Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Blue Screen and Buzzing/Frozen Screen [Closed]


  • This topic is locked This topic is locked

#1
lesadale

lesadale

    Member

  • Member
  • PipPip
  • 55 posts

My computer was built for me about 7 years ago.  This time last year, we did a lot of work and rebuilt the computer.  I changed my operating system to Windows 8.1 and then ran the upgrade to Windows 10. We changed the motherboard and processor, added more memory, and a secondary drive.

 

Ever since then I've had occasional problems with blue screens.  I've gotten several errors, but ignored them since the computer always rebooted.  I have written one of the errors down, but cannot find it now.  It said something about "dog error".  I don't really remember, but I know that it was different ones at different times.

 

Last night it started something new, it starts this horrendous buzzing noise and freezes.  I have to manually reboot and even then it may not come up.  Last night it just got to the screen where Windows was loading and started to flicker.  And I'm no longer getting error messages.

 

 

I did get on the phone with MicroSoft about the blue screens and their solution was to create another administrator on my computer.  I deleted the original after I had transferred all files to the new admin.

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-10-2015
Ran by Lesa Dale (administrator) on LISA_HOME (17-10-2015 08:39:50)
Running from C:\Users\Lesa Dale\Downloads
Loaded Profiles: Lesa Dale (Available Profiles: Lesa Dale)
Platform: Windows 10 Home (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(PamConsult GmbH) C:\Program Files (x86)\Pamela\Pamela.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Mozy, Inc.) C:\Program Files\MozyHome\mozystat.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Mozy, Inc.) C:\Program Files\MozyHome\mozybackup.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Mozy, Inc.) C:\Program Files\MozyHome\mozybackup.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [36711472 2015-10-12] (Dropbox, Inc.)
HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\Run: [GoogleChromeAutoLaunch_7B93A24BC19ABC38AEEB2D2B227675DC] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848 2015-10-08] (Google Inc.)
HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [55349888 2015-09-04] (Skype Technologies S.A.)
HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\Run: [pamela.exe] => C:\Program Files (x86)\Pamela\Pamela.exe [12116400 2015-09-23] (PamConsult GmbH)
HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\RunOnce: [Uninstall C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [mozy] -> {b32a6748-f273-4546-b60a-3c5adc239de5} => C:\Program Files\MozyHome\mozyshell.dll [2015-02-02] (Mozy, Inc.)
ShellIconOverlayIdentifiers: [mozy2] -> {747E722C-CB46-4a9d-BDFE-192AAD5099B1} => C:\Program Files\MozyHome\mozyshell.dll [2015-02-02] (Mozy, Inc.)
ShellIconOverlayIdentifiers: [mozy3] -> {EE6F5A00-7898-40f7-AB77-51FF9D6DEB20} => C:\Program Files\MozyHome\mozyshell.dll [2015-02-02] (Mozy, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-10-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Lesa Dale\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MozyHome Status.lnk [2015-08-21]
ShortcutTarget: MozyHome Status.lnk -> C:\Program Files\MozyHome\mozystat.exe (Mozy, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{005093d8-91c4-4029-92f4-627f20345a2d}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-08-04] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-11] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-05-27] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
 
FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-27] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin HKU\S-1-5-21-1556427823-2387014072-1459418175-1006: @citrixonline.com/appdetectorplugin -> C:\Users\Lesa Dale\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2015-09-19] (Citrix Online)
 
Chrome: 
=======
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-14]
CHR Extension: (Koji NISHIDA) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2015-08-15]
CHR Extension: (Google Docs) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-14]
CHR Extension: (Google Drive) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-14]
CHR Extension: (Skype Calling) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2015-09-22]
CHR Extension: (YouTube) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-14]
CHR Extension: (Send to Kindle for Google Chrome) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgdjpilhipecahhcilnafpblkieebhea [2015-08-14]
CHR Extension: (Alexa Traffic Rank) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel [2015-08-14]
CHR Extension: (Google Search) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-14]
CHR Extension: (Google Sheets) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-14]
CHR Extension: (Google Docs Offline) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03]
CHR Extension: (Save to Pocket) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2015-08-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-14]
CHR Extension: (Evernote Web Clipper) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2015-08-14]
CHR Extension: (Gmail) - C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-14]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2774104 2015-09-11] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-08-21] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-08-21] (Dropbox, Inc.)
R2 mozybackup; C:\Program Files\MozyHome\mozybackup.exe [55040 2015-02-02] (Mozy, Inc.)
S4 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 i8042HDR; C:\Windows\system32\DRIVERS\i8042HDR.sys [15920 2009-08-14] (Windows ® Codename Longhorn DDK provider)
R1 mozyFilter; C:\Windows\System32\DRIVERS\mozy.sys [69320 2015-02-02] (Mozy, Inc.)
R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek                                            )
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-17 08:38 - 2015-10-17 08:38 - 00016148 _____ C:\WINDOWS\system32\LISA_HOME_Lesa Dale_HistoryPrediction.bin
2015-10-17 08:36 - 2015-10-17 08:36 - 00280584 _____ C:\WINDOWS\Minidump\101715-16140-01.dmp
2015-10-17 08:34 - 2015-10-17 08:39 - 00016401 _____ C:\Users\Lesa Dale\Downloads\FRST.txt
2015-10-17 08:33 - 2015-10-17 08:39 - 00000000 ____D C:\FRST
2015-10-17 08:32 - 2015-10-17 08:33 - 02196992 _____ (Farbar) C:\Users\Lesa Dale\Downloads\FRST64.exe
2015-10-17 08:31 - 2015-10-17 08:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-10-16 14:55 - 2015-10-16 14:55 - 00280584 _____ C:\WINDOWS\Minidump\101615-14437-01.dmp
2015-10-16 14:06 - 2015-10-16 14:06 - 00280584 _____ C:\WINDOWS\Minidump\101615-21250-01.dmp
2015-10-15 11:49 - 2015-10-15 11:49 - 00004160 _____ C:\Users\Lesa Dale\AppData\Local\recently-used.xbel
2015-10-15 10:46 - 2015-10-15 10:46 - 00280584 _____ C:\WINDOWS\Minidump\101515-14656-01.dmp
2015-10-14 07:46 - 2015-09-24 22:01 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-10-14 07:46 - 2015-09-24 22:00 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-10-14 07:46 - 2015-09-24 21:59 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-10-14 07:46 - 2015-09-24 21:59 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2015-10-14 07:46 - 2015-09-24 21:59 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2015-10-14 07:46 - 2015-09-24 21:38 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-10-14 07:46 - 2015-09-24 21:38 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2015-10-14 07:46 - 2015-09-24 21:36 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-10-14 07:46 - 2015-09-24 21:34 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-10-14 07:46 - 2015-09-24 21:33 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2015-10-14 07:46 - 2015-09-24 21:32 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-10-14 07:45 - 2015-10-10 02:12 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-10-14 07:45 - 2015-10-10 01:40 - 21875712 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-10-14 07:45 - 2015-10-10 01:07 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-10-14 07:45 - 2015-10-05 22:03 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-10-14 07:45 - 2015-10-05 21:46 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-10-14 07:45 - 2015-09-30 23:01 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-10-14 07:45 - 2015-09-30 23:01 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-10-14 07:45 - 2015-09-30 23:01 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-10-14 07:45 - 2015-09-30 23:01 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-10-14 07:45 - 2015-09-30 23:00 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-10-14 07:45 - 2015-09-30 22:03 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-10-14 07:45 - 2015-09-24 23:01 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-10-14 07:45 - 2015-09-24 23:01 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-10-14 07:45 - 2015-09-24 22:56 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-10-14 07:45 - 2015-09-24 22:52 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-10-14 07:45 - 2015-09-24 22:33 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-10-14 07:45 - 2015-09-24 22:26 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-10-14 07:45 - 2015-09-24 22:17 - 24595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-10-14 07:45 - 2015-09-24 22:11 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2015-10-14 07:45 - 2015-09-24 22:11 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2015-10-14 07:45 - 2015-09-24 22:09 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-10-14 07:45 - 2015-09-24 22:07 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-10-14 07:45 - 2015-09-24 22:04 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-10-14 07:45 - 2015-09-24 22:04 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-10-14 07:45 - 2015-09-24 22:04 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2015-10-14 07:45 - 2015-09-24 22:03 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2015-10-14 07:45 - 2015-09-24 22:03 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-10-14 07:45 - 2015-09-24 22:02 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-10-14 07:45 - 2015-09-24 22:02 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-10-14 07:45 - 2015-09-24 22:02 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2015-10-14 07:45 - 2015-09-24 22:02 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-10-14 07:45 - 2015-09-24 22:01 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-10-14 07:45 - 2015-09-24 22:00 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-10-14 07:45 - 2015-09-24 22:00 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-10-14 07:45 - 2015-09-24 22:00 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2015-10-14 07:45 - 2015-09-24 21:59 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-10-14 07:45 - 2015-09-24 21:59 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2015-10-14 07:45 - 2015-09-24 21:59 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2015-10-14 07:45 - 2015-09-24 21:59 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-10-14 07:45 - 2015-09-24 21:58 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-10-14 07:45 - 2015-09-24 21:48 - 19325952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-10-14 07:45 - 2015-09-24 21:47 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2015-10-14 07:45 - 2015-09-24 21:47 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2015-10-14 07:45 - 2015-09-24 21:38 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-10-14 07:45 - 2015-09-24 21:38 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-10-14 07:45 - 2015-09-24 21:37 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-10-14 07:45 - 2015-09-24 21:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2015-10-14 07:45 - 2015-09-24 21:37 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2015-10-14 07:45 - 2015-09-24 21:36 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-10-14 07:45 - 2015-09-24 21:34 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-10-14 07:45 - 2015-09-24 21:34 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2015-10-14 07:45 - 2015-09-24 21:34 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2015-10-14 07:45 - 2015-09-24 21:34 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2015-10-14 07:45 - 2015-09-24 21:32 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-10-14 07:37 - 2015-10-14 07:38 - 00280584 _____ C:\WINDOWS\Minidump\101415-14140-01.dmp
2015-10-10 22:19 - 2015-10-10 22:20 - 00280584 _____ C:\WINDOWS\Minidump\101015-16625-01.dmp
2015-10-08 20:58 - 2015-10-08 20:58 - 00280584 _____ C:\WINDOWS\Minidump\100815-21218-01.dmp
2015-10-08 11:25 - 2015-10-08 11:25 - 00000000 __SHD C:\found.003
2015-10-07 10:58 - 2015-10-07 10:58 - 00000000 __SHD C:\found.002
2015-10-07 10:58 - 2015-10-07 10:58 - 00000000 __SHD C:\found.001
2015-10-06 14:45 - 2015-10-06 14:45 - 00280584 _____ C:\WINDOWS\Minidump\100615-14859-01.dmp
2015-10-06 10:34 - 2015-10-06 10:34 - 00280584 _____ C:\WINDOWS\Minidump\100615-14234-01.dmp
2015-10-05 17:16 - 2015-10-05 17:16 - 00280528 _____ C:\WINDOWS\Minidump\100515-13921-01.dmp
2015-10-03 15:28 - 2015-10-03 15:28 - 00000853 _____ C:\Users\Lesa Dale\Downloads\The-Influence-And-Impact-Summit.ics
2015-10-03 13:00 - 2015-10-03 13:00 - 00280584 _____ C:\WINDOWS\Minidump\100315-22140-01.dmp
2015-10-02 09:26 - 2015-10-02 09:26 - 00280528 _____ C:\WINDOWS\Minidump\100215-18515-01.dmp
2015-10-01 10:31 - 2015-09-19 00:14 - 00102304 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2015-10-01 10:31 - 2015-09-17 01:50 - 02464216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-10-01 10:31 - 2015-09-17 01:50 - 01563392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-10-01 10:31 - 2015-09-17 01:50 - 00099664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2015-10-01 10:31 - 2015-09-17 01:50 - 00088384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-10-01 10:31 - 2015-09-17 01:49 - 06487248 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-10-01 10:31 - 2015-09-17 01:49 - 01563472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-10-01 10:31 - 2015-09-17 01:49 - 00894256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2015-10-01 10:31 - 2015-09-17 01:49 - 00553808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2015-10-01 10:31 - 2015-09-17 01:49 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 02494712 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 02432336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 01983824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 00809352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00584656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00555768 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00537080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-10-01 10:31 - 2015-09-17 01:48 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 00476760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 00406864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-10-01 10:31 - 2015-09-17 01:48 - 00395088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 00332624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-10-01 10:31 - 2015-09-17 01:48 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-10-01 10:31 - 2015-09-17 01:47 - 01397088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-10-01 10:31 - 2015-09-17 01:44 - 00781976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-10-01 10:31 - 2015-09-17 01:43 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-10-01 10:31 - 2015-09-17 01:37 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2015-10-01 10:31 - 2015-09-17 01:37 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-10-01 10:31 - 2015-09-17 01:28 - 05120056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2015-10-01 10:31 - 2015-09-17 01:28 - 02154808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-10-01 10:31 - 2015-09-17 01:28 - 01357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-10-01 10:31 - 2015-09-17 01:28 - 00441168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2015-10-01 10:31 - 2015-09-17 01:28 - 00407608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-10-01 10:31 - 2015-09-17 01:28 - 00074880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2015-10-01 10:31 - 2015-09-17 01:27 - 01766952 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-10-01 10:31 - 2015-09-17 01:27 - 00454512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 02446648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 01895568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 00646672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 00508248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 00434376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2015-10-01 10:31 - 2015-09-17 01:26 - 00428128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-10-01 10:31 - 2015-09-17 01:25 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-10-01 10:31 - 2015-09-17 01:21 - 00658528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2015-10-01 10:31 - 2015-09-17 01:20 - 00764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-10-01 10:31 - 2015-09-17 01:11 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2015-10-01 10:31 - 2015-09-17 01:10 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2015-10-01 10:31 - 2015-09-17 01:09 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-10-01 10:31 - 2015-09-17 01:09 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2015-10-01 10:31 - 2015-09-17 01:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-10-01 10:31 - 2015-09-17 01:08 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll
2015-10-01 10:31 - 2015-09-17 01:08 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-10-01 10:31 - 2015-09-17 01:06 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2015-10-01 10:31 - 2015-09-17 01:06 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-10-01 10:31 - 2015-09-17 01:06 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-10-01 10:31 - 2015-09-17 01:05 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-10-01 10:31 - 2015-09-17 01:05 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-10-01 10:31 - 2015-09-17 01:04 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-10-01 10:31 - 2015-09-17 01:04 - 00910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-10-01 10:31 - 2015-09-17 01:04 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2015-10-01 10:31 - 2015-09-17 01:03 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2015-10-01 10:31 - 2015-09-17 01:03 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-10-01 10:31 - 2015-09-17 01:03 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2015-10-01 10:31 - 2015-09-17 01:03 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2015-10-01 10:31 - 2015-09-17 01:03 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2015-10-01 10:31 - 2015-09-17 01:02 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2015-10-01 10:31 - 2015-09-17 01:02 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2015-10-01 10:31 - 2015-09-17 01:00 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-10-01 10:31 - 2015-09-17 01:00 - 02417664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-10-01 10:31 - 2015-09-17 01:00 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-10-01 10:31 - 2015-09-17 01:00 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll
2015-10-01 10:31 - 2015-09-17 00:58 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-10-01 10:31 - 2015-09-17 00:57 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-10-01 10:31 - 2015-09-17 00:57 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2015-10-01 10:31 - 2015-09-17 00:57 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-10-01 10:31 - 2015-09-17 00:57 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-10-01 10:31 - 2015-09-17 00:56 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-10-01 10:31 - 2015-09-17 00:56 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-10-01 10:31 - 2015-09-17 00:56 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2015-10-01 10:31 - 2015-09-17 00:55 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-10-01 10:31 - 2015-09-17 00:55 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-10-01 10:31 - 2015-09-17 00:54 - 03781120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-10-01 10:31 - 2015-09-17 00:54 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-10-01 10:31 - 2015-09-17 00:54 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-01 10:31 - 2015-09-17 00:53 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-10-01 10:31 - 2015-09-17 00:52 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 02660864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 01203712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-10-01 10:31 - 2015-09-17 00:51 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2015-10-01 10:31 - 2015-09-17 00:50 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-10-01 10:31 - 2015-09-17 00:50 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-10-01 10:31 - 2015-09-17 00:50 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-10-01 10:31 - 2015-09-17 00:50 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll
2015-10-01 10:31 - 2015-09-17 00:50 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll
2015-10-01 10:31 - 2015-09-17 00:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys
2015-10-01 10:31 - 2015-09-17 00:49 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll
2015-10-01 10:31 - 2015-09-17 00:49 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-10-01 10:31 - 2015-09-17 00:47 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2015-10-01 10:31 - 2015-09-17 00:47 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2015-10-01 10:31 - 2015-09-17 00:47 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2015-10-01 10:31 - 2015-09-17 00:46 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2015-10-01 10:31 - 2015-09-17 00:46 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll
2015-10-01 10:31 - 2015-09-17 00:45 - 01331200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-10-01 10:31 - 2015-09-17 00:45 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-10-01 10:31 - 2015-09-17 00:45 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-10-01 10:31 - 2015-09-17 00:45 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-10-01 10:31 - 2015-09-17 00:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2015-10-01 10:31 - 2015-09-17 00:44 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-10-01 10:31 - 2015-09-17 00:44 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-10-01 10:31 - 2015-09-17 00:44 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2015-10-01 10:31 - 2015-09-17 00:44 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-10-01 10:31 - 2015-09-17 00:43 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-10-01 10:31 - 2015-09-17 00:43 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-10-01 10:31 - 2015-09-17 00:43 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-10-01 10:31 - 2015-09-17 00:43 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-10-01 10:31 - 2015-09-17 00:42 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-10-01 10:31 - 2015-09-17 00:41 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-10-01 10:31 - 2015-09-17 00:40 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-10-01 10:31 - 2015-09-17 00:40 - 01918464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-10-01 10:31 - 2015-09-17 00:40 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-10-01 10:31 - 2015-09-17 00:39 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-10-01 10:31 - 2015-09-17 00:39 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-01 10:31 - 2015-09-17 00:38 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2015-10-01 10:31 - 2015-09-17 00:37 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-10-01 10:31 - 2015-09-17 00:36 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll
2015-10-01 10:31 - 2015-09-17 00:35 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-10-01 10:31 - 2015-09-17 00:35 - 02207232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-10-01 10:31 - 2015-09-17 00:35 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-10-01 10:31 - 2015-09-17 00:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-10-01 10:31 - 2015-09-17 00:34 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-10-01 10:31 - 2015-09-17 00:32 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-10-01 10:31 - 2015-09-17 00:32 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-10-01 10:31 - 2015-09-17 00:32 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-10-01 10:31 - 2015-09-17 00:31 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2015-10-01 10:31 - 2015-09-17 00:30 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-10-01 10:31 - 2015-09-17 00:29 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-10-01 10:31 - 2015-09-17 00:29 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2015-10-01 10:31 - 2015-09-17 00:29 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2015-10-01 10:31 - 2015-09-17 00:29 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-10-01 10:31 - 2015-09-17 00:28 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-10-01 10:31 - 2015-09-17 00:26 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2015-10-01 10:31 - 2015-09-17 00:16 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2015-10-01 10:31 - 2015-09-12 21:05 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-10-01 10:31 - 2015-09-12 20:41 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-09-30 08:38 - 2015-09-30 08:38 - 00280568 _____ C:\WINDOWS\Minidump\093015-14031-01.dmp
2015-09-29 09:48 - 2015-10-15 11:49 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\gtk-2.0
2015-09-29 09:48 - 2015-09-29 09:48 - 00000000 ____D C:\Users\Lesa Dale\.thumbnails
2015-09-29 08:59 - 2015-09-29 08:59 - 00280584 _____ C:\WINDOWS\Minidump\092915-14750-01.dmp
2015-09-28 15:49 - 2015-09-28 15:49 - 00280584 _____ C:\WINDOWS\Minidump\092815-18406-01.dmp
2015-09-28 15:26 - 2015-09-28 15:26 - 00280584 _____ C:\WINDOWS\Minidump\092815-14812-01.dmp
2015-09-28 15:04 - 2015-09-28 15:04 - 00280584 _____ C:\WINDOWS\Minidump\092815-15265-01.dmp
2015-09-27 21:47 - 2015-09-27 21:47 - 00280584 _____ C:\WINDOWS\Minidump\092715-14937-01.dmp
2015-09-25 13:37 - 2015-09-25 13:37 - 00003812 _____ C:\Users\Lesa Dale\Downloads\calendar (3).ics
2015-09-25 09:19 - 2015-09-25 09:19 - 00001158 _____ C:\Users\Lesa Dale\Downloads\calendar (2).ics
2015-09-25 09:18 - 2015-09-25 09:18 - 00001158 _____ C:\Users\Lesa Dale\Downloads\calendar (1).ics
2015-09-24 18:48 - 2015-09-24 18:48 - 00280584 _____ C:\WINDOWS\Minidump\092415-24390-01.dmp
2015-09-24 18:23 - 2015-09-24 18:23 - 00280584 _____ C:\WINDOWS\Minidump\092415-27875-01.dmp
2015-09-23 12:28 - 2015-09-23 12:28 - 00000789 _____ C:\Users\Lesa Dale\Downloads\event (1).ics
2015-09-23 08:03 - 2015-09-23 08:03 - 00000000 ____D C:\Users\Lesa Dale\AppData\Roaming\PamFax
2015-09-23 08:03 - 2015-09-23 08:03 - 00000000 ____D C:\Users\Lesa Dale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PamConsult GmbH
2015-09-23 08:02 - 2015-09-23 08:03 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\SquirrelTemp
2015-09-23 08:02 - 2015-09-23 08:03 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\pamfax
2015-09-23 08:02 - 2015-09-23 08:02 - 00001052 _____ C:\Users\Public\Desktop\Pamela for Skype.lnk
2015-09-23 08:02 - 2015-09-23 08:02 - 00000000 ____D C:\Users\Lesa Dale\Documents\Pamela
2015-09-23 08:01 - 2015-09-23 08:04 - 00000000 ____D C:\Users\Lesa Dale\AppData\Roaming\Pamela
2015-09-23 08:01 - 2015-09-23 08:01 - 00197632 _____ (PamConsult GmbH) C:\WINDOWS\SysWOW64\RemoteControl.dll
2015-09-23 08:01 - 2015-09-23 08:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pamela
2015-09-23 08:00 - 2015-09-23 08:01 - 00000000 ____D C:\Program Files (x86)\Pamela
2015-09-23 08:00 - 2015-09-23 08:00 - 07077080 _____ (PamConsult GmbH) C:\Users\Lesa Dale\Downloads\PamelaSetup_Pro (1).exe
2015-09-23 07:53 - 2015-09-23 08:00 - 07077080 _____ (PamConsult GmbH) C:\Users\Lesa Dale\Downloads\PamelaSetup_Pro.exe
2015-09-23 06:42 - 2015-09-23 06:42 - 07024640 _____ C:\Users\Lesa Dale\Downloads\6-2_lecture.ppt
2015-09-23 06:34 - 2015-09-23 06:38 - 00128000 _____ C:\Users\Lesa Dale\Downloads\Troop Leadership Oct 1 2015-March 31 2016.pub
2015-09-22 21:30 - 2015-09-22 21:30 - 08431104 _____ C:\Users\Lesa Dale\Downloads\4-1_lecture.ppt
2015-09-22 21:30 - 2015-09-22 21:30 - 02978816 _____ C:\Users\Lesa Dale\Downloads\6-1_lecture.ppt
2015-09-22 21:30 - 2015-09-22 21:30 - 02836480 _____ C:\Users\Lesa Dale\Downloads\4-4_lecture.ppt
2015-09-22 21:29 - 2015-09-22 21:29 - 05340672 _____ C:\Users\Lesa Dale\Downloads\4-3_lecture.ppt
2015-09-22 21:28 - 2015-09-22 21:28 - 06347264 _____ C:\Users\Lesa Dale\Downloads\4-2_lecture.ppt
2015-09-22 21:28 - 2015-09-22 21:28 - 04444160 _____ C:\Users\Lesa Dale\Downloads\3-2__3-3_lecture.ppt
2015-09-22 21:27 - 2015-09-22 21:27 - 05290496 _____ C:\Users\Lesa Dale\Downloads\1-3_lecture.ppt
2015-09-22 07:53 - 2015-09-22 07:53 - 06930432 _____ C:\Users\Lesa Dale\Downloads\SkypeWebPlugin (1).msi
2015-09-22 07:53 - 2015-09-22 07:53 - 00000000 ____D C:\Users\Lesa Dale\Tracing
2015-09-22 07:52 - 2015-09-22 07:52 - 06930432 _____ C:\Users\Lesa Dale\Downloads\SkypeWebPlugin.msi
2015-09-22 07:47 - 2015-10-17 08:39 - 00000000 ____D C:\Users\Lesa Dale\AppData\Roaming\Skype
2015-09-22 07:47 - 2015-10-15 10:47 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-22 07:47 - 2015-09-22 07:47 - 00002640 _____ C:\Users\Public\Desktop\Skype.lnk
2015-09-22 07:47 - 2015-09-22 07:47 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\Skype
2015-09-22 07:47 - 2015-09-22 07:47 - 00000000 ____D C:\ProgramData\Skype
2015-09-22 07:47 - 2015-09-22 07:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-22 07:45 - 2015-09-22 07:46 - 01506832 _____ (Skype Technologies S.A.) C:\Users\Lesa Dale\Downloads\SkypeSetup.exe
2015-09-21 14:45 - 2015-09-21 14:45 - 00117248 _____ C:\Users\Lesa Dale\Downloads\Troop Leadershi October-March (1).pub
2015-09-21 14:44 - 2015-09-21 14:44 - 00117248 _____ C:\Users\Lesa Dale\Downloads\Troop Leadershi October-March.pub
2015-09-19 18:10 - 2015-10-16 14:23 - 00000606 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1006.job
2015-09-19 18:10 - 2015-10-16 13:27 - 00000702 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1006.job
2015-09-19 18:10 - 2015-10-03 15:52 - 00003868 _____ C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1006
2015-09-19 18:10 - 2015-10-03 15:52 - 00003772 _____ C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1006
2015-09-19 18:09 - 2015-09-19 18:10 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\Citrix
2015-09-19 18:06 - 2015-09-19 18:06 - 00000678 _____ C:\Users\Lesa Dale\Downloads\event.ics
2015-09-19 17:02 - 2015-09-19 17:02 - 00130048 _____ C:\Users\Lesa Dale\Downloads\Troop Leadership April-September 2015.pub
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-17 08:39 - 2015-08-21 17:27 - 00000000 ___RD C:\Users\Lesa Dale\Dropbox
2015-10-17 08:39 - 2015-08-21 17:25 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\Dropbox
2015-10-17 08:38 - 2015-08-21 17:25 - 00000930 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2015-10-17 08:38 - 2015-07-10 07:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-10-17 08:38 - 2015-04-03 03:06 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-17 08:36 - 2015-08-06 18:10 - 00000000 ____D C:\WINDOWS\Minidump
2015-10-17 08:36 - 2015-08-06 17:47 - 00017656 _____ C:\WINDOWS\PFRO.log
2015-10-17 08:36 - 2015-07-10 07:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-10-17 08:36 - 2015-04-06 17:02 - 757713865 _____ C:\WINDOWS\MEMORY.DMP
2015-10-17 08:34 - 2015-04-03 03:06 - 00000926 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-17 08:32 - 2015-08-06 18:02 - 00875126 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-10-17 08:31 - 2015-08-21 17:25 - 00000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2015-10-17 08:31 - 2015-08-21 17:25 - 00000000 ____D C:\Program Files (x86)\Dropbox
2015-10-17 08:28 - 2015-08-14 13:59 - 00000000 ____D C:\Users\Lesa Dale
2015-10-17 08:28 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-10-16 15:03 - 2015-04-03 03:03 - 00000308 _____ C:\WINDOWS\Tasks\UpdaterEX.job
2015-10-16 14:57 - 2015-06-21 12:46 - 00000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001UA.job
2015-10-16 14:28 - 2015-06-04 13:51 - 00000576 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1001.job
2015-10-16 14:16 - 2015-06-16 10:30 - 00000672 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1001.job
2015-10-16 12:40 - 2015-02-02 19:24 - 00004806 _____ C:\WINDOWS\mozy.blk
2015-10-16 12:40 - 2015-02-02 19:24 - 00003846 _____ C:\WINDOWS\mozy.flt
2015-10-16 12:07 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-10-15 11:50 - 2015-08-21 17:24 - 00000000 ____D C:\Users\Lesa Dale\.gimp-2.8
2015-10-15 10:49 - 2015-07-10 04:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-10-15 10:48 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-10-14 17:36 - 2015-08-06 17:59 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-14 12:13 - 2015-08-14 13:59 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\Packages
2015-10-14 07:52 - 2015-07-10 05:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-10-14 07:52 - 2015-04-04 07:55 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-10-14 07:49 - 2015-04-04 07:55 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-10-12 05:57 - 2015-06-21 12:46 - 00000882 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001Core.job
2015-10-05 09:31 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\rescache
2015-10-05 09:12 - 2015-07-10 07:20 - 00017668 _____ C:\WINDOWS\setupact.log
2015-10-02 12:36 - 2015-07-10 06:06 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-10-02 12:36 - 2015-07-10 06:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-10-02 09:28 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\L2Schemas
2015-10-01 16:44 - 2015-08-14 13:59 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\VirtualStore
2015-09-30 08:35 - 2015-07-10 06:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-09-24 18:24 - 2015-05-27 07:50 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-09-21 14:43 - 2015-08-14 13:59 - 00000000 ____D C:\Users\Lesa Dale\AppData\Local\Google
2015-09-18 01:29 - 2015-04-03 03:06 - 00003984 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-18 01:29 - 2015-04-03 03:06 - 00003752 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
 
==================== Files in the root of some directories =======
 
2015-10-15 11:49 - 2015-10-15 11:49 - 0004160 _____ () C:\Users\Lesa Dale\AppData\Local\recently-used.xbel
 
Some files in TEMP:
====================
C:\Users\Lesa Dale\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpoucdkk.dll
C:\Users\Lesa Dale\AppData\Local\Temp\PamFaxSetup.exe
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-10-13 09:57
 
==================== End of FRST.txt ============================
 
 
 
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-10-2015
Ran by Lesa Dale (2015-10-17 08:40:50)
Running from C:\Users\Lesa Dale\Downloads
Windows 10 Home (X64) (2015-08-06 23:06:07)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-1556427823-2387014072-1459418175-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1556427823-2387014072-1459418175-503 - Limited - Disabled)
Guest (S-1-5-21-1556427823-2387014072-1459418175-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1556427823-2387014072-1459418175-1003 - Limited - Enabled)
Lesa Dale (S-1-5-21-1556427823-2387014072-1459418175-1006 - Administrator - Enabled) => C:\Users\Lesa Dale
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Calendar Sync Pro (HKLM-x32\...\Calendar Sync Pro) (Version:  - )
Citrix Online Launcher (HKLM-x32\...\{1B1BF50E-ACE8-4481-B362-89544FB1CD4B}) (Version: 1.0.357 - Citrix)
Citrix Online Launcher (HKLM-x32\...\{6740FE60-43C1-4D15-8C4A-001624134B14}) (Version: 1.0.312 - Citrix)
Dropbox (HKLM-x32\...\Dropbox) (Version: 3.10.8 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.27.35 - Dropbox, Inc.) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
GO Contact Sync Mod (HKLM-x32\...\{8B9A3F48-1CD4-442C-95C5-18B390B184C4}) (Version: 3.9.10 - WebGear Ltd, New Zealand + Create Software + Stru.be + saller.NET + Big-R)
Google Apps Sync™ for Microsoft Outlook® 3.7.410.1100 (HKLM-x32\...\{799A7E2B-388F-4BDE-B55B-47AF42C6440A}) (Version: 3.7.410.1100 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
GoToMeeting 7.3.0.3499 (HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\GoToMeeting) (Version: 7.3.0.3499 - CitrixOnline)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4753.1003 - Microsoft Corporation)
Mozy Restore Manager x64 (HKLM\...\{D8555D7B-3AF3-4F46-9603-479834D44835}) (Version: 2.3.0.621 - Mozy, Inc)
MozyHome (HKLM\...\{81D29D4E-9658-BB63-D879-E6A625C01364}) (Version: 2.28.2.432 - Mozy, Inc.)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4753.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4753.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4753.1003 - Microsoft Corporation) Hidden
Pamela Pro 4.9 (HKLM-x32\...\Pamela) (Version: 4.9 - PamConsult GmbH)
PamFax (HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\...\pamfax) (Version: 4.1.2 - PamConsult GmbH.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation)
Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.)
The Action Generator (HKLM-x32\...\The Action Generator_is1) (Version:  - The Action Generator)
YNAB 4 version 4.3.729 (HKLM-x32\...\com.ynab.YNAB4.LiveCaptive_is1) (Version: 4.3.729 - YouNeedABudget.com)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-1556427823-2387014072-1459418175-1006_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Lesa Dale\AppData\Local\Citrix\GoToMeeting\3277\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.)
 
==================== Restore Points =========================
 
09-10-2015 16:32:20 Scheduled Checkpoint
14-10-2015 07:48:43 Windows Update
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2013-08-22 08:25 - 2015-08-13 14:36 - 00000855 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1       localhost
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {03AE932D-11A1-4D13-8DB7-65F6ADEB28BB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-10-14] (Microsoft Corporation)
Task: {1EA88EC9-8ED2-46D3-8AFB-E3A06552F5A3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation)
Task: {248E8E24-9A65-423E-80A9-4EEC90D7FA63} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {3662B5A9-7552-4A07-8A56-8BFDEACA8429} - System32\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1001 => C:\Users\lisa\AppData\Local\Citrix\GoToMeeting\3215\g2mupload.exe
Task: {3AEB7772-415C-4267-9094-E162C567B012} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-08-21] (Dropbox, Inc.)
Task: {4067EC66-D193-445B-A4FF-AC8543D887CA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {40813830-D236-4EF7-89E5-65F29E8BF055} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-08-21] (Dropbox, Inc.)
Task: {6F6B984A-2E98-45A8-A4D6-6523EA9756DE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {716D46BD-D1FC-4443-98CB-EC06618FA62D} - System32\Tasks\UpdaterEX => C:\Users\lisa\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {80AA9F86-F317-4DDD-8892-9AF3140BEE85} - System32\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1001 => C:\Users\lisa\AppData\Local\Citrix\GoToMeeting\3215\g2mupdate.exe
Task: {81D523F6-0691-4A6A-867A-3F0EBC8F777D} - System32\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1006 => C:\Users\Lesa Dale\AppData\Local\Citrix\GoToMeeting\3499\g2mupdate.exe [2015-10-03] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {889F55AF-4ECF-47B4-9926-274C7E095709} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001Core => C:\Users\lisa\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: {8FF1DF94-25AA-4ECA-B1EC-FB75C3A3D325} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {93D64412-A799-48E0-A817-3F3108638B0C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {A75E9B45-0693-40B5-BC2E-F49A3432D260} - System32\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1006 => C:\Users\Lesa Dale\AppData\Local\Citrix\GoToMeeting\3499\g2mupload.exe [2015-10-03] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {A7A55FF6-F825-4248-AA81-C27F13A81207} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {AA74C089-9CAE-454E-AD9A-5DFFA97FE3C3} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {B35198E8-C373-4463-98D6-0A2E66D6CCFC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {B3F5C949-8EF2-4EAD-BF84-ED543E5DFC74} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001UA => C:\Users\lisa\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: {B4B35288-AFE7-42B8-BE01-73A01D1AA507} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-03] (Google Inc.)
Task: {BF930045-7B35-40E2-B7BF-DDE887C8DEB8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {C1C2FF81-E269-4490-BAA1-2925BE3F733E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-03] (Google Inc.)
Task: {C6688E01-6E46-40E2-9D67-1DFF425FF8C9} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-09-11] (Microsoft Corporation)
Task: {C7AC7021-B42C-45F6-8C56-9822AB2404C6} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [2015-08-11] (Microsoft Corporation)
Task: {D9848858-E2F1-42B2-B82F-BDE279C439E8} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {E5B9B759-A7DA-4655-987D-B0FB4851DABC} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {E9E09BDA-99F9-4D2C-AAF1-AC43CC268312} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation)
Task: {F3643804-F503-4460-8B80-DBA0A5B51BBC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-10-14] (Microsoft Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001Core.job => C:\Users\lisa\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1556427823-2387014072-1459418175-1001UA.job => C:\Users\lisa\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1001.job => C:\Users\lisa\AppData\Local\Citrix\GoToMeeting\3215\g2mupdate.exe
Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1556427823-2387014072-1459418175-1006.job => C:\Users\Lesa Dale\AppData\Local\Citrix\GoToMeeting\3499\g2mupdate.exe
Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1001.job => C:\Users\lisa\AppData\Local\Citrix\GoToMeeting\3215\g2mupload.exe
Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1556427823-2387014072-1459418175-1006.job => C:\Users\Lesa Dale\AppData\Local\Citrix\GoToMeeting\3499\g2mupload.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\UpdaterEX.job => C:\Users\lisa\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-08-06 20:43 - 2015-08-06 20:43 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-08-19 10:32 - 2015-08-11 04:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-05-27 07:50 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-01 10:31 - 2015-09-17 01:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-10-01 10:31 - 2015-09-17 00:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 05:59 - 2015-07-10 05:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-10-01 10:31 - 2015-09-17 00:44 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-10-01 10:31 - 2015-09-17 00:42 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-10-01 10:31 - 2015-09-17 00:42 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 10:31 - 2015-09-17 00:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 06:00 - 2015-07-10 08:14 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-09-23 08:01 - 2015-09-23 08:01 - 00053760 _____ () C:\Program Files (x86)\Pamela\zlib.dll
2015-10-03 16:43 - 2015-10-12 18:33 - 00166416 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2015-10-17 08:38 - 2015-10-17 08:38 - 00071168 _____ () c:\Users\Lesa Dale\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpoucdkk.dll
2015-08-21 17:26 - 2015-09-23 18:07 - 00012800 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick.2\qtquick2plugin.dll
2015-08-21 17:26 - 2015-09-23 18:07 - 00779776 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-08-21 17:26 - 2015-09-23 18:07 - 00056320 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-08-21 17:26 - 2015-09-23 18:07 - 00012288 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Window.2\windowplugin.dll
2015-10-14 17:36 - 2015-10-08 19:53 - 01532744 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libglesv2.dll
2015-10-14 17:36 - 2015-10-08 19:53 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libegl.dll
2015-10-16 12:12 - 2015-10-15 13:20 - 16493256 _____ () C:\Users\Lesa Dale\AppData\Local\Google\Chrome\User Data\PepperFlash\19.0.0.226\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-1556427823-2387014072-1459418175-1006\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: mozybackup => 2
MSCONFIG\Services: VIAKaraokeService => 2
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{9EB16100-42DE-4D13-9F07-463AF16936B2}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{3509BB9F-8694-46A8-9C11-018615056E39}] => (Allow) C:\Users\lisa\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [TCP Query User{A42C693F-BF5E-4DA7-8BE9-16E8B44E185C}C:\users\lisa\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\lisa\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{64D6527A-EEE8-4CA5-A0EF-7FC0F7DB9498}C:\users\lisa\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\lisa\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{6280A168-D1E6-44FC-9904-F5A2DD8C511A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{EEB53769-7CB5-475F-B0A0-1096DDE4C854}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{4C672C79-343F-453B-A88F-D8C7DFAB5261}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (10/17/2015 08:39:49 AM) (Source: ESENT) (EventID: 454) (User: )
Description: svchost (5832) Database recovery/restore failed with unexpected error -567.
 
Error: (10/17/2015 08:39:49 AM) (Source: ESENT) (EventID: 516) (User: )
Description: svchost (5832) Database C:\Users\Lesa Dale\AppData\Local\Comms\UnistoreDB\store.vol: Page 38 (0x00000026) failed verification due to a timestamp mismatch.  The 'before' timestamp persisted to the log record was 0xc6927 but the actual timestamp on the page was 0xc6a52.  The 'after' update timestamp 0xc72c1 that would have updated the on page timestamp.  Recovery/restore will fail with error -567.  If this condition persists then please restore the database from a previous backup. This problem is likely due to faulty hardware "losing" one or more flushes on this page sometime in the past. Please contact your hardware vendor for further assistance diagnosing the problem.
 
Error: (10/17/2015 08:39:49 AM) (Source: ESENT) (EventID: 454) (User: )
Description: svchost (5832) Database recovery/restore failed with unexpected error -567.
 
Error: (10/17/2015 08:39:49 AM) (Source: ESENT) (EventID: 516) (User: )
Description: svchost (5832) Database C:\Users\Lesa Dale\AppData\Local\Comms\UnistoreDB\store.vol: Page 38 (0x00000026) failed verification due to a timestamp mismatch.  The 'before' timestamp persisted to the log record was 0xc6927 but the actual timestamp on the page was 0xc6a52.  The 'after' update timestamp 0xc72c1 that would have updated the on page timestamp.  Recovery/restore will fail with error -567.  If this condition persists then please restore the database from a previous backup. This problem is likely due to faulty hardware "losing" one or more flushes on this page sometime in the past. Please contact your hardware vendor for further assistance diagnosing the problem.
 
Error: (10/17/2015 08:39:47 AM) (Source: ESENT) (EventID: 454) (User: )
Description: svchost (5832) Database recovery/restore failed with unexpected error -567.
 
Error: (10/17/2015 08:39:47 AM) (Source: ESENT) (EventID: 516) (User: )
Description: svchost (5832) Database C:\Users\Lesa Dale\AppData\Local\Comms\UnistoreDB\store.vol: Page 38 (0x00000026) failed verification due to a timestamp mismatch.  The 'before' timestamp persisted to the log record was 0xc6927 but the actual timestamp on the page was 0xc6a52.  The 'after' update timestamp 0xc72c1 that would have updated the on page timestamp.  Recovery/restore will fail with error -567.  If this condition persists then please restore the database from a previous backup. This problem is likely due to faulty hardware "losing" one or more flushes on this page sometime in the past. Please contact your hardware vendor for further assistance diagnosing the problem.
 
Error: (10/17/2015 08:39:47 AM) (Source: ESENT) (EventID: 454) (User: )
Description: svchost (5832) Database recovery/restore failed with unexpected error -567.
 
Error: (10/17/2015 08:39:47 AM) (Source: ESENT) (EventID: 516) (User: )
Description: svchost (5832) Database C:\Users\Lesa Dale\AppData\Local\Comms\UnistoreDB\store.vol: Page 38 (0x00000026) failed verification due to a timestamp mismatch.  The 'before' timestamp persisted to the log record was 0xc6927 but the actual timestamp on the page was 0xc6a52.  The 'after' update timestamp 0xc72c1 that would have updated the on page timestamp.  Recovery/restore will fail with error -567.  If this condition persists then please restore the database from a previous backup. This problem is likely due to faulty hardware "losing" one or more flushes on this page sometime in the past. Please contact your hardware vendor for further assistance diagnosing the problem.
 
Error: (10/17/2015 08:39:46 AM) (Source: ESENT) (EventID: 454) (User: )
Description: svchost (5832) Database recovery/restore failed with unexpected error -567.
 
Error: (10/17/2015 08:39:46 AM) (Source: ESENT) (EventID: 516) (User: )
Description: svchost (5832) Database C:\Users\Lesa Dale\AppData\Local\Comms\UnistoreDB\store.vol: Page 38 (0x00000026) failed verification due to a timestamp mismatch.  The 'before' timestamp persisted to the log record was 0xc6927 but the actual timestamp on the page was 0xc6a52.  The 'after' update timestamp 0xc72c1 that would have updated the on page timestamp.  Recovery/restore will fail with error -567.  If this condition persists then please restore the database from a previous backup. This problem is likely due to faulty hardware "losing" one or more flushes on this page sometime in the past. Please contact your hardware vendor for further assistance diagnosing the problem.
 
 
System errors:
=============
Error: (10/17/2015 08:39:49 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Data Access_Session1 service terminated with the following error: 
%%1358
 
Error: (10/17/2015 08:39:46 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Data Access_Session1 service terminated with the following error: 
%%2147746132
 
Error: (10/17/2015 08:36:30 AM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
 
Error: (10/17/2015 08:36:28 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x0000000a (0xfffffa8113e54b18, 0x0000000000000002, 0x0000000000000001, 0xfffff801564d5ae0)C:\WINDOWS\MEMORY.DMP101715-16140-01
 
Error: (10/17/2015 08:36:23 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 8:28:04 AM on ‎10/‎17/‎2015 was unexpected.
 
Error: (10/17/2015 08:30:27 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Data Access_Session1 service terminated with the following error: 
%%1358
 
Error: (10/17/2015 08:30:26 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Data Access_Session1 service terminated with the following error: 
%%2147746132
 
Error: (10/17/2015 08:28:07 AM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
 
Error: (10/17/2015 08:28:04 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 3:23:25 PM on ‎10/‎16/‎2015 was unexpected.
 
Error: (10/16/2015 03:18:24 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Data Access_Session2 service terminated with the following error: 
%%1358
 
 
==================== Memory info =========================== 
 
Processor: AMD FX™-6300 Six-Core Processor 
Percentage of memory in use: 31%
Total physical RAM: 7918.1 MB
Available physical RAM: 5459.3 MB
Total Virtual: 9198.1 MB
Available Virtual: 6586.58 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:931.51 GB) (Free:881.16 GB) NTFS ==>[drive with boot components (obtained from BCD)]
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F16FF673)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

Edited by lesadale, 17 October 2015 - 07:59 AM.

  • 0

Advertisements


#2
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Hi there, I can see no apparent malware

Could you zip the latest two or three minidumps from C:\WINDOWS\Minidump and attach to the next post
  • 0

#3
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

When I tried compressing the files I kept getting a Compressed Zip Folder Error, but then I found the compressed file.  So it is attached below.  I think there may be something wrong with my Window 10 which was downloaded with the free upgrade.

Attached Files


  • 0

#4
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Unfortunately the zip folder is empty Copy the minidumps to the desktop and zip them there
  • 0

#5
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

I still got the "Compressed (zipped) Folders Error  -  File not found or no read permission"  I wouldn't even create the empty folder on my desktop.  Is it possible that it is an operating system issue?


Edited by lesadale, 22 October 2015 - 07:03 PM.

  • 0

#6
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

horrendous buzzing noise and freezes

 

This sounds very much like a hardware problem

 

Could you download and run Whocrashed from here http://www.resplendence.com/downloads

When it has analysed the dumps could you post the last two or three here using the export function


  • 0

#7
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

Here is the report from WhoCrashed.

Attached Files


  • 0

#8
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
There are a few drivers that are causing the errors, do the Video drivers first then the chipset.
After they are updated check out whether the crashes are still occurring

Download Slimdrivers to your desktop
Use the highlighted link and not Cnet
Capture.JPG
Install the programme and on completion run
On the first page select Start Scan
slimdriver.JPG

Once it has completed click the download link on the right hand side (you can only download one driver at a time)
slimdriverscan.JPG

Allow the creation of a restore point prior to downloading and installing.
The driver will now be downloaded and backed up for safety. A reboot will be required on completion

Repeat as required for the necessary drivers
  • 0

#9
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

I updated both drivers, but I forgot about the order.  I'm pretty sure I updated the chipset first.  After the restart, it crashed again.  The error this time is DPC_Watchdog_Violation


  • 0

#10
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
MS has a hotfix for that however, is it just a one off or is it more frequent http://support2.micr...9962&kbln=en-us
  • 0

Advertisements


#11
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

It has happen before, but it happened right after the restart from updating the other drivers.


  • 0

#12
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

So immediatly after the last post.  I click the link to Microsoft Support and had another crash.  This one said IRQL_NOT_LESS_OR_EQUAL


  • 0

#13
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

Right click this link and select save as  and save to your desktop

Unzip and then install ..  It is the hotfix  https://dl.dropboxus...ntl_x64_zip.exe


  • 0

#14
lesadale

lesadale

    Member

  • Topic Starter
  • Member
  • PipPip
  • 55 posts

I've tried from your link and from the link Microsoft sent.  I get the same error.

 

Microsoft Self-Extractor

An error occurred while unzipping.  One or more files were not unzipped.  The error code is 40


  • 0

#15
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

Could you right click the hotfix and select run as administrator.. Does that work


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP