Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Can't uninstall Wondershare


  • Please log in to reply

#1
buster0702

buster0702

    New Member

  • Member
  • Pip
  • 1 posts

Since installation of Wondershare app printer is printing garbage. Won't let me update drivers.

Deleted Temp files and ran Disk cleanup.

Any help would be appreciated.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 30-10-2016
Ran by Nigel (administrator) on NIGELS-PC (02-11-2016 18:02:35)
Running from C:\Users\Nigel\Desktop
Loaded Profiles: Nigel (Available Profiles: Nigel & DefaultAppPool)
Platform: Microsoft Windows 10 Pro Version 1607 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\w32x86\3\NetFaxServer.exe
(ThreatTrack Security Inc.) C:\Program Files\VIPRE\SBPIMSvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Primax Electronics Ltd.) C:\Windows\System32\ico.exe
() C:\Windows\System32\FSRremoS.EXE
(Wondershare) C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(BlackBerry Limited) C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
(BlackBerry Limited) C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
(ThreatTrack Security Inc.) C:\Program Files\VIPRE\SBAMSvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(ThreatTrack Security Inc.) C:\Program Files\VIPRE\SBAMTray.exe
(ThreatTrack Security Inc.) C:\Program Files\VIPRE\VipreEdgeProtection.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [332288 2010-12-17] ()
HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.)
HKLM\...\Run: [SBAMTray] => C:\Program Files\VIPRE\SBAMTray.exe [3015696 2016-02-29] (ThreatTrack Security Inc.)
HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2086240 2015-04-28] (Wondershare)
HKLM\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [443640 2014-10-31] (BlackBerry Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2379504 2013-04-24] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [164152 2016-09-09] (Apple Inc.)
HKU\S-1-5-21-2634806037-3881090146-3206193559-1000\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2016-02-07] (Autodesk, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 06 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{94524d7f-e165-4f7a-ab74-8cb15146d3cd}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-2634806037-3881090146-3206193559-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://ca.search.yahoo.com/?type=994519&fr=spigot-yhp-ie
SearchScopes: HKU\S-1-5-21-2634806037-3881090146-3206193559-1000 -> {69B132A6-5F58-4B60-BE4C-C37A6383EADF} URL = hxxps://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=994519&p={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: VIPRE Search Guard Helper -> {963C8283-AE7F-4AA6-9B3B-847A8FC62C5E} -> C:\Program Files\VIPRE\VSGN.dll [2016-02-29] ()
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKLM - VIPRE Search Guard Toolbar - {A924C17A-5E94-4E02-BED5-49720BA6F7FA} - C:\Program Files\VIPRE\VSGN.dll [2016-02-29] ()
Toolbar: HKU\S-1-5-21-2634806037-3881090146-3206193559-1000 -> VIPRE Search Guard Toolbar - {A924C17A-5E94-4E02-BED5-49720BA6F7FA} - C:\Program Files\VIPRE\VSGN.dll [2016-02-29] ()
Handler: vipresg - {47BE2E5B-703B-444F-ABD3-05717D2191C6} - C:\Program Files\VIPRE\VSGN.dll [2016-02-29] ()

FireFox:
========
FF DefaultProfile: aux64gnm.default
FF ProfilePath: C:\Users\Nigel\AppData\Roaming\Mozilla\Firefox\Profiles\aux64gnm.default [2016-11-02]
FF Homepage: Mozilla\Firefox\Profiles\aux64gnm.default -> hxxps://www.google.ca/
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\ProgramData\Wondershare\Video Converter Ultimate\[email protected]_xpi => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_205.dll [2016-10-29] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @RIM.com/WebSLLauncher,version=1.0 -> C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll [2014-11-28] ()
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-09-30] (Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2016-09-01]

Chrome:
=======
CHR HomePage: Default -> hxxps://ca.search.yahoo.com/?type=994519&fr=yo-yhp-ch
CHR StartupUrls: Default -> "hxxps://www.google.ca/"
CHR Profile: C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default [2016-07-26]
CHR Extension: (Google Slides) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-23]
CHR Extension: (Google Docs) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-23]
CHR Extension: (Google Drive) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-23]
CHR Extension: (YouTube) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-23]
CHR Extension: (Google Sheets) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-23]
CHR Extension: (Google Docs Offline) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-23]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-25]
CHR Extension: (Gmail) - C:\Users\Nigel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-23]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 BlackBerry Device Manager; C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [588024 2014-10-31] (BlackBerry Limited)
S4 debugregsvc; C:\WINDOWS\System32\debugregsvc.dll [24064 2016-07-15] (Microsoft Corporation)
S3 DeveloperToolsService; C:\WINDOWS\System32\DeveloperToolsSvc.exe [84480 2016-07-15] (Microsoft Corporation)
R2 Samsung Network Fax Server; C:\Windows\system32\spool\drivers\w32x86\3\NetFaxServer.exe [176640 2012-03-23] (Samsung Electronics Co., Ltd.) [File not signed]
R2 SBAMSvc; C:\Program Files\VIPRE\SBAMSvc.exe [6602192 2016-02-29] (ThreatTrack Security Inc.)
R2 SBPIMSvc; C:\Program Files\VIPRE\SBPIMSvc.exe [373264 2016-02-29] (ThreatTrack Security Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [1887272 2016-09-15] (Microsoft Corporation)
S3 SshBroker; C:\WINDOWS\System32\SshBroker.dll [276992 2016-07-15] (Microsoft Corporation)
S3 SshProxy; C:\WINDOWS\System32\SshProxy.dll [213504 2016-07-15] (Microsoft Corporation)
R3 VipreEdgeProtection; C:\Program Files\VIPRE\VipreEdgeProtection.exe [4385768 2015-10-16] (ThreatTrack Security Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [271496 2016-07-16] (Microsoft Corporation)
S4 WebManagement; C:\WINDOWS\system32\WebManagement.exe [709120 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [84928 2016-07-16] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athwn.sys [3228672 2016-07-16] (Qualcomm Atheros Communications, Inc.)
R3 e1express; C:\WINDOWS\system32\DRIVERS\e1e6232.sys [231640 2011-10-14] (Intel Corporation)
S3 gfiark; C:\WINDOWS\System32\drivers\gfiark.sys [43176 2015-08-27] (ThreatTrack Security)
S3 gfiutil; C:\WINDOWS\System32\drivers\gfiutil.sys [25440 2016-03-04] (ThreatTrack Security)
S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [56672 2016-10-05] (Avago Technologies)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [62976 2016-07-16] ()
S3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.)
S3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.)
R2 sbapifs; C:\WINDOWS\System32\DRIVERS\sbapifs.sys [70960 2016-02-29] (ThreatTrack Security Inc.)
S3 sbhips; C:\WINDOWS\System32\drivers\sbhips.sys [97432 2016-02-29] (ThreatTrack Security)
R1 sbwfw; C:\WINDOWS\system32\DRIVERS\sbwfw.sys [308928 2016-02-29] (ThreatTrack Security)
R3 sbwtis; C:\WINDOWS\system32\DRIVERS\sbwtis.sys [83224 2016-02-29] (ThreatTrack Security)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37912 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [244576 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [100192 2016-07-16] (Microsoft Corporation)
R2 WebExaminer; C:\WINDOWS\system32\Drivers\WebExaminer.sys [36968 2015-10-16] (ThreatTrack Security Inc.)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: debugregsvc -> C:\Windows\System32\debugregsvc.dll (Microsoft Corporation)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-02 18:02 - 2016-11-02 18:03 - 00012516 _____ C:\Users\Nigel\Desktop\FRST.txt
2016-11-02 18:02 - 2016-11-02 18:02 - 00000000 ____D C:\FRST
2016-11-02 18:00 - 2016-11-02 18:02 - 01758208 _____ (Farbar) C:\Users\Nigel\Desktop\FRST.exe
2016-11-02 17:14 - 2016-11-02 17:21 - 00201020 _____ C:\WINDOWS\ntbtlog.txt
2016-11-02 17:14 - 2016-11-02 17:14 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2016-11-02 16:46 - 2016-11-02 16:46 - 04443448 _____ C:\Users\Nigel\Downloads\SamsungPrinterInstaller.exe
2016-11-01 09:27 - 2016-11-01 10:07 - 00000000 ____D C:\Users\Nigel\AppData\LocalLow\uTorrent
2016-10-30 16:54 - 2016-10-30 16:54 - 00000000 ____D C:\Users\Nigel\AppData\Local\MicrosoftEdge
2016-10-29 19:00 - 2016-10-29 20:15 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-10-27 15:29 - 2016-10-27 15:29 - 00012566 _____ C:\Users\Nigel\Documents\Full page photo.pdf
2016-10-27 15:24 - 2016-10-27 15:24 - 00018265 _____ C:\Users\Nigel\Documents\Nancys.pdf
2016-10-27 15:23 - 2016-10-27 15:23 - 00000000 ____D C:\Users\Nigel\AppData\Roaming\Softland
2016-10-27 15:16 - 2016-10-27 15:16 - 00000000 ____D C:\ProgramData\Softland
2016-10-27 15:15 - 2016-10-27 17:17 - 00000000 ____D C:\Program Files\Softland
2016-10-27 15:14 - 2016-10-27 15:15 - 52620456 _____ (Softland) C:\Users\Nigel\Downloads\novapdf-full.exe
2016-10-27 14:07 - 2016-10-15 01:11 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-10-27 14:07 - 2016-10-15 00:40 - 01126496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-10-27 14:07 - 2016-10-15 00:36 - 04970224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-10-27 14:07 - 2016-10-15 00:35 - 00890984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-10-27 14:07 - 2016-10-15 00:35 - 00784064 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-10-27 14:07 - 2016-10-15 00:34 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-10-27 14:07 - 2016-10-15 00:33 - 06020448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-27 14:07 - 2016-10-15 00:33 - 01073816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-27 14:07 - 2016-10-15 00:33 - 00945760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-27 14:07 - 2016-10-15 00:32 - 01583112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-10-27 14:07 - 2016-10-15 00:20 - 01898336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-10-27 14:07 - 2016-10-15 00:20 - 00550752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-10-27 14:07 - 2016-10-15 00:20 - 00342880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-10-27 14:07 - 2016-10-15 00:19 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-27 14:07 - 2016-10-15 00:19 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-10-27 14:07 - 2016-10-15 00:18 - 00749920 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-10-27 14:07 - 2016-10-15 00:18 - 00576400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-10-27 14:07 - 2016-10-15 00:14 - 01384704 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-10-27 14:07 - 2016-10-15 00:14 - 00802600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-27 14:07 - 2016-10-15 00:14 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-10-27 14:07 - 2016-10-15 00:11 - 01424488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-10-27 14:07 - 2016-10-15 00:11 - 01345504 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-10-27 14:07 - 2016-10-15 00:11 - 01263848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-10-27 14:07 - 2016-10-15 00:11 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-10-27 14:07 - 2016-10-15 00:00 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-10-27 14:07 - 2016-10-14 23:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-10-27 14:07 - 2016-10-14 23:58 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2016-10-27 14:07 - 2016-10-14 23:56 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-10-27 14:07 - 2016-10-14 23:56 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-10-27 14:07 - 2016-10-14 23:55 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-10-27 14:07 - 2016-10-14 23:54 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-10-27 14:07 - 2016-10-14 23:54 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-10-27 14:07 - 2016-10-14 23:54 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-10-27 14:07 - 2016-10-14 23:54 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-10-27 14:07 - 2016-10-14 23:52 - 00322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-10-27 14:07 - 2016-10-14 23:51 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-27 14:07 - 2016-10-14 23:51 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-10-27 14:07 - 2016-10-14 23:51 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-10-27 14:07 - 2016-10-14 23:50 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-10-27 14:07 - 2016-10-14 23:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-10-27 14:07 - 2016-10-14 23:49 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-10-27 14:07 - 2016-10-14 23:49 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-10-27 14:07 - 2016-10-14 23:48 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-10-27 14:07 - 2016-10-14 23:48 - 00797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-10-27 14:07 - 2016-10-14 23:48 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-10-27 14:07 - 2016-10-14 23:46 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-10-27 14:07 - 2016-10-14 23:43 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-10-27 14:07 - 2016-10-14 23:43 - 01406976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-10-27 14:07 - 2016-10-14 23:43 - 00786432 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-10-27 14:07 - 2016-10-14 23:43 - 00500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-10-27 14:07 - 2016-10-14 23:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2016-10-27 14:07 - 2016-10-14 23:41 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-27 14:07 - 2016-10-14 23:39 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-10-27 14:07 - 2016-10-14 23:39 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-10-27 14:07 - 2016-10-14 23:38 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-10-27 14:07 - 2016-10-14 23:37 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-27 14:07 - 2016-10-14 23:37 - 01485312 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-10-27 14:07 - 2016-10-14 23:37 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-27 14:07 - 2016-10-14 23:37 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-10-27 14:07 - 2016-10-14 23:37 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-10-27 14:07 - 2016-10-14 23:36 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-27 14:07 - 2016-10-14 23:36 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-10-27 14:07 - 2016-10-14 23:36 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-10-27 14:07 - 2016-10-14 23:36 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-27 14:07 - 2016-10-14 23:35 - 02999808 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-10-27 14:07 - 2016-10-14 23:35 - 02708992 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-10-27 14:06 - 2016-10-15 01:11 - 00224608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-10-27 14:06 - 2016-10-15 00:33 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-10-27 14:06 - 2016-10-15 00:32 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-10-27 14:06 - 2016-10-15 00:31 - 00570720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-10-27 14:06 - 2016-10-15 00:26 - 00055136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-10-27 14:06 - 2016-10-15 00:18 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-10-27 14:06 - 2016-10-15 00:18 - 01556712 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-10-27 14:06 - 2016-10-15 00:18 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-10-27 14:06 - 2016-10-15 00:18 - 00458592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-10-27 14:06 - 2016-10-15 00:18 - 00454496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-10-27 14:06 - 2016-10-15 00:18 - 00261984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-10-27 14:06 - 2016-10-15 00:18 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2016-10-27 14:06 - 2016-10-15 00:18 - 00067424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2016-10-27 14:06 - 2016-10-15 00:15 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-10-27 14:06 - 2016-10-15 00:15 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-10-27 14:06 - 2016-10-15 00:15 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-10-27 14:06 - 2016-10-15 00:14 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-10-27 14:06 - 2016-10-15 00:10 - 01968992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-10-27 14:06 - 2016-10-15 00:10 - 00781664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-10-27 14:06 - 2016-10-15 00:10 - 00482656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-10-27 14:06 - 2016-10-15 00:10 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-10-27 14:06 - 2016-10-15 00:06 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-10-27 14:06 - 2016-10-15 00:00 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2016-10-27 14:06 - 2016-10-15 00:00 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2016-10-27 14:06 - 2016-10-14 23:59 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-10-27 14:06 - 2016-10-14 23:58 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-10-27 14:06 - 2016-10-14 23:58 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-10-27 14:06 - 2016-10-14 23:57 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-10-27 14:06 - 2016-10-14 23:57 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-10-27 14:06 - 2016-10-14 23:56 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2016-10-27 14:06 - 2016-10-14 23:56 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2016-10-27 14:06 - 2016-10-14 23:56 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-10-27 14:06 - 2016-10-14 23:55 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-10-27 14:06 - 2016-10-14 23:55 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-10-27 14:06 - 2016-10-14 23:55 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-10-27 14:06 - 2016-10-14 23:54 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-10-27 14:06 - 2016-10-14 23:54 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-10-27 14:06 - 2016-10-14 23:54 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2016-10-27 14:06 - 2016-10-14 23:54 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-10-27 14:06 - 2016-10-14 23:53 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-10-27 14:06 - 2016-10-14 23:53 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-10-27 14:06 - 2016-10-14 23:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-10-27 14:06 - 2016-10-14 23:51 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-10-27 14:06 - 2016-10-14 23:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2016-10-27 14:06 - 2016-10-14 23:51 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-10-27 14:06 - 2016-10-14 23:50 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-10-27 14:06 - 2016-10-14 23:50 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-10-27 14:06 - 2016-10-14 23:50 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-27 14:06 - 2016-10-14 23:50 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-10-27 14:06 - 2016-10-14 23:49 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-10-27 14:06 - 2016-10-14 23:49 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-10-27 14:06 - 2016-10-14 23:48 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-10-27 14:06 - 2016-10-14 23:48 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-10-27 14:06 - 2016-10-14 23:47 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-10-27 14:06 - 2016-10-14 23:47 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-10-27 14:06 - 2016-10-14 23:47 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-10-27 14:06 - 2016-10-14 23:47 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-10-27 14:06 - 2016-10-14 23:46 - 19418112 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-10-27 14:06 - 2016-10-14 23:46 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-27 14:06 - 2016-10-14 23:46 - 01375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-10-27 14:06 - 2016-10-14 23:44 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-10-27 14:06 - 2016-10-14 23:44 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-10-27 14:06 - 2016-10-14 23:44 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-10-27 14:06 - 2016-10-14 23:42 - 12349440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-27 14:06 - 2016-10-14 23:42 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-10-27 14:06 - 2016-10-14 23:42 - 03776000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-10-27 14:06 - 2016-10-14 23:42 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-10-27 14:06 - 2016-10-14 23:41 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2016-10-27 14:06 - 2016-10-14 23:41 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2016-10-27 14:06 - 2016-10-14 23:40 - 01135616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-10-27 14:06 - 2016-10-14 23:40 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-10-27 14:06 - 2016-10-14 23:39 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-10-27 14:06 - 2016-10-14 23:38 - 07468032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-10-27 14:06 - 2016-10-14 23:38 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-10-27 14:06 - 2016-10-14 23:37 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-27 14:06 - 2016-10-14 23:37 - 01940992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-10-27 14:06 - 2016-10-14 23:37 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-10-27 14:06 - 2016-10-14 23:36 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-10-27 14:06 - 2016-10-14 23:36 - 01523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-27 14:06 - 2016-10-14 23:36 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-27 14:06 - 2016-10-14 23:36 - 00528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-10-27 14:06 - 2016-10-14 23:36 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll
2016-10-27 14:06 - 2016-10-14 23:35 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-27 14:06 - 2016-10-14 23:35 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 01415520 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 01026400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00496992 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00486752 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00277344 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00192864 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00115552 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-10-27 14:05 - 2016-10-15 01:11 - 00069472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-27 14:05 - 2016-10-15 00:27 - 00421216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-10-27 14:05 - 2016-10-15 00:20 - 02276736 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-10-27 14:05 - 2016-10-15 00:15 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-10-27 14:05 - 2016-10-15 00:15 - 01853776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-27 14:05 - 2016-10-15 00:15 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-10-27 14:05 - 2016-10-15 00:15 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-10-27 14:05 - 2016-10-15 00:15 - 00687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-10-27 14:05 - 2016-10-14 23:56 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-10-27 14:05 - 2016-10-14 23:55 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-10-27 14:05 - 2016-10-14 23:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-10-27 14:05 - 2016-10-14 23:54 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-10-27 14:05 - 2016-10-14 23:54 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll
2016-10-27 14:05 - 2016-10-14 23:53 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2016-10-27 14:05 - 2016-10-14 23:53 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-10-27 14:05 - 2016-10-14 23:53 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-10-27 14:05 - 2016-10-14 23:52 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-10-27 14:05 - 2016-10-14 23:52 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-10-27 14:05 - 2016-10-14 23:52 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-10-27 14:05 - 2016-10-14 23:52 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2016-10-27 14:05 - 2016-10-14 23:51 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
2016-10-27 14:05 - 2016-10-14 23:50 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2016-10-27 14:05 - 2016-10-14 23:50 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-10-27 14:05 - 2016-10-14 23:49 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-10-27 14:05 - 2016-10-14 23:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-27 14:05 - 2016-10-14 23:46 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2016-10-27 14:05 - 2016-10-14 23:44 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-10-27 14:05 - 2016-10-14 23:44 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-27 14:05 - 2016-10-14 23:42 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-27 14:05 - 2016-10-14 23:41 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-10-27 14:05 - 2016-10-14 23:39 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-10-27 14:05 - 2016-10-14 23:39 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2016-10-27 14:05 - 2016-10-14 23:38 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-10-27 14:05 - 2016-10-14 23:37 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-10-27 14:05 - 2016-10-14 23:37 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-10-27 14:05 - 2016-10-14 23:36 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-10-27 14:05 - 2016-10-14 23:36 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-10-27 14:05 - 2016-10-14 23:36 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-10-27 14:05 - 2016-10-14 23:36 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-10-27 14:05 - 2016-10-14 23:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-10-27 14:05 - 2016-10-14 23:35 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-10-27 14:05 - 2016-10-14 23:35 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-10-27 14:05 - 2016-10-14 23:35 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-10-27 14:05 - 2016-10-14 23:33 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-10-25 20:16 - 2016-10-25 20:16 - 00002723 _____ C:\Users\Nigel\Desktop\µTorrent.lnk
2016-10-25 20:15 - 2016-11-01 10:07 - 00000000 ____D C:\Users\Nigel\AppData\Roaming\uTorrent
2016-10-25 20:14 - 2016-10-25 20:15 - 02375360 _____ (BitTorrent Inc.) C:\Users\Nigel\Downloads\uTorrent.exe
2016-10-23 16:38 - 2016-10-27 12:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-10-12 13:02 - 2016-10-05 06:10 - 00231776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-10-12 13:02 - 2016-10-05 06:05 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-12 13:02 - 2016-10-05 06:03 - 01724584 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-10-12 13:02 - 2016-10-05 05:59 - 00949600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-10-12 13:02 - 2016-10-05 05:54 - 01097568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-10-12 13:02 - 2016-10-05 05:53 - 00154976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-10-12 13:02 - 2016-10-05 05:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-10-12 13:02 - 2016-10-05 05:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-10-12 13:02 - 2016-10-05 05:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-10-12 13:02 - 2016-10-05 05:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-10-12 13:02 - 2016-10-05 05:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-10-12 13:02 - 2016-10-05 05:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-10-12 13:02 - 2016-10-05 05:46 - 00056672 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-10-12 13:02 - 2016-10-05 05:45 - 00198496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-10-12 13:02 - 2016-10-05 05:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2016-10-12 13:02 - 2016-10-05 05:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-12 13:02 - 2016-10-05 05:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-10-12 13:02 - 2016-10-05 05:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-10-12 13:02 - 2016-10-05 05:28 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-10-12 13:02 - 2016-10-05 05:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-10-12 13:02 - 2016-10-05 05:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-12 13:02 - 2016-10-05 05:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-10-12 13:02 - 2016-10-05 05:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-10-12 13:02 - 2016-10-05 05:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-10-12 13:02 - 2016-10-05 05:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-10-12 13:02 - 2016-10-05 05:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-10-12 13:02 - 2016-10-05 05:24 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-12 13:02 - 2016-10-05 05:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-10-12 13:02 - 2016-10-05 05:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-10-12 13:02 - 2016-10-05 05:23 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-10-12 13:02 - 2016-10-05 05:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-10-12 13:02 - 2016-10-05 05:23 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2016-10-12 13:02 - 2016-10-05 05:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-10-12 13:02 - 2016-10-05 05:22 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-10-12 13:02 - 2016-10-05 05:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-10-12 13:02 - 2016-10-05 05:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-10-12 13:02 - 2016-10-05 05:21 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-10-12 13:02 - 2016-10-05 05:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-10-12 13:02 - 2016-10-05 05:20 - 00303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-10-12 13:02 - 2016-10-05 05:18 - 01283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-10-12 13:02 - 2016-10-05 05:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-10-12 13:02 - 2016-10-05 05:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-12 13:02 - 2016-10-05 05:16 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-10-12 13:02 - 2016-10-05 05:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-12 13:02 - 2016-10-05 05:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-10-12 13:02 - 2016-10-05 05:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-12 13:02 - 2016-10-05 05:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-10-12 13:02 - 2016-10-05 05:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-12 13:02 - 2016-10-05 05:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-10-12 13:02 - 2016-10-05 05:11 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-12 13:02 - 2016-10-05 05:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-10-12 13:02 - 2016-10-05 05:10 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-10-12 13:02 - 2016-10-05 05:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-10-12 13:02 - 2016-10-05 05:09 - 01700864 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-10-12 13:02 - 2016-10-05 05:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-10-12 13:02 - 2016-10-05 05:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-12 13:02 - 2016-10-05 05:09 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-10-12 13:02 - 2016-10-05 05:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-12 13:02 - 2016-10-05 05:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-10-12 13:02 - 2016-10-05 05:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-10-12 13:02 - 2016-10-05 05:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-12 13:02 - 2016-10-05 05:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-10-12 13:02 - 2016-10-05 05:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-10-12 13:02 - 2016-10-05 05:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-10-12 13:02 - 2016-10-05 05:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-10-12 13:02 - 2016-10-05 05:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-10-12 13:02 - 2016-10-05 05:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-10-12 13:02 - 2016-10-05 05:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-10-12 13:02 - 2016-10-05 05:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-12 13:02 - 2016-09-22 23:59 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-12 13:02 - 2016-09-07 00:47 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2016-10-11 17:24 - 2016-10-11 17:25 - 08968016 _____ C:\Users\Nigel\Downloads\ScanGuard.exe
2016-10-08 09:14 - 2016-07-15 18:45 - 01794048 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0045.dll
2016-10-08 09:14 - 2016-07-15 18:43 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0045.dll
2016-10-08 09:14 - 2016-07-15 18:39 - 03004416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MLS1.dll
2016-10-06 15:42 - 2016-10-06 16:22 - 2068654456 _____ C:\Users\Nigel\Downloads\The.Infiltrator.2016.1080p.BluRay.x264-[YTS.AG].mp4
2016-10-06 13:16 - 2016-10-06 13:16 - 00000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2016-10-06 13:16 - 2016-10-06 13:16 - 00000000 ___RD C:\WINDOWS\WebManagement
2016-10-06 13:15 - 2016-07-15 18:45 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll
2016-10-06 13:15 - 2016-07-15 18:45 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll
2016-10-06 13:15 - 2016-07-15 18:44 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe
2016-10-06 13:15 - 2016-07-15 18:43 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe
2016-10-06 13:15 - 2016-07-15 18:42 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2016-10-06 13:15 - 2016-07-15 18:42 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshProxy.dll
2016-10-06 13:15 - 2016-07-15 18:42 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe
2016-10-06 13:15 - 2016-07-15 18:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll
2016-10-06 13:15 - 2016-07-15 18:41 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSession.exe
2016-10-06 13:15 - 2016-07-15 18:41 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSftp.exe
2016-10-06 13:15 - 2016-07-15 18:39 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshBroker.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-02 17:28 - 2016-03-23 10:49 - 00003408 _____ C:\WINDOWS\system32\VipreEdgeProtectionOff.ini
2016-11-02 17:26 - 2016-09-17 04:32 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-02 17:26 - 2016-07-15 22:22 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-11-02 17:23 - 2016-07-16 04:28 - 00000000 ____D C:\WINDOWS\INF
2016-11-02 16:52 - 2016-03-29 15:16 - 00000000 ____D C:\Program Files\SamsungPrinterLiveUpdateInstaller
2016-11-02 16:51 - 2016-03-29 15:16 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-11-02 16:51 - 2016-03-29 15:13 - 00000000 ____D C:\Program Files\Samsung
2016-11-02 12:49 - 2016-09-17 04:04 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-11-02 08:24 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\rescache
2016-11-02 08:06 - 2016-07-16 04:29 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-02 08:06 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-30 16:30 - 2016-03-23 09:26 - 00000000 ____D C:\Users\Nigel\AppData\Roaming\vlc
2016-10-30 09:15 - 2016-09-17 04:13 - 01105922 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-29 20:17 - 2016-02-13 08:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-29 20:15 - 2016-09-17 04:04 - 00420552 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-29 20:13 - 2016-07-16 04:29 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-10-29 20:13 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-10-29 20:13 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-10-29 20:13 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-29 20:13 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-10-29 20:12 - 2016-07-16 04:30 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-10-29 19:00 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-10-29 18:20 - 2016-07-16 04:19 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-10-27 17:17 - 2016-03-23 09:50 - 00000000 ____D C:\ProgramData\Package Cache
2016-10-27 17:15 - 2016-04-11 17:35 - 00000000 ____D C:\Users\Nigel\AppData\Local\Packages
2016-10-27 15:35 - 2016-04-02 11:44 - 00000000 ____D C:\Users\Nigel\Documents\Cottage Stuff
2016-10-27 12:58 - 2016-04-28 17:49 - 00000000 ____D C:\Program Files\VIPRE
2016-10-27 12:56 - 2016-03-23 17:07 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-10-26 17:50 - 2016-08-25 10:42 - 00000000 ____D C:\Users\Nigel\Downloads\Peppa Pig
2016-10-25 20:17 - 2016-08-22 07:06 - 00000000 ____D C:\Users\Nigel\AppData\Roaming\Azureus
2016-10-25 20:06 - 2016-03-23 09:09 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-25 20:06 - 2016-03-23 09:09 - 00002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-24 19:30 - 2016-07-16 04:31 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-10-24 19:30 - 2016-07-16 04:31 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-10-17 13:51 - 2016-09-17 04:14 - 00000000 ____D C:\Users\Nigel
2016-10-14 08:48 - 2016-07-16 04:29 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-10-14 08:48 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-10-14 08:48 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-10-14 08:48 - 2016-07-16 04:29 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-12 17:47 - 2016-03-23 09:40 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-10-12 13:18 - 2016-04-11 20:02 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-12 13:10 - 2016-04-11 20:02 - 141042968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-08 08:27 - 2016-07-15 22:22 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-10-08 08:26 - 2016-07-16 04:29 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-10-08 08:26 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\system32\setup
2016-10-08 08:26 - 2016-07-15 22:22 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-10-08 08:26 - 2016-07-15 22:22 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-10-08 08:25 - 2016-07-16 06:18 - 00000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2016-10-08 08:25 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\Provisioning
2016-10-08 08:25 - 2016-07-16 04:29 - 00000000 ____D C:\WINDOWS\bcastdvr

==================== Files in the root of some directories =======

2016-08-21 08:17 - 2016-08-23 18:54 - 0001155 _____ () C:\Users\Nigel\AppData\Roaming\Rim.Desktop.Exception.log
2016-08-21 08:16 - 2016-08-21 08:16 - 0001105 _____ () C:\Users\Nigel\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2016-08-21 08:17 - 2016-08-23 18:54 - 0001309 _____ () C:\Users\Nigel\AppData\Roaming\Rim.DesktopHelper.Exception.log
2016-08-21 08:18 - 2016-08-23 18:54 - 0001232 _____ () C:\Users\Nigel\AppData\Roaming\Rim.Transcoder.Exception.log
2016-08-21 08:19 - 2016-08-22 09:02 - 0034816 _____ () C:\Users\Nigel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-08-24 15:05 - 2016-08-24 15:05 - 0000016 _____ () C:\ProgramData\mntemp

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-11-01 10:27

==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 30-10-2016
Ran by Nigel (02-11-2016 18:04:13)
Running from C:\Users\Nigel\Desktop
Microsoft Windows 10 Pro Version 1607 (X86) (2016-09-17 08:40:03)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2634806037-3881090146-3206193559-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2634806037-3881090146-3206193559-503 - Limited - Disabled)
Guest (S-1-5-21-2634806037-3881090146-3206193559-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2634806037-3881090146-3206193559-1002 - Limited - Enabled)
Nigel (S-1-5-21-2634806037-3881090146-3206193559-1000 - Administrator - Enabled) => C:\Users\Nigel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ThreatTrack Security VIPRE (Enabled - Up to date) {A328C8F0-22BE-AEDA-2D52-6C8A3089160A}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ThreatTrack Security VIPRE (Enabled - Up to date) {18492914-0484-A154-17E2-57F84B0E5CB7}
FW: ThreatTrack Security VIPRE (Enabled) {9B1349D5-68D1-AF82-060D-C5BFCE5A5171}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2634806037-3881090146-3206193559-1000\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.)
Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM\...\{9B0163AC-7E34-4A2F-A3E6-73440FF9549B}) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Apple Application Support (32-bit) (HKLM\...\{29DB9165-5FC1-48F0-9188-26123F526848}) (Version: 5.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{5CFFD58D-A8EB-439C-B3FD-A8862C886C55}) (Version: 10.0.0.18 - Apple Inc.)
Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
ATI - Software Uninstall Utility (HKLM\...\All ATI Software) (Version: 6.14.10.1022 - )
Autodesk Design Review 2013 (HKLM\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk DWG TrueView 2017 - English (HKLM\...\DWG TrueView 2017 - English) (Version: 21.0.52.0 - Autodesk)
BlackBerry Desktop Software 7.1 (HKLM\...\BlackBerry_Desktop) (Version: 7.1.0.41 - Research In Motion Ltd.)
BlackBerry Desktop Software 7.1 (Version: 7.1.0.41 - Research In Motion Ltd.) Hidden
BlackBerry Device Software Updater (HKLM\...\{E755A98B-F45F-4008-A1A5-FC4CB4D2177A}) (Version: 8.0.0.66 - Research In Motion Ltd)
Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.)
Common Desktop Agent (Version: 1.53.0 - OEM) Hidden
DWG TrueView 2017 - English (Version: 21.0.52.0 - Autodesk) Hidden
Google Chrome (HKLM\...\{BBAF8C17-51A4-3A52-A9C7-08229B38346E}) (Version: 54.0.2840.71 - Google, Inc.)
Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden
iTunes (HKLM\...\{C27F2813-083D-4E6C-A565-17E22D1F7FC8}) (Version: 12.5.1.21 - Apple Inc.)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.15 - Lenovo)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Mouse Suite (HKLM\...\MouseSuite98) (Version:  - )
Movavi Video Converter 16 (HKLM\...\Movavi Video Converter 16) (Version: 16.2.0 - Movavi)
Mozilla Firefox 49.0.2 (x86 en-US) (HKLM\...\Mozilla Firefox 49.0.2 (x86 en-US)) (Version: 49.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla)
Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 1.02.06.10 - Samsung Electronics Co., Ltd.)
Samsung Network PC Fax (HKLM\...\Samsung Network PC Fax) (Version: 1.05.29.00 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Assistant (HKLM\...\Samsung Scan Assistant) (Version: 1.04.45.00 - Samsung Electronics Co., Ltd.)
Samsung SCX-472x Series (HKLM\...\Samsung SCX-472x Series) (Version: 1.19 (9/17/2012) - Samsung Electronics Co., Ltd.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
ThinkPad Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_10140588) (Version: 7.62.00 - )
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.7 - )
VIPRE Internet Security (HKLM\...\{C1D1FC57-3EB9-4B21-BCA3-F1C927508200}) (Version: 9.3.4.3 - ThreatTrack Security Inc.)
VIPRE Internet Security (Version: 9.3.4.3 - ThreatTrack Security, Inc.) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2634806037-3881090146-3206193559-1000_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2017 - English\en-US\dwgviewrficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2634806037-3881090146-3206193559-1000_Classes\CLSID\{720DB9AF-D62C-4ED0-A377-429C22312852}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2017 - English\dwgviewr.exe (Autodesk, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00A3EC19-D882-4D14-8A5F-0126BF722B2C} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {082D5EB8-2BAE-43CE-A2C2-FC7D85ACC146} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {11FC4E7D-A5B0-401E-8BFE-7157C023D991} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {18430EEC-5F31-4678-AFEA-1E3DF5EF1405} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {195404AE-C00E-4EA3-992A-D817BB29BB0F} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {201B6FB6-671A-4068-BDE8-C66B064198ED} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {236B9AA6-F001-4F85-83D6-37C18FD3C3FD} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {28170AAD-6E61-4368-9DDB-92AF62F0809E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {2A543790-EB23-4B8D-A058-14CAD32EB935} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {3FB215E2-EBD4-450E-936D-80A546F55A7D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4158C084-B43E-4FDF-9ADD-7764537A47AD} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {4F0D2C7E-D5DC-4C91-8F74-24AB67F9B447} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {52256FAB-9216-4AEC-8825-7A3A856D35B0} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {5471B176-C566-45A7-BF77-8E04CB4D5C8B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {5DB6ADBF-B63C-465B-B097-EFB879990EA4} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {663B0BBB-E5A8-4491-89F3-DBB992A862DE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {687B3981-161F-41E0-95E1-BFC26948DC67} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {68CBE782-425F-4B5E-A954-66B0C9E813C1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {82B0E9A1-3D66-44B0-8F9B-19125BF49CBC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {877C0906-C027-4521-8C8E-42292C3BE2C7} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-29] (Adobe Systems Incorporated)
Task: {905E15E8-DE1D-4EE3-A187-541027B18777} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {940CDB8C-E3D0-4253-B85B-A09ADD1124D1} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {9855D1FE-D2CE-40B1-A5A3-260E8897527C} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A25C4B4C-2414-4893-85E3-4368A41C167E} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A409CE2B-97A5-4FB6-BE48-70D627AB9CF7} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A7852F3F-4F4E-4435-A3AC-AB3DAF1C1D3D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {B3DA4F67-9075-4878-817C-4D1ADC1BE64B} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {B5567BBF-72C7-44E7-B393-6F68C2FF9BB1} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {BD128759-98A5-44E9-B139-B5B631C7E33A} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BF3A8877-9D54-4D66-B60A-53FCA8E8124F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {CAA382A1-5080-44C9-AA81-005B08D9604D} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {CBD23451-FC13-4522-A979-5177355FA0FD} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D0383111-E0D5-4B55-AE1B-74CD981EF739} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
Task: {D1917027-CEEE-49C8-B0A9-378F07608E74} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {D6AD71FB-F8F1-4C0F-B7E7-917411F4C585} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {DBB19FA0-C003-4530-BC54-AFBDA1523B98} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {DE019FBF-A5BC-4A5B-8702-B9E0D314D218} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-23] (Google Inc.)
Task: {EE2124F5-69F0-4F51-B7CF-ABF7395AB44F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {F0D89716-6981-4338-B26C-1B2CC377EA0B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-23] (Google Inc.)
Task: {F8A2EB25-0BCC-4324-AC39-60B92B6437AF} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {FABA378B-E0D6-41A9-B10B-EEB6ECCD2087} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 04:25 - 2016-07-16 04:25 - 00190976 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-30 12:05 - 2016-09-15 13:32 - 02048496 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-29 15:15 - 2011-05-11 03:38 - 00024064 _____ () C:\WINDOWS\System32\ssa3mlm.dll
2016-09-14 06:03 - 2016-09-14 06:03 - 00027160 _____ () C:\WINDOWS\System32\us009lm.dll
2016-09-01 18:13 - 2016-09-01 18:13 - 00080184 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-09-01 18:13 - 2016-09-01 18:13 - 01041720 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-09-30 12:05 - 2016-09-15 13:32 - 02048496 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-09-17 04:44 - 2016-09-17 04:44 - 00679624 _____ () C:\Users\Nigel\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\ClientTelemetry.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 15:45 - 2010-10-20 15:45 - 08801120 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2016-07-16 04:25 - 2016-07-16 04:25 - 00108032 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-09-17 07:57 - 2016-09-17 07:57 - 00321536 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-27 14:06 - 2016-10-14 23:39 - 06726656 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-27 14:06 - 2016-10-14 23:35 - 01149440 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-17 07:57 - 2016-09-17 07:57 - 00526848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-27 14:06 - 2016-10-14 23:35 - 00779776 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-10-27 14:06 - 2016-10-14 23:35 - 01724928 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-27 14:06 - 2016-10-14 23:37 - 03158528 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-04-11 03:32 - 2003-11-06 19:51 - 00020480 _____ () C:\Windows\System32\FSRremoS.EXE
2016-08-12 18:14 - 2015-04-28 15:22 - 01498112 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2016-08-12 18:14 - 2014-05-19 17:19 - 00137728 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2016-02-29 14:56 - 2016-02-29 14:56 - 00237056 _____ () C:\Program Files\VIPRE\unrar.dll
2016-04-28 17:54 - 2015-06-26 03:13 - 00184184 _____ () C:\Program Files\VIPRE\Definitions\libBase64.dll
2016-04-28 17:54 - 2015-06-26 03:13 - 00175992 _____ () C:\Program Files\VIPRE\Definitions\libMachoUniv.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 22:04 - 2009-06-10 17:39 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2634806037-3881090146-3206193559-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808
FirewallRules: [{E9987EED-FC21-48EC-85CE-494C06BA8C79}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{9D06DDF1-1A49-499C-B2AA-6D41407E9DA7}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{BA3ED44B-A0CD-475A-9D2D-66FF22EBBC15}] => (Allow) LPort=4482
FirewallRules: [{C4F46127-8675-442D-82CB-E13EFB0FB999}] => (Allow) LPort=4482
FirewallRules: [{4F586E16-EA52-487E-A610-673319399216}] => (Allow) LPort=4481
FirewallRules: [{A779796F-6D98-43A3-83CE-D0C4D7216E53}] => (Allow) LPort=4481
FirewallRules: [{808E833D-8BDE-480A-A320-33EA52615AF6}] => (Allow) C:\Program Files\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe
FirewallRules: [{8E59B1CA-5370-4C25-98F9-FB65A707131F}] => (Allow) C:\Program Files\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe
FirewallRules: [{A71F3145-C283-495F-91B2-D769B8747653}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security.exe
FirewallRules: [{4773A9F9-9104-4C98-B0A3-065845169A35}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security.exe
FirewallRules: [{EE0D8909-AF12-4FE1-AD3B-95F3853D6DD0}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security.exe
FirewallRules: [{19189946-7B46-4DCA-96EF-0A959C70144C}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security.exe
FirewallRules: [{1846D228-63CB-45BE-A8ED-FAE569EA11C1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{6F6D477C-2AC9-4D00-8241-F868ECB6B467}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{07F51368-4FDF-48B9-8B8F-405A2C3FEC16}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{5AD3F131-71BE-4EE6-B615-4466A9992575}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{D6C4DA5F-3FE1-4714-94A7-1FE8642B9F17}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{06028706-6D27-43DB-A6EE-E10113D33B04}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{86641242-CF69-42BA-882A-E560F45EEADF}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{0C99E575-6346-4C31-BDF2-5C0056D4D302}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security-trial.exe
FirewallRules: [{5530C9FC-E768-4E5E-A934-41CDA9F01ADC}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security-trial.exe
FirewallRules: [{5656A218-AFF4-4242-B3DD-7B7C0DB6D361}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security-trial.exe
FirewallRules: [{A4F14AC6-ABE9-433F-B380-CC5B4F9125A2}] => (Allow) C:\Users\Nigel\Downloads\setup-vipre-internet-security-trial.exe
FirewallRules: [{169D3EEC-1D13-49CA-B35D-E15011725BA7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{39701C29-3EFE-41AE-99E5-E4ECAF795D18}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{F86B429D-9E20-4B1E-BB2F-536EF04495DA}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{C9E119D8-B49A-406B-B989-054447A2D50B}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{C06285CA-F804-40E9-B9FB-B66C045071B8}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{84E5ADB1-589E-4633-9413-F3844D5B4F8E}] => (Allow) C:\ProgramData\VIPRE\PatchManagement\VIPRE.PMAgent.exe
FirewallRules: [{F3CEC851-F9CA-411F-B236-E0E8859218BF}] => (Allow) C:\Windows\twain_32\Samsung\SCX472x\SCNSearch\USDAgent.exe
FirewallRules: [{1942B283-C593-4C40-A7B6-815DB949581E}] => (Allow) C:\Windows\twain_32\Samsung\SCX472x\SCNSearch\USDAgent.exe
FirewallRules: [{C691ADF2-6FD3-4B95-94CE-EF4B24A219CC}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{DF1F9983-0C00-4577-A3A2-F5641DF13E9D}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{B23BAD1A-654A-497C-AED0-CB3CBBFE36B2}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{EB0FC563-70F0-4B5B-A64F-922222204555}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{C310A33F-4813-4E2D-8752-A44A16CF8688}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{0F7BE598-77F2-45E8-9ACB-574DB30DC4A6}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{D8F9780D-8644-44C1-943E-4E550DD4976C}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{BA4EF041-8208-4699-B815-A54FECDF710D}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{6051906E-C26C-45AC-9D7B-93BB109D48B5}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{92A90621-5F4D-46AA-8E89-C29979191D44}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{E72C340F-31B3-42C6-B945-167418A8C338}] => (Allow) C:\Program Files\Scan Assistant\USDAgent.exe
FirewallRules: [{61EAAB0A-0597-474F-9964-6DF56D2366C6}] => (Allow) C:\Program Files\Scan Assistant\USDAgent.exe
FirewallRules: [{C4EACD3F-D717-47A2-88B1-EFB908FDFB70}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{C66DF19C-297D-4B0F-809A-E183929DB952}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{BAC129B2-FDEF-494B-99DB-39E9D6C5A1F2}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{08A56B5B-5515-4C4E-A838-C66EDCF2167E}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DBF60028-4315-4DA7-B62C-92AD2728CEBD}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{34EDB78D-6846-44D0-92C2-2127785C24E0}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F63F59BC-5A90-4B22-87D7-511DECF917DC}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{C61A1DD5-A717-4902-B4F9-D57D60246C84}] => (Allow) C:\Users\Nigel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B43D6203-0C33-4DBE-8ABD-899E96E1835D}] => (Allow) C:\Users\Nigel\AppData\Local\Temp\13da9aca\Latest_WIA\SPNTInst.exe

==================== Restore Points =========================

18-10-2016 13:24:39 Windows Update
26-10-2016 18:14:53 Scheduled Checkpoint
29-10-2016 18:18:17 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/02/2016 05:15:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Nigels-PC)
Description: Activation of app Microsoft.Getstarted_4.1.15.0_x86__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (11/02/2016 05:05:18 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.14393.351 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 428

Start Time: 01d23242f2de255b

Termination Time: 0

Application Path: C:\Windows\explorer.exe

Report Id: cecd0412-a13f-11e6-9dd1-00197eedf4d6

Faulting package full name:

Faulting package-relative application ID:

Error: (11/02/2016 04:59:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Nigels-PC)
Description: Package windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy+microsoft.windows.immersivecontrolpanel was terminated because it took too long to suspend.

Error: (11/02/2016 04:59:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 49.0.2.6136, time stamp: 0x5807c043
Faulting module name: mozglue.dll, version: 49.0.2.6136, time stamp: 0x5807b9a7
Exception code: 0x80000003
Fault offset: 0x0000e83e
Faulting process id: 0x2084
Faulting application start time: 0x01d2353f8bb07d68
Faulting application path: C:\Program Files\Mozilla Firefox\plugin-container.exe
Faulting module path: C:\Program Files\Mozilla Firefox\mozglue.dll
Report Id: 23d516e1-d6e5-47f0-b6a8-02d78217fb83
Faulting package full name:
Faulting package-relative application ID:

Error: (11/02/2016 04:55:30 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "c:\program files\research in motion\blackberry desktop\MailServerMAPIProxy64.exe".
Dependent Assembly Microsoft.VC90.ATL,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (10/30/2016 09:10:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_WbioSrvc, version: 10.0.14393.0, time stamp: 0x5789910a
Faulting module name: UPKBU.DLL, version: 1.6.1.341, time stamp: 0x5022393b
Exception code: 0xc0000005
Fault offset: 0x00066997
Faulting process id: 0x7e4
Faulting application start time: 0x01d23242c4d20501
Faulting application path: C:\WINDOWS\system32\svchost.exe
Faulting module path: C:\WINDOWS\SYSTEM32\WINBIOPLUGINS\UPKBU.DLL
Report Id: 327ad9d8-2279-4563-85c6-d0f0996df533
Faulting package full name:
Faulting package-relative application ID:

Error: (10/29/2016 08:18:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15406

Error: (10/29/2016 08:18:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15406

Error: (10/29/2016 08:18:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (10/29/2016 06:18:31 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.


System errors:
=============
Error: (11/02/2016 05:26:53 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (11/02/2016 05:26:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (11/02/2016 05:26:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (11/02/2016 05:26:48 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (11/02/2016 05:26:00 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server:
{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}

Error: (11/02/2016 05:25:59 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server:
{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}

Error: (11/02/2016 05:25:59 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server:
{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}

Error: (11/02/2016 05:25:58 PM) (Source: DCOM) (EventID: 10010) (User: Nigels-PC)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (11/02/2016 05:25:58 PM) (Source: DCOM) (EventID: 10010) (User: Nigels-PC)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (11/02/2016 05:25:58 PM) (Source: DCOM) (EventID: 10005) (User: Nigels-PC)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}


CodeIntegrity:
===================================
  Date: 2016-10-30 09:59:08.490
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:08.389
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:08.311
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:08.133
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:08.024
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:07.892
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:04.593
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-30 09:59:03.165
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-17 16:25:40.766
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-17 16:25:40.708
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

Processor: Intel® Core™ Duo CPU T2500 @ 2.00GHz
Percentage of memory in use: 51%
Total physical RAM: 3070.24 MB
Available physical RAM: 1504.05 MB
Total Virtual: 6142.24 MB
Available Virtual: 4524.7 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.22 GB) (Free:395.47 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 4DF38A13)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

==================== End of Addition.txt ============================

 


  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP