Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

computer slow and hangs


  • This topic is locked This topic is locked

#1
Pat_54

Pat_54

    Member

  • Member
  • PipPipPip
  • 212 posts

Hi

My husband had this computer given to him to keep its a inspirion 1545 working in windows 7 but it was in a mess. Nothing wanted to work, everything was running so slow. I worked with it. Ran antivirus but had lots of trouble installing any programs and getting on internet. It would hang so did a reinstall of IE 11. Things seem a little better but still is slow at loading webpages or going to links. Computer takes forever starting up and shutting down. Everytime it goes to shutdown says have to wait programs running in background. Can't figure out how to stop them. Not sure if has some malware or not virus. please help. I ran a fabar the first one didn't work stopped in process so ran another here are those results.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-08-2016 01
Ran by Pat (administrator) on PAT-PC (15-08-2016 17:54:08)
Running from C:\Users\Pat\Desktop
Loaded Profiles: Pat (Available Profiles: Pat)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(IDT, Inc.) C:\WINDOWS\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe
() C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE
(Microsoft Corporation) C:\WINDOWS\System32\wlanext.exe
(Dell Inc.) C:\Program Files\Dell\Dell Wireless WLAN Card\BCMWLTRY.EXE
(SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
() C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\STService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\WINDOWS\System32\vds.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation) C:\WINDOWS\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Intel Corporation) C:\WINDOWS\System32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\System32\hkcmd.exe
(Dell Inc.) C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE
(Intel Corporation) C:\WINDOWS\System32\igfxsrvc.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(SupportSoft, Inc.) C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
(SoftThinks) C:\Program Files (x86)\Dell DataSafe Local Backup\SftVss64.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [444416 2009-06-29] (IDT, Inc.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.exe [4968960 2009-07-16] (Dell Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKLM-x32\...\RunOnce: [Launcher] => C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe [165184 2011-01-13] (Softthinks)
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-08-14] (Microsoft Corporation)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk [2010-05-07]
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk [2010-05-07]
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{0979F27E-D306-45A8-8435-43D7AD4F90C1}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
Toolbar: HKU\S-1-5-21-203203728-1507485769-1567745242-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-14] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-14] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [No File]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe [240128 2009-06-29] (IDT, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)
R2 wltrysvc; C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwltry.exe [3417088 2009-07-16] (Dell Inc.) [File not signed]
S2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-09-28] ()

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-15 17:54 - 2016-08-15 17:55 - 00008668 _____ C:\Users\Pat\Desktop\FRST.txt
2016-08-15 17:45 - 2016-08-15 17:54 - 00000000 ____D C:\FRST
2016-08-15 17:39 - 2016-08-15 17:39 - 02394624 _____ (Farbar) C:\Users\Pat\Desktop\FRST64.exe
2016-08-15 16:56 - 2016-08-15 16:56 - 00000000 ___DC C:\Users\Pat\AppData\Local\MigWiz
2016-08-15 15:08 - 2016-08-15 18:18 - 00000000 __HDC C:\ProgramData\{010DD54D-6F97-418D-BC47-2089F30A0075}
2016-08-15 15:07 - 2016-08-15 15:08 - 00000000 ____D C:\ProgramData\SupportAssistAgent
2016-08-15 14:41 - 2016-08-15 18:18 - 00000000 ____D C:\Program Files\Dell Support Center
2016-08-15 14:41 - 2016-08-15 14:41 - 00000000 ____D C:\Users\Pat\AppData\LocalLow\PCDr
2016-08-15 14:37 - 2016-08-15 15:40 - 00000000 ____D C:\temp
2016-08-15 14:37 - 2016-08-15 15:06 - 00000000 ____D C:\Users\Pat\AppData\Roaming\PCDr
2016-08-15 14:35 - 2016-08-15 14:58 - 00000000 ____D C:\Users\Pat\AppData\Local\Deployment
2016-08-15 14:35 - 2016-08-15 14:35 - 00000000 ____D C:\Users\Pat\AppData\Local\Apps\2.0
2016-08-15 12:42 - 2016-08-15 12:42 - 02521464 _____ (Microsoft Corporation) C:\Users\Pat\Downloads\DefaultPack.EXE
2016-08-15 12:41 - 2016-08-15 12:41 - 02541968 _____ (Microsoft Corporation) C:\Users\Pat\Downloads\InternetExplorerDefault.EXE
2016-08-14 23:57 - 2016-08-14 23:57 - 00000000 _____ C:\Windows\SysWOW64\REN735D.tmp
2016-08-14 23:57 - 2016-08-14 23:57 - 00000000 _____ C:\Windows\SysWOW64\REN735C.tmp
2016-08-14 23:57 - 2016-08-14 23:57 - 00000000 _____ C:\Windows\SysWOW64\REN735B.tmp
2016-08-14 23:56 - 2016-08-14 23:56 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-08-14 23:56 - 2016-08-14 23:56 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Sun
2016-08-14 23:56 - 2016-08-14 23:56 - 00000000 ____D C:\Users\Pat\.oracle_jre_usage
2016-08-14 23:56 - 2016-08-14 23:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-08-14 23:55 - 2016-08-14 23:58 - 00000000 ____D C:\ProgramData\Oracle
2016-08-14 23:49 - 2016-08-14 23:49 - 00000000 ____D C:\Users\Pat\AppData\LocalLow\Sun
2016-08-14 23:15 - 2016-08-14 23:15 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Adobe
2016-08-14 23:10 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2016-08-14 23:08 - 2016-08-14 23:08 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-08-14 23:08 - 2016-08-14 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-08-14 23:08 - 2016-08-14 23:08 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-08-14 23:08 - 2016-08-14 23:08 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-08-14 23:08 - 2016-08-14 23:08 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2016-08-14 23:08 - 2016-08-14 23:08 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2016-08-14 23:08 - 2016-08-14 23:08 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-08-14 23:08 - 2016-08-14 23:08 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-08-14 23:08 - 2016-08-14 23:08 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2016-08-14 23:08 - 2016-08-14 23:08 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2016-08-14 23:08 - 2016-08-14 23:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-08-14 23:08 - 2016-08-14 23:08 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-08-14 23:08 - 2016-08-14 23:08 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-08-14 23:06 - 2016-08-14 23:06 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-08-14 23:06 - 2016-08-14 23:06 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-08-14 23:06 - 2016-08-14 23:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-08-14 23:06 - 2016-08-14 23:06 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-08-14 23:06 - 2016-08-14 23:06 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-08-14 23:06 - 2016-08-14 23:06 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-08-14 23:05 - 2016-08-14 23:05 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-08-14 23:02 - 2016-08-14 23:02 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-08-14 23:02 - 2016-08-14 23:02 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-08-14 22:59 - 2016-08-14 22:59 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-08-14 22:59 - 2016-08-14 22:59 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-08-14 21:57 - 2016-08-14 21:57 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Windows Live Writer
2016-08-14 21:57 - 2016-08-14 21:57 - 00000000 ____D C:\Users\Pat\AppData\Local\Windows Live Writer
2016-08-14 19:55 - 2014-05-14 12:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-08-14 19:55 - 2014-05-14 12:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-08-14 19:55 - 2014-05-14 12:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-08-14 19:55 - 2014-05-14 12:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-08-14 19:54 - 2014-05-14 12:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-08-14 19:54 - 2014-05-14 12:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-08-14 19:54 - 2014-05-14 12:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-08-14 19:54 - 2014-05-14 12:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-08-14 19:54 - 2014-05-14 12:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-08-14 19:54 - 2014-05-14 12:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-08-14 19:53 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-08-14 19:53 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-08-14 19:53 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-08-14 19:53 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-08-14 17:47 - 2016-08-14 17:47 - 00000000 ____D C:\Windows\system32\SPReview
2016-08-14 17:47 - 2016-08-14 17:47 - 00000000 ____D C:\Windows\system32\EventProviders
2016-08-14 17:44 - 2010-11-20 09:27 - 03715584 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-08-14 17:44 - 2010-11-20 09:27 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-08-14 17:44 - 2010-11-20 07:07 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2016-08-14 17:44 - 2010-11-04 21:58 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2016-08-14 17:44 - 2010-11-04 21:57 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2016-08-14 17:44 - 2010-11-04 21:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2016-08-14 17:43 - 2010-11-20 09:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2016-08-14 17:43 - 2010-11-20 09:33 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-08-14 17:43 - 2010-11-20 09:33 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-08-14 17:43 - 2010-11-20 09:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-08-14 17:43 - 2010-11-20 09:33 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2016-08-14 17:43 - 2010-11-20 09:33 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2016-08-14 17:43 - 2010-11-20 09:33 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2016-08-14 17:43 - 2010-11-20 09:28 - 00459248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-08-14 17:43 - 2010-11-20 09:27 - 14633472 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2016-08-14 17:43 - 2010-11-20 09:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02314752 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02018304 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-08-14 17:43 - 2010-11-20 09:27 - 01881088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01219584 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00960512 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00577536 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2016-08-14 17:43 - 2010-11-20 09:27 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-08-14 17:43 - 2010-11-20 09:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 04120064 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 03391488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 03205120 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 01340416 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 01244160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-08-14 17:43 - 2010-11-20 09:26 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-08-14 17:43 - 2010-11-20 09:26 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 03957760 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 01927680 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 01600512 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 01504256 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 01456128 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-08-14 17:43 - 2010-11-20 09:25 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2016-08-14 17:43 - 2010-11-20 09:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2016-08-14 17:43 - 2010-11-20 09:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-08-14 17:43 - 2010-11-20 08:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 01548288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2016-08-14 17:43 - 2010-11-20 08:21 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-08-14 17:43 - 2010-11-20 08:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-08-14 17:43 - 2010-11-20 08:20 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-08-14 17:43 - 2010-11-20 08:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2016-08-14 17:43 - 2010-11-20 08:20 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 03215872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 03207680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 01698816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 01390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40u.dll
2016-08-14 17:43 - 2010-11-20 08:19 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-08-14 17:43 - 2010-11-20 08:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-08-14 17:43 - 2010-11-20 08:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-08-14 17:43 - 2010-11-20 08:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-08-14 17:43 - 2010-11-20 08:18 - 01154048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-08-14 17:43 - 2010-11-20 08:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-08-14 17:43 - 2010-11-20 08:17 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-08-14 17:43 - 2010-11-20 08:17 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-08-14 17:43 - 2010-11-20 08:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2016-08-14 17:43 - 2010-11-20 08:17 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2016-08-14 17:43 - 2010-11-20 07:05 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2016-08-14 17:43 - 2010-11-20 05:53 - 03126272 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-08-14 17:43 - 2010-11-20 05:28 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-08-14 17:43 - 2010-11-20 05:27 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-08-14 17:43 - 2010-11-20 05:27 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-08-14 17:43 - 2010-11-20 05:25 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-08-14 17:43 - 2010-11-20 05:23 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-08-14 17:43 - 2010-11-20 05:21 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2016-08-14 17:43 - 2010-11-19 23:52 - 00419880 _____ C:\Windows\SysWOW64\locale.nls
2016-08-14 17:43 - 2010-11-19 23:52 - 00419880 _____ C:\Windows\system32\locale.nls
2016-08-14 17:43 - 2010-11-04 22:20 - 00347904 _____ C:\Windows\system32\systemsf.ebd
2016-08-14 17:43 - 2010-11-04 21:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2016-08-14 17:43 - 2010-11-04 21:57 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2016-08-14 17:43 - 2010-11-04 21:53 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2016-08-14 17:43 - 2010-11-04 21:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2016-08-14 17:43 - 2010-11-04 21:53 - 00109928 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2016-08-14 17:43 - 2010-11-04 21:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2016-08-14 17:43 - 2009-07-13 21:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll
2016-08-14 17:42 - 2010-11-20 09:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2016-08-14 17:42 - 2010-11-20 09:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2016-08-14 17:42 - 2010-11-20 09:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-08-14 17:42 - 2010-11-20 09:33 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-08-14 17:42 - 2010-11-20 09:33 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00095616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00075136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2016-08-14 17:42 - 2010-11-20 09:33 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2016-08-14 17:42 - 2010-11-20 09:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2016-08-14 17:42 - 2010-11-20 09:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-08-14 17:42 - 2010-11-20 09:32 - 00112000 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-08-14 17:42 - 2010-11-20 09:32 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2016-08-14 17:42 - 2010-11-20 09:32 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2016-08-14 17:42 - 2010-11-20 09:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-08-14 17:42 - 2010-11-20 09:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-08-14 17:42 - 2010-11-20 09:28 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-08-14 17:42 - 2010-11-20 09:28 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-08-14 17:42 - 2010-11-20 09:28 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-08-14 17:42 - 2010-11-20 09:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-08-14 17:42 - 2010-11-20 09:28 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-08-14 17:42 - 2010-11-20 09:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01572352 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-08-14 17:42 - 2010-11-20 09:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01118208 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00605696 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00481280 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2016-08-14 17:42 - 2010-11-20 09:27 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2016-08-14 17:42 - 2010-11-20 09:27 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2016-08-14 17:42 - 2010-11-20 09:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2016-08-14 17:42 - 2010-11-20 09:27 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 02746880 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 01457664 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00934912 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-08-14 17:42 - 2010-11-20 09:26 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00281600 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2016-08-14 17:42 - 2010-11-20 09:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2016-08-14 17:42 - 2010-11-20 09:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00897536 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-08-14 17:42 - 2010-11-20 09:25 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-08-14 17:42 - 2010-11-20 09:25 - 00128000 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2016-08-14 17:42 - 2010-11-20 09:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2016-08-14 17:42 - 2010-11-20 09:24 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-08-14 17:42 - 2010-11-20 09:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2016-08-14 17:42 - 2010-11-20 09:24 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-08-14 17:42 - 2010-11-20 09:24 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2016-08-14 17:42 - 2010-11-20 09:24 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2016-08-14 17:42 - 2010-11-20 09:24 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2016-08-14 17:42 - 2010-11-20 09:24 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2016-08-14 17:42 - 2010-11-20 09:24 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2016-08-14 17:42 - 2010-11-20 09:24 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2016-08-14 17:42 - 2010-11-20 09:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2016-08-14 17:42 - 2010-11-20 08:55 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-08-14 17:42 - 2010-11-20 08:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-08-14 17:42 - 2010-11-20 08:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 01619456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2016-08-14 17:42 - 2010-11-20 08:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 01175040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2016-08-14 17:42 - 2010-11-20 08:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2016-08-14 17:42 - 2010-11-20 08:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2016-08-14 17:42 - 2010-11-20 08:20 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2016-08-14 17:42 - 2010-11-20 08:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 02341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 01163264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-08-14 17:42 - 2010-11-20 08:19 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll
2016-08-14 17:42 - 2010-11-20 08:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 01792000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00252928 _____ (Microsoft) C:\Windows\SysWOW64\DShowRdpFilter.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2016-08-14 17:42 - 2010-11-20 08:18 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2016-08-14 17:42 - 2010-11-20 08:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2016-08-14 17:42 - 2010-11-20 08:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2016-08-14 17:42 - 2010-11-20 08:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2016-08-14 17:42 - 2010-11-20 08:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2016-08-14 17:42 - 2010-11-20 08:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2016-08-14 17:42 - 2010-11-20 08:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2016-08-14 17:42 - 2010-11-20 08:08 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-08-14 17:42 - 2010-11-20 08:08 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-08-14 17:42 - 2010-11-20 07:04 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2016-08-14 17:42 - 2010-11-20 07:04 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-08-14 17:42 - 2010-11-20 06:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2016-08-14 17:42 - 2010-11-20 06:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2016-08-14 17:42 - 2010-11-20 06:52 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys
2016-08-14 17:42 - 2010-11-20 06:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys
2016-08-14 17:42 - 2010-11-20 06:44 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2016-08-14 17:42 - 2010-11-20 06:44 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2016-08-14 17:42 - 2010-11-20 06:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-08-14 17:42 - 2010-11-20 06:33 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2016-08-14 17:42 - 2010-11-20 05:49 - 00367104 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-08-14 17:42 - 2010-11-20 05:27 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-08-14 17:42 - 2010-11-20 05:27 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-08-14 17:42 - 2010-11-20 05:26 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2016-08-14 17:42 - 2010-11-20 05:26 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-08-14 17:42 - 2010-11-20 05:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-08-14 17:42 - 2010-11-20 05:26 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-08-14 17:42 - 2010-11-04 21:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2016-08-14 17:41 - 2010-11-20 09:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2016-08-14 17:41 - 2010-11-20 09:44 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2016-08-14 17:41 - 2010-11-20 09:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00152960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2016-08-14 17:41 - 2010-11-20 09:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2016-08-14 17:41 - 2010-11-20 09:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2016-08-14 17:41 - 2010-11-20 09:32 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2016-08-14 17:41 - 2010-11-20 09:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 02146816 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 01911808 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 01672704 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00898560 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00781312 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00769536 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-08-14 17:41 - 2010-11-20 09:27 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2016-08-14 17:41 - 2010-11-20 09:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00116224 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2016-08-14 17:41 - 2010-11-20 09:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 03745792 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 03524608 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 01264640 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 01065984 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2016-08-14 17:41 - 2010-11-20 09:25 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-08-14 17:41 - 2010-11-20 09:25 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2016-08-14 17:41 - 2010-11-20 09:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2016-08-14 17:41 - 2010-11-20 09:24 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2016-08-14 17:41 - 2010-11-20 09:24 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2016-08-14 17:41 - 2010-11-20 09:24 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2016-08-14 17:41 - 2010-11-20 09:24 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2016-08-14 17:41 - 2010-11-20 09:24 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2016-08-14 17:41 - 2010-11-20 09:24 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-08-14 17:41 - 2010-11-20 09:24 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2016-08-14 17:41 - 2010-11-20 09:24 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2016-08-14 17:41 - 2010-11-20 09:24 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2016-08-14 17:41 - 2010-11-20 09:24 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2016-08-14 17:41 - 2010-11-20 09:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2016-08-14 17:41 - 2010-11-20 09:24 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2016-08-14 17:41 - 2010-11-20 08:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPHLPR.DLL
2016-08-14 17:41 - 2010-11-20 08:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPEncEn.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpsrcwp.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll
2016-08-14 17:41 - 2010-11-20 08:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkmap.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00656384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnLineIDCpl.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qcap.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL
2016-08-14 17:41 - 2010-11-20 08:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2016-08-14 17:41 - 2010-11-20 08:20 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MediaMetadataHandler.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-08-14 17:41 - 2010-11-20 08:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-08-14 17:41 - 2010-11-20 08:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2016-08-14 17:41 - 2010-11-20 08:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00093696 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\SysWOW64\fms.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll
2016-08-14 17:41 - 2010-11-20 08:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpx.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\defaultlocationcpl.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscmmc.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-08-14 17:41 - 2010-11-20 08:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-08-14 17:41 - 2010-11-20 08:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetup.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00098816 _____ (Microsoft) C:\Windows\SysWOW64\Robocopy.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe
2016-08-14 17:41 - 2010-11-20 08:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe
2016-08-14 17:41 - 2010-11-20 08:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2016-08-14 17:41 - 2010-11-20 08:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2016-08-14 17:41 - 2010-11-20 08:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2016-08-14 17:41 - 2010-11-20 08:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2016-08-14 17:41 - 2010-11-20 08:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2016-08-14 17:41 - 2010-11-20 08:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2016-08-14 17:41 - 2010-11-20 08:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr
2016-08-14 17:41 - 2010-11-20 08:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-08-14 17:41 - 2010-11-20 08:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2016-08-14 17:41 - 2010-11-20 08:16 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2016-08-14 17:41 - 2010-11-20 08:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-08-14 17:41 - 2010-11-20 08:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2016-08-14 17:41 - 2010-11-20 08:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2016-08-14 17:41 - 2010-11-20 07:04 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-08-14 17:41 - 2010-11-20 06:52 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2016-08-14 17:41 - 2010-11-20 06:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2016-08-14 17:41 - 2010-11-20 06:44 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2016-08-14 17:41 - 2010-11-20 06:44 - 00184960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2016-08-14 17:41 - 2010-11-20 06:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2016-08-14 17:41 - 2010-11-20 06:43 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-08-14 17:41 - 2010-11-20 06:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2016-08-14 17:41 - 2010-11-20 05:49 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-08-14 17:41 - 2010-11-20 05:06 - 00294400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-08-14 17:41 - 2010-11-04 22:11 - 00433512 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-08-14 17:41 - 2010-11-04 22:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
2016-08-14 17:41 - 2010-11-04 21:58 - 00155472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2016-08-14 17:41 - 2010-11-04 21:58 - 00080720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2016-08-14 17:41 - 2010-11-04 21:57 - 00154960 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2016-08-14 17:40 - 2010-11-20 09:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 00527872 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2016-08-14 17:40 - 2010-11-20 09:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-08-14 17:40 - 2010-11-20 09:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-08-14 17:40 - 2010-11-20 09:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2016-08-14 17:40 - 2010-11-20 09:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2016-08-14 17:40 - 2010-11-20 09:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-08-14 17:40 - 2010-11-20 09:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\BWUnpairElevated.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2016-08-14 17:40 - 2010-11-20 09:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2016-08-14 17:40 - 2010-11-20 09:24 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2016-08-14 17:40 - 2010-11-20 09:24 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2016-08-14 17:40 - 2010-11-20 09:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2016-08-14 17:40 - 2010-11-20 09:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2016-08-14 17:40 - 2010-11-20 09:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2016-08-14 17:40 - 2010-11-20 09:24 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe
2016-08-14 17:40 - 2010-11-20 09:24 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-08-14 17:40 - 2010-11-20 09:16 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-08-14 17:40 - 2010-11-20 09:15 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-08-14 17:40 - 2010-11-20 09:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-08-14 17:40 - 2010-11-20 09:14 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2016-08-14 17:40 - 2010-11-20 09:13 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2016-08-14 17:40 - 2010-11-20 09:13 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2016-08-14 17:40 - 2010-11-20 09:12 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2016-08-14 17:40 - 2010-11-20 09:02 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2016-08-14 17:40 - 2010-11-20 09:02 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2016-08-14 17:40 - 2010-11-20 09:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2016-08-14 17:40 - 2010-11-20 08:58 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2016-08-14 17:40 - 2010-11-20 08:54 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2016-08-14 17:40 - 2010-11-20 08:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2016-08-14 17:40 - 2010-11-20 08:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-08-14 17:40 - 2010-11-20 08:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-08-14 17:40 - 2010-11-20 08:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-08-14 17:40 - 2010-11-20 08:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2016-08-14 17:40 - 2010-11-20 08:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese30.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdwcn.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdsbas.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiavideo.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppinst.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL
2016-08-14 17:40 - 2010-11-20 08:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpd3d.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRAPI.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdprefdrvapi.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll
2016-08-14 17:40 - 2010-11-20 08:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-08-14 17:40 - 2010-11-20 08:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2016-08-14 17:40 - 2010-11-20 08:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL
2016-08-14 17:40 - 2010-11-20 08:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptui.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2016-08-14 17:40 - 2010-11-20 08:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iTVData.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00082944 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll
2016-08-14 17:40 - 2010-11-20 08:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll
2016-08-14 17:40 - 2010-11-20 08:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL
2016-08-14 17:40 - 2010-11-20 08:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll
2016-08-14 17:40 - 2010-11-20 08:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimserv.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00280064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-08-14 17:40 - 2010-11-20 08:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-08-14 17:40 - 2010-11-20 08:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr
2016-08-14 17:40 - 2010-11-20 08:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr
2016-08-14 17:40 - 2010-11-20 08:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr
2016-08-14 17:40 - 2010-11-20 08:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe
2016-08-14 17:40 - 2010-11-20 08:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2016-08-14 17:40 - 2010-11-20 08:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl
2016-08-14 17:40 - 2010-11-20 08:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax
2016-08-14 17:40 - 2010-11-20 08:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2016-08-14 17:40 - 2010-11-20 08:08 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-08-14 17:40 - 2010-11-20 08:08 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2016-08-14 17:40 - 2010-11-20 08:08 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUQ.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUF.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSG.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdlk41a.dll
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGR1.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGKL.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDCZ1.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSF.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDPO.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDNEPR.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTAM.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINORI.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAR.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINKAN.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINHIN.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBEN.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUS.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUGHR1.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTURME.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAJIK.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMON.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMAORI.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDLT1.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTEL.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGEO.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBULG.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBLR.DLL
2016-08-14 17:40 - 2010-11-20 08:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2016-08-14 17:40 - 2010-11-20 08:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-08-14 17:40 - 2010-11-20 08:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizres.dll
2016-08-14 17:40 - 2010-11-20 08:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-08-14 17:40 - 2010-11-20 08:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2016-08-14 17:40 - 2010-11-20 08:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pifmgr.dll
2016-08-14 17:40 - 2010-11-20 08:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2016-08-14 17:40 - 2010-11-20 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2016-08-14 17:40 - 2010-11-20 07:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2016-08-14 17:40 - 2010-11-20 07:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2016-08-14 17:40 - 2010-11-20 06:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2016-08-14 17:40 - 2010-11-20 06:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2016-08-14 17:40 - 2010-11-20 06:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2016-08-14 17:40 - 2010-11-20 06:50 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2016-08-14 17:40 - 2010-11-20 06:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2016-08-14 17:40 - 2010-11-20 06:44 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2016-08-14 17:40 - 2010-11-20 06:44 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2016-08-14 17:40 - 2010-11-20 06:43 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-08-14 17:40 - 2010-11-20 06:43 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2016-08-14 17:40 - 2010-11-20 06:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-08-14 17:40 - 2010-11-20 06:42 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-08-14 17:40 - 2010-11-20 06:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2016-08-14 17:40 - 2010-11-20 06:33 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2016-08-14 17:40 - 2010-11-20 06:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-08-14 17:40 - 2010-11-20 06:14 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-08-14 17:40 - 2010-11-20 06:09 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2016-08-14 17:40 - 2010-11-20 06:04 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2016-08-14 17:40 - 2010-11-20 05:30 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2016-08-14 17:40 - 2010-11-20 05:26 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-08-14 17:40 - 2010-11-20 05:22 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2016-08-14 17:40 - 2010-11-20 05:19 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2016-08-14 17:40 - 2010-11-09 21:48 - 00010429 _____ C:\Windows\system32\ScavengeSpace.xml
2016-08-14 17:40 - 2010-11-04 22:20 - 00105559 _____ C:\Windows\SysWOW64\RacRules.xml
2016-08-14 17:40 - 2010-11-04 22:20 - 00105559 _____ C:\Windows\system32\RacRules.xml
2016-08-14 17:39 - 2010-11-20 09:26 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2016-08-14 17:39 - 2010-11-20 08:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll
2016-08-14 17:39 - 2010-11-20 08:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2016-08-14 17:39 - 2009-06-10 17:39 - 00001041 _____ C:\Windows\SysWOW64\tcpbidi.xml
2016-08-14 17:36 - 2010-11-20 09:27 - 00529408 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2016-08-14 16:55 - 2011-08-30 01:25 - 14173184 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-08-14 16:55 - 2011-08-30 00:21 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-08-14 16:37 - 2016-08-14 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-08-14 16:36 - 2016-08-14 16:36 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-08-14 16:34 - 2016-08-14 16:34 - 00001420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2016-08-14 16:34 - 2016-08-14 16:34 - 00001336 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
2016-08-14 16:34 - 2016-08-14 16:34 - 00001267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
2016-08-14 16:34 - 2016-08-14 16:34 - 00000000 ____D C:\Windows\en
2016-08-14 16:33 - 2016-08-14 22:08 - 00000000 ____D C:\Program Files\Windows Live
2016-08-14 16:32 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2016-08-14 16:32 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2016-08-14 16:32 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2016-08-14 16:32 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2016-08-14 16:03 - 2016-08-14 16:05 - 00000000 ____D C:\Windows\system32\MRT
2016-08-14 16:03 - 2016-08-14 16:03 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-08-14 15:58 - 2016-06-25 12:03 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe
2016-08-14 15:58 - 2011-04-09 02:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2016-08-14 15:58 - 2011-04-09 01:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2016-08-14 15:37 - 2016-08-15 17:48 - 00195836 _____ C:\Windows\ntbtlog.txt
2016-08-14 15:36 - 2016-08-14 15:36 - 00000000 ____D C:\Windows\pss
2016-08-14 15:23 - 2016-08-14 15:23 - 00003544 ____N C:\bootsqm.dat
2016-08-14 13:58 - 2016-08-14 13:58 - 00000000 ____D C:\Users\Administrator
2016-08-14 03:50 - 2016-08-14 03:50 - 00000000 ____D C:\Users\Pat\AppData\Local\PackageAware
2016-08-14 03:40 - 2016-08-14 03:40 - 00000000 ____D C:\Users\Pat\AppData\Local\CrashRpt
2016-08-14 03:38 - 2016-08-14 03:48 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Real
2016-08-14 03:37 - 2016-08-14 03:48 - 00000000 ____D C:\ProgramData\Real
2016-08-14 03:33 - 2016-08-14 03:33 - 00000000 ____D C:\Users\Pat\My Backup Files
2016-08-14 03:19 - 2016-08-14 03:19 - 00000000 ____D C:\Users\Pat\AppData\Local\ElevatedDiagnostics
2016-08-14 03:02 - 2016-08-14 03:02 - 00000000 ____D C:\Users\Pat\AppData\Roaming\CyberLink
2016-08-14 02:00 - 2016-08-14 02:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2016-08-14 02:00 - 2016-08-14 02:00 - 00000000 ____D C:\Program Files\VS Revo Group
2016-08-14 01:31 - 2016-08-14 02:30 - 00000000 ____D C:\Users\Pat\Desktop\Shortcuts
2016-08-14 01:16 - 2016-08-14 01:16 - 00000000 ____D C:\Windows\SMINST
2016-08-14 01:15 - 2016-07-27 15:25 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-08-14 01:06 - 2016-08-14 13:52 - 00002198 _____ C:\Windows\epplauncher.mif
2016-08-14 01:05 - 2016-08-14 01:06 - 00000000 ____D C:\Program Files\Microsoft Security Client
2016-08-14 01:05 - 2016-08-14 01:05 - 00002119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2016-08-14 01:05 - 2016-08-14 01:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2016-08-14 00:40 - 2016-08-15 18:18 - 00000000 ____D C:\Users\Pat\AppData\Local\SupportSoft
2016-08-14 00:40 - 2016-08-14 23:15 - 00001415 _____ C:\Users\Pat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-08-14 00:40 - 2016-08-14 00:40 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Roxio
2016-08-14 00:40 - 2016-08-14 00:40 - 00000000 ____D C:\Users\Pat\AppData\Local\Stardock_Corporation
2016-08-14 00:40 - 2016-08-14 00:40 - 00000000 ____D C:\Users\Pat\AppData\Local\DataSafeOnline
2016-08-14 00:39 - 2016-08-15 17:43 - 00000000 ____D C:\Users\Pat\AppData\Local\SoftThinks
2016-08-14 00:39 - 2016-08-14 00:39 - 00000000 ____D C:\Users\Pat\AppData\Local\VirtualStore
2016-08-14 00:39 - 2016-08-14 00:39 - 00000000 ____D C:\Users\Default\AppData\Local\SoftThinks
2016-08-14 00:39 - 2016-08-14 00:39 - 00000000 ____D C:\Users\Default User\AppData\Local\SoftThinks
2016-08-14 00:36 - 2016-08-14 13:52 - 00077840 _____ C:\Users\Pat\AppData\Local\GDIPFONTCACHEV1.DAT
2016-08-14 00:36 - 2016-08-14 00:36 - 00001975 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Help Documentation.lnk
2016-08-14 00:36 - 2016-08-14 00:36 - 00000020 ___SH C:\Users\Pat\ntuser.ini
2016-08-14 00:35 - 2016-08-15 17:19 - 00000000 ____D C:\Users\Pat
2016-08-14 00:35 - 2016-08-14 00:35 - 00000000 _SHDL C:\Users\Pat\My Documents
2016-08-14 00:35 - 2016-08-14 00:35 - 00000000 _SHDL C:\Users\Pat\Documents\My Videos
2016-08-14 00:35 - 2016-08-14 00:35 - 00000000 _SHDL C:\Users\Pat\Documents\My Pictures
2016-08-14 00:35 - 2016-08-14 00:35 - 00000000 _SHDL C:\Users\Pat\Documents\My Music
2016-08-14 00:35 - 2009-07-14 03:44 - 00000000 ____D C:\Users\Pat\AppData\Roaming\Media Center Programs

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-08-15 18:18 - 2010-05-07 18:22 - 00000000 ____D C:\ProgramData\SupportSoft
2016-08-15 18:18 - 2010-05-07 18:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Support Center
2016-08-15 18:18 - 2010-05-07 18:21 - 00000000 ____D C:\Program Files (x86)\Dell Support Center
2016-08-15 18:18 - 2010-05-07 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell DataSafe
2016-08-15 18:18 - 2010-05-07 18:15 - 00000000 ____D C:\Program Files (x86)\Dell DataSafe Online
2016-08-15 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\NDF
2016-08-15 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\registration
2016-08-15 17:51 - 2009-07-14 00:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-08-15 17:51 - 2009-07-14 00:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-08-15 17:50 - 2009-07-14 01:13 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2016-08-15 17:50 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\inf
2016-08-15 17:49 - 2010-05-07 18:20 - 00000000 ____D C:\Program Files (x86)\Dell DataSafe Local Backup
2016-08-15 17:43 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-15 14:41 - 2010-05-07 18:21 - 00000000 ____D C:\ProgramData\PCDr
2016-08-15 14:39 - 2010-05-07 18:12 - 00000000 ____D C:\ProgramData\Dell
2016-08-14 23:58 - 2010-05-07 18:10 - 00000000 ____D C:\Program Files (x86)\Java
2016-08-14 23:56 - 2010-05-07 18:11 - 00269888 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2016-08-14 23:13 - 2009-07-14 00:45 - 00334704 _____ C:\Windows\system32\FNTCACHE.DAT
2016-08-14 23:11 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-08-14 18:26 - 2009-07-14 01:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2016-08-14 18:18 - 2009-07-14 03:45 - 00000000 ____D C:\Program Files\Windows Journal
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\Windows Defender
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-08-14 18:18 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\manifeststore
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2016-08-14 18:18 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\servicing
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\Setup
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\oobe
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\migwiz
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\manifeststore
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\Dism
2016-08-14 18:17 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2016-08-14 17:56 - 2009-07-13 22:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2016-08-14 17:56 - 2009-07-13 22:36 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2016-08-14 16:57 - 2010-05-07 18:12 - 00000000 ____D C:\Program Files (x86)\Intel
2016-08-14 16:38 - 2010-05-07 18:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-08-14 16:37 - 2009-07-13 23:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-08-14 03:57 - 2009-07-14 01:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-08-14 03:56 - 2010-05-07 18:15 - 00000000 ____D C:\ProgramData\WildTangent
2016-08-14 03:52 - 2010-05-07 18:11 - 00000000 ____D C:\Program Files\Dell
2016-08-14 03:51 - 2010-05-07 18:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2016-08-14 02:20 - 2010-05-07 18:35 - 00000000 ____D C:\ProgramData\McAfee
2016-08-14 02:11 - 2010-05-07 18:25 - 00000000 ____D C:\Program Files (x86)\DELL
2016-08-14 02:04 - 2009-07-14 03:45 - 00000000 ____D C:\Windows\ShellNew
2016-08-14 01:32 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\rescache
2016-08-14 01:30 - 2010-05-07 20:44 - 00000000 ____D C:\Windows\Panther
2016-08-14 01:06 - 2010-05-07 20:35 - 00000000 ____D C:\dell
2016-08-14 00:35 - 2009-07-13 23:20 - 00000000 __RHD C:\Users\Public\Libraries

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2016-08-14 16:30

==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-08-2016 01
Ran by Pat (15-08-2016 17:57:23)
Running from C:\Users\Pat\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2016-08-14 04:35:49)
Boot Mode: Normal
==========================================================

==================== Accounts: =============================

Administrator (S-1-5-21-203203728-1507485769-1567745242-500 - Administrator - Disabled)
Guest (S-1-5-21-203203728-1507485769-1567745242-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-203203728-1507485769-1567745242-1002 - Limited - Enabled)
Pat (S-1-5-21-203203728-1507485769-1567745242-1001 - Administrator - Enabled) => C:\Users\Pat

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AS: Microsoft Security Essentials (Enabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.0.45.2 - Adobe Systems Incorporated)
Adobe Reader 9.1.2 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A91000000001}) (Version: 9.1.2 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
Banctec Service Agreement (HKLM-x32\...\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell DataSafe Online (HKLM-x32\...\{13766F76-6C8C-4E57-A9F3-3212D1C6E0D1}) (Version: 1.2.0009 - Dell, Inc.)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
Dell Support Center (Support Software) (HKLM-x32\...\{E3BFEE55-39E2-4BE0-B966-89FE583822C1}) (Version: 2.5.09100 - Dell)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1102.115.102 - ALPS ELECTRIC CO., LTD.)
Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 1.40.05 - Creative Technology Ltd)
Dell Wireless WLAN Card Utility (HKLM\...\Dell Wireless WLAN Card Utility) (Version: 5.30.21.0 - Dell Inc.)
GoToAssist 8.0.0.514 (HKLM-x32\...\GoToAssist) (Version:  - )
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1029 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Live! Cam Avatar Creator (HKLM-x32\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.3009.1 - Creative Technology Ltd)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.6029 - CyberLink Corp.)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 9.6.6 - Dell Inc.)
Revo Uninstaller 2.0.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.0 - VS Revo Group, Ltd.)
Roxio Burn (HKLM-x32\...\{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}) (Version: 1.01 - Roxio)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {B88193D8-CCCC-439C-A05B-AE0D99A554F5} - System32\Tasks\DJWXHBL1\Administrator - Start WLAN Tray Applet => C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE [2009-07-16] (Dell Inc.)
Task: {EDBEACE4-92F0-476D-B29E-1D161387AE8E} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\Windows\system32\EOSNotify.exe [2016-06-25] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2010-05-07 18:11 - 2009-07-16 21:06 - 00033280 _____ () C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE
2010-05-07 18:11 - 2009-07-16 21:06 - 00058368 _____ () C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwlrmt.dll
2010-05-07 18:20 - 2011-01-13 14:39 - 00783680 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
2010-05-07 18:20 - 2011-01-13 14:37 - 00058688 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STCoreXml.dll
2010-05-07 18:20 - 2011-01-13 14:36 - 00116032 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\PSTVdsDisk.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00128320 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00099648 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STMsXml.dll
2010-05-07 18:20 - 2011-01-13 14:36 - 01123648 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00079168 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00234816 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00075072 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00111936 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00121152 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll
2010-05-07 18:20 - 2011-01-13 14:42 - 00025920 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\SftBRCCPiped.dll
2010-05-07 18:20 - 2011-01-13 14:37 - 00025920 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STBRCCServCLR.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-203203728-1507485769-1567745242-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pat\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: Apoint => C:\Program Files\DellTPad\Apoint.exe
MSCONFIG\startupreg: Dell DataSafe Online => "C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m
MSCONFIG\startupreg: Dell Webcam Central => "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
MSCONFIG\startupreg: DellSupportCenter => "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
MSCONFIG\startupreg: Desktop Disc Tool => "c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
MSCONFIG\startupreg: IAAnotif => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
MSCONFIG\startupreg: PDVDDXSrv => "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
MSCONFIG\startupreg: QuickSet => C:\Program Files\Dell\QuickSet\QuickSet.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{08465B37-01A1-4E58-877B-5220A7F240DD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PowerDVD.exe
FirewallRules: [{492DFDD8-E56D-4DF5-B208-781D4907D7A3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
FirewallRules: [{D1E644B0-0D1A-40AF-91C9-9E12BE4D1703}] => (Allow) LPort=2869
FirewallRules: [{8194EA65-5CC7-4A3B-8FA7-CD56E90210BC}] => (Allow) LPort=1900

==================== Restore Points =========================

14-08-2016 17:47:38 Windows 7 Service Pack 1
14-08-2016 18:52:03 Windows Update
14-08-2016 19:53:42 Windows Update
14-08-2016 21:55:26 Revo Uninstaller's restore point - Bing Bar
14-08-2016 21:58:27 Revo Uninstaller's restore point - Windows Live Mesh ActiveX Control for Remote Connections
14-08-2016 21:59:29 Revo Uninstaller's restore point - Windows Live Essentials
14-08-2016 22:07:04 Windows Live Essentials
14-08-2016 22:07:16 WLSetup
14-08-2016 22:59:18 Windows Modules Installer
15-08-2016 12:47:22 Revo Uninstaller's restore point - Dell DataSafe Local Backup
15-08-2016 12:48:42 Revo Uninstaller's restore point - Dell DataSafe Local Backup - Support Software
15-08-2016 12:51:24 Revo Uninstaller's restore point - Dell DataSafe Local Backup - Support Software
15-08-2016 12:53:48 Removed Dell DataSafe Local Backup - Support Software
15-08-2016 12:55:57 Revo Uninstaller's restore point - Dell DataSafe Online
15-08-2016 12:56:10 Removed Dell DataSafe Online.

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
==================
Error: (08/15/2016 02:39:24 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: Pat-PC)
Description: Application or service 'SupportSoft Sprocket Service (DellSupportCenter)' could not be restarted.

Error: (08/15/2016 12:47:21 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {3c7f0a15-8c0b-4ed5-bf40-0821f37a8cec}

Error: (08/15/2016 11:58:30 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program iexplore.exe version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: bec

Start Time: 01d1f6ac38bdf8dc

Termination Time: 0

Application Path: C:\Program Files\Internet Explorer\iexplore.exe

Report Id:

Error: (08/15/2016 12:45:40 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1608

Start Time: 01d1f6afca4f1c9e

Termination Time: 24

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (08/15/2016 12:45:04 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 13fc

Start Time: 01d1f6adfa4df876

Termination Time: 14

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (08/15/2016 12:32:05 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: b20

Start Time: 01d1f6ac5cc093d9

Termination Time: 10

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (08/15/2016 12:29:15 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SndVol.exe version 6.1.7601.17514 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: c8c

Start Time: 01d1f6ad5e635e80

Termination Time: 19

Application Path: C:\Windows\system32\SndVol.exe

Report Id: ac4e99c7-62a0-11e6-b47f-a4badbbd202d

Error: (08/14/2016 09:55:26 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.

Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {2969bb2b-10df-4cb6-be63-31545d7d1dd1}

Error: (08/14/2016 06:19:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: sprtsvc.exe, version: 7.0.1438.0, time stamp: 0x49334e4e
Faulting module name: sprtsvc.exe, version: 7.0.1438.0, time stamp: 0x49334e4e
Exception code: 0xc0000005
Fault offset: 0x000098ad
Faulting process id: 0x830
Faulting application start time: 0xsprtsvc.exe0
Faulting application path: sprtsvc.exe1
Faulting module path: sprtsvc.exe2
Report Id: sprtsvc.exe3

Error: (08/14/2016 06:19:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAANTMon.exe, version: 8.9.0.1023, time stamp: 0x4a287cc7
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x730c6cc4
Faulting process id: 0x77c
Faulting application start time: 0xIAANTMon.exe0
Faulting application path: IAANTMon.exe1
Faulting module path: IAANTMon.exe2
Report Id: IAANTMon.exe3

System errors:
=============
Error: (08/15/2016 05:43:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dock Login Service service failed to start due to the following error:
%%2 = The system cannot find the file specified.

Error: (08/15/2016 05:20:26 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SftService service.

Error: (08/15/2016 05:19:55 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SftService service.

Error: (08/15/2016 05:19:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dock Login Service service failed to start due to the following error:
%%2 = The system cannot find the file specified.

Error: (08/15/2016 05:02:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dock Login Service service failed to start due to the following error:
%%2 = The system cannot find the file specified.

Error: (08/15/2016 04:14:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Security Center service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.

Error: (08/15/2016 04:14:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The TCP/IP NetBIOS Helper service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 100 milliseconds: Restart the service.

Error: (08/15/2016 04:14:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The HomeGroup Provider service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (08/15/2016 04:14:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Event Log service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (08/15/2016 04:14:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The DHCP Client service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.

==================== Memory info ===========================

Processor: Pentium® Dual-Core CPU T4400 @ 2.20GHz
Percentage of memory in use: 80%
Total physical RAM: 3032.36 MB
Available physical RAM: 597.89 MB
Total Virtual: 6062.91 MB
Available Virtual: 3556.06 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:283.4 GB) (Free:253.83 GB) NTFS
Drive y: (RECOVERY) (Fixed) (Total:14.65 GB) (Free:8.2 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 7144970A)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=14.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=283.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================


  • 0

Advertisements


#2
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Hi! My name is zep516 and Welcome to Geekstogo!
I'll do the best I can to resolve your computer issue
Please make sure to carefully read any instruction that I give you. If you're not sure, or if something unexpected happens, don't continue Stop and ask! Never be afraid to ask questions! :)

We can do some Malware scans

Next

Clean out your temporary internet files and temp files.
Download TFC by OldTimer http://oldtimer.geekstogo.com/TFC.exe to your desktop.
Double-click TFC.exe to run it.
Note: If you are running on Vista, right-click on the file and choose Run As Administrator
TFC will close all programs when run, so make sure you have saved all your work before you begin.

* Click the Start button to begin the cleaning process.
* Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two.
* Please let TFC run uninterrupted until it is finished.
Once TFC is finished it should restart your computer. If it does not, please manually restart the computer yourself to ensure a complete cleaning.

Next
Please download AdwCleaner by Xplode onto your Desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click the Scan button and wait for the process to complete.
  • Click the logfile button and the log will open in Notepad.
  • Click on the Clean button follow the prompts.
  • A log file will automatically open after the scan has finished and the PC has rebooted.
  • Please post the content of that log file with your next answer.
  • The report will be saved in the C:\AdwCleaner folder.

    Malwarebytes scan
  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-version.exe and follow the prompts to install the program.
  • Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • If an update is found, you will be prompted to download and install the latest version.
  • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
  • When the scan is complete , make sure that that all Threats are selected, and click Remove Selected.
  • Reboot your computer if prompted.

    Posting the Malwarebytes log.
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the Scan Log which shows the Date and time of the scan just performed.
  • Click 'Export'.
  • Click 'Text file (*.txt)'
  • In the Save File dialog box which appears, click on Desktop.
  • In the File name: box type a name for your scan log.
  • A message box named 'File Saved' should appear stating "Your file has been successfully exported".
  • Click Ok
  • post that saved log to your next reply.

    In your next reply:
    Post the adwCleaner log file c1.txt
    Post the Malwarebytes scan log

    Thanks
    Joe :)

  • 0

#3
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi

Thank you for the help. I did the scans and here are the results. This computer was given me fits with shutting down having to wait for programs running in background to close down. Have no idea what they are and why they are running and starting up is so slow and when opening IE just getting a spinning circle so sorry for the slow delay.

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 8/18/2016
Scan Time: 6:13 AM
Logfile: scan.txt
Administrator: Yes

Version: 2.2.1.1043
Malware Database: v2016.08.18.02
Rootkit Database: v2016.08.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Pat

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 303169
Time Elapsed: 24 min, 28 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)
# AdwCleaner v6.000 - Logfile created 18/08/2016 at 06:08:53
# Updated on 12/08/2016 by ToolsLib
# Database : 2016-08-18.1 [Server]
# Operating System : Windows 7 Home Premium Service Pack 1 (X64)
# Username : Pat - PAT-PC
# Running from : C:\Users\Pat\Desktop\adwcleaner_6.000.exe
# Mode: Clean
# Support : https://toolslib.net/forum



***** [ Services ] *****



***** [ Folders ] *****

[-] Folder deleted: C:\Users\Pat\AppData\Local\PackageAware


***** [ Files ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Shortcuts ] *****



***** [ Scheduled Tasks ] *****



***** [ Registry ] *****

[-] Value deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]


***** [ Web browsers ] *****



*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [934 Bytes] - [18/08/2016 06:08:53]
C:\AdwCleaner\AdwCleaner[S0].txt - [1249 Bytes] - [18/08/2016 06:07:10]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1079 Bytes] ##########
  • 0

#4
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
A few items to fix

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Open notepad (Start =>All Programs => Accessories => Notepad).
Copy/Paste the contents of the code box below into Notepad.
 
start
CloseProcesses:
CreateRestorePoint:
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
C:\Program Files\Dell\DellDock\DellDock.exe (No File)
SearchScopes: HKLM -> DefaultScope {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
Toolbar: HKU\S-1-5-21-203203728-1507485769-1567745242-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
S2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [X]
2016-08-14 02:20 - 2010-05-07 18:35 - 00000000 ____D C:\ProgramData\McAfee
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
RemoveProxy:
hosts:
Emptytemp:
  • Click Format and ensure Wordwrap is unchecked.
  • Save as Fixlist.txt to your Desktop (Must be in this location)
  • Run FRST/FRST64 and press the Fix button just once and wait.
  • If the tool needed a restart please make sure you let the system to restart normally and let the tool completes its run after restart.
  • The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.
Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.

Please also run the McAfee Consumer Products Removal tool Download
http://www.bleepingc...s-removal-tool/
Download it an run it

Next
Please download Listparts
Run the tool, click Scan and post the log (Result.txt) it makes.
http://www.bleepingc...istparts/dl/78/

Post the fixlog.txt in your next reply.
Post the log (Result.txt)From Listparts

Thanks
Joe :)
  • 0

#5
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi again.

 

Here are the results from scans.

 

ListParts by Farbar Version: 31-07-2014
Ran by Pat (administrator) on 18-08-2016 at 12:51:06
Windows 7 (X64)
Running From: C:\Users\Pat\Desktop
Language: English (United States)
************************************************************

========================= Memory info ======================

Percentage of memory in use: 32%
Total physical RAM: 3032.36 MB
Available physical RAM: 2038.44 MB
Total Pagefile: 6062.91 MB
Available Pagefile: 4964.97 MB
Total Virtual: 8192 MB
Available Virtual: 8191.92 MB

======================= Partitions =========================

1 Drive c: (OS) (Fixed) (Total:283.4 GB) (Free:253.71 GB) NTFS

  Disk ###  Status         Size     Free     Dyn  Gpt
  --------  -------------  -------  -------  ---  ---
  Disk 0    Online          298 GB      0 B        

Partitions of Disk 0:
===============

Disk ID: 7144970A

  Partition ###  Type              Size     Offset
  -------------  ----------------  -------  -------
  Partition 1    OEM                 39 MB    31 KB
  Partition 2    Primary             14 GB    40 MB
  Partition 3    Primary            283 GB    14 GB

======================================================================================================

Disk: 0
Partition 1
Type  : DE
Hidden: Yes
Active: No

There is no volume associated with this partition.

======================================================================================================

Disk: 0
Partition 2
Type  : 07
Hidden: No
Active: Yes

  Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  ----------  ---  -----------  -----  ----------  -------  ---------  --------
* Volume 1         RECOVERY     NTFS   Partition     14 GB  Healthy    System (partition with boot components) 

======================================================================================================

Disk: 0
Partition 3
Type  : 07
Hidden: No
Active: No

  Volume ###  Ltr  Label        Fs     Type        Size     Status     Info
  ----------  ---  -----------  -----  ----------  -------  ---------  --------
* Volume 2     C   OS           NTFS   Partition    283 GB  Healthy    Boot   

======================================================================================================
============================== MBR Partition Table ==================

==============================
Partitions of Disk 0:
===============
Disk ID: 7144970A
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=15 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=283 GB) - (Type=07 NTFS)

****** End Of Log ******

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-08-2016
Ran by Pat (18-08-2016 12:36:24) Run:1
Running from C:\Users\Pat\Desktop
Loaded Profiles: Pat (Available Profiles: Pat)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CloseProcesses:
CreateRestorePoint:
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (No File)
C:\Program Files\Dell\DellDock\DellDock.exe (No File)
SearchScopes: HKLM -> DefaultScope {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {D5215F6E-71EA-4C9D-8621-7295E5036D08} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll => No File
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
Toolbar: HKU\S-1-5-21-203203728-1507485769-1567745242-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
S2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [X]
2016-08-14 02:20 - 2010-05-07 18:35 - 00000000 ____D C:\ProgramData\McAfee
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\GoToAssist => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
RemoveProxy:
hosts:
Emptytemp:
*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\GoToAssist" => key removed successfully
C:\Program Files\Dell\DellDock\DellDock.exe => not found.
"C:\Program Files\Dell\DellDock\DellDock.exe (No File)" => not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DD5C54E2-C51E-43F6-994F-F47E9B4F28C7}" => key removed successfully
HKCR\CLSID\{DD5C54E2-C51E-43F6-994F-F47E9B4F28C7} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D5215F6E-71EA-4C9D-8621-7295E5036D08}" => key removed successfully
HKCR\Wow6432Node\CLSID\{D5215F6E-71EA-4C9D-8621-7295E5036D08} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}" => key removed successfully
"HKCR\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}" => key removed successfully
"HKCR\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}" => key removed successfully
HKU\S-1-5-21-203203728-1507485769-1567745242-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => value not found.
HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => key not found.
DockLoginService => service removed successfully
C:\ProgramData\McAfee => moved successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\GoToAssist" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MpfService" => key removed successfully
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys" => key removed successfully

========= bitsadmin /reset /allusers =========

BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

{77DF9F3F-CCC0-49C6-B833-7CEFD99B960A} canceled.
1 out of 1 jobs canceled.

========= End of CMD: =========

========= netsh winsock reset catalog =========

Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.

========= End of CMD: =========

========= ipconfig /flushdns =========

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========

========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-203203728-1507485769-1567745242-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-203203728-1507485769-1567745242-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully

========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8261579 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 2624262 B
Edge => 0 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 33058 B
systemprofile32 => 49659 B
LocalService => 132244 B
NetworkService => 148952 B
Pat => 6900685 B

RecycleBin => 0 B
EmptyTemp: => 25.3 MB temporary data Removed.

================================

The system needed a reboot.

==== End of Fixlog 12:37:02 ====


  • 0

#6
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Please run Combofix

You can download Combofix from one of these links. I want you to save it to the desktop and run it from there.1. Close any open browsers or any other programs that are open.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Double click on combofix.exe & follow the prompts.
When finished, it will produce a report for you.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion." Please restart the computer



Please post the Log from Combofix

Combofix usuage guide
http://www.bleepingc...to-use-combofix
  • 0

#7
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi

Here is the results for combofix

ComboFix 16-08-15.01 - Pat 08/18/2016  20:31:48.1.2 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.3032.1051 [GMT -4:00]
Running from: c:\users\Pat\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
SP: Microsoft Security Essentials *Disabled/Updated* {CDE0C533-D3CD-62A1-E772-AFADDF863628}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((   Files Created from 2016-07-19 to 2016-08-19  )))))))))))))))))))))))))))))))
.
.
2016-08-19 00:38 . 2016-08-19 00:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2016-08-19 00:31 . 2016-08-19 00:31 75888 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{872823ED-3431-414B-9178-CEF3633254DB}\offreg.856.dll
2016-08-18 10:12 . 2016-08-18 10:43 192216 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2016-08-18 10:12 . 2016-08-18 10:12 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2016-08-18 10:12 . 2016-08-18 10:12 -------- d-----w- c:\programdata\Malwarebytes
2016-08-18 10:12 . 2016-03-10 18:09 64896 ----a-w- c:\windows\system32\drivers\mwac.sys
2016-08-18 10:12 . 2016-03-10 18:08 140672 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2016-08-18 10:12 . 2016-03-10 18:08 27008 ----a-w- c:\windows\system32\drivers\mbam.sys
2016-08-18 10:05 . 2016-08-18 10:08 -------- d-----w- C:\AdwCleaner
2016-08-16 18:30 . 2009-07-14 01:41 258048 ----a-w- c:\windows\system32\Spool\prtprocs\x64\hpfppw73.dll
2016-08-15 21:45 . 2016-08-18 16:39 -------- d-----w- C:\FRST
2016-08-15 21:40 . 2016-08-15 21:40 75888 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{872823ED-3431-414B-9178-CEF3633254DB}\offreg.820.dll
2016-08-15 19:08 . 2016-08-15 22:18 -------- dc-h--w- c:\programdata\{010DD54D-6F97-418D-BC47-2089F30A0075}
2016-08-15 19:07 . 2016-08-15 19:08 -------- d-----w- c:\programdata\SupportAssistAgent
2016-08-15 18:41 . 2016-08-15 22:18 -------- d-----w- c:\program files\Dell Support Center
2016-08-15 18:37 . 2016-08-15 19:40 -------- d-----w- C:\temp
2016-08-15 03:56 . 2016-08-15 03:56 -------- d-----w- c:\program files (x86)\Common Files\Java
2016-08-15 03:56 . 2016-08-15 03:56 97856 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2016-08-15 03:55 . 2016-08-15 03:58 -------- d-----w- c:\programdata\Oracle
2016-08-15 03:10 . 2013-10-14 22:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2016-08-15 03:06 . 2016-08-15 03:06 243712 ----a-w- c:\windows\system32\wow64.dll
2016-08-15 03:05 . 2016-08-15 03:05 68608 ----a-w- c:\windows\system32\taskhost.exe
2016-08-15 02:59 . 2016-08-15 02:59 1887232 ----a-w- c:\windows\system32\d3d11.dll
2016-08-15 02:59 . 2016-08-15 02:59 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2016-08-14 23:55 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2016-08-14 23:55 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2016-08-14 23:55 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2016-08-14 23:55 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2016-08-14 23:54 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2016-08-14 23:54 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2016-08-14 23:54 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2016-08-14 23:54 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2016-08-14 23:54 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2016-08-14 23:54 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2016-08-14 23:53 . 2014-05-14 13:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2016-08-14 23:53 . 2014-05-14 13:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2016-08-14 23:53 . 2014-05-14 13:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2016-08-14 23:53 . 2014-05-14 13:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2016-08-14 23:43 . 2016-06-29 16:19 12007136 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{872823ED-3431-414B-9178-CEF3633254DB}\mpengine.dll
2016-08-14 21:47 . 2016-08-14 21:47 -------- d-----w- c:\windows\system32\SPReview
2016-08-14 21:47 . 2016-08-14 21:47 -------- d-----w- c:\windows\system32\EventProviders
2016-08-14 21:46 . 2016-08-15 01:56 -------- d-----w- c:\program files (x86)\Microsoft
2016-08-14 21:44 . 2010-11-05 01:57 48976 ----a-w- c:\windows\system32\netfxperf.dll
2016-08-14 21:44 . 2010-11-05 01:57 1942856 ----a-w- c:\windows\system32\dfshim.dll
2016-08-14 21:44 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2016-08-14 21:44 . 2010-11-20 13:27 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-08-14 21:44 . 2010-11-20 13:27 3715584 ----a-w- c:\windows\system32\mstscax.dll
2016-08-14 21:44 . 2010-11-20 11:07 59392 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2016-08-14 21:44 . 2010-11-20 13:27 14967808 ----a-w- c:\program files\DVD Maker\OmdBase.dll
2016-08-14 21:42 . 2010-11-20 13:27 481280 ----a-w- c:\windows\system32\wmpps.dll
2016-08-14 21:41 . 2010-11-20 13:27 448000 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tabskb.dll
2016-08-14 21:40 . 2010-11-20 13:25 31744 ----a-w- c:\windows\system32\AzSqlExt.dll
2016-08-14 21:39 . 2010-11-20 13:01 2560 ----a-w- c:\windows\system32\drivers\en-US\rdpwd.sys.mui
2016-08-14 21:39 . 2010-11-20 12:57 3072 ----a-w- c:\windows\system32\drivers\en-US\tsusbflt.sys.mui
2016-08-14 21:39 . 2010-11-20 13:11 6144 ----a-w- c:\windows\system32\drivers\en-US\IPMIDrv.sys.mui
2016-08-14 21:39 . 2010-11-20 13:10 4608 ----a-w- c:\windows\system32\drivers\en-US\kbdclass.sys.mui
2016-08-14 21:39 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2016-08-14 21:39 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2016-08-14 21:39 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2016-08-14 21:39 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2016-08-14 21:36 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2016-08-14 20:59 . 2016-06-29 16:19 12007136 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2016-08-14 20:55 . 2011-08-30 05:25 14173184 ----a-w- c:\windows\system32\shell32.dll
2016-08-14 20:36 . 2016-08-14 20:36 -------- d-----w- c:\program files\Microsoft Silverlight
2016-08-14 20:34 . 2016-08-14 20:34 -------- d-----w- c:\windows\en
2016-08-14 20:33 . 2016-08-15 02:08 -------- dc----w- c:\windows\system32\DRVSTORE
2016-08-14 20:33 . 2016-08-15 02:08 -------- d-----w- c:\program files\Windows Live
2016-08-14 20:32 . 2009-09-04 21:44 69464 ----a-w- c:\windows\SysWow64\XAPOFX1_3.dll
2016-08-14 20:32 . 2009-09-04 21:44 515416 ----a-w- c:\windows\SysWow64\XAudio2_5.dll
2016-08-14 20:32 . 2009-09-04 21:29 453456 ----a-w- c:\windows\SysWow64\d3dx10_42.dll
2016-08-14 20:32 . 2009-09-04 21:29 523088 ----a-w- c:\windows\system32\d3dx10_42.dll
2016-08-14 20:07 . 2016-08-14 20:07 15712 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\7fe6bf3f1d1f66723\MeshBetaRemover.exe
2016-08-14 20:07 . 2016-08-14 20:07 94040 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\7690d9ac1d1f6671b\DSETUP.dll
2016-08-14 20:07 . 2016-08-14 20:07 525656 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\7690d9ac1d1f6671b\DXSETUP.exe
2016-08-14 20:07 . 2016-08-14 20:07 1691480 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\7690d9ac1d1f6671b\dsetup32.dll
2016-08-14 20:07 . 2016-08-14 20:07 525656 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\74f9ce5d1d1f6671a\DXSETUP.exe
2016-08-14 20:07 . 2016-08-14 20:07 1691480 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\74f9ce5d1d1f6671a\dsetup32.dll
2016-08-14 20:07 . 2016-08-14 20:07 94040 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\74f9ce5d1d1f6671a\DSETUP.dll
2016-08-14 20:06 . 2016-08-14 20:06 6260088 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\67a459141d1f6670f\Silverlight.4.0.exe
2016-08-14 20:03 . 2016-08-14 20:05 -------- d-----w- c:\windows\system32\MRT
2016-08-14 20:03 . 2016-08-14 20:03 -------- d-----w- c:\windows\Migration
2016-08-14 19:58 . 2011-04-09 06:58 142336 ----a-w- c:\windows\system32\poqexec.exe
2016-08-14 19:58 . 2011-04-09 05:56 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2016-08-14 19:58 . 2016-06-25 16:03 304128 ----a-w- c:\windows\system32\EOSNotify.exe
2016-08-14 17:58 . 2016-08-14 17:58 -------- d-----w- c:\users\Administrator
2016-08-14 06:00 . 2016-08-14 06:00 -------- d-----w- c:\program files\VS Revo Group
2016-08-14 05:16 . 2016-08-14 05:16 -------- d-----w- c:\windows\SMINST
2016-08-14 05:15 . 2016-07-27 19:25 504488 ------w- c:\windows\system32\MpSigStub.exe
2016-08-14 05:12 . 2016-07-06 22:19 1167568 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B7020A9B-C9B2-47F1-A664-B4051F78406C}\gapaengine.dll
2016-08-14 05:05 . 2016-08-14 05:05 -------- d-----w- c:\program files (x86)\Microsoft Security Client
2016-08-14 05:05 . 2016-08-14 05:06 -------- d-----w- c:\program files\Microsoft Security Client
2016-08-14 04:39 . 2016-08-14 04:39 -------- d-----w- c:\users\Default\AppData\Local\SoftThinks
2016-08-14 04:35 . 2016-08-15 21:19 -------- d-----w- c:\users\Pat
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2016-08-15 03:06 . 2016-08-15 03:06 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2016-08-14 21:56 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2016-08-14 21:56 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2016-08-14 20:33 . 2010-06-24 15:33 24800 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2016-06-22 598552]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\program files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe" [2011-01-13 165184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WSDScan;WSD Scan Support via UMB;c:\windows\system32\DRIVERS\WSDScan.sys;c:\windows\SYSNATIVE\DRIVERS\WSDScan.sys [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [x]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys;c:\windows\SYSNATIVE\DRIVERS\CtClsFlt.sys [x]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
.
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2009-06-29 444416]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-06-30 365080]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2016-01-29 1340192]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-06-30 165912]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-06-30 385560]
"Broadcom Wireless Manager UI"="c:\program files\Dell\Dell Wireless WLAN Card\WLTRAY.exe" [2009-07-17 4968960]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
Trusted Zone: dell.com
TCP: DhcpNameServer = 192.168.1.254
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe /firstrun
Toolbar-Locked - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-203203728-1507485769-1567745242-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
.
[HKEY_USERS\S-1-5-21-203203728-1507485769-1567745242-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2016-08-18  20:41:24
ComboFix-quarantined-files.txt  2016-08-19 00:41
.
Pre-Run: 271,944,314,880 bytes free
Post-Run: 271,553,822,720 bytes free
.
- - End Of File - - 6D4610703ABD0AAD1EA9F69DB1DA1C24
 


  • 0

#8
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Download HijackThis
  • Go Here to download HijackThis program
  • Save HijackThis to your desktop.
  • Right Click on Hijackthis and select "Run as Admin" (XP users just need to double click to run)
  • Click on "Do A system scan and save a logfile" (if you do not see "Do A system scan and save a logfile" then click on main menu)
  • copy and paste hijackthis report into the topic

  • 0

#9
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts

Hi Here is the hijack scan

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 1:53:26 AM, on 8/19/2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)

Boot mode: Normal

Running processes:
C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Pat\Desktop\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft..../?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft..../?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 5362 bytes


  • 0

#10
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Hello,

I see Dell data safe local backup running at start up
O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe
I also see that you removed this program and apparently the line above was left behind

Lets get rid of it. Every time you boot the computer that file runs and may be taking up resources.

To do that:
Right click on the Hijackthis icon on the desktop and choose "Run as adminstrator"
Do a System scan only.
Place a check mark in the following bolded entries:

O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\scheduler\Launcher.exe


Clicked fix checked
Close Hijackthis
Reboot.

Next

Let's also try the bitdefender quickscan.
http://quickscan.bitdefender.com/
When it finishes there is a View Report option at the bottom. Click on it and copy and paste the report (even if it says nothing found).

Next
Click start, in the search box type cmd, now up towards the top right click on cmd and choose "Run as Adminstrator"
In the Command Prompt window type chkdsk c:/r and press Enter.
Please Note the space between k c:/r
  • The next dialog box will now show the following:

    Chkdsk cannot run because the volume is in use by another
    process. Would you like to schedule this volume to be
    checked the next time the system restarts? <Y/N>
  • Type Y
  • and reboot the computer.
  • Checkdisk will start once the computer reboots. It can take up to an hour or more to complete as it goes through the stages. Allow it to run uninterrupted till complete.[/list] To find the log that is produced please do the following:

    Please download ListChkdskResult by SleepyDude to the desktop.

  • Double click on the icon and click Run
  • The log will appear on your desktop as a .txt file and the notepad will open. Please copy and paste the results in your next reply.


    Thanks
    Joe :)

  • 0

Advertisements


#11
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi Joe. Thanks for all your help this is greatly appreciated. Here is the chkdisk scan.

ListChkdskResult by SleepyDude v0.1.7 Beta | 21-09-2013

------< Log generate on 8/19/2016 5:26:37 PM >------
Category: 0
Computer Name: Pat-PC
Event Code: 1001
Record Number: 2956
Source Name: Microsoft-Windows-Wininit
Time Written: 08-19-2016 @ 21:07:47
Event Type: Information
User:
Message:

Checking file system on C:
The type of the file system is NTFS.
Volume label is OS.

A disk check has been scheduled.
Windows will now check the disk.

CHKDSK is verifying files (stage 1 of 5)...
146944 file records processed.

File verification completed.
163 large file records processed.

0 bad file records processed.

0 EA records processed.

46 reparse records processed.

CHKDSK is verifying indexes (stage 2 of 5)...
191742 index entries processed.

Index verification completed.
0 unindexed files scanned.

0 unindexed files recovered.

CHKDSK is verifying security descriptors (stage 3 of 5)...
146944 file SDs/SIDs processed.

Cleaning up 344 unused index entries from index $SII of file 0x9.
Cleaning up 344 unused index entries from index $SDH of file 0x9.
Cleaning up 344 unused security descriptors.
Security descriptor verification completed.
22400 data files processed.

CHKDSK is verifying Usn Journal...
36474040 USN bytes processed.

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
146928 files processed.

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
66318726 free clusters processed.

Free space verification is complete.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows has made corrections to the file system.

297169239 KB total disk space.
31560908 KB in 99498 files.
74748 KB in 22401 indexes.
0 KB in bad sectors.
258675 KB in use by the system.
65536 KB occupied by the log file.
265274908 KB available on disk.

4096 bytes in each allocation unit.
74292309 total allocation units on disk.
66318727 allocation units available on disk.

Internal Info:
00 3e 02 00 37 dc 01 00 5d b3 03 00 00 00 00 00 .>..7...].......
2d 00 00 00 2e 00 00 00 00 00 00 00 00 00 00 00 -...............
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

Windows has finished checking your disk.
Please wait while your computer restarts.

-----------------------------------------------------------------------
Category: 0
Computer Name: Pat-PC
Event Code: 1001
Record Number: 1297
Source Name: Microsoft-Windows-Wininit
Time Written: 08-14-2016 @ 19:24:23
Event Type: Information
User:
Message:

Checking file system on C:
The type of the file system is NTFS.
Volume label is OS.

A disk check has been scheduled.
Windows will now check the disk.

CHKDSK is verifying files (stage 1 of 5)...
100352 file records processed.

File verification completed.
40 large file records processed.

0 bad file records processed.

0 EA records processed.

44 reparse records processed.

CHKDSK is verifying indexes (stage 2 of 5)...
133482 index entries processed.

Index verification completed.
0 unindexed files scanned.

0 unindexed files recovered.

CHKDSK is verifying security descriptors (stage 3 of 5)...
100352 file SDs/SIDs processed.

Cleaning up 297 unused index entries from index $SII of file 0x9.
Cleaning up 297 unused index entries from index $SDH of file 0x9.
Cleaning up 297 unused security descriptors.
Security descriptor verification completed.
16566 data files processed.

CHKDSK is verifying Usn Journal...
36612832 USN bytes processed.

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
100336 files processed.

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
68694606 free clusters processed.

Free space verification is complete.
Windows has checked the file system and found no problems.

297169239 KB total disk space.
22134564 KB in 60805 files.
44632 KB in 16567 indexes.
0 KB in bad sectors.
211615 KB in use by the system.
65536 KB occupied by the log file.
274778428 KB available on disk.

4096 bytes in each allocation unit.
74292309 total allocation units on disk.
68694607 allocation units available on disk.

Internal Info:
00 88 01 00 48 2e 01 00 15 56 02 00 00 00 00 00 ....H....V......
1e 00 00 00 2c 00 00 00 00 00 00 00 00 00 00 00 ....,...........
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................

Windows has finished checking your disk.
Please wait while your computer restarts.

-----------------------------------------------------------------------
  • 0

#12
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Hello,

So far everything is looking good, no Malware, and the hard disc checks good.

Lets check the System files

To do that
  • Open an elevated command prompt by right clicking on the command prompt and choosing Run as administrator.
  • In the elevated command prompt, type sfc /scannow and press Enter. Please note the space between sfc /
  • This may take a little bit of time to finish so your patience will be needed.
  • If there are no problems found System File Checker will say,
    "Windows resource protection did not find any integrity violations"

    If System file checker fails or can't fix a file follow the instructions below:

    When the scan is complete, open another elevated command prompt and copy and paste the following command, then press Enter.
    findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt"

    This will place a sfcdetails.txt file on your desktop with only the SFC scan result details from the CBS.LOG in it.
    Please copy and paste the results in your next reply.

  • 0

#13
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi
Ok ran scan and it says windows resource protection did not find any integrity violations. The computer seems to be faster on going to links on internet and doesn't have little wheel sitting there spinning forever now. But still having a problem on shutdown with waiting for programs to close. I have no idea how to stop this. Also start up still slow. Also when playing audio from anywhere web links sound is distorted or from cd I'm getting a weird sorta of blurp sound or echo very hard to describe the sound it makes.
  • 0

#14
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,806 posts
Hello,

But still having a problem on shutdown with waiting for programs to close.


Does it by chance say what program ? Like below..

1 program still needs to close:
(Waiting for) Task Host Window
  • 0

#15
Pat_54

Pat_54

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 212 posts
Hi It does but what happens is screen says program needs to close and stays there then flashes real quick which one but I never get to see what it says because another screen comes up and says shutting down.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP