Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

How can I fully remove PUA.OpenCandy ? [Closed]


  • This topic is locked This topic is locked

#1
mpbrais

mpbrais

    New Member

  • Member
  • Pip
  • 1 posts

I have recently upgraded from Windows 7 to Windows 10. I purchased "Windows 10 All-in-One for Dummies" by Woody Leonhard, to better understand the new OS. Leonhard suggested some apps that I decided to try, for instance LastPass, Secunia PSI. I also installed Team Viewer recently.

 

Recently Norton Internet Security (version 22.5.5.15) has started detecting "PUA.OpenCandy", which it classifies as a low-risk threat. It suggests its removal in a Repair window. There are 2 options: Fix and Exclude, but Exclude is greyed-out and not available. I click on Go and Apply All and the window becomes green with the threat "resolved".

 

However minutes or hours afterwards Norton detects it again. Again I click on Go and the threat gets resolved, to come back again and again.

 

I have run MalwareBytes Anti-Malware (free edition): it did not find anything related to OpenCandy.

 

I have run ADWCleaner: it found a lot of problems, mainly tracking cookies and removed them. OpenCandy returned.

 

I have run HitmanPro_x64.

 

I have run Junkware Removal Tool by MalwareBytes.

 

OpenCandy is still there.

 

I have downloaded and run FRST64.exe your instructions suggested (I am not sure of the exact spelling). It created 2 text files. But Norton rapidly considered this app a threat and promptly removed the app and the 2 text files. So I cannot append them.

 

Can you help?

 

Thanks.

 

Maurice


  • 0

Advertisements


#2
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,213 posts

Hi mbprais (Maurice),

Welcome to Geeks to Go. My name is dbreeze and I'll be helping you with this problem. Before I get into the removal of malware / correction of your problem, I need you to be aware of the following:

  • Please read all of my response through at least once before attempting to follow the procedures described.I would recommend printing them out, if you can, as you can check off each step as you complete it. Also, as some of the cleaning may be done in Safe Mode and there will be no internet connection then, you will find that having the steps printed for reference speeds the cleaning process along. If there's anything you don't understand or isn't totally clear to you, please come back to me for clarification before you start those steps.
  • All of the assistants and staff at Geeks to Go are here on a volunteer basis; please respect our time given to the cause of helping others.If you are going to be away for more than 4 days, please let me know here. (I will do the same for you.) We do realize that 'life happens' and situations arise unexpectedly; we just ask that you keep us up to date. That being said, please notice the following Geeks to Go rule:
  • Posts that are not replied to in four (4) days will result in the topic being closed. We have not forgotten you; this is just an effort to keep the boards organized and flowing. To continue on your closed topic, please PM me or any Moderator to have the topic reactivated. If, at any time during our working together, I have not responded to you in 2 days (48 hours), then please PM me.
  • Malware removal is a complex, multiple step process; please stay with me on this thread (don't start another thread) until I declare that your logs are clean and you are good to go. The absence of apparent issues does not mean your system is clean; I will tell you when everything looks good for you to go and help you remove the tools we have used.
  • If any of the security programs on your system should give any warnings about the software tools I ask you to download and use, please do not be alarmed.All of the tools I will have you use are safe to use (as instructed) and malware free.
  • While we strive to disrupt your system as little as possible, things happen.If you can, it would be best to back up your personal files now (if you do not already have a backup). You can store these on a CD/DVD, USB drive or stick, anywhere but on your same system. This will save you from possible anguish later if something unforeseen happens.
  • Please do not run any other tools or scanners than what I ask you to.Some of the openly available software made for malware removal can make changes to your system that interfere with the cleaning of the malware, or even destroy your system. I will use only what the situation calls for and direct you in the proper use of that software.
  • Please do not attach any log files to your replies unless I specifically ask you.Instead please copy and paste so as to include the log in your reply. You can do this in separate posts if it's easier for you.


- Save ALL Tools to your Desktop-

 

All the tools that I will have you download should be placed on the desktop unless otherwise stated. If you are familiar with how to save files to the desktop then you can skip this step.

Since you are continuing with this step then I assume you are unfamiliar with saving files to your desktop. As a result it's easiest if you configure your browser(s) to download any tools to the desktop by default. Please use the appropriate instructions below depending on the browser you are using.
Chrome.JPGGoogle Chrome - Click the "Customize and control Google Chrome" button in the upper right-corner of the browser.Settings.JPG Choose Settings. at the bottom of the screen click the
"Show advanced settings..." link. Scroll down to find the Downloads section and click the Change... button. Select your desktop and click OK.
Firefox.JPGMozilla Firefox - Click the "Open Menu" button in the upper right-corner of the browser. Settings.JPG Choose Options. In the downloads section, click the Browse button, click on the Desktop folder
and the click the "Select Folder" button. Click OK to get out of the Options menu.
IE.jpgInternet Explorer - Click the Tools menu in the upper right-corner of the browser. Tools.JPG Select View downloads. Select the Options link in the lower left of the window. Click Browse and
select the Desktop and then choose the Select Folder button. Click OK to get out of the download options screen and then click Close to get out of the View Downloads screen.
NOTE: IE8 Does not support changing download locations in this manner. You will need to download the tool(s) to the default folder, usually Downloads, then copy them to the desktop.
 

Quoted from and used by permission of BrianDrab.  Thank you.

Let's get started....
 

 

FRST is a perfectly safe application; most AVs are 'over-cautious' about it due to its' constant updating of the application.  Please disable Norton's AutoProtection (right click on the Norton tray icon and select disable Auto Protect) for 30 minutes.  Rescan with FRST and paste the log files in a reply here.  Thanks.


  • 0

#3
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,213 posts

Topic reopened at request of Original Poster (OP).


Edited by dbreeze, 15 January 2016 - 07:17 PM.
OP request to reopen.

  • 0

#4
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,213 posts

Recieved your PM and re-opened this thread.  I have also copy and posted your logs in this post.  However, in reviewing the logs, can you please log into the system as a Administrator and redo the logs?  (The directions for this are below.)

 

We need to get a fresh scan from FRST.  Please note that you may have to move FRST64 from one user to another if it does not show on the desktop of the Administrator User account.

  • If you still have the Addition.txt file on your desktop, please delete it now.
  • Right click the FRST file on your desktop and select "Run as Administrator..." (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • If an update is available, the program will inform you and download the update.  Allow it do this please.  Otherwise, just wait for the "The tool is ready to use." message.
  • Please check the Addition.txt in the Option Scan section of FRST.
  • Press the Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The tool will generate will another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.

 

 

 

===================Original Logs =================================

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-01-2015 01
Ran by Maurice (ATTENTION: The user is not administrator) on MAURICE-STUDIO (10-01-2016 21:02:50)
Running from C:\Users\Maurice\Desktop
Loaded Profiles: Maurice & AdminM (Available Profiles: Maurice & François & Philippe & AdminM & DefaultAppPool)
Platform: Windows 10 Pro Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

Failed to access process -> smss.exe
Failed to access process -> csrss.exe
Failed to access process -> wininit.exe
Failed to access process -> csrss.exe
Failed to access process -> winlogon.exe
Failed to access process -> services.exe
Failed to access process -> lsass.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> dwm.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> atiesrxx.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> atieclxx.exe
Failed to access process -> WUDFHost.exe
Failed to access process -> svchost.exe
Failed to access process -> DockLogin.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> dasHost.exe
Failed to access process -> spoolsv.exe
Failed to access process -> AppleMobileDeviceService.exe
Failed to access process -> bgsvcgen.exe
Failed to access process -> svchost.exe
Failed to access process -> PhotoshopElementsFileAgent.exe
Failed to access process -> PhotoshopElementsFileAgent.exe
Failed to access process -> svchost.exe
Failed to access process -> Crypserv.exe
Failed to access process -> MemeoBackgroundService.exe
Failed to access process -> LMS.exe
Failed to access process -> mqsvc.exe
Failed to access process -> svchost.exe
Failed to access process -> ACService.exe
Failed to access process -> mDNSResponder.exe
Failed to access process -> SeagateDashboardService.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> nis.exe
Failed to access process -> armsvc.exe
Failed to access process -> TeamViewer_Service.exe
Failed to access process -> SMSvcHost.exe
Failed to access process -> SMSvcHost.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Failed to access process -> GoogleCrashHandler.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
Failed to access process -> GoogleCrashHandler64.exe
Failed to access process -> tv_w32.exe
Failed to access process -> tv_x64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
Failed to access process -> SearchIndexer.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
Failed to access process -> iPodService.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\nis.exe
Failed to access process -> DCCService.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> DellDataVaultWiz.exe
Failed to access process -> DellUpService.exe
Failed to access process -> WmiPrvSE.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
Failed to access process -> psia.exe
Failed to access process -> SupportAssistAgent.exe
Failed to access process -> UNS.exe
Failed to access process -> DellDataVault.exe
Failed to access process -> WmiPrvSE.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Failed to access process -> sua.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
Failed to access process -> csrss.exe
Failed to access process -> winlogon.exe
Failed to access process -> dwm.exe
Failed to access process -> atieclxx.exe
Failed to access process -> nis.exe
Failed to access process -> taskeng.exe
Failed to access process -> sihost.exe
Failed to access process -> TeamViewer.exe
Failed to access process -> RuntimeBroker.exe
Failed to access process -> ipoint.exe
Failed to access process -> itype.exe
Failed to access process -> taskhostw.exe
Failed to access process -> explorer.exe
Failed to access process -> tv_w32.exe
Failed to access process -> tv_x64.exe
Failed to access process -> ShellExperienceHost.exe
Failed to access process -> SearchUI.exe
Failed to access process -> svchost.exe
Failed to access process -> iTunesHelper.exe
Failed to access process -> OneDrive.exe
Failed to access process -> psi_tray.exe
Failed to access process -> MOM.exe
Failed to access process -> jusched.exe
Failed to access process -> CCC.exe
Failed to access process -> WmiApSrv.exe
Failed to access process -> svchost.exe
Failed to access process -> SearchProtocolHost.exe
(Farbar) C:\Users\Maurice\Desktop\FRST64(1).exe
Failed to access process -> SearchFilterHost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-09] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\Run: [CAHeadless] => C:\Program Files (x86)\Adobe\Elements 12 Organizer\CAHeadless\ElementsAutoAnalyzer.exe [1400224 2013-09-25] (Adobe Systems Incorporated)
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1403304 2015-10-29] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\RunOnce: [Uninstall C:\Users\Maurice\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Maurice\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\Policies\Explorer: [TaskbarNoThumbnail] 0
HKU\S-1-5-21-1946218642-778646555-905632306-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\PhotoScreensaver.scr [583680 2015-10-30] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine64\22.5.5.15\buShell.dll [2015-11-05] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2015-12-27]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2016-01-07] ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{7A3D3BA8-6958-44CF-B612-7E09AF14016F}: [DhcpNameServer] 10.1.1.3 10.1.1.13
Tcpip\..\Interfaces\{936b89ae-38ca-457c-9c08-9791c096fd6b}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKU\S-1-5-21-1946218642-778646555-905632306-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://my.yahoo.com/
HKU\S-1-5-21-1946218642-778646555-905632306-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://ca.msn.com/defaultf.aspx?lang=fr-ca&OCID=iehp
HKU\S-1-5-21-1946218642-778646555-905632306-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
URLSearchHook: [S-1-5-21-1946218642-778646555-905632306-1011] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1946218642-778646555-905632306-1000 -> DefaultScope {85A60A59-D3D8-468F-B598-FB4393789EF4} URL = hxxps://www.google.ca/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1946218642-778646555-905632306-1000 -> {08AC4456-D574-4680-AA2A-7B48B3213AB5} URL = hxxp://ca.search.yahoo.com/search?fr=mcafee&p={SearchTerms}
SearchScopes: HKU\S-1-5-21-1946218642-778646555-905632306-1000 -> {85A60A59-D3D8-468F-B598-FB4393789EF4} URL = hxxps://www.google.ca/search?q={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-07] (DivX, LLC)
BHO-x32: DivX HiQ -> {593DDEC6-7468-4cdd-90E1-42DADAA222E9} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-07] (DivX, LLC)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10] (Skype Technologies S.A.)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine64\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\coIEPlg.dll [2015-11-05] (Symantec Corporation)
DPF: HKLM-x32 {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} hxxps://support.dell.com/systemprofiler/SysProExe.CAB
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: intu-ir2010 - {A344EB2D-3A0F-48fa-A073-2E649BAEC9B3} -  No File
Handler: intu-tt2010 - {97A0575E-2309-4e75-8509-B1F9390C4DE7} -  No File
Handler: intu-tt2011 - {B3B5DAD9-E96D-45b4-B636-B6CF2F773DE1} -  No File
Handler: intu-tt2012 - {02F985EF-502B-4597-993F-6BF9E004C138} -  No File
Handler: intu-tt2013 - {9FF5EC07-1645-43BF-828F-C73CFA7BC1AF} - C:\Program Files (x86)\TurboTax 2013\ic2013pp.dll No File
Handler-x32: intu-tt2014 - {97BB39CB-9ABA-4513-81E7-1D6FDA0854B8} - C:\Program Files (x86)\TurboTax 2014\ic2014pp.dll [2014-11-22] (Intuit Canada, a general partnership/une société en nom collectif.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10] (Skype Technologies S.A.)

FireFox:
========
FF ProfilePath: C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\4uozdjcm.default-1441928914652
FF Homepage: hxxp://my.yahoo.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-28] ()
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2013-10-09] (GARMIN Corp.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-07] (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-01-24] (DivX, LLC.)
FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2013-10-09] (GARMIN Corp.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1946218642-778646555-905632306-1000: @citrixonline.com/appdetectorplugin -> C:\Users\Maurice\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2014-02-17] (Citrix Online)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-08-22] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-08-22] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-08-22] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-08-22] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-08-22] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Maurice\AppData\Roaming\mozilla\plugins\npcoolirisplugin.dll [2009-06-29] ()
FF Extension: LastPass - C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\4uozdjcm.default-1441928914652\extensions\[email protected] [2016-01-05]
FF Extension: Google™ Translator Lite - C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\4uozdjcm.default-1441928914652\Extensions\[email protected] [2015-12-24]
FF Extension: Garmin Communicator - C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\4uozdjcm.default-1441928914652\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2015-12-03] [not signed]
FF Extension: NoScript - C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\4uozdjcm.default-1441928914652\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-01-08]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2016-01-07] [not signed]
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon
FF Extension: Norton Identity Safe - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon [2015-12-18]
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon

Chrome:
=======
CHR Profile: C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Store) - C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae [2012-08-26]
CHR Extension: (Store) - C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2012-08-26]
CHR Extension: (Store) - C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-02-17]
CHR Extension: (Google Wallet) - C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-18]
CHR Extension: (Store) - C:\Users\Maurice\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2012-08-26]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\Exts\Chrome.crx [2015-12-01]
CHR HKLM\...\Chrome\Extension: [hkhkiakolggnnicallabhkobalpeplpi] - <no Path/update_url>
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\Exts\Chrome.crx [2015-12-01]
CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx [2011-02-07]
CHR HKLM-x32\...\Chrome\Extension: [hkhkiakolggnnicallabhkobalpeplpi] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2011-10-10]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx [2011-02-07]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor12.0; C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe [181152 2013-09-25] (Adobe Systems Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 Crypkey License; C:\WINDOWS\system32\crypserv.exe [122880 2008-05-07] (CrypKey (Canada) Ltd.) [File not signed]
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [137968 2015-09-22] (Dell Inc.)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2574168 2015-09-11] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201560 2015-09-11] (Dell Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-08-27] (Dell Inc.)
R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2010-01-11] (Stardock Corporation) [File not signed]
S2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [777744 2015-10-29] (Garmin Ltd. or its subsidiaries)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R3 lmhosts; C:\Windows\System32\svchost.exe [43944 2015-10-30] (Microsoft Corporation)
R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [37256 2015-10-30] (Microsoft Corporation)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\Engine\22.5.5.15\NIS.exe [282016 2015-11-20] (Symantec Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [43944 2015-10-30] (Microsoft Corporation)
R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [37256 2015-10-30] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [43944 2015-10-30] (Microsoft Corporation)
R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [37256 2015-10-30] (Microsoft Corporation)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1572056 2015-12-01] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [839384 2015-12-01] (Secunia)
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [21160 2015-09-30] (Dell Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\NortonData\22.5.2.15\Definitions\BASHDefs\20160104.001\BHDrvx64.sys [1665608 2015-10-08] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1605050.00F\ccSetx64.sys [173808 2015-07-10] (Symantec Corporation)
R1 cdrbsdrv; C:\Windows\System32\Drivers\cdrbsdrv.sys [39208 2006-08-25] (B.H.A Corporation)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2015-09-11] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2012-11-15] (DT Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-12-01] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [157520 2015-12-01] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\NortonData\22.5.2.15\Definitions\IPSDefs\20160108.001\IDSvia64.sys [767224 2015-12-04] (Symantec Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160110.005\ENG64.SYS [138488 2015-12-01] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\Norton Internet Security\NortonData\22.5.2.15\Definitions\VirusDefs\20160110.005\EX64.SYS [2148080 2015-12-01] (Symantec Corporation)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2015-12-01] (Secunia)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2013-07-19] (Corel Corporation)
R3 SRTSP; C:\Windows\System32\Drivers\NISx64\1605050.00F\SRTSP64.SYS [928496 2015-11-11] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1605050.00F\SRTSPX64.SYS [50936 2015-07-10] (Symantec Corporation)
R0 SymEFASI; C:\Windows\System32\drivers\NISx64\1605050.00F\SYMEFASI64.SYS [1621232 2015-11-11] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NISx64\1605050.00F\SymELAM.sys [24192 2015-07-10] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [111344 2015-09-07] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1605050.00F\Ironx64.SYS [297720 2015-07-10] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1605050.00F\SYMNETS.SYS [577768 2015-11-11] (Symantec Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R2 {1E444BE9-B8EC-4ce6-8C2B-6536FB7F4FB7}; C:\Program Files (x86)\CyberLink\PowerDVD DX\000.fcl [146928 2009-02-04] (CyberLink Corp.)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-10 21:02 - 2016-01-10 21:03 - 00026697 _____ C:\Users\Maurice\Desktop\FRST.txt
2016-01-10 21:02 - 2016-01-10 21:02 - 02370560 _____ (Farbar) C:\Users\Maurice\Desktop\FRST64(1).exe
2016-01-10 21:02 - 2016-01-10 21:02 - 00000000 ____D C:\FRST
2016-01-10 21:01 - 2016-01-10 21:01 - 02370560 _____ (Farbar) C:\Users\Maurice\Desktop\FRST64.exe
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\Users\Philippe\AppData\Local\Comms
2016-01-10 18:52 - 2016-01-10 18:52 - 00000000 ____D C:\Users\Philippe\AppData\Local\Publishers
2016-01-10 18:38 - 2016-01-10 18:39 - 00002416 _____ C:\Users\Philippe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-01-10 18:38 - 2016-01-10 18:39 - 00000000 ___RD C:\Users\Philippe\OneDrive
2016-01-10 18:36 - 2016-01-10 18:36 - 00000000 ____D C:\Users\Philippe\AppData\Local\ActiveSync
2016-01-10 18:33 - 2016-01-10 18:53 - 00000000 ____D C:\Users\Philippe\AppData\Local\Packages
2016-01-10 18:33 - 2016-01-10 18:33 - 00000020 ___SH C:\Users\Philippe\ntuser.ini
2016-01-10 18:33 - 2016-01-10 18:33 - 00000000 ____D C:\Users\Philippe\AppData\Local\TileDataLayer
2016-01-10 17:16 - 2016-01-10 17:16 - 00000000 ____D C:\Users\AdminM\AppData\Local\TeamViewer
2016-01-10 17:01 - 2016-01-10 17:01 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\vlc
2016-01-07 16:19 - 2016-01-07 16:19 - 00010548 _____ C:\WINDOWS\system32\.crusader
2016-01-07 16:00 - 2016-01-07 16:21 - 00000000 ____D C:\ProgramData\HitmanPro
2016-01-07 15:58 - 2016-01-07 16:00 - 11323704 _____ (SurfRight B.V.) C:\Users\Maurice\Downloads\HitmanPro_x64.exe
2016-01-07 00:20 - 2016-01-08 04:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-01-05 11:54 - 2016-01-05 11:55 - 01599336 _____ (Malwarebytes) C:\Users\Maurice\Downloads\JRT.exe
2016-01-05 09:38 - 2016-01-05 09:39 - 00000000 ____D C:\Users\AdminM\AppData\Local\NPE
2016-01-04 21:27 - 2016-01-04 21:27 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-01-04 21:26 - 2016-01-04 21:26 - 00001213 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-04 21:26 - 2016-01-04 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-04 21:26 - 2016-01-04 21:26 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-01-04 21:26 - 2016-01-04 21:26 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-04 21:26 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-01-04 21:26 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-01-04 21:26 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-01-04 21:23 - 2016-01-04 21:25 - 22908888 _____ (Malwarebytes ) C:\Users\Maurice\Downloads\mbam-setup-2.2.0.1024.exe
2016-01-02 12:09 - 2016-01-02 12:09 - 00000000 ____D C:\Users\AdminM\AppData\Local\MicrosoftEdge
2015-12-29 23:50 - 2015-12-29 23:50 - 00000000 ____D C:\Users\DefaultAppPool
2015-12-28 21:36 - 2015-12-28 22:58 - 00000000 ____D C:\Users\Maurice\AppData\Local\{56287ED4-6193-40BF-882A-516F891FE2A4}
2015-12-28 21:36 - 2015-12-28 21:36 - 00000000 ____D C:\Users\Maurice\AppData\Local\{5D5AE8E2-6DC0-4F07-B9CC-96E94ABFE94E}
2015-12-28 17:53 - 2015-12-28 17:53 - 00000000 ____H C:\Users\Maurice\Documents\Default.rdp
2015-12-28 17:46 - 2016-01-02 14:00 - 00000000 ____D C:\Users\AdminM\AppData\Local\CrashDumps
2015-12-28 16:32 - 2015-12-28 16:32 - 00000000 ____D C:\Users\Maurice\Documents\Adobe Scripts
2015-12-28 16:21 - 2015-12-28 16:21 - 00000000 ____D C:\ProgramData\Canneverbe Limited
2015-12-28 16:05 - 2015-12-28 16:05 - 05638584 _____ (Canneverbe Limited ) C:\Users\AdminM\Downloads\cdbxp_setup_4.5.6.5931.exe
2015-12-28 16:03 - 2016-01-10 16:45 - 00000000 ____D C:\Users\AdminM\AppData\Local\Mozilla
2015-12-28 15:48 - 2015-12-28 15:48 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\TeamViewer
2015-12-28 14:56 - 2015-12-28 14:56 - 00000000 ___RD C:\Users\Maurice\3D Objects
2015-12-28 14:36 - 2015-12-28 14:36 - 00000000 ____D C:\Users\Maurice\AppData\Local\TeamViewer
2015-12-28 14:34 - 2016-01-10 17:29 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-12-28 14:34 - 2015-12-28 14:34 - 00001154 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-12-28 14:34 - 2015-12-28 14:34 - 00001142 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2015-12-28 14:34 - 2015-12-28 14:34 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\TeamViewer
2015-12-28 14:32 - 2015-12-28 14:33 - 09616448 _____ (TeamViewer GmbH) C:\Users\Maurice\Downloads\TeamViewer_Setup_en.exe
2015-12-28 10:35 - 2015-12-28 10:35 - 00001181 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-12-28 10:35 - 2015-12-28 10:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-12-28 10:32 - 2015-12-28 10:33 - 28849904 _____ C:\Users\Maurice\Downloads\vlc-2.2.1-win32.exe
2015-12-27 20:24 - 2015-12-27 20:24 - 00001109 _____ C:\Users\AdminM\Desktop\IrfanView.lnk
2015-12-27 20:17 - 2015-12-27 20:17 - 00000000 ____D C:\Users\AdminM\AppData\Local\Adobe
2015-12-27 20:05 - 2015-12-27 20:05 - 00001184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk
2015-12-27 20:05 - 2015-12-27 20:05 - 00000000 ____D C:\Program Files (x86)\Secunia
2015-12-27 20:04 - 2015-12-27 20:04 - 04010016 _____ (Secunia) C:\Users\Maurice\Downloads\PSISetup.exe
2015-12-27 13:38 - 2016-01-10 19:21 - 00000000 ____D C:\Users\Maurice\AppData\LocalLow\LastPass
2015-12-27 12:17 - 2015-12-27 12:17 - 00000000 ____D C:\WINDOWS\Microsoft Antimalware
2015-12-27 09:54 - 2015-12-27 09:54 - 00000000 ____D C:\Users\Maurice\AppData\Local\AMD
2015-12-27 09:07 - 2015-12-28 16:04 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Mozilla
2015-12-27 00:05 - 2015-12-27 00:06 - 00886256 _____ (Microsoft Corporation) C:\Users\Maurice\Downloads\mssstool64.exe
2015-12-26 23:50 - 2015-12-26 23:50 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Sun
2015-12-26 23:50 - 2015-12-26 23:50 - 00000000 ____D C:\Users\AdminM\AppData\LocalLow\Sun
2015-12-26 23:50 - 2015-12-26 23:50 - 00000000 ____D C:\Users\AdminM\.oracle_jre_usage
2015-12-26 23:49 - 2015-12-26 23:49 - 00000000 ____D C:\Users\Maurice\.oracle_jre_usage
2015-12-26 21:46 - 2015-12-28 17:58 - 00007627 _____ C:\Users\AdminM\AppData\Local\Resmon.ResmonCfg
2015-12-26 17:13 - 2015-12-26 17:13 - 00000000 ____D C:\Users\AdminM\AppData\Local\PeerDistRepub
2015-12-26 15:58 - 2015-12-26 15:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-12-25 17:31 - 2016-01-10 15:12 - 00000000 ____D C:\Program Files (x86)\Dell Customer Connect
2015-12-25 12:16 - 2015-12-25 12:16 - 00000000 ____D C:\Users\AdminM\AppData\Local\Apps\2.0
2015-12-25 12:10 - 2015-12-25 12:10 - 00000000 ____D C:\Users\AdminM\AppData\Local\Comms
2015-12-25 12:08 - 2015-12-25 12:08 - 00002410 _____ C:\Users\AdminM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-25 12:08 - 2015-12-25 12:08 - 00000000 ___RD C:\Users\AdminM\OneDrive
2015-12-25 12:01 - 2015-12-25 12:01 - 00000000 ____D C:\Users\Maurice\Documents\Seagate UserGuides
2015-12-25 12:00 - 2015-12-25 12:01 - 00000000 ____D C:\Program Files\Seagate
2015-12-24 15:24 - 2015-12-24 15:24 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-12-23 17:58 - 2015-12-23 17:58 - 00000000 ____D C:\Users\François\AppData\Local\ActiveSync
2015-12-23 17:57 - 2015-12-23 17:57 - 00000000 ____D C:\Users\François\AppData\Local\Publishers
2015-12-23 17:56 - 2015-12-23 17:58 - 00000000 ____D C:\Users\François\AppData\Local\Packages
2015-12-23 17:56 - 2015-12-23 17:56 - 00000020 ___SH C:\Users\François\ntuser.ini
2015-12-23 17:56 - 2015-12-23 17:56 - 00000000 ____D C:\Users\François\AppData\Local\TileDataLayer
2015-12-23 17:53 - 2015-12-23 17:53 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\ATI
2015-12-23 17:53 - 2015-12-23 17:53 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Apple Computer
2015-12-23 17:53 - 2015-12-23 17:53 - 00000000 ____D C:\Users\AdminM\AppData\Local\NovaStor
2015-12-23 17:53 - 2015-12-23 17:53 - 00000000 ____D C:\Users\AdminM\AppData\Local\ATI
2015-12-23 17:53 - 2015-12-23 17:53 - 00000000 ____D C:\Users\AdminM\AppData\Local\ActiveSync
2015-12-23 17:52 - 2015-12-23 17:52 - 00000000 ____D C:\Users\AdminM\AppData\Local\Publishers
2015-12-23 17:51 - 2015-12-27 20:18 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Adobe
2015-12-23 17:51 - 2015-12-25 12:11 - 00000000 ____D C:\Users\AdminM\AppData\Local\Packages
2015-12-23 17:51 - 2015-12-23 17:51 - 00000000 ____D C:\Users\AdminM\AppData\Local\VirtualStore
2015-12-23 17:51 - 2015-12-23 17:51 - 00000000 ____D C:\Users\AdminM\AppData\Local\TileDataLayer
2015-12-23 17:50 - 2016-01-02 17:43 - 00000000 ____D C:\Users\AdminM
2015-12-23 17:50 - 2015-12-23 17:50 - 00000020 ___SH C:\Users\AdminM\ntuser.ini
2015-12-23 17:50 - 2015-12-23 17:50 - 00000000 _SHDL C:\Users\AdminM\My Documents
2015-12-23 17:50 - 2015-12-23 17:50 - 00000000 _SHDL C:\Users\AdminM\Documents\My Videos
2015-12-23 17:50 - 2015-12-23 17:50 - 00000000 _SHDL C:\Users\AdminM\Documents\My Pictures
2015-12-23 17:50 - 2015-12-23 17:50 - 00000000 _SHDL C:\Users\AdminM\Documents\My Music
2015-12-23 17:50 - 2015-12-23 14:12 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Media Center Programs
2015-12-23 17:50 - 2015-12-23 14:12 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Macromedia
2015-12-23 17:50 - 2015-12-23 14:12 - 00000000 ____D C:\Users\AdminM\AppData\Roaming\Garmin
2015-12-23 17:50 - 2015-12-23 14:12 - 00000000 ____D C:\Users\AdminM\AppData\Local\Microsoft Help
2015-12-23 17:50 - 2015-12-23 14:12 - 00000000 ____D C:\Users\AdminM\AppData\Local\Garmin_Ltd._or_its_subsid
2015-12-23 16:51 - 2015-12-23 14:42 - 00000000 ___DC C:\WINDOWS\Panther
2015-12-23 16:47 - 2015-12-23 16:47 - 00000000 ____D C:\Windows.old
2015-12-23 16:46 - 2015-12-23 16:46 - 24601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 19339264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 16984064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-12-23 16:46 - 2015-12-23 16:46 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-12-23 16:46 - 2015-12-23 16:46 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-12-23 16:46 - 2015-12-23 16:46 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-12-23 16:46 - 2015-12-23 16:46 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01995776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01817160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01540768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01155944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01065080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 01020096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00983464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-12-23 16:46 - 2015-12-23 16:46 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00898184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00884256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2015-12-23 16:46 - 2015-12-23 16:46 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00823264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00716928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-12-23 16:46 - 2015-12-23 16:46 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00450904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2015-12-23 16:46 - 2015-12-23 16:46 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00116720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-12-23 16:46 - 2015-12-23 16:46 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2015-12-23 16:40 - 2015-12-26 15:43 - 00000000 ____D C:\WINDOWS\system32\msmq
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\Program Files\MSBuild
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-12-23 16:40 - 2015-12-23 16:40 - 00000000 ____D C:\inetpub
2015-12-23 16:40 - 2015-12-23 14:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-23 16:39 - 2015-10-23 20:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-12-23 16:39 - 2015-10-23 20:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-23 16:39 - 2015-10-23 20:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-12-23 16:39 - 2015-10-23 20:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-12-23 16:39 - 2015-10-23 20:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-12-23 16:39 - 2015-10-23 20:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-23 15:56 - 2015-12-23 15:56 - 00000000 ____D C:\Users\Maurice\AppData\Local\MicrosoftEdge
2015-12-23 15:04 - 2015-12-23 15:04 - 00000000 ____D C:\Users\Maurice\AppData\Local\Comms
2015-12-23 14:48 - 2015-12-23 14:49 - 00002413 _____ C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-23 14:47 - 2015-12-23 14:47 - 00001089 _____ C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk
2015-12-23 14:47 - 2015-12-23 14:47 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-23 14:47 - 2015-10-29 19:43 - 06238720 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons000c.dll
2015-12-23 14:47 - 2015-10-29 19:41 - 06238720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons000c.dll
2015-12-23 14:47 - 2015-10-29 19:30 - 02354176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll
2015-12-23 14:47 - 2015-10-29 19:27 - 02268672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000c.dll
2015-12-23 14:45 - 2015-12-23 14:45 - 00000000 ____D C:\Users\Maurice\AppData\Local\Publishers
2015-12-23 14:45 - 2015-12-23 14:45 - 00000000 ____D C:\Users\Maurice\AppData\Local\ActiveSync
2015-12-23 14:43 - 2016-01-10 18:34 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-12-23 14:43 - 2015-12-28 16:56 - 00000000 ____D C:\Users\Maurice\AppData\Local\Packages
2015-12-23 14:43 - 2015-12-23 14:43 - 00000000 ____D C:\Users\Maurice\AppData\Local\TileDataLayer
2015-12-23 14:42 - 2015-12-23 14:42 - 00000020 ___SH C:\Users\Maurice\ntuser.ini
2015-12-23 14:29 - 2015-12-23 14:29 - 00000000 _SHDL C:\Users\Default\My Documents
2015-12-23 14:29 - 2015-12-23 14:29 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-12-23 14:29 - 2015-12-23 14:29 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-12-23 14:29 - 2015-12-23 14:29 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-12-23 14:29 - 2015-12-23 14:29 - 00000000 ____D C:\ProgramData\USOShared
2015-12-23 14:26 - 2016-01-10 19:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-23 14:12 - 2015-12-23 14:12 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-23 14:12 - 2015-12-23 14:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2015-12-23 14:12 - 2015-12-23 14:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-12-23 14:12 - 2015-12-23 14:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\Garmin
2015-12-23 14:12 - 2015-12-23 14:12 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-12-23 14:12 - 2015-12-23 14:12 - 00000000 ____D C:\Users\Default\AppData\Local\Garmin_Ltd._or_its_subsid
2015-12-23 14:05 - 2015-12-23 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessoires
2015-12-23 14:04 - 2015-12-23 14:04 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2015-12-23 14:03 - 2015-12-28 16:39 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessoires
2015-12-23 14:02 - 2016-01-10 18:38 - 00000000 ____D C:\Users\Philippe
2015-12-23 14:02 - 2016-01-10 15:40 - 00000000 ____D C:\Users\Maurice
2015-12-23 14:02 - 2015-12-23 17:56 - 00000000 ____D C:\Users\François
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Philippe\My Documents
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Philippe\Documents\My Videos
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Philippe\Documents\My Pictures
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Philippe\Documents\My Music
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Maurice\My Documents
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Maurice\Documents\My Videos
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Maurice\Documents\My Pictures
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\Maurice\Documents\My Music
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\François\My Documents
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\François\Documents\My Videos
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\François\Documents\My Pictures
2015-12-23 14:02 - 2015-12-23 14:02 - 00000000 _SHDL C:\Users\François\Documents\My Music
2015-12-23 14:01 - 2016-01-10 19:21 - 01013888 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-23 14:01 - 2015-12-23 14:01 - 00965390 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-12-23 13:59 - 2015-12-23 13:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-12-23 13:59 - 2015-12-23 13:59 - 00000000 ____D C:\Program Files\ATI Technologies
2015-12-23 13:58 - 2016-01-09 14:03 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-23 13:58 - 2015-12-23 14:14 - 00000000 ____D C:\Program Files\Common Files\logishrd
2015-12-23 13:58 - 2015-12-23 14:04 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-12-23 13:58 - 2015-12-23 13:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-12-23 13:58 - 2015-12-23 13:58 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2015-12-23 13:57 - 2015-12-23 14:04 - 00000000 ____D C:\Program Files\AMD
2015-12-23 13:57 - 2015-12-23 13:57 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-12-23 13:54 - 2015-10-30 02:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-12-23 13:52 - 2015-12-28 15:19 - 00527296 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-23 13:17 - 2015-12-23 14:28 - 00018069 _____ C:\WINDOWS\diagerr.xml
2015-12-23 13:17 - 2015-12-23 14:28 - 00017148 _____ C:\WINDOWS\diagwrn.xml
2015-12-21 16:34 - 2015-12-21 16:34 - 00000000 ____D C:\Users\Maurice\AppData\Local\CEF
2015-12-21 16:31 - 2015-12-25 10:30 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-12-21 16:31 - 2015-12-21 16:31 - 00002089 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-12-19 13:35 - 2015-12-19 13:35 - 06801616 _____ (Piriform Ltd) C:\Users\Maurice\Downloads\ccsetup_512.exe
2015-12-18 16:01 - 2015-12-23 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-12-18 16:01 - 2015-12-18 16:01 - 00001795 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-12-18 16:01 - 2015-12-18 16:01 - 00000000 ____D C:\Program Files\iTunes
2015-12-18 16:01 - 2015-12-18 16:01 - 00000000 ____D C:\Program Files\iPod
2015-12-18 16:01 - 2015-12-18 16:01 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-12-18 14:59 - 2015-12-18 14:59 - 00110213 _____ C:\Users\Maurice\Documents\BRAIS JULIE BRAIS M LET RE COURRRIEL 6 DÉCEMBRE 2015189.pdf
2015-12-18 14:55 - 2015-12-18 14:55 - 00603783 _____ C:\Users\Maurice\Documents\doc20151124154420.pdf
2015-12-16 20:07 - 2015-12-16 20:07 - 47794160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 39720944 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 30775792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 27544560 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 25320432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 22327280 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 21648880 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2015-12-16 20:07 - 2015-12-16 20:07 - 15725552 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 14310896 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 06686192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 05216240 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 01256432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 01196032 _____ C:\WINDOWS\system32\amdocl_as64.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 01070592 _____ C:\WINDOWS\system32\amdocl_ld64.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 01004032 _____ C:\WINDOWS\SysWOW64\amdocl_as32.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00935408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00935408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00874480 _____ (AMD) C:\WINDOWS\system32\coinst_15.20.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00807424 _____ C:\WINDOWS\SysWOW64\amdocl_ld32.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00683504 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00674288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2015-12-16 20:07 - 2015-12-16 20:07 - 00631792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00524272 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00451056 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00375792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00255472 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00243696 _____ C:\WINDOWS\system32\clinfo.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00213488 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00199664 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00198640 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00168944 _____ C:\WINDOWS\system32\atieah64.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00152560 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00150512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00143344 _____ C:\WINDOWS\system32\amdhdl64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00132080 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00111600 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00111088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00103408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00096752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00083952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00073712 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00071152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00068080 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00064496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00060912 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00059888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2015-12-16 20:07 - 2015-12-16 20:07 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00057840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00048112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00038384 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2015-12-16 20:07 - 2015-12-16 20:07 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 12088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 10211016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 09355016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 08982432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 08864920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 08009360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 07683096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 01479808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 01223544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00471320 _____ C:\WINDOWS\system32\amdmiracast.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00162232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00143056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00130064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00112360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2015-12-16 20:06 - 2015-12-16 20:06 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2015-12-14 20:31 - 2015-12-14 20:31 - 01073732 _____ C:\Users\Maurice\Documents\Remboursement.tiff
2015-12-14 20:31 - 2015-12-14 20:31 - 00849806 _____ C:\Users\Maurice\Documents\RemboursementExemple.tiff

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-10 20:59 - 2011-01-29 16:04 - 00000894 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-10 20:53 - 2014-11-14 06:13 - 00000898 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-10 20:53 - 2012-04-20 07:47 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-10 19:21 - 2015-10-30 02:21 - 00000000 ____D C:\WINDOWS\INF
2016-01-10 18:58 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-01-10 16:44 - 2015-10-30 02:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-01-10 15:12 - 2015-08-29 08:32 - 00000000 ____D C:\Program Files (x86)\Dell Update
2016-01-10 15:12 - 2014-01-13 13:50 - 00000000 ____D C:\Program Files (x86)\Quicken
2016-01-10 11:30 - 2014-11-09 22:27 - 00000020 ____H C:\ProgramData\PKP_DLet.DAT
2016-01-10 02:00 - 2014-08-28 08:32 - 00000000 ____D C:\Users\Maurice\AppData\Local\Adobe
2016-01-09 20:10 - 2013-05-21 17:28 - 00000000 ____D C:\Users\Public\Documents\AvosVins8
2016-01-09 16:41 - 2012-03-15 18:24 - 00000000 ____D C:\Users\Maurice\AppData\Local\CrashDumps
2016-01-09 14:03 - 2012-10-19 22:28 - 00001074 _____ C:\Users\Public\Desktop\Kobo.lnk
2016-01-09 14:02 - 2012-10-19 22:28 - 00000000 ____D C:\Program Files (x86)\Kobo
2016-01-09 09:31 - 2009-11-21 13:02 - 00000000 ____D C:\Users\Maurice\Documents\Agenda Devoir
2016-01-07 16:22 - 2012-05-02 08:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-07 15:25 - 2015-10-30 02:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-01-07 14:19 - 2015-09-07 09:58 - 00002835 _____ C:\Users\Public\Desktop\Norton Internet Security.LNK
2016-01-05 16:39 - 2015-10-30 02:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-01-05 11:56 - 2015-09-07 13:12 - 00000000 ____D C:\ProgramData\Lavasoft
2016-01-05 09:38 - 2015-04-03 08:56 - 03088296 _____ (Symantec Corporation) C:\Users\Maurice\Downloads\NPE.exe
2016-01-03 00:31 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\rescache
2016-01-02 20:40 - 2015-10-30 02:26 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-01-02 20:40 - 2015-10-30 02:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-12-31 10:31 - 2015-10-30 02:17 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2015-12-31 10:31 - 2015-10-30 02:17 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2015-12-31 10:31 - 2015-10-30 02:17 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2015-12-31 10:31 - 2015-10-30 02:17 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2015-12-31 10:31 - 2015-10-30 02:17 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2015-12-28 22:57 - 2011-01-29 15:07 - 00135272 _____ C:\Users\Maurice\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-28 21:36 - 2011-06-07 13:33 - 00000000 ____D C:\Users\Maurice\AppData\Local\Windows Live
2015-12-28 18:13 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\Registration
2015-12-28 17:01 - 2014-04-10 14:49 - 00000000 __SHD C:\Users\Maurice\AppData\LocalLow\EmieUserList
2015-12-28 17:01 - 2014-04-10 14:49 - 00000000 __SHD C:\Users\Maurice\AppData\LocalLow\EmieSiteList
2015-12-28 16:55 - 2009-05-08 19:45 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-12-28 16:45 - 2011-02-25 15:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bureautique
2015-12-28 16:38 - 2009-05-11 21:07 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AvosVins
2015-12-28 16:22 - 2011-01-30 16:09 - 00002925 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2015-12-28 15:35 - 2009-05-11 14:49 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\vlc
2015-12-27 20:19 - 2015-10-30 01:28 - 00000000 ____D C:\Windows
2015-12-25 17:31 - 2011-01-29 16:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-12-25 17:30 - 2011-01-29 15:42 - 00000000 ____D C:\ProgramData\Dell
2015-12-25 10:11 - 2014-02-23 13:44 - 00000398 __RSH C:\ProgramData\ntuser.pol
2015-12-24 04:08 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\appcompat
2015-12-23 16:47 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-12-23 16:47 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-12-23 16:47 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\Provisioning
2015-12-23 16:47 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2015-12-23 16:47 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-12-23 16:47 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-12-23 16:40 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2015-12-23 16:40 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2015-12-23 16:40 - 2015-10-30 02:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2015-12-23 16:40 - 2015-10-30 02:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2015-12-23 16:40 - 2015-10-30 02:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2015-12-23 16:40 - 2015-10-30 02:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2015-12-23 16:40 - 2015-10-30 02:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2015-12-23 16:40 - 2015-10-30 02:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2015-12-23 16:40 - 2015-10-30 02:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2015-12-23 16:40 - 2015-10-30 02:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2015-12-23 16:40 - 2015-10-30 02:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2015-12-23 16:40 - 2015-10-30 02:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2015-12-23 16:40 - 2015-10-30 02:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2015-12-23 16:40 - 2015-10-30 02:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2015-12-23 16:40 - 2015-10-30 02:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2015-12-23 16:40 - 2015-10-30 02:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2015-12-23 16:40 - 2015-10-30 02:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2015-12-23 16:40 - 2015-10-30 02:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2015-12-23 16:40 - 2015-10-30 02:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2015-12-23 16:37 - 2014-09-04 08:17 - 00000000 ____D C:\ProgramData\Oracle
2015-12-23 16:36 - 2013-10-21 08:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-12-23 16:36 - 2011-01-29 23:50 - 00000000 ____D C:\Program Files (x86)\Java
2015-12-23 16:35 - 2014-11-27 09:08 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-12-23 15:02 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2015-12-23 14:47 - 2015-10-30 04:03 - 00000000 ____D C:\WINDOWS\OCR
2015-12-23 14:44 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-12-23 14:44 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-12-23 14:44 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-12-23 14:43 - 2015-10-30 02:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-12-23 14:29 - 2015-10-30 02:24 - 00000000 ____D C:\ProgramData\USOPrivate
2015-12-23 14:28 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-12-23 14:26 - 2015-10-30 02:24 - 00000000 __RSD C:\WINDOWS\Media
2015-12-23 14:26 - 2011-01-31 06:17 - 00042668 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-12-23 14:25 - 2015-10-30 02:24 - 00000000 __RHD C:\Users\Public\Libraries
2015-12-23 14:19 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\spool
2015-12-23 14:19 - 2015-09-07 09:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
2015-12-23 14:14 - 2015-10-30 04:07 - 00000000 ____D C:\WINDOWS\ShellNew
2015-12-23 14:14 - 2015-10-30 02:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2015-12-23 14:14 - 2015-08-22 15:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2015-12-23 14:14 - 2015-06-08 14:30 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sawbuck
2015-12-23 14:14 - 2014-11-09 22:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2
2015-12-23 14:14 - 2014-11-09 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Control Utility 2
2015-12-23 14:14 - 2014-11-09 22:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2
2015-12-23 14:14 - 2014-11-09 22:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon
2015-12-23 14:14 - 2014-10-07 11:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken 2014
2015-12-23 14:14 - 2014-02-23 13:42 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\tamaggo ibi
2015-12-23 14:14 - 2013-11-13 18:37 - 00000000 ____D C:\WINDOWS\SysWOW64\syncdb
2015-12-23 14:14 - 2013-08-04 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-12-23 14:14 - 2013-02-26 09:50 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
2015-12-23 14:14 - 2012-11-23 23:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate Dashboard
2015-12-23 14:14 - 2012-11-23 23:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo
2015-12-23 14:14 - 2012-11-15 09:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-12-23 14:14 - 2012-08-15 11:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2015-12-23 14:14 - 2012-06-01 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-12-23 14:14 - 2011-06-07 13:39 - 00000000 ____D C:\WINDOWS\en
2015-12-23 14:14 - 2011-06-07 09:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-12-23 14:14 - 2011-05-11 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-12-23 14:14 - 2011-05-01 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX Plus
2015-12-23 14:14 - 2011-03-18 09:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TurboTax
2015-12-23 14:14 - 2011-02-25 15:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hardware
2015-12-23 14:14 - 2011-01-30 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AvosVins
2015-12-23 14:14 - 2011-01-30 16:22 - 00000000 ____D C:\WINDOWS\SysWOW64\MediaImpression Slideshow
2015-12-23 14:14 - 2009-07-13 22:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories Windows
2015-12-23 14:12 - 2009-07-13 22:20 - 00000000 ____D C:\Users\Default.migrated
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-12-23 14:07 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\system32\IME
2015-12-23 14:07 - 2013-11-13 03:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Garmin
2015-12-23 14:07 - 2011-02-25 23:06 - 00000000 ____D C:\WINDOWS\system32\SPReview
2015-12-23 14:07 - 2011-02-25 23:06 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2015-12-23 14:07 - 2011-01-29 23:57 - 00000000 ____D C:\WINDOWS\SysWOW64\Spool
2015-12-23 14:07 - 2011-01-29 15:53 - 00000000 ____D C:\WINDOWS\SysWOW64\Dell
2015-12-23 14:06 - 2011-02-28 11:15 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2015-12-23 14:05 - 2015-10-30 02:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-12-23 14:05 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\schemas
2015-12-23 14:05 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-12-23 14:05 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-12-23 14:05 - 2015-10-30 02:24 - 00000000 ____D C:\WINDOWS\Cursors
2015-12-23 14:05 - 2015-09-07 13:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2015-12-23 14:05 - 2015-04-15 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-23 14:05 - 2014-12-10 19:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-12-23 14:05 - 2012-12-24 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix
2015-12-23 14:05 - 2012-10-20 11:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2015-12-23 14:05 - 2012-10-19 22:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kobo
2015-12-23 14:05 - 2011-02-25 15:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photographie
2015-12-23 14:05 - 2011-02-25 15:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet
2015-12-23 14:05 - 2011-02-25 15:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Finances
2015-12-23 14:05 - 2011-02-25 15:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Viewers
2015-12-23 14:05 - 2011-02-25 15:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Musique et sons
2015-12-23 14:05 - 2011-02-25 15:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft
2015-12-23 14:05 - 2009-07-14 00:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-12-23 14:04 - 2015-10-30 02:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-12-23 14:04 - 2015-10-30 02:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-12-23 14:04 - 2011-01-29 20:21 - 00000000 ____D C:\Program Files\Microsoft Games
2015-12-23 14:04 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files\DVD Maker
2015-12-23 14:04 - 2009-07-13 22:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2015-12-23 14:03 - 2009-05-11 21:18 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet
2015-12-23 14:03 - 2009-05-11 21:17 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Musique
2015-12-23 14:03 - 2009-05-11 21:16 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Photographie
2015-12-23 14:03 - 2009-05-11 21:16 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Finances
2015-12-23 14:03 - 2009-05-11 21:15 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viewers
2015-12-23 14:03 - 2009-05-11 21:14 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hardware
2015-12-23 14:03 - 2009-05-11 21:13 - 00000000 ____D C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bureautique
2015-12-23 14:00 - 2015-10-30 01:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-12-23 13:58 - 2012-02-16 10:15 - 00000000 ____D C:\AMD
2015-12-23 13:52 - 2015-10-30 04:14 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2015-12-23 13:21 - 2009-07-13 23:45 - 00025424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-12-23 13:21 - 2009-07-13 23:45 - 00025424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-12-23 13:17 - 2015-10-30 04:42 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-21 16:31 - 2011-01-29 16:07 - 00000000 ____D C:\ProgramData\Adobe
2015-12-21 16:31 - 2011-01-29 16:07 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-12-19 13:37 - 2012-08-26 09:30 - 00000864 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-12-18 16:01 - 2011-01-29 23:19 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-12-11 13:39 - 2009-05-09 01:24 - 00000000 ____D C:\Users\Maurice\Documents\My Scans

==================== Files in the root of some directories =======

2010-09-15 15:58 - 2010-09-15 16:09 - 0003072 _____ () C:\Users\Maurice\AppData\Roaming\dvd.bmk
2009-05-10 10:06 - 2009-05-10 11:54 - 0011455 _____ () C:\Users\Maurice\AppData\Roaming\HPCOM_48BitScanUpdate.log
2011-01-29 23:53 - 2014-11-09 22:24 - 0000000 _____ () C:\Users\Maurice\AppData\Roaming\Kernel Extension
2011-01-29 23:57 - 2014-11-09 22:23 - 0000000 _____ () C:\Users\Maurice\AppData\Roaming\Keychains
2014-11-09 22:27 - 2014-11-09 22:27 - 0000268 ___RH () C:\Users\Maurice\AppData\Roaming\Licenses
2014-11-09 22:28 - 2014-11-09 22:28 - 0000268 ___RH () C:\Users\Maurice\AppData\Roaming\Light Machine
2014-11-09 22:27 - 2014-11-09 22:27 - 0000268 ___RH () C:\Users\Maurice\AppData\Roaming\Limiter
2009-05-08 18:57 - 2010-11-23 12:56 - 0000268 ____H () C:\Users\Maurice\AppData\Roaming\PrintingModule
2009-05-08 18:59 - 2010-11-23 13:01 - 0000268 ____H () C:\Users\Maurice\AppData\Roaming\Profiles
2010-10-27 14:18 - 2010-10-27 14:18 - 0000268 ____H () C:\Users\Maurice\AppData\Roaming\Repeat Routines
2010-10-27 14:18 - 2010-10-27 14:18 - 0000268 ____H () C:\Users\Maurice\AppData\Roaming\Resources
2010-10-27 14:18 - 2010-10-27 14:18 - 0000268 ____H () C:\Users\Maurice\AppData\Roaming\Reverb
2009-08-10 11:12 - 2009-08-10 11:12 - 0038484 _____ () C:\Users\Maurice\AppData\Roaming\Valeurs séparées par des virgules (Windows).ADR
2009-08-20 20:45 - 2009-08-20 20:45 - 0000196 _____ () C:\Users\Maurice\AppData\Roaming\WDS30_Migrate_Shortcuts.ini
2014-12-16 21:59 - 2015-10-29 12:47 - 0003584 _____ () C:\Users\Maurice\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2009-05-07 17:13 - 2009-05-07 17:13 - 0000130 _____ () C:\Users\Maurice\AppData\Local\fusioncache.dat
2010-12-26 12:07 - 2010-12-26 12:07 - 0000036 _____ () C:\Users\Maurice\AppData\Local\housecall.guid.cache
2011-01-29 21:52 - 2014-10-01 16:02 - 0007624 _____ () C:\Users\Maurice\AppData\Local\resmon.resmoncfg
2011-01-30 16:08 - 2011-03-02 14:33 - 0000097 __RSH () C:\ProgramData\1.12.0.lic
2011-05-27 15:14 - 2011-11-04 20:42 - 0000097 __RSH () C:\ProgramData\1.12.1.lic
2012-06-22 16:36 - 2012-06-22 16:36 - 0000057 _____ () C:\ProgramData\Ament.ini
2011-06-07 15:39 - 2011-06-07 15:39 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2014-11-09 22:24 - 2014-11-09 22:24 - 0000000 _____ () C:\ProgramData\Jingles
2014-11-09 22:23 - 2014-11-09 22:23 - 0000000 _____ () C:\ProgramData\Keyboard Layouts
2014-11-09 22:27 - 2014-11-09 22:27 - 0000268 ___RH () C:\ProgramData\MAS
2014-11-09 22:28 - 2014-11-09 22:28 - 0000268 ___RH () C:\ProgramData\MIDI Configurations
2014-11-09 22:27 - 2014-11-09 22:27 - 0000268 ___RH () C:\ProgramData\MIDI Devices
2011-01-29 23:53 - 2014-11-09 22:24 - 0000000 ____H () C:\ProgramData\PKP_DLdu.DAT
2011-01-29 23:57 - 2014-11-09 22:23 - 0000000 ____H () C:\ProgramData\PKP_DLdw.DAT
2014-11-09 22:28 - 2014-11-09 22:28 - 0000020 ____H () C:\ProgramData\PKP_DLes.DAT
2014-11-09 22:27 - 2016-01-10 11:30 - 0000020 ____H () C:\ProgramData\PKP_DLet.DAT
2014-11-09 22:27 - 2015-10-18 15:36 - 0000020 ____H () C:\ProgramData\PKP_DLev.DAT

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


ATTENTION: ==> Could not access BCD. The user is not administrator

==================== End of FRST.txt ============================

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by Maurice (2016-01-10 21:03:44)
Running from C:\Users\Maurice\Desktop
Windows 10 Pro (X64) (2015-12-23 19:42:40)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1946218642-778646555-905632306-500 - Administrator - Disabled)
AdminM (S-1-5-21-1946218642-778646555-905632306-1011 - Administrator - Enabled) => C:\Users\AdminM
Armelle (S-1-5-21-1946218642-778646555-905632306-1007 - Limited - Enabled)
DefaultAccount (S-1-5-21-1946218642-778646555-905632306-503 - Limited - Disabled)
François (S-1-5-21-1946218642-778646555-905632306-1005 - Limited - Enabled) => C:\Users\François
Guest (S-1-5-21-1946218642-778646555-905632306-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1946218642-778646555-905632306-1004 - Limited - Enabled)
Maurice (S-1-5-21-1946218642-778646555-905632306-1000 - Limited - Enabled) => C:\Users\Maurice
Philippe (S-1-5-21-1946218642-778646555-905632306-1006 - Limited - Enabled) => C:\Users\Philippe

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton Internet Security (Enabled - Out of date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Internet Security (Enabled - Out of date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
FW: Norton Internet Security (Enabled) {6BFC5632-188D-B806-D13E-C607121B42A0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Ad-Aware Web Companion (x32 Version: 2.1.1095.2272 - Lavasoft) Hidden
Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.5.23 - Adobe Systems Incorporated.)
Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0.1 - Adobe Systems Incorporated)
Adobe Digital Editions 4.0 (HKLM-x32\...\Adobe Digital Editions 4.0) (Version: 4.0.3 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Photoshop Elements 12 (HKLM-x32\...\Adobe Photoshop Elements 12) (Version: 12.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 9 (HKLM-x32\...\Adobe Photoshop Elements 9) (Version: 9.0 - Adobe Systems Incorporated)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (32 bits) (HKLM-x32\...\{C5815ACF-FD34-4553-8A22-C7411B7E662B}) (Version: 4.1.1 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{CBF12D2F-CF64-4CB7-858B-2C1F21068E5F}) (Version: 4.1.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Application Profiles (HKLM-x32\...\{1432E5F7-0AF6-8C43-EC53-08A4648CBD03}) (Version: 2.0.4427.36392 - Advanced Micro Devices, Inc.)
ArcSoft Software Suite (HKLM-x32\...\{497A1721-088F-41EF-8876-B43C9DA5528B}) (Version: 1.0 - ArcSoft)
ATI AVIVO64 Codecs (Version: 11.6.0.50517 - ATI Technologies Inc.) Hidden
Auslogics Registry Cleaner (HKLM-x32\...\{8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1) (Version: 5.0.2.0 - Auslogics Labs Pty Ltd)
ÀvosVins 8.0 (HKLM-x32\...\{17848FE0-9999-11D9-A1B7-00E0294E8E2E}_is1) (Version: 8.0 - ÀvosVins)
Bejeweled 1.5 (HKLM-x32\...\Bejeweled 1.5) (Version:  - )
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Bridge Baron 25 (HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\79ecd3f8b27c3b4e) (Version: 25.0.0.11 - Great Game Products Inc.)
Broadcom NetXtreme-I Netlink Driver and Management Installer (HKLM\...\{982E1601-0DFC-4FD3-A427-AC6570697858}) (Version: 12.55.01 - Broadcom Corporation)
CameraHelperMsi (x32 Version: 13.50.854.0 - Logitech) Hidden
CATraxx (HKLM-x32\...\CATraxx_is1) (Version:  - FNProgramvare)
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
Corel Applications (HKLM-x32\...\Corel Applications) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd)
Dell Customer Connect (HKLM-x32\...\{124DE80C-9BFE-4D04-A8D9-69C5019DEEBF}) (Version: 1.3.28.0 - Dell Inc.)
Dell Data Vault (Version: 4.3.5.1 - Dell Inc.) Hidden
Dell Dock (HKLM-x32\...\Dell Dock) (Version: 2.0 - Stardock Corporation)
Dell Dock (Version: 2.0 - Stardock Corporation) Hidden
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.1.6664.93 - Dell)
Dell SupportAssistAgent (HKLM-x32\...\{287348C8-8B47-4C36-AF28-441A3B7D8722}) (Version: 1.1.1.14 - Dell)
Dell Update (HKLM-x32\...\{DB82968B-57A4-4397-81A5-ECAB21B5DFCD}) (Version: 1.7.1015.0 - Dell Inc.)
DirectXInstallService (x32 Version: 9.0.2 - Roxio) Hidden
Distortion Control Data (HKLM-x32\...\{B08B4896-886C-4644-8664-BBA4CE99D318}) (Version: 1.00.0000 - Nikon)
DivX Setup (HKLM-x32\...\DivX Setup.divx.com) (Version: 2.5.0.8 - DivX, LLC)
Elements 12 Organizer (x32 Version: 12.0 - Nom de votre société) Hidden
Elements 9 Organizer (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden
Elements STI Installer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Elevated Installer (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
EMCGadgets64 (Version: 1.1.501 - Nom de votre société) Hidden
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
File Uploader (HKLM-x32\...\{237CD223-1B9D-47E8-A76C-E478B83CCEA2}) (Version: 1.2.5 - Nikon)
Garmin BaseCamp (HKLM-x32\...\{36A0D446-B8E9-4753-BDFE-335F6F4DE59C}) (Version: 4.5.2 - Garmin Ltd or its subsidiaries)
Garmin City Navigator Europe NT 2010 (HKLM-x32\...\{C07B86C3-1816-4C59-927E-0287925DFB96}) (Version: 13.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin City Navigator Europe NT 2014.10 Update (HKLM-x32\...\{5AFFBD70-E969-41D6-80F6-CD85C0F0A0F0}) (Version: 17.10.0.0 - Garmin Ltd or its subsidiaries)
Garmin City Navigator Europe NTU 2016.20 (HKLM-x32\...\{7F485A74-C557-4EF4-B934-97DA9A74E74B}) (Version: 2.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin City Navigator North America NT 2016.20 (HKLM-x32\...\{79A8C65B-0289-45A2-9A8D-6AAE0B64A374}) (Version: 2.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin (HKLM-x32\...\{032A13FF-D26D-4844-9597-7EF698627985}) (Version: 4.1.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin x64 (HKLM\...\{AFA301E1-B410-4F1B-B1C0-2E92FDCD94AD}) (Version: 4.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{b292f4e5-60ca-4bb8-8810-e5f908c3c1ff}) (Version: 4.1.10.0 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 4.1.10.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin MapInstall (HKLM-x32\...\{F0D44E64-51EE-4888-A1FD-F13108B75A43}) (Version: 4.0.4 - Garmin Ltd or its subsidiaries)
Garmin USB Drivers (HKLM\...\{DC7720F2-98BE-41C1-B0A8-E391362E86B8}) (Version: 2.3.1.1 - Garmin Ltd or its subsidiaries)
Garmin WebUpdater (HKLM-x32\...\{00FE2935-FB56-4410-AB5F-D6E70C1771D2}) (Version: 2.5.6 - Garmin Ltd or its subsidiaries)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Officejet Pro 8600 Basic Device Software (HKLM\...\{2D5E3D2B-919F-407C-8757-E64827518BB6}) (Version: 25.0.619.0 - Hewlett-Packard Co.)
HP Officejet Pro 8600 Help (HKLM-x32\...\{B6F5C6D8-C443-4B55-932F-AE11B5743FC4}) (Version: 140.0.2.2 - Hewlett Packard)
HP Officejet Pro 8600 Product Improvement Study (HKLM\...\{F792E5B0-11C4-4C68-8A63-FB5F52749180}) (Version: 25.0.619.0 - Hewlett-Packard Co.)
HP Product Detection (HKLM-x32\...\{ACAA0152-96A4-4D93-92F5-1B4728C3D984}) (Version: 11.15.0008 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan)
iSEEK AnswerWorks English Runtime (HKLM-x32\...\{18A8E78B-9EF2-496E-B310-BCD8E4C1DAB3}) (Version: 010.000.0101 - Vantage Linguistics)
iTunes (HKLM\...\{0D44E3A4-6C3D-45D7-B443-079509E5BE5D}) (Version: 12.3.2.35 - Apple Inc.)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Kobo (HKLM-x32\...\Kobo) (Version: 3.19.3765 - Rakuten Kobo Inc.)
LavasoftTcpService (x32 Version: 2.3.4.7 - Lavasoft) Hidden
Learn to Play Bridge (HKLM-x32\...\Learn_to_Play_Bridge) (Version:  - )
Learn to Play Bridge 2 (HKLM-x32\...\Learn_to_Play_Bridge_2) (Version:  - )
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Marketsplash Shortcuts (HKLM-x32\...\{FB0C267C-8B4F-4867-8161-A6A3B66D42C1}) (Version: 1.0.0.9 - Hewlett-Packard)
Memeo Instant Backup (HKLM-x32\...\{8E666407-AC41-46a2-9692-6C7BFCBFDD37}) (Version: 4.60.0.7923 - Memeo Inc.)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Mise à jour Microsoft Office Excel 2007 Help  (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version:  - Microsoft)
Mise à jour Microsoft Office Outlook 2007 Help  (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version:  - Microsoft)
Mise à jour Microsoft Office Powerpoint 2007 Help  (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version:  - Microsoft)
Mise à jour Microsoft Office Word 2007 Help  (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version:  - Microsoft)
MonitorTest V3.1 (HKLM-x32\...\MonitorTest_is1) (Version: 3.1 - PassMark Software)
Mozilla Firefox 43.0.4 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 43.0.4 (x86 en-US)) (Version: 43.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.4.5848 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nikon Message Center (HKLM-x32\...\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}) (Version: 0.92.000 - Nikon)
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.1 - Nikon)
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.9.2 - Nikon)
Norton Internet Security (HKLM-x32\...\NIS) (Version: 22.5.5.15 - Symantec Corporation)
Omar Sharif Bridge (HKLM-x32\...\{E30DECE7-42AF-489D-ABB4-BAD765347272}) (Version:  - )
PHOTOfunSTUDIO HD Edition (HKLM-x32\...\{9A9DBEBC-C800-4776-A970-D76D6AA405B1}) (Version: 3.00.126 - Panasonic)
Picture Control Utility 2 (HKLM\...\{D4893C47-704F-4B84-8486-9DE4974ACA6F}) (Version: 2.0.1 - Nikon)
PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.2.5024 - CyberLink Corp.)
PSE12 STI Installer (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Quicken (HKLM-x32\...\{00F819C4-7354-4F18-AFA6-A7413E9AC08A}) (Version: Quicken - Intuit Canada)
Quicken 2014 (HKLM-x32\...\{087C72DB-05FD-4F50-83C6-833EF6AF8BE1}) (Version: 23.1.3.3 - Intuit)
QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.)
Roxio Creator Premier (HKLM-x32\...\{BB2CB14A-F3A3-4BBF-9111-EBC82049ABA6}) (Version: 10.3 - Roxio)
Sawbuck (HKLM-x32\...\{459BFE07-FCF3-4274-AC8B-8E8DDA7214BA}) (Version: 0.6.8.0 - Google Inc)
Seagate Dashboard (HKLM-x32\...\{C3A11907-930D-41AC-A135-CC3B12F92011}) (Version: 1.1.0.1421 - Memeo Inc.)
Secunia PSI (3.0.0.11003) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.11003 - Secunia)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Stellar Phoenix Outlook PST Repair (HKLM-x32\...\Stellar Phoenix Outlook PST Repair_is1) (Version: 4.5.0.0 - Stellar Information Systems Ltd.)
tamaggo ibi (HKLM-x32\...\tamaggo ibi) (Version: 1.11.5 - Tamaggo Inc.)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TurboTax 2014 (HKLM-x32\...\{0B69B187-4F9F-41C2-B850-735D1A323571}) (Version: 1.00.0000 - Intuit Canada)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0 - DivX, Inc) Hidden
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.10.2 - Nikon)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job =>
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job =>
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job =>

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-12-23 16:46 - 2015-12-23 16:46 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-12-23 15:38 - 2015-12-23 15:38 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-23 16:46 - 2015-12-23 16:46 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-12-23 16:46 - 2015-12-23 16:46 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 ____N () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-10-13 04:45 - 2015-10-13 04:45 - 01328912 ____N () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\cleverreach.com -> hxxp://novastor.cleverreach.com
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\dell.com -> dell.com
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\google-analytics.com -> hxxp://google-analytics.com
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\novastor.com -> hxxp://novastor.com
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\novastor.com -> hxxps://novastor.com
IE trusted site: HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1946218642-778646555-905632306-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Maurice\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^Users^Maurice^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^JL Alpine Advent Calendar.lnk => C:\Windows\pss\JL Alpine Advent Calendar.lnk.Startup
MSCONFIG\startupreg: (default) =>
MSCONFIG\startupreg: 410_22535341603357 => "C:\Users\Maurice\AppData\Local\LMIR0001.tmp_r.bat"
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: Akamai NetSession Interface =>
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: IMSS => "C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PIconStartup.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LWS => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
MSCONFIG\startupreg: Memeo Instant Backup => C:\Program Files (x86)\Memeo\AutoBackup\MemeoLauncher2.exe --silent --no_ui
MSCONFIG\startupreg: Nikon Message Center 2 => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s
MSCONFIG\startupreg: PDVDDXSrv => "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RoxWatchTray => "C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
MSCONFIG\startupreg: Seagate Dashboard => C:\Program Files (x86)\Seagate\Seagate Dashboard\MemeoLauncher.exe --silent --no_ui
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\StartupApproved\Run: => "CAHeadless"
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1946218642-778646555-905632306-1000\...\StartupApproved\Run: => "Sidebar"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{0F39C355-CEAE-4B8A-9416-A618BA2814F4}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{1C0B970E-134B-4897-888F-FD4961514A4B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EBCD334C-666D-4F50-99D4-3F41665E7D46}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{22409222-4D1F-4A75-8EF9-711FD1E87F8B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{9331F557-012B-45BC-AAE6-6EAA110A5561}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{BD793BC9-20DA-4D03-93AD-30740704BF25}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{58F30AC2-1FE9-468E-BF53-24ED9D9EB6B7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3C647FCD-BFF2-450F-B3B2-E3F0D5EE24C3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{418CED4F-D65F-4D03-8631-567159250020}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9DB3B61D-2B7F-4D26-B403-9170B2735D37}] => (Allow) C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
FirewallRules: [{DB10A488-3252-417A-AA36-760921A1EFBC}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe
FirewallRules: [{8FD03682-3EB9-40CE-8999-943763827C6A}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\DeviceSetup.exe
FirewallRules: [{F8F2F9ED-CC53-424A-A526-5D5C3C1DB938}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{4879D8D9-CC6B-4DC2-B5C7-4E682EA27848}] => (Allow) LPort=1900
FirewallRules: [{C96F2185-D193-41AA-B1EA-F953F191A6E4}] => (Allow) LPort=2869
FirewallRules: [{A8E808FB-811B-4D68-B76E-47D979D2227B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{71A5A06A-834F-46CC-BC12-35B729CF36E7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
FirewallRules: [{843E3F8C-14FC-4BE4-BCA2-5D93E14FF8F4}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PowerDVD.exe
FirewallRules: [{318F2019-F8F3-4BC3-A540-A12B0645F79C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{51DD9164-1012-4C9D-883F-368397E80184}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{0FEF96A2-3AA2-4979-9502-C27A525F55F8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{5F5BA0FB-2BFA-4D5E-B5A5-F2AF333C95D6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled
Check "winmgmt" service or repair WMI.


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/10/2016 06:52:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MAURICE-STUDIO)
Description: Activation of app Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App failed with error: -2147024770 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (01/10/2016 06:50:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MAURICE-STUDIO)
Description: Activation of app Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App failed with error: -2147024891 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (01/10/2016 05:31:20 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ISAPISearchC:\WINDOWS\system32\query.dll8

Error: (01/10/2016 05:31:20 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ContentIndexC:\WINDOWS\system32\query.dll8

Error: (01/10/2016 05:31:20 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ContentFilterC:\WINDOWS\System32\query.dll8

Error: (01/09/2016 05:26:34 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ISAPISearchC:\WINDOWS\system32\query.dll8

Error: (01/09/2016 05:26:33 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ContentIndexC:\WINDOWS\system32\query.dll8

Error: (01/09/2016 05:26:33 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ContentFilterC:\WINDOWS\System32\query.dll8

Error: (01/09/2016 04:41:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SystemSettings.exe, version: 10.0.10586.11, time stamp: 0x56457cb1
Faulting module name: OneBackupHandler.dll, version: 10.0.10586.0, time stamp: 0x5632d634
Exception code: 0xc0000005
Fault offset: 0x00000000000211df
Faulting process id: 0x27c0
Faulting application start time: 0xSystemSettings.exe0
Faulting application path: SystemSettings.exe1
Faulting module path: SystemSettings.exe2
Report Id: SystemSettings.exe3
Faulting package full name: SystemSettings.exe4
Faulting package-relative application ID: SystemSettings.exe5

Error: (01/09/2016 04:37:14 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.


System errors:
=============
Error: (01/10/2016 07:26:16 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.213.2434.0).

Error: (01/10/2016 07:16:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Windows Defender Service service failed to start due to the following error:
%%577

Error: (01/10/2016 07:15:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Garmin Device Interaction Service service failed to start due to the following error:
%%1053

Error: (01/10/2016 07:15:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Garmin Device Interaction Service service to connect.

Error: (01/10/2016 07:15:06 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error:
%%1058

Error: (01/10/2016 07:14:53 PM) (Source: Application Popup) (EventID: 56) (User: )
Description: SCSI000000

Error: (01/10/2016 07:13:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_33a1e5 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (01/10/2016 07:13:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_33a1e5 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (01/10/2016 07:13:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_33a1e5 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (01/10/2016 07:13:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_33a1e5 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.


CodeIntegrity:
===================================
  Date: 2016-01-10 19:19:11.865
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-01-10 19:16:11.861
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-10 16:37:24.270
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-10 16:32:50.966
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-10 15:50:26.989
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-10 15:44:40.526
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-10 15:41:35.378
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-07 16:24:13.582
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-07 15:27:33.851
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-01-06 04:47:27.162
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel® Core™ i7 CPU 870 @ 2.93GHz
Percentage of memory in use: 39%
Total physical RAM: 8151.07 MB
Available physical RAM: 4902.07 MB
Total Virtual: 16343.07 MB
Available Virtual: 12864.99 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.97 GB) (Free:456.52 GB) NTFS
Drive d: (New Volume) (Fixed) (Total:931.39 GB) (Free:773.79 GB) NTFS
Drive k: (Storage space) (Fixed) (Total:20479.87 GB) (Free:20090.32 GB) NTFS
Drive p: (GARMIN) (Removable) (Total:1.85 GB) (Free:1.72 GB) FAT32
Drive q: () (Removable) (Total:7.28 GB) (Free:2.28 GB) FAT32

==================== MBR & Partition Table ==================

==================== End of Addition.txt ============================


  • 0

#5
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,213 posts

Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP