.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00249088 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00243696 _____ C:\Windows\system32\clinfo.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00234420 _____ C:\Windows\system32\ativvaxy_cik.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00232752 _____ C:\Windows\system32\ativvaxy_cik_nd.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00201184 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00170464 _____ C:\Windows\system32\atieah64.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00169152 _____ C:\Windows\system32\ativce03.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00162240 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00152560 _____ C:\Windows\SysWOW64\atieah32.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00152032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00143048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00131592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00113880 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111600 _____ C:\Windows\system32\hsa-thunk64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00111088 _____ C:\Windows\SysWOW64\hsa-thunk.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00102384 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00100816 _____ C:\Windows\system32\ativce02.dat
2015-09-26 13:40 - 2015-09-26 13:40 - 00095216 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00089520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00085472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00082680 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00073712 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00071152 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00069600 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00064496 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00062432 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00061408 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2015-09-26 13:40 - 2015-09-26 13:40 - 00059360 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00039904 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00012784 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\Program Files\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 ____D C:\AMD
2015-09-26 13:40 - 2015-09-26 13:40 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-09-26 13:39 - 2015-09-26 13:40 - 47795680 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 72130592 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 39723504 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 27544560 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 22328800 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 14065952 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13243904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 13108552 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07181616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 07104896 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06486000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 06273344 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05836400 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 05464672 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05344904 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 05076976 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 04585728 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 03653631 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-09-26 13:39 - 2015-09-26 13:39 - 03337432 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03309264 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03270464 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 03200501 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 03019040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02955008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02856712 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02720000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-09-26 13:39 - 2015-09-26 13:39 - 02662632 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02522728 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02453480 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02218936 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02119296 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 02058880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01991776 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01985568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01804928 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01768192 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01624752 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01613712 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01530872 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01456472 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01416832 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01403096 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01354808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01351688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01231256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01183360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01141200 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01015616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 01012560 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00982248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00978208 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00962432 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940640 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00940328 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00905048 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00891160 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00889888 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00840048 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00833798 _____ C:\Windows\system32\amdicdxx.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00765128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00759208 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00742536 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00723232 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00713912 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00693024 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00692520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00659872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00632352 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00610136 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00588624 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00583168 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-09-26 13:39 - 2015-09-26 13:39 - 00545824 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00527824 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00517464 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00513712 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00479992 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00472832 _____ C:\Windows\system32\amdmiracast.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00461272 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00460448 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00458016 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00453848 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00440736 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00399456 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00393480 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00374096 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00366976 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00355496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352904 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00352424 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00342280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00339136 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00322032 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00283928 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00267984 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264968 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00264896 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00263944 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00242768 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00235040 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00232712 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00225504 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00220136 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00213488 _____ C:\Windows\system32\amdgfxinfo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00205640 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00198640 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00182888 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00176480 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00168936 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00167456 _____ C:\Windows\system32\amde31a.dat
2015-09-26 13:39 - 2015-09-26 13:39 - 00161960 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00144192 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00143344 _____ C:\Windows\system32\amdhdl64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00132080 _____ C:\Windows\SysWOW64\amdhdl32.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00131024 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00128504 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00127296 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00120712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00114008 _____ C:\Windows\system32\audioLibVc.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00103424 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00102912 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdWT6.sys
2015-09-26 13:39 - 2015-09-26 13:39 - 00100544 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00097912 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00094176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00093152 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00085096 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00049632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00032400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-09-26 13:39 - 2015-09-26 13:39 - 00002338 _____ C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ___RD C:\Users\Becky\OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Windows\system32\DAX2
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-09-26 13:39 - 2015-09-26 13:39 - 00000000 ____D C:\Program Files\Realtek
2015-09-26 13:38 - 2015-09-28 12:39 - 00000000 ____D C:\Users\Becky
2015-09-26 13:38 - 2015-09-28 05:39 - 00000000 ____D C:\Users\Becky\AppData\Local\Packages
2015-09-26 13:38 - 2015-09-28 04:11 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Adobe
2015-09-26 13:38 - 2015-09-26 17:45 - 00000000 ____D C:\Users\Becky\AppData\Local\VirtualStore
2015-09-26 13:38 - 2015-09-26 13:38 - 00016148 _____ C:\Windows\system32\DESKTOP-HESCRH0_defaultuser0_HistoryPrediction.bin
2015-09-26 13:38 - 2015-09-26 13:38 - 00000020 ___SH C:\Users\Becky\ntuser.ini
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\TileDataLayer
2015-09-26 13:38 - 2015-09-26 13:38 - 00000000 ____D C:\Users\Becky\AppData\Local\Publishers
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 __RSD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ____D C:\Users\Becky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-26 13:36 - 2015-09-26 13:36 - 00000000 ____D C:\Windows\CSC
2015-09-26 13:36 - 2015-07-10 05:59 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00970912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00963232 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00660128 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00455328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00356528 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib120.dll
2015-09-10 14:00 - 2015-09-10 14:00 - 00247984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib120.dll
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-09-28 16:26 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\sru
2015-09-28 14:24 - 2015-07-10 07:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-28 14:23 - 2015-07-10 04:05 - 00131072 ___SH C:\Windows\system32\config\BBI
2015-09-28 10:03 - 2015-07-10 07:20 - 05043048 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-28 06:24 - 2015-07-10 05:55 - 00000000 ____D C:\Windows\CbsTemp
2015-09-28 06:17 - 2015-07-10 06:04 - 00000167 _____ C:\Windows\win.ini
2015-09-27 15:33 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\AppReadiness
2015-09-27 04:00 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\appcompat
2015-09-26 20:56 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-09-26 20:23 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-09-26 17:41 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klpd.sys
2015-09-26 17:35 - 2015-07-10 06:04 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-09-26 17:35 - 2015-07-10 04:05 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-09-26 16:29 - 2015-07-10 06:04 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-09-26 16:16 - 2015-07-10 08:29 - 00000000 ____D C:\Windows\ShellNew
2015-09-26 16:13 - 2015-07-10 06:04 - 00000000 ____D C:\Program Files\Common Files\System
2015-09-26 15:30 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\Recovery
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 __RHD C:\Users\Default
2015-09-26 15:30 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Sysprep
2015-09-26 14:54 - 2015-07-10 08:29 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PurchaseDialog
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\SysWOW64\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\oobe
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\appraiser
2015-09-26 14:54 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Provisioning
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-09-26 14:54 - 2015-07-10 04:05 - 00000000 ____D C:\Windows\system32\Dism
2015-09-26 14:08 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\LiveKernelReports
2015-09-26 14:07 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\Help
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\PrintDialog
2015-09-26 13:38 - 2015-07-10 06:04 - 00000000 ___RD C:\Windows\MiracastView
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\spool
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\restore
2015-09-26 13:36 - 2015-07-10 06:04 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-09-15 11:12 - 2015-07-10 06:06 - 00812008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-09-15 11:12 - 2015-07-10 06:06 - 00178152 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Files in the root of some directories =======
 
2015-09-26 13:39 - 2015-09-26 13:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-28 04:15 - 2015-09-28 12:32 - 0000031 _____ () C:\ProgramData\fd4_sys.d
 
Some files in TEMP:
====================
C:\Users\Becky\AppData\Local\Temp\sqlite3.dll
 

==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 

LastRegBack: 2015-09-26 15:30
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-09-2015 01
Ran by Becky (2015-09-28 16:40:39)
Running from C:\Users\Becky\Desktop
Windows 10 Enterprise (X64) (2015-09-26 18:37:20)
Boot Mode: Normal
==========================================================
 

==================== Accounts: =============================
 
Administrator (S-1-5-21-3588804255-3441825186-3011144637-500 - Administrator - Disabled)
Becky (S-1-5-21-3588804255-3441825186-3011144637-1001 - Administrator - Enabled) => C:\Users\Becky
DefaultAccount (S-1-5-21-3588804255-3441825186-3011144637-503 - Limited - Disabled)
Guest (S-1-5-21-3588804255-3441825186-3011144637-501 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Total Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Total Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Total Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Acronis True Image Home 2011 (HKLM-x32\...\{04A3A6B0-8E19-49BB-82FF-65C5A55F917D}) (Version: 14.0.5519 - Acronis)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.12 - Adobe Systems)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.5.1 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 1.4.0 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.3.0.151 - Adobe Systems Incorporated)
Adobe Creative Suite 5.5 Master Collection (HKLM-x32\...\{D57FC112-312E-4D70-860F-2DB8FB6858F0}) (Version: 5.5 - Adobe Systems Incorporated)
Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Fireworks CS6 (HKLM-x32\...\{CA7C485C-7A89-11E1-B2C8-CD54B377BC52}) (Version: 12.0.1 - Adobe Systems Incorporated)
Adobe Flash Builder 4.7 (64 Bit) (HKLM-x32\...\{848DE8E1-521D-4748-A158-517708107EF3}) (Version: 4.7 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Professional CC 2015 (HKLM-x32\...\{31390329-FFF0-11E4-85AD-AF2C4143F080}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.1.0 - Adobe Systems Incorporated)
Adobe InCopy CC 2015 (HKLM-x32\...\{9EF1DB49-6D32-1014-93B7-EB62FA572532}) (Version: 11.0.1.105 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.1.0.122 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.1.1 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.0.2 - Adobe Systems Incorporated)
Adobe Muse CC 2015 (HKLM-x32\...\{25CC1EC0-19D9-11E5-952D-BD72CD08879E}) (Version: 2015.0.2.4 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0.1 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.2 - Adobe Systems Incorporated)
AllShare Framework DMS (HKLM\...\{83232C27-8C3F-44A5-9EB2-BB7161228ADD}) (Version: 1.3.23 - Samsung)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.6.0000 - Asmedia Technology)
AV Bros. Page Curl Pro 2.2 (Remove Only) (HKLM-x32\...\AV Bros. Page Curl Pro 2.2) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Color Wheel Expert 4.2 (HKLM-x32\...\Color Wheel Expert_is1) (Version:  - )
Font Manager 3.5 (HKLM-x32\...\Font Manager_is1) (Version:  - Alexander G Styopkin)
FontDoctor for Windows version 8.1.1 (HKLM-x32\...\{84C28FDA-A722-429B-8079-1015AF06754D}}_is1) (Version: 8.1.1 - Extensis Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version:  - HDS)
i1Profiler (HKLM-x32\...\i1Profiler_is1) (Version: 1.5.4 - X-Rite)
Intel® Chipset Device Software (x32 Version: 10.1.1.7 - Intel® Corporation) Hidden
Kaspersky Total Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Total Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
LogMeIn Ignition (HKLM-x32\...\{FDCDF6C3-4DF5-42D5-A1DC-9F8A1A2CB68A}) (Version: 1.1.51 - LogMeIn, Inc.)
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.6.140.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 41.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0 (x86 en-US)) (Version: 41.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.98 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.98 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PhraseExpress v11.0.121 (HKLM-x32\...\PhraseExpress_is1) (Version: 11.0.121 - Bartels Media GmbH)
Popcorn Time (HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\...\Popcorn Time) (Version:  - Popcorn Official)
QuickBooks Pro 2008 (HKLM-x32\...\{8ECB8220-F422-4BEB-9596-97033C533702}) (Version: 18.0.4003.606 - Intuit Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7572 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 2.5.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.7 - VS Revo Group, Ltd.)
RoboForm 7-9-16-7 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-16-7 - Siber Systems)
Samsung Link 2.0.0.1503181422 (HKLM\...\8474-7877-9059-0204) (Version: 2.0.0.1503181422 - Copyright 2013 SAMSUNG)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden
SmartFTP Client (HKLM\...\{3C51045E-B5F6-43CD-910C-133E0976F4F4}) (Version: 5.0.1353.0 - SmartSoft Ltd.)
SupportSoft Assisted Service (HKLM-x32\...\{5A3F6A80-7913-475E-8B96-477A952CFA43}) (Version: 15 - SupportSoft)
Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version:  - Elaborate Bytes)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinZip 11.1 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}) (Version: 11.1.7466 - WinZip Computing, S.L. )
X-Rite Device Services Manager (HKLM-x32\...\{2ECE8EE0-2DBB-444F-92F1-D7C7637CCF70}) (Version: 2.3.81 - X-Rite)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3588804255-3441825186-3011144637-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
 
==================== Restore Points =========================
 
26-09-2015 13:36:25 Windows Modules Installer
27-09-2015 23:08:49 Installed Adobe Acrobat XI Pro.
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-07-10 06:04 - 2015-07-10 06:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {00E4D256-3065-4BE4-B4F5-7758AA2271C5} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform....GJKJMIBNKJHIKJ"
Task: {031986C1-4FDA-4B99-8E75-D0717DFC99FE} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-09-10] (Microsoft)
Task: {1A8E1FC6-0828-41B1-94E4-4F9CE12B61AC} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_Becky => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [2011-09-14] (H.D.S. Hungary)
Task: {2DA9898D-CBE4-487A-AC60-65993068B4D2} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {38D3D2E2-2CBA-46E1-AB1F-AFA69336C0C2} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-09-10] (Microsoft Corporation)
Task: {46EE90D4-C7A9-432D-971C-BED34A7698EC} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-09-28] (Siber Systems)
Task: {52544F2B-7E7E-4761-96A7-67244C0ED1A7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {65DC54FA-A9DF-412A-8C46-56348A328E7F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-08-26] (Microsoft Corporation)
Task: {8404DA92-D17B-4FD4-9E21-79E0762A3691} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {85B88B76-5950-4D7F-8099-7CA1369BE4BD} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {AF61581E-6DD0-48CF-A39B-79FC335B5DEF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {B7A8B930-20A0-457D-8546-7EC9A0984FC5} - System32\Tasks\Microsoft Office 15 Sync Maintenance for DESKTOP-HESCRH0-Becky DESKTOP-HESCRH0 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)
Task: {E040785C-1D90-4E90-B57F-EF52EB8C4DAE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {EF06B720-CB47-4AFF-9E2E-A8D719254E65} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {F435490F-7B77-4A31-A991-F2F4040181C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-28] (Google Inc.)
Task: {FDC4929D-DCAA-4BFB-9B18-1EC33810F321} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-09-10] (Microsoft Corporation)
Task: {FF63B5E5-EEFA-4906-8429-1CB8090CA685} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-HESCRH0-Becky => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-09-04] (Adobe Systems Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-09-26 14:48 - 2015-07-14 21:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-09-26 14:45 - 2015-09-26 14:45 - 00031256 _____ () C:\Windows\System32\us006lm.dll
2015-09-26 14:48 - 2015-08-11 04:14 - 00404480 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-09-26 14:52 - 2015-08-18 02:56 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-09-11 19:02 - 2015-09-11 19:02 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898728 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2010-07-14 23:44 - 2010-07-14 23:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2015-07-10 05:59 - 2015-07-10 05:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 05:59 - 2015-07-10 05:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-09-26 14:49 - 2015-08-02 20:11 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 06:00 - 2015-07-10 08:28 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-09-26 14:49 - 2015-08-11 03:58 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-09-26 14:49 - 2015-08-02 20:09 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 06:00 - 2015-07-10 08:28 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2013-04-24 16:37 - 2015-03-26 16:49 - 00081072 _____ () C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Symlib.dll
2013-04-24 16:37 - 2015-03-26 16:49 - 00018608 _____ () C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\WinFeatures.dll
2015-05-29 02:32 - 2015-07-22 03:45 - 53302480 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\Plug-Ins\Spaces\libcef.dll
2015-05-29 02:29 - 2015-07-22 03:43 - 04062416 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\aif.dll
2015-09-26 14:16 - 2015-09-13 19:24 - 42840184 _____ () C:\Windows\system32\nvcompiler.dll
2014-01-17 18:05 - 2014-01-17 18:05 - 00071168 _____ () C:\Program Files\SmartFTP Client\zlib1.dll
2015-07-10 06:00 - 2015-07-10 06:00 - 00215352 _____ () c:\windows\system32\WerEtw.dll
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.0\kpcengine.2.3.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 01588224 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll
2013-06-21 13:29 - 2013-06-21 13:29 - 02633728 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll
2011-03-10 23:55 - 2011-03-10 23:55 - 00063328 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\ASLSupport.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00035328 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\boost_threads.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00066560 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\boost_filesystem.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00649216 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\boost_regex.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00012800 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\boost_system.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00026112 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\tbbmalloc.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00379056 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\Plug-ins\Filters\Sangam Readers\Reader For PageMaker.smrd
2011-03-10 16:40 - 2011-03-10 16:40 - 00122032 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\PMFileReader.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00051376 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\ALDFS32CJK.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00046256 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\ALDVM32CJK.dll
2011-03-10 16:40 - 2011-03-10 16:40 - 00095136 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5.5\unihan.dll
2015-01-21 15:01 - 2015-01-21 15:01 - 08898720 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2011-01-12 07:08 - 2011-01-12 07:08 - 00060416 _____ () C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\zlib1.dll
2015-05-29 02:32 - 2015-07-22 03:45 - 36732624 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\libcef.dll
2015-05-29 02:32 - 2015-07-22 03:45 - 01746640 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\ffmpegsumo.dll
2015-09-11 16:39 - 2015-09-11 16:39 - 00124416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00121856 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ref\build\Release\binding.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00122880 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ffi\build\Release\ffi_bindings.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00188416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00085504 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\bufferutil.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00086016 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\validation.node
2015-09-11 16:39 - 2015-09-11 16:39 - 00081408 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node
2015-05-29 02:32 - 2015-07-22 03:45 - 00746704 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\libglesv2.dll
2015-05-29 02:32 - 2015-07-22 03:45 - 00136400 _____ () C:\Program Files\Adobe\Adobe Photoshop CC 2015\Required\CEP\CEPHtmlEngine\libegl.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 

==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 

==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 

==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 

==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3588804255-3441825186-3011144637-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.11.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 

==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{2F37093D-C773-4AE6-B1F6-A9BB4C11AB6E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BE201625-6BB0-46E4-B90E-527800675CFA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{7455797C-25E0-48B5-8882-0CB0A38B0452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{2AAFA218-895A-431F-9C63-83DF7BAEDD85}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{756C6836-245E-4E8D-AB52-971356B23031}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{EBAA303A-1644-4303-B0DC-8244577C3A1D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{25527B7B-8A08-4AFF-A6CC-E5119A413711}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3832DA12-9ECC-4CD7-B267-89263A98D366}] => (Allow) C:\Program Files (x86)\PhraseExpress\PhraseExpress.exe
FirewallRules: [{09A09534-944E-4016-9556-3A574DF27F00}] => (Allow) C:\Program Files\SmartFTP Client\SmartFTP.exe
FirewallRules: [{67C910DE-01CE-4813-9DB9-58C73B4E109F}] => (Allow) LPort=5454
FirewallRules: [{795ADB1B-0B42-49A2-8082-9ADF2576EB86}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{22E16675-13B4-4CFD-9ACE-70FB846FA9AA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{81241BE7-5316-418A-9ED2-28C3D320D8FA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{9D1AA06D-F0C4-40D0-A2A6-F5F6DC3345F4}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{7A7E6542-106E-46E8-B1E2-446EE5C4DFE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{002C1F07-C20C-49CF-958A-0C1AE8D140DE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6E83704E-5813-4004-B5CB-13F4A28B4E81}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{3B460958-C3D1-47B9-84F7-8818B3199478}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{463290F3-5948-4FA6-9BC2-CD8A17DDA4B3}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe
FirewallRules: [{A3BE2CEB-E2C3-45BB-BF07-C9F50ED5CF2E}] => (Allow) C:\Program Files\Samsung\Samsung Link\Samsung Link.exe
FirewallRules: [{8D48879A-89E3-458B-A4CF-0EFED56AB613}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{B253BEC7-EE19-4104-A637-B314F1F8A4E2}] => (Allow) C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe
FirewallRules: [{9E41835C-A83E-4199-957A-45747323E473}] => (Allow) LPort=8743
FirewallRules: [{23FE6F32-9829-483A-86E8-90FD47C7D3A4}] => (Allow) LPort=8643
FirewallRules: [{077D52DB-2BAB-4ED5-9ACB-02B58E8A7634}] => (Allow) LPort=7676
FirewallRules: [{034B71D9-6E7E-4F1F-9C7E-8C9D2C67BB9A}] => (Allow) LPort=7679
FirewallRules: [{0BA4E00E-A9FE-430D-A4A2-9B3DBA8CCF7E}] => (Allow) LPort=24234
FirewallRules: [{C29BBBA5-9E2C-4127-B004-960B6889384A}] => (Allow) LPort=7900
FirewallRules: [{2440E535-AA1B-42AC-AF46-3647CF8EA949}] => (Allow) LPort=1900
FirewallRules: [{3B08E475-4B0F-49E9-B46F-E1C4B3E812EC}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{4A5188FE-1AEE-4D18-8A1F-1C591BBEEE3B}] => (Allow) C:\Program Files\Adobe\Adobe Flash Builder 4.7 (64 Bit)\FlashBuilder.exe
FirewallRules: [{44580277-1F92-4105-A6C1-B93FBE16F92D}] => (Allow) LPort=7935
FirewallRules: [{7B1918DB-226B-4843-88EF-DF3AE87023AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Faulty Device Manager Devices =============
 
Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: Generic PnP Monitor
Description: Generic PnP Monitor
Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard monitor types)
Service: monitor
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: Qualcomm Atheros AR938x Wireless Network Adapter
Description: Qualcomm Atheros AR938x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 

==================== Event log errors: =========================
 
Application errors:
==================
Error: (09/28/2015 02:35:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Adobe CEF Helper.exe, version: 3.3.0.149, time stamp: 0x55f82d39
Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44
Exception code: 0xc0000005
Fault offset: 0x00444106
Faulting process id: 0x2934
Faulting application start time: 0xAdobe CEF Helper.exe0
Faulting application path: Adobe CEF Helper.exe1
Faulting module path: Adobe CEF Helper.exe2
Report Id: Adobe CEF Helper.exe3
Faulting package full name: Adobe CEF Helper.exe4
Faulting package-relative application ID: Adobe CEF Helper.exe5
 
Error: (09/28/2015 02:25:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 
Error: (09/28/2015 02:25:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 
Error: (09/28/2015 02:25:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0x408
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 
Error: (09/28/2015 02:25:01 PM) (Source: .NET Runtime) (EventID: 0) (User: )
Description: CorperfmonExt!CollectCtrs caught exception c0000090
 
Error: (09/28/2015 02:23:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Adobe CEF Helper.exe, version: 3.3.0.149, time stamp: 0x55f82d39
Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44
Exception code: 0xc0000005
Fault offset: 0x00444106
Faulting process id: 0x29c0
Faulting application start time: 0xAdobe CEF Helper.exe0
Faulting application path: Adobe CEF Helper.exe1
Faulting module path: Adobe CEF Helper.exe2
Report Id: Adobe CEF Helper.exe3
Faulting package full name: Adobe CEF Helper.exe4
Faulting package-relative application ID: Adobe CEF Helper.exe5
 
Error: (09/28/2015 02:15:54 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program HDSentinel.exe version 3.7.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: acc
 
Start Time: 01d0fa21fb58a6a6
 
Termination Time: 5
 
Application Path: C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe
 
Report Id: 52da32d6-6615-11e5-9bdd-c86000cc28ae
 
Faulting package full name:
 
Faulting package-relative application ID:
 
Error: (09/28/2015 02:15:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 
Error: (09/28/2015 02:15:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 
Error: (09/28/2015 02:15:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HDSentinel.exe, version: 3.7.0.0, time stamp: 0x2a425e19
Faulting module name: perfdisk.dll, version: 10.0.10240.16384, time stamp: 0x559f3b34
Exception code: 0xc0000090
Fault offset: 0x000027ca
Faulting process id: 0xacc
Faulting application start time: 0xHDSentinel.exe0
Faulting application path: HDSentinel.exe1
Faulting module path: HDSentinel.exe2
Report Id: HDSentinel.exe3
Faulting package full name: HDSentinel.exe4
Faulting package-relative application ID: HDSentinel.exe5
 

System errors:
=============
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Samsung Link Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The X-Rite Device Services Manager service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 15000 milliseconds: Restart the service.
 
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The QBCFMonitorService service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Network Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Streamer Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The AdobeUpdateService service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Adobe Genuine Software Integrity Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Acronis Scheduler2 Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA GeForce Experience Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (09/28/2015 02:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Acronis Nonstop Backup service service terminated unexpectedly.  It has done this 1 time(s).
 

==================== Memory info ===========================
 
Processor: Intel® Core™ i7-3770K CPU @ 3.50GHz
Percentage of memory in use: 21%
Total physical RAM: 16328.56 MB
Available physical RAM: 12831.51 MB
Total Virtual: 19272.56 MB
Available Virtual: 13226.23 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:930.96 GB) (Free:861.12 GB) NTFS
Drive e: (Production) (Fixed) (Total:558.91 GB) (Free:89.54 GB) NTFS ==>[system with boot components (obtained from reading drive)]
Drive f: (Art) (Fixed) (Total:1863.01 GB) (Free:211.58 GB) NTFS
Drive g: (Becky's Drive) (Fixed) (Total:1397.25 GB) (Free:306.29 GB) NTFS
Drive h: (J_CENA_X64FREV_EN-US_DV5) (CDROM) (Total:3.67 GB) (Free:0 GB) UDF
Drive i: (Beckys Drive) (Fixed) (Total:3725.9 GB) (Free:3725.57 GB) NTFS
Drive j: () (Removable) (Total:7.52 GB) (Free:7.52 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E3D68838)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0EE981B3)
 
Partition: GPT.
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 558.9 GB) (Disk ID: 331D369F)
Partition 1: (Active) - (Size=558.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 3 (Size: 1397.3 GB) (Disk ID: 43DB354D)
Partition 2: (Active) - (Size=1397.3 GB) - (Type=05)
 
========================================================
Disk: 4 (Size: 1863 GB) (Disk ID: 000E06C7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
========================================================
Disk: 5 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 686B730D)
 
Partition: GPT.
 
========================================================
Disk: 7 (Size: 7.5 GB) (Disk ID: 6D412AD6)
Partition 1: (Active) - (Size=7.5 GB) - (Type=0B)
 
==================== End of Addition.txt ============================
I'll check for an updated version of HD Sent.  I don't seem to be having the problem anymore. YAY!

  • 0

#9
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

I don't see any signs of it left.  Your Adobe CEF is also causing errors so see if there is a new version of it too.  Otherwise unless we broke something I think you can delete our tools and any logs they may have created.  I'm really surprised that Kaspersky wasn't able to clean it.  Perhaps it considers it just a pup (Potentially Unwanted Program) and needs to be told to look for pups too.


  • 0

#10
beckyp2001

beckyp2001

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

I had it set for PUPs. I don't know why all those programs were unable to clean it. I seriously appreciate your assistance. Everything seems to be running smoothly now.  Thank you!!!!!


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP