Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Virus or Computer about to fail?


  • Please log in to reply

#1
alternate

alternate

    Member

  • Member
  • PipPip
  • 81 posts

Hi, folks!

My computer has slowed down a bit a couple of days ago. Simplest tasks are taking forever to execute and poor performance when using Chrome. A little better when I use Firefox. Can you help? here's my Farbar scan logs attached belowAttached File  FRST.txt   130.17KB   33 downloadsAttached File  Addition.txt   55.84KB   58 downloads

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-09-2016
Ran by deco (administrator) on DECO-PC (23-09-2016 22:12:04)
Running from C:\Users\deco\Downloads
Loaded Profiles: deco (Available Profiles: deco & Guest & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(Popcorn Time) C:\Program Files (x86)\Popcorn Time\Updater.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
() C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(Wondershare) C:\Program Files (x86)\iSkysoft\TunesOver\DriverInstall.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Windows\AutoKMS\AutoKMS.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(iSkySoft) C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7981088 2009-07-20] (Realtek Semiconductor)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-09-09] (Apple Inc.)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [611872 2010-08-04] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2016-09-01] (Apple Inc.)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296520 2014-11-07] (RealNetworks, Inc.)
HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [560192 2014-10-29] ()
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2066432 2014-10-31] (iSkySoft)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [Google Update] => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [103696 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [349968 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [AudioBox VSL] => C:\Program Files\PreSonus\AudioBox\AudioBox.exe [7593984 2014-07-16] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk [2016-04-28]
ShortcutTarget: RealPlayer Cloud Service UI.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin64\rpsystray.exe (RealNetworks, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 201.17.1.157 201.17.1.152
Tcpip\..\Interfaces\{15941a57-a8f8-44be-ae25-ead64009ca59}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{bc9b8eca-8d3a-463c-a441-d44690c56727}: [DhcpNameServer] 201.17.1.157 201.17.1.152
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2014-10-26] (RealDownloader)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-08-27] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-08-16] (Microsoft Corporation)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-10-26] (RealDownloader)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-08-27] (Microsoft Corporation)
BHO-x32: FLVBlaster.FLVBlasterIEAddon -> {807ca0aa-7cb3-4f03-bd61-076f618cc82d} -> C:\Windows\system32\mscoree.dll [2015-10-30] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-08-16] (Microsoft Corporation)
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: HKLM-x32 {E37CB5F0-51F5-4395-A808-5FA49E399008} hxxps://clickbanking.itau.com.br/itau/gbplugin/gbplugin2/cab/GbPluginUni.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2016-05-17] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\deco\AppData\Roaming\Mozilla\Firefox\Profiles\lb8aid18.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-04-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\new_plugin\npjp2.dll [No File]
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-13] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=17.0.15.10 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2014-11-07] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=17.0.15 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2014-10-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=17.0.15.10 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2014-11-07] (RealPlayer Cloud)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @emusic.com/eMusicPlugin DLM6 -> C:\Program Files (x86)\eMusic Download Manager 6\npEMusic602.dll [No File]
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\deco\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @talk.google.com/O1DPlugin -> C:\Users\deco\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @tools.google.com/Google Update;version=3 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @tools.google.com/Google Update;version=9 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppl3260.dll [2014-11-07] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll [2014-11-07] (RealPlayer Cloud)
FF Plugin ProgramFiles/Appdata: C:\Users\deco\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\deco\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Extension: (Firefox Hotfix) - C:\Users\deco\AppData\Roaming\Mozilla\Firefox\Profiles\lb8aid18.default\Extensions\[email protected] [2016-09-20]
FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25]
FF HKLM-x32\...\Firefox\Extensions: [{338950EA-82DB-44C1-930D-0C28E023C9F0}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-11-07] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://gmail.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default [2016-09-23]
CHR Extension: (Google Slides) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-22]
CHR Extension: (Google Docs) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-22]
CHR Extension: (Google Drive) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Google Search) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Disable Youtube™ HTML5 Player) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\enmofgaijnbjpblfljopnpdogpldapoc [2015-12-15]
CHR Extension: (Google Sheets) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-22]
CHR Extension: (Google Docs Offline) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01]
CHR Extension: (Gmail) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-27]
CHR Extension: (Chrome Media Router) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-08-05] (Apple Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-02-04] (Freemake) [File not signed]
U2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [File not signed]
R2 PaceLicenseDServices; C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe [2938880 2012-05-18] (PACE Anti-Piracy, Inc.) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-10-26] ()
R2 RealPlayer Cloud Service; C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [1141848 2014-11-07] (RealNetworks, Inc.)
R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [31856 2014-10-30] ()
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2015-10-19] (Popcorn Time) [File not signed]
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2016-09-07] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation)
R3 WsDrvInst; C:\Program Files (x86)\iSkysoft\TunesOver\DriverInstall.exe [116384 2016-05-06] (Wondershare)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-04-24] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-04-24] (Disc Soft Ltd)
S3 MAUSBFASTTRACK; C:\Windows\system32\DRIVERS\MAudioFastTrack.sys [460048 2013-05-21] (M-Audio)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-05-14] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 netr28x; C:\Windows\System32\drivers\netr28x.sys [2504192 2015-10-30] (MediaTek Inc.)
R3 paeusbaudio; C:\Windows\System32\drivers\paeusbaudio_x64.sys [260096 2014-04-16] ()
R3 paeusbaudiodsp; C:\Windows\System32\drivers\paeusbaudiodsp_x64.sys [62464 2014-07-16] ()
R3 paeusbaudioks; C:\Windows\system32\DRIVERS\paeusbaudioks_x64.sys [46080 2014-04-16] ()
R3 tapoas; C:\Windows\System32\drivers\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; no ImagePath
S3 SoundGridMIDI; \SystemRoot\system32\drivers\SoundGridMidi.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-09-23 22:12 - 2016-09-23 22:13 - 00023061 _____ C:\Users\deco\Downloads\FRST.txt
2016-09-23 22:11 - 2016-09-23 22:12 - 02402816 _____ (Farbar) C:\Users\deco\Downloads\FRST64.exe
2016-09-23 16:34 - 2016-09-23 16:34 - 00147370 _____ C:\WINDOWS\SysWOW64\rsslogs.20160923163316
2016-09-23 16:20 - 2016-09-23 16:22 - 116538601 _____ C:\Users\deco\Downloads\videoplayback.mp4
2016-09-22 18:29 - 2016-09-22 18:29 - 00000000 ____D C:\Users\deco\AppData\Local\{8D6DEA57-39B5-4E39-9653-30FEE2B12D0E}
2016-09-22 16:34 - 2016-09-23 16:34 - 01070933 _____ C:\WINDOWS\SysWOW64\rsslogs.20160922163315
2016-09-22 13:12 - 2016-09-22 13:12 - 00006673 _____ C:\Users\deco\Desktop\PDFProcessor.pdf
2016-09-21 16:33 - 2016-09-22 16:34 - 00892102 _____ C:\WINDOWS\SysWOW64\rsslogs.20160921163315
2016-09-21 16:04 - 2016-09-21 16:04 - 00000000 ___HD C:\$WINDOWS.~BT
2016-09-20 22:18 - 2016-09-20 22:18 - 00001627 _____ C:\Users\deco\Desktop\iTunes.lnk
2016-09-20 21:35 - 2016-09-20 21:35 - 00001826 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-09-20 21:35 - 2016-09-20 21:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-09-20 21:31 - 2016-09-20 21:32 - 00000000 ____D C:\Program Files\Bonjour
2016-09-20 21:28 - 2016-09-20 21:29 - 174784840 _____ (Apple Inc.) C:\Users\deco\Downloads\iTunes6464Setup.exe
2016-09-20 16:33 - 2016-09-21 16:33 - 01019041 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920163315
2016-09-20 14:34 - 2016-09-20 16:33 - 00143710 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920143354
2016-09-20 14:32 - 2016-09-20 14:32 - 00001213 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920143117
2016-09-20 14:23 - 2016-09-20 14:23 - 00000693 _____ C:\Users\Public\Desktop\AudioBox.lnk
2016-09-20 14:18 - 2016-09-20 14:18 - 00014491 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920141737
2016-09-20 14:10 - 2016-09-20 14:10 - 00008463 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920140907
2016-09-20 13:19 - 2016-09-20 16:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-19 22:58 - 2016-09-19 22:58 - 00277714 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919225756
2016-09-19 22:35 - 2016-09-19 22:35 - 14078380 _____ C:\Users\deco\Downloads\Impactor_0.9.33.zip
2016-09-19 21:00 - 2016-09-19 22:58 - 00142469 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919205901
2016-09-19 20:22 - 2016-09-19 20:23 - 342189392 _____ C:\Users\deco\Downloads\lder_06.wav
2016-09-19 20:17 - 2016-09-19 20:17 - 00047119 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919201637
2016-09-18 19:03 - 2016-09-19 20:17 - 00778497 _____ C:\WINDOWS\SysWOW64\rsslogs.20160918190235
2016-09-17 17:52 - 2016-09-18 19:03 - 00470770 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917175209
2016-09-17 15:54 - 2016-09-17 17:52 - 00084543 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917155317
2016-09-17 15:14 - 2016-09-17 15:14 - 00044639 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917151308
2016-09-16 15:08 - 2016-09-16 15:08 - 00063520 _____ C:\Users\deco\Downloads\Eldorado Invoice 440630.pdf
2016-09-16 15:07 - 2016-09-16 15:07 - 00059422 _____ C:\Users\deco\Downloads\Eldorado Invoice 441248.pdf
2016-09-16 15:07 - 2016-09-16 15:07 - 00058700 _____ C:\Users\deco\Downloads\Eldorado Invoice 441049.pdf
2016-09-16 13:10 - 2016-09-17 15:14 - 00927236 _____ C:\WINDOWS\SysWOW64\rsslogs.20160916130936
2016-09-16 11:11 - 2016-09-16 13:10 - 00143664 _____ C:\WINDOWS\SysWOW64\rsslogs.20160916111032
2016-09-16 01:17 - 2016-09-16 01:17 - 00000969 _____ C:\Users\deco\Desktop\Realese Rave On.txt
2016-09-16 00:17 - 2016-09-16 00:17 - 00000000 ____D C:\Users\deco\Desktop\Producao Ana carvalho
2016-09-15 21:26 - 2016-09-15 21:26 - 00537244 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915212555
2016-09-15 19:28 - 2016-09-15 21:26 - 00132846 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915192740
2016-09-15 13:48 - 2016-09-07 02:39 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-15 13:48 - 2016-09-07 02:39 - 01098640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 01152320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 00588320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-09-15 13:48 - 2016-09-07 02:25 - 02607336 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-15 13:48 - 2016-09-07 02:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2016-09-15 13:48 - 2016-09-07 02:23 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-09-15 13:48 - 2016-09-07 02:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-15 13:48 - 2016-09-07 01:48 - 22379520 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-15 13:48 - 2016-09-07 01:43 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-15 13:48 - 2016-09-07 01:39 - 01567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-15 13:48 - 2016-09-07 01:35 - 24611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-15 13:48 - 2016-09-07 01:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-15 13:48 - 2016-09-07 01:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-15 13:48 - 2016-09-07 01:30 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-15 13:48 - 2016-09-07 01:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-15 13:48 - 2016-09-07 01:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-15 13:48 - 2016-09-07 01:27 - 01743872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-15 13:48 - 2016-09-07 01:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-15 13:48 - 2016-09-07 01:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 13392384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-09-15 13:48 - 2016-09-07 01:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Pimstore.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-09-15 13:48 - 2016-09-07 01:24 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-15 13:48 - 2016-09-07 01:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2016-09-15 13:48 - 2016-09-07 01:23 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-09-15 13:48 - 2016-09-07 01:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-15 13:48 - 2016-09-07 01:22 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-15 13:48 - 2016-09-07 01:21 - 03046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-09-15 13:48 - 2016-09-07 01:21 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-15 13:48 - 2016-09-07 01:20 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-09-15 13:48 - 2016-09-07 01:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-15 13:48 - 2016-09-07 01:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 03577344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 02876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-15 13:48 - 2016-09-07 01:17 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 07831552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-15 13:48 - 2016-09-07 01:13 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-15 13:48 - 2016-09-07 01:13 - 02874880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2016-09-15 13:48 - 2016-09-07 01:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-09-15 13:47 - 2016-09-07 02:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00620176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-09-15 13:47 - 2016-09-07 02:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 01297760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-15 13:47 - 2016-09-07 02:27 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-09-15 13:47 - 2016-09-07 02:27 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-09-15 13:47 - 2016-09-07 02:26 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00847648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00586200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-09-15 13:47 - 2016-09-07 02:25 - 01270064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 01603224 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 01040792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 01128096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-15 13:47 - 2016-09-07 02:22 - 01085728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 00604920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-09-15 13:47 - 2016-09-07 02:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-09-15 13:47 - 2016-09-07 02:15 - 00911640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-09-15 13:47 - 2016-09-07 02:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-09-15 13:47 - 2016-09-07 02:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-15 13:47 - 2016-09-07 02:08 - 00116216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-15 13:47 - 2016-09-07 01:52 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-15 13:47 - 2016-09-07 01:52 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-15 13:47 - 2016-09-07 01:49 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-09-15 13:47 - 2016-09-07 01:48 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-15 13:47 - 2016-09-07 01:47 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-15 13:47 - 2016-09-07 01:46 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-09-15 13:47 - 2016-09-07 01:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-09-15 13:47 - 2016-09-07 01:44 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2016-09-15 13:47 - 2016-09-07 01:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-09-15 13:47 - 2016-09-07 01:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-15 13:47 - 2016-09-07 01:39 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2016-09-15 13:47 - 2016-09-07 01:39 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2016-09-15 13:47 - 2016-09-07 01:38 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2016-09-15 13:47 - 2016-09-07 01:38 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-15 13:47 - 2016-09-07 01:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2016-09-15 13:47 - 2016-09-07 01:38 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2016-09-15 13:47 - 2016-09-07 01:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 01568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2016-09-15 13:47 - 2016-09-07 01:36 - 01051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagCpl.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00577536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-09-15 13:47 - 2016-09-07 01:35 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.ps.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-09-15 13:47 - 2016-09-07 01:34 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-09-15 13:47 - 2016-09-07 01:32 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-15 13:47 - 2016-09-07 01:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-15 13:47 - 2016-09-07 01:32 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-09-15 13:47 - 2016-09-07 01:31 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-15 13:47 - 2016-09-07 01:31 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 02476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00698368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-15 13:47 - 2016-09-07 01:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-15 13:47 - 2016-09-07 01:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc_ssp.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-09-15 13:47 - 2016-09-07 01:28 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysdm.cpl
2016-09-15 13:47 - 2016-09-07 01:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-09-15 13:47 - 2016-09-07 01:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2016-09-15 13:47 - 2016-09-07 01:25 - 06312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-15 13:47 - 2016-09-07 01:25 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-15 13:47 - 2016-09-07 01:25 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-09-15 13:47 - 2016-09-07 01:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-15 13:47 - 2016-09-07 01:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-15 13:47 - 2016-09-07 01:21 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-15 13:47 - 2016-09-07 01:20 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-09-15 13:47 - 2016-09-07 01:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-09-15 13:47 - 2016-09-07 01:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2016-09-15 13:47 - 2016-09-07 01:15 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 01487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-15 13:47 - 2016-09-07 01:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-09-15 13:47 - 2016-09-07 01:11 - 03053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-09-15 13:47 - 2016-09-07 01:10 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-09-15 13:47 - 2016-09-07 01:10 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2016-09-15 13:47 - 2016-09-04 21:37 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-09-15 13:46 - 2016-09-07 02:39 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-15 13:46 - 2016-09-07 02:39 - 01142560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-15 13:46 - 2016-09-07 02:39 - 01030408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-15 13:46 - 2016-09-07 02:39 - 00875480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-15 13:46 - 2016-09-07 02:39 - 00175120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-15 13:46 - 2016-09-07 02:37 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-15 13:46 - 2016-09-07 02:36 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-09-15 13:46 - 2016-09-07 02:34 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-09-15 13:46 - 2016-09-07 02:26 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-09-15 13:46 - 2016-09-07 02:25 - 01447776 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2016-09-15 13:46 - 2016-09-07 02:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 03693064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-15 13:46 - 2016-09-07 02:23 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-15 13:46 - 2016-09-07 02:23 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-15 13:46 - 2016-09-07 02:23 - 06536248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-15 13:46 - 2016-09-07 02:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-09-15 13:46 - 2016-09-07 02:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-09-15 13:46 - 2016-09-07 02:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-09-15 13:46 - 2016-09-07 02:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-09-15 13:46 - 2016-09-07 02:11 - 00057912 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-09-15 13:46 - 2016-09-07 02:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-09-15 13:46 - 2016-09-07 01:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-15 13:46 - 2016-09-07 01:45 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2016-09-15 13:46 - 2016-09-07 01:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-15 13:46 - 2016-09-07 01:44 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-09-15 13:46 - 2016-09-07 01:44 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-09-15 13:46 - 2016-09-07 01:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-15 13:46 - 2016-09-07 01:43 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2016-09-15 13:46 - 2016-09-07 01:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-09-15 13:46 - 2016-09-07 01:42 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-09-15 13:46 - 2016-09-07 01:41 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-15 13:46 - 2016-09-07 01:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-09-15 13:46 - 2016-09-07 01:40 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2016-09-15 13:46 - 2016-09-07 01:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Cortana.ProxyStub.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-09-15 13:46 - 2016-09-07 01:36 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-09-15 13:46 - 2016-09-07 01:36 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-15 13:46 - 2016-09-07 01:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwcfg.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-15 13:46 - 2016-09-07 01:35 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CheckNetIsolation.exe
2016-09-15 13:46 - 2016-09-07 01:34 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2016-09-15 13:46 - 2016-09-07 01:33 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2016-09-15 13:46 - 2016-09-07 01:33 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 04213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2016-09-15 13:46 - 2016-09-07 01:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00852992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-15 13:46 - 2016-09-07 01:30 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 01872896 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 01424384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-09-15 13:46 - 2016-09-07 01:24 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-09-15 13:46 - 2016-09-07 01:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-09-15 13:46 - 2016-09-07 01:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-09-15 13:46 - 2016-09-07 01:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2016-09-15 13:46 - 2016-09-07 01:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-09-15 13:46 - 2016-09-07 01:22 - 01297408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-09-15 13:46 - 2016-09-07 01:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-09-15 13:46 - 2016-09-07 01:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2016-09-15 13:46 - 2016-09-07 01:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 04826624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 03078656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 02573824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-15 13:46 - 2016-09-07 01:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-09-15 13:46 - 2016-09-07 01:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-15 13:46 - 2016-09-07 01:11 - 03294208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-15 13:46 - 2016-09-07 01:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-09-15 13:46 - 2016-09-07 01:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2016-09-15 13:46 - 2016-09-07 01:09 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-09-15 13:46 - 2016-09-07 01:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 01238584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-09-15 13:45 - 2016-09-07 02:39 - 00799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00705576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00414232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00337328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00328520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2016-09-15 13:45 - 2016-09-07 02:36 - 00528736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-09-15 13:45 - 2016-09-07 02:35 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-09-15 13:45 - 2016-09-07 02:35 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-09-15 13:45 - 2016-09-07 02:35 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-09-15 13:45 - 2016-09-07 02:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 01554152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 00693592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 00439136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-09-15 13:45 - 2016-09-07 02:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-15 13:45 - 2016-09-07 02:22 - 00359256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-15 13:45 - 2016-09-07 02:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-09-15 13:45 - 2016-09-07 02:16 - 02773088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 02548936 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 02144512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-15 13:45 - 2016-09-07 02:15 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-15 13:45 - 2016-09-07 02:15 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-09-15 13:45 - 2016-09-07 02:12 - 00871776 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-09-15 13:45 - 2016-09-07 02:11 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-09-15 13:45 - 2016-09-07 01:53 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2016-09-15 13:45 - 2016-09-07 01:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-09-15 13:45 - 2016-09-07 01:47 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PJLMON.DLL
2016-09-15 13:45 - 2016-09-07 01:44 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-15 13:45 - 2016-09-07 01:43 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-09-15 13:45 - 2016-09-07 01:43 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2016-09-15 13:45 - 2016-09-07 01:42 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-15 13:45 - 2016-09-07 01:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2016-09-15 13:45 - 2016-09-07 01:41 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-15 13:45 - 2016-09-07 01:40 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2016-09-15 13:45 - 2016-09-07 01:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2016-09-15 13:45 - 2016-09-07 01:39 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-09-15 13:45 - 2016-09-07 01:38 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-09-15 13:45 - 2016-09-07 01:38 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvc.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-09-15 13:45 - 2016-09-07 01:36 - 00752128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2016-09-15 13:45 - 2016-09-07 01:35 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbceip.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2016-09-15 13:45 - 2016-09-07 01:34 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 01813504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3ui.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01558528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-09-15 13:45 - 2016-09-07 01:30 - 01318400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-09-15 13:45 - 2016-09-07 01:29 - 01487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 01465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-09-15 13:45 - 2016-09-07 01:29 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01783808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01671168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-09-15 13:45 - 2016-09-07 01:27 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 01570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-09-15 13:45 - 2016-09-07 01:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-09-15 13:45 - 2016-09-07 01:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-09-15 13:45 - 2016-09-07 01:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-09-15 13:45 - 2016-09-07 01:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:23 - 04646912 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-15 13:45 - 2016-09-07 01:23 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2016-09-15 13:45 - 2016-09-07 01:22 - 03093504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-15 13:45 - 2016-09-07 01:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-09-15 13:45 - 2016-09-07 01:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 01385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-09-15 13:45 - 2016-09-07 01:19 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-15 13:45 - 2016-09-07 01:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-09-15 13:45 - 2016-09-07 01:19 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 01997312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-15 13:45 - 2016-09-07 01:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 01755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-09-15 13:45 - 2016-09-07 01:12 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-09-15 13:45 - 2016-09-07 01:10 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-15 13:45 - 2016-09-07 01:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-15 13:45 - 2016-09-07 00:57 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 07468896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-15 13:44 - 2016-09-07 02:39 - 01997832 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 01862000 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-15 13:44 - 2016-09-07 02:34 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-09-15 13:44 - 2016-09-07 02:26 - 01552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-09-15 13:44 - 2016-09-07 02:26 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 01540216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-09-15 13:44 - 2016-09-07 02:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00742192 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-09-15 13:44 - 2016-09-07 02:22 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-15 13:44 - 2016-09-07 02:22 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-09-15 13:44 - 2016-09-07 02:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-09-15 13:44 - 2016-09-07 02:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-15 13:44 - 2016-09-07 02:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-09-15 13:44 - 2016-09-07 02:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-09-15 13:44 - 2016-09-07 02:15 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-15 13:44 - 2016-09-07 02:14 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-15 13:44 - 2016-09-07 02:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-15 13:44 - 2016-09-07 02:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-09-15 13:44 - 2016-09-07 02:12 - 28851224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 02187408 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 00388888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-09-15 13:44 - 2016-09-07 02:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2016-09-15 13:44 - 2016-09-07 02:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-09-15 13:44 - 2016-09-07 01:46 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-15 13:44 - 2016-09-07 01:44 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2016-09-15 13:44 - 2016-09-07 01:40 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-09-15 13:44 - 2016-09-07 01:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2016-09-15 13:44 - 2016-09-07 01:39 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-09-15 13:44 - 2016-09-07 01:39 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2016-09-15 13:44 - 2016-09-07 01:36 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-09-15 13:44 - 2016-09-07 01:35 - 00714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00689664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-15 13:44 - 2016-09-07 01:32 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-15 13:44 - 2016-09-07 01:30 - 14251520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 02012672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-09-15 13:44 - 2016-09-07 01:30 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 02731008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 01466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pimstore.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 03415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 00961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 02445312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 01965568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2016-09-15 13:44 - 2016-09-07 01:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-09-15 13:44 - 2016-09-07 01:24 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-15 13:44 - 2016-09-07 01:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-09-15 13:44 - 2016-09-07 01:23 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-09-15 13:44 - 2016-09-07 01:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-09-15 13:44 - 2016-09-07 01:22 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2016-09-15 13:44 - 2016-09-07 01:21 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-09-15 13:44 - 2016-09-07 01:21 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 06976000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 06675968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-15 13:44 - 2016-09-07 01:20 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-09-15 13:44 - 2016-09-07 01:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 02610176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 02563584 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2016-09-15 13:44 - 2016-09-07 01:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-09-15 13:44 - 2016-09-07 01:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-15 13:44 - 2016-09-07 01:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-09-15 13:44 - 2016-09-07 01:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-09-15 13:44 - 2016-09-07 01:14 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-09-15 13:44 - 2016-09-07 01:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-09-15 13:44 - 2016-09-07 01:12 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-09-15 13:43 - 2016-09-07 01:39 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-15 13:43 - 2016-09-07 01:38 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-09-15 13:43 - 2016-09-07 01:36 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-09-15 13:43 - 2016-09-07 01:36 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-15 13:43 - 2016-09-07 01:31 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppinst.dll
2016-09-15 13:43 - 2016-09-07 01:31 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-09-15 13:43 - 2016-09-07 01:30 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2016-09-15 13:43 - 2016-09-07 01:29 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-09-15 13:43 - 2016-09-07 01:28 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-09-15 13:43 - 2016-09-07 01:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-09-15 13:43 - 2016-09-07 01:19 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2016-09-15 13:18 - 2016-09-15 13:18 - 00101444 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915131801
2016-09-15 12:04 - 2016-09-15 12:04 - 00088924 _____ C:\Users\deco\Downloads\RMA 168141.pdf
2016-09-15 11:27 - 2016-09-15 11:27 - 00003326 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-09-15 11:20 - 2016-09-15 13:18 - 00142498 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915111954
2016-09-14 12:42 - 2016-09-14 12:42 - 00097269 _____ C:\Users\deco\Downloads\CC Auth Form.pdf
2016-09-05 23:01 - 2016-09-18 19:17 - 00000000 ____D C:\Users\deco\Downloads\Narcos.Season.2.Complete.720p.WebRip.EN-SUB.x264-[MULVAcoded]
2016-09-05 23:01 - 2016-09-05 23:01 - 00000000 ____D C:\Users\deco\AppData\LocalLow\uTorrent
2016-08-31 21:55 - 2016-09-15 11:09 - 00000000 ____D C:\Users\deco\Desktop\piece of myself
2016-08-31 21:50 - 2016-08-31 21:50 - 00000000 ____D C:\Users\deco\Desktop\Stereo
2016-08-31 21:50 - 2016-08-31 21:50 - 00000000 ____D C:\Users\deco\Desktop\Piece Of My Self
2016-08-31 15:38 - 2016-09-15 11:09 - 00000000 ____D C:\Users\deco\Desktop\backburn
2016-08-26 17:11 - 2016-08-26 17:11 - 78016828 _____ C:\Users\deco\Desktop\thatwhore.wav
2016-08-26 16:08 - 2016-09-15 11:09 - 00000000 ____D C:\Users\deco\Desktop\that [bleep]
2016-08-24 19:54 - 2016-08-24 19:54 - 00000165 ____H C:\Users\deco\Desktop\~$Flat.File.Health-Lite.es.xlsm
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-09-23 22:12 - 2016-04-28 10:31 - 00000000 ____D C:\FRST
2016-09-23 21:52 - 2011-10-25 15:18 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-23 21:47 - 2012-07-21 12:52 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000UA.job
2016-09-23 21:46 - 2012-07-22 14:27 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-23 21:39 - 2014-07-29 15:14 - 00000392 _____ C:\WINDOWS\Tasks\WpsUpdateTask_sales in bloom.job
2016-09-23 21:39 - 2014-07-29 15:14 - 00000392 _____ C:\WINDOWS\Tasks\WpsNotifyTask_sales in bloom.job
2016-09-23 20:15 - 2011-10-25 15:18 - 00000918 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-23 15:48 - 2016-06-13 15:15 - 00003806 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2016-09-23 14:59 - 2015-12-12 01:35 - 01008216 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-23 14:59 - 2015-10-30 04:21 - 00000000 ____D C:\WINDOWS\INF
2016-09-23 12:58 - 2015-10-30 04:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-23 12:58 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-23 03:16 - 2016-06-17 21:05 - 00000000 ____D C:\Users\deco\Desktop\my mixes
2016-09-22 22:43 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-09-22 18:47 - 2012-07-21 12:52 - 00000868 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000Core.job
2016-09-22 18:09 - 2016-04-27 02:29 - 00000000 ___HD C:\Users\deco\Desktop\Freemake_do_not_remove_this_folder
2016-09-21 16:05 - 2015-12-12 10:24 - 00000000 ___DC C:\WINDOWS\Panther
2016-09-20 22:39 - 2011-08-03 14:48 - 00000000 ____D C:\Users\deco\AppData\Roaming\Adobe
2016-09-20 22:17 - 2014-08-13 18:25 - 00000000 ____D C:\ProgramData\eBay
2016-09-20 22:15 - 2011-10-25 15:18 - 00000000 ____D C:\Program Files (x86)\Google
2016-09-20 21:37 - 2016-04-17 23:51 - 00000000 ____D C:\Program Files (x86)\VstPlugIns
2016-09-20 21:35 - 2016-04-17 23:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia
2016-09-20 21:35 - 2016-04-17 23:51 - 00000000 ____D C:\Program Files (x86)\IK Multimedia
2016-09-20 21:35 - 2016-03-29 13:43 - 00000000 ____D C:\Program Files\iTunes
2016-09-20 21:35 - 2014-04-08 11:33 - 00000000 ____D C:\Program Files (x86)\DsNET Corp
2016-09-20 21:34 - 2011-09-02 00:44 - 00000000 ____D C:\Program Files\iPod
2016-09-20 21:33 - 2016-05-09 13:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-09-20 21:33 - 2011-09-02 00:43 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-09-20 21:32 - 2011-09-02 00:43 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-09-20 21:23 - 2016-03-29 13:27 - 00001421 _____ C:\Users\deco\Desktop\CopyTrans Control Center.lnk
2016-09-20 21:23 - 2016-03-29 13:27 - 00000000 ____D C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
2016-09-20 17:45 - 2016-08-01 16:07 - 00255430 _____ C:\Users\deco\Downloads\EAN5000.txt
2016-09-20 17:45 - 2015-11-19 22:38 - 00000000 ____D C:\Program Files (x86)\Excel Image Assistant
2016-09-20 17:45 - 2015-10-23 09:04 - 00000000 ____D C:\Users\deco\Desktop\amazon
2016-09-20 16:21 - 2016-08-10 12:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-20 16:21 - 2014-02-06 19:46 - 00001670 _____ C:\WINDOWS\wininit.ini
2016-09-20 14:33 - 2015-12-12 01:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-20 14:32 - 2015-10-30 03:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-09-20 14:26 - 2016-06-13 18:39 - 00000000 ____D C:\Users\deco\AppData\Roaming\PreSonus
2016-09-20 14:23 - 2016-06-13 18:27 - 00000000 ____D C:\Program Files\PreSonus
2016-09-20 14:23 - 2016-06-13 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PreSonus
2016-09-19 23:52 - 2011-08-07 14:17 - 00000000 ____D C:\Users\deco\AppData\Roaming\vlc
2016-09-19 21:45 - 2016-06-17 00:45 - 06502080 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-09-19 13:15 - 2016-01-24 15:12 - 00000000 ___HD C:\Users\deco\AppData\Local\fxTJ3wOFPpr5
2016-09-19 12:49 - 2016-04-17 20:15 - 00000000 ____D C:\Users\deco\AvidLogFiles
2016-09-19 09:54 - 2014-11-25 13:45 - 00000000 ____D C:\Users\deco\Documents\Outlook Files
2016-09-19 00:38 - 2015-11-17 12:37 - 00000200 _____ C:\Users\deco\Desktop\card.txt
2016-09-17 18:01 - 2011-11-24 22:20 - 00000000 ____D C:\Users\deco\AppData\Local\ElevatedDiagnostics
2016-09-16 21:54 - 2014-08-13 14:38 - 00002276 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-09-16 18:54 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-16 18:54 - 2015-10-30 04:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-16 15:23 - 2015-10-27 15:25 - 00493121 _____ C:\Users\deco\Desktop\Eldorado Invoice 346467.pdf
2016-09-16 15:20 - 2015-10-27 15:23 - 00440276 _____ C:\Users\deco\Desktop\Eldorado Invoice 351830.pdf
2016-09-16 15:18 - 2015-10-27 15:21 - 00439278 _____ C:\Users\deco\Desktop\Eldorado Invoice 362783.pdf
2016-09-16 11:09 - 2012-05-11 03:00 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-09-16 11:09 - 2012-05-11 03:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-09-15 22:02 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\rescache
2016-09-15 21:40 - 2014-09-24 15:33 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-09-15 21:34 - 2015-10-30 06:07 - 00000000 ____D C:\WINDOWS\ShellNew
2016-09-15 21:19 - 2012-05-11 03:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-09-15 21:11 - 2009-07-13 23:34 - 00000478 _____ C:\WINDOWS\win.ini
2016-09-15 20:10 - 2015-09-10 02:42 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-15 14:35 - 2015-10-30 04:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-09-15 14:35 - 2015-10-30 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-09-15 14:35 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-09-15 14:33 - 2015-10-30 03:31 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-15 14:33 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-09-15 14:21 - 2013-08-19 01:15 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-15 13:59 - 2011-10-26 19:55 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-15 11:27 - 2015-11-04 12:37 - 00002405 _____ C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-09-15 11:27 - 2015-11-04 12:37 - 00000000 ___RD C:\Users\deco\OneDrive
2016-09-15 11:21 - 2015-12-12 01:35 - 00000000 ____D C:\Users\deco
2016-09-15 11:12 - 2015-12-12 01:35 - 00000000 ____D C:\Users\Guest
2016-09-15 11:12 - 2015-12-12 01:35 - 00000000 ____D C:\Users\DefaultAppPool
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 __RSD C:\WINDOWS\Media
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\IME
2016-09-15 11:11 - 2016-08-22 17:22 - 00000000 ____D C:\Users\deco\Downloads\Stranger.Things.Season.1.Complete.720p.WebRip.EN-SUB.x264-[MULVAcoded]
2016-09-15 11:11 - 2016-04-27 22:34 - 00000000 ____D C:\WINDOWS\Minidump
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\System
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\schemas
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\Globalization
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-09-15 11:11 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-09-15 11:11 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\servicing
2016-09-15 11:11 - 2012-08-19 01:32 - 00000000 ____D C:\Users\deco\AppData\Roaming\Skype
2016-09-15 11:11 - 2012-07-20 18:38 - 00000000 ____D C:\Users\deco\AppData\Roaming\uTorrent
2016-09-15 11:10 - 2014-03-25 12:49 - 00000000 ____D C:\Users\deco\AppData\Local\Packages
2016-09-15 11:10 - 2014-02-23 15:34 - 00000000 ____D C:\Program Files\AdwareRemovalToolv3.7
2016-09-15 11:01 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\registration
2016-09-15 10:48 - 2011-08-11 01:28 - 00000000 ____D C:\ProgramData\Real
2016-09-15 10:46 - 2011-08-07 14:00 - 00000000 ____D C:\Program Files\Microsoft Office
2016-09-15 10:45 - 2014-09-24 15:25 - 00000000 __RHD C:\MSOCache
2016-09-07 03:04 - 2015-12-12 01:29 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-09-06 22:00 - 2015-10-30 04:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-06 22:00 - 2015-10-30 04:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Files in the root of some directories =======
 
2016-06-21 00:01 - 2016-04-23 21:40 - 0000030 _____ () C:\Users\deco\AppData\Roaming\.pgbiasfx
2014-11-20 13:54 - 2014-11-20 13:54 - 0000132 _____ () C:\Users\deco\AppData\Roaming\Adobe GIF Format CS5 Prefs
2015-03-22 14:54 - 2015-05-22 13:04 - 0000033 _____ () C:\Users\deco\AppData\Roaming\AdobeWLCMCache.dat
2014-08-28 13:04 - 2014-08-28 13:06 - 0000043 _____ () C:\Users\deco\AppData\Roaming\mbam.context.scan
2016-04-17 23:55 - 2016-04-23 19:09 - 0000016 _____ () C:\Users\deco\AppData\Roaming\msregsvv.dll
2014-08-02 18:23 - 2014-08-28 18:07 - 0000086 _____ () C:\Users\deco\AppData\Roaming\WB.CFG
2007-10-10 19:34 - 2007-10-10 19:37 - 0015438 _____ () C:\ProgramData\ArcadeDeluxe4.log
2016-04-17 23:55 - 2016-04-23 19:09 - 0000016 _____ () C:\ProgramData\autobk.inc
2011-09-03 15:21 - 2011-09-03 18:33 - 0000646 _____ () C:\ProgramData\hpzinstall.log
2012-01-24 22:06 - 2016-04-08 13:00 - 0001095 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2011-09-03 18:03 - 2011-09-03 18:04 - 0000090 _____ () C:\ProgramData\PS.log
 
Some files in TEMP:
====================
C:\Users\deco\AppData\Local\Temp\libeay32.dll
C:\Users\deco\AppData\Local\Temp\lowproc.exe
C:\Users\deco\AppData\Local\Temp\msvcr120.dll
C:\Users\deco\AppData\Local\Temp\sqlite3.dll
C:\Users\deco\AppData\Local\Temp\stubhelper.dll
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-09-22 16:39
 
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-09-2016
Ran by deco (23-09-2016 22:15:47)
Running from C:\Users\deco\Downloads
Windows 10 Home Version 1511 (X64) (2015-12-12 05:00:45)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3406242734-3781281278-1370421689-500 - Administrator - Disabled)
deco (S-1-5-21-3406242734-3781281278-1370421689-1000 - Administrator - Enabled) => C:\Users\deco
DefaultAccount (S-1-5-21-3406242734-3781281278-1370421689-503 - Limited - Disabled)
Guest (S-1-5-21-3406242734-3781281278-1370421689-501 - Limited - Disabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-3406242734-3781281278-1370421689-1004 - Limited - Enabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\uTorrent) (Version: 3.4.8.42449 - BitTorrent Inc.)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Apple Application Support (32-bit) (HKLM-x32\...\{29DB9165-5FC1-48F0-9188-26123F526848}) (Version: 5.0.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{5905C8CF-1C88-4478-A48E-4E458AD1BC7E}) (Version: 5.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{D4D86CB2-2370-4691-8272-3869EDED6C64}) (Version: 10.0.0.18 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Audacity 2.0.2 (HKLM-x32\...\Audacity_is1) (Version: 2.0.2 - Audacity Team)
AudioBox version 1.3 (HKLM\...\{554BB593-3543-4AEB-A192-2AC87EC3FF31}_is1) (Version: 1.3 - PreSonus)
Avid Effects (HKLM-x32\...\{A86F1158-A7F7-4E8C-98E3-88F4996E85EB}) (Version: 10.3.5 - Avid Technology, Inc.)
Avid Pro Tools (HKLM-x32\...\{8E60BB71-7EF3-42ED-9F10-AA041F25841A}) (Version: 10.3.5 - Avid Technology, Inc.)
BIAS FX Plugins Pack (64bit) (HKLM\...\{77558DEB-4B65-4921-8855-D8593EF5BCDD}) (Version: 1.1.0.745 - PositiveGrid)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 3.10 - Piriform)
Combined Community Codec Pack 64bit 2015-10-18 (HKLM\...\Combined Community Codec Pack 64bit_is1) (Version: 2015.10.19.0 - CCCP Project)
CopyTrans Control Center Uninstall Only (HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\CopyTrans Suite) (Version: 4.013 - WindSolutions)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.3.0.0154 - Disc Soft Ltd)
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
eBay Worldwide (HKLM-x32\...\{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}) (Version: 2.1.0901 - OEM)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Excel Image Assistant (HKLM-x32\...\Excel Image Assistant) (Version:  - )
Free Sound Recorder v10.7.1 (HKLM-x32\...\Free Sound Recorder_is1) (Version:  - Copyright© 2005-2015 FreeSoundRecorder Technologies, Inc.)
Freemake Audio Converter version 1.1.0 (HKLM-x32\...\Freemake Audio Converter_is1) (Version: 1.1.0 - Ellora Assets Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.116 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Hotkey Utility (HKLM-x32\...\Hotkey Utility) (Version: 2.05.3009 - Acer Incorporated)
iCloud (HKLM\...\{B33C558F-772F-4308-A059-390FBF9BAAAE}) (Version: 5.0.2.61 - Apple Inc.)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated)
IK Multimedia Authorization Manager version 1.0.9 (HKLM\...\{85BC0DCB-69E5-4279-AA25-F108EF896588}_is1) (Version: 1.0.9 - IK Multimedia)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Intel® C++ Redistributables on IA-32 (HKLM-x32\...\{317059CB-7642-4F2E-89C0-62E69D4074B7}) (Version: 15.0.148 - Intel Corporation)
Intel® C++ Redistributables on Intel® 64 (HKLM-x32\...\{2DD3C090-2986-4970-B3CB-87BB4C8AC4A5}) (Version: 15.0.148 - Intel Corporation)
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
iSkysoft TunesOver ( Version 3.9.6 ) (HKLM-x32\...\{84A89F3A-B59A-4324-8598-3611853769C8}_is1) (Version: 3.9.6 - iSkysoft)
iTunes (HKLM\...\{9946A4F7-E0FD-4A33-82D1-06CBFFBBB9F9}) (Version: 12.5.1.21 - Apple Inc.)
iZotope Ozone 7 Advanced (HKLM-x32\...\iZotope Ozone 7 Advanced 7.00) (Version: 7.00 - iZotope, Inc.)
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.650 - Oracle)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
License Support (HKLM-x32\...\InstallShield_{3165EA9B-36CC-499B-96FF-36FC30E10EF4}) (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.)
License Support (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.) Hidden
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MediaShow Espresso (x32 Version: 5.5.1713_26701 - CyberLink Corp.) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
MKV Player 2.1 (HKLM-x32\...\MKV Player_is1) (Version:  - )
Mozilla Firefox 48.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 48.0.2 (x86 en-US)) (Version: 48.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.2.6079 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version:  - Native Instruments)
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version:  - Native Instruments)
Native Instruments Guitar Rig Session I/O (HKLM-x32\...\Native Instruments Guitar Rig Session I/O) (Version:  - Native Instruments)
Native Instruments Rig Kontrol 3 (HKLM-x32\...\Native Instruments Rig Kontrol 3) (Version:  - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version:  - Native Instruments)
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Popcorn Time (HKLM-x32\...\Popcorn Time_is1) (Version: 5.4.1.0 - Popcorn Time) <==== ATTENTION
PreSonus Studio One 3 x64 (HKLM\...\PreSonus Studio One 3) (Version: 3.2.3.38191 - PreSonus Audio Electronics)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
RealDownloader (x32 Version: 17.0.15.4 - RealNetworks, Inc.) Hidden
RealDownloader (x32 Version: 17.0.15.7 - RealNetworks) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer Cloud (HKLM-x32\...\RealPlayer 17.0) (Version: 17.0.15 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5898 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
ReWire (HKLM\...\{4481A621-E317-411C-8926-864AACDF509B}) (Version: 1.00.0000 - Waves)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation)
Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
SoulSeek 157 NS 13c (HKLM-x32\...\Soulseek2) (Version:  - )
Technitium MAC Address Changer v6.0.5 (HKLM-x32\...\TMACv6.0) (Version: 6.0.5 - Technitium)
TurboTax 2015 (HKLM-x32\...\TurboTax 2015) (Version: 2015.0 - Intuit, Inc)
TurboTax Business 2014 (HKLM-x32\...\TurboTax Business 2014) (Version: 2014.0 - Intuit, Inc)
Ultra Video Splitter 6.4.1208 (HKLM-x32\...\Ultra Video Splitter_is1) (Version:  - Aone Software)
Update for Skype for Business 2015 (KB3039776) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{0FA8AE0C-69AE-4F60-A1AB-F79C6BA5A999}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3118281) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E34F92E8-F338-4749-BE58-E77D605FE648}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3118281) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E34F92E8-F338-4749-BE58-E77D605FE648}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3118281) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E34F92E8-F338-4749-BE58-E77D605FE648}) (Version:  - Microsoft)
UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden
Video Downloader (x32 Version: 1.0.0 - RealNetworks) Hidden
Visual C++ 64-bit Redistributables (HKLM-x32\...\InstallShield_{FB03650C-B373-4B20-ACA5-B7BA1A8EEE33}) (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.)
Visual C++ Redistributables (HKLM-x32\...\InstallShield_{F03117FA-9270-46B0-9666-0B4BC2CDEBF5}) (Version: 1.2.0.5555 - PACE Anti-Piracy, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Waves Central 1.1.0.22 (HKLM-x32\...\{94000200-C561-4E32-99EB-3C5AD3683A70}_is1) (Version: 1.1.0 - Waves, Inc.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3406242734-3781281278-1370421689-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3406242734-3781281278-1370421689-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\deco\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3406242734-3781281278-1370421689-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {073DB72E-520B-476A-83CD-8D0EFBCCD693} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {0990C8D9-EE91-48A8-A7EA-BC16B9F5E633} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {0AAA4631-90BD-4059-9953-D7789AD22A9F} - System32\Tasks\RealDownloader Update Check => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [2014-10-29] ()
Task: {0B882D45-82EB-4285-8153-8FEE43C7811E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {1731CFA9-44C9-4895-8951-191264F40C88} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3406242734-3781281278-1370421689-1006 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-10-26] (RealNetworks, Inc.)
Task: {1E2C773E-1E8F-4220-B806-3AE93DAFBECF} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {1E90BD4A-9FD0-493C-9566-3AF6C05E52D9} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {1EFE906B-4FE7-4140-A3B5-F86B6F64ADFE} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {23B0C235-4701-4C8F-9601-0251DA8AD908} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {298C1599-D9DB-4C4A-BA02-088F48977A54} - System32\Tasks\WpsNotifyTask_sales in bloom => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe
Task: {2ACA76F7-0D5F-4C79-9BDE-4350D390B30D} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {2ADA7A2F-622C-4AFB-B1D9-B999209051D6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {365D86BC-5134-47B1-BB11-740B2110BFAA} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {37A5DD81-DA52-4D1C-91E5-5040D016AFD5} - System32\Tasks\{BA70839E-3DF2-4CE1-88F6-355ABC9E2756} => pcalua.exe -a C:\Users\deco\Downloads\OJJ3600_Basic_8.exe -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {3AF2CE55-D5C8-4103-ABE3-CA221248000C} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {3E323ED9-C944-476D-9C9F-11B8A91C5C04} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {3F3BD157-DFAC-461B-91A5-817D0B419232} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
Task: {400BAD29-BE43-48EB-BB65-38B21C018A7D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {4717237E-E6F3-41FB-96DD-AD0656BF1538} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {4DC3C2C2-54DB-499D-A7E8-52D3D75F0DE5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000UA => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {566F65A2-1225-4932-9D23-7B8A8D203CFA} - System32\Tasks\WpsUpdateTask_sales in bloom => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe
Task: {5AD32A4A-8487-4178-A0FF-3EC87AAE9786} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {675B0837-4E35-4CD2-AEC9-B86D968B94DC} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {6B941C49-48AD-4D32-8C29-A0767F055E6F} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
Task: {73182E03-A74F-4C86-B1BF-470D2ABE4D2D} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\deco\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\OneDriveStandaloneUpdater.exe [2016-09-15] (Microsoft Corporation)
Task: {761701FD-5E87-4702-B784-68EB5DE3511B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
Task: {76B35647-2001-4BFF-A915-7AB628E63652} - System32\Tasks\{94406A97-1D05-4EDC-9023-3A95ADF895DD} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/en/abandoninstall?page=tsMain
Task: {819D4373-D2B8-48BA-ACA0-230CFB0116F5} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {8AB962DC-3BAB-410D-8136-A43F66D75638} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {8D181F06-1B71-487F-B064-8F759498D053} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {960C5D1A-E9A3-418B-A83E-6066467903A1} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {9ED3F406-964D-4D6D-A9E2-408371E347D0} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2014-10-26] (RealNetworks, Inc.)
Task: {A499A215-0EAB-4331-837B-56F6FDE3518D} - System32\Tasks\{F04144C3-83B0-4F3B-93EA-02F7C7EA719A} => pcalua.exe -a "C:\Users\deco\Documents\Adobe Photoshop CS3 BR(com plugins)\Adobe Photoshop CS3 BR + plugins.exe" -d "C:\Users\deco\Documents\Adobe Photoshop CS3 BR(com plugins)"
Task: {A9FEC67A-CF3A-486D-AAF0-C74F405BA1F8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-09-15] (Microsoft Corporation)
Task: {AD8635C9-BDDD-46EF-8707-68EB52587AFE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {B1C22FF1-FA09-4B2C-BBE9-157DBF93F18B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000Core => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {B4874A9D-B4A4-42F6-A34C-CA78981C4576} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {B552622A-A873-472B-9675-34F57C9197D8} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-3406242734-3781281278-1370421689-1006 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2014-10-26] (RealNetworks, Inc.)
Task: {BF81E49F-1AC9-41F2-A733-AD1B97FF5CD3} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {C2449A8A-385F-431A-AAA9-A12ADC7A50B3} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {CE60488E-EFBF-4DB9-95E0-21B8F09855D5} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {D8FC8D76-9CE2-4035-BE20-68A7814DD301} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12] (Adobe Systems Incorporated)
Task: {DCA58A7C-F574-4CF9-85CE-F164468A48EA} - System32\Tasks\{8780E631-761F-43D1-B7EE-72AD457648EC} => pcalua.exe -a "C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe" -d "C:\Program Files (x86)\ESET\ESET Online Scanner"
Task: {E278F4FE-3B4B-4B1B-BFF2-3666BAE67D3A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {E2C81D1E-43D3-4176-A7A0-8A98ECDE546A} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3406242734-3781281278-1370421689-1006 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2014-10-26] (RealNetworks, Inc.)
Task: {E944B168-1C2B-4D5F-9BA1-5CE3EC0E0035} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
Task: {ED3A0CC4-FE63-4963-8D54-DD3B77D6B196} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-09-24] ()
Task: {ED4943D8-8203-4EBB-85AA-8187CEE1988A} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {F361E2B5-1C1C-44ED-AD56-6171645895E8} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {F8A9EA0E-7700-4C36-AEE7-F6464B3BC7DA} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [2014-10-26] (RealNetworks, Inc.)
Task: {FA46A383-0D24-4D24-A320-DB99E0A6F007} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {FE6C2BCF-F8B2-4494-AA07-8E0BD0C53ADA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3406242734-3781281278-1370421689-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2014-10-30] (RealNetworks, Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000Core.job => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3406242734-3781281278-1370421689-1000UA.job => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\WpsNotifyTask_sales in bloom.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe
Task: C:\WINDOWS\Tasks\WpsUpdateTask_sales in bloom.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2014-06-01 15:49 - 2013-06-17 12:40 - 00035944 _____ () C:\Windows\system32\ddmon4-64x.dll
2014-10-26 18:59 - 2014-10-26 18:59 - 00039568 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
2014-10-30 01:41 - 2014-10-30 01:41 - 00031856 _____ () C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-09-01 18:12 - 2016-09-01 18:12 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-10-30 04:18 - 2015-10-30 04:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-15 13:48 - 2016-09-07 02:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-15 13:48 - 2016-09-07 02:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-09-15 11:26 - 2016-09-15 11:26 - 01864384 _____ () C:\Users\deco\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll
2016-06-14 13:37 - 2016-06-14 13:37 - 08909504 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-12-18 09:09 - 2015-12-07 01:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-12 15:01 - 2016-07-01 00:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-09-15 13:44 - 2016-09-07 01:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-09-24 15:09 - 2014-09-24 15:09 - 03727360 _____ () C:\Windows\AutoKMS\AutoKMS.exe
2010-08-04 09:40 - 2010-08-04 09:40 - 00611872 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
2016-04-19 18:59 - 2016-04-19 18:59 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2014-10-29 15:06 - 2014-10-29 15:06 - 00560192 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
2014-10-30 01:41 - 2014-10-30 01:41 - 00035976 _____ () C:\Program Files (x86)\Real\UpdateService\DL2UpdatePlugin.dll
2014-10-30 01:41 - 2014-10-30 01:41 - 00039560 _____ () C:\Program Files (x86)\Real\UpdateService\RealDownloaderUpdatePlugin.dll
2014-10-30 01:41 - 2014-10-30 01:41 - 00032888 _____ () C:\Program Files (x86)\Real\UpdateService\RPDSUpdatePlugin.dll
2016-09-15 11:26 - 2016-09-15 11:26 - 01383616 _____ () C:\Users\deco\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll
2016-09-15 11:26 - 2016-09-15 11:26 - 00118976 _____ () C:\Users\deco\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll
2010-08-04 06:47 - 2010-08-04 06:47 - 00144896 _____ () C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyHook.dll
2016-05-07 02:12 - 2014-10-31 16:40 - 01498112 _____ () C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\DAQExp.dll
2016-05-07 02:12 - 2014-05-19 17:19 - 00137728 _____ () C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\CBSCreateVC.dll
2014-10-29 15:07 - 2014-10-29 15:07 - 00065600 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\dtvhooks.dll
2016-09-16 21:54 - 2016-09-13 21:38 - 01806152 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libglesv2.dll
2016-09-16 21:54 - 2016-09-13 21:38 - 00094024 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libegl.dll
2016-04-19 18:59 - 2016-04-19 18:59 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 18:59 - 2016-04-19 18:59 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2014-10-29 15:01 - 2014-10-29 15:01 - 01382048 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\cpprest100_1_2.dll
2016-09-17 00:01 - 2016-09-12 17:48 - 17754304 _____ () C:\Users\deco\AppData\Local\Google\Chrome\User Data\PepperFlash\23.0.0.166\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Windows:nlsPreferences [386]
AlternateDataStreams: C:\ProgramData\Microsoft:INL1pHYdTghSiscdUO [2220]
AlternateDataStreams: C:\ProgramData\Microsoft:JC00IUg3n1Mx2poMMk [2198]
AlternateDataStreams: C:\ProgramData\Microsoft:Ys9gXmQ3SrbipY4xA65epdF [2474]
AlternateDataStreams: C:\ProgramData\Microsoft:YSZUZXKIzleugtKMK [2260]
AlternateDataStreams: C:\Users\deco\Local Settings:2qTWSJ0QW6qXwQQW47MlLy [2424]
AlternateDataStreams: C:\Users\deco\Local Settings:5VfbgSCAXOk224D9qaxLT [2312]
AlternateDataStreams: C:\Users\deco\AppData\Local:2qTWSJ0QW6qXwQQW47MlLy [2424]
AlternateDataStreams: C:\Users\deco\AppData\Local:5VfbgSCAXOk224D9qaxLT [2312]
AlternateDataStreams: C:\Users\deco\AppData\Local\Application Data:2qTWSJ0QW6qXwQQW47MlLy [2424]
AlternateDataStreams: C:\Users\deco\AppData\Local\Application Data:5VfbgSCAXOk224D9qaxLT [2312]
AlternateDataStreams: C:\Users\deco\AppData\Local\fxTJ3wOFPpr5:hmVaetgd9kzvQ7J84ObD [2278]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 201.17.1.157 - 201.17.1.152
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\StartupFolder: => "RealPlayer Cloud Service UI.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "IAAnotif"
HKLM\...\StartupApproved\Run: => "HotKeysCmds"
HKLM\...\StartupApproved\Run: => "Persistence"
HKLM\...\StartupApproved\Run: => "IgfxTray"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "GoforFilesInstaller Starter"
HKLM\...\StartupApproved\Run32: => "RealDownloader"
HKLM\...\StartupApproved\Run32: => "TkBellExe"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "iCloudDrive"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "iCloudPhotos"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "iCloudServices"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [TCP Query User{6524771A-8D5D-4DFE-8890-89E80B697B07}C:\program files (x86)\popcorn time\chromecast\node.exe] => (Allow) C:\program files (x86)\popcorn time\chromecast\node.exe
FirewallRules: [UDP Query User{333035C3-47AC-468E-9B34-F3F93279131F}C:\program files (x86)\popcorn time\chromecast\node.exe] => (Allow) C:\program files (x86)\popcorn time\chromecast\node.exe
FirewallRules: [TCP Query User{24F34BBE-B9E6-4AA0-ABB5-83218659640F}C:\program files (x86)\popcorn time\popcorntimedesktop.exe] => (Allow) C:\program files (x86)\popcorn time\popcorntimedesktop.exe
FirewallRules: [UDP Query User{FFD32ED0-94F9-4FE2-AFC6-D074C390837B}C:\program files (x86)\popcorn time\popcorntimedesktop.exe] => (Allow) C:\program files (x86)\popcorn time\popcorntimedesktop.exe
FirewallRules: [TCP Query User{8B882952-1FE3-4A5A-ADA2-7F113818DFFD}C:\users\deco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{36F6E301-0EB6-47CF-8B45-D14D3925316B}C:\users\deco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{8CB0BA09-1E6C-4387-BE61-DE8B895C3F8B}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FDE3F47F-12A1-40C2-9DDE-CA111EAD6226}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{83EC21CA-57BD-464F-B7F3-F704FF0C9684}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{6D26D805-A69E-4F5C-9A79-1ED48DD3E7AF}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{7F37147D-813A-42BF-B9F9-9A5FF56AFC33}C:\users\deco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{C176598F-A553-43F2-AFE3-8C9DA3C7B830}C:\users\deco\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{62AB4B90-7C98-4A77-998D-6B9EB22BD795}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdater.exe
FirewallRules: [{72CB84AB-6594-43CF-B1D9-2433089BC041}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{D4B0B46E-D0B2-41F3-A2B5-791D02146DD4}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{47B6A7A5-778C-4A80-A9CF-E78A0C662FCA}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{6FA2DB3B-7623-4D05-84AD-19A61ABBBA3E}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{4E42EE5D-9017-4445-BD46-9BF3B2B36C65}] => (Allow) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
FirewallRules: [{D3DB5C8A-6530-47FA-99C4-25E31D2AAA0A}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{C65F13CF-EFFA-4E9E-B2FB-7D802931DB3C}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{6828F2C7-3DE4-4BC6-B55D-EC6018BB6298}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{0A6D3005-62E5-46B6-BF48-92A713D3F00B}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{5DD4D070-9151-4532-8A21-A5AD168D5D66}C:\users\deco\appdata\roaming\utorrent\updates\3.4.6_42094.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\updates\3.4.6_42094.exe
FirewallRules: [UDP Query User{E4CAA90C-042A-434F-85F7-0D4B247647F3}C:\users\deco\appdata\roaming\utorrent\updates\3.4.6_42094.exe] => (Allow) C:\users\deco\appdata\roaming\utorrent\updates\3.4.6_42094.exe
FirewallRules: [TCP Query User{8E1D36BE-6BFC-4DE6-8B25-53D688BD904D}C:\program files (x86)\popcorn time\chromecast\node.exe] => (Allow) C:\program files (x86)\popcorn time\chromecast\node.exe
FirewallRules: [UDP Query User{E958F3CC-3AA0-4700-B7A6-4F7B91DF6C31}C:\program files (x86)\popcorn time\chromecast\node.exe] => (Allow) C:\program files (x86)\popcorn time\chromecast\node.exe
FirewallRules: [TCP Query User{A202D653-AF53-40DC-B91B-46D03F38F385}C:\program files (x86)\popcorn time\popcorntimedesktop.exe] => (Allow) C:\program files (x86)\popcorn time\popcorntimedesktop.exe
FirewallRules: [UDP Query User{36D3D8DC-6BC3-46BF-A5A4-99A5E29A1B2A}C:\program files (x86)\popcorn time\popcorntimedesktop.exe] => (Allow) C:\program files (x86)\popcorn time\popcorntimedesktop.exe
FirewallRules: [{8548DBCE-BD77-4E8D-954E-E6CD87277880}] => (Allow) C:\Program Files (x86)\Waves\MultiRack\MultiRack SoundGrid.exe
FirewallRules: [TCP Query User{30BA92D4-8F4F-4419-AB0C-1B768727551C}C:\program files (x86)\avid\pro tools\protools.exe] => (Allow) C:\program files (x86)\avid\pro tools\protools.exe
FirewallRules: [UDP Query User{DB372440-C8A3-43C8-B7CB-9180C01DCFF3}C:\program files (x86)\avid\pro tools\protools.exe] => (Allow) C:\program files (x86)\avid\pro tools\protools.exe
FirewallRules: [{4BEABF15-92B7-4961-92C5-535DA2607B28}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{F9680DF7-0F2D-496D-87AB-8694A7CF9C15}C:\program files (x86)\soulseekns\slsk.exe] => (Allow) C:\program files (x86)\soulseekns\slsk.exe
FirewallRules: [UDP Query User{43F9E2C6-8E7E-4F43-A884-A425A240BCF9}C:\program files (x86)\soulseekns\slsk.exe] => (Allow) C:\program files (x86)\soulseekns\slsk.exe
FirewallRules: [TCP Query User{178071C1-DD63-4038-A0FE-1323ADDF3B64}C:\program files\presonus\studio one 3\studio one.exe] => (Allow) C:\program files\presonus\studio one 3\studio one.exe
FirewallRules: [UDP Query User{79DBF874-63B0-413B-A4D3-1BA7CF6DE3D1}C:\program files\presonus\studio one 3\studio one.exe] => (Allow) C:\program files\presonus\studio one 3\studio one.exe
FirewallRules: [TCP Query User{DB5774A8-49CC-42EC-9DF4-A8A1551E96F0}C:\program files\presonus\audiobox\audiobox.exe] => (Allow) C:\program files\presonus\audiobox\audiobox.exe
FirewallRules: [UDP Query User{9E5057F2-C8A5-4AD1-B609-CDCAAB72A593}C:\program files\presonus\audiobox\audiobox.exe] => (Allow) C:\program files\presonus\audiobox\audiobox.exe
FirewallRules: [{EBE45948-4B4D-4EFF-8BDF-C40E37C0F0E3}] => (Block) C:\program files\presonus\audiobox\audiobox.exe
FirewallRules: [{D66485A1-2362-4EF4-8B74-B46525D294EA}] => (Block) C:\program files\presonus\audiobox\audiobox.exe
FirewallRules: [TCP Query User{AB2A302D-A9AA-496A-A2C7-0B09180209E4}C:\program files (x86)\soulseekns\slsk.exe] => (Block) C:\program files (x86)\soulseekns\slsk.exe
FirewallRules: [UDP Query User{26650793-9047-4E24-BD81-4F06D0418770}C:\program files (x86)\soulseekns\slsk.exe] => (Block) C:\program files (x86)\soulseekns\slsk.exe
FirewallRules: [{2336C8F3-6F2A-4BF5-AE3B-BC2B0CFB53FF}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{1C833CC9-3100-4779-95B1-49DB38EEFE3F}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{93D05D8D-29CC-4D61-BB46-5F99CEED4FA7}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{A3F65491-54B3-46FF-B0D3-804D425A6016}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{A19FBE56-51EE-4973-95B9-E24B2966599C}C:\program files (x86)\waves\multirack\multirack.exe] => (Allow) C:\program files (x86)\waves\multirack\multirack.exe
FirewallRules: [UDP Query User{96610EE2-F932-4949-BE6E-179D894442B7}C:\program files (x86)\waves\multirack\multirack.exe] => (Allow) C:\program files (x86)\waves\multirack\multirack.exe
FirewallRules: [{8F916887-D714-4425-8842-EDA57CA634A3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{2C8AE143-769E-4722-990D-676726ABD6C4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{207121DB-BDB5-40A6-84D2-F3A7C89E4ED0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CFE11B90-D2A2-4F63-A357-31D14C83A194}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{64D3A148-7134-4D82-A11B-5464CA0DBADB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DC3828A1-0B47-4A2A-B325-4D3F71135E15}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{3941BD7C-CB8D-494E-8FC3-9726CBDD4D42}] => (Allow) C:\Windows\AutoKMS\AutoKMS.exe
FirewallRules: [{D5732DFF-DF53-468E-9BA1-D39432112E77}] => (Allow) C:\Windows\AutoKMS\AutoKMS.exe
 
==================== Restore Points =========================
 
15-09-2016 09:38:05 Restore Operation
 
==================== Faulty Device Manager Devices =============
 
Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (09/23/2016 08:54:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: deco-PC)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   17 1.0.0.127.in-addr.arpa. PTR deco-PC-2.local.
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 127.0.0.1:5353   15 1.0.0.127.in-addr.arpa. PTR deco-PC.local.
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   17 D.4.A.E.E.D.7.8.B.6.2.E.4.B.D.1.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR deco-PC-2.local.
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:1DB4:E26B:87DE:EA4D:5353   15 D.4.A.E.E.D.7.8.B.6.2.E.4.B.D.1.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR deco-PC.local.
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname deco-PC.local already in use; will try deco-PC-2.local instead
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 1; will deregister   16 deco-PC.local. AAAA FE80:0000:0000:0000:1DB4:E26B:87DE:EA4D
 
Error: (09/23/2016 08:15:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:1DB4:E26B:87DE:EA4D:5353    4 deco-PC.local. Addr 192.168.0.21
 
Error: (09/23/2016 04:34:20 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15625
 
Error: (09/23/2016 04:34:20 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15625
 
 
System errors:
=============
Error: (09/23/2016 09:27:01 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF5D462865" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:45 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF3ACFC409" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:40 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FFCF01BFE6" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:37 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF6BBBFED5" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:34 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF3909BF00" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:24 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF379787F7" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:20 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FFB92AF1C8" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:18 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF40B2AD95" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:14 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FF729E7290" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
Error: (09/23/2016 09:26:07 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "00FFAF3163F4" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the 
Globally Unique Interface Identifier (GUID) if NetBT was unable to 
map from GUID to MAC address. If neither the MAC address nor the GUID were 
available, the string represents a cluster device name.
 
 
CodeIntegrity:
===================================
  Date: 2016-09-22 13:22:18.240
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-22 13:22:17.374
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-22 13:22:16.244
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-22 13:22:15.591
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-20 22:22:09.366
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2016-09-20 17:54:27.432
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-20 17:43:47.328
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-20 17:43:47.212
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-20 17:43:47.093
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-09-20 17:43:46.978
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Pentium® Dual-Core CPU E5800 @ 3.20GHz
Percentage of memory in use: 61%
Total physical RAM: 4061.17 MB
Available physical RAM: 1581.43 MB
Total Virtual: 8157.17 MB
Available Virtual: 5496.13 MB
 
==================== Drives ================================
 
Drive c: (Acer) (Fixed) (Total:911.88 GB) (Free:622 GB) NTFS
Drive d: (Elements) (Fixed) (Total:465.73 GB) (Free:273.28 GB) NTFS
Drive e: (Madalyns) (Fixed) (Total:465.76 GB) (Free:398.86 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: FBC288CC)
Partition 1: (Not Active) - (Size=19.5 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=911.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 32C867F9)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
 
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 465.7 GB) (Disk ID: FFEDE111)
Partition 1: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP
I'm going on a 3 day trip on Monday but since no one else seems to want this one:
 
Clear the Java Cache by following the instructions on
 
You do not have the latest Java.
First go into Control Panel, Add/Remove Software (XP) or Programs and Features (Vista/Win 7) and remove any old versions (which may call themselves: Java Runtime, Runtime Environment, Runtime, JRE, Java Virtual Machine, Virtual Machine, Java VM, JVM, VM, J2RE, J2SE)
I see:
Java 7 Update 65 
Java 8 Update 40 
 
Java has been very vulnerable to infection so unless you absolutely need it you should not reinstall it.
 
If you feel you must have Java:
Get the latest Java at:
 
Save it to your PC then close all browsers and install it.  Do not let it install the yahoo toolbar or other foistware.
Once installed, go into Control Panel, Java, Security and set the slider to the Highest then OK.
 
(If you also want the 64 bit version then use the 64 bit version of IE to get it.)
 
Also uninstall
 
Bonjour (Not working on your Win 10)
Skype Click to Call  (This will not hurt Skype - just removes the annoying process that turns every random 10 digit number into a phone link)
 
Disable NetBT:
 
 
(The above is for 8 but should work for 10).
 
 
Download the attached fixlist.txt to the same location as FRST
 
Attached File  fixlist.txt   2.54KB   37 downloads
 
Note if you really are in Brazil then open the fixlist.txt and edit it to delete the following two lines:
 
Tcpip\Parameters: [DhcpNameServer] 201.17.1.157 201.17.1.152
Tcpip\..\Interfaces\{bc9b8eca-8d3a-463c-a441-d44690c56727}: [DhcpNameServer] 201.17.1.157 201.17.1.152
 

 

Do not leave empty spaces where the lines were.

 

 

Run FRST and press Fix
A fix log will be generated please post that 
 
 
Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.  Separate posts are fine.
 
Open an elevated command prompt:
 
 
If you open an elevated command prompt it will by default open in c:\Windows\system32
 
Once you have an elevated command prompt:
 
Now Type(with an Enter after each line):
 
 DISM  /Online  /Cleanup-Image  /RestoreHealth

 

 (I use two spaces so you can be sure to see where one space goes.)
This will take a while to complete. (10-15 minutes)  Once the prompt returns:
 
Reboot.  Open an elevated Command Prompt again and type (with an Enter after the line):
 
sfc  /scannow
 
 
 
This will also take about 10 minutes.  
 
When it finishes it will say one of the following:
 
Windows did not find any integrity violations (a good thing)
Windows Resource Protection found corrupt files and repaired them (a good thing)
Windows Resource Protection found corrupt files but was unable to fix some (or all) of them (not a good thing)
 
If you get the last result then type:
 
findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \junk.txt 
 
Hit Enter.  Then type::
 
 
notepad  \junk.txt 
 
Hit Enter. 
 
 Copy the text from notepad and paste it into a reply.
 
 
After you finish SFC, regardless of the result:
 
 
 
1. Please download the Event Viewer Tool by Vino Rosso
and save it to your Desktop:
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:
 
* System
4. Under 'Select type to list', select:
* Error
* Warning
 
 
Then use the 'Number of events' as follows:
 
 
1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.
 
 
Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)
 
Let's see if it is still slow:
 
Get Process Explorer
 
Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
 
View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures
 
 
Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
 
Wait a full minute then:
 
File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.
 
Inspect the log you just created.  If any sfchost.exe is using more than 5% of the CPU then:
 
Copy the next 2 lines:
 
TASKLIST /SVC  > \junk.txt
notepad \junk.txt
 
Open an Elevated Command Prompt:
 
Right click and Paste (or Edit then Paste) and the copied lines should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply. 
 
Now let's check your hard drive and the temperatures on the motherboard:
 
Get the free version of Speccy:
 
http://www.filehippo...download_speccy (Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
Download, Save and Install it.  Tell it you do not need CCLEANER if it asks you to also install it.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), 
File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
(It will be near the top about 10 lines down.) Save the file.  Attach the file to your next post.  (More Reply Options, Choose File, Open, Attach This File)
 
Uninstall Speccy.
 
Finally
Let's check your Internet Connection:
Go to http://www.speedtest.net/and click on Begin Test
 
When the Test finishes click on Share This Result and then select Forum then Copy then move to a reply and Ctrl + v
 
Is that about what you pay for?  If not are you using wireless?
 
 
 
 
 
 
 
 

  • 0

#3
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

Hi RKinner, thanks for helping out before your vacation time. I deeply appreciate it. First things first: can you tell me why do I have more than 100 Ethernet connections created (although they are not being used, except my Local Area connection and my wireless network connection)?

2nd: I'm really in Brazil so I deleted the first two lines on the fixlist with no spacing left...

I'm posting this part now...Gotta reboot and continue with a separate reply

Attached Files


  • 0

#4
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

These are the results of junkie.txt

2016-09-24 21:39:49, Info                  CSI    0000000a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:39:49, Info                  CSI    0000000b [SR] Beginning Verify and Repair transaction
2016-09-24 21:39:56, Info                  CSI    00000071 [SR] Verify complete
2016-09-24 21:39:56, Info                  CSI    00000072 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:39:56, Info                  CSI    00000073 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:05, Info                  CSI    000000d8 [SR] Verify complete
2016-09-24 21:40:05, Info                  CSI    000000d9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:05, Info                  CSI    000000da [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:11, Info                  CSI    0000013f [SR] Verify complete
2016-09-24 21:40:11, Info                  CSI    00000140 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:11, Info                  CSI    00000141 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:15, Info                  CSI    000001a6 [SR] Verify complete
2016-09-24 21:40:15, Info                  CSI    000001a7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:15, Info                  CSI    000001a8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:20, Info                  CSI    0000020d [SR] Verify complete
2016-09-24 21:40:20, Info                  CSI    0000020e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:20, Info                  CSI    0000020f [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:25, Info                  CSI    00000274 [SR] Verify complete
2016-09-24 21:40:25, Info                  CSI    00000275 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:25, Info                  CSI    00000276 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:29, Info                  CSI    000002db [SR] Verify complete
2016-09-24 21:40:29, Info                  CSI    000002dc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:29, Info                  CSI    000002dd [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:34, Info                  CSI    00000343 [SR] Verify complete
2016-09-24 21:40:34, Info                  CSI    00000344 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:34, Info                  CSI    00000345 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:39, Info                  CSI    000003aa [SR] Verify complete
2016-09-24 21:40:39, Info                  CSI    000003ab [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:39, Info                  CSI    000003ac [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:45, Info                  CSI    00000414 [SR] Verify complete
2016-09-24 21:40:45, Info                  CSI    00000415 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:45, Info                  CSI    00000416 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:51, Info                  CSI    0000047d [SR] Verify complete
2016-09-24 21:40:51, Info                  CSI    0000047e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:51, Info                  CSI    0000047f [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:57, Info                  CSI    000004e6 [SR] Verify complete
2016-09-24 21:40:57, Info                  CSI    000004e7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:57, Info                  CSI    000004e8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:02, Info                  CSI    0000054e [SR] Verify complete
2016-09-24 21:41:03, Info                  CSI    0000054f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:03, Info                  CSI    00000550 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:08, Info                  CSI    000005b7 [SR] Verify complete
2016-09-24 21:41:08, Info                  CSI    000005b8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:08, Info                  CSI    000005b9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:14, Info                  CSI    0000061e [SR] Verify complete
2016-09-24 21:41:14, Info                  CSI    0000061f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:14, Info                  CSI    00000620 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:19, Info                  CSI    00000688 [SR] Verify complete
2016-09-24 21:41:19, Info                  CSI    00000689 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:19, Info                  CSI    0000068a [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:24, Info                  CSI    000006f0 [SR] Verify complete
2016-09-24 21:41:24, Info                  CSI    000006f1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:24, Info                  CSI    000006f2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:29, Info                  CSI    00000758 [SR] Verify complete
2016-09-24 21:41:30, Info                  CSI    00000759 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:30, Info                  CSI    0000075a [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:36, Info                  CSI    000007c1 [SR] Verify complete
2016-09-24 21:41:36, Info                  CSI    000007c2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:36, Info                  CSI    000007c3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:43, Info                  CSI    0000082e [SR] Verify complete
2016-09-24 21:41:43, Info                  CSI    0000082f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:43, Info                  CSI    00000830 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:48, Info                  CSI    00000895 [SR] Verify complete
2016-09-24 21:41:48, Info                  CSI    00000896 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:48, Info                  CSI    00000897 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:54, Info                  CSI    000008fd [SR] Verify complete
2016-09-24 21:41:55, Info                  CSI    000008fe [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:55, Info                  CSI    000008ff [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:01, Info                  CSI    00000966 [SR] Verify complete
2016-09-24 21:42:01, Info                  CSI    00000967 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:01, Info                  CSI    00000968 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:07, Info                  CSI    000009d0 [SR] Verify complete
2016-09-24 21:42:07, Info                  CSI    000009d1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:07, Info                  CSI    000009d2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:11, Info                  CSI    00000a39 [SR] Verify complete
2016-09-24 21:42:11, Info                  CSI    00000a3a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:11, Info                  CSI    00000a3b [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:16, Info                  CSI    00000aa0 [SR] Verify complete
2016-09-24 21:42:16, Info                  CSI    00000aa1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:16, Info                  CSI    00000aa2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:21, Info                  CSI    00000b07 [SR] Verify complete
2016-09-24 21:42:21, Info                  CSI    00000b08 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:21, Info                  CSI    00000b09 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:28, Info                  CSI    00000b6f [SR] Verify complete
2016-09-24 21:42:28, Info                  CSI    00000b70 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:28, Info                  CSI    00000b71 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:40, Info                  CSI    00000bd9 [SR] Verify complete
2016-09-24 21:42:40, Info                  CSI    00000bda [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:40, Info                  CSI    00000bdb [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:45, Info                  CSI    00000c40 [SR] Verify complete
2016-09-24 21:42:45, Info                  CSI    00000c41 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:45, Info                  CSI    00000c42 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:47, Info                  CSI    00000c44 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:42:51, Info                  CSI    00000c73 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:42:51, Info                  CSI    00000c74 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:42:51, Info                  CSI    00000c77 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Event Viewer.lnk"; source file in store is also corrupted
2016-09-24 21:42:53, Info                  CSI    00000cb6 [SR] Verify complete
2016-09-24 21:42:53, Info                  CSI    00000cb7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:53, Info                  CSI    00000cb8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:58, Info                  CSI    00000d1d [SR] Verify complete
2016-09-24 21:42:58, Info                  CSI    00000d1e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:58, Info                  CSI    00000d1f [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:05, Info                  CSI    00000d86 [SR] Verify complete
2016-09-24 21:43:05, Info                  CSI    00000d87 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:05, Info                  CSI    00000d88 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:16, Info                  CSI    00000df0 [SR] Verify complete
2016-09-24 21:43:16, Info                  CSI    00000df1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:16, Info                  CSI    00000df2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:21, Info                  CSI    00000e58 [SR] Verify complete
2016-09-24 21:43:22, Info                  CSI    00000e59 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:22, Info                  CSI    00000e5a [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:26, Info                  CSI    00000ebf [SR] Verify complete
2016-09-24 21:43:26, Info                  CSI    00000ec0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:26, Info                  CSI    00000ec1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:32, Info                  CSI    00000f28 [SR] Verify complete
2016-09-24 21:43:32, Info                  CSI    00000f29 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:32, Info                  CSI    00000f2a [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:43, Info                  CSI    00000fa0 [SR] Verify complete
2016-09-24 21:43:43, Info                  CSI    00000fa1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:43, Info                  CSI    00000fa2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:48, Info                  CSI    00001007 [SR] Verify complete
2016-09-24 21:43:48, Info                  CSI    00001008 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:48, Info                  CSI    00001009 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:53, Info                  CSI    00001070 [SR] Verify complete
2016-09-24 21:43:53, Info                  CSI    00001071 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:53, Info                  CSI    00001072 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:59, Info                  CSI    000010df [SR] Verify complete
2016-09-24 21:43:59, Info                  CSI    000010e0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:59, Info                  CSI    000010e1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:04, Info                  CSI    00001152 [SR] Verify complete
2016-09-24 21:44:04, Info                  CSI    00001153 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:04, Info                  CSI    00001154 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:09, Info                  CSI    000011bc [SR] Verify complete
2016-09-24 21:44:09, Info                  CSI    000011bd [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:09, Info                  CSI    000011be [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:19, Info                  CSI    00001235 [SR] Verify complete
2016-09-24 21:44:19, Info                  CSI    00001236 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:19, Info                  CSI    00001237 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:23, Info                  CSI    00001239 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:26, Info                  CSI    0000123b [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:29, Info                  CSI    00001246 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:29, Info                  CSI    00001247 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:44:29, Info                  CSI    0000124a [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18]"Steps Recorder.lnk"; source file in store is also corrupted
2016-09-24 21:44:33, Info                  CSI    00001296 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:33, Info                  CSI    00001297 [SR] This component was referenced by [l:80]"Package_1763_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3542_neutral"
2016-09-24 21:44:33, Info                  CSI    0000129a [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:16]"Task Manager.lnk"; source file in store is also corrupted
2016-09-24 21:44:36, Info                  CSI    000012d3 [SR] Verify complete
2016-09-24 21:44:36, Info                  CSI    000012d4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:36, Info                  CSI    000012d5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:52, Info                  CSI    0000134b [SR] Verify complete
2016-09-24 21:44:53, Info                  CSI    0000134c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:53, Info                  CSI    0000134d [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:05, Info                  CSI    000013da [SR] Verify complete
2016-09-24 21:45:05, Info                  CSI    000013db [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:05, Info                  CSI    000013dc [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:17, Info                  CSI    00001452 [SR] Verify complete
2016-09-24 21:45:17, Info                  CSI    00001453 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:17, Info                  CSI    00001454 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:32, Info                  CSI    000014d2 [SR] Verify complete
2016-09-24 21:45:32, Info                  CSI    000014d3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:32, Info                  CSI    000014d4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:41, Info                  CSI    00001539 [SR] Verify complete
2016-09-24 21:45:41, Info                  CSI    0000153a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:41, Info                  CSI    0000153b [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:47, Info                  CSI    000015a2 [SR] Verify complete
2016-09-24 21:45:47, Info                  CSI    000015a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:47, Info                  CSI    000015a4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:54, Info                  CSI    000015a6 [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:02, Info                  CSI    000015cf [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:02, Info                  CSI    000015d0 [SR] This component was referenced by [l:161]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-09-24 21:46:02, Info                  CSI    000015d3 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"Component Services.lnk"; source file in store is also corrupted
2016-09-24 21:46:07, Info                  CSI    0000161e [SR] Verify complete
2016-09-24 21:46:07, Info                  CSI    0000161f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:07, Info                  CSI    00001620 [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:07, Info                  CSI    00001622 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:21, Info                  CSI    000016d0 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:21, Info                  CSI    000016d1 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:46:21, Info                  CSI    000016d4 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Computer Management.lnk"; source file in store is also corrupted
2016-09-24 21:46:22, Info                  CSI    000016d9 [SR] Verify complete
2016-09-24 21:46:22, Info                  CSI    000016da [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:22, Info                  CSI    000016db [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:22, Info                  CSI    000016dd [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:23, Info                  CSI    000016df [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:26, Info                  CSI    000016e3 [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:26, Info                  CSI    000016e4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:46:26, Info                  CSI    000016e7 [SR] Could not reproject corrupted file [l:81 ml:82]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:17]"Character Map.lnk"; source file in store is also corrupted
2016-09-24 21:46:28, Info                  CSI    00001722 [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:28, Info                  CSI    00001723 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:46:28, Info                  CSI    00001726 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-09-24 21:46:32, Info                  CSI    00001764 [SR] Verify complete
2016-09-24 21:46:32, Info                  CSI    00001765 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:32, Info                  CSI    00001766 [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:50, Info                  CSI    0000184a [SR] Verify complete
2016-09-24 21:46:50, Info                  CSI    0000184b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:50, Info                  CSI    0000184c [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:01, Info                  CSI    000018c7 [SR] Verify complete
2016-09-24 21:47:02, Info                  CSI    000018c8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:02, Info                  CSI    000018c9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:12, Info                  CSI    0000193d [SR] Verify complete
2016-09-24 21:47:12, Info                  CSI    0000193e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:12, Info                  CSI    0000193f [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:21, Info                  CSI    000019c9 [SR] Verify complete
2016-09-24 21:47:21, Info                  CSI    000019ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:21, Info                  CSI    000019cb [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:30, Info                  CSI    00001a44 [SR] Verify complete
2016-09-24 21:47:30, Info                  CSI    00001a45 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:30, Info                  CSI    00001a46 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:31, Info                  CSI    00001a48 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:47:39, Info                  CSI    00001a9e [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:47:39, Info                  CSI    00001a9f [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:47:39, Info                  CSI    00001aa2 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:10]"dfrgui.lnk"; source file in store is also corrupted
2016-09-24 21:47:40, Info                  CSI    00001ac3 [SR] Verify complete
2016-09-24 21:47:40, Info                  CSI    00001ac4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:40, Info                  CSI    00001ac5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:49, Info                  CSI    00001b2b [SR] Verify complete
2016-09-24 21:47:50, Info                  CSI    00001b2c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:50, Info                  CSI    00001b2d [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:58, Info                  CSI    00001b99 [SR] Verify complete
2016-09-24 21:47:58, Info                  CSI    00001b9a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:58, Info                  CSI    00001b9b [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:07, Info                  CSI    00001c1d [SR] Verify complete
2016-09-24 21:48:07, Info                  CSI    00001c1e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:07, Info                  CSI    00001c1f [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:09, Info                  CSI    00001c21 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:48:14, Info                  CSI    00001c53 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:48:14, Info                  CSI    00001c54 [SR] This component was referenced by [l:107]"Microsoft-Windows-Printing-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.FaxServicesClientPackage"
2016-09-24 21:48:14, Info                  CSI    00001c57 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-09-24 21:48:20, Info                  CSI    00001cc8 [SR] Verify complete
2016-09-24 21:48:20, Info                  CSI    00001cc9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:20, Info                  CSI    00001cca [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:33, Info                  CSI    00001d61 [SR] Verify complete
2016-09-24 21:48:34, Info                  CSI    00001d62 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:34, Info                  CSI    00001d63 [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:50, Info                  CSI    00001e32 [SR] Verify complete
2016-09-24 21:48:50, Info                  CSI    00001e33 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:50, Info                  CSI    00001e34 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:00, Info                  CSI    00001eaf [SR] Verify complete
2016-09-24 21:49:01, Info                  CSI    00001eb0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:01, Info                  CSI    00001eb1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:10, Info                  CSI    00001f26 [SR] Verify complete
2016-09-24 21:49:10, Info                  CSI    00001f27 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:10, Info                  CSI    00001f28 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:32, Info                  CSI    00002005 [SR] Verify complete
2016-09-24 21:49:32, Info                  CSI    00002006 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:32, Info                  CSI    00002007 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:41, Info                  CSI    00002076 [SR] Verify complete
2016-09-24 21:49:41, Info                  CSI    00002077 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:41, Info                  CSI    00002078 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:47, Info                  CSI    000020de [SR] Verify complete
2016-09-24 21:49:48, Info                  CSI    000020df [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:48, Info                  CSI    000020e0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:01, Info                  CSI    00002166 [SR] Verify complete
2016-09-24 21:50:01, Info                  CSI    00002167 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:01, Info                  CSI    00002168 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:09, Info                  CSI    000021d3 [SR] Verify complete
2016-09-24 21:50:09, Info                  CSI    000021d4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:09, Info                  CSI    000021d5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:18, Info                  CSI    00002248 [SR] Verify complete
2016-09-24 21:50:18, Info                  CSI    00002249 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:18, Info                  CSI    0000224a [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:34, Info                  CSI    000022cb [SR] Verify complete
2016-09-24 21:50:34, Info                  CSI    000022cc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:34, Info                  CSI    000022cd [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:41, Info                  CSI    000022cf [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:50:49, Info                  CSI    00002351 [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:50:49, Info                  CSI    00002352 [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-drivers-Deployment"
2016-09-24 21:50:49, Info                  CSI    00002355 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:19]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-09-24 21:50:50, Info                  CSI    0000236c [SR] Verify complete
2016-09-24 21:50:50, Info                  CSI    0000236d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:50, Info                  CSI    0000236e [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:01, Info                  CSI    000023e1 [SR] Verify complete
2016-09-24 21:51:01, Info                  CSI    000023e2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:01, Info                  CSI    000023e3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:04, Info                  CSI    000023e5 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:18, Info                  CSI    0000249d [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:18, Info                  CSI    0000249e [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-enduser-Deployment"
2016-09-24 21:51:18, Info                  CSI    000024a1 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-09-24 21:51:19, Info                  CSI    000024ae [SR] Verify complete
2016-09-24 21:51:19, Info                  CSI    000024af [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:19, Info                  CSI    000024b0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:20, Info                  CSI    000024b2 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:29, Info                  CSI    000024e6 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:29, Info                  CSI    000024e7 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:51:29, Info                  CSI    000024ea [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:27]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-09-24 21:51:35, Info                  CSI    00002544 [SR] Verify complete
2016-09-24 21:51:35, Info                  CSI    00002545 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:35, Info                  CSI    00002546 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:50, Info                  CSI    000025c9 [SR] Verify complete
2016-09-24 21:51:50, Info                  CSI    000025ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:50, Info                  CSI    000025cb [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:02, Info                  CSI    0000263f [SR] Verify complete
2016-09-24 21:52:03, Info                  CSI    00002640 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:03, Info                  CSI    00002641 [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:10, Info                  CSI    00002643 [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:25, Info                  CSI    0000269d [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:25, Info                  CSI    0000269e [SR] This component was referenced by [l:93]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~10.0.10586.0.WindowsMediaPlayer"
2016-09-24 21:52:25, Info                  CSI    000026a1 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Media Player.lnk"; source file in store is also corrupted
2016-09-24 21:52:27, Info                  CSI    000026d2 [SR] Verify complete
2016-09-24 21:52:27, Info                  CSI    000026d3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:27, Info                  CSI    000026d4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:34, Info                  CSI    000026d6 [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:36, Info                  CSI    000026eb [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:36, Info                  CSI    000026ec [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:52:37, Info                  CSI    000026ef [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24]"System Configuration.lnk"; source file in store is also corrupted
2016-09-24 21:52:48, Info                  CSI    000027ad [SR] Verify complete
2016-09-24 21:52:48, Info                  CSI    000027ae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:48, Info                  CSI    000027af [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:48, Info                  CSI    000027b1 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:54, Info                  CSI    000027e3 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:54, Info                  CSI    000027e4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:52:54, Info                  CSI    000027e7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"System Information.lnk"; source file in store is also corrupted
2016-09-24 21:52:57, Info                  CSI    00002826 [SR] Repairing corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:9]"Paint.lnk" from store
2016-09-24 21:52:57, Info                  CSI    0000282f [SR] Verify complete
2016-09-24 21:52:57, Info                  CSI    00002830 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:57, Info                  CSI    00002831 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:05, Info                  CSI    0000289d [SR] Verify complete
2016-09-24 21:53:05, Info                  CSI    0000289e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:05, Info                  CSI    0000289f [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:14, Info                  CSI    00002917 [SR] Verify complete
2016-09-24 21:53:14, Info                  CSI    00002918 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:14, Info                  CSI    00002919 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:26, Info                  CSI    000029b8 [SR] Verify complete
2016-09-24 21:53:26, Info                  CSI    000029b9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:26, Info                  CSI    000029ba [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:33, Info                  CSI    00002a20 [SR] Verify complete
2016-09-24 21:53:34, Info                  CSI    00002a21 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:34, Info                  CSI    00002a22 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:43, Info                  CSI    00002aa7 [SR] Verify complete
2016-09-24 21:53:43, Info                  CSI    00002aa8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:43, Info                  CSI    00002aa9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:53, Info                  CSI    00002b1f [SR] Verify complete
2016-09-24 21:53:53, Info                  CSI    00002b20 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:53, Info                  CSI    00002b21 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:56, Info                  CSI    00002b23 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:53:56, Info                  CSI    00002b25 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b75 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b76 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 21:54:01, Info                  CSI    00002b78 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b79 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 21:54:01, Info                  CSI    00002b7c [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20]"Resource Monitor.lnk"; source file in store is also corrupted
2016-09-24 21:54:01, Info                  CSI    00002b7f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Performance Monitor.lnk"; source file in store is also corrupted
2016-09-24 21:54:02, Info                  CSI    00002b9f [SR] Verify complete
2016-09-24 21:54:02, Info                  CSI    00002ba0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:02, Info                  CSI    00002ba1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:15, Info                  CSI    00002c32 [SR] Verify complete
2016-09-24 21:54:15, Info                  CSI    00002c33 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:15, Info                  CSI    00002c34 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:24, Info                  CSI    00002cb2 [SR] Verify complete
2016-09-24 21:54:24, Info                  CSI    00002cb3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:24, Info                  CSI    00002cb4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:35, Info                  CSI    00002d25 [SR] Verify complete
2016-09-24 21:54:35, Info                  CSI    00002d26 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:35, Info                  CSI    00002d27 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:43, Info                  CSI    00002d97 [SR] Verify complete
2016-09-24 21:54:43, Info                  CSI    00002d98 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:43, Info                  CSI    00002d99 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:52, Info                  CSI    00002e0c [SR] Verify complete
2016-09-24 21:54:52, Info                  CSI    00002e0d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:52, Info                  CSI    00002e0e [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:59, Info                  CSI    00002e82 [SR] Verify complete
2016-09-24 21:55:00, Info                  CSI    00002e83 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:00, Info                  CSI    00002e84 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:07, Info                  CSI    00002ef1 [SR] Verify complete
2016-09-24 21:55:08, Info                  CSI    00002ef2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:08, Info                  CSI    00002ef3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:19, Info                  CSI    00002f65 [SR] Verify complete
2016-09-24 21:55:19, Info                  CSI    00002f66 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:19, Info                  CSI    00002f67 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:29, Info                  CSI    00002fee [SR] Verify complete
2016-09-24 21:55:29, Info                  CSI    00002fef [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:29, Info                  CSI    00002ff0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:39, Info                  CSI    0000305c [SR] Verify complete
2016-09-24 21:55:39, Info                  CSI    0000305d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:39, Info                  CSI    0000305e [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:41, Info                  CSI    00003060 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:55:56, Info                  CSI    000030b5 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:55:56, Info                  CSI    000030b6 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:55:56, Info                  CSI    000030b9 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:12]"services.lnk"; source file in store is also corrupted
2016-09-24 21:55:59, Info                  CSI    000030e5 [SR] Verify complete
2016-09-24 21:55:59, Info                  CSI    000030e6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:59, Info                  CSI    000030e7 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:06, Info                  CSI    000030e9 [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:09, Info                  CSI    0000312c [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:09, Info                  CSI    0000312d [SR] This component was referenced by [l:88]"Microsoft-Windows-SnippingTool-Package~31bf3856ad364e35~amd64~~10.0.10586.0.SnippingTool"
2016-09-24 21:56:09, Info                  CSI    00003130 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:17]"Snipping Tool.lnk"; source file in store is also corrupted
2016-09-24 21:56:11, Info                  CSI    0000318e [SR] Verify complete
2016-09-24 21:56:11, Info                  CSI    0000318f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:11, Info                  CSI    00003190 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:16, Info                  CSI    00003192 [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:17, Info                  CSI    00003194 [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:20, Info                  CSI    000031c0 [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:20, Info                  CSI    000031c1 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:56:20, Info                  CSI    000031c4 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Default Programs.lnk"; source file in store is also corrupted
2016-09-24 21:56:20, Info                  CSI    000031c9 [SR] Repairing corrupted file [l:70 ml:71]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:22]"Speech Recognition.lnk" from store
2016-09-24 21:56:23, Info                  CSI    0000321c [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:23, Info                  CSI    0000321d [SR] This component was referenced by [l:80]"Package_2865_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6752_neutral"
2016-09-24 21:56:23, Info                  CSI    00003220 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:16]"Sticky Notes.lnk"; source file in store is also corrupted
2016-09-24 21:56:23, Info                  CSI    00003223 [SR] Verify complete
2016-09-24 21:56:23, Info                  CSI    00003224 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:23, Info                  CSI    00003225 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:26, Info                  CSI    00003227 [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:29, Info                  CSI    0000326a [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:29, Info                  CSI    0000326b [SR] This component was referenced by [l:80]"Package_2890_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6781_neutral"
2016-09-24 21:56:29, Info                  CSI    0000326e [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:20]"Math Input Panel.lnk"; source file in store is also corrupted
2016-09-24 21:56:32, Info                  CSI    0000329b [SR] Verify complete
2016-09-24 21:56:32, Info                  CSI    0000329c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:32, Info                  CSI    0000329d [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:35, Info                  CSI    0000329f [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:36, Info                  CSI    000032a9 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:36, Info                  CSI    000032aa [SR] This component was referenced by [l:80]"Package_2092_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4375_neutral"
2016-09-24 21:56:36, Info                  CSI    000032ad [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:29]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-09-24 21:56:41, Info                  CSI    0000331e [SR] Verify complete
2016-09-24 21:56:41, Info                  CSI    0000331f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:41, Info                  CSI    00003320 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:59, Info                  CSI    00003394 [SR] Verify complete
2016-09-24 21:56:59, Info                  CSI    00003395 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:59, Info                  CSI    00003396 [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:13, Info                  CSI    00003409 [SR] Verify complete
2016-09-24 21:57:14, Info                  CSI    0000340a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:14, Info                  CSI    0000340b [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:22, Info                  CSI    00003478 [SR] Verify complete
2016-09-24 21:57:22, Info                  CSI    00003479 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:22, Info                  CSI    0000347a [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:31, Info                  CSI    000034eb [SR] Verify complete
2016-09-24 21:57:31, Info                  CSI    000034ec [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:31, Info                  CSI    000034ed [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:39, Info                  CSI    0000356a [SR] Verify complete
2016-09-24 21:57:39, Info                  CSI    0000356b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:39, Info                  CSI    0000356c [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:48, Info                  CSI    000035e4 [SR] Verify complete
2016-09-24 21:57:49, Info                  CSI    000035e5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:49, Info                  CSI    000035e6 [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:55, Info                  CSI    00003651 [SR] Verify complete
2016-09-24 21:57:55, Info                  CSI    00003652 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:55, Info                  CSI    00003653 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:05, Info                  CSI    000036d4 [SR] Verify complete
2016-09-24 21:58:05, Info                  CSI    000036d5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:05, Info                  CSI    000036d6 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:16, Info                  CSI    00003741 [SR] Verify complete
2016-09-24 21:58:16, Info                  CSI    00003742 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:16, Info                  CSI    00003743 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:31, Info                  CSI    000037b6 [SR] Verify complete
2016-09-24 21:58:31, Info                  CSI    000037b7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:31, Info                  CSI    000037b8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:33, Info                  CSI    000037ba [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:58:44, Info                  CSI    00003827 [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:58:44, Info                  CSI    00003828 [SR] This component was referenced by [l:80]"Package_2063_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4232_neutral"
2016-09-24 21:58:44, Info                  CSI    0000382b [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:11]"Wordpad.lnk"; source file in store is also corrupted
2016-09-24 21:58:45, Info                  CSI    0000383f [SR] Verify complete
2016-09-24 21:58:45, Info                  CSI    00003840 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:45, Info                  CSI    00003841 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:46, Info                  CSI    00003843 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:59:04, Info                  CSI    00003916 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:59:04, Info                  CSI    00003917 [SR] This component was referenced by [l:80]"Package_2918_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6812_neutral"
2016-09-24 21:59:04, Info                  CSI    0000391a [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:14]"XPS Viewer.lnk"; source file in store is also corrupted
2016-09-24 21:59:07, Info                  CSI    00003949 [SR] Verify complete
2016-09-24 21:59:07, Info                  CSI    0000394a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:07, Info                  CSI    0000394b [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:19, Info                  CSI    000039ce [SR] Verify complete
2016-09-24 21:59:19, Info                  CSI    000039cf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:19, Info                  CSI    000039d0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:33, Info                  CSI    00003a60 [SR] Verify complete
2016-09-24 21:59:34, Info                  CSI    00003a61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:34, Info                  CSI    00003a62 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:41, Info                  CSI    00003ad2 [SR] Verify complete
2016-09-24 21:59:42, Info                  CSI    00003ad3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:42, Info                  CSI    00003ad4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:54, Info                  CSI    00003b44 [SR] Verify complete
2016-09-24 21:59:54, Info                  CSI    00003b45 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:54, Info                  CSI    00003b46 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:06, Info                  CSI    00003bb8 [SR] Verify complete
2016-09-24 22:00:06, Info                  CSI    00003bb9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:06, Info                  CSI    00003bba [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:14, Info                  CSI    00003c20 [SR] Verify complete
2016-09-24 22:00:14, Info                  CSI    00003c21 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:14, Info                  CSI    00003c22 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:24, Info                  CSI    00003c8a [SR] Verify complete
2016-09-24 22:00:24, Info                  CSI    00003c8b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:24, Info                  CSI    00003c8c [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:31, Info                  CSI    00003cf4 [SR] Verify complete
2016-09-24 22:00:31, Info                  CSI    00003cf5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:31, Info                  CSI    00003cf6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:38, Info                  CSI    00003d60 [SR] Verify complete
2016-09-24 22:00:38, Info                  CSI    00003d61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:38, Info                  CSI    00003d62 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:46, Info                  CSI    00003dcd [SR] Verify complete
2016-09-24 22:00:46, Info                  CSI    00003dce [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:46, Info                  CSI    00003dcf [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:52, Info                  CSI    00003e37 [SR] Verify complete
2016-09-24 22:00:52, Info                  CSI    00003e38 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:52, Info                  CSI    00003e39 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:00, Info                  CSI    00003ea5 [SR] Verify complete
2016-09-24 22:01:00, Info                  CSI    00003ea6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:00, Info                  CSI    00003ea7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:07, Info                  CSI    00003f33 [SR] Verify complete
2016-09-24 22:01:07, Info                  CSI    00003f34 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:07, Info                  CSI    00003f35 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:13, Info                  CSI    00003f9c [SR] Verify complete
2016-09-24 22:01:14, Info                  CSI    00003f9d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:14, Info                  CSI    00003f9e [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:16, Info                  CSI    00003fa0 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:21, Info                  CSI    00003fd9 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:21, Info                  CSI    00003fda [SR] This component was referenced by [l:123]"Microsoft-Windows-Network-Security-MPSSVC-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.ce2174d5653b70aa9d5da20c715f3e8e"
2016-09-24 22:01:21, Info                  CSI    00003fdd [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:43]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-09-24 22:01:23, Info                  CSI    00004014 [SR] Verify complete
2016-09-24 22:01:24, Info                  CSI    00004015 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:24, Info                  CSI    00004016 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:37, Info                  CSI    0000407c [SR] Verify complete
2016-09-24 22:01:37, Info                  CSI    0000407d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:37, Info                  CSI    0000407e [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:45, Info                  CSI    000040e3 [SR] Verify complete
2016-09-24 22:01:45, Info                  CSI    000040e4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:45, Info                  CSI    000040e5 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:48, Info                  CSI    000040e7 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:51, Info                  CSI    00004123 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:51, Info                  CSI    00004124 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:01:51, Info                  CSI    00004127 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:18]"Task Scheduler.lnk"; source file in store is also corrupted
2016-09-24 22:01:52, Info                  CSI    00004156 [SR] Verify complete
2016-09-24 22:01:52, Info                  CSI    00004157 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:52, Info                  CSI    00004158 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:57, Info                  CSI    000041bd [SR] Verify complete
2016-09-24 22:01:58, Info                  CSI    000041be [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:58, Info                  CSI    000041bf [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:07, Info                  CSI    00004224 [SR] Verify complete
2016-09-24 22:02:07, Info                  CSI    00004225 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:07, Info                  CSI    00004226 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:10, Info                  CSI    00004228 [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:02:15, Info                  CSI    0000426f [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:02:15, Info                  CSI    00004270 [SR] This component was referenced by [l:80]"Package_3002_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6971_neutral"
2016-09-24 22:02:15, Info                  CSI    00004273 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Windows Defender.lnk"; source file in store is also corrupted
2016-09-24 22:02:19, Info                  CSI    000042a2 [SR] Verify complete
2016-09-24 22:02:20, Info                  CSI    000042a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:20, Info                  CSI    000042a4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:28, Info                  CSI    00004315 [SR] Verify complete
2016-09-24 22:02:28, Info                  CSI    00004316 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:28, Info                  CSI    00004317 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:33, Info                  CSI    0000437d [SR] Verify complete
2016-09-24 22:02:33, Info                  CSI    0000437e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:33, Info                  CSI    0000437f [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:39, Info                  CSI    000043ef [SR] Verify complete
2016-09-24 22:02:39, Info                  CSI    000043f0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:39, Info                  CSI    000043f1 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:45, Info                  CSI    00004465 [SR] Verify complete
2016-09-24 22:02:46, Info                  CSI    00004466 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:46, Info                  CSI    00004467 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:52, Info                  CSI    000044cd [SR] Verify complete
2016-09-24 22:02:52, Info                  CSI    000044ce [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:52, Info                  CSI    000044cf [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:58, Info                  CSI    00004538 [SR] Verify complete
2016-09-24 22:02:58, Info                  CSI    00004539 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:58, Info                  CSI    0000453a [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:03, Info                  CSI    0000459f [SR] Verify complete
2016-09-24 22:03:03, Info                  CSI    000045a0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:03, Info                  CSI    000045a1 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:09, Info                  CSI    00004606 [SR] Verify complete
2016-09-24 22:03:09, Info                  CSI    00004607 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:09, Info                  CSI    00004608 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:17, Info                  CSI    00004678 [SR] Verify complete
2016-09-24 22:03:17, Info                  CSI    00004679 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:17, Info                  CSI    0000467a [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:25, Info                  CSI    000046f6 [SR] Verify complete
2016-09-24 22:03:25, Info                  CSI    000046f7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:25, Info                  CSI    000046f8 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:33, Info                  CSI    00004776 [SR] Verify complete
2016-09-24 22:03:33, Info                  CSI    00004777 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:33, Info                  CSI    00004778 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:42, Info                  CSI    000047f4 [SR] Verify complete
2016-09-24 22:03:42, Info                  CSI    000047f5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:42, Info                  CSI    000047f6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:51, Info                  CSI    00004868 [SR] Verify complete
2016-09-24 22:03:52, Info                  CSI    00004869 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:52, Info                  CSI    0000486a [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:03, Info                  CSI    00004923 [SR] Verify complete
2016-09-24 22:04:03, Info                  CSI    00004924 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:03, Info                  CSI    00004925 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:07, Info                  CSI    0000498d [SR] Verify complete
2016-09-24 22:04:07, Info                  CSI    0000498e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:07, Info                  CSI    0000498f [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:10, Info                  CSI    000049f4 [SR] Verify complete
2016-09-24 22:04:10, Info                  CSI    000049f5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:10, Info                  CSI    000049f6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:15, Info                  CSI    00004a64 [SR] Verify complete
2016-09-24 22:04:15, Info                  CSI    00004a65 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:15, Info                  CSI    00004a66 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:24, Info                  CSI    00004add [SR] Verify complete
2016-09-24 22:04:24, Info                  CSI    00004ade [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:24, Info                  CSI    00004adf [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:27, Info                  CSI    00004ae1 [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:04:32, Info                  CSI    00004b54 [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:04:32, Info                  CSI    00004b55 [SR] This component was referenced by [l:181]"Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:04:32, Info                  CSI    00004b58 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-09-24 22:04:35, Info                  CSI    00004ba5 [SR] Verify complete
2016-09-24 22:04:35, Info                  CSI    00004ba6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:35, Info                  CSI    00004ba7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:45, Info                  CSI    00004c15 [SR] Verify complete
2016-09-24 22:04:45, Info                  CSI    00004c16 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:45, Info                  CSI    00004c17 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:56, Info                  CSI    00004cde [SR] Verify complete
2016-09-24 22:04:56, Info                  CSI    00004cdf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:56, Info                  CSI    00004ce0 [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:20, Info                  CSI    00004d8b [SR] Verify complete
2016-09-24 22:05:21, Info                  CSI    00004d8c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:21, Info                  CSI    00004d8d [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:36, Info                  CSI    00004e12 [SR] Verify complete
2016-09-24 22:05:36, Info                  CSI    00004e13 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:36, Info                  CSI    00004e14 [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:57, Info                  CSI    00004ead [SR] Verify complete
2016-09-24 22:05:58, Info                  CSI    00004eae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:58, Info                  CSI    00004eaf [SR] Beginning Verify and Repair transaction
2016-09-24 22:06:21, Info                  CSI    00004f4a [SR] Verify complete
2016-09-24 22:06:21, Info                  CSI    00004f4b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:06:21, Info                  CSI    00004f4c [SR] Beginning Verify and Repair transaction
2016-09-24 22:06:51, Info                  CSI    00004ffc [SR] Verify complete
2016-09-24 22:06:51, Info                  CSI    00004ffd [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:06:51, Info                  CSI    00004ffe [SR] Beginning Verify and Repair transaction
2016-09-24 22:07:21, Info                  CSI    000050a2 [SR] Verify complete
2016-09-24 22:07:21, Info                  CSI    000050a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:07:21, Info                  CSI    000050a4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:07:40, Info                  CSI    00005139 [SR] Verify complete
2016-09-24 22:07:41, Info                  CSI    0000513a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:07:41, Info                  CSI    0000513b [SR] Beginning Verify and Repair transaction
2016-09-24 22:08:06, Info                  CSI    000051c2 [SR] Verify complete
2016-09-24 22:08:06, Info                  CSI    000051c3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:08:06, Info                  CSI    000051c4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:08:43, Info                  CSI    00005331 [SR] Verify complete
2016-09-24 22:08:43, Info                  CSI    00005332 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:08:43, Info                  CSI    00005333 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:02, Info                  CSI    000053b0 [SR] Verify complete
2016-09-24 22:09:02, Info                  CSI    000053b1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:02, Info                  CSI    000053b2 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:16, Info                  CSI    00005430 [SR] Verify complete
2016-09-24 22:09:16, Info                  CSI    00005431 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:16, Info                  CSI    00005432 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:33, Info                  CSI    000054ad [SR] Verify complete
2016-09-24 22:09:33, Info                  CSI    000054ae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:33, Info                  CSI    000054af [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:01, Info                  CSI    0000557c [SR] Verify complete
2016-09-24 22:10:01, Info                  CSI    0000557d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:01, Info                  CSI    0000557e [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:26, Info                  CSI    0000566b [SR] Verify complete
2016-09-24 22:10:27, Info                  CSI    0000566c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:27, Info                  CSI    0000566d [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:48, Info                  CSI    000056e8 [SR] Verify complete
2016-09-24 22:10:48, Info                  CSI    000056e9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:48, Info                  CSI    000056ea [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:02, Info                  CSI    00005768 [SR] Verify complete
2016-09-24 22:11:02, Info                  CSI    00005769 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:02, Info                  CSI    0000576a [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:19, Info                  CSI    000057f2 [SR] Verify complete
2016-09-24 22:11:19, Info                  CSI    000057f3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:19, Info                  CSI    000057f4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:44, Info                  CSI    000058e2 [SR] Verify complete
2016-09-24 22:11:44, Info                  CSI    000058e3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:44, Info                  CSI    000058e4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:15, Info                  CSI    000059ce [SR] Verify complete
2016-09-24 22:12:15, Info                  CSI    000059cf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:15, Info                  CSI    000059d0 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:33, Info                  CSI    00005a60 [SR] Verify complete
2016-09-24 22:12:33, Info                  CSI    00005a61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:33, Info                  CSI    00005a62 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:54, Info                  CSI    00005afb [SR] Verify complete
2016-09-24 22:12:54, Info                  CSI    00005afc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:54, Info                  CSI    00005afd [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:08, Info                  CSI    00005b7e [SR] Verify complete
2016-09-24 22:13:08, Info                  CSI    00005b7f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:08, Info                  CSI    00005b80 [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:20, Info                  CSI    00005bed [SR] Verify complete
2016-09-24 22:13:20, Info                  CSI    00005bee [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:20, Info                  CSI    00005bef [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:41, Info                  CSI    00005c74 [SR] Verify complete
2016-09-24 22:13:41, Info                  CSI    00005c75 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:41, Info                  CSI    00005c76 [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:54, Info                  CSI    00005d0e [SR] Verify complete
2016-09-24 22:13:54, Info                  CSI    00005d0f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:54, Info                  CSI    00005d10 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:01, Info                  CSI    00005d7e [SR] Verify complete
2016-09-24 22:14:01, Info                  CSI    00005d7f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:01, Info                  CSI    00005d80 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:07, Info                  CSI    00005de7 [SR] Verify complete
2016-09-24 22:14:07, Info                  CSI    00005de8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:07, Info                  CSI    00005de9 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:24, Info                  CSI    00005e6c [SR] Verify complete
2016-09-24 22:14:25, Info                  CSI    00005e6d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:25, Info                  CSI    00005e6e [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:41, Info                  CSI    00005eed [SR] Verify complete
2016-09-24 22:14:41, Info                  CSI    00005eee [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:41, Info                  CSI    00005eef [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:00, Info                  CSI    00005f75 [SR] Verify complete
2016-09-24 22:15:00, Info                  CSI    00005f76 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:00, Info                  CSI    00005f77 [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:17, Info                  CSI    00005ff2 [SR] Verify complete
2016-09-24 22:15:18, Info                  CSI    00005ff3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:18, Info                  CSI    00005ff4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:34, Info                  CSI    0000606a [SR] Verify complete
2016-09-24 22:15:34, Info                  CSI    0000606b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:34, Info                  CSI    0000606c [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:46, Info                  CSI    000060da [SR] Verify complete
2016-09-24 22:15:46, Info                  CSI    000060db [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:46, Info                  CSI    000060dc [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:09, Info                  CSI    00006178 [SR] Verify complete
2016-09-24 22:16:09, Info                  CSI    00006179 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:09, Info                  CSI    0000617a [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:31, Info                  CSI    000061ea [SR] Verify complete
2016-09-24 22:16:31, Info                  CSI    000061eb [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:31, Info                  CSI    000061ec [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:47, Info                  CSI    00006255 [SR] Verify complete
2016-09-24 22:16:47, Info                  CSI    00006256 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:47, Info                  CSI    00006257 [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:12, Info                  CSI    000062d5 [SR] Verify complete
2016-09-24 22:17:12, Info                  CSI    000062d6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:12, Info                  CSI    000062d7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:27, Info                  CSI    0000634c [SR] Verify complete
2016-09-24 22:17:28, Info                  CSI    0000634d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:28, Info                  CSI    0000634e [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:41, Info                  CSI    000063c9 [SR] Verify complete
2016-09-24 22:17:41, Info                  CSI    000063ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:41, Info                  CSI    000063cb [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:58, Info                  CSI    00006452 [SR] Verify complete
2016-09-24 22:17:58, Info                  CSI    00006453 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:58, Info                  CSI    00006454 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:14, Info                  CSI    000064d6 [SR] Verify complete
2016-09-24 22:18:14, Info                  CSI    000064d7 [SR] Verifying 17 (0x0000000000000011) components
2016-09-24 22:18:14, Info                  CSI    000064d8 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:17, Info                  CSI    000064f1 [SR] Verify complete
2016-09-24 22:18:17, Info                  CSI    000064f2 [SR] Repairing 30 (0x000000000000001e) components
2016-09-24 22:18:17, Info                  CSI    000064f3 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:18, Info                  CSI    000064f5 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064f7 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064f9 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064fb [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064fd [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064ff [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    00006501 [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    00006503 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006505 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006507 [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006509 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650b [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650d [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650f [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006511 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006513 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006515 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006517 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006519 [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651b [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651d [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651f [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006521 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006523 [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006525 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006527 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006529 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    0000652b [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    0000652d [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006530 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006531 [SR] This component was referenced by [l:80]"Package_1763_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3542_neutral"
2016-09-24 22:18:21, Info                  CSI    00006534 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:16]"Task Manager.lnk"; source file in store is also corrupted
2016-09-24 22:18:21, Info                  CSI    00006538 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006539 [SR] This component was referenced by [l:107]"Microsoft-Windows-Printing-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.FaxServicesClientPackage"
2016-09-24 22:18:21, Info                  CSI    0000653c [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-09-24 22:18:21, Info                  CSI    0000653f [SR] Repairing corrupted file [l:70 ml:71]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:22]"Speech Recognition.lnk" from store
2016-09-24 22:18:22, Info                  CSI    00006545 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006546 [SR] This component was referenced by [l:80]"Package_2092_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4375_neutral"
2016-09-24 22:18:22, Info                  CSI    00006549 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:29]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000654d [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    0000654e [SR] This component was referenced by [l:80]"Package_2063_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4232_neutral"
2016-09-24 22:18:22, Info                  CSI    00006551 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:11]"Wordpad.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006557 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006558 [SR] This component was referenced by [l:123]"Microsoft-Windows-Network-Security-MPSSVC-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.ce2174d5653b70aa9d5da20c715f3e8e"
2016-09-24 22:18:22, Info                  CSI    0000655b [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:43]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000655f [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006560 [SR] This component was referenced by [l:161]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006563 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"Component Services.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006567 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006568 [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:18:22, Info                  CSI    0000656b [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000656f [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006570 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006573 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:12]"services.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006577 [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006578 [SR] This component was referenced by [l:80]"Package_3002_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6971_neutral"
2016-09-24 22:18:22, Info                  CSI    0000657b [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Windows Defender.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000657f [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006580 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006583 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"System Information.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    00006586 [SR] Repairing corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:9]"Paint.lnk" from store
2016-09-24 22:18:23, Info                  CSI    0000658b [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    0000658c [SR] This component was referenced by [l:181]"Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:18:23, Info                  CSI    0000658f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    00006593 [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    00006594 [SR] This component was referenced by [l:93]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~10.0.10586.0.WindowsMediaPlayer"
2016-09-24 22:18:23, Info                  CSI    00006597 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Media Player.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    0000659b [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    0000659c [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    0000659f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24]"System Configuration.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065a3 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065a4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065a7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:18]"Task Scheduler.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065ab [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065ac [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065af [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Event Viewer.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065b3 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065b4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065b7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Computer Management.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065bb [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065bc [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065bf [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065c3 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065c4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065c7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:27]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065cb [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065cc [SR] This component was referenced by [l:88]"Microsoft-Windows-SnippingTool-Package~31bf3856ad364e35~amd64~~10.0.10586.0.SnippingTool"
2016-09-24 22:18:23, Info                  CSI    000065cf [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:17]"Snipping Tool.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065d3 [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065d4 [SR] This component was referenced by [l:80]"Package_2890_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6781_neutral"
2016-09-24 22:18:23, Info                  CSI    000065d7 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:20]"Math Input Panel.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065db [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065dc [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065df [SR] Could not reproject corrupted file [l:81 ml:82]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:17]"Character Map.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065e3 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065e4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065e7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:10]"dfrgui.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065eb [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065ec [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065ef [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Default Programs.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065f3 [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065f4 [SR] This component was referenced by [l:80]"Package_2865_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6752_neutral"
2016-09-24 22:18:23, Info                  CSI    000065f7 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:16]"Sticky Notes.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065fb [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065fc [SR] This component was referenced by [l:80]"Package_2918_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6812_neutral"
2016-09-24 22:18:24, Info                  CSI    000065ff [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:14]"XPS Viewer.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    00006603 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006604 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:24, Info                  CSI    00006607 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18]"Steps Recorder.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000660b [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    0000660c [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-drivers-Deployment"
2016-09-24 22:18:24, Info                  CSI    0000660f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:19]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    00006613 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006614 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 22:18:24, Info                  CSI    00006616 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006617 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 22:18:24, Info                  CSI    0000661a [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20]"Resource Monitor.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000661d [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Performance Monitor.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000661f [SR] Repair complete
2016-09-24 22:18:24, Info                  CSI    00006620 [SR] Committing transaction
2016-09-24 22:18:25, Info                  CSI    00006625 [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction  have been successfully repaired
2016-09-24 21:39:49, Info                  CSI    0000000a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:39:49, Info                  CSI    0000000b [SR] Beginning Verify and Repair transaction
2016-09-24 21:39:56, Info                  CSI    00000071 [SR] Verify complete
2016-09-24 21:39:56, Info                  CSI    00000072 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:39:56, Info                  CSI    00000073 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:05, Info                  CSI    000000d8 [SR] Verify complete
2016-09-24 21:40:05, Info                  CSI    000000d9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:05, Info                  CSI    000000da [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:11, Info                  CSI    0000013f [SR] Verify complete
2016-09-24 21:40:11, Info                  CSI    00000140 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:11, Info                  CSI    00000141 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:15, Info                  CSI    000001a6 [SR] Verify complete
2016-09-24 21:40:15, Info                  CSI    000001a7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:15, Info                  CSI    000001a8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:20, Info                  CSI    0000020d [SR] Verify complete
2016-09-24 21:40:20, Info                  CSI    0000020e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:20, Info                  CSI    0000020f [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:25, Info                  CSI    00000274 [SR] Verify complete
2016-09-24 21:40:25, Info                  CSI    00000275 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:25, Info                  CSI    00000276 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:29, Info                  CSI    000002db [SR] Verify complete
2016-09-24 21:40:29, Info                  CSI    000002dc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:29, Info                  CSI    000002dd [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:34, Info                  CSI    00000343 [SR] Verify complete
2016-09-24 21:40:34, Info                  CSI    00000344 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:34, Info                  CSI    00000345 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:39, Info                  CSI    000003aa [SR] Verify complete
2016-09-24 21:40:39, Info                  CSI    000003ab [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:39, Info                  CSI    000003ac [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:45, Info                  CSI    00000414 [SR] Verify complete
2016-09-24 21:40:45, Info                  CSI    00000415 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:45, Info                  CSI    00000416 [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:51, Info                  CSI    0000047d [SR] Verify complete
2016-09-24 21:40:51, Info                  CSI    0000047e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:51, Info                  CSI    0000047f [SR] Beginning Verify and Repair transaction
2016-09-24 21:40:57, Info                  CSI    000004e6 [SR] Verify complete
2016-09-24 21:40:57, Info                  CSI    000004e7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:40:57, Info                  CSI    000004e8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:02, Info                  CSI    0000054e [SR] Verify complete
2016-09-24 21:41:03, Info                  CSI    0000054f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:03, Info                  CSI    00000550 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:08, Info                  CSI    000005b7 [SR] Verify complete
2016-09-24 21:41:08, Info                  CSI    000005b8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:08, Info                  CSI    000005b9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:14, Info                  CSI    0000061e [SR] Verify complete
2016-09-24 21:41:14, Info                  CSI    0000061f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:14, Info                  CSI    00000620 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:19, Info                  CSI    00000688 [SR] Verify complete
2016-09-24 21:41:19, Info                  CSI    00000689 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:19, Info                  CSI    0000068a [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:24, Info                  CSI    000006f0 [SR] Verify complete
2016-09-24 21:41:24, Info                  CSI    000006f1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:24, Info                  CSI    000006f2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:29, Info                  CSI    00000758 [SR] Verify complete
2016-09-24 21:41:30, Info                  CSI    00000759 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:30, Info                  CSI    0000075a [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:36, Info                  CSI    000007c1 [SR] Verify complete
2016-09-24 21:41:36, Info                  CSI    000007c2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:36, Info                  CSI    000007c3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:43, Info                  CSI    0000082e [SR] Verify complete
2016-09-24 21:41:43, Info                  CSI    0000082f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:43, Info                  CSI    00000830 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:48, Info                  CSI    00000895 [SR] Verify complete
2016-09-24 21:41:48, Info                  CSI    00000896 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:48, Info                  CSI    00000897 [SR] Beginning Verify and Repair transaction
2016-09-24 21:41:54, Info                  CSI    000008fd [SR] Verify complete
2016-09-24 21:41:55, Info                  CSI    000008fe [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:41:55, Info                  CSI    000008ff [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:01, Info                  CSI    00000966 [SR] Verify complete
2016-09-24 21:42:01, Info                  CSI    00000967 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:01, Info                  CSI    00000968 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:07, Info                  CSI    000009d0 [SR] Verify complete
2016-09-24 21:42:07, Info                  CSI    000009d1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:07, Info                  CSI    000009d2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:11, Info                  CSI    00000a39 [SR] Verify complete
2016-09-24 21:42:11, Info                  CSI    00000a3a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:11, Info                  CSI    00000a3b [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:16, Info                  CSI    00000aa0 [SR] Verify complete
2016-09-24 21:42:16, Info                  CSI    00000aa1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:16, Info                  CSI    00000aa2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:21, Info                  CSI    00000b07 [SR] Verify complete
2016-09-24 21:42:21, Info                  CSI    00000b08 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:21, Info                  CSI    00000b09 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:28, Info                  CSI    00000b6f [SR] Verify complete
2016-09-24 21:42:28, Info                  CSI    00000b70 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:28, Info                  CSI    00000b71 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:40, Info                  CSI    00000bd9 [SR] Verify complete
2016-09-24 21:42:40, Info                  CSI    00000bda [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:40, Info                  CSI    00000bdb [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:45, Info                  CSI    00000c40 [SR] Verify complete
2016-09-24 21:42:45, Info                  CSI    00000c41 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:45, Info                  CSI    00000c42 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:47, Info                  CSI    00000c44 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:42:51, Info                  CSI    00000c73 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:42:51, Info                  CSI    00000c74 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:42:51, Info                  CSI    00000c77 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Event Viewer.lnk"; source file in store is also corrupted
2016-09-24 21:42:53, Info                  CSI    00000cb6 [SR] Verify complete
2016-09-24 21:42:53, Info                  CSI    00000cb7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:53, Info                  CSI    00000cb8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:42:58, Info                  CSI    00000d1d [SR] Verify complete
2016-09-24 21:42:58, Info                  CSI    00000d1e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:42:58, Info                  CSI    00000d1f [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:05, Info                  CSI    00000d86 [SR] Verify complete
2016-09-24 21:43:05, Info                  CSI    00000d87 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:05, Info                  CSI    00000d88 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:16, Info                  CSI    00000df0 [SR] Verify complete
2016-09-24 21:43:16, Info                  CSI    00000df1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:16, Info                  CSI    00000df2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:21, Info                  CSI    00000e58 [SR] Verify complete
2016-09-24 21:43:22, Info                  CSI    00000e59 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:22, Info                  CSI    00000e5a [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:26, Info                  CSI    00000ebf [SR] Verify complete
2016-09-24 21:43:26, Info                  CSI    00000ec0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:26, Info                  CSI    00000ec1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:32, Info                  CSI    00000f28 [SR] Verify complete
2016-09-24 21:43:32, Info                  CSI    00000f29 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:32, Info                  CSI    00000f2a [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:43, Info                  CSI    00000fa0 [SR] Verify complete
2016-09-24 21:43:43, Info                  CSI    00000fa1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:43, Info                  CSI    00000fa2 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:48, Info                  CSI    00001007 [SR] Verify complete
2016-09-24 21:43:48, Info                  CSI    00001008 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:48, Info                  CSI    00001009 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:53, Info                  CSI    00001070 [SR] Verify complete
2016-09-24 21:43:53, Info                  CSI    00001071 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:53, Info                  CSI    00001072 [SR] Beginning Verify and Repair transaction
2016-09-24 21:43:59, Info                  CSI    000010df [SR] Verify complete
2016-09-24 21:43:59, Info                  CSI    000010e0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:43:59, Info                  CSI    000010e1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:04, Info                  CSI    00001152 [SR] Verify complete
2016-09-24 21:44:04, Info                  CSI    00001153 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:04, Info                  CSI    00001154 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:09, Info                  CSI    000011bc [SR] Verify complete
2016-09-24 21:44:09, Info                  CSI    000011bd [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:09, Info                  CSI    000011be [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:19, Info                  CSI    00001235 [SR] Verify complete
2016-09-24 21:44:19, Info                  CSI    00001236 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:19, Info                  CSI    00001237 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:23, Info                  CSI    00001239 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:26, Info                  CSI    0000123b [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:29, Info                  CSI    00001246 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:29, Info                  CSI    00001247 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:44:29, Info                  CSI    0000124a [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18]"Steps Recorder.lnk"; source file in store is also corrupted
2016-09-24 21:44:33, Info                  CSI    00001296 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:44:33, Info                  CSI    00001297 [SR] This component was referenced by [l:80]"Package_1763_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3542_neutral"
2016-09-24 21:44:33, Info                  CSI    0000129a [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:16]"Task Manager.lnk"; source file in store is also corrupted
2016-09-24 21:44:36, Info                  CSI    000012d3 [SR] Verify complete
2016-09-24 21:44:36, Info                  CSI    000012d4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:36, Info                  CSI    000012d5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:44:52, Info                  CSI    0000134b [SR] Verify complete
2016-09-24 21:44:53, Info                  CSI    0000134c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:44:53, Info                  CSI    0000134d [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:05, Info                  CSI    000013da [SR] Verify complete
2016-09-24 21:45:05, Info                  CSI    000013db [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:05, Info                  CSI    000013dc [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:17, Info                  CSI    00001452 [SR] Verify complete
2016-09-24 21:45:17, Info                  CSI    00001453 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:17, Info                  CSI    00001454 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:32, Info                  CSI    000014d2 [SR] Verify complete
2016-09-24 21:45:32, Info                  CSI    000014d3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:32, Info                  CSI    000014d4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:41, Info                  CSI    00001539 [SR] Verify complete
2016-09-24 21:45:41, Info                  CSI    0000153a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:41, Info                  CSI    0000153b [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:47, Info                  CSI    000015a2 [SR] Verify complete
2016-09-24 21:45:47, Info                  CSI    000015a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:45:47, Info                  CSI    000015a4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:45:54, Info                  CSI    000015a6 [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:02, Info                  CSI    000015cf [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:02, Info                  CSI    000015d0 [SR] This component was referenced by [l:161]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-09-24 21:46:02, Info                  CSI    000015d3 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"Component Services.lnk"; source file in store is also corrupted
2016-09-24 21:46:07, Info                  CSI    0000161e [SR] Verify complete
2016-09-24 21:46:07, Info                  CSI    0000161f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:07, Info                  CSI    00001620 [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:07, Info                  CSI    00001622 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:21, Info                  CSI    000016d0 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:21, Info                  CSI    000016d1 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:46:21, Info                  CSI    000016d4 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Computer Management.lnk"; source file in store is also corrupted
2016-09-24 21:46:22, Info                  CSI    000016d9 [SR] Verify complete
2016-09-24 21:46:22, Info                  CSI    000016da [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:22, Info                  CSI    000016db [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:22, Info                  CSI    000016dd [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:23, Info                  CSI    000016df [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:26, Info                  CSI    000016e3 [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:26, Info                  CSI    000016e4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:46:26, Info                  CSI    000016e7 [SR] Could not reproject corrupted file [l:81 ml:82]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:17]"Character Map.lnk"; source file in store is also corrupted
2016-09-24 21:46:28, Info                  CSI    00001722 [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:46:28, Info                  CSI    00001723 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:46:28, Info                  CSI    00001726 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-09-24 21:46:32, Info                  CSI    00001764 [SR] Verify complete
2016-09-24 21:46:32, Info                  CSI    00001765 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:32, Info                  CSI    00001766 [SR] Beginning Verify and Repair transaction
2016-09-24 21:46:50, Info                  CSI    0000184a [SR] Verify complete
2016-09-24 21:46:50, Info                  CSI    0000184b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:46:50, Info                  CSI    0000184c [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:01, Info                  CSI    000018c7 [SR] Verify complete
2016-09-24 21:47:02, Info                  CSI    000018c8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:02, Info                  CSI    000018c9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:12, Info                  CSI    0000193d [SR] Verify complete
2016-09-24 21:47:12, Info                  CSI    0000193e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:12, Info                  CSI    0000193f [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:21, Info                  CSI    000019c9 [SR] Verify complete
2016-09-24 21:47:21, Info                  CSI    000019ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:21, Info                  CSI    000019cb [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:30, Info                  CSI    00001a44 [SR] Verify complete
2016-09-24 21:47:30, Info                  CSI    00001a45 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:30, Info                  CSI    00001a46 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:31, Info                  CSI    00001a48 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:47:39, Info                  CSI    00001a9e [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:47:39, Info                  CSI    00001a9f [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:47:39, Info                  CSI    00001aa2 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:10]"dfrgui.lnk"; source file in store is also corrupted
2016-09-24 21:47:40, Info                  CSI    00001ac3 [SR] Verify complete
2016-09-24 21:47:40, Info                  CSI    00001ac4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:40, Info                  CSI    00001ac5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:49, Info                  CSI    00001b2b [SR] Verify complete
2016-09-24 21:47:50, Info                  CSI    00001b2c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:50, Info                  CSI    00001b2d [SR] Beginning Verify and Repair transaction
2016-09-24 21:47:58, Info                  CSI    00001b99 [SR] Verify complete
2016-09-24 21:47:58, Info                  CSI    00001b9a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:47:58, Info                  CSI    00001b9b [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:07, Info                  CSI    00001c1d [SR] Verify complete
2016-09-24 21:48:07, Info                  CSI    00001c1e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:07, Info                  CSI    00001c1f [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:09, Info                  CSI    00001c21 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:48:14, Info                  CSI    00001c53 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:48:14, Info                  CSI    00001c54 [SR] This component was referenced by [l:107]"Microsoft-Windows-Printing-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.FaxServicesClientPackage"
2016-09-24 21:48:14, Info                  CSI    00001c57 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-09-24 21:48:20, Info                  CSI    00001cc8 [SR] Verify complete
2016-09-24 21:48:20, Info                  CSI    00001cc9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:20, Info                  CSI    00001cca [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:33, Info                  CSI    00001d61 [SR] Verify complete
2016-09-24 21:48:34, Info                  CSI    00001d62 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:34, Info                  CSI    00001d63 [SR] Beginning Verify and Repair transaction
2016-09-24 21:48:50, Info                  CSI    00001e32 [SR] Verify complete
2016-09-24 21:48:50, Info                  CSI    00001e33 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:48:50, Info                  CSI    00001e34 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:00, Info                  CSI    00001eaf [SR] Verify complete
2016-09-24 21:49:01, Info                  CSI    00001eb0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:01, Info                  CSI    00001eb1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:10, Info                  CSI    00001f26 [SR] Verify complete
2016-09-24 21:49:10, Info                  CSI    00001f27 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:10, Info                  CSI    00001f28 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:32, Info                  CSI    00002005 [SR] Verify complete
2016-09-24 21:49:32, Info                  CSI    00002006 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:32, Info                  CSI    00002007 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:41, Info                  CSI    00002076 [SR] Verify complete
2016-09-24 21:49:41, Info                  CSI    00002077 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:41, Info                  CSI    00002078 [SR] Beginning Verify and Repair transaction
2016-09-24 21:49:47, Info                  CSI    000020de [SR] Verify complete
2016-09-24 21:49:48, Info                  CSI    000020df [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:49:48, Info                  CSI    000020e0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:01, Info                  CSI    00002166 [SR] Verify complete
2016-09-24 21:50:01, Info                  CSI    00002167 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:01, Info                  CSI    00002168 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:09, Info                  CSI    000021d3 [SR] Verify complete
2016-09-24 21:50:09, Info                  CSI    000021d4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:09, Info                  CSI    000021d5 [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:18, Info                  CSI    00002248 [SR] Verify complete
2016-09-24 21:50:18, Info                  CSI    00002249 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:18, Info                  CSI    0000224a [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:34, Info                  CSI    000022cb [SR] Verify complete
2016-09-24 21:50:34, Info                  CSI    000022cc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:34, Info                  CSI    000022cd [SR] Beginning Verify and Repair transaction
2016-09-24 21:50:41, Info                  CSI    000022cf [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:50:49, Info                  CSI    00002351 [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:50:49, Info                  CSI    00002352 [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-drivers-Deployment"
2016-09-24 21:50:49, Info                  CSI    00002355 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:19]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-09-24 21:50:50, Info                  CSI    0000236c [SR] Verify complete
2016-09-24 21:50:50, Info                  CSI    0000236d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:50:50, Info                  CSI    0000236e [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:01, Info                  CSI    000023e1 [SR] Verify complete
2016-09-24 21:51:01, Info                  CSI    000023e2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:01, Info                  CSI    000023e3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:04, Info                  CSI    000023e5 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:18, Info                  CSI    0000249d [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:18, Info                  CSI    0000249e [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-enduser-Deployment"
2016-09-24 21:51:18, Info                  CSI    000024a1 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-09-24 21:51:19, Info                  CSI    000024ae [SR] Verify complete
2016-09-24 21:51:19, Info                  CSI    000024af [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:19, Info                  CSI    000024b0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:20, Info                  CSI    000024b2 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:29, Info                  CSI    000024e6 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:51:29, Info                  CSI    000024e7 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:51:29, Info                  CSI    000024ea [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:27]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-09-24 21:51:35, Info                  CSI    00002544 [SR] Verify complete
2016-09-24 21:51:35, Info                  CSI    00002545 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:35, Info                  CSI    00002546 [SR] Beginning Verify and Repair transaction
2016-09-24 21:51:50, Info                  CSI    000025c9 [SR] Verify complete
2016-09-24 21:51:50, Info                  CSI    000025ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:51:50, Info                  CSI    000025cb [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:02, Info                  CSI    0000263f [SR] Verify complete
2016-09-24 21:52:03, Info                  CSI    00002640 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:03, Info                  CSI    00002641 [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:10, Info                  CSI    00002643 [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:25, Info                  CSI    0000269d [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:25, Info                  CSI    0000269e [SR] This component was referenced by [l:93]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~10.0.10586.0.WindowsMediaPlayer"
2016-09-24 21:52:25, Info                  CSI    000026a1 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Media Player.lnk"; source file in store is also corrupted
2016-09-24 21:52:27, Info                  CSI    000026d2 [SR] Verify complete
2016-09-24 21:52:27, Info                  CSI    000026d3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:27, Info                  CSI    000026d4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:34, Info                  CSI    000026d6 [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:36, Info                  CSI    000026eb [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:36, Info                  CSI    000026ec [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:52:37, Info                  CSI    000026ef [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24]"System Configuration.lnk"; source file in store is also corrupted
2016-09-24 21:52:48, Info                  CSI    000027ad [SR] Verify complete
2016-09-24 21:52:48, Info                  CSI    000027ae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:48, Info                  CSI    000027af [SR] Beginning Verify and Repair transaction
2016-09-24 21:52:48, Info                  CSI    000027b1 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:54, Info                  CSI    000027e3 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:52:54, Info                  CSI    000027e4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 21:52:54, Info                  CSI    000027e7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"System Information.lnk"; source file in store is also corrupted
2016-09-24 21:52:57, Info                  CSI    00002826 [SR] Repairing corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:9]"Paint.lnk" from store
2016-09-24 21:52:57, Info                  CSI    0000282f [SR] Verify complete
2016-09-24 21:52:57, Info                  CSI    00002830 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:52:57, Info                  CSI    00002831 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:05, Info                  CSI    0000289d [SR] Verify complete
2016-09-24 21:53:05, Info                  CSI    0000289e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:05, Info                  CSI    0000289f [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:14, Info                  CSI    00002917 [SR] Verify complete
2016-09-24 21:53:14, Info                  CSI    00002918 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:14, Info                  CSI    00002919 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:26, Info                  CSI    000029b8 [SR] Verify complete
2016-09-24 21:53:26, Info                  CSI    000029b9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:26, Info                  CSI    000029ba [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:33, Info                  CSI    00002a20 [SR] Verify complete
2016-09-24 21:53:34, Info                  CSI    00002a21 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:34, Info                  CSI    00002a22 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:43, Info                  CSI    00002aa7 [SR] Verify complete
2016-09-24 21:53:43, Info                  CSI    00002aa8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:43, Info                  CSI    00002aa9 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:53, Info                  CSI    00002b1f [SR] Verify complete
2016-09-24 21:53:53, Info                  CSI    00002b20 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:53:53, Info                  CSI    00002b21 [SR] Beginning Verify and Repair transaction
2016-09-24 21:53:56, Info                  CSI    00002b23 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:53:56, Info                  CSI    00002b25 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b75 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b76 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 21:54:01, Info                  CSI    00002b78 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:54:01, Info                  CSI    00002b79 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 21:54:01, Info                  CSI    00002b7c [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20]"Resource Monitor.lnk"; source file in store is also corrupted
2016-09-24 21:54:01, Info                  CSI    00002b7f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Performance Monitor.lnk"; source file in store is also corrupted
2016-09-24 21:54:02, Info                  CSI    00002b9f [SR] Verify complete
2016-09-24 21:54:02, Info                  CSI    00002ba0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:02, Info                  CSI    00002ba1 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:15, Info                  CSI    00002c32 [SR] Verify complete
2016-09-24 21:54:15, Info                  CSI    00002c33 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:15, Info                  CSI    00002c34 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:24, Info                  CSI    00002cb2 [SR] Verify complete
2016-09-24 21:54:24, Info                  CSI    00002cb3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:24, Info                  CSI    00002cb4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:35, Info                  CSI    00002d25 [SR] Verify complete
2016-09-24 21:54:35, Info                  CSI    00002d26 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:35, Info                  CSI    00002d27 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:43, Info                  CSI    00002d97 [SR] Verify complete
2016-09-24 21:54:43, Info                  CSI    00002d98 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:43, Info                  CSI    00002d99 [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:52, Info                  CSI    00002e0c [SR] Verify complete
2016-09-24 21:54:52, Info                  CSI    00002e0d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:54:52, Info                  CSI    00002e0e [SR] Beginning Verify and Repair transaction
2016-09-24 21:54:59, Info                  CSI    00002e82 [SR] Verify complete
2016-09-24 21:55:00, Info                  CSI    00002e83 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:00, Info                  CSI    00002e84 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:07, Info                  CSI    00002ef1 [SR] Verify complete
2016-09-24 21:55:08, Info                  CSI    00002ef2 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:08, Info                  CSI    00002ef3 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:19, Info                  CSI    00002f65 [SR] Verify complete
2016-09-24 21:55:19, Info                  CSI    00002f66 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:19, Info                  CSI    00002f67 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:29, Info                  CSI    00002fee [SR] Verify complete
2016-09-24 21:55:29, Info                  CSI    00002fef [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:29, Info                  CSI    00002ff0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:39, Info                  CSI    0000305c [SR] Verify complete
2016-09-24 21:55:39, Info                  CSI    0000305d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:39, Info                  CSI    0000305e [SR] Beginning Verify and Repair transaction
2016-09-24 21:55:41, Info                  CSI    00003060 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:55:56, Info                  CSI    000030b5 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:55:56, Info                  CSI    000030b6 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 21:55:56, Info                  CSI    000030b9 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:12]"services.lnk"; source file in store is also corrupted
2016-09-24 21:55:59, Info                  CSI    000030e5 [SR] Verify complete
2016-09-24 21:55:59, Info                  CSI    000030e6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:55:59, Info                  CSI    000030e7 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:06, Info                  CSI    000030e9 [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:09, Info                  CSI    0000312c [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:09, Info                  CSI    0000312d [SR] This component was referenced by [l:88]"Microsoft-Windows-SnippingTool-Package~31bf3856ad364e35~amd64~~10.0.10586.0.SnippingTool"
2016-09-24 21:56:09, Info                  CSI    00003130 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:17]"Snipping Tool.lnk"; source file in store is also corrupted
2016-09-24 21:56:11, Info                  CSI    0000318e [SR] Verify complete
2016-09-24 21:56:11, Info                  CSI    0000318f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:11, Info                  CSI    00003190 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:16, Info                  CSI    00003192 [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:17, Info                  CSI    00003194 [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:20, Info                  CSI    000031c0 [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:20, Info                  CSI    000031c1 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 21:56:20, Info                  CSI    000031c4 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Default Programs.lnk"; source file in store is also corrupted
2016-09-24 21:56:20, Info                  CSI    000031c9 [SR] Repairing corrupted file [l:70 ml:71]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:22]"Speech Recognition.lnk" from store
2016-09-24 21:56:23, Info                  CSI    0000321c [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:23, Info                  CSI    0000321d [SR] This component was referenced by [l:80]"Package_2865_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6752_neutral"
2016-09-24 21:56:23, Info                  CSI    00003220 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:16]"Sticky Notes.lnk"; source file in store is also corrupted
2016-09-24 21:56:23, Info                  CSI    00003223 [SR] Verify complete
2016-09-24 21:56:23, Info                  CSI    00003224 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:23, Info                  CSI    00003225 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:26, Info                  CSI    00003227 [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:29, Info                  CSI    0000326a [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:29, Info                  CSI    0000326b [SR] This component was referenced by [l:80]"Package_2890_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6781_neutral"
2016-09-24 21:56:29, Info                  CSI    0000326e [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:20]"Math Input Panel.lnk"; source file in store is also corrupted
2016-09-24 21:56:32, Info                  CSI    0000329b [SR] Verify complete
2016-09-24 21:56:32, Info                  CSI    0000329c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:32, Info                  CSI    0000329d [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:35, Info                  CSI    0000329f [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:36, Info                  CSI    000032a9 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:56:36, Info                  CSI    000032aa [SR] This component was referenced by [l:80]"Package_2092_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4375_neutral"
2016-09-24 21:56:36, Info                  CSI    000032ad [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:29]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-09-24 21:56:41, Info                  CSI    0000331e [SR] Verify complete
2016-09-24 21:56:41, Info                  CSI    0000331f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:41, Info                  CSI    00003320 [SR] Beginning Verify and Repair transaction
2016-09-24 21:56:59, Info                  CSI    00003394 [SR] Verify complete
2016-09-24 21:56:59, Info                  CSI    00003395 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:56:59, Info                  CSI    00003396 [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:13, Info                  CSI    00003409 [SR] Verify complete
2016-09-24 21:57:14, Info                  CSI    0000340a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:14, Info                  CSI    0000340b [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:22, Info                  CSI    00003478 [SR] Verify complete
2016-09-24 21:57:22, Info                  CSI    00003479 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:22, Info                  CSI    0000347a [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:31, Info                  CSI    000034eb [SR] Verify complete
2016-09-24 21:57:31, Info                  CSI    000034ec [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:31, Info                  CSI    000034ed [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:39, Info                  CSI    0000356a [SR] Verify complete
2016-09-24 21:57:39, Info                  CSI    0000356b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:39, Info                  CSI    0000356c [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:48, Info                  CSI    000035e4 [SR] Verify complete
2016-09-24 21:57:49, Info                  CSI    000035e5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:49, Info                  CSI    000035e6 [SR] Beginning Verify and Repair transaction
2016-09-24 21:57:55, Info                  CSI    00003651 [SR] Verify complete
2016-09-24 21:57:55, Info                  CSI    00003652 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:57:55, Info                  CSI    00003653 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:05, Info                  CSI    000036d4 [SR] Verify complete
2016-09-24 21:58:05, Info                  CSI    000036d5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:05, Info                  CSI    000036d6 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:16, Info                  CSI    00003741 [SR] Verify complete
2016-09-24 21:58:16, Info                  CSI    00003742 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:16, Info                  CSI    00003743 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:31, Info                  CSI    000037b6 [SR] Verify complete
2016-09-24 21:58:31, Info                  CSI    000037b7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:31, Info                  CSI    000037b8 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:33, Info                  CSI    000037ba [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:58:44, Info                  CSI    00003827 [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:58:44, Info                  CSI    00003828 [SR] This component was referenced by [l:80]"Package_2063_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4232_neutral"
2016-09-24 21:58:44, Info                  CSI    0000382b [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:11]"Wordpad.lnk"; source file in store is also corrupted
2016-09-24 21:58:45, Info                  CSI    0000383f [SR] Verify complete
2016-09-24 21:58:45, Info                  CSI    00003840 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:58:45, Info                  CSI    00003841 [SR] Beginning Verify and Repair transaction
2016-09-24 21:58:46, Info                  CSI    00003843 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:59:04, Info                  CSI    00003916 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 21:59:04, Info                  CSI    00003917 [SR] This component was referenced by [l:80]"Package_2918_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6812_neutral"
2016-09-24 21:59:04, Info                  CSI    0000391a [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:14]"XPS Viewer.lnk"; source file in store is also corrupted
2016-09-24 21:59:07, Info                  CSI    00003949 [SR] Verify complete
2016-09-24 21:59:07, Info                  CSI    0000394a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:07, Info                  CSI    0000394b [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:19, Info                  CSI    000039ce [SR] Verify complete
2016-09-24 21:59:19, Info                  CSI    000039cf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:19, Info                  CSI    000039d0 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:33, Info                  CSI    00003a60 [SR] Verify complete
2016-09-24 21:59:34, Info                  CSI    00003a61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:34, Info                  CSI    00003a62 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:41, Info                  CSI    00003ad2 [SR] Verify complete
2016-09-24 21:59:42, Info                  CSI    00003ad3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:42, Info                  CSI    00003ad4 [SR] Beginning Verify and Repair transaction
2016-09-24 21:59:54, Info                  CSI    00003b44 [SR] Verify complete
2016-09-24 21:59:54, Info                  CSI    00003b45 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 21:59:54, Info                  CSI    00003b46 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:06, Info                  CSI    00003bb8 [SR] Verify complete
2016-09-24 22:00:06, Info                  CSI    00003bb9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:06, Info                  CSI    00003bba [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:14, Info                  CSI    00003c20 [SR] Verify complete
2016-09-24 22:00:14, Info                  CSI    00003c21 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:14, Info                  CSI    00003c22 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:24, Info                  CSI    00003c8a [SR] Verify complete
2016-09-24 22:00:24, Info                  CSI    00003c8b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:24, Info                  CSI    00003c8c [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:31, Info                  CSI    00003cf4 [SR] Verify complete
2016-09-24 22:00:31, Info                  CSI    00003cf5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:31, Info                  CSI    00003cf6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:38, Info                  CSI    00003d60 [SR] Verify complete
2016-09-24 22:00:38, Info                  CSI    00003d61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:38, Info                  CSI    00003d62 [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:46, Info                  CSI    00003dcd [SR] Verify complete
2016-09-24 22:00:46, Info                  CSI    00003dce [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:46, Info                  CSI    00003dcf [SR] Beginning Verify and Repair transaction
2016-09-24 22:00:52, Info                  CSI    00003e37 [SR] Verify complete
2016-09-24 22:00:52, Info                  CSI    00003e38 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:00:52, Info                  CSI    00003e39 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:00, Info                  CSI    00003ea5 [SR] Verify complete
2016-09-24 22:01:00, Info                  CSI    00003ea6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:00, Info                  CSI    00003ea7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:07, Info                  CSI    00003f33 [SR] Verify complete
2016-09-24 22:01:07, Info                  CSI    00003f34 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:07, Info                  CSI    00003f35 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:13, Info                  CSI    00003f9c [SR] Verify complete
2016-09-24 22:01:14, Info                  CSI    00003f9d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:14, Info                  CSI    00003f9e [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:16, Info                  CSI    00003fa0 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:21, Info                  CSI    00003fd9 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:21, Info                  CSI    00003fda [SR] This component was referenced by [l:123]"Microsoft-Windows-Network-Security-MPSSVC-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.ce2174d5653b70aa9d5da20c715f3e8e"
2016-09-24 22:01:21, Info                  CSI    00003fdd [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:43]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-09-24 22:01:23, Info                  CSI    00004014 [SR] Verify complete
2016-09-24 22:01:24, Info                  CSI    00004015 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:24, Info                  CSI    00004016 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:37, Info                  CSI    0000407c [SR] Verify complete
2016-09-24 22:01:37, Info                  CSI    0000407d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:37, Info                  CSI    0000407e [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:45, Info                  CSI    000040e3 [SR] Verify complete
2016-09-24 22:01:45, Info                  CSI    000040e4 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:45, Info                  CSI    000040e5 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:48, Info                  CSI    000040e7 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:51, Info                  CSI    00004123 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:01:51, Info                  CSI    00004124 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:01:51, Info                  CSI    00004127 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:18]"Task Scheduler.lnk"; source file in store is also corrupted
2016-09-24 22:01:52, Info                  CSI    00004156 [SR] Verify complete
2016-09-24 22:01:52, Info                  CSI    00004157 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:52, Info                  CSI    00004158 [SR] Beginning Verify and Repair transaction
2016-09-24 22:01:57, Info                  CSI    000041bd [SR] Verify complete
2016-09-24 22:01:58, Info                  CSI    000041be [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:01:58, Info                  CSI    000041bf [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:07, Info                  CSI    00004224 [SR] Verify complete
2016-09-24 22:02:07, Info                  CSI    00004225 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:07, Info                  CSI    00004226 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:10, Info                  CSI    00004228 [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:02:15, Info                  CSI    0000426f [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:02:15, Info                  CSI    00004270 [SR] This component was referenced by [l:80]"Package_3002_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6971_neutral"
2016-09-24 22:02:15, Info                  CSI    00004273 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Windows Defender.lnk"; source file in store is also corrupted
2016-09-24 22:02:19, Info                  CSI    000042a2 [SR] Verify complete
2016-09-24 22:02:20, Info                  CSI    000042a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:20, Info                  CSI    000042a4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:28, Info                  CSI    00004315 [SR] Verify complete
2016-09-24 22:02:28, Info                  CSI    00004316 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:28, Info                  CSI    00004317 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:33, Info                  CSI    0000437d [SR] Verify complete
2016-09-24 22:02:33, Info                  CSI    0000437e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:33, Info                  CSI    0000437f [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:39, Info                  CSI    000043ef [SR] Verify complete
2016-09-24 22:02:39, Info                  CSI    000043f0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:39, Info                  CSI    000043f1 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:45, Info                  CSI    00004465 [SR] Verify complete
2016-09-24 22:02:46, Info                  CSI    00004466 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:46, Info                  CSI    00004467 [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:52, Info                  CSI    000044cd [SR] Verify complete
2016-09-24 22:02:52, Info                  CSI    000044ce [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:52, Info                  CSI    000044cf [SR] Beginning Verify and Repair transaction
2016-09-24 22:02:58, Info                  CSI    00004538 [SR] Verify complete
2016-09-24 22:02:58, Info                  CSI    00004539 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:02:58, Info                  CSI    0000453a [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:03, Info                  CSI    0000459f [SR] Verify complete
2016-09-24 22:03:03, Info                  CSI    000045a0 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:03, Info                  CSI    000045a1 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:09, Info                  CSI    00004606 [SR] Verify complete
2016-09-24 22:03:09, Info                  CSI    00004607 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:09, Info                  CSI    00004608 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:17, Info                  CSI    00004678 [SR] Verify complete
2016-09-24 22:03:17, Info                  CSI    00004679 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:17, Info                  CSI    0000467a [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:25, Info                  CSI    000046f6 [SR] Verify complete
2016-09-24 22:03:25, Info                  CSI    000046f7 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:25, Info                  CSI    000046f8 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:33, Info                  CSI    00004776 [SR] Verify complete
2016-09-24 22:03:33, Info                  CSI    00004777 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:33, Info                  CSI    00004778 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:42, Info                  CSI    000047f4 [SR] Verify complete
2016-09-24 22:03:42, Info                  CSI    000047f5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:42, Info                  CSI    000047f6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:03:51, Info                  CSI    00004868 [SR] Verify complete
2016-09-24 22:03:52, Info                  CSI    00004869 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:03:52, Info                  CSI    0000486a [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:03, Info                  CSI    00004923 [SR] Verify complete
2016-09-24 22:04:03, Info                  CSI    00004924 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:03, Info                  CSI    00004925 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:07, Info                  CSI    0000498d [SR] Verify complete
2016-09-24 22:04:07, Info                  CSI    0000498e [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:07, Info                  CSI    0000498f [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:10, Info                  CSI    000049f4 [SR] Verify complete
2016-09-24 22:04:10, Info                  CSI    000049f5 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:10, Info                  CSI    000049f6 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:15, Info                  CSI    00004a64 [SR] Verify complete
2016-09-24 22:04:15, Info                  CSI    00004a65 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:15, Info                  CSI    00004a66 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:24, Info                  CSI    00004add [SR] Verify complete
2016-09-24 22:04:24, Info                  CSI    00004ade [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:24, Info                  CSI    00004adf [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:27, Info                  CSI    00004ae1 [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:04:32, Info                  CSI    00004b54 [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:04:32, Info                  CSI    00004b55 [SR] This component was referenced by [l:181]"Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:04:32, Info                  CSI    00004b58 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-09-24 22:04:35, Info                  CSI    00004ba5 [SR] Verify complete
2016-09-24 22:04:35, Info                  CSI    00004ba6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:35, Info                  CSI    00004ba7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:45, Info                  CSI    00004c15 [SR] Verify complete
2016-09-24 22:04:45, Info                  CSI    00004c16 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:45, Info                  CSI    00004c17 [SR] Beginning Verify and Repair transaction
2016-09-24 22:04:56, Info                  CSI    00004cde [SR] Verify complete
2016-09-24 22:04:56, Info                  CSI    00004cdf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:04:56, Info                  CSI    00004ce0 [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:20, Info                  CSI    00004d8b [SR] Verify complete
2016-09-24 22:05:21, Info                  CSI    00004d8c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:21, Info                  CSI    00004d8d [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:36, Info                  CSI    00004e12 [SR] Verify complete
2016-09-24 22:05:36, Info                  CSI    00004e13 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:36, Info                  CSI    00004e14 [SR] Beginning Verify and Repair transaction
2016-09-24 22:05:57, Info                  CSI    00004ead [SR] Verify complete
2016-09-24 22:05:58, Info                  CSI    00004eae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:05:58, Info                  CSI    00004eaf [SR] Beginning Verify and Repair transaction
2016-09-24 22:06:21, Info                  CSI    00004f4a [SR] Verify complete
2016-09-24 22:06:21, Info                  CSI    00004f4b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:06:21, Info                  CSI    00004f4c [SR] Beginning Verify and Repair transaction
2016-09-24 22:06:51, Info                  CSI    00004ffc [SR] Verify complete
2016-09-24 22:06:51, Info                  CSI    00004ffd [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:06:51, Info                  CSI    00004ffe [SR] Beginning Verify and Repair transaction
2016-09-24 22:07:21, Info                  CSI    000050a2 [SR] Verify complete
2016-09-24 22:07:21, Info                  CSI    000050a3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:07:21, Info                  CSI    000050a4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:07:40, Info                  CSI    00005139 [SR] Verify complete
2016-09-24 22:07:41, Info                  CSI    0000513a [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:07:41, Info                  CSI    0000513b [SR] Beginning Verify and Repair transaction
2016-09-24 22:08:06, Info                  CSI    000051c2 [SR] Verify complete
2016-09-24 22:08:06, Info                  CSI    000051c3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:08:06, Info                  CSI    000051c4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:08:43, Info                  CSI    00005331 [SR] Verify complete
2016-09-24 22:08:43, Info                  CSI    00005332 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:08:43, Info                  CSI    00005333 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:02, Info                  CSI    000053b0 [SR] Verify complete
2016-09-24 22:09:02, Info                  CSI    000053b1 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:02, Info                  CSI    000053b2 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:16, Info                  CSI    00005430 [SR] Verify complete
2016-09-24 22:09:16, Info                  CSI    00005431 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:16, Info                  CSI    00005432 [SR] Beginning Verify and Repair transaction
2016-09-24 22:09:33, Info                  CSI    000054ad [SR] Verify complete
2016-09-24 22:09:33, Info                  CSI    000054ae [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:09:33, Info                  CSI    000054af [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:01, Info                  CSI    0000557c [SR] Verify complete
2016-09-24 22:10:01, Info                  CSI    0000557d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:01, Info                  CSI    0000557e [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:26, Info                  CSI    0000566b [SR] Verify complete
2016-09-24 22:10:27, Info                  CSI    0000566c [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:27, Info                  CSI    0000566d [SR] Beginning Verify and Repair transaction
2016-09-24 22:10:48, Info                  CSI    000056e8 [SR] Verify complete
2016-09-24 22:10:48, Info                  CSI    000056e9 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:10:48, Info                  CSI    000056ea [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:02, Info                  CSI    00005768 [SR] Verify complete
2016-09-24 22:11:02, Info                  CSI    00005769 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:02, Info                  CSI    0000576a [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:19, Info                  CSI    000057f2 [SR] Verify complete
2016-09-24 22:11:19, Info                  CSI    000057f3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:19, Info                  CSI    000057f4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:11:44, Info                  CSI    000058e2 [SR] Verify complete
2016-09-24 22:11:44, Info                  CSI    000058e3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:11:44, Info                  CSI    000058e4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:15, Info                  CSI    000059ce [SR] Verify complete
2016-09-24 22:12:15, Info                  CSI    000059cf [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:15, Info                  CSI    000059d0 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:33, Info                  CSI    00005a60 [SR] Verify complete
2016-09-24 22:12:33, Info                  CSI    00005a61 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:33, Info                  CSI    00005a62 [SR] Beginning Verify and Repair transaction
2016-09-24 22:12:54, Info                  CSI    00005afb [SR] Verify complete
2016-09-24 22:12:54, Info                  CSI    00005afc [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:12:54, Info                  CSI    00005afd [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:08, Info                  CSI    00005b7e [SR] Verify complete
2016-09-24 22:13:08, Info                  CSI    00005b7f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:08, Info                  CSI    00005b80 [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:20, Info                  CSI    00005bed [SR] Verify complete
2016-09-24 22:13:20, Info                  CSI    00005bee [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:20, Info                  CSI    00005bef [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:41, Info                  CSI    00005c74 [SR] Verify complete
2016-09-24 22:13:41, Info                  CSI    00005c75 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:41, Info                  CSI    00005c76 [SR] Beginning Verify and Repair transaction
2016-09-24 22:13:54, Info                  CSI    00005d0e [SR] Verify complete
2016-09-24 22:13:54, Info                  CSI    00005d0f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:13:54, Info                  CSI    00005d10 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:01, Info                  CSI    00005d7e [SR] Verify complete
2016-09-24 22:14:01, Info                  CSI    00005d7f [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:01, Info                  CSI    00005d80 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:07, Info                  CSI    00005de7 [SR] Verify complete
2016-09-24 22:14:07, Info                  CSI    00005de8 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:07, Info                  CSI    00005de9 [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:24, Info                  CSI    00005e6c [SR] Verify complete
2016-09-24 22:14:25, Info                  CSI    00005e6d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:25, Info                  CSI    00005e6e [SR] Beginning Verify and Repair transaction
2016-09-24 22:14:41, Info                  CSI    00005eed [SR] Verify complete
2016-09-24 22:14:41, Info                  CSI    00005eee [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:14:41, Info                  CSI    00005eef [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:00, Info                  CSI    00005f75 [SR] Verify complete
2016-09-24 22:15:00, Info                  CSI    00005f76 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:00, Info                  CSI    00005f77 [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:17, Info                  CSI    00005ff2 [SR] Verify complete
2016-09-24 22:15:18, Info                  CSI    00005ff3 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:18, Info                  CSI    00005ff4 [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:34, Info                  CSI    0000606a [SR] Verify complete
2016-09-24 22:15:34, Info                  CSI    0000606b [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:34, Info                  CSI    0000606c [SR] Beginning Verify and Repair transaction
2016-09-24 22:15:46, Info                  CSI    000060da [SR] Verify complete
2016-09-24 22:15:46, Info                  CSI    000060db [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:15:46, Info                  CSI    000060dc [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:09, Info                  CSI    00006178 [SR] Verify complete
2016-09-24 22:16:09, Info                  CSI    00006179 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:09, Info                  CSI    0000617a [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:31, Info                  CSI    000061ea [SR] Verify complete
2016-09-24 22:16:31, Info                  CSI    000061eb [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:31, Info                  CSI    000061ec [SR] Beginning Verify and Repair transaction
2016-09-24 22:16:47, Info                  CSI    00006255 [SR] Verify complete
2016-09-24 22:16:47, Info                  CSI    00006256 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:16:47, Info                  CSI    00006257 [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:12, Info                  CSI    000062d5 [SR] Verify complete
2016-09-24 22:17:12, Info                  CSI    000062d6 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:12, Info                  CSI    000062d7 [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:27, Info                  CSI    0000634c [SR] Verify complete
2016-09-24 22:17:28, Info                  CSI    0000634d [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:28, Info                  CSI    0000634e [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:41, Info                  CSI    000063c9 [SR] Verify complete
2016-09-24 22:17:41, Info                  CSI    000063ca [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:41, Info                  CSI    000063cb [SR] Beginning Verify and Repair transaction
2016-09-24 22:17:58, Info                  CSI    00006452 [SR] Verify complete
2016-09-24 22:17:58, Info                  CSI    00006453 [SR] Verifying 100 (0x0000000000000064) components
2016-09-24 22:17:58, Info                  CSI    00006454 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:14, Info                  CSI    000064d6 [SR] Verify complete
2016-09-24 22:18:14, Info                  CSI    000064d7 [SR] Verifying 17 (0x0000000000000011) components
2016-09-24 22:18:14, Info                  CSI    000064d8 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:17, Info                  CSI    000064f1 [SR] Verify complete
2016-09-24 22:18:17, Info                  CSI    000064f2 [SR] Repairing 30 (0x000000000000001e) components
2016-09-24 22:18:17, Info                  CSI    000064f3 [SR] Beginning Verify and Repair transaction
2016-09-24 22:18:18, Info                  CSI    000064f5 [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064f7 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064f9 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064fb [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064fd [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    000064ff [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    00006501 [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:18, Info                  CSI    00006503 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006505 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006507 [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006509 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650b [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650d [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    0000650f [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:19, Info                  CSI    00006511 [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006513 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006515 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006517 [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006519 [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651b [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651d [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    0000651f [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006521 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:20, Info                  CSI    00006523 [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006525 [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006527 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006529 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    0000652b [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    0000652d [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006530 [SR] Cannot repair member file [l:16]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006531 [SR] This component was referenced by [l:80]"Package_1763_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3542_neutral"
2016-09-24 22:18:21, Info                  CSI    00006534 [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:16]"Task Manager.lnk"; source file in store is also corrupted
2016-09-24 22:18:21, Info                  CSI    00006538 [SR] Cannot repair member file [l:24]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:21, Info                  CSI    00006539 [SR] This component was referenced by [l:107]"Microsoft-Windows-Printing-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.FaxServicesClientPackage"
2016-09-24 22:18:21, Info                  CSI    0000653c [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-09-24 22:18:21, Info                  CSI    0000653f [SR] Repairing corrupted file [l:70 ml:71]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:22]"Speech Recognition.lnk" from store
2016-09-24 22:18:22, Info                  CSI    00006545 [SR] Cannot repair member file [l:29]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006546 [SR] This component was referenced by [l:80]"Package_2092_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4375_neutral"
2016-09-24 22:18:22, Info                  CSI    00006549 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:29]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000654d [SR] Cannot repair member file [l:11]"Wordpad.lnk" of Microsoft-Windows-wordpad, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    0000654e [SR] This component was referenced by [l:80]"Package_2063_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-4232_neutral"
2016-09-24 22:18:22, Info                  CSI    00006551 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:11]"Wordpad.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006557 [SR] Cannot repair member file [l:43]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006558 [SR] This component was referenced by [l:123]"Microsoft-Windows-Network-Security-MPSSVC-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.ce2174d5653b70aa9d5da20c715f3e8e"
2016-09-24 22:18:22, Info                  CSI    0000655b [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:43]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000655f [SR] Cannot repair member file [l:22]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006560 [SR] This component was referenced by [l:161]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006563 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"Component Services.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006567 [SR] Cannot repair member file [l:30]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006568 [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:18:22, Info                  CSI    0000656b [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000656f [SR] Cannot repair member file [l:12]"services.lnk" of Microsoft-Windows-ServicesSnapIn, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006570 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006573 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:12]"services.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    00006577 [SR] Cannot repair member file [l:20]"Windows Defender.lnk" of Windows-Defender-UI, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006578 [SR] This component was referenced by [l:80]"Package_3002_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6971_neutral"
2016-09-24 22:18:22, Info                  CSI    0000657b [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Windows Defender.lnk"; source file in store is also corrupted
2016-09-24 22:18:22, Info                  CSI    0000657f [SR] Cannot repair member file [l:22]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:22, Info                  CSI    00006580 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:22, Info                  CSI    00006583 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:22]"System Information.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    00006586 [SR] Repairing corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:9]"Paint.lnk" from store
2016-09-24 22:18:23, Info                  CSI    0000658b [SR] Cannot repair member file [l:30]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, version 10.0.10586.0, arch Host= amd64 Guest= x86, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    0000658c [SR] This component was referenced by [l:181]"Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-WOW64-Package-AutoMerged-enduser-Deployment"
2016-09-24 22:18:23, Info                  CSI    0000658f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:30]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    00006593 [SR] Cannot repair member file [l:24]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    00006594 [SR] This component was referenced by [l:93]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~10.0.10586.0.WindowsMediaPlayer"
2016-09-24 22:18:23, Info                  CSI    00006597 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:24]"Windows Media Player.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    0000659b [SR] Cannot repair member file [l:24]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    0000659c [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    0000659f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24]"System Configuration.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065a3 [SR] Cannot repair member file [l:18]"Task Scheduler.lnk" of TaskSchedulerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065a4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065a7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:18]"Task Scheduler.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065ab [SR] Cannot repair member file [l:16]"Event Viewer.lnk" of EventViewerSettings, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065ac [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065af [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Event Viewer.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065b3 [SR] Cannot repair member file [l:23]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065b4 [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065b7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Computer Management.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065bb [SR] Cannot repair member file [l:16]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065bc [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065bf [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:16]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065c3 [SR] Cannot repair member file [l:27]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065c4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065c7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:27]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065cb [SR] Cannot repair member file [l:17]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065cc [SR] This component was referenced by [l:88]"Microsoft-Windows-SnippingTool-Package~31bf3856ad364e35~amd64~~10.0.10586.0.SnippingTool"
2016-09-24 22:18:23, Info                  CSI    000065cf [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:17]"Snipping Tool.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065d3 [SR] Cannot repair member file [l:20]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065d4 [SR] This component was referenced by [l:80]"Package_2890_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6781_neutral"
2016-09-24 22:18:23, Info                  CSI    000065d7 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:20]"Math Input Panel.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065db [SR] Cannot repair member file [l:17]"Character Map.lnk" of Microsoft-Windows-charmap, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065dc [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065df [SR] Could not reproject corrupted file [l:81 ml:82]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:17]"Character Map.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065e3 [SR] Cannot repair member file [l:10]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065e4 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065e7 [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:10]"dfrgui.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065eb [SR] Cannot repair member file [l:20]"Default Programs.lnk" of Microsoft-Windows-sud-link, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065ec [SR] This component was referenced by [l:165]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-09-24 22:18:23, Info                  CSI    000065ef [SR] Could not reproject corrupted file [l:69 ml:70]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:20]"Default Programs.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065f3 [SR] Cannot repair member file [l:16]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065f4 [SR] This component was referenced by [l:80]"Package_2865_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6752_neutral"
2016-09-24 22:18:23, Info                  CSI    000065f7 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:16]"Sticky Notes.lnk"; source file in store is also corrupted
2016-09-24 22:18:23, Info                  CSI    000065fb [SR] Cannot repair member file [l:14]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:23, Info                  CSI    000065fc [SR] This component was referenced by [l:80]"Package_2918_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-6812_neutral"
2016-09-24 22:18:24, Info                  CSI    000065ff [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:14]"XPS Viewer.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    00006603 [SR] Cannot repair member file [l:18]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006604 [SR] This component was referenced by [l:163]"Microsoft-Windows-Client-Features-Package-AutoMerged-base~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-base-Deployment"
2016-09-24 22:18:24, Info                  CSI    00006607 [SR] Could not reproject corrupted file [l:68 ml:69]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18]"Steps Recorder.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000660b [SR] Cannot repair member file [l:19]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, version 10.0.10586.0, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    0000660c [SR] This component was referenced by [l:169]"Microsoft-Windows-Client-Features-Package-AutoMerged-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.Microsoft-Windows-Client-Features-Package-AutoMerged-drivers-Deployment"
2016-09-24 22:18:24, Info                  CSI    0000660f [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:19]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    00006613 [SR] Cannot repair member file [l:20]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006614 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 22:18:24, Info                  CSI    00006616 [SR] Cannot repair member file [l:23]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, version 10.0.10586.589, arch amd64, nonSxS, pkt {l:8 b:31bf3856ad364e35} in the store, hash mismatch
2016-09-24 22:18:24, Info                  CSI    00006617 [SR] This component was referenced by [l:80]"Package_1769_for_KB3185614~31bf3856ad364e35~amd64~~10.0.1.5.3185614-3591_neutral"
2016-09-24 22:18:24, Info                  CSI    0000661a [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20]"Resource Monitor.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000661d [SR] Could not reproject corrupted file [l:77 ml:78]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:23]"Performance Monitor.lnk"; source file in store is also corrupted
2016-09-24 22:18:24, Info                  CSI    0000661f [SR] Repair complete
2016-09-24 22:18:24, Info                  CSI    00006620 [SR] Committing transaction
2016-09-24 22:18:25, Info                  CSI    00006625 [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction  have been successfully repaired
 

  • 0

#5
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

here's the VEW results:

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 24/09/2016 10:28:44 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 25/09/2016 1:28:37 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFAF4D737A" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:35 AM
Type: Error Category: 2
Event: 10317 Source: Microsoft-Windows-NDIS
Miniport TAP-Win32 Adapter OAS #137, {099E1BDA-EBF2-4196-882F-80C0749B1365}, had event 76
 
Log: 'System' Date/Time: 25/09/2016 1:28:23 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF099E1BDA" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:14 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFD0FC5A43" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:07 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA2B009F6" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:45 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF4EBFF316" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:23 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF79BE0A70" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:14 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFD207F2C5" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:01 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA2B89807" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:52 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF5D2CA7B8" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:44 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFEF8BD2F1" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:34 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF348460E2" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:27 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF833613A9" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:18 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF385390FE" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:52 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFAF0D0B3D" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:36 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFE3936098" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:26 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFCA92D89F" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:07 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF6948E95C" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:24:43 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF88411F7B" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:24:27 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA70D0F2E" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 25/09/2016 12:42:21 AM
Type: Warning Category: 0
Event: 129 Source: storahci
Reset to device, \Device\RaidPort0, was issued.
 
Log: 'System' Date/Time: 25/09/2016 12:37:17 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\UpdateRecordPath definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:17 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PvrScheduleTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:16 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ReindexSearchRoot definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:13 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PBDADiscoveryW1 definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:11 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\DispatchRecoveryTasks definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:10 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\InstallPlayReady definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan definition. Additional Data: Error Value: c:\Program Files\Microsoft Security Client\MpCmdRun.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\OCURActivate definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PeriodicScanRetry definition. Additional Data: Error Value: %windir%\ehome\MCUpdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\SqlLiteRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:58 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\StartRecording definition. Additional Data: Error Value: %SystemRoot%\ehome\ehrec.
 
Log: 'System' Date/Time: 25/09/2016 12:36:58 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\MediaCenterRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ActivateWindowsSearch definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ConfigureInternetTimeService definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\mcupdate_scheduled definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PBDADiscoveryW2 definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\OCURDiscovery definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
 
VEW applications:
Vino's Event Viewer v01c run on Windows 7 in English
Report run at 24/09/2016 10:28:44 PM
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 25/09/2016 1:28:37 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFAF4D737A" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:35 AM
Type: Error Category: 2
Event: 10317 Source: Microsoft-Windows-NDIS
Miniport TAP-Win32 Adapter OAS #137, {099E1BDA-EBF2-4196-882F-80C0749B1365}, had event 76
 
Log: 'System' Date/Time: 25/09/2016 1:28:23 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF099E1BDA" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:14 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFD0FC5A43" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:28:07 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA2B009F6" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:45 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF4EBFF316" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:23 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF79BE0A70" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:14 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFD207F2C5" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:27:01 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA2B89807" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:52 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF5D2CA7B8" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:44 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFEF8BD2F1" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:34 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF348460E2" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:27 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF833613A9" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:26:18 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF385390FE" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:52 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFAF0D0B3D" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:36 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFE3936098" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:26 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFCA92D89F" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:25:07 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF6948E95C" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:24:43 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FF88411F7B" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
Log: 'System' Date/Time: 25/09/2016 1:24:27 AM
Type: Error Category: 0
Event: 4311 Source: NetBT
Initialization failed because the driver device could not be created. Use the string "00FFA70D0F2E" to identify the interface for which initialization failed. It represents the MAC address of the failed interface or the  Globally Unique Interface Identifier (GUID) if NetBT was unable to  map from GUID to MAC address. If neither the MAC address nor the GUID were  available, the string represents a cluster device name. 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 25/09/2016 12:42:21 AM
Type: Warning Category: 0
Event: 129 Source: storahci
Reset to device, \Device\RaidPort0, was issued.
 
Log: 'System' Date/Time: 25/09/2016 12:37:17 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\UpdateRecordPath definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:17 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PvrScheduleTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:16 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ReindexSearchRoot definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:13 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PBDADiscoveryW1 definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:11 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\DispatchRecoveryTasks definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:10 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\InstallPlayReady definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan definition. Additional Data: Error Value: c:\Program Files\Microsoft Security Client\MpCmdRun.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\OCURActivate definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PeriodicScanRetry definition. Additional Data: Error Value: %windir%\ehome\MCUpdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:37:02 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\SqlLiteRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:58 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\StartRecording definition. Additional Data: Error Value: %SystemRoot%\ehome\ehrec.
 
Log: 'System' Date/Time: 25/09/2016 12:36:58 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\MediaCenterRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 0
Event: 11 Source: Microsoft-Windows-Wininit
Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications. Please visit http://support.microsoft.com/kb/197571for more information.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ActivateWindowsSearch definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ConfigureInternetTimeService definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\mcupdate_scheduled definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\PBDADiscoveryW2 definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\OCURDiscovery definition. Additional Data: Error Value: %SystemRoot%\ehome\ehPrivJob.exe.
 
Log: 'System' Date/Time: 25/09/2016 12:36:57 AM
Type: Warning Category: 414
Event: 414 Source: Microsoft-Windows-TaskScheduler
Task Scheduler service found a misconfiguration in the NT TASK\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask definition. Additional Data: Error Value: %SystemRoot%\ehome\mcupdate.exe.
 

  • 0

#6
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

Processor explorer log:

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
svchost.exe 28.99 13,064 K 22,008 K 1904 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
RuntimeBroker.exe 9.66 10,768 K 32,944 K 4136 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 7.26 8,448 K 18,348 K 1556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7.23 11,868 K 30,080 K 1528 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6.72 15,204 K 27,328 K 1700 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5.74 61,036 K 75,488 K 1496 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
WUDFHost.exe 4.52 5,532 K 16,668 K 1924 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
Interrupts 4.41 0 K 0 K n/a Hardware Interrupts and DPCs
procexp64.exe 3.59 42,108 K 71,788 K 7412 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
dasHost.exe 3.05 7,052 K 17,312 K 3076 Device Association Framework Provider Host Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2.96 94,480 K 103,452 K 1624 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
MsMpEng.exe 2.78 130,728 K 130,496 K 2980 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Corporation
wmplayer.exe 2.54 83,192 K 102,028 K 216 Windows Media Player Microsoft Corporation (Verified) Microsoft Windows
System 1.79 472 K 44,784 K 4
dwm.exe 1.28 49,880 K 34,020 K 1436 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
HxTsr.exe 1.14 3,912 K 18,016 K 7308 Microsoft Outlook Communications Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
svchost.exe 1.08 17,124 K 28,888 K 1520 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
audiodg.exe 0.81 6,944 K 11,292 K 5092 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 0.79 1,828 K 6,464 K 1068 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
spoolsv.exe 0.73 6,328 K 12,696 K 2244 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 0.52 5,028 K 9,840 K 1332 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
NisSrv.exe 0.35 13,000 K 9,584 K 4464 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe 0.35 85,056 K 145,876 K 1808 Google Chrome Google Inc. (Verified) Google Inc
lsass.exe 0.33 4,812 K 12,300 K 1196 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.26 8,424 K 20,208 K 1276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
sihost.exe 0.22 4,864 K 18,540 K 2828 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
explorer.exe 0.22 46,920 K 99,404 K 4608 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
downloader2.exe 0.19 3,988 K 6,272 K 3544 RealDownloader (Verified) RealNetworks
chrome.exe 0.10 69,700 K 79,812 K 6024 Google Chrome Google Inc. (Verified) Google Inc
mbamservice.exe 0.07 2,016 K 8,712 K 2696 Malwarebytes Anti-Malware Malwarebytes (Verified) Malwarebytes Corporation
ISHelper.exe 0.06 7,916 K 17,708 K 3588 iSkySoft Studio iSkySoft (No signature was present in the subject) iSkySoft
Updater.exe 0.05 4,860 K 10,364 K 2940 Updater Popcorn Time (No signature was present in the subject) Popcorn Time
svchost.exe 0.03 6,644 K 21,252 K 2596 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
AutoKMS.exe 0.03 46,792 K 16,428 K 2092 AutoKMS (No signature was present in the subject)
services.exe 0.02 3,360 K 8,132 K 1180 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.02 28,676 K 37,372 K 1260 Google Chrome Google Inc. (Verified) Google Inc
IntuitUpdateService.exe 0.02 23,488 K 13,012 K 3888 Intuit Update Service Intuit Inc. (Verified) Intuit
LDSvc.exe 0.01 1,796 K 7,956 K 2792 PACE License Support Service PACE Anti-Piracy, Inc. (No signature was present in the subject) PACE Anti-Piracy, Inc.
SearchIndexer.exe 0.01 32,688 K 35,044 K 5988 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
OneDrive.exe 0.01 6,288 K 21,844 K 1636 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
HotkeyUtility.exe 0.01 2,624 K 11,768 K 5568 Hotkey Utility (Verified) Acer Incorporated
conhost.exe < 0.01 1,208 K 476 K 2480 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
AppleMobileDeviceService.exe < 0.01 3,112 K 10,312 K 2648 MobileDeviceService Apple Inc. (Verified) Apple Inc.
ShellExperienceHost.exe < 0.01 19,004 K 42,720 K 5152 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
FreemakeUtilsService.exe < 0.01 18,068 K 23,840 K 2604 FreemakeUtilsService Freemake (No signature was present in the subject) Freemake
chrome.exe < 0.01 28,844 K 28,680 K 3748 Google Chrome Google Inc. (Verified) Google Inc
rpdsvc.exe < 0.01 15,536 K 7,524 K 2852 RealPlayer Cloud Service RealNetworks, Inc. (Verified) RealNetworks
taskhostw.exe < 0.01 5,356 K 14,156 K 5116 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
RAVCpl64.exe < 0.01 4,192 K 10,144 K 1564 HD Audio Control Panel Realtek Semiconductor (Verified) Realtek Semiconductor Corp
System Idle Process < 0.01 0 K 4 K 0
csrss.exe < 0.01 1,280 K 3,732 K 328 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
WmiPrvSE.exe 2,100 K 7,728 K 376 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 8,172 K 15,588 K 5440 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
winlogon.exe 1,724 K 8,368 K 1140 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 852 K 4,244 K 1052 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher
UpdaterService.exe 1,172 K 4,908 K 2968 Updater Service Acer Group (Verified) Acer Incorporated
taskeng.exe 1,240 K 5,680 K 4124 Task Scheduler Engine Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2,216 K 7,868 K 2928 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,748 K 16,528 K 2912 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,936 K 8,152 K 2752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,760 K 7,560 K 2588 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,424 K 17,156 K 6456 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SMSvcHost.exe 23,052 K 19,100 K 3784 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
SMSvcHost.exe 21,052 K 13,180 K 3792 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
smss.exe 360 K 1,076 K 296 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher
SkypeHost.exe 5,060 K 10,784 K 4668 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
SearchUI.exe Suspended 41,168 K 52,568 K 5368 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
SearchProtocolHost.exe 1,396 K 6,600 K 5416 Microsoft Windows Search Protocol Host Microsoft Corporation (Verified) Microsoft Windows
SearchFilterHost.exe 1,184 K 5,548 K 5260 Microsoft Windows Search Filter Host Microsoft Corporation (Verified) Microsoft Windows
rndlresolversvc.exe 1,132 K 4,776 K 2844 (Verified) RealNetworks
RealPlayerUpdateSvc.exe 4,108 K 8,596 K 2872 (Verified) RealNetworks
procexp.exe 2,704 K 9,912 K 7284 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
NIHardwareService.exe 6,192 K 8,240 K 2760 NIHardwareService Native Instruments GmbH (No signature was present in the subject) Native Instruments GmbH
mqsvc.exe 3,800 K 10,888 K 2772 Message Queuing Service Microsoft Corporation (Verified) Microsoft Windows
IAANTmon.exe 1,820 K 7,580 K 1976 RAID Monitor Intel Corporation (Verified) Intel Corporation
GoogleUpdate.exe 1,916 K 552 K 5044 Google Installer Google Inc. (Verified) Google Inc
chrome.exe 78,236 K 95,560 K 7220 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 54,196 K 59,248 K 2360 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 1,652 K 5,684 K 1928 Google Chrome Google Inc. (Verified) Google Inc
backgroundTaskHost.exe 2,080 K 10,648 K 2668 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
armsvc.exe 1,156 K 5,068 K 2580 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems

  • 0

#7
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

Here's the log:

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
svchost.exe 28.99 13,064 K 22,008 K 1904 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
RuntimeBroker.exe 9.66 10,768 K 32,944 K 4136 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 7.26 8,448 K 18,348 K 1556 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7.23 11,868 K 30,080 K 1528 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6.72 15,204 K 27,328 K 1700 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5.74 61,036 K 75,488 K 1496 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
WUDFHost.exe 4.52 5,532 K 16,668 K 1924 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
Interrupts 4.41 0 K 0 K n/a Hardware Interrupts and DPCs
procexp64.exe 3.59 42,108 K 71,788 K 7412 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
dasHost.exe 3.05 7,052 K 17,312 K 3076 Device Association Framework Provider Host Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2.96 94,480 K 103,452 K 1624 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
MsMpEng.exe 2.78 130,728 K 130,496 K 2980 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Corporation
wmplayer.exe 2.54 83,192 K 102,028 K 216 Windows Media Player Microsoft Corporation (Verified) Microsoft Windows
System 1.79 472 K 44,784 K 4
dwm.exe 1.28 49,880 K 34,020 K 1436 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
HxTsr.exe 1.14 3,912 K 18,016 K 7308 Microsoft Outlook Communications Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
svchost.exe 1.08 17,124 K 28,888 K 1520 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
audiodg.exe 0.81 6,944 K 11,292 K 5092 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 0.79 1,828 K 6,464 K 1068 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
spoolsv.exe 0.73 6,328 K 12,696 K 2244 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 0.52 5,028 K 9,840 K 1332 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
NisSrv.exe 0.35 13,000 K 9,584 K 4464 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe 0.35 85,056 K 145,876 K 1808 Google Chrome Google Inc. (Verified) Google Inc
lsass.exe 0.33 4,812 K 12,300 K 1196 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.26 8,424 K 20,208 K 1276 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
sihost.exe 0.22 4,864 K 18,540 K 2828 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
explorer.exe 0.22 46,920 K 99,404 K 4608 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
downloader2.exe 0.19 3,988 K 6,272 K 3544 RealDownloader (Verified) RealNetworks
chrome.exe 0.10 69,700 K 79,812 K 6024 Google Chrome Google Inc. (Verified) Google Inc
mbamservice.exe 0.07 2,016 K 8,712 K 2696 Malwarebytes Anti-Malware Malwarebytes (Verified) Malwarebytes Corporation
ISHelper.exe 0.06 7,916 K 17,708 K 3588 iSkySoft Studio iSkySoft (No signature was present in the subject) iSkySoft
Updater.exe 0.05 4,860 K 10,364 K 2940 Updater Popcorn Time (No signature was present in the subject) Popcorn Time
svchost.exe 0.03 6,644 K 21,252 K 2596 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
AutoKMS.exe 0.03 46,792 K 16,428 K 2092 AutoKMS (No signature was present in the subject)
services.exe 0.02 3,360 K 8,132 K 1180 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.02 28,676 K 37,372 K 1260 Google Chrome Google Inc. (Verified) Google Inc
IntuitUpdateService.exe 0.02 23,488 K 13,012 K 3888 Intuit Update Service Intuit Inc. (Verified) Intuit
LDSvc.exe 0.01 1,796 K 7,956 K 2792 PACE License Support Service PACE Anti-Piracy, Inc. (No signature was present in the subject) PACE Anti-Piracy, Inc.
SearchIndexer.exe 0.01 32,688 K 35,044 K 5988 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
OneDrive.exe 0.01 6,288 K 21,844 K 1636 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
HotkeyUtility.exe 0.01 2,624 K 11,768 K 5568 Hotkey Utility (Verified) Acer Incorporated
conhost.exe < 0.01 1,208 K 476 K 2480 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
AppleMobileDeviceService.exe < 0.01 3,112 K 10,312 K 2648 MobileDeviceService Apple Inc. (Verified) Apple Inc.
ShellExperienceHost.exe < 0.01 19,004 K 42,720 K 5152 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
FreemakeUtilsService.exe < 0.01 18,068 K 23,840 K 2604 FreemakeUtilsService Freemake (No signature was present in the subject) Freemake
chrome.exe < 0.01 28,844 K 28,680 K 3748 Google Chrome Google Inc. (Verified) Google Inc
rpdsvc.exe < 0.01 15,536 K 7,524 K 2852 RealPlayer Cloud Service RealNetworks, Inc. (Verified) RealNetworks
taskhostw.exe < 0.01 5,356 K 14,156 K 5116 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
RAVCpl64.exe < 0.01 4,192 K 10,144 K 1564 HD Audio Control Panel Realtek Semiconductor (Verified) Realtek Semiconductor Corp
System Idle Process < 0.01 0 K 4 K 0
csrss.exe < 0.01 1,280 K 3,732 K 328 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
WmiPrvSE.exe 2,100 K 7,728 K 376 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 8,172 K 15,588 K 5440 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
winlogon.exe 1,724 K 8,368 K 1140 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 852 K 4,244 K 1052 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher
UpdaterService.exe 1,172 K 4,908 K 2968 Updater Service Acer Group (Verified) Acer Incorporated
taskeng.exe 1,240 K 5,680 K 4124 Task Scheduler Engine Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2,216 K 7,868 K 2928 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,748 K 16,528 K 2912 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,936 K 8,152 K 2752 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,760 K 7,560 K 2588 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,424 K 17,156 K 6456 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SMSvcHost.exe 23,052 K 19,100 K 3784 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
SMSvcHost.exe 21,052 K 13,180 K 3792 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
smss.exe 360 K 1,076 K 296 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher
SkypeHost.exe 5,060 K 10,784 K 4668 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
SearchUI.exe Suspended 41,168 K 52,568 K 5368 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
SearchProtocolHost.exe 1,396 K 6,600 K 5416 Microsoft Windows Search Protocol Host Microsoft Corporation (Verified) Microsoft Windows
SearchFilterHost.exe 1,184 K 5,548 K 5260 Microsoft Windows Search Filter Host Microsoft Corporation (Verified) Microsoft Windows
rndlresolversvc.exe 1,132 K 4,776 K 2844 (Verified) RealNetworks
RealPlayerUpdateSvc.exe 4,108 K 8,596 K 2872 (Verified) RealNetworks
procexp.exe 2,704 K 9,912 K 7284 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
NIHardwareService.exe 6,192 K 8,240 K 2760 NIHardwareService Native Instruments GmbH (No signature was present in the subject) Native Instruments GmbH
mqsvc.exe 3,800 K 10,888 K 2772 Message Queuing Service Microsoft Corporation (Verified) Microsoft Windows
IAANTmon.exe 1,820 K 7,580 K 1976 RAID Monitor Intel Corporation (Verified) Intel Corporation
GoogleUpdate.exe 1,916 K 552 K 5044 Google Installer Google Inc. (Verified) Google Inc
chrome.exe 78,236 K 95,560 K 7220 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 54,196 K 59,248 K 2360 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 1,652 K 5,684 K 1928 Google Chrome Google Inc. (Verified) Google Inc
backgroundTaskHost.exe 2,080 K 10,648 K 2668 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
armsvc.exe 1,156 K 5,068 K 2580 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
 
 
Image Name                     PID Services                                    
========================= ======== ============================================
System Idle Process              0 N/A                                         
System                           4 N/A                                         
smss.exe                       296 N/A                                         
csrss.exe                      328 N/A                                         
wininit.exe                   1052 N/A                                         
csrss.exe                     1068 N/A                                         
winlogon.exe                  1140 N/A                                         
services.exe                  1180 N/A                                         
lsass.exe                     1196 KeyIso, SamSs, VaultSvc                     
svchost.exe                   1276 BrokerInfrastructure, DcomLaunch, LSM,      
                                   PlugPlay, Power, SystemEventsBroker         
svchost.exe                   1332 RpcEptMapper, RpcSs                         
dwm.exe                       1436 N/A                                         
svchost.exe                   1496 Appinfo, DoSvc, gpsvc, IKEEXT, iphlpsvc,    
                                   LanmanServer, lfsvc, ProfSvc, Schedule,     
                                   seclogon, SENS, ShellHWDetection, Themes,   
                                   UserManager, Winmgmt, wuauserv              
svchost.exe                   1520 Audiosrv, Dhcp, EventLog,                   
                                   HomeGroupProvider, lmhosts, Wcmsvc, wscsvc  
svchost.exe                   1528 EventSystem, fdPHost, FontCache,            
                                   LicenseManager, netprofm, nsi,              
                                   WdiServiceHost, WinHttpAutoProxySvc         
svchost.exe                   1556 FDResPub, SSDPSRV, TimeBroker, upnphost     
svchost.exe                   1624 AudioEndpointBuilder,                       
                                   DeviceAssociationService, hidserv,          
                                   NcbService, PcaSvc, SysMain, TrkWks,        
                                   WdiSystemHost, WlanSvc, wudfsvc             
svchost.exe                   1700 BFE, CoreMessagingRegistrar, DPS, MpsSvc,   
                                   NcdAutoSetup                                
svchost.exe                   1904 CryptSvc, Dnscache, LanmanWorkstation,      
                                   NlaSvc                                      
WUDFHost.exe                  1924 N/A                                         
AutoKMS.exe                   2092 N/A                                         
spoolsv.exe                   2244 Spooler                                     
conhost.exe                   2480 N/A                                         
armsvc.exe                    2580 AdobeARMservice                             
svchost.exe                   2588 AppHostSvc                                  
svchost.exe                   2596 DiagTrack                                   
FreemakeUtilsService.exe      2604 Freemake Improver                           
AppleMobileDeviceService.     2648 Apple Mobile Device Service                 
mbamservice.exe               2696 MBAMService                                 
svchost.exe                   2752 W3SVC, WAS                                  
NIHardwareService.exe         2760 NIHardwareService                           
mqsvc.exe                     2772 MSMQ                                        
LDSvc.exe                     2792 PaceLicenseDServices                        
rndlresolversvc.exe           2844 RealNetworks Downloader Resolver Service    
rpdsvc.exe                    2852 RealPlayer Cloud Service                    
RealPlayerUpdateSvc.exe       2872 RealPlayerUpdateSvc                         
svchost.exe                   2912 StateRepository, tiledatamodelsvc           
svchost.exe                   2928 stisvc                                      
Updater.exe                   2940 Update service                              
UpdaterService.exe            2968 Updater Service                             
MsMpEng.exe                   2980 WinDefend                                   
IAANTmon.exe                  1976 IAANTMON                                    
dasHost.exe                   3076 N/A                                         
SMSvcHost.exe                 3784 NetPipeActivator                            
SMSvcHost.exe                 3792 NetMsmqActivator                            
sihost.exe                    2828 N/A                                         
taskeng.exe                   4124 N/A                                         
RuntimeBroker.exe             4136 N/A                                         
NisSrv.exe                    4464 WdNisSvc                                    
explorer.exe                  4608 N/A                                         
SkypeHost.exe                 4668 N/A                                         
GoogleUpdate.exe              5044 N/A                                         
taskhostw.exe                 5116 N/A                                         
ShellExperienceHost.exe       5152 N/A                                         
SearchUI.exe                  5368 N/A                                         
WmiPrvSE.exe                  5440 N/A                                         
SearchIndexer.exe             5988 WSearch                                     
chrome.exe                    1808 N/A                                         
chrome.exe                    1928 N/A                                         
RAVCpl64.exe                  1564 N/A                                         
OneDrive.exe                  1636 N/A                                         
chrome.exe                    2360 N/A                                         
HotkeyUtility.exe             5568 N/A                                         
ISHelper.exe                  3588 N/A                                         
chrome.exe                    6024 N/A                                         
IntuitUpdateService.exe       3888 IntuitUpdateServiceV4                       
svchost.exe                   6456 N/A                                         
audiodg.exe                   5092 N/A                                         
downloader2.exe               3544 N/A                                         
chrome.exe                    6752 N/A                                         
ApplicationFrameHost.exe      6592 N/A                                         
svchost.exe                    592 p2pimsvc, PNRPsvc                           
WmiPrvSE.exe                  7112 N/A                                         
ApplePhotoStreams.exe         3028 N/A                                         
APSDaemon.exe                 3128 N/A                                         
notepad.exe                   7824 N/A                                         
chrome.exe                    5576 N/A                                         
dllhost.exe                   3868 N/A                                         
dllhost.exe                   7676 N/A                                         
cmd.exe                       6508 N/A                                         
conhost.exe                   7864 N/A                                         
tasklist.exe                  4292 N/A                                         
 
 

Attached Files


  • 0

#8
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

Internet speed is ok. Computer still lags with simple tasks. Lets see if improves the web browsing issues. Thanks a lot!


  • 0

#9
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP

You have a desktop with the Ethernet connected but you also have WiFi turned on.  I would disable the WiFi.

 

 

I'm wondering if the extra TAP-Win32 Adapter OAS are caused by MS's new method of getting updates.  
 
settings>update>advanced>chose how updates are delivered. Set "updates from more than one place" to off.     
Also do:
Settings -> System -> Notifications -> Disable "Show Windows Tips"
 
CPU
Intel Pentium E5800 @ 3.20GHz 61 °C
Wolfdale 45nm Technology
RAM
4.00GB Dual-Channel DDR3 @ 399MHz (6-6-6-15)
Motherboard
Acer WG43M (CPU 1) 71 °C

 

 

This is too hot for a desktop. Both temps should be under 50.  This usually means the heatsink is clogged with dust.  Shut it down, leave it plugged in.  Open it up.  Locate the CPU fan.  It usually sits on top of a big metal finned heatsink that sits on top of the CPU chip.  Dust will build up between the heatsink and the fan.  To clean it you may need to remove the fan (BUT NOT THE HEATSINK!  If you remove the heatsink you will need to apply new thermal paste.)  Note which side of the fan is up if you have to remove it.   Use a small brush and a vacuum cleaner hose to remove the dust.  Also clear the dust from any chassis vents and the power supply fan. Once it's clean put the fan back and start it up with the cover off.  Watch the fan.  It should zoom up to a rather high level very quickly and then drop back to a slower speed.  If it makes a lot of noise or is slow starting then it will need to be replaced.

 

Your SFC junk file shows that almost all of your shortcuts are corrupt.  

Let's see if they look bad:

 

Right click on FRST54.exe and Run As Admin.

Check the shortcuts.txt

 box then hit Scan.  That should generate a file shortcut.txt.  Please copy and paste it into a reply.

 

Process Explorer looks pretty bad.  The top CPU user, svchost.exe is PID 1904 

which we see from the junk file is:  svchost.exe                   1904 CryptSvc, Dnscache, LanmanWorkstation,      
                                   NlaSvc  
 
After disabling the WiFi does this change at all?
 
Post a new Process Explorer log.  

  • 0

#10
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts
Hi...I cleaned the Fan and heatsink . My temps are now running at 62 degrees for the motherboard and 52 degrees for the CPU...a little cooler than before. I'm afraid I dont know how to disable WIFI. I have disable wireless network connection to run a new procexplorer
If I'd need to replace anything, what would it be? Heatsink? CPU? or else?
Lagging on the PC got worse I believe. No improvements.
 
Users shortcut scan result (x64) Version: 25-09-2016
Ran by deco (27-09-2016 01:56:12)
Running from C:\Users\deco\Downloads
Boot Mode: Normal
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
 
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\deco\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\deco\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\deco\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\deco\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\deco\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\deco ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\TMAC v6.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\TMAC.exe (Technitium)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}\SC_Reader.ico (Flexera Software LLC)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk -> C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk -> C:\Program Files (x86)\Adobe\Adobe Help\Adobe Help.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Devices Flow.lnk -> C:\Windows\DevicesFlow\DevicesFlow.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio One 3 x64.lnk -> C:\Program Files\PreSonus\Studio One 3\Studio One.exe (PreSonus)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk -> C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk -> C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mesh.lnk -> C:\Program Files (x86)\Windows Live\Mesh\WLSync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk -> C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe (Microsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves Central\Uninstall Waves Central.lnk -> C:\Program Files (x86)\Waves Central\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves Central\Waves Central.lnk -> C:\Program Files (x86)\Waves Central\Waves Central.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk -> C:\Program Files (x86)\VideoLAN\VLC\Documentation.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk -> C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk -> C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\Help.lnk -> C:\Program Files (x86)\Ultra Video Splitter\Help.CHM ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\Readme.lnk -> C:\Program Files (x86)\Ultra Video Splitter\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\Ultra Video Splitter Homepage.lnk -> C:\Program Files (x86)\Ultra Video Splitter\Ultra Video Splitter.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\Ultra Video Splitter.lnk -> C:\Program Files (x86)\Ultra Video Splitter\Ultra Video Splitter.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\Uninstall Ultra Video Splitter.lnk -> C:\Program Files (x86)\Ultra Video Splitter\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter\What's New.lnk -> C:\Program Files (x86)\Ultra Video Splitter\New.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TurboTax Business 2014\TurboTax Business 2014.lnk -> C:\Windows\Installer\{B94219DA-5642-4715-A38A-D41D98194CCA}\TurboTax.exe (Intuit)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TurboTax 2015\TurboTax 2015.lnk -> C:\Windows\Installer\{B0119415-6743-4707-AB4D-1928F5E81FDD}\TurboTax.exe (Intuit)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6\EULA.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\EULA.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6\Help.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\help.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6\Read Me.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\Read Me.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6\TMAC v6.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\TMAC.exe (Technitium)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6\Uninstall TMAC v6.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\Installer.exe (Technitium)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\RealPlayer Cloud Service UI.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin64\rpsystray.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soulseek NS\Soulseek.lnk -> C:\Program Files (x86)\SoulseekNS\slsk.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soulseek NS\Uninstall Soulseek.lnk -> C:\Program Files (x86)\SoulseekNS\uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer Cloud.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer Converter.lnk -> C:\Program Files (x86)\Real\RealPlayer\realconverter.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer Downloader.lnk -> C:\Windows\Installer\{6FCD4D5A-20B9-4D79-ABA5-4E7048944025}\recordingmanager.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer.lnk -> C:\program files (x86)\Real\realplayer\realplay.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\Recortador de RealPlayer.lnk -> C:\Program Files (x86)\Real\RealPlayer\realtrimmer.exe (RealNetworks, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\About QuickTime.lnk -> C:\Windows\Installer\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}\RichText.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk -> C:\Windows\Installer\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}\QTPlayer.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PreSonus\AudioBox\AudioBox.lnk -> C:\Program Files\PreSonus\AudioBox\AudioBox.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PreSonus\AudioBox\Uninstall  AudioBox.lnk -> C:\Program Files\PreSonus\AudioBox\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time Uninstall.lnk -> C:\Program Files (x86)\Popcorn Time\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn Time.lnk -> C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Native Instruments Homepage.lnk -> C:\WINDOWS\Installer\{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}\et20Explorer5ciexplore.exe0.ico (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Service Center.lnk -> C:\Program Files\Native Instruments\Service Center\ServiceCenter.exe (Native Instruments GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\More Documentation.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Readme.txt.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual English.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual English.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual French.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual French.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual German.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual German.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual Japanese.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Documentation\Service Center Manual Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Service Center\Documentation\Service Center Manual Spanish.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Rig Kontrol 3 Control Panel.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\rig3cpl.exe (Native Instruments GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Documentation\Rig Kontrol 3 Manual English.pdf.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\Documentation\Rig Kontrol 3 Manual English.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Documentation\Rig Kontrol 3 Manual French.pdf.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\Documentation\Rig Kontrol 3 Manual French.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Documentation\Rig Kontrol 3 Manual German.pdf.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\Documentation\Rig Kontrol 3 Manual German.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Documentation\Rig Kontrol 3 Manual Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\Documentation\Rig Kontrol 3 Manual Japanese.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Rig Kontrol 3\Documentation\Rig Kontrol 3 Manual Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\Documentation\Rig Kontrol 3 Manual Spanish.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Guitar Rig Session IO Control Panel.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\sesscpl.exe (Native Instruments GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Documentation\Guitar Rig Session IO Manual English.pdf.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\Documentation\Guitar Rig Session IO Manual English.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Documentation\Guitar Rig Session IO Manual French.pdf.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\Documentation\Guitar Rig Session IO Manual French.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Documentation\Guitar Rig Session IO Manual German.pdf.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\Documentation\Guitar Rig Session IO Manual German.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Documentation\Guitar Rig Session IO Manual Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\Documentation\Guitar Rig Session IO Manual Japanese.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig Session IO\Documentation\Guitar Rig Session IO Manual Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Guitar Rig Session IO Driver\Documentation\Guitar Rig Session IO Manual Spanish.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig 5\Guitar Rig 5.lnk -> C:\Program Files\Native Instruments\Guitar Rig 5\Guitar Rig 5.exe (Native Instruments GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig 5\Native Instruments Homepage.lnk -> C:\WINDOWS\Installer\{01D57CF6-B5BC-4D03-AFF5-7960CFBD05A9}\et20Explorer5ciexplore.exe0.ico (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig 5\Documentation\More Documentation.lnk -> C:\Program Files\Native Instruments\Guitar Rig 5\Documentation ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Guitar Rig 5\Documentation\Readme.txt.lnk -> C:\Program Files\Native Instruments\Guitar Rig 5\Documentation\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Controller Editor.lnk -> C:\Program Files\Native Instruments\Controller Editor\Controller Editor.exe (Native Instruments GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Native Instruments Homepage.lnk -> C:\WINDOWS\Installer\{0886900B-B2F3-452C-B580-60F1253F7F80}\et20Explorer5ciexplore.exe0.ico (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Controller Editor Manual English.pdf.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Controller Editor Manual English.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Controller Editor Manual French.pdf.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Controller Editor Manual French.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Controller Editor Manual German.pdf.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Controller Editor Manual German.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Controller Editor Manual Japanese.pdf.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Controller Editor Manual Japanese.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Controller Editor Manual Spanish.pdf.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Controller Editor Manual Spanish.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\More Documentation.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Controller Editor\Documentation\Readme.txt.lnk -> C:\Program Files\Native Instruments\Controller Editor\Documentation\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKV Player\MKV Player.lnk -> C:\Program Files (x86)\MKV Player\MKV Player.exe (vsevensoft.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\Silverlight.Configuration.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\accicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Filler 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\inficon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\outicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pubs.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Send to OneNote 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Skype for Business 2015.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Database Compare 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Language Preferences.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Upload Center.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Skype for Business Recording Manager.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Spreadsheet Compare 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Telemetry Dashboard for Office 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\osmadminicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Telemetry Log for Office 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\osmclienticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus\McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.163\McUICnt.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus\Uninstall.lnk -> C:\Program Files\McAfee Security Scan\uninstall.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZotope\Ozone 7\iZotope Ozone 7 (32-bit).lnk -> C:\Program Files (x86)\iZotope\Ozone 7\win32\iZotope Ozone 7.exe (iZotope, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZotope\Ozone 7\iZotope Ozone 7 (64-bit).lnk -> C:\Program Files (x86)\iZotope\Ozone 7\win64\iZotope Ozone 7.exe (iZotope, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZotope\Ozone 7\Uninstall iZotope Ozone 7.lnk -> C:\Program Files (x86)\iZotope\Ozone 7\Uninstall iZotope Ozone 7 Advanced.exe (iZotope, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk -> C:\Program Files\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\TunesOver\Activate and Purchase.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\Order.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\TunesOver\HomePage.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\HomePage.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\TunesOver\How to use.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\Support.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\TunesOver\iSkysoft TunesOver.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\TunesOver.exe (iSkysoft)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSkysoft\TunesOver\Uninstall iSkysoft TunesOver.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager\Intel® Matrix Storage Console.lnk -> C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia\Authorization Manager.lnk -> C:\Program Files (x86)\IK Multimedia\Authorization Manager\Authorization Manager.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia\Authorization Manager\Installation and Authorization Manual.lnk -> C:\Program Files (x86)\IK Multimedia\Authorization Manager\Installation and Authorization Manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia\Authorization Manager\Uninstall IK Multimedia Authorization Manager.lnk -> C:\Program Files (x86)\IK Multimedia\Authorization Manager\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Calendar.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Contacts.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Find My iPhone.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud Photos.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreamsShortcut.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Keynote.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Mail.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Notes.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Numbers.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Pages.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Reminders.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Club Penguin.lnk -> C:\Program Files (x86)\Acer Games\Web Link - Club Penguin\502CF397-846F-459B-AB59-9826E34B7ECE.dll ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake\Freemake Audio Converter.lnk -> C:\Program Files (x86)\Freemake\Freemake Audio Converter\FreemakeAudioConverter.exe (Freemake)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Sound Recorder\Free Sound Recorder.lnk -> C:\Program Files (x86)\Free Sound Recorder\FreeSoundRecorder.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Sound Recorder\Uninstall.lnk -> C:\Program Files (x86)\Free Sound Recorder\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite\DAEMON Tools Lite.lnk -> C:\Program Files\DAEMON Tools Lite\DTLauncher.exe (Disc Soft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\CCCP Settings (64bit).lnk -> C:\Program Files\Combined Community Codec Pack 64bit\CCCP-Settings.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\CCCP Uninstall (64bit).lnk -> C:\Program Files\Combined Community Codec Pack 64bit\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\Media Player Classic Home Cinema (64bit).lnk -> C:\Program Files\Combined Community Codec Pack 64bit\MPC\mpc-hc64.exe (MPC-HC Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk -> C:\Program Files\CCleaner\uninst.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avid\Pro Tools\DigiTest.lnk -> C:\Program Files (x86)\Avid\Pro Tools\Pro Tools Utilities\DigiTest\DigiTest.exe (Avid Technology, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avid\Pro Tools\Pro Tools 10.lnk -> C:\Program Files (x86)\Avid\Pro Tools\ProTools.exe (Avid Technology, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AUPEO!\AUPEO!.lnk -> C:\Program Files\Preload\AUPEO\AupeoSetup.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe\Adobe Media Player.lnk -> C:\Program Files (x86)\Adobe Media Player\Adobe Media Player.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem\Acer System Series User Guide.lnk -> C:\book\AcerDT.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer eRecovery Management.lnk -> C:\Program Files\Acer\Acer eRecovery Management\Recovery Management.exe (Acer)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk -> C:\Program Files\Acer\Acer Updater\ALU.exe (Acer)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Hotkey Utility.lnk -> C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Identity Card.lnk -> C:\Program Files (x86)\Acer\Identity Card\IdentityCard.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{502CF397-846F-459B-AB59-9826E34B7ECE}\PlayTasks\0\web.lnk -> C:\Program Files (x86)\Acer Games\Web Link - Club Penguin\502CF397-846F-459B-AB59-9826E34B7ECE.dll ()
Shortcut: C:\Users\deco\Links\Desktop.lnk -> C:\Users\deco\Desktop ()
Shortcut: C:\Users\deco\Links\Downloads.lnk -> C:\Users\deco\Downloads ()
Shortcut: C:\Users\deco\Links\iCloud Drive.lnk -> C:\Users\deco\iCloudDrive ()
Shortcut: C:\Users\deco\Links\iCloud Photos.lnk -> 0x4C0000000114020000000000C00000000000004685000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000002A0014001F50E04FD020EA3A6910A2D808002B30309D14002E80853FD6F0EC379740B30D61B4A891711800001100690043006C006F00750064002000500068006F0074006F0073002E006C006E006B0000000000
Shortcut: C:\Users\deco\Links\Music.lnk -> C:\Users\deco\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms ()
Shortcut: C:\Users\deco\Links\RealPlayer Cloud.lnk -> 0x4C0000000114020000000000C00000000000004681000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000002A0014001F50E04FD020EA3A6910A2D808002B30309D14002E8067C98F5E9A825C4793EA51FCE6D9FFCE000028000000090000A01C00000031535053E28A5846BC4C3843BBFC139326986DCE000000000000000000000000
Shortcut: C:\Users\deco\Links\RecentPlaces.lnk -> System Folder
Shortcut: C:\Users\deco\iCloudDrive\iCloud Photos - Shortcut.lnk -> System Folder
Shortcut: C:\Users\deco\Favorites\Links\Acer Games.lnk -> C:\Windows\System32\url.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\Favorites\Links\Acer.lnk -> C:\Windows\System32\url.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\Favorites\Acer\Acer Games.lnk -> C:\Windows\System32\url.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\Favorites\Acer\Acer.lnk -> C:\Windows\System32\url.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\Documents\Documents.lnk -> C:\Users\deco\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms ()
Shortcut: C:\Users\deco\Documents\Downloads - Shortcut.lnk -> C:\Users\deco\Downloads ()
Shortcut: C:\Users\deco\Documents\Downloads.lnk -> C:\Users\deco\Downloads ()
Shortcut: C:\Users\deco\Desktop\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe (The Audacity Team)
Shortcut: C:\Users\deco\Desktop\CopyTrans Control Center.lnk -> C:\Users\deco\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransControlCenter.exe (WindSolutions)
Shortcut: C:\Users\deco\Desktop\Downloads - Shortcut.lnk -> C:\Users\deco\Downloads ()
Shortcut: C:\Users\deco\Desktop\Google Chrome.lnk -> 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
Shortcut: C:\Users\deco\Desktop\iTunes.lnk -> 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
Shortcut: C:\Users\deco\Desktop\MKV Player.lnk -> C:\Program Files (x86)\MKV Player\MKV Player.exe (vsevensoft.com)
Shortcut: C:\Users\deco\Desktop\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\Users\deco\Desktop\µTorrent.lnk -> C:\Users\deco\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\deco\Desktop\plugins\CODEX App.lnk -> C:\Program Files (x86)\Waves\Applications\CODEX App.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\Controller Editor.lnk -> C:\Program Files\Native Instruments\Controller Editor\Controller Editor.exe (Native Instruments GmbH)
Shortcut: C:\Users\deco\Desktop\plugins\Element App.lnk -> C:\Program Files (x86)\Waves\Applications\Element App.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\eMotion LV1.lnk -> C:\Program Files (x86)\Waves\eMotion LV1\eMotion LV1.exe ()
Shortcut: C:\Users\deco\Desktop\plugins\GTR 3.5.lnk -> C:\Program Files (x86)\Waves\Applications\GTR 3.5.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\GTRSolo 3.5.lnk -> C:\Program Files (x86)\Waves\Applications\GTRSolo 3.5.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\Guitar Rig 5.lnk -> C:\Program Files\Native Instruments\Guitar Rig 5\Guitar Rig 5.exe (Native Instruments GmbH)
Shortcut: C:\Users\deco\Desktop\plugins\MultiRack SoundGrid.lnk -> C:\Program Files (x86)\Waves\MultiRack\MultiRack SoundGrid.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\MultiRack.lnk -> C:\Program Files (x86)\Waves\MultiRack\MultiRack.exe (Waves Audio Ltd.)
Shortcut: C:\Users\deco\Desktop\plugins\SoundGrid Driver Control Panel.lnk -> C:\Program Files (x86)\Waves\SoundGrid\Driver Control Panel\SoundGrid Driver Control Panel.exe (No File)
Shortcut: C:\Users\deco\Desktop\plugins\SoundGrid Studio.lnk -> C:\Program Files (x86)\Waves\SoundGrid Studio\SoundGrid Studio.exe ()
Shortcut: C:\Users\deco\Desktop\plugins\Waves Central.lnk -> C:\Program Files (x86)\Waves Central\Waves Central.exe ()
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZX Cocktail Installer.pkg\Contents\Resources\EZXCocktail.bom.lnk -> C:\My InstallShield 11.5 Projects\EZXCocktail\CompleteForDVD\Mac\EZXCocktail.pkg\Contents\Archive.bom (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZX Cocktail Installer.pkg\Contents\Resources\EZXCocktail.pax.gz.lnk -> C:\My InstallShield 11.5 Projects\EZXCocktail\CompleteForDVD\Mac\EZXCocktail.pkg\Contents\Archive.pax.gz (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\EzHome.pkg\Contents\Resources\EzHome.bom.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\EzHome.pkg\Contents\Archive.bom (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\EzHome.pkg\Contents\Resources\EzHome.pax.gz.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\EzHome.pkg\Contents\Archive.pax.gz (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\Ez.pkg\Contents\Resources\Ez.bom.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\Ez.pkg\Contents\Archive.bom (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\Ez.pkg\Contents\Resources\Ez.pax.gz.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\Ez.pkg\Contents\Archive.pax.gz (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\Contents\Resources\EZ.bom.lnk -> 0x4C0000000114020000000000C0000000000000460C000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000000E002E2E2F417263686976652E626F6D5B00633A5C4D7920496E7374616C6C536869656C642031312E352050726F6A656374735C455A5C436F6D706C657465466F724456445C4D61635C455A6472756D6D65722E6D706B675C436F6E74656E74735C417263686976652E626F6D
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\AUEz.pkg\Contents\Resources\AUEz.bom.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\AUEz.pkg\Contents\Archive.bom (No File)
Shortcut: C:\Users\deco\Desktop\EZdrummer v1.0. VSTi\Install\Mac\EZdrummer Installer.mpkg\AUEz.pkg\Contents\Resources\AUEz.pax.gz.lnk -> C:\My InstallShield 11.5 Projects\EZ\CompleteForDVD\Mac\EZdrummer.mpkg\AUEz.pkg\Contents\Archive.pax.gz (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Free Sound Recorder.lnk -> C:\Program Files (x86)\Free Sound Recorder\FreeSoundRecorder.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\deco\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\vreXjvX\vreXjvX\chrome.exe (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\deco\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk -> C:\Windows\System32\fodhelper.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake\Uninstall\Uninstall Freemake Audio Converter.lnk -> C:\Program Files (x86)\Freemake\Freemake Audio Converter\Uninstall\unins000.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center\CopyTrans Control Center.lnk -> C:\Users\deco\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransControlCenter.exe (WindSolutions)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth File Transfer.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Windows\SendTo\iSkysoft TunesOver.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\TunesOver.exe (iSkysoft)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Free Sound Recorder.lnk -> C:\Program Files (x86)\Free Sound Recorder\FreeSoundRecorder.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iSkysoft TunesOver.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\TunesOver.exe (iSkysoft)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Pro Tools 10.lnk -> C:\Program Files (x86)\Avid\Pro Tools\ProTools.exe (Avid Technology, Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -> C:\Users\deco\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Excel 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Soulseek.lnk -> C:\Program Files (x86)\SoulseekNS\slsk.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Google Chrome.lnk -> C:\Program Files (x86)\vreXjvX\vreXjvX\chrome.exe (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Soulseek.lnk -> C:\Program Files (x86)\SoulseekNS\slsk.exe ()
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\µTorrent.lnk -> C:\Users\deco\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\c8f47a8f669f2864\Google Chrome.lnk -> C:\Program Files (x86)\vreXjvX\vreXjvX\chrome.exe (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Excel\November%202015%20CSV%20File%20305167631325612088\November%202015%20CSV%20File%20.xlsx.lnk -> C:\Users\deco\Desktop\amazon\November 2015 CSV File .xlsx (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Excel\New%20products%20Feb%204%20to%20May%204%202016305167530371004634\New%20products%20Feb%204%20to%20May%204%202016.csv.lnk -> C:\Users\deco\Downloads\New products Feb 4 to May 4 2016.csv (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Excel\eld4cafinal305167631325972138\eld4cafinal.xlsx.lnk -> C:\Users\deco\Desktop\amazon\eld4cafinal.xlsx (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Excel\eld2-4.ca305163591993471917\eld2-4.ca.xls.lnk -> C:\Users\deco\Desktop\amazon\eld2-4.ca.xls (No File)
Shortcut: C:\Users\deco\AppData\Roaming\Microsoft\Excel\19-3dream305167961623543135\19-3dream.xlsx.lnk -> C:\Users\deco\Desktop\amazon\19-3dream.xlsx (No File)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Windows.PurchaseDialog_cw5n1h2txyewy\Microsoft.Windows.PurchaseDialog.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Windows.ContactSupport_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneVideo_8wekyb3d8bbwe\Microsoft.ZuneVideo.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneMusic_8wekyb3d8bbwe\Microsoft.ZuneMusic.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.XboxIdentityProvider_cw5n1h2txyewy\Microsoft.XboxIdentityProvider.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.XboxGameCallableUI_cw5n1h2txyewy\Microsoft.XboxGameCallableUI.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.XboxApp_8wekyb3d8bbwe\Microsoft.XboxApp.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsStore_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsSoundRecorder_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsPhone_8wekyb3d8bbwe\CompanionApp.App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsMaps_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsFeedback_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsDVDPlayer_8wekyb3d8bbwe\Microsoft.WindowsDVDPlayer.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\microsoft.windowslive.calendar.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\microsoft.windowslive.mail.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsCamera_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsCalculator_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsAlarms_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.Photos_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.ParentalControls_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaUI.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.SkypeApp_kzf8qxf38zg5c\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.People_8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Office.OneNote_8wekyb3d8bbwe\microsoft.onenoteim.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.LockApp_cw5n1h2txyewy\WindowsDefaultLockScreen.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Getstarted_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BioEnrollment_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingWeather_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingSports_8wekyb3d8bbwe\AppexSports.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingNews_8wekyb3d8bbwe\AppexNews.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingFinance_8wekyb3d8bbwe\AppexFinance.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Appconnector_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.AccountsControl_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.3DBuilder_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\king.com.CandyCrushSaga_kgqvnymyfvs32\App.lnk -> CandyCrushSodaSaga
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\AcerIncorporated.AcerExplorer_48frkmn4z8aw4\AcerExplorer.lnk -> Tile and icon assets
Shortcut: C:\Users\deco\AppData\Local\Microsoft\Windows\Application Shortcuts\9E2F88E3.Twitter_wgeqdkkx372wm\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\Links\Desktop.lnk -> C:\Users\Guest\Desktop ()
Shortcut: C:\Users\Guest\Links\Downloads.lnk -> C:\Users\Guest\Downloads ()
Shortcut: C:\Users\Guest\Links\RecentPlaces.lnk -> System Folder
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Acrobat Reader DC.lnk -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Public\Desktop\AudioBox.lnk -> C:\Program Files\PreSonus\AudioBox\AudioBox.exe ()
Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\Public\Desktop\DAEMON Tools Lite.lnk -> C:\Program Files\DAEMON Tools Lite\DTLauncher.exe (Disc Soft Ltd)
Shortcut: C:\Users\Public\Desktop\Freemake Audio Converter.lnk -> C:\Program Files (x86)\Freemake\Freemake Audio Converter\FreemakeAudioConverter.exe (Freemake)
Shortcut: C:\Users\Public\Desktop\iSkysoft TunesOver.lnk -> C:\Program Files (x86)\iSkysoft\TunesOver\TunesOver.exe (iSkysoft)
Shortcut: C:\Users\Public\Desktop\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Public\Desktop\iZotope Ozone 7 (64-bit).lnk -> C:\Program Files (x86)\iZotope\Ozone 7\win64\iZotope Ozone 7.exe (iZotope, Inc.)
Shortcut: C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.163\McUICnt.exe (No File)
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Popcorn Time.lnk -> C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe ()
Shortcut: C:\Users\Public\Desktop\Pro Tools 10.lnk -> C:\Program Files (x86)\Avid\Pro Tools\ProTools.exe (Avid Technology, Inc.)
Shortcut: C:\Users\Public\Desktop\QuickTime Player.lnk -> C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe (Apple Inc.)
Shortcut: C:\Users\Public\Desktop\RealPlayer Cloud.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe ()
Shortcut: C:\Users\Public\Desktop\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd)
Shortcut: C:\Users\Public\Desktop\Studio One 3 x64.lnk -> C:\Program Files\PreSonus\Studio One 3\Studio One.exe (PreSonus)
Shortcut: C:\Users\Public\Desktop\TMAC v6.lnk -> C:\Program Files (x86)\Technitium\TMACv6.0\TMAC.exe (Technitium)
Shortcut: C:\Users\Public\Desktop\TurboTax 2015.lnk -> C:\Windows\Installer\{B0119415-6743-4707-AB4D-1928F5E81FDD}\TurboTax.exe (Intuit)
Shortcut: C:\Users\Public\Desktop\TurboTax Business 2014.lnk -> C:\Windows\Installer\{B94219DA-5642-4715-A38A-D41D98194CCA}\TurboTax.exe (Intuit)
Shortcut: C:\Users\Public\Desktop\Ultra Video Splitter.lnk -> C:\Program Files (x86)\Ultra Video Splitter\Ultra Video Splitter.exe ()
Shortcut: C:\Users\Public\Desktop\VLC media player.lnk -> C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN)
 
 
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\RealPlayer Daily Videos.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) ->  hxxp://videos.real.com/rp/web_videos?market=es-es&cd=home&CB=client&firstrun=1&PT=FREE&OS=WinNT%206.1.7601&LP=es&OC=R90ESD&PV=17.0.15.10&PBR=10485800&CO=es&LI=es&PN=RealPlayer&DC=R90ESD&DT=071114&u=51354b13aa194ee5b275e0259e61841c#channel/popular
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\Favorites\Vídeo\RealGuide.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /targetview:_rpbrowser hxxp://brazil.real.com/guide/home
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\Favorites\Rádio\RealGuide.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /targetview:_rpbrowser hxxp://brazil.real.com/guide/home
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\Favorites\Páginas da Web\RealArcade - Jogos.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /targetview:_rpbrowser hxxp://www.br.realarcade.eu
 
 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\Uninstall QuickTime.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /i {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} /qf
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\InfoPath Designer 2013.lnk -> C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\inficon.exe () ->  /design 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\Filters\LAV Audio Settings (64bit).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files\Combined Community Codec Pack 64bit\Filters\LAVFilters\LAVAudio.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\Filters\LAV Splitter Settings (64bit).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files\Combined Community Codec Pack 64bit\Filters\LAVFilters\LAVSplitter.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\Filters\LAV Video Settings (64bit).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files\Combined Community Codec Pack 64bit\Filters\LAVFilters\LAVVideo.ax",OpenConfiguration
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\Filters\VSFilter Configuration (64bit).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files\Combined Community Codec Pack 64bit\Filters\vsfilter.dll",DirectVobSub
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avid\Pro Tools\Documentation.lnk -> C:\Windows\SysWOW64\explorer.exe (Microsoft Corporation) -> C:\Program Files (x86)\Avid\Pro Tools\Documentation
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\B4B4DDD.rmvb.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://C:/Users/deco/Downloads/B4B4DDD.rmvb
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\Dark.Places.2015.BRRip.XviD.AC3-EVO.avi.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://C:/Users/deco/Downloads/Dark.Places.2015.BRRip.XviD.AC3-EVO/Dark.Places.2015.BRRip.XviD.AC3-EVO.avi
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\El Duce of the Mentors talks about Ku....lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://C:/Users/deco/Downloads/Soaked in Bleach (2015) Kurt Cobain Documentary BluRay.1080p.HD/El Duce of the Mentors talks about Kurt Cobain & Courtney Love 8-30-96 (1).mp4
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\Green inferno.2015.1080p.Bluray.x265.....lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://C:/Users/deco/Desktop/Green inferno.2015.1080p.Bluray.x265.HEVC.RUEDAS.mkv
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\Poltergeist - O Fenômeno [Versão Este....lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://F:/Poltergeist - O Fenômeno [Versão Estendida] (2015) 5.1 CH Dublado 720p (By-LuanHarper).mp4
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\The.Gates.Of.[bleep].2011.LiMiTED.TRUEFR....lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://D:/The.Gates.Of.[bleep].2011.LiMiTED.TRUEFRENCH.DVDRiP.XViD-FiCTiON/The.Gates.Of.[bleep].2011.LiMiTED.TRUEFRENCH.DVDRiP.XViD-FiCTiON.avi
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Real\RealPlayer\History\What We Do In The Shadows (2014).mp4.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /startpos:00:00:00.0 file://F:/What We Do In The Shadows (2014).mp4
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center\Uninstall.lnk -> C:\Users\deco\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransControlCenter.exe (WindSolutions) -> /uninstall
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\deco\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk -> C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE (Microsoft Corporation) -> /recycle
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\deco\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Guest\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
 
 
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy Homepage.url -> URL: hxxp://www.piriform.com/speccy
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Convert MP4 to MP3\Convert MP4 to MP3 on the Web.url -> URL: hxxp://www.convertmp4tomp3.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\CCCP Playback FAQ.url -> URL: hxxp://www.cccp-project.net/wiki/index.php?title=Main_Page
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit\CCCP Website.url -> URL: hxxp://www.cccp-project.net/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\deco\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\deco\Favorites\Rosebud Bijou Intime Plug Anal Taille L 8 Coloris AU Choix 60 GR  eBay.url -> BASEURL: hxxp://www.ebay.fr/itm/Rosebud-Bijou-intime-Plug-Anal-Taille-L-8-Coloris-au-choix-60-gr-/331115595049?pt=LH_DefaultDomain_71&var=&hash=item4d18070529 URL: hxxp://www.ebay.fr/itm/Rosebud-Bijou-intime-Plug-Anal-Taille-L-8-Coloris-au-choix-60-gr-/331115595049?pt=LH_DefaultDomain_71&var=&hash=item4d18070529
InternetURL: C:\Users\deco\Favorites\Windows Live\Get Windows Live.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=69172
InternetURL: C:\Users\deco\Favorites\Windows Live\Windows Live Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\deco\Favorites\Windows Live\Windows Live Mail.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\deco\Favorites\Windows Live\Windows Live Spaces.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68927
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSN Autos.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSN Entertainment.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSN Money.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSN Sports.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSN.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\deco\Favorites\MSN Websites\MSNBC News.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\deco\Favorites\Microsoft Websites\IE Add-on site.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\deco\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\deco\Favorites\Microsoft Websites\Microsoft At Home.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=55424
InternetURL: C:\Users\deco\Favorites\Microsoft Websites\Microsoft At Work.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=68920
InternetURL: C:\Users\deco\Favorites\Microsoft Websites\Microsoft Store.url -> URL: hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\deco\Favorites\Links for United States\GobiernoUSA.gov.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129792
InternetURL: C:\Users\deco\Favorites\Links for United States\USA.gov.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129791
InternetURL: C:\Users\deco\Favorites\Links\Suggested Sites.url -> URL: hxxps://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\deco\Favorites\Links\Web Slice Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\deco\Favorites\Acer\eBay.url -> URL: hxxp://rover.ebay.com/rover/1/711-66992-24801-1/4
InternetURL: C:\Users\Guest\Favorites\Links for United States\GobiernoUSA.gov.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129792
InternetURL: C:\Users\Guest\Favorites\Links for United States\USA.gov.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129791
InternetURL: C:\Users\Guest\Favorites\Links\Web Slice Gallery.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315
 
==================== End of Shortcut.txt =============================
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-09-2016
Ran by deco (administrator) on DECO-PC (27-09-2016 01:42:25)
Running from C:\Users\deco\Downloads
Loaded Profiles: deco (Available Profiles: deco & Guest & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
() C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(Popcorn Time) C:\Program Files (x86)\Popcorn Time\Updater.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(iSkySoft) C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
(Google Inc.) C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe
(VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.23941.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Piriform Ltd) C:\Program Files\Speccy\Speccy64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\videodl.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7981088 2009-07-20] (Realtek Semiconductor)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-09-09] (Apple Inc.)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [611872 2010-08-04] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2016-09-01] (Apple Inc.)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296520 2014-11-07] (RealNetworks, Inc.)
HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [560192 2014-10-29] ()
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2066432 2014-10-31] (iSkySoft)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [Google Update] => C:\Users\deco\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [103696 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [349968 2015-10-21] (Apple Inc.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd)
HKU\S-1-5-21-3406242734-3781281278-1370421689-1000\...\Run: [AudioBox VSL] => C:\Program Files\PreSonus\AudioBox\AudioBox.exe [7593984 2014-07-16] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealPlayer Cloud Service UI.lnk [2016-04-28]
ShortcutTarget: RealPlayer Cloud Service UI.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin64\rpsystray.exe (RealNetworks, Inc.)
GroupPolicy: Restriction ? <======= ATTENTION
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 201.17.1.157 201.17.1.152
Tcpip\..\Interfaces\{15941a57-a8f8-44be-ae25-ead64009ca59}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{bc9b8eca-8d3a-463c-a441-d44690c56727}: [DhcpNameServer] 201.17.1.157 201.17.1.152
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2014-10-26] (RealDownloader)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-08-27] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-08-16] (Microsoft Corporation)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2014-10-26] (RealDownloader)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-08-27] (Microsoft Corporation)
BHO-x32: FLVBlaster.FLVBlasterIEAddon -> {807ca0aa-7cb3-4f03-bd61-076f618cc82d} -> C:\Windows\system32\mscoree.dll [2015-10-30] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-08-16] (Microsoft Corporation)
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: HKLM-x32 {E37CB5F0-51F5-4395-A808-5FA49E399008} hxxps://clickbanking.itau.com.br/itau/gbplugin/gbplugin2/cab/GbPluginUni.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2016-05-17] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
 
FireFox:
========
FF ProfilePath: C:\Users\deco\AppData\Roaming\Mozilla\Firefox\Profiles\lb8aid18.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [No File]
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\new_plugin\npjp2.dll [No File]
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=17.0.15.10 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2014-11-07] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=17.0.15 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2014-10-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-10-15] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=17.0.15.10 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2014-11-07] (RealPlayer Cloud)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @emusic.com/eMusicPlugin DLM6 -> C:\Program Files (x86)\eMusic Download Manager 6\npEMusic602.dll [No File]
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\deco\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @talk.google.com/O1DPlugin -> C:\Users\deco\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @tools.google.com/Google Update;version=3 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin HKU\S-1-5-21-3406242734-3781281278-1370421689-1000: @tools.google.com/Google Update;version=9 -> C:\Users\deco\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppl3260.dll [2014-11-07] (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll [2014-11-07] (RealPlayer Cloud)
FF Plugin ProgramFiles/Appdata: C:\Users\deco\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\deco\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Extension: (Firefox Hotfix) - C:\Users\deco\AppData\Roaming\Mozilla\Firefox\Profiles\lb8aid18.default\Extensions\[email protected] [2016-09-20]
FF HKLM-x32\...\Firefox\Extensions: [{338950EA-82DB-44C1-930D-0C28E023C9F0}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-11-07] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://gmail.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default [2016-09-27]
CHR Extension: (Google Slides) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-22]
CHR Extension: (Google Docs) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-22]
CHR Extension: (Google Drive) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Google Search) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Disable Youtube™ HTML5 Player) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\enmofgaijnbjpblfljopnpdogpldapoc [2015-12-15]
CHR Extension: (Google Sheets) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-22]
CHR Extension: (Google Docs Offline) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01]
CHR Extension: (Gmail) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-27]
CHR Extension: (Chrome Media Router) - C:\Users\deco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-08-05] (Apple Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-02-04] (Freemake) [File not signed]
U2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [File not signed]
R2 PaceLicenseDServices; C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe [2938880 2012-05-18] (PACE Anti-Piracy, Inc.) [File not signed]
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39568 2014-10-26] ()
R2 RealPlayer Cloud Service; C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [1141848 2014-11-07] (RealNetworks, Inc.)
R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [31856 2014-10-30] ()
R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2015-10-19] (Popcorn Time) [File not signed]
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2016-09-07] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\iSkysoft\TunesOver\DriverInstall.exe [116384 2016-05-06] (Wondershare)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 cpuz138; C:\Users\deco\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [27320 2016-09-27] (CPUID)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-04-24] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-04-24] (Disc Soft Ltd)
S3 MAUSBFASTTRACK; C:\Windows\system32\DRIVERS\MAudioFastTrack.sys [460048 2013-05-21] (M-Audio)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-05-14] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R1 MpKsl53314140; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BD3E3E48-9C29-402D-9DE2-FCEC7A2E5F16}\MpKsl53314140.sys [44928 2016-09-26] (Microsoft Corporation)
R3 netr28x; C:\Windows\System32\drivers\netr28x.sys [2504192 2015-10-30] (MediaTek Inc.)
R3 paeusbaudio; C:\Windows\System32\drivers\paeusbaudio_x64.sys [260096 2014-04-16] ()
R3 paeusbaudiodsp; C:\Windows\System32\drivers\paeusbaudiodsp_x64.sys [62464 2014-07-16] ()
R3 paeusbaudioks; C:\Windows\system32\DRIVERS\paeusbaudioks_x64.sys [46080 2014-04-16] ()
R3 tapoas; C:\Windows\System32\drivers\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-09-27 01:39 - 2016-09-27 01:39 - 05201280 _____ (Piriform Ltd) C:\Users\deco\Downloads\spsetup129 (1).exe
2016-09-27 01:39 - 2016-09-27 01:39 - 00007265 _____ C:\WINDOWS\SysWOW64\rsslogs.20160927013852
2016-09-27 01:39 - 2016-09-27 01:39 - 00000841 _____ C:\Users\Public\Desktop\Speccy.lnk
2016-09-27 01:39 - 2016-09-27 01:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2016-09-27 01:39 - 2016-09-27 01:39 - 00000000 ____D C:\Program Files\Speccy
2016-09-26 18:45 - 2016-09-26 18:45 - 53049806 _____ C:\Users\deco\Downloads\NJ - MASTER.wav
2016-09-26 01:39 - 2016-09-27 01:39 - 00753369 _____ C:\WINDOWS\SysWOW64\rsslogs.20160926013852
2016-09-25 23:40 - 2016-09-26 01:39 - 00143685 _____ C:\WINDOWS\SysWOW64\rsslogs.20160925233942
2016-09-24 23:37 - 2016-09-24 23:37 - 00738865 _____ C:\WINDOWS\SysWOW64\rsslogs.20160924233633
2016-09-24 23:32 - 2016-09-24 23:32 - 00007778 _____ C:\junk.txt
2016-09-24 23:12 - 2016-09-24 23:14 - 00308623 _____ C:\Users\deco\Desktop\DECO-PC.txt
2016-09-24 23:06 - 2016-09-24 23:07 - 05201280 _____ (Piriform Ltd) C:\Users\deco\Downloads\spsetup129.exe
2016-09-24 23:01 - 2016-09-24 23:06 - 05201280 _____ (Piriform Ltd) C:\Users\deco\Desktop\spsetup129.exe
2016-09-24 22:38 - 2016-09-24 22:48 - 00009477 _____ C:\Users\deco\Desktop\System Idle Process.txt
2016-09-24 22:35 - 2016-09-24 22:35 - 00042168 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2016-09-24 22:31 - 2016-09-24 22:34 - 02694816 _____ (Sysinternals - www.sysinternals.com) C:\Users\deco\Desktop\procexp.exe
2016-09-24 21:38 - 2016-09-24 23:37 - 00143730 _____ C:\WINDOWS\SysWOW64\rsslogs.20160924213712
2016-09-24 21:00 - 2016-09-24 22:27 - 00061440 _____ ( ) C:\Users\deco\Desktop\VEW.exe
2016-09-24 20:38 - 2016-09-24 20:38 - 00006189 _____ C:\Users\deco\Desktop\Fixlog.txt
2016-09-24 20:36 - 2016-09-27 01:42 - 00000000 ____D C:\Users\deco\Downloads\FRST-OlderVersion
2016-09-24 20:36 - 2016-09-24 20:37 - 00006189 _____ C:\Users\deco\Downloads\Fixlog.txt
2016-09-24 18:12 - 2016-09-24 18:12 - 00246273 _____ C:\WINDOWS\SysWOW64\rsslogs.20160924181103
2016-09-23 23:09 - 2013-07-31 15:43 - 00006148 ____H C:\Users\deco\Desktop\.DS_Store
2016-09-23 23:09 - 2013-07-31 15:43 - 00000000 ____D C:\Users\deco\Desktop\CDT100_out
2016-09-23 23:09 - 2013-07-31 15:43 - 00000000 ____D C:\Users\deco\Desktop\CDT100_in
2016-09-23 23:09 - 2013-07-31 15:40 - 00000000 ____D C:\Users\deco\Desktop\CD100_out
2016-09-23 23:09 - 2013-07-31 15:40 - 00000000 ____D C:\Users\deco\Desktop\CD100_in
2016-09-23 23:08 - 2016-09-23 23:09 - 06325348 _____ C:\Users\deco\Downloads\cdt100.zip
2016-09-23 23:08 - 2016-09-23 23:08 - 06633763 _____ C:\Users\deco\Downloads\cd100.zip
2016-09-23 22:26 - 2016-09-24 20:45 - 00132056 _____ C:\Users\deco\Desktop\FRST.txt
2016-09-23 22:26 - 2016-09-24 20:44 - 00043755 _____ C:\Users\deco\Desktop\Addition.txt
2016-09-23 22:15 - 2016-09-24 20:42 - 00043752 _____ C:\Users\deco\Downloads\Addition.txt
2016-09-23 22:12 - 2016-09-27 01:42 - 00022166 _____ C:\Users\deco\Downloads\FRST.txt
2016-09-23 22:11 - 2016-09-27 01:42 - 02403328 _____ (Farbar) C:\Users\deco\Downloads\FRST64.exe
2016-09-23 16:34 - 2016-09-24 18:12 - 00404580 _____ C:\WINDOWS\SysWOW64\rsslogs.20160923163316
2016-09-23 16:20 - 2016-09-23 16:22 - 116538601 _____ C:\Users\deco\Downloads\videoplayback.mp4
2016-09-22 18:29 - 2016-09-22 18:29 - 00000000 ____D C:\Users\deco\AppData\Local\{8D6DEA57-39B5-4E39-9653-30FEE2B12D0E}
2016-09-22 16:34 - 2016-09-23 16:34 - 01070933 _____ C:\WINDOWS\SysWOW64\rsslogs.20160922163315
2016-09-22 13:12 - 2016-09-22 13:12 - 00006673 _____ C:\Users\deco\Desktop\PDFProcessor.pdf
2016-09-21 16:33 - 2016-09-22 16:34 - 00892102 _____ C:\WINDOWS\SysWOW64\rsslogs.20160921163315
2016-09-20 22:18 - 2016-09-20 22:18 - 00001627 _____ C:\Users\deco\Desktop\iTunes.lnk
2016-09-20 21:35 - 2016-09-20 21:35 - 00001826 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-09-20 21:35 - 2016-09-20 21:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-09-20 21:28 - 2016-09-20 21:29 - 174784840 _____ (Apple Inc.) C:\Users\deco\Downloads\iTunes6464Setup.exe
2016-09-20 16:33 - 2016-09-21 16:33 - 01019041 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920163315
2016-09-20 14:34 - 2016-09-20 16:33 - 00143710 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920143354
2016-09-20 14:32 - 2016-09-20 14:32 - 00001213 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920143117
2016-09-20 14:23 - 2016-09-20 14:23 - 00000693 _____ C:\Users\Public\Desktop\AudioBox.lnk
2016-09-20 14:18 - 2016-09-20 14:18 - 00014491 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920141737
2016-09-20 14:10 - 2016-09-20 14:10 - 00008463 _____ C:\WINDOWS\SysWOW64\rsslogs.20160920140907
2016-09-20 13:19 - 2016-09-26 19:09 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-19 22:58 - 2016-09-19 22:58 - 00277714 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919225756
2016-09-19 22:35 - 2016-09-19 22:35 - 14078380 _____ C:\Users\deco\Downloads\Impactor_0.9.33.zip
2016-09-19 21:00 - 2016-09-19 22:58 - 00142469 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919205901
2016-09-19 20:22 - 2016-09-19 20:23 - 342189392 _____ C:\Users\deco\Downloads\lder_06.wav
2016-09-19 20:17 - 2016-09-19 20:17 - 00047119 _____ C:\WINDOWS\SysWOW64\rsslogs.20160919201637
2016-09-18 19:03 - 2016-09-19 20:17 - 00778497 _____ C:\WINDOWS\SysWOW64\rsslogs.20160918190235
2016-09-17 17:52 - 2016-09-18 19:03 - 00470770 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917175209
2016-09-17 15:54 - 2016-09-17 17:52 - 00084543 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917155317
2016-09-17 15:14 - 2016-09-17 15:14 - 00044639 _____ C:\WINDOWS\SysWOW64\rsslogs.20160917151308
2016-09-16 15:08 - 2016-09-16 15:08 - 00063520 _____ C:\Users\deco\Downloads\Eldorado Invoice 440630.pdf
2016-09-16 15:07 - 2016-09-16 15:07 - 00059422 _____ C:\Users\deco\Downloads\Eldorado Invoice 441248.pdf
2016-09-16 15:07 - 2016-09-16 15:07 - 00058700 _____ C:\Users\deco\Downloads\Eldorado Invoice 441049.pdf
2016-09-16 13:10 - 2016-09-17 15:14 - 00927236 _____ C:\WINDOWS\SysWOW64\rsslogs.20160916130936
2016-09-16 11:11 - 2016-09-16 13:10 - 00143664 _____ C:\WINDOWS\SysWOW64\rsslogs.20160916111032
2016-09-16 01:17 - 2016-09-16 01:17 - 00000969 _____ C:\Users\deco\Desktop\Realese Rave On.txt
2016-09-16 00:17 - 2016-09-16 00:17 - 00000000 ____D C:\Users\deco\Desktop\Producao Ana carvalho
2016-09-15 21:26 - 2016-09-15 21:26 - 00537244 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915212555
2016-09-15 19:28 - 2016-09-15 21:26 - 00132846 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915192740
2016-09-15 13:48 - 2016-09-07 02:39 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-15 13:48 - 2016-09-07 02:39 - 01098640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 01152320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-15 13:48 - 2016-09-07 02:26 - 00588320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-09-15 13:48 - 2016-09-07 02:25 - 02607336 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-15 13:48 - 2016-09-07 02:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2016-09-15 13:48 - 2016-09-07 02:23 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-09-15 13:48 - 2016-09-07 02:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-15 13:48 - 2016-09-07 01:48 - 22379520 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-15 13:48 - 2016-09-07 01:43 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-15 13:48 - 2016-09-07 01:39 - 01567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-15 13:48 - 2016-09-07 01:35 - 24611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-15 13:48 - 2016-09-07 01:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-15 13:48 - 2016-09-07 01:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-15 13:48 - 2016-09-07 01:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-15 13:48 - 2016-09-07 01:30 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-15 13:48 - 2016-09-07 01:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-15 13:48 - 2016-09-07 01:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-15 13:48 - 2016-09-07 01:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-15 13:48 - 2016-09-07 01:27 - 01743872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-15 13:48 - 2016-09-07 01:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-15 13:48 - 2016-09-07 01:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 13392384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-09-15 13:48 - 2016-09-07 01:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-09-15 13:48 - 2016-09-07 01:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Pimstore.dll
2016-09-15 13:48 - 2016-09-07 01:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-09-15 13:48 - 2016-09-07 01:24 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-15 13:48 - 2016-09-07 01:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2016-09-15 13:48 - 2016-09-07 01:23 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-09-15 13:48 - 2016-09-07 01:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-15 13:48 - 2016-09-07 01:22 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-15 13:48 - 2016-09-07 01:21 - 03046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-09-15 13:48 - 2016-09-07 01:21 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-15 13:48 - 2016-09-07 01:20 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-09-15 13:48 - 2016-09-07 01:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-15 13:48 - 2016-09-07 01:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 03577344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 02876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-09-15 13:48 - 2016-09-07 01:18 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-15 13:48 - 2016-09-07 01:17 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-15 13:48 - 2016-09-07 01:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 07831552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-09-15 13:48 - 2016-09-07 01:15 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-15 13:48 - 2016-09-07 01:14 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-15 13:48 - 2016-09-07 01:13 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-15 13:48 - 2016-09-07 01:13 - 02874880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2016-09-15 13:48 - 2016-09-07 01:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-09-15 13:47 - 2016-09-07 02:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00620176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2016-09-15 13:47 - 2016-09-07 02:39 - 00277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-09-15 13:47 - 2016-09-07 02:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 01297760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-15 13:47 - 2016-09-07 02:33 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-15 13:47 - 2016-09-07 02:27 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-09-15 13:47 - 2016-09-07 02:27 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-09-15 13:47 - 2016-09-07 02:26 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00847648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00586200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-09-15 13:47 - 2016-09-07 02:26 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-09-15 13:47 - 2016-09-07 02:25 - 01270064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-09-15 13:47 - 2016-09-07 02:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 01603224 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 01040792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-15 13:47 - 2016-09-07 02:23 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 01128096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-15 13:47 - 2016-09-07 02:22 - 01085728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2016-09-15 13:47 - 2016-09-07 02:22 - 00604920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-09-15 13:47 - 2016-09-07 02:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-09-15 13:47 - 2016-09-07 02:15 - 00911640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-09-15 13:47 - 2016-09-07 02:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-09-15 13:47 - 2016-09-07 02:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-15 13:47 - 2016-09-07 02:08 - 00116216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-15 13:47 - 2016-09-07 01:52 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-15 13:47 - 2016-09-07 01:52 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-15 13:47 - 2016-09-07 01:49 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-09-15 13:47 - 2016-09-07 01:48 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-15 13:47 - 2016-09-07 01:47 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-15 13:47 - 2016-09-07 01:46 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-09-15 13:47 - 2016-09-07 01:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-09-15 13:47 - 2016-09-07 01:44 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2016-09-15 13:47 - 2016-09-07 01:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2016-09-15 13:47 - 2016-09-07 01:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-09-15 13:47 - 2016-09-07 01:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-15 13:47 - 2016-09-07 01:39 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2016-09-15 13:47 - 2016-09-07 01:39 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2016-09-15 13:47 - 2016-09-07 01:38 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2016-09-15 13:47 - 2016-09-07 01:38 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-15 13:47 - 2016-09-07 01:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2016-09-15 13:47 - 2016-09-07 01:38 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2016-09-15 13:47 - 2016-09-07 01:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-09-15 13:47 - 2016-09-07 01:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 01568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2016-09-15 13:47 - 2016-09-07 01:36 - 01051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagCpl.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-09-15 13:47 - 2016-09-07 01:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00577536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-09-15 13:47 - 2016-09-07 01:35 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.ps.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-09-15 13:47 - 2016-09-07 01:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-09-15 13:47 - 2016-09-07 01:34 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-15 13:47 - 2016-09-07 01:34 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2016-09-15 13:47 - 2016-09-07 01:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-09-15 13:47 - 2016-09-07 01:32 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-15 13:47 - 2016-09-07 01:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-09-15 13:47 - 2016-09-07 01:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-15 13:47 - 2016-09-07 01:32 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-09-15 13:47 - 2016-09-07 01:31 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-15 13:47 - 2016-09-07 01:31 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-09-15 13:47 - 2016-09-07 01:31 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 02476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00698368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-15 13:47 - 2016-09-07 01:30 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-15 13:47 - 2016-09-07 01:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2016-09-15 13:47 - 2016-09-07 01:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-15 13:47 - 2016-09-07 01:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc_ssp.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-09-15 13:47 - 2016-09-07 01:28 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-15 13:47 - 2016-09-07 01:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysdm.cpl
2016-09-15 13:47 - 2016-09-07 01:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2016-09-15 13:47 - 2016-09-07 01:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-09-15 13:47 - 2016-09-07 01:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2016-09-15 13:47 - 2016-09-07 01:26 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2016-09-15 13:47 - 2016-09-07 01:25 - 06312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-15 13:47 - 2016-09-07 01:25 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-15 13:47 - 2016-09-07 01:25 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-15 13:47 - 2016-09-07 01:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-09-15 13:47 - 2016-09-07 01:23 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-09-15 13:47 - 2016-09-07 01:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-15 13:47 - 2016-09-07 01:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-15 13:47 - 2016-09-07 01:21 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-15 13:47 - 2016-09-07 01:20 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-09-15 13:47 - 2016-09-07 01:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-09-15 13:47 - 2016-09-07 01:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-09-15 13:47 - 2016-09-07 01:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-15 13:47 - 2016-09-07 01:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2016-09-15 13:47 - 2016-09-07 01:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2016-09-15 13:47 - 2016-09-07 01:15 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-09-15 13:47 - 2016-09-07 01:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-09-15 13:47 - 2016-09-07 01:14 - 01487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-15 13:47 - 2016-09-07 01:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-09-15 13:47 - 2016-09-07 01:11 - 03053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-09-15 13:47 - 2016-09-07 01:10 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-09-15 13:47 - 2016-09-07 01:10 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2016-09-15 13:47 - 2016-09-04 21:37 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-09-15 13:46 - 2016-09-07 02:39 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-15 13:46 - 2016-09-07 02:39 - 01142560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-15 13:46 - 2016-09-07 02:39 - 01030408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-15 13:46 - 2016-09-07 02:39 - 00875480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-15 13:46 - 2016-09-07 02:39 - 00175120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-15 13:46 - 2016-09-07 02:37 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-15 13:46 - 2016-09-07 02:36 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-09-15 13:46 - 2016-09-07 02:34 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-09-15 13:46 - 2016-09-07 02:26 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-09-15 13:46 - 2016-09-07 02:25 - 01447776 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2016-09-15 13:46 - 2016-09-07 02:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 03693064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-09-15 13:46 - 2016-09-07 02:24 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-15 13:46 - 2016-09-07 02:23 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-15 13:46 - 2016-09-07 02:23 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-15 13:46 - 2016-09-07 02:23 - 06536248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-15 13:46 - 2016-09-07 02:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-09-15 13:46 - 2016-09-07 02:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-09-15 13:46 - 2016-09-07 02:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-09-15 13:46 - 2016-09-07 02:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-09-15 13:46 - 2016-09-07 02:11 - 00057912 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-09-15 13:46 - 2016-09-07 02:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-09-15 13:46 - 2016-09-07 01:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-15 13:46 - 2016-09-07 01:45 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2016-09-15 13:46 - 2016-09-07 01:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-15 13:46 - 2016-09-07 01:44 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-09-15 13:46 - 2016-09-07 01:44 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-09-15 13:46 - 2016-09-07 01:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-15 13:46 - 2016-09-07 01:43 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2016-09-15 13:46 - 2016-09-07 01:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-09-15 13:46 - 2016-09-07 01:42 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-09-15 13:46 - 2016-09-07 01:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-09-15 13:46 - 2016-09-07 01:41 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-15 13:46 - 2016-09-07 01:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-09-15 13:46 - 2016-09-07 01:40 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2016-09-15 13:46 - 2016-09-07 01:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2016-09-15 13:46 - 2016-09-07 01:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Cortana.ProxyStub.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-15 13:46 - 2016-09-07 01:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2016-09-15 13:46 - 2016-09-07 01:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-09-15 13:46 - 2016-09-07 01:36 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-09-15 13:46 - 2016-09-07 01:36 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-15 13:46 - 2016-09-07 01:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwcfg.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-15 13:46 - 2016-09-07 01:35 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2016-09-15 13:46 - 2016-09-07 01:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CheckNetIsolation.exe
2016-09-15 13:46 - 2016-09-07 01:34 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-15 13:46 - 2016-09-07 01:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2016-09-15 13:46 - 2016-09-07 01:33 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2016-09-15 13:46 - 2016-09-07 01:33 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 04213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2016-09-15 13:46 - 2016-09-07 01:32 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2016-09-15 13:46 - 2016-09-07 01:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00852992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-09-15 13:46 - 2016-09-07 01:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-15 13:46 - 2016-09-07 01:30 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-09-15 13:46 - 2016-09-07 01:30 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2016-09-15 13:46 - 2016-09-07 01:29 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-09-15 13:46 - 2016-09-07 01:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 01872896 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 01424384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-09-15 13:46 - 2016-09-07 01:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2016-09-15 13:46 - 2016-09-07 01:26 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-09-15 13:46 - 2016-09-07 01:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-09-15 13:46 - 2016-09-07 01:24 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-09-15 13:46 - 2016-09-07 01:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-09-15 13:46 - 2016-09-07 01:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-09-15 13:46 - 2016-09-07 01:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2016-09-15 13:46 - 2016-09-07 01:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-09-15 13:46 - 2016-09-07 01:22 - 01297408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-09-15 13:46 - 2016-09-07 01:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-09-15 13:46 - 2016-09-07 01:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2016-09-15 13:46 - 2016-09-07 01:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-09-15 13:46 - 2016-09-07 01:20 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-09-15 13:46 - 2016-09-07 01:19 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-09-15 13:46 - 2016-09-07 01:18 - 04826624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-09-15 13:46 - 2016-09-07 01:17 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2016-09-15 13:46 - 2016-09-07 01:16 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 03078656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 02573824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-15 13:46 - 2016-09-07 01:14 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-15 13:46 - 2016-09-07 01:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-09-15 13:46 - 2016-09-07 01:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-15 13:46 - 2016-09-07 01:11 - 03294208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-15 13:46 - 2016-09-07 01:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-09-15 13:46 - 2016-09-07 01:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2016-09-15 13:46 - 2016-09-07 01:09 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-09-15 13:46 - 2016-09-07 01:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 01238584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-09-15 13:45 - 2016-09-07 02:39 - 00799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00705576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00414232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00337328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-15 13:45 - 2016-09-07 02:39 - 00328520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2016-09-15 13:45 - 2016-09-07 02:36 - 00528736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-09-15 13:45 - 2016-09-07 02:35 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-09-15 13:45 - 2016-09-07 02:35 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-09-15 13:45 - 2016-09-07 02:35 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-09-15 13:45 - 2016-09-07 02:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 01554152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 00693592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-15 13:45 - 2016-09-07 02:26 - 00439136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-09-15 13:45 - 2016-09-07 02:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-09-15 13:45 - 2016-09-07 02:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-15 13:45 - 2016-09-07 02:22 - 00359256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-15 13:45 - 2016-09-07 02:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-09-15 13:45 - 2016-09-07 02:16 - 02773088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 02548936 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 02144512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-09-15 13:45 - 2016-09-07 02:16 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-15 13:45 - 2016-09-07 02:15 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-15 13:45 - 2016-09-07 02:15 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-09-15 13:45 - 2016-09-07 02:12 - 00871776 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-09-15 13:45 - 2016-09-07 02:11 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-09-15 13:45 - 2016-09-07 01:53 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2016-09-15 13:45 - 2016-09-07 01:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-09-15 13:45 - 2016-09-07 01:47 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2016-09-15 13:45 - 2016-09-07 01:46 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PJLMON.DLL
2016-09-15 13:45 - 2016-09-07 01:44 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2016-09-15 13:45 - 2016-09-07 01:44 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-15 13:45 - 2016-09-07 01:43 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-09-15 13:45 - 2016-09-07 01:43 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2016-09-15 13:45 - 2016-09-07 01:42 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-15 13:45 - 2016-09-07 01:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2016-09-15 13:45 - 2016-09-07 01:41 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-09-15 13:45 - 2016-09-07 01:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-15 13:45 - 2016-09-07 01:40 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2016-09-15 13:45 - 2016-09-07 01:40 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2016-09-15 13:45 - 2016-09-07 01:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2016-09-15 13:45 - 2016-09-07 01:39 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-09-15 13:45 - 2016-09-07 01:38 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-09-15 13:45 - 2016-09-07 01:38 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvc.dll
2016-09-15 13:45 - 2016-09-07 01:37 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-09-15 13:45 - 2016-09-07 01:36 - 00752128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2016-09-15 13:45 - 2016-09-07 01:36 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2016-09-15 13:45 - 2016-09-07 01:35 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2016-09-15 13:45 - 2016-09-07 01:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbceip.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2016-09-15 13:45 - 2016-09-07 01:34 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-09-15 13:45 - 2016-09-07 01:34 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 01813504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-15 13:45 - 2016-09-07 01:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3ui.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-15 13:45 - 2016-09-07 01:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-15 13:45 - 2016-09-07 01:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01558528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-09-15 13:45 - 2016-09-07 01:30 - 01318400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-09-15 13:45 - 2016-09-07 01:30 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-09-15 13:45 - 2016-09-07 01:29 - 01487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 01465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-09-15 13:45 - 2016-09-07 01:29 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2016-09-15 13:45 - 2016-09-07 01:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01783808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 01671168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-15 13:45 - 2016-09-07 01:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-09-15 13:45 - 2016-09-07 01:27 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-09-15 13:45 - 2016-09-07 01:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 01570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-09-15 13:45 - 2016-09-07 01:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-09-15 13:45 - 2016-09-07 01:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-15 13:45 - 2016-09-07 01:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-15 13:45 - 2016-09-07 01:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-09-15 13:45 - 2016-09-07 01:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-09-15 13:45 - 2016-09-07 01:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:23 - 04646912 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-15 13:45 - 2016-09-07 01:23 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2016-09-15 13:45 - 2016-09-07 01:22 - 03093504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-15 13:45 - 2016-09-07 01:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-09-15 13:45 - 2016-09-07 01:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 01385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-09-15 13:45 - 2016-09-07 01:20 - 00513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-09-15 13:45 - 2016-09-07 01:19 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-15 13:45 - 2016-09-07 01:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-09-15 13:45 - 2016-09-07 01:19 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 01997312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-09-15 13:45 - 2016-09-07 01:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-15 13:45 - 2016-09-07 01:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-09-15 13:45 - 2016-09-07 01:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 01755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-09-15 13:45 - 2016-09-07 01:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-09-15 13:45 - 2016-09-07 01:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-09-15 13:45 - 2016-09-07 01:12 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-09-15 13:45 - 2016-09-07 01:10 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-15 13:45 - 2016-09-07 01:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2016-09-15 13:45 - 2016-09-07 01:09 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-15 13:45 - 2016-09-07 00:57 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 07468896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-15 13:44 - 2016-09-07 02:39 - 01997832 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 01862000 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-09-15 13:44 - 2016-09-07 02:39 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-15 13:44 - 2016-09-07 02:34 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-09-15 13:44 - 2016-09-07 02:26 - 01552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-09-15 13:44 - 2016-09-07 02:26 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 01540216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-15 13:44 - 2016-09-07 02:23 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-15 13:44 - 2016-09-07 02:23 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-09-15 13:44 - 2016-09-07 02:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00742192 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-09-15 13:44 - 2016-09-07 02:22 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-15 13:44 - 2016-09-07 02:22 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-09-15 13:44 - 2016-09-07 02:22 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-09-15 13:44 - 2016-09-07 02:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-09-15 13:44 - 2016-09-07 02:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-15 13:44 - 2016-09-07 02:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-09-15 13:44 - 2016-09-07 02:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-09-15 13:44 - 2016-09-07 02:15 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-15 13:44 - 2016-09-07 02:14 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-15 13:44 - 2016-09-07 02:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-15 13:44 - 2016-09-07 02:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-09-15 13:44 - 2016-09-07 02:12 - 28851224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 02187408 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 00388888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-09-15 13:44 - 2016-09-07 02:11 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-09-15 13:44 - 2016-09-07 02:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2016-09-15 13:44 - 2016-09-07 02:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-09-15 13:44 - 2016-09-07 01:46 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-15 13:44 - 2016-09-07 01:44 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2016-09-15 13:44 - 2016-09-07 01:40 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-09-15 13:44 - 2016-09-07 01:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2016-09-15 13:44 - 2016-09-07 01:39 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-09-15 13:44 - 2016-09-07 01:39 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2016-09-15 13:44 - 2016-09-07 01:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2016-09-15 13:44 - 2016-09-07 01:36 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-09-15 13:44 - 2016-09-07 01:35 - 00714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-15 13:44 - 2016-09-07 01:35 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-09-15 13:44 - 2016-09-07 01:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2016-09-15 13:44 - 2016-09-07 01:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00689664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-15 13:44 - 2016-09-07 01:32 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-15 13:44 - 2016-09-07 01:32 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-15 13:44 - 2016-09-07 01:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-15 13:44 - 2016-09-07 01:30 - 14251520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 02012672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-09-15 13:44 - 2016-09-07 01:30 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-09-15 13:44 - 2016-09-07 01:30 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-15 13:44 - 2016-09-07 01:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 02731008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 01466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pimstore.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-09-15 13:44 - 2016-09-07 01:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 03415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 00961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-09-15 13:44 - 2016-09-07 01:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 02445312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 01965568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2016-09-15 13:44 - 2016-09-07 01:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-09-15 13:44 - 2016-09-07 01:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-09-15 13:44 - 2016-09-07 01:24 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-15 13:44 - 2016-09-07 01:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-09-15 13:44 - 2016-09-07 01:23 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-09-15 13:44 - 2016-09-07 01:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-09-15 13:44 - 2016-09-07 01:22 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2016-09-15 13:44 - 2016-09-07 01:21 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-09-15 13:44 - 2016-09-07 01:21 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 06976000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 06675968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-15 13:44 - 2016-09-07 01:20 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-15 13:44 - 2016-09-07 01:20 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-09-15 13:44 - 2016-09-07 01:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 02610176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 02563584 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-09-15 13:44 - 2016-09-07 01:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2016-09-15 13:44 - 2016-09-07 01:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-09-15 13:44 - 2016-09-07 01:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-15 13:44 - 2016-09-07 01:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-09-15 13:44 - 2016-09-07 01:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-09-15 13:44 - 2016-09-07 01:14 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-15 13:44 - 2016-09-07 01:13 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-09-15 13:44 - 2016-09-07 01:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-09-15 13:44 - 2016-09-07 01:12 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2016-09-15 13:44 - 2016-09-07 01:11 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2016-09-15 13:44 - 2016-09-07 01:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-09-15 13:43 - 2016-09-07 01:39 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-15 13:43 - 2016-09-07 01:38 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-09-15 13:43 - 2016-09-07 01:36 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-09-15 13:43 - 2016-09-07 01:36 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-09-15 13:43 - 2016-09-07 01:35 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-15 13:43 - 2016-09-07 01:31 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppinst.dll
2016-09-15 13:43 - 2016-09-07 01:31 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-09-15 13:43 - 2016-09-07 01:30 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2016-09-15 13:43 - 2016-09-07 01:29 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-09-15 13:43 - 2016-09-07 01:28 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-09-15 13:43 - 2016-09-07 01:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-09-15 13:43 - 2016-09-07 01:19 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2016-09-15 13:18 - 2016-09-15 13:18 - 00101444 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915131801
2016-09-15 12:04 - 2016-09-15 12:04 - 00088924 _____ C:\Users\deco\Downloads\RMA 168141.pdf
2016-09-15 11:27 - 2016-09-15 11:27 - 00003326 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-09-15 11:20 - 2016-09-15 13:18 - 00142498 _____ C:\WINDOWS\SysWOW64\rsslogs.20160915111954
2016-09-14 12:42 - 2016-09-14 12:42 - 00097269 _____ C:\Users\deco\Downloads\CC Auth Form.pdf
2016-09-05 23:01 - 2016-09-05 23:01 - 00000000 ____D C:\Users\deco\AppData\LocalLow\uTorrent
2016-08-31 21:55 - 2016-09-15 11:09 - 00000000 ____D C:\Users\deco\Desktop\piece of myself
2016-08-31 21:50 - 2016-08-31 21:50 - 00000000 ____D C:\Users\deco\Desktop\Stereo
2016-08-31 21:50 - 2016-08-31 21:50 - 00000000 ____D C:\Users\deco\Desktop\Piece Of My Self
2016-08-31 15:38 - 2016-09-15 11:09 - 00000000 ____D C:\Users\deco\Desktop\backburn
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-09-27 01:42 - 2016-04-28 10:31 - 00000000 ____D C:\FRST
2016-09-26 23:22 - 2015-11-17 12:37 - 00001072 _____ C:\Users\deco\Desktop\card.txt
2016-09-26 20:53 - 2015-12-12 01:35 - 00000000 ____D C:\Users\DefaultAppPool
2016-09-26 20:00 - 2016-06-13 15:15 - 00003808 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2016-09-25 23:39 - 2015-12-12 01:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-09-25 17:08 - 2015-12-12 10:24 - 00000000 ___DC C:\WINDOWS\Panther
2016-09-25 17:05 - 2016-07-16 12:17 - 00000000 ___HD C:\$WINDOWS.~BT
2016-09-25 15:00 - 2015-11-19 22:38 - 00000000 ____D C:\Program Files (x86)\Excel Image Assistant
2016-09-25 14:00 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-24 22:31 - 2011-08-03 14:49 - 00000000 ____D C:\Users\deco\AppData\Local\VirtualStore
2016-09-24 22:29 - 2015-10-30 04:21 - 00000000 ____D C:\WINDOWS\INF
2016-09-24 21:36 - 2016-08-10 12:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-24 21:35 - 2015-10-30 03:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-09-24 21:32 - 2015-10-30 04:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-24 20:59 - 2014-11-07 21:14 - 00000000 ____D C:\Users\deco\Desktop\Adobe CS5
2016-09-24 20:14 - 2014-07-27 11:35 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-09-24 20:14 - 2011-09-02 00:43 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-09-24 13:41 - 2015-10-30 04:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-23 23:16 - 2011-08-03 14:48 - 00000000 ____D C:\Users\deco\AppData\Roaming\Adobe
2016-09-23 14:59 - 2015-12-12 01:35 - 01008216 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-23 03:16 - 2016-06-17 21:05 - 00000000 ____D C:\Users\deco\Desktop\my mixes
2016-09-22 22:43 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-09-22 18:09 - 2016-04-27 02:29 - 00000000 ___HD C:\Users\deco\Desktop\Freemake_do_not_remove_this_folder
2016-09-20 22:17 - 2014-08-13 18:25 - 00000000 ____D C:\ProgramData\eBay
2016-09-20 22:15 - 2011-10-25 15:18 - 00000000 ____D C:\Program Files (x86)\Google
2016-09-20 21:37 - 2016-04-17 23:51 - 00000000 ____D C:\Program Files (x86)\VstPlugIns
2016-09-20 21:35 - 2016-04-17 23:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia
2016-09-20 21:35 - 2016-04-17 23:51 - 00000000 ____D C:\Program Files (x86)\IK Multimedia
2016-09-20 21:35 - 2016-03-29 13:43 - 00000000 ____D C:\Program Files\iTunes
2016-09-20 21:35 - 2014-04-08 11:33 - 00000000 ____D C:\Program Files (x86)\DsNET Corp
2016-09-20 21:34 - 2011-09-02 00:44 - 00000000 ____D C:\Program Files\iPod
2016-09-20 21:33 - 2016-05-09 13:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-09-20 21:33 - 2011-09-02 00:43 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-09-20 21:23 - 2016-03-29 13:27 - 00001421 _____ C:\Users\deco\Desktop\CopyTrans Control Center.lnk
2016-09-20 21:23 - 2016-03-29 13:27 - 00000000 ____D C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
2016-09-20 17:45 - 2016-08-01 16:07 - 00255430 _____ C:\Users\deco\Downloads\EAN5000.txt
2016-09-20 17:45 - 2015-10-23 09:04 - 00000000 ____D C:\Users\deco\Desktop\amazon
2016-09-20 16:21 - 2014-02-06 19:46 - 00001670 _____ C:\WINDOWS\wininit.ini
2016-09-20 14:26 - 2016-06-13 18:39 - 00000000 ____D C:\Users\deco\AppData\Roaming\PreSonus
2016-09-20 14:23 - 2016-06-13 18:27 - 00000000 ____D C:\Program Files\PreSonus
2016-09-20 14:23 - 2016-06-13 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PreSonus
2016-09-19 23:52 - 2011-08-07 14:17 - 00000000 ____D C:\Users\deco\AppData\Roaming\vlc
2016-09-19 21:45 - 2016-06-17 00:45 - 06502080 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-09-19 13:15 - 2016-01-24 15:12 - 00000000 ___HD C:\Users\deco\AppData\Local\fxTJ3wOFPpr5
2016-09-19 12:49 - 2016-04-17 20:15 - 00000000 ____D C:\Users\deco\AvidLogFiles
2016-09-19 09:54 - 2014-11-25 13:45 - 00000000 ____D C:\Users\deco\Documents\Outlook Files
2016-09-17 18:01 - 2011-11-24 22:20 - 00000000 ____D C:\Users\deco\AppData\Local\ElevatedDiagnostics
2016-09-16 21:54 - 2014-08-13 14:38 - 00002276 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-09-16 18:54 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-16 15:23 - 2015-10-27 15:25 - 00493121 _____ C:\Users\deco\Desktop\Eldorado Invoice 346467.pdf
2016-09-16 15:20 - 2015-10-27 15:23 - 00440276 _____ C:\Users\deco\Desktop\Eldorado Invoice 351830.pdf
2016-09-16 15:18 - 2015-10-27 15:21 - 00439278 _____ C:\Users\deco\Desktop\Eldorado Invoice 362783.pdf
2016-09-16 11:09 - 2012-05-11 03:00 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-09-16 11:09 - 2012-05-11 03:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-09-15 22:02 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\rescache
2016-09-15 21:40 - 2014-09-24 15:33 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-09-15 21:34 - 2015-10-30 06:07 - 00000000 ____D C:\WINDOWS\ShellNew
2016-09-15 21:19 - 2012-05-11 03:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-09-15 21:11 - 2009-07-13 23:34 - 00000478 _____ C:\WINDOWS\win.ini
2016-09-15 20:10 - 2015-09-10 02:42 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-15 14:35 - 2015-10-30 04:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-09-15 14:35 - 2015-10-30 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-09-15 14:35 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-09-15 14:33 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-09-15 14:33 - 2015-10-30 03:31 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-15 14:33 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-09-15 14:32 - 2015-10-30 04:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-09-15 14:21 - 2013-08-19 01:15 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-15 13:59 - 2011-10-26 19:55 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-15 11:27 - 2015-11-04 12:37 - 00002405 _____ C:\Users\deco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-09-15 11:27 - 2015-11-04 12:37 - 00000000 ___RD C:\Users\deco\OneDrive
2016-09-15 11:21 - 2015-12-12 01:35 - 00000000 ____D C:\Users\deco
2016-09-15 11:12 - 2015-12-12 01:35 - 00000000 ____D C:\Users\Guest
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 __RSD C:\WINDOWS\Media
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-09-15 11:12 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\IME
2016-09-15 11:11 - 2016-08-22 17:22 - 00000000 ____D C:\Users\deco\Downloads\Stranger.Things.Season.1.Complete.720p.WebRip.EN-SUB.x264-[MULVAcoded]
2016-09-15 11:11 - 2016-04-27 22:34 - 00000000 ____D C:\WINDOWS\Minidump
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\System
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\schemas
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\Globalization
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-09-15 11:11 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-09-15 11:11 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-09-15 11:11 - 2015-10-30 03:28 - 00000000 ____D C:\WINDOWS\servicing
2016-09-15 11:11 - 2012-08-19 01:32 - 00000000 ____D C:\Users\deco\AppData\Roaming\Skype
2016-09-15 11:11 - 2012-07-20 18:38 - 00000000 ____D C:\Users\deco\AppData\Roaming\uTorrent
2016-09-15 11:10 - 2014-03-25 12:49 - 00000000 ____D C:\Users\deco\AppData\Local\Packages
2016-09-15 11:10 - 2014-02-23 15:34 - 00000000 ____D C:\Program Files\AdwareRemovalToolv3.7
2016-09-15 11:09 - 2016-08-26 16:08 - 00000000 ____D C:\Users\deco\Desktop\that [bleep]
2016-09-15 11:01 - 2015-10-30 04:24 - 00000000 ____D C:\WINDOWS\registration
2016-09-15 10:48 - 2011-08-11 01:28 - 00000000 ____D C:\ProgramData\Real
2016-09-15 10:46 - 2011-08-07 14:00 - 00000000 ____D C:\Program Files\Microsoft Office
2016-09-15 10:45 - 2014-09-24 15:25 - 00000000 __RHD C:\MSOCache
2016-09-07 03:04 - 2015-12-12 01:29 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-09-06 22:00 - 2015-10-30 04:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-06 22:00 - 2015-10-30 04:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Files in the root of some directories =======
 
2016-06-21 00:01 - 2016-04-23 21:40 - 0000030 _____ () C:\Users\deco\AppData\Roaming\.pgbiasfx
2014-11-20 13:54 - 2014-11-20 13:54 - 0000132 _____ () C:\Users\deco\AppData\Roaming\Adobe GIF Format CS5 Prefs
2015-03-22 14:54 - 2015-05-22 13:04 - 0000033 _____ () C:\Users\deco\AppData\Roaming\AdobeWLCMCache.dat
2014-08-28 13:04 - 2014-08-28 13:06 - 0000043 _____ () C:\Users\deco\AppData\Roaming\mbam.context.scan
2016-04-17 23:55 - 2016-04-23 19:09 - 0000016 _____ () C:\Users\deco\AppData\Roaming\msregsvv.dll
2014-08-02 18:23 - 2014-08-28 18:07 - 0000086 _____ () C:\Users\deco\AppData\Roaming\WB.CFG
2007-10-10 19:34 - 2007-10-10 19:37 - 0015438 _____ () C:\ProgramData\ArcadeDeluxe4.log
2016-04-17 23:55 - 2016-04-23 19:09 - 0000016 _____ () C:\ProgramData\autobk.inc
2011-09-03 15:21 - 2011-09-03 18:33 - 0000646 _____ () C:\ProgramData\hpzinstall.log
2012-01-24 22:06 - 2016-04-08 13:00 - 0001095 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2011-09-03 18:03 - 2011-09-03 18:04 - 0000090 _____ () C:\ProgramData\PS.log
 
Some files in TEMP:
====================
C:\Users\deco\AppData\Local\Temp\libeay32.dll
C:\Users\deco\AppData\Local\Temp\lowproc.exe
C:\Users\deco\AppData\Local\Temp\msvcr120.dll
C:\Users\deco\AppData\Local\Temp\sqlite3.dll
C:\Users\deco\AppData\Local\Temp\stubhelper.dll
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-09-22 16:39
 
==================== End of FRST.txt ============================
 
Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
armsvc.exe 1,236 K 5,304 K 2384 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
AutoKMS.exe 23,804 K 10,764 K 1096 
chrome.exe 1,660 K 6,164 K 4040 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 56,284 K 65,444 K 5668 Google Chrome Google Inc. (Verified) Google Inc
csrss.exe 1,768 K 8,220 K 620 
dasHost.exe 9,600 K 18,920 K 2836 
FreemakeUtilsService.exe 18,200 K 23,728 K 2452 FreemakeUtilsService Freemake (No signature was present in the subject) Freemake
GoogleUpdate.exe 2,056 K 496 K 3820 
HotkeyUtility.exe 2,768 K 12,492 K 5284 Hotkey Utility (Verified) Acer Incorporated
IAANTmon.exe 1,752 K 7,676 K 3144 RAID Monitor Intel Corporation (Verified) Intel Corporation
IntuitUpdateService.exe 24,208 K 2,096 K 1372 Intuit Update Service Intuit Inc. (Verified) Intuit
ISHelper.exe 8,012 K 20,300 K 7672 iSkySoft Studio iSkySoft (No signature was present in the subject) iSkySoft
mqsvc.exe 3,692 K 10,932 K 2532 Message Queuing Service Microsoft Corporation (Verified) Microsoft Windows
NIHardwareService.exe 6,256 K 8,508 K 2564 NIHardwareService Native Instruments GmbH (No signature was present in the subject) Native Instruments GmbH
NisSrv.exe 6,712 K 156 K 4356 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Corporation
notepad.exe 2,688 K 12,536 K 6384 Notepad Microsoft Corporation (Verified) Microsoft Windows
OneDrive.exe 6,164 K 23,624 K 2872 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
procexp.exe 2,800 K 9,556 K 7860 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
RAVCpl64.exe 4,224 K 12,520 K 6668 HD Audio Control Panel Realtek Semiconductor (Verified) Realtek Semiconductor Corp
RealPlayerUpdateSvc.exe 4,204 K 8,712 K 2692 (Verified) RealNetworks
rndlresolversvc.exe 1,208 K 5,016 K 2644 (Verified) RealNetworks
RuntimeBroker.exe 5,772 K 26,572 K 9972 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
SearchIndexer.exe 39,748 K 46,280 K 1892 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
SearchUI.exe Suspended 43,260 K 87,708 K 6328 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
services.exe 3,136 K 7,128 K 1156 
ShellExperienceHost.exe 20,132 K 55,684 K 7608 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
SkypeHost.exe Suspended 4,064 K 9,076 K 5212 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
smss.exe 400 K 1,116 K 292 
SMSvcHost.exe 23,012 K 18,700 K 3472 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
SMSvcHost.exe 20,928 K 12,844 K 3480 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
Speccy64.exe 13,096 K 25,100 K 9028 
spoolsv.exe 8,024 K 13,468 K 2068 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 2,472 K 7,876 K 2724 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,032 K 19,576 K 2740 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,432 K 7,712 K 8224 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,276 K 12,792 K 388 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,336 K 8,320 K 4644 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,940 K 8,304 K 2580 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,728 K 7,684 K 2392 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 8,736 K 23,032 K 2424 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,812 K 27,452 K 1696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,232 K 23,260 K 1864 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,996 K 18,688 K 1524 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
taskhostw.exe 6,136 K 15,044 K 8764 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
Updater.exe 4,936 K 10,232 K 2756 Updater Popcorn Time (No signature was present in the subject) Popcorn Time
UpdaterService.exe 1,304 K 5,104 K 2764 Updater Service Acer Group (Verified) Acer Incorporated
wininit.exe 1,136 K 4,824 K 1028 
winlogon.exe 1,740 K 6,908 K 9632 
WUDFHost.exe 6,152 K 14,336 K 2000 
rpdsvc.exe < 0.01 15,600 K 8,136 K 2144 RealPlayer Cloud Service RealNetworks, Inc. (Verified) RealNetworks
svchost.exe < 0.01 9,100 K 21,332 K 1244 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe < 0.01 1,236 K 292 K 3644 
AppleMobileDeviceService.exe < 0.01 3,308 K 10,680 K 2404 MobileDeviceService Apple Inc. (Verified) Apple Inc.
lsass.exe 0.01 5,424 K 13,680 K 1172 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
sihost.exe 0.01 4,212 K 18,180 K 784 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 0.01 47,420 K 58,572 K 1608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.01 6,132 K 11,532 K 1300 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
csrss.exe 0.02 1,552 K 5,044 K 76 
svchost.exe 0.02 11,992 K 30,480 K 1536 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
LDSvc.exe 0.03 1,864 K 8,172 K 2572 PACE License Support Service PACE Anti-Piracy, Inc. (No signature was present in the subject) PACE Anti-Piracy, Inc.
chrome.exe 0.04 60,080 K 122,788 K 7800 Google Chrome Google Inc. (Verified) Google Inc
svchost.exe 0.04 17,800 K 31,460 K 1516 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
mbamservice.exe 0.12 2,104 K 8,924 K 2500 Malwarebytes Anti-Malware Malwarebytes (Verified) Malwarebytes Corporation
svchost.exe 0.14 33,448 K 64,968 K 1400 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.24 93,708 K 104,136 K 1144 Google Chrome Google Inc. (Verified) Google Inc
explorer.exe 0.25 62,296 K 109,272 K 8508 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
MsMpEng.exe 0.30 169,660 K 161,424 K 2820 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Corporation
System 0.48 584 K 34,524 K 4 
csrss.exe 0.65 2,088 K 7,248 K 5168 
dwm.exe 1.82 44,300 K 32,636 K 8220 
Interrupts 3.49 0 K 0 K n/a Hardware Interrupts and DPCs 
procexp64.exe 5.59 36,152 K 62,120 K 6096 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
System Idle Process 27.16 0 K 4 K 0 
WmiPrvSE.exe 59.58 11,560 K 20,080 K 4900 

  • 0

#11
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP

If the fan is running it's probably OK.  Usually what I do if the temps are still high is replace the thermal paste with Arctic Silver 5 but let's wait on that as your Process Explorer log is showing several problems which can lead to overheating:

 

Interrupts 3.49 0 K 0 K n/a Hardware Interrupts and DPCs 
procexp64.exe 5.59 36,152 K 62,120 K 6096 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
System Idle Process 27.16 0 K 4 K 0 
WmiPrvSE.exe 59.58 11,560 K 20,080 K 4900 

 

 

 
Usually we expect to see System Idle with the most CPU time - around 90%.  Instead we see WmiPrvSE.exe eating up the CPU.  Interrupts is also too high.  Should be under 1.5.  
 
Search for
 
services.msc
 
hit Enter.  This should bring up the Services menu. Scroll down until you find "Windows Management Instrumentation."  Righht click on it and select Properties.  Stop the service.  
Now run Process Explorer again.  Wait a minute and create a new log and post it.  Things should work a bit faster now.  
 
See if you can get wmidiag to work for you:
 
 
Restart the Windows Management Instrumentation.  Download, save and run it.  It will extract itself to wherever you tell it to.  I use the desktop but the default is Temp.  You will get a file wmidiag.vbs.  Double click on it and let it run.  It will take about 10 minutes to finish (you won't see anything happening unless you look at task manager or process explorer then you will see wscript.exe eating up the CPU time.) then it should create three files: 
A .LOG file containing all the WMI Diagnosis Tool activity as well as a WMI report at the end of the .LOG file.
A .TXT file containing the WMI Diagnosis Tool report (the same report found at the end of the .LOG file).
A .CSV file containing statistics that can be used to measure trends and issues. This CSV file can be imported into the Excel sheet found in the WMI Diagnosis Tool download. The file can also be used to consolidate data in a database.
 
I would like to see the WMIDiag...Report.log file if it works.  Probably best to attach it.  Appears that regardless of where you extract the files toit saves the logs in the temp folder which will be
 
C:\Users\deco\AppData\Local\Temp\
 
This is a hidden folder so you may need to tell Windows to unhide it:
 
 
 

  • 0

#12
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

Here's the new ProcExplorer log:

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
AutoKMS.exe 45.81 33,244 K 8,680 K 7244 AutoKMS (No signature was present in the subject)
System Idle Process 37.80 0 K 4 K 0
procexp64.exe 5.94 42,136 K 66,500 K 10784 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
Interrupts 2.97 0 K 0 K n/a Hardware Interrupts and DPCs
procexp64.exe 2.20 19,888 K 35,008 K 10092 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
dwm.exe 2.16 51,668 K 41,308 K 7660 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
System 0.81 148 K 7,956 K 4
csrss.exe 0.69 2,632 K 4,096 K 2208 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.45 78,896 K 73,360 K 1516 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
downloader2.exe 0.27 7,240 K 7,244 K 5708 RealDownloader (Verified) RealNetworks
MsMpEng.exe 0.23 150,564 K 77,248 K 3052 Antimalware Service Executable Microsoft Corporation (Verified) Microsoft Corporation
svchost.exe 0.19 16,216 K 18,408 K 1444 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
mbamservice.exe 0.12 2,140 K 1,800 K 2708 Malwarebytes Anti-Malware Malwarebytes (Verified) Malwarebytes Corporation
chrome.exe 0.12 133,552 K 119,472 K 8144 Google Chrome Google Inc. (Verified) Google Inc
explorer.exe 0.08 50,608 K 94,984 K 8012 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 0.04 9,140 K 11,832 K 2560 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
LDSvc.exe 0.03 1,888 K 1,664 K 2868 PACE License Support Service PACE Anti-Piracy, Inc. (No signature was present in the subject) PACE Anti-Piracy, Inc.
conhost.exe 0.02 1,372 K 716 K 7684 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 0.02 5,268 K 5,896 K 2200 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
lsass.exe 0.01 5,788 K 9,456 K 1068 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.01 73,552 K 60,180 K 1428 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 0.01 5,104 K 7,432 K 1504 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SearchIndexer.exe 0.01 47,860 K 32,432 K 1756 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
AppleMobileDeviceService.exe < 0.01 3,196 K 3,188 K 2616 MobileDeviceService Apple Inc. (Verified) Apple Inc.
rpdsvc.exe < 0.01 16,436 K 4,592 K 2876 RealPlayer Cloud Service RealNetworks, Inc. (Verified) RealNetworks
csrss.exe < 0.01 1,372 K 2,816 K 936 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows Publisher
WUDFHost.exe 6,268 K 11,248 K 1924 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation (Verified) Microsoft Windows
WmiPrvSE.exe 2,368 K 8,584 K 5900 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
winlogon.exe 2,048 K 7,008 K 4036 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 1,124 K 2,788 K 76 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows Publisher
UpdaterService.exe 1,316 K 1,780 K 3016 Updater Service Acer Group (Verified) Acer Incorporated
Updater.exe 5,292 K 3,264 K 3000 Updater Popcorn Time (No signature was present in the subject) Popcorn Time
taskhostw.exe 6,656 K 16,596 K 9600 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
SystemSettingsBroker.exe 2,524 K 12,280 K 10808 System Settings Broker Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 9,268 K 14,592 K 1156 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 16,156 K 16,644 K 1760 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,204 K 10,604 K 1216 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,248 K 14,684 K 2636 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,076 K 19,160 K 1596 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,976 K 2,288 K 2840 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 21,808 K 17,052 K 1436 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,576 K 6,768 K 1172 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,564 K 14,380 K 2984 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,928 K 2,824 K 2608 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,604 K 22,776 K 10052 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
spoolsv.exe 7,976 K 4,988 K 2332 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
SMSvcHost.exe 23,288 K 3,248 K 3768 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
SMSvcHost.exe 21,112 K 2,528 K 4064 SMSvcHost.exe Microsoft Corporation (Verified) Microsoft Corporation
smss.exe 368 K 472 K 400 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows Publisher
smartscreen.exe 8,184 K 13,356 K 6524 SmartScreen Microsoft Corporation (Verified) Microsoft Windows
SkypeHost.exe Suspended 4,720 K 336 K 10604 Microsoft Skype Preview Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
sihost.exe 5,108 K 19,596 K 8828 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
ShellExperienceHost.exe Suspended 36,936 K 76,868 K 7648 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
services.exe 3,216 K 4,952 K 1060 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows Publisher
SearchUI.exe Suspended 71,012 K 126,360 K 4652 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 22,204 K 39,364 K 6048 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
rndlresolversvc.exe 1,220 K 1,376 K 2860 (Verified) RealNetworks
RealPlayerUpdateSvc.exe 4,420 K 5,156 K 2900 (Verified) RealNetworks
RAVCpl64.exe 4,376 K 10,464 K 6308 HD Audio Control Panel Realtek Semiconductor (Verified) Realtek Semiconductor Corp
procexp.exe 2,852 K 9,652 K 10276 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
procexp.exe 2,832 K 8,208 K 1368 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
OneDrive.exe 6,744 K 25,300 K 3028 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
notepad.exe 2,812 K 13,120 K 2292 Notepad Microsoft Corporation (Verified) Microsoft Windows
NisSrv.exe 17,368 K 9,216 K 4448 Microsoft Network Realtime Inspection Service Microsoft Corporation (Verified) Microsoft Corporation
NIHardwareService.exe 6,828 K 2,604 K 2852 NIHardwareService Native Instruments GmbH (No signature was present in the subject) Native Instruments GmbH
MSASCuiL.exe 3,176 K 10,880 K 6576 Windows Defender notification icon Microsoft Corporation (Verified) Microsoft Windows
mqsvc.exe 3,832 K 3,172 K 2748 Message Queuing Service Microsoft Corporation (Verified) Microsoft Windows
mmc.exe 15,516 K 33,788 K 152 Microsoft Management Console Microsoft Corporation (Verified) Microsoft Windows
Memory Compression 444 K 91,892 K 2556
ISHelper.exe 7,804 K 16,856 K 4140 iSkySoft Studio iSkySoft (No signature was present in the subject) iSkySoft
IntuitUpdateService.exe 25,220 K 10,312 K 4576 Intuit Update Service Intuit Inc. (Verified) Intuit
InstallAgentUserBroker.exe 3,724 K 13,408 K 10068 InstallAgentUserBroker Microsoft Corporation (Verified) Microsoft Windows
InstallAgent.exe 2,040 K 10,092 K 3500 InstallAgent Microsoft Corporation (Verified) Microsoft Windows
HotkeyUtility.exe 2,724 K 11,696 K 3748 Hotkey Utility (Verified) Acer Incorporated
GoogleUpdate.exe 2,012 K 1,132 K 4600 Google Installer Google Inc. (Verified) Google Inc
FreemakeUtilsService.exe 18,212 K 10,612 K 2656 FreemakeUtilsService Freemake (No signature was present in the subject) Freemake
dllhost.exe 1,808 K 8,960 K 5776 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dasHost.exe 10,512 K 10,404 K 3148 Device Association Framework Provider Host Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 78,084 K 83,204 K 9116 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 89,048 K 94,012 K 7036 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 2,376 K 7,764 K 4912 Google Chrome Google Inc. (Verified) Google Inc
audiodg.exe 6,080 K 10,540 K 8792 Windows Audio Device Graph Isolation Microsoft Corporation (Verified) Microsoft Windows
armsvc.exe 1,268 K 1,664 K 2600 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
 
 
WMIdiag attached. It gave me some kind of error when it finished.
 

Attached Files


  • 0

#13
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP
AutoKMS.exe 45.81 33,244 K 8,680 K 7244 AutoKMS (No signature was present in the subject)

 

 

This is your current problem.  AutoKMS is a cheat program used to bypass licensing on MS Office. We aren't supposed to work on systems with cheat programs so please remove it.

 

Once you remove it run a new Porcess Explorer log.


  • 0

#14
alternate

alternate

    Member

  • Topic Starter
  • Member
  • PipPip
  • 81 posts

I cannot find it on my system?  Will my Windows stop working after a period of time if I uninstall it? I believe my windows is licensed. I have Pro Tools running on my system that is not licensed...is this tool only used for windows or could be from somewhere else like Pro Tools?


  • 0

#15
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,029 posts
  • MVP

It's just for Microsoft Office as far as I know.  If you search for

Task Scheduler

and hit Enter

then click on Task Scheduler Library

 

you will find a task in the right pane called

 

 {ED3A0CC4-FE63-4963-8D54-DD3B77D6B196} 

or it may be called AutoKMS.

 

Right click on it and Disable

 

Then reboot.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP