Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Mindspark


  • This topic is locked This topic is locked

#16
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
Hello,

I'll be working with you until we resolve this. Just got in from work.

Download zoek.exe to your Desktop: http://hijackthis.nl/smeenk/

Important: Disable your AntiVirus and AntiSpyware programs, so they do not interfere with the running of Zoek.exe. See how to disable Avast-->https://www.driverea...st-temporarily/

on Windows Vista, 7, 8 and 10 right-click Zoek.exe and select: Run as Administrator
give it a few seconds to appear
copy/paste the entire script inside the codebox below into the input field of Zoek:
 
createsrpoint;
autoclean;
emptyclsid;
emptyffcache;
FFdefaults;
emptyiecache;
iedefaults;
emptychrcache;
CHRdefaults;
emptyalltemp;
emptyfolderscheck;delete
ipconfig /flushdns;b
close any open programs.
click the Run script button, and wait. It takes a few minutes to run.
when the tool finishes, the zoek-results.log is opened in Notepad: the log can also be found on the systemdrive, normally C:\
if a reboot is needed, the log will be opened after the reboot.
  • 0

Advertisements


#17
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts
 
Zoek.exe v5.0.0.1 Updated 19-September-2016
Tool run by Sharon on Wed 11/23/2016 at 16:05:19.77.
Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Sharon\Downloads\zoek.exe [Scan all users]   [Quick Scan] [Auto Clean]
 
==== System Restore Info ======================
 
11/23/2016 4:06:13 PM Zoek.exe System Restore Point Created Successfully.
 
==== Empty Folders Check ======================
 
C:\Users\Sharon\AppData\Local\VirtualStore deleted successfully
 
==== Deleting CLSID Registry Keys ======================
 
 
==== Deleting CLSID Registry Values ======================
 
 
==== Deleting Services ======================
 
 
==== FireFox Fix ======================
 
ProfilePath: C:\Users\Sharon\AppData\Roaming\Mozilla\Firefox\Profiles\gez929vh.default
 
user.js not found
---- Lines Search  removed from prefs.js ----
user_pref("extensions.xpiState", "{\"app-system-addons\":{\"[email protected]\":{\"d\":\"C:\\\\Users\\\\Sharon\\\\AppData\\\\Roaming\\\\Mozil
---- FireFox user.js and prefs.js backups ---- 
 
prefs_20161123_0418_.backup
 
==== Deleting Files \ Folders ======================
 
C:\windows\SysNative\Tasks\HP Photo Creations Messager deleted
C:\Windows\tasks\HP Photo Creations Messager.job deleted
C:\install.exe deleted
C:\Users\Sharon\AppData\Local\Avanquest North America deleted
"C:\Users\Sharon\AppData\Roaming\enchant\en_US.dic" deleted
"C:\Users\Sharon\AppData\Roaming\enchant\en_US.exc" deleted
"C:\Users\Sharon\AppData\Roaming\enchant" deleted
 
==== Files Recently Created / Modified ======================
 
====== C:\Windows ====
2016-11-10 09:28:57 AC4C51EB24AA95B77F705AB159189E24 2872320 ----a-w- C:\Windows\explorer.exe
2016-11-10 09:28:29 D01628AF9F7FB3F415B357D446FBE6D9 67072 ----a-w- C:\Windows\splwow64.exe
2016-11-10 09:27:42 317CD1CE327B6520BF4EE007BCD39E61 71168 ----a-w- C:\Windows\bfsvc.exe
2016-11-10 09:27:42 163A95975E1D8819E653AA3E961371CA 51200 ----a-w- C:\Windows\twain_32.dll
2016-11-09 03:08:41 12EBDA58437CD1EA7066FCB6455241D2 53208 ----a-w- C:\Windows\avastSS.scr
====== C:\Users\Sharon\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
2016-11-11 11:36:16 867148EBF47E7E7E7B21C07B4A981929 581600 ----a-w- C:\Windows\SysWOW64\wuapi.dll
2016-11-11 11:36:16 372218B80DEF827063049EBEE76B7501 92672 ----a-w- C:\Windows\SysWOW64\wudriver.dll
2016-11-11 11:36:16 255F0417EC31C71585824269522EC8E9 36320 ----a-w- C:\Windows\SysWOW64\wups.dll
2016-11-11 11:35:56 F419D738BD2AE58D9DF2F9FEB5F43842 33792 ----a-w- C:\Windows\SysWOW64\wuapp.exe
2016-11-11 11:35:56 5AA2CAD923E9E647276A61387E83DDD0 179656 ----a-w- C:\Windows\SysWOW64\wuwebv.dll
2016-11-10 14:35:16 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\SysWOW64\last.dump
2016-11-10 09:29:22 518318A103C888001054EFA1236E5033 1130824 ----a-w- C:\Windows\SysWOW64\dfshim.dll
2016-11-10 09:29:18 46BFF575BA1EF3226011E58903C47DDC 3215872 ----a-w- C:\Windows\SysWOW64\mstscax.dll
2016-11-10 09:29:17 C50799F0D47DFB9774F721521B6C41D5 5977600 ----a-w- C:\Windows\SysWOW64\mshtml.dll
2016-11-10 09:29:13 78B7A3BDA25C90DAA50D36A56A8D1351 1171456 ----a-w- C:\Windows\SysWOW64\d3d10warp.dll
2016-11-10 09:29:12 AB9EB3745B03AE67AB241A82338DEA7B 954288 ----a-w- C:\Windows\SysWOW64\mfc40u.dll
2016-11-10 09:29:12 2A6C1373D88B6D5933383B9F5C034CB9 954752 ----a-w- C:\Windows\SysWOW64\mfc40.dll
2016-11-10 09:29:06 8FE6DB20BE436EA8839295F60CAA09F6 870912 ----a-w- C:\Windows\SysWOW64\XpsPrint.dll
2016-11-10 09:29:02 B5842E6BCD0CFDCA40795EEB33042E4E 423936 ----a-w- C:\Windows\SysWOW64\secproc_isv.dll
2016-11-10 09:29:02 716A8BB33CE8EA28D57FC3050D8C027F 428032 ----a-w- C:\Windows\SysWOW64\secproc.dll
2016-11-10 09:29:02 64CA3862D74EA610CD64DC6AD652DB5E 739840 ----a-w- C:\Windows\SysWOW64\d2d1.dll
2016-11-10 09:29:02 49E29F981428DA9FA5FC264E0A7C8935 327168 ----a-w- C:\Windows\SysWOW64\RMActivate_isv.exe
2016-11-10 09:29:02 4619E14B2DF4137907CD988ACA4B30A5 10990080 ----a-w- C:\Windows\SysWOW64\ieframe.dll
2016-11-10 09:29:02 16AB4BD2ACC52109F43739BF0E89E18F 12872192 ----a-w- C:\Windows\SysWOW64\shell32.dll
2016-11-10 09:29:01 23FBEA5DCE05E2A848483A9AB6256E9E 322048 ----a-w- C:\Windows\SysWOW64\RMActivate.exe
2016-11-10 09:29:00 FDBA1DEC4F9BE4274A00B9B850C63484 3207680 ----a-w- C:\Windows\SysWOW64\mf.dll
2016-11-10 09:29:00 D83947A58613E9091B4C9CC0F1546A8D 297808 ----a-w- C:\Windows\SysWOW64\mscoree.dll
2016-11-10 09:28:58 FBE743D60132CFA9982860C8E2D99154 1401344 ----a-w- C:\Windows\SysWOW64\mssrch.dll
2016-11-10 09:28:58 683E0C9DA9E1EB9E4691DFAE0EC83E36 2064384 ----a-w- C:\Windows\SysWOW64\iertutil.dll
2016-11-10 09:28:58 29BC473072568C072EC8B176498DE996 1334272 ----a-w- C:\Windows\SysWOW64\CertEnroll.dll
2016-11-10 09:28:56 256503028879103E9741A276FA24D65D 1698816 ----a-w- C:\Windows\SysWOW64\esent.dll
2016-11-10 09:28:56 1957D49A9613FAAD1C73B508CCE02AA5 11410432 ----a-w- C:\Windows\SysWOW64\wmp.dll
2016-11-10 09:28:55 A2AEEAB451AD341070F9B8F8E1A2EC28 99176 ----a-w- C:\Windows\SysWOW64\PresentationHostProxy.dll
2016-11-10 09:28:55 6A08F1C87BBF6197F5DAD95CF41E5175 295264 ----a-w- C:\Windows\SysWOW64\PresentationHost.exe
2016-11-10 09:28:54 3CD99E5B2487A4018AACBCEB19EE65D0 1548288 ----a-w- C:\Windows\SysWOW64\tquery.dll
2016-11-10 09:28:52 198366199A9F342EF87978D79308B49F 1115136 ----a-w- C:\Windows\SysWOW64\RacEngn.dll
2016-11-10 09:28:51 13A1F9A72F81509658F3E0B6AC2AD994 5066752 ----a-w- C:\Windows\SysWOW64\AuthFWSnapin.dll
2016-11-10 09:28:49 EBB431C6332107651CD2E2715A707994 1229824 ----a-w- C:\Windows\SysWOW64\urlmon.dll
2016-11-10 09:28:49 E2A17BCC08D92F42E08AF6BA2F93ABA7 1493504 ----a-w- C:\Windows\SysWOW64\ExplorerFrame.dll
2016-11-10 09:28:49 928CF7268086631F54C3D8E17238C6DD 1414144 ----a-w- C:\Windows\SysWOW64\ole32.dll
2016-11-10 09:28:49 44214C94911C7CFB1D52CB64D5E8368D 980992 ----a-w- C:\Windows\SysWOW64\wininet.dll
2016-11-10 09:28:48 FF38E458637650CCF717A96E4C86DE1F 641536 ----a-w- C:\Windows\SysWOW64\CPFilters.dll
2016-11-10 09:28:48 6581B52E133CC6D00661C58968C7E212 646144 ----a-w- C:\Windows\SysWOW64\SearchFolder.dll
2016-11-10 09:28:48 13337A3FB17F2242487FD45488ED0485 1128448 ----a-w- C:\Windows\SysWOW64\vssapi.dll
2016-11-10 09:28:47 6EF5F3F18413C367195F06E503AB86A6 1828352 ----a-w- C:\Windows\SysWOW64\d3d9.dll
2016-11-10 09:28:47 6B5742C830FFADBD9F1BA7AC7B29BB57 1076736 ----a-w- C:\Windows\SysWOW64\DWrite.dll
2016-11-10 09:28:47 544EFF88AC6C85DF5A4D6F18DFE08CFC 505856 ----a-w- C:\Windows\SysWOW64\taskschd.dll
2016-11-10 09:28:47 40D777B7A95E00593EB1568C68514493 2616320 ----a-w- C:\Windows\SysWOW64\explorer.exe
2016-11-10 09:28:46 68B4A549D0B56A4DD9A488751037CF09 1049600 ----a-w- C:\Windows\SysWOW64\mstsc.exe
2016-11-10 09:28:46 454E292861A4EF1D72F43F42BBAF6917 1154048 ----a-w- C:\Windows\SysWOW64\crypt32.dll
2016-11-10 09:28:45 D9415DBA9FC6BAA8858FB0DD7D1176EB 541696 ----a-w- C:\Windows\SysWOW64\kerberos.dll
2016-11-10 09:28:45 D124F55B9393C976963407DFF51FFA79 1292096 ----a-w- C:\Windows\SysWOW64\ntdll.dll
2016-11-10 09:28:45 C5DEA5B95AF9AA981C88CAB94A58213E 419880 ----a-w- C:\Windows\SysWOW64\locale.nls
2016-11-10 09:28:45 590D5C506044FE02FF7643E32FF9BDAC 381440 ----a-w- C:\Windows\SysWOW64\wer.dll
2016-11-10 09:28:44 7D34AF98A706230CC2DEDFE0CABF87AB 573440 ----a-w- C:\Windows\SysWOW64\odbc32.dll
2016-11-10 09:28:44 61B1ED5F429EFAC7E2036769870AB93E 342016 ----a-w- C:\Windows\SysWOW64\certcli.dll
2016-11-10 09:28:44 4AA222561FEACF1DD52813D46180FD52 61440 ----a-w- C:\Windows\SysWOW64\tcpmonui.dll
2016-11-10 09:28:44 497E59D9F01C6F247E72222A61835119 1371136 ----a-w- C:\Windows\SysWOW64\dwmcore.dll
2016-11-10 09:28:44 269D867585CDA04D3972A39F3694E7DF 1390080 ----a-w- C:\Windows\SysWOW64\msxml6.dll
2016-11-10 09:28:43 B4D0D2F098C7A68385560DF4551551CA 1328128 ----a-w- C:\Windows\SysWOW64\quartz.dll
2016-11-10 09:28:43 511BA94873CF89D648B7A8496633098A 606208 ----a-w- C:\Windows\SysWOW64\mstime.dll
2016-11-10 09:28:42 BD2978E85EF0007A89F7BB1367C007DD 597504 ----a-w- C:\Windows\SysWOW64\TSWorkspace.dll
2016-11-10 09:28:39 E9E3891A8784C4C5B66EEA51AAFA5DF1 283648 ----a-w- C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-11-10 09:28:39 8DCB990113DEF9255445B17D7F6DA64A 270848 ----a-w- C:\Windows\SysWOW64\tsmf.dll
2016-11-10 09:28:39 394AC8963E832B58A7A9FD0B194D7D8D 599552 ----a-w- C:\Windows\SysWOW64\msfeeds.dll
2016-11-10 09:28:39 0E4A28030C7C6B8A57A60BAF494B114D 389120 ----a-w- C:\Windows\SysWOW64\iedkcs32.dll
2016-11-10 09:28:39 04B88428A872390D235BE52D38A9D4EF 91136 ----a-w- C:\Windows\SysWOW64\dot3api.dll
2016-11-10 09:28:38 CA9F7888B524D8100B977C81F44C3234 351232 ----a-w- C:\Windows\SysWOW64\winhttp.dll
2016-11-10 09:28:38 C1809B9907ADEDAF16F50C894100883B 563712 ----a-w- C:\Windows\SysWOW64\netlogon.dll
2016-11-10 09:28:38 8E8C92DD50F6B34907813AFDC0C8F7DD 2522624 ----a-w- C:\Windows\SysWOW64\dbgeng.dll
2016-11-10 09:28:38 863F793D15B4026B1A5FDECA873D4D84 295936 ----a-w- C:\Windows\SysWOW64\apphelp.dll
2016-11-10 09:28:38 59D16C3D5CC0D573256A01783ED5CCB4 2291712 ----a-w- C:\Windows\SysWOW64\MSVidCtl.dll
2016-11-10 09:28:38 33D933951E1DD39BA9A973CA5651BC90 522752 ----a-w- C:\Windows\SysWOW64\d3d11.dll
2016-11-10 09:28:38 1FF7E4F548C7C372C804938F0D5B36AE 406528 ----a-w- C:\Windows\SysWOW64\netcfgx.dll
2016-11-10 09:28:38 1DB71A41DAEE6B3F8CD0DDA8209FA2D5 1010688 ----a-w- C:\Windows\SysWOW64\WindowsCodecs.dll
2016-11-10 09:28:38 10FB16B50AFFDA6D44588F3C445DC273 1667584 ----a-w- C:\Windows\SysWOW64\setupapi.dll
2016-11-10 09:28:37 63B282FB2550893724647A359BA2323F 1363456 ----a-w- C:\Windows\SysWOW64\Query.dll
2016-11-10 09:28:37 402D0425A26A0660BC1299A5854A4785 1619456 ----a-w- C:\Windows\SysWOW64\WMVDECOD.DLL
2016-11-10 09:28:37 1B91CD34EA3A90AB6A4EF0550174F4CC 1175040 ----a-w- C:\Windows\SysWOW64\WsmSvc.dll
2016-11-10 09:28:37 02C61D8AD469417F5508225C75DE3236 314880 ----a-w- C:\Windows\SysWOW64\webio.dll
2016-11-10 09:28:36 CDD35C1CE1EBFE80C055691CDC8DF443 1792000 ----a-w- C:\Windows\SysWOW64\authui.dll
2016-11-10 09:28:36 C9FB8C3D650EF8BD76865EC20A19A5BC 252928 ----a-w- C:\Windows\SysWOW64\DShowRdpFilter.dll
2016-11-10 09:28:36 C02F50BBC064689FE3FCD89348C884EB 49488 ----a-w- C:\Windows\SysWOW64\netfxperf.dll
2016-11-10 09:28:36 B350525D71B42CF9366AF7443BBA21E6 341504 ----a-w- C:\Windows\SysWOW64\msdrm.dll
2016-11-10 09:28:36 95E2376B3323F062EB562B8586D0F14A 640512 ----a-w- C:\Windows\SysWOW64\advapi32.dll
2016-11-10 09:28:36 954EA9B34F155C844B11F4047A8F6F89 206848 ----a-w- C:\Windows\SysWOW64\upnp.dll
2016-11-10 09:28:36 7A82634C75F5CD12EFCF43897A2E28CE 732160 ----a-w- C:\Windows\SysWOW64\imapi2fs.dll
2016-11-10 09:28:36 653CF8E759C4B13C5507B70BD383F158 2151936 ----a-w- C:\Windows\SysWOW64\mmcndmgr.dll
2016-11-10 09:28:36 4C1E16B9A53102C8D6FBA587CBCB95DE 257024 ----a-w- C:\Windows\SysWOW64\msv1_0.dll
2016-11-10 09:28:36 4AE380F39A0032EAB7DD953030B26D28 113664 ----a-w- C:\Windows\SysWOW64\SessEnv.dll
2016-11-10 09:28:36 135F7AC9BE35AB1DF727FAF2E60E92F8 224256 ----a-w- C:\Windows\SysWOW64\schannel.dll
2016-11-10 09:28:35 E98278865E8DABA21CFE5FE4BE34210A 547840 ----a-w- C:\Windows\SysWOW64\PortableDeviceApi.dll
2016-11-10 09:28:35 8CC3C111D653E96F3EA1590891491D71 350208 ----a-w- C:\Windows\SysWOW64\shlwapi.dll
2016-11-10 09:28:35 804AAAFEBB3AD5F49334DD906BCB1DE5 626176 ----a-w- C:\Windows\SysWOW64\usp10.dll
2016-11-10 09:28:34 ED04627EF998D04182C00ECD211FACBD 323072 ----a-w- C:\Windows\SysWOW64\drvstore.dll
2016-11-10 09:28:34 E80758CF485DB142FCA1EE03A34EAD05 837632 ----a-w- C:\Windows\SysWOW64\kernel32.dll
2016-11-10 09:28:34 D15618A0FF8DBC2C5BF3726BACC75A0B 81920 ----a-w- C:\Windows\SysWOW64\userenv.dll
2016-11-10 09:28:34 A9D880F97530D5B8FEE278923349929D 204800 ----a-w- C:\Windows\SysWOW64\WebClnt.dll
2016-11-10 09:28:34 9C8E9CAAF237E8CD8BEBDE700AAFF9E0 1712640 ----a-w- C:\Windows\SysWOW64\xpsservices.dll
2016-11-10 09:28:34 9C36A3CA80F9B204C670336D344F5DF8 219136 ----a-w- C:\Windows\SysWOW64\d3d10_1core.dll
2016-11-10 09:28:34 5232D090B7540F90E9BF6DDC2EBB5CA2 220672 ----a-w- C:\Windows\SysWOW64\mcbuilder.exe
2016-11-10 09:28:34 34BEF0783E17E760BE6DBEFB888A94B8 1555456 ----a-w- C:\Windows\SysWOW64\certmgr.dll
2016-11-10 09:28:33 D1DE1EAFDE97BE41CF6585027FF3E732 485888 ----a-w- C:\Windows\SysWOW64\comdlg32.dll
2016-11-10 09:28:32 AD7B9C14083B52BC532FBA5948342B98 302592 ----a-w- C:\Windows\SysWOW64\cmd.exe
2016-11-10 09:28:32 59DF156711A76BCB993253EC6C9BBF41 270336 ----a-w- C:\Windows\SysWOW64\dnsapi.dll
2016-11-10 09:28:31 D0481FB85BEEDD30A0884BE327880F80 206336 ----a-w- C:\Windows\SysWOW64\framedynos.dll
2016-11-10 09:28:31 A8BB45F9ECAD993461E0FEF8E2A99152 269824 ----a-w- C:\Windows\SysWOW64\Wldap32.dll
2016-11-10 09:28:31 71D5EBEFC617B84E1136F3F0E07A88F5 296448 ----a-w- C:\Windows\SysWOW64\mfds.dll
2016-11-10 09:28:31 536E06B5A05C6E39C8748E3941FB083D 492032 ----a-w- C:\Windows\SysWOW64\win32spl.dll
2016-11-10 09:28:31 12C45E3CB6D65F73209549E2D02ECA7A 988160 ----a-w- C:\Windows\SysWOW64\propsys.dll
2016-11-10 09:28:30 75EA62927355189876081EF863064982 152064 ----a-w- C:\Windows\SysWOW64\ncsi.dll
2016-11-10 09:28:30 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 833024 ----a-w- C:\Windows\SysWOW64\user32.dll
2016-11-10 09:28:30 2F6C94BA73C976FAF939358D84E653E9 762880 ----a-w- C:\Windows\SysWOW64\azroles.dll
2016-11-10 09:28:29 F22F10918F02BC39F7EA93455A2D8CD7 716800 ----a-w- C:\Windows\SysWOW64\jscript.dll
2016-11-10 09:28:29 E9E01EB683C132F7FA27CD607B8A2B63 254464 ----a-w- C:\Windows\SysWOW64\dhcpcore.dll
2016-11-10 09:28:29 A8087578D186C9934DF853D873034B3B 741376 ----a-w- C:\Windows\SysWOW64\inetcomm.dll
2016-11-10 09:28:29 971A36C4827AD1AE2A54E6407478921A 172544 ----a-w- C:\Windows\SysWOW64\spp.dll
2016-11-10 09:28:29 8999B8631C7FD9F7F9EC3CAFD953BA24 232448 ----a-w- C:\Windows\SysWOW64\mswsock.dll
2016-11-10 09:28:29 5992A9DF57FD5E6960FDCC2DB69867F7 2755072 ----a-w- C:\Windows\SysWOW64\themeui.dll
2016-11-10 09:28:29 4F2659160AFCCA990305816946F69407 192000 ----a-w- C:\Windows\SysWOW64\taskeng.exe
2016-11-10 09:28:29 108C2CFA5527458C096A699929ECBD80 168960 ----a-w- C:\Windows\SysWOW64\credui.dll
2016-11-10 09:28:28 BFEBB6F76A0988A38260870C61A6D1B7 196608 ----a-w- C:\Windows\SysWOW64\mfreadwrite.dll
2016-11-10 09:28:28 B47CD1B9551DA3DE9166D6DD17E6FD82 144768 ----a-w- C:\Windows\SysWOW64\basecsp.dll
2016-11-10 09:28:28 8B57A1AD493653BB57F281FE75DD175B 801280 ----a-w- C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-11-10 09:28:28 81C0FA250EF6DC1C6B3FA2BCE81D6C2E 335872 ----a-w- C:\Windows\SysWOW64\WinSATAPI.dll
2016-11-10 09:28:28 60B7C0FEAD45F2066E5B805A91F4F0FC 776192 ----a-w- C:\Windows\SysWOW64\calc.exe
2016-11-10 09:28:28 53AF1750FD45DDD705C9B68C7DC58827 488448 ----a-w- C:\Windows\SysWOW64\evr.dll
2016-11-10 09:28:28 53223B673A3FA2F9A4D1C31C8D3F6CD8 854016 ----a-w- C:\Windows\SysWOW64\dbghelp.dll
2016-11-10 09:28:28 4205CA4CD43E725DB9FF02B0A588A8C6 1236992 ----a-w- C:\Windows\SysWOW64\msxml3.dll
2016-11-10 09:28:28 2D0D2DA87BEA7144F2A17F19D0D17E4C 172032 ----a-w- C:\Windows\SysWOW64\wintrust.dll
2016-11-10 09:28:28 1C3E8371377E988B683797A132EFFE1B 305152 ----a-w- C:\Windows\SysWOW64\taskcomp.dll
2016-11-10 09:28:28 0411B7958C524BB2E91EE1B3035FE321 508416 ----a-w- C:\Windows\SysWOW64\dxgi.dll
2016-11-10 09:28:27 EAB975DB4C2805927FE5BD047D05C9AA 2494464 ----a-w- C:\Windows\SysWOW64\netshell.dll
2016-11-10 09:28:27 C42C0258F7F20CEC45432496C4650714 534528 ----a-w- C:\Windows\SysWOW64\EncDec.dll
2016-11-10 09:28:27 B85B0267A743607052263447E6091E8C 2983424 ----a-w- C:\Windows\SysWOW64\UIRibbon.dll
2016-11-10 09:28:27 A585BEBF7D054BD9618EDA0922D5484A 136192 ----a-w- C:\Windows\SysWOW64\cryptsvc.dll
2016-11-10 09:28:27 919001D2BB17DF06CA3F8AC16AD039F6 380416 ----a-w- C:\Windows\SysWOW64\sxs.dll
2016-11-10 09:28:27 7FF15A4F092CD4A96055BA69F903E3E9 206848 ----a-w- C:\Windows\SysWOW64\ws2_32.dll
2016-11-10 09:28:27 4470B0943469C4AF5B114E420DCB1AEF 778240 ----a-w- C:\Windows\SysWOW64\sqlsrv32.dll
2016-11-10 09:28:27 0EE3BD34729C40BD0853825753ACB319 176128 ----a-w- C:\Windows\SysWOW64\ie4uinit.exe
2016-11-10 09:28:26 D6D3AD7BF1D6F6CE9547613ED5E170A2 311296 ----a-w- C:\Windows\SysWOW64\gdi32.dll
2016-11-10 09:28:26 BDAC1AA64495D0F7E1FF810EBBF1F018 530432 ----a-w- C:\Windows\SysWOW64\comctl32.dll
2016-11-10 09:28:26 A2718532AFF3B0F9C73D3034A1511F50 139264 ----a-w- C:\Windows\SysWOW64\rpchttp.dll
2016-11-10 09:28:26 9DF9B31EAC1669F244C02B61F10D123A 932352 ----a-w- C:\Windows\SysWOW64\printui.dll
2016-11-10 09:28:26 912649A1B3F9E6ACB3899FBDABA2ED5F 228352 ----a-w- C:\Windows\SysWOW64\stobject.dll
2016-11-10 09:28:26 73F6C5223F7E9B5780DD4A6C30FCF569 458752 ----a-w- C:\Windows\SysWOW64\WSDApi.dll
2016-11-10 09:28:26 50AF423CC8915B0010F0A96BF78672E9 116736 ----a-w- C:\Windows\SysWOW64\prncache.dll
2016-11-10 09:28:26 3B91EA6DC3AE6088C880AB9073A833C2 352256 ----a-w- C:\Windows\SysWOW64\wmpeffects.dll
2016-11-10 09:28:26 2041012726EF7C95ED51C15C56545A7F 142336 ----a-w- C:\Windows\SysWOW64\net1.exe
2016-11-10 09:28:26 0CE4D3BD306DA6D1F6F233C403F5B667 2341376 ----a-w- C:\Windows\SysWOW64\msi.dll
2016-11-10 09:28:25 A24743B58E597C95F71E22C8114D47A5 1163264 ----a-w- C:\Windows\SysWOW64\mfc42u.dll
2016-11-10 09:28:25 3E63222185341DCB8EEEDB8E2761EE6F 246272 ----a-w- C:\Windows\SysWOW64\scansetting.dll
2016-11-10 09:28:25 284B59D7B56FC76C80E622AB856B1FAB 80384 ----a-w- C:\Windows\SysWOW64\davclnt.dll
2016-11-10 09:28:25 243974EC02F7AE49E4179C54624143AB 213504 ----a-w- C:\Windows\SysWOW64\MMDevAPI.dll
2016-11-10 09:28:24 F99A4D145C862CBAD61B409C0AB0CD65 411648 ----a-w- C:\Windows\SysWOW64\wlangpui.dll
2016-11-10 09:28:24 DB846EECA70EE9D2E2FF31147C57B0F4 782336 ----a-w- C:\Windows\SysWOW64\webservices.dll
2016-11-10 09:28:24 CF15E7B164E5824E731665E83CFCF536 131584 ----a-w- C:\Windows\SysWOW64\aaclient.dll
2016-11-10 09:28:24 C6FA3CBF5C6BD7B9BCB63441C6D67EA7 225792 ----a-w- C:\Windows\SysWOW64\netdiagfx.dll
2016-11-10 09:28:24 B70B2E022318E7EF942EEAC7126E6972 124416 ----a-w- C:\Windows\SysWOW64\fde.dll
2016-11-10 09:28:24 6B140B1382F1FE04BA57B196AEB19725 109056 ----a-w- C:\Windows\SysWOW64\t2embed.dll
2016-11-10 09:28:24 3D6F22551D422F97AACB0BB927E4C846 1750528 ----a-w- C:\Windows\SysWOW64\pnidui.dll
2016-11-10 09:28:24 34391196FE00480C9ADBFBE215B6B28C 167936 ----a-w- C:\Windows\SysWOW64\QSHVHOST.DLL
2016-11-10 09:28:24 2DDEA2C345DA5BC589EFD398F220DB0E 2146304 ----a-w- C:\Windows\SysWOW64\SyncCenter.dll
2016-11-10 09:28:24 181F69BC9C406B7FB5C0ADE8031630AC 2311168 ----a-w- C:\Windows\SysWOW64\wpdshext.dll
2016-11-10 09:28:24 0F416E23DD2EB4DEBE70608020CFD283 2504192 ----a-w- C:\Windows\SysWOW64\WMVCORE.DLL
2016-11-10 09:28:23 A8CDF3768604FF95B54669E20053D569 51712 ----a-w- C:\Windows\SysWOW64\wscapi.dll
2016-11-10 09:28:23 9419ABF3163B6F0E3AD3DD2B381C879F 134656 ----a-w- C:\Windows\SysWOW64\WinSCard.dll
2016-11-10 09:28:23 938F39B50BAFE13D6F58C7790682C010 34304 ----a-w- C:\Windows\SysWOW64\msasn1.dll
2016-11-10 09:28:23 414BBA67A3DED1D28437EB66AEB8A720 1508864 ----a-w- C:\Windows\SysWOW64\pla.dll
2016-11-10 09:28:22 CBBD4D79EEC3EF5A4ADAE9697944C6B9 830464 ----a-w- C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-11-10 09:28:22 B54856B913CCBF23F456F87148F42920 186368 ----a-w- C:\Windows\SysWOW64\iepeers.dll
2016-11-10 09:28:22 9E4B0E7472B4CEBA9E17F440B8CB0AB8 320000 ----a-w- C:\Windows\SysWOW64\winspool.drv
2016-11-10 09:28:22 418E881201583A3039D81F43E39E6C78 156672 ----a-w- C:\Windows\SysWOW64\winsta.dll
2016-11-10 09:28:22 3C6882FD49949CDC9C4B19BE910ED8F8 826368 ----a-w- C:\Windows\SysWOW64\rdpcore.dll
2016-11-10 09:28:22 2D11BC8B460957E62E4420373A0D8BDA 392192 ----a-w- C:\Windows\SysWOW64\imapi2.dll
2016-11-10 09:28:20 F88A52EB62019D6A62FDD9E08034DBD8 668160 ----a-w- C:\Windows\SysWOW64\autochk.exe
2016-11-10 09:28:20 F748F53FE09D21D8ECBB6421E6792024 199168 ----a-w- C:\Windows\SysWOW64\onex.dll
2016-11-10 09:28:20 EB77DB354791A5932CA559B6F6374E95 442880 ----a-w- C:\Windows\SysWOW64\ntshrui.dll
2016-11-10 09:28:20 D5AEFAD57C08349A4393D987DF7C715D 194048 ----a-w- C:\Windows\SysWOW64\winmm.dll
2016-11-10 09:28:20 CFE599FA85D52F82327FA8C549AD9296 66560 ----a-w- C:\Windows\SysWOW64\hbaapi.dll
2016-11-10 09:28:20 C940F2F5C60B3727C5F18840735B229C 195584 ----a-w- C:\Windows\SysWOW64\AudioSes.dll
2016-11-10 09:28:20 A90DC9ABD65DB1A8902F361103029952 103936 ----a-w- C:\Windows\SysWOW64\IPHLPAPI.DLL
2016-11-10 09:28:20 A475B7BB0CCCFD848AA26075E81D7888 658944 ----a-w- C:\Windows\SysWOW64\autofmt.exe
2016-11-10 09:28:20 80C5342074711F098A00F71FFF262B3B 1624064 ----a-w- C:\Windows\SysWOW64\WMPEncEn.dll
2016-11-10 09:28:20 68ECCA523ED760AAFC03C5D587569859 51200 ----a-w- C:\Windows\SysWOW64\samcli.dll
2016-11-10 09:28:20 56CEED370508F69A1BA04939BD1BADDA 167936 ----a-w- C:\Windows\SysWOW64\msutb.dll
2016-11-10 09:28:20 414DA952A35BF5D50192E28263B40577 328192 ----a-w- C:\Windows\SysWOW64\shsvcs.dll
2016-11-10 09:28:20 38CACBEB75E3F85CBF7E65522DFDA1B0 166400 ----a-w- C:\Windows\SysWOW64\netiohlp.dll
2016-11-10 09:28:20 2E77BAB79F078654782F83F0A0AEFE31 28672 ----a-w- C:\Windows\SysWOW64\proquota.exe
2016-11-10 09:28:20 285354B4C28567054F9E382EAC540D05 666624 ----a-w- C:\Windows\SysWOW64\mssvp.dll
2016-11-10 09:28:20 19BC13711AC403FEB830522E4831701B 2576384 ----a-w- C:\Windows\SysWOW64\gameux.dll
2016-11-10 09:28:20 1078F4A06BE5DACDC8429215ADAE8104 630784 ----a-w- C:\Windows\SysWOW64\DXPTaskRingtone.dll
2016-11-10 09:28:19 FCA71F6230075CD687189AC29AB06945 665600 ----a-w- C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
2016-11-10 09:28:19 E362FAA5E232D9A326F42D8F78AEA2D8 202752 ----a-w- C:\Windows\SysWOW64\framedyn.dll
2016-11-10 09:28:19 DFEC71402D544893908744E4863DC969 337408 ----a-w- C:\Windows\SysWOW64\msihnd.dll
2016-11-10 09:28:19 D5291C38F1AF2107810A24C6059F9EFD 155472 ----a-w- C:\Windows\SysWOW64\mscorier.dll
2016-11-10 09:28:19 CAFC0B884E5590B5E80D84F592388B3D 181760 ----a-w- C:\Windows\SysWOW64\tcpipcfg.dll
2016-11-10 09:28:19 B81E879AE660F9D244FC20EC8A26783E 42496 ----a-w- C:\Windows\SysWOW64\mimefilt.dll
2016-11-10 09:28:19 B1603F0A972B94927B8EF5F04DF11855 400896 ----a-w- C:\Windows\SysWOW64\ipsmsnap.dll
2016-11-10 09:28:19 9A892B3439884C62B04718F0303A49E9 222208 ----a-w- C:\Windows\SysWOW64\eapphost.dll
2016-11-10 09:28:19 689C8B052E742E054402359F3685FE10 1466368 ----a-w- C:\Windows\SysWOW64\inetcpl.cpl
2016-11-10 09:28:19 674B0C0F6A448EB185CAAB9C51D44032 301568 ----a-w- C:\Windows\SysWOW64\srchadmin.dll
2016-11-10 09:28:19 672D7C5080ACB003343006405DA2E621 82944 ----a-w- C:\Windows\SysWOW64\thumbcache.dll
2016-11-10 09:28:19 5F2122888583347C9B81724CF169EFC6 303104 ----a-w- C:\Windows\SysWOW64\msinfo32.exe
2016-11-10 09:28:19 53E054880ADBB856ECE6EB10EDBB8A32 905216 ----a-w- C:\Windows\SysWOW64\mmsys.cpl
2016-11-10 09:28:19 3925944734DFC5D2253F3DC5923F797D 441856 ----a-w- C:\Windows\SysWOW64\powercpl.dll
2016-11-10 09:28:19 34EEE0DFAADB4F691D6D5308A51315DC 276992 ----a-w- C:\Windows\SysWOW64\wcncsvc.dll
2016-11-10 09:28:19 2607A85B6466C0110EA8ABB9D8CC83FC 72192 ----a-w- C:\Windows\SysWOW64\regapi.dll
2016-11-10 09:28:19 2003E9B15E1C502B146DAD2E383AC1E3 179712 ----a-w- C:\Windows\SysWOW64\schtasks.exe
2016-11-10 09:28:19 09D786401F6CA6AEB16B2811B169F944 679424 ----a-w- C:\Windows\SysWOW64\autoconv.exe
2016-11-10 09:28:19 074341EEDA7A8564C22B7F76008A3CA0 850432 ----a-w- C:\Windows\SysWOW64\sbe.dll
2016-11-10 09:28:18 83C9840CF87A0CA55526327801716D27 478720 ----a-w- C:\Windows\SysWOW64\timedate.cpl
2016-11-10 09:28:18 67BCB4490E9C7307E39C150CC09BEF9A 117248 ----a-w- C:\Windows\SysWOW64\netid.dll
2016-11-10 09:28:18 02530B0B7E048DD5AC8D52DAEACAEB2B 171520 ----a-w- C:\Windows\SysWOW64\QAGENT.DLL
2016-11-10 09:28:15 D2958325C1AE1AE37A83334C6229E3BC 309760 ----a-w- C:\Windows\SysWOW64\actxprxy.dll
2016-11-10 09:28:15 8BCF1DCE05F4494C8891F33EEA450D0A 1227776 ----a-w- C:\Windows\SysWOW64\wdc.dll
2016-11-10 09:28:15 6E79D0D90AB03DC45AFACA52A6699963 204288 ----a-w- C:\Windows\SysWOW64\MSNP.ax
2016-11-10 09:28:15 6A1E8DEB746912DF47CF651E138401D7 363520 ----a-w- C:\Windows\SysWOW64\StructuredQuery.dll
2016-11-10 09:28:15 250AA41DE690561AF1282D598914564C 307712 ----a-w- C:\Windows\SysWOW64\scesrv.dll
2016-11-10 09:28:12 DF3D58359C42F4D8F93B3732ADF03F09 44544 ----a-w- C:\Windows\SysWOW64\licmgr10.dll
2016-11-10 09:28:12 CC88EF08712C08C5F5FE74A395BA25AC 1326592 ----a-w- C:\Windows\SysWOW64\wlanpref.dll
2016-11-10 09:28:12 ABA2AAA6F31EE934A76C87B537515EC6 1400320 ----a-w- C:\Windows\SysWOW64\DxpTaskSync.dll
2016-11-10 09:28:12 965E1069169552890603E238340122B4 294400 ----a-w- C:\Windows\SysWOW64\atmfd.dll
2016-11-10 09:28:12 8483DD8F87DBE86AAB55BBF95C207061 320512 ----a-w- C:\Windows\SysWOW64\mtxclu.dll
2016-11-10 09:28:12 82E7ECE9096EEACB2EAC5644FE19A6F2 346624 ----a-w- C:\Windows\SysWOW64\untfs.dll
2016-11-10 09:28:12 6944501ED659F2C835F8DD16182C9330 372224 ----a-w- C:\Windows\SysWOW64\rastls.dll
2016-11-10 09:28:12 669E18322F05A14356E8F6DA16D15DA0 933376 ----a-w- C:\Windows\SysWOW64\Vault.dll
2016-11-10 09:28:12 5997D769CDB108390DCFAEBF442BF816 46080 ----a-w- C:\Windows\SysWOW64\RpcRtRemote.dll
2016-11-10 09:28:12 545BF7EAA24A9E062857D0742EC0B28A 227328 ----a-w- C:\Windows\SysWOW64\taskmgr.exe
2016-11-10 09:28:12 45D9F6CD2469CDB6A640DD4BD2B01471 78848 ----a-w- C:\Windows\SysWOW64\nci.dll
2016-11-10 09:28:12 39B9273CA01364E115B464416CFB729B 98816 ----a-w- C:\Windows\SysWOW64\Robocopy.exe
2016-11-10 09:28:12 14558D849EC14160AC3DACD8AC36E10A 1040384 ----a-w- C:\Windows\SysWOW64\Display.dll
2016-11-10 09:28:12 12C1BBE5B01F554DC2FA3225131E2D2B 1003008 ----a-w- C:\Windows\SysWOW64\WMNetMgr.dll
2016-11-10 09:28:12 028D74F61952756C9DFFF7969162BB39 571904 ----a-w- C:\Windows\SysWOW64\oleaut32.dll
2016-11-10 09:28:11 9FC4D46F7BCAD9EE8517171195917776 352768 ----a-w- C:\Windows\SysWOW64\termmgr.dll
2016-11-10 09:28:11 909C11946AC04EA54A98C97792DC3C18 324608 ----a-w- C:\Windows\SysWOW64\puiobj.dll
2016-11-10 09:28:11 8A244E6F8004A421359812C3FC55AE1B 135168 ----a-w- C:\Windows\SysWOW64\XpsRasterService.dll
2016-11-10 09:28:11 61AC3EFDFACFDD3F0F11DD4FD4044223 26624 ----a-w- C:\Windows\SysWOW64\userinit.exe
2016-11-10 09:28:11 069E02992AF1732E2F95980F7C590758 197120 ----a-w- C:\Windows\SysWOW64\mssphtb.dll
2016-11-10 09:28:11 050A774CF85E04EE4387515994B8455D 288256 ----a-w- C:\Windows\SysWOW64\eudcedit.exe
2016-11-10 09:28:10 E8CB091A918C1C687B087389D9A66B39 2202624 ----a-w- C:\Windows\SysWOW64\SensorsCpl.dll
2016-11-10 09:28:10 E3AE23569749DE12D45BA3B489A036AE 193536 ----a-w- C:\Windows\SysWOW64\sppcomapi.dll
2016-11-10 09:28:10 C7952D0A4C43A965A1741916BB134751 312832 ----a-w- C:\Windows\SysWOW64\hgcpl.dll
2016-11-10 09:28:10 8EC00CCCBB3436D534FC8DA85FF943BF 649216 ----a-w- C:\Windows\SysWOW64\appwiz.cpl
2016-11-10 09:28:10 8EA53101FF2B15BDFF934B62A8FB326D 127488 ----a-w- C:\Windows\SysWOW64\logoncli.dll
2016-11-10 09:28:10 84897874906481E0B3F4045DAD90D69F 856576 ----a-w- C:\Windows\SysWOW64\FirewallControlPanel.dll
2016-11-10 09:28:10 7DC1FABD139B6AE5743C5DF75EEC5958 109056 ----a-w- C:\Windows\SysWOW64\dnscmmc.dll
2016-11-10 09:28:10 67F9B5C7E215B48F9256757E9CC09A7B 176640 ----a-w- C:\Windows\SysWOW64\rasppp.dll
2016-11-10 09:28:10 64B628C5258625129288F2D0C75268DA 2157568 ----a-w- C:\Windows\SysWOW64\themecpl.dll
2016-11-10 09:28:10 5E6E37DC2EFE39EC146271E22A16844F 111104 ----a-w- C:\Windows\SysWOW64\shsetup.dll
2016-11-10 09:28:10 4D7B1415719FFCC700118318D86FD7EC 416768 ----a-w- C:\Windows\SysWOW64\wiadefui.dll
2016-11-10 09:28:10 41E215F560028DBAA897DEAEF8390A7A 132608 ----a-w- C:\Windows\SysWOW64\cabview.dll
2016-11-10 09:28:10 0BA4982FE2C21D3D4A68B81FB25474D7 413696 ----a-w- C:\Windows\SysWOW64\PhotoScreensaver.scr
2016-11-10 09:28:10 03A03A453F1AAAE0C73AAAF895321C7A 216576 ----a-w- C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-11-10 09:28:09 EB9B8B2C75FFC489F57E16794FD41215 78848 ----a-w- C:\Windows\SysWOW64\iasacct.dll
2016-11-10 09:28:09 D83841B6EE406B58461ACE8A6308AA2D 600064 ----a-w- C:\Windows\SysWOW64\usercpl.dll
2016-11-10 09:28:09 D56D2F498713BD66F50763D5285F4F38 268800 ----a-w- C:\Windows\SysWOW64\mprddm.dll
2016-11-10 09:28:09 A882CD13F68656CFD657E6639D3D3E17 410112 ----a-w- C:\Windows\SysWOW64\wlanui.dll
2016-11-10 09:28:09 8124944EC89D6A1815E4E53F5B96AAF4 175616 ----a-w- C:\Windows\SysWOW64\scecli.dll
2016-11-10 09:28:09 7F8678C59F188528D60104E697C2361E 481792 ----a-w- C:\Windows\SysWOW64\mscms.dll
2016-11-10 09:28:09 75C59DFB82BBB997EB702BE0770619C2 80720 ----a-w- C:\Windows\SysWOW64\mscories.dll
2016-11-10 09:28:09 69C81451DCE63069A036FBF646A86996 828928 ----a-w- C:\Windows\SysWOW64\fontext.dll
2016-11-10 09:28:09 67C1B58706B47EEBA4E117AC197289E6 740864 ----a-w- C:\Windows\SysWOW64\batmeter.dll
2016-11-10 09:28:09 643ADAF1444EAF895420EFA29FA95EBC 514560 ----a-w- C:\Windows\SysWOW64\qdvd.dll
2016-11-10 09:28:09 613BF4820361543956909043A265C6AC 242176 ----a-w- C:\Windows\SysWOW64\tapisrv.dll
2016-11-10 09:28:09 5ABBEF3B5984C29BD9D7CB1C7F35B323 1644032 ----a-w- C:\Windows\SysWOW64\netcenter.dll
2016-11-10 09:28:09 573EF199073CE66169B4A8166EB8581B 429056 ----a-w- C:\Windows\SysWOW64\localsec.dll
2016-11-10 09:28:09 44B13B356C737B628E73833B07CBBF72 509440 ----a-w- C:\Windows\SysWOW64\qedit.dll
2016-11-10 09:28:09 370349F79315D4DB86CD992CACEFEE61 638976 ----a-w- C:\Windows\SysWOW64\VAN.dll
2016-11-10 09:28:09 2CFA4569350B7F84F815E9EC34E85766 220160 ----a-w- C:\Windows\SysWOW64\SndVolSSO.dll
2016-11-10 09:28:09 2305BFF2966D73694972FD7531BC5BAA 314368 ----a-w- C:\Windows\SysWOW64\SndVol.exe
2016-11-10 09:28:09 0FC7E6C8DFB1052F121638485A675761 120320 ----a-w- C:\Windows\SysWOW64\prntvpt.dll
2016-11-10 09:28:09 013CB5286ABB32259349AD858087068C 600576 ----a-w- C:\Windows\SysWOW64\PerfCenterCPL.dll
2016-11-10 09:28:07 BEFF01C9F044BA2AD7F5FB837972FC90 326656 ----a-w- C:\Windows\SysWOW64\sysdm.cpl
2016-11-10 09:28:07 96FE583424174CF7926250ED16C4EA01 66048 ----a-w- C:\Windows\SysWOW64\w32tm.exe
2016-11-10 09:28:07 5BAC1C3853E2D1F3F65CBB578228A268 314368 ----a-w- C:\Windows\SysWOW64\azroleui.dll
2016-11-10 09:28:07 45C0DF404182850C21749AF7763C095F 3727872 ----a-w- C:\Windows\SysWOW64\accessibilitycpl.dll
2016-11-10 09:28:07 1EB40CEBF58C2983497A77442B99B2D0 352768 ----a-w- C:\Windows\SysWOW64\spwizeng.dll
2016-11-10 09:28:06 EA72CAE0FFA2D86522888320ADE6B33E 2130944 ----a-w- C:\Windows\SysWOW64\networkmap.dll
2016-11-10 09:28:06 E343CABBD8D600ABAF3F11625D33B3D0 161792 ----a-w- C:\Windows\SysWOW64\netjoin.dll
2016-11-10 09:28:06 DC190EB70C5C15BB087F893D6E77E5C6 226304 ----a-w- C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-11-10 09:28:06 BA2B249CD7C8CE15E1A8D69ECAEE5FA3 516096 ----a-w- C:\Windows\SysWOW64\main.cpl
2016-11-10 09:28:06 A2F0B6A45EF5B68173AAA2A39690904E 327680 ----a-w- C:\Windows\SysWOW64\zipfldr.dll
2016-11-10 09:28:06 8CBD6FDACDCC0ED48BAF607226D6D0C9 314880 ----a-w- C:\Windows\SysWOW64\wusa.exe
2016-11-10 09:28:06 6F241D9C35D157A376003CDEF2E26CAE 59904 ----a-w- C:\Windows\SysWOW64\fdeploy.dll
2016-11-10 09:28:06 477B711EBF491226FA40301290F66BAC 312168 ----a-w- C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
2016-11-10 09:28:06 3E709F7BFA217CD3B6FC338780465E20 186880 ----a-w- C:\Windows\SysWOW64\adsldp.dll
2016-11-10 09:28:06 28CA821606669BB9215CE010767720FA 1003520 ----a-w- C:\Windows\SysWOW64\cryptui.dll
2016-11-10 09:28:06 1E8D06AAE74FED674C1156B3FEA911C2 320512 ----a-w- C:\Windows\SysWOW64\Faultrep.dll
2016-11-10 09:28:05 C8333F1F77A1B2E25F2202E892CAF634 395264 ----a-w- C:\Windows\SysWOW64\prnfldr.dll
2016-11-10 09:28:05 3FFAEA12666E565FF51BF2FCA674F543 145920 ----a-w- C:\Windows\SysWOW64\cfgmgr32.dll
2016-11-10 09:27:46 F1E9A22C1D4F5D3AC7BA555D4E95329C 755200 ----a-w- C:\Windows\SysWOW64\sud.dll
2016-11-10 09:27:46 9A39A2A5F443A756C568C6ED5748AFE4 744448 ----a-w- C:\Windows\SysWOW64\ActionCenter.dll
2016-11-10 09:27:46 59079D4288FF7175758E838A489DD992 295424 ----a-w- C:\Windows\SysWOW64\photowiz.dll
2016-11-10 09:27:46 4E5FE39C1076D115EC8BFCFE14D75B80 17408 ----a-w- C:\Windows\SysWOW64\credssp.dll
2016-11-10 09:27:46 4A6554C141450D2B6AA6DE17A298AEDA 218112 ----a-w- C:\Windows\SysWOW64\OnLineIDCpl.dll
2016-11-10 09:27:46 3206ADC4D06BB764C9A4936C8E22708C 266752 ----a-w- C:\Windows\SysWOW64\MediaMetadataHandler.dll
2016-11-10 09:27:46 067ADF4DFA75CE40ADE163A5933E8953 301568 ----a-w- C:\Windows\SysWOW64\msieftp.dll
2016-11-10 09:27:45 F44CCA639625EC735667BD8B8E523A33 19456 ----a-w- C:\Windows\SysWOW64\sisbkup.dll
2016-11-10 09:27:45 EB93C2852842F76872DCFB19735775DC 139264 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe
2016-11-10 09:27:45 E9B7D9BBD3E78E7DD053A5108B7649AC 428544 ----a-w- C:\Windows\SysWOW64\shwebsvc.dll
2016-11-10 09:27:45 E82CEFE0D2F98651D556E2437163486B 389632 ----a-w- C:\Windows\SysWOW64\sysmon.ocx
2016-11-10 09:27:45 E3D5E244807AD655787FCD25477CC1BC 692736 ----a-w- C:\Windows\SysWOW64\bthprops.cpl
2016-11-10 09:27:45 D8B2F66671C13C4C2F22FE3A588945F8 271360 ----a-w- C:\Windows\SysWOW64\iprtrmgr.dll
2016-11-10 09:27:45 B06B2FEC249F48C4E7F628B689859AC7 82432 ----a-w- C:\Windows\SysWOW64\dot3cfg.dll
2016-11-10 09:27:45 9996103F8A650BDB3586C9AAE1101912 42496 ----a-w- C:\Windows\SysWOW64\ftp.exe
2016-11-10 09:27:45 82A9C6ADDCC4D392293AF15C09192DEC 148992 ----a-w- C:\Windows\SysWOW64\ifsutil.dll
2016-11-10 09:27:45 73CB55D2E8099D24FD077C990FFE3DDB 220672 ----a-w- C:\Windows\SysWOW64\defaultlocationcpl.dll
2016-11-10 09:27:45 54DEFF61C4E6AF1581DA2F236154BA4C 537600 ----a-w- C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-11-10 09:27:45 477C4F443B046A05A2758471E6893E25 319488 ----a-w- C:\Windows\SysWOW64\odbcjt32.dll
2016-11-10 09:27:45 3F6D9269E7B3A754B1C2F8533DC7F318 205312 ----a-w- C:\Windows\SysWOW64\efscore.dll
2016-11-10 09:27:45 3F0C0726F7C24E852D1590ABE721877D 114688 ----a-w- C:\Windows\SysWOW64\iesysprep.dll
2016-11-10 09:27:45 20A20A911CD79A6F6839167149A05668 159232 ----a-w- C:\Windows\SysWOW64\syncui.dll
2016-11-10 09:27:45 186147C89867B66CB02667D4037C7550 172032 ----a-w- C:\Windows\SysWOW64\iasrad.dll
2016-11-10 09:27:45 0FE24BD8E67F3A6757A5D193A7A9B287 345088 ----a-w- C:\Windows\SysWOW64\intl.cpl
2016-11-10 09:27:44 EA2B00551F3E7B3D5F7FB730A55F8246 743424 ----a-w- C:\Windows\SysWOW64\blackbox.dll
2016-11-10 09:27:44 E9CFC1884D1E579E82073103827FA62B 107008 ----a-w- C:\Windows\SysWOW64\NAPHLPR.DLL
2016-11-10 09:27:44 E62AA52713617C1F402829EBF79653AB 175616 ----a-w- C:\Windows\SysWOW64\netplwiz.dll
2016-11-10 09:27:44 DFA05B91BA331F7407F5F50EEAA9E2B2 146944 ----a-w- C:\Windows\SysWOW64\autoplay.dll
2016-11-10 09:27:44 DBC02D918FFF1CAD628ACBE0C0EAA8E8 165376 ----a-w- C:\Windows\SysWOW64\provsvc.dll
2016-11-10 09:27:44 D7B7159BC8374E87D8C45A30377A3440 69120 ----a-w- C:\Windows\SysWOW64\ntlanman.dll
2016-11-10 09:27:44 D205C24A9D069049FE2DF2A1B38726A7 172032 ----a-w- C:\Windows\SysWOW64\wdmaud.drv
2016-11-10 09:27:44 C140F86932B5B61F54A4D836E2D34AB2 193536 ----a-w- C:\Windows\SysWOW64\ksproxy.ax
2016-11-10 09:27:44 B86FB49A715157C49E2C7205E1817012 182272 ----a-w- C:\Windows\SysWOW64\wmpsrcwp.dll
2016-11-10 09:27:44 B6C47E0FB844FDB75A8DAE5A6487CB8F 427520 ----a-w- C:\Windows\SysWOW64\vbscript.dll
2016-11-10 09:27:44 B64D80C7B5A3441530E26DCFD06951A7 199680 ----a-w- C:\Windows\SysWOW64\mpg2splt.ax
2016-11-10 09:27:44 A912933C92B9C4C70E9039C0B597AE4E 68608 ----a-w- C:\Windows\SysWOW64\WSTPager.ax
2016-11-10 09:27:44 98C66B8010CD7B6865F308ABD87C8E86 805376 ----a-w- C:\Windows\SysWOW64\cdosys.dll
2016-11-10 09:27:44 97D7CC94EEA6EBB6B928EA3DD91A2A0C 196608 ----a-w- C:\Windows\SysWOW64\dskquoui.dll
2016-11-10 09:27:44 8FBE98499ADC541C63BB10B722DA00D4 333824 ----a-w- C:\Windows\SysWOW64\dot3ui.dll
2016-11-10 09:27:44 8CD1DEE212E52B9C22E66DBA44991D32 34816 ----a-w- C:\Windows\SysWOW64\httpapi.dll
2016-11-10 09:27:44 8C545F6F1BA83C15B8B02EE4AA62FF11 270336 ----a-w- C:\Windows\SysWOW64\sethc.exe
2016-11-10 09:27:44 89F5770AD1E9D9CEF93D00303135EC33 297472 ----a-w- C:\Windows\SysWOW64\ntprint.dll
2016-11-10 09:27:44 7B97346CE563B74BBCC120FC83E5A6D9 738816 ----a-w- C:\Windows\SysWOW64\wmpmde.dll
2016-11-10 09:27:44 737AFC772243C75E6AD17A7A8E8E23F9 93696 ----a-w- C:\Windows\SysWOW64\fms.dll
2016-11-10 09:27:44 6EC16BBD14906A59EA8A9A3F71B7F9AD 101888 ----a-w- C:\Windows\SysWOW64\migisol.dll
2016-11-10 09:27:44 521B748A7F9923302CA18B7E6AA2EEAE 202752 ----a-w- C:\Windows\SysWOW64\activeds.dll
2016-11-10 09:27:44 4AC64014668BB2B4834A66B73406AB63 410624 ----a-w- C:\Windows\SysWOW64\systemcpl.dll
2016-11-10 09:27:44 468D6989581E6AEA75DE74D4B3722CC3 859648 ----a-w- C:\Windows\SysWOW64\OobeFldr.dll
2016-11-10 09:27:44 404B123E9460395E3A7338B12C681B92 346112 ----a-w- C:\Windows\SysWOW64\nshipsec.dll
2016-11-10 09:27:44 3FE9A20ECA67745948FD536F8A9E00D9 86528 ----a-w- C:\Windows\SysWOW64\isoburn.exe
2016-11-10 09:27:44 3CC04CB09FAFAD87942437FDDEE11EE3 247808 ----a-w- C:\Windows\SysWOW64\ReAgent.dll
2016-11-10 09:27:44 3C9035085141162416A0DD34DBF3F3C1 428032 ----a-w- C:\Windows\SysWOW64\wlanmsm.dll
2016-11-10 09:27:44 3A16EA01FCFAAB40882DB5BFEE632322 592384 ----a-w- C:\Windows\SysWOW64\msftedit.dll
2016-11-10 09:27:44 2A39F32E0067CBF221611FE1FA8C6D8F 484864 ----a-w- C:\Windows\SysWOW64\DeviceCenter.dll
2016-11-10 09:27:44 2097D9A13CDB88213612E3E8479185F5 222208 ----a-w- C:\Windows\SysWOW64\wavemsp.dll
2016-11-10 09:27:44 104A1070E90F1C530328E69B49718841 52224 ----a-w- C:\Windows\SysWOW64\nlaapi.dll
2016-11-10 09:27:44 102CF6879887BBE846A00C459E6D4ABC 473600 ----a-w- C:\Windows\SysWOW64\riched20.dll
2016-11-10 09:27:44 0C0DF0F05BAEA320FA301F34E256E08B 257024 ----a-w- C:\Windows\SysWOW64\dpx.dll
2016-11-10 09:27:44 0B09C2A5AE40C10FF8C2CA80143B8AC2 656384 ----a-w- C:\Windows\SysWOW64\nshwfp.dll
2016-11-10 09:27:44 0915C4DB6DBC3BB9E11B7ECBBE4B7159 37376 ----a-w- C:\Windows\SysWOW64\rtutils.dll
2016-11-10 09:27:44 088CF5B6380FB9002F2A4246F812225D 67584 ----a-w- C:\Windows\SysWOW64\asycfilt.dll
2016-11-10 09:27:44 05BF975CA428E04B462FB90841B37C95 152064 ----a-w- C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2016-11-10 09:27:43 FB036244DBD2FADC225AD8650886B641 586752 ----a-w- C:\Windows\SysWOW64\dfrgui.exe
2016-11-10 09:27:43 B4D3BDF863B81BF84658396666CF7200 197632 ----a-w- C:\Windows\SysWOW64\ocsetup.exe
2016-11-10 09:27:43 918379B6C94AA59F567E06FB4E0E5E1B 685056 ----a-w- C:\Windows\SysWOW64\dsuiext.dll
2016-11-10 09:27:43 8DDD47810EE260744BEAA82EFA2DB9BB 47616 ----a-w- C:\Windows\SysWOW64\tzutil.exe
2016-11-10 09:27:43 861A80C7DCA93A95327463D7F8C9CE64 406528 ----a-w- C:\Windows\SysWOW64\wimgapi.dll
2016-11-10 09:27:43 6A6B2EE4565A178035BE2A4FF6F2C968 40448 ----a-w- C:\Windows\SysWOW64\wtsapi32.dll
2016-11-10 09:27:43 61EABC3358D869519D851B08C8FA512D 269824 ----a-w- C:\Windows\SysWOW64\KernelBase.dll
2016-11-10 09:27:43 0BD483CECD8DAC86E04347589ADC71EE 444928 ----a-w- C:\Windows\SysWOW64\wvc.dll
2016-11-10 09:27:42 FD4C4F9EC7D6D23E282F9375B4029AE5 118784 ----a-w- C:\Windows\SysWOW64\uxlib.dll
2016-11-10 09:27:42 F6FD7F8147A591317E57D9008C8C7541 327680 ----a-w- C:\Windows\SysWOW64\wimserv.exe
2016-11-10 09:27:42 E4F28616800A35987EBE84294EC4461C 64512 ----a-w- C:\Windows\SysWOW64\msfeedsbs.dll
2016-11-10 09:27:42 DC661CF87F2501A8B8D9628C006AA3BD 157184 ----a-w- C:\Windows\SysWOW64\perfmon.exe
2016-11-10 09:27:42 D29E45078CF4020CE0AAC82EC652D1EA 65024 ----a-w- C:\Windows\SysWOW64\TSpkg.dll
2016-11-10 09:27:42 CC5BF60E9D3F181C0B62AC91AD8634B8 190976 ----a-w- C:\Windows\SysWOW64\qcap.dll
2016-11-10 09:27:42 C9708C9F3DBA3DBFB1D2FEE1E9DABAD0 146432 ----a-w- C:\Windows\SysWOW64\twext.dll
2016-11-10 09:27:42 C5AD8083CF94201F1F8084ECC696A8B7 663040 ----a-w- C:\Windows\SysWOW64\rpcrt4.dll
2016-11-10 09:27:42 C5A99A4C0DC9F0F5A95BA0C83D30A549 209920 ----a-w- C:\Windows\SysWOW64\mstask.dll
2016-11-10 09:27:42 C335EC1182AC10B188705554E0BC1186 120320 ----a-w- C:\Windows\SysWOW64\msvfw32.dll
2016-11-10 09:27:42 C06A8EB439D3451DF15828FF1CB7D0F8 209920 ----a-w- C:\Windows\SysWOW64\PkgMgr.exe
2016-11-10 09:27:42 BF1EAD0561F37CEA65F76DD276F90E04 276480 ----a-w- C:\Windows\SysWOW64\diskraid.exe
2016-11-10 09:27:42 BE247AE996A9FDE007A27B51413A6C79 179712 ----a-w- C:\Windows\SysWOW64\shdocvw.dll
2016-11-10 09:27:42 B57053CD59114D36952461EE638D3784 45568 ----a-w- C:\Windows\SysWOW64\acppage.dll
2016-11-10 09:27:42 AE9898D5600A232CD8AE3298692162E5 230912 ----a-w- C:\Windows\SysWOW64\clusapi.dll
2016-11-10 09:27:42 AD6DB3F85D329ABA90EAF7B2D8A2EEA9 293888 ----a-w- C:\Windows\SysWOW64\ssText3d.scr
2016-11-10 09:27:42 A54E92AE753D4BC63FE71F010F76EF04 206848 ----a-w- C:\Windows\SysWOW64\qasf.dll
2016-11-10 09:27:42 A4EE3D80E31D5A3CA8EBE6A67A06CEC0 229376 ----a-w- C:\Windows\SysWOW64\webcheck.dll
2016-11-10 09:27:42 9D30A820EAB9C146BB59557CA0236875 186368 ----a-w- C:\Windows\SysWOW64\rdpencom.dll
2016-11-10 09:27:42 9B6B7078934E30B39104951DFEA32EFB 195072 ----a-w- C:\Windows\SysWOW64\msrating.dll
2016-11-10 09:27:42 93117349047DDB7B3FF24EB006207606 34304 ----a-w- C:\Windows\SysWOW64\imgutil.dll
2016-11-10 09:27:42 824E84AC88AC9F82D772960657E094D1 113152 ----a-w- C:\Windows\SysWOW64\setupugc.exe
2016-11-10 09:27:42 735263DA17BF5BAF9CCD483843BF9D5A 105984 ----a-w- C:\Windows\SysWOW64\WPDShServiceObj.dll
2016-11-10 09:27:42 6AB21F19D02E37F87EB09482B57D35E5 153088 ----a-w- C:\Windows\SysWOW64\occache.dll
2016-11-10 09:27:42 6036FEA5F21DF7BBE788DF7F070ACB66 70656 ----a-w- C:\Windows\SysWOW64\fontsub.dll
2016-11-10 09:27:42 5E3830EE3282A53920E00784FEC44CFD 98304 ----a-w- C:\Windows\SysWOW64\nslookup.exe
2016-11-10 09:27:42 5DC6DBFC22911C58FD2C9208A9756021 211456 ----a-w- C:\Windows\SysWOW64\DevicePairingFolder.dll
2016-11-10 09:27:42 510B493DF0DD669E60879B6B19E9B949 504320 ----a-w- C:\Windows\SysWOW64\msscp.dll
2016-11-10 09:27:42 4634B0EE4098F0F2B972BDAC19A802E7 243712 ----a-w- C:\Windows\SysWOW64\audiodev.dll
2016-11-10 09:27:42 451E47CF063A37D105A1D2111FD4C4E5 84480 ----a-w- C:\Windows\SysWOW64\mciavi32.dll
2016-11-10 09:27:42 394117608EB031E622D4812E67746F09 616960 ----a-w- C:\Windows\SysWOW64\wmdrmsdk.dll
2016-11-10 09:27:42 377F0C1DDBFA6A43CB7E7568BC0ECED0 281088 ----a-w- C:\Windows\SysWOW64\unimdm.tsp
2016-11-10 09:27:42 292F2FA57EB9B773DA1C15AFCC4A4F90 146944 ----a-w- C:\Windows\SysWOW64\remotepg.dll
2016-11-10 09:27:42 207CF171B1C6B8AE50C1FBF87363EEBC 318976 ----a-w- C:\Windows\SysWOW64\raschap.dll
2016-11-10 09:27:42 19F75D71E4256F5113D64CE2BB66B838 14336 ----a-w- C:\Windows\SysWOW64\slwga.dll
2016-11-10 09:27:41 F645EF77ED0735B927E9804E28855E17 299520 ----a-w- C:\Windows\SysWOW64\wmpdxm.dll
2016-11-10 09:27:41 EA7D55E6964AA852BC7AE6F1C3349A55 95232 ----a-w- C:\Windows\SysWOW64\logagent.exe
2016-11-10 09:27:41 D44741F65A1D71F65814A12CF6E2400A 50688 ----a-w- C:\Windows\SysWOW64\runonce.exe
2016-11-10 09:27:41 CF3CD3F466D84C9E2F66490D9578A563 160256 ----a-w- C:\Windows\SysWOW64\vdsbas.dll
2016-11-10 09:27:41 CA63BC9F834A42DAA8375FAC76B5CE83 198144 ----a-w- C:\Windows\SysWOW64\wpdwcn.dll
2016-11-10 09:27:41 BD626EF05967D14C772B8096292731A3 80896 ----a-w- C:\Windows\SysWOW64\QUTIL.DLL
2016-11-10 09:27:41 ACA1F50844E08F3F5178E8FF3F21FBC2 78848 ----a-w- C:\Windows\SysWOW64\UserAccountControlSettings.dll
2016-11-10 09:27:41 A77E0E5B15E6956C19E7269566ABE6C7 1111552 ----a-w- C:\Windows\SysWOW64\onexui.dll
2016-11-10 09:27:41 9B9A0802B4E34CC4D9DB04AB6ABFA8AE 202240 ----a-w- C:\Windows\SysWOW64\input.dll
2016-11-10 09:27:41 93C4029DABC19166076BE347283AB969 46080 ----a-w- C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-11-10 09:27:41 703FFD301AB900B047337C5D40FD6F96 90112 ----a-w- C:\Windows\SysWOW64\olepro32.dll
2016-11-10 09:27:41 69C85737F4CA5634E7A19B818579D176 210432 ----a-w- C:\Windows\SysWOW64\dxdiagn.dll
2016-11-10 09:27:41 5845B1C54380FB980F68024B3A8B1E66 25600 ----a-w- C:\Windows\SysWOW64\vpnikeapi.dll
2016-11-10 09:27:41 3D57FFBAD3ED16B63DE3879BAB0FB56F 1661440 ----a-w- C:\Windows\SysWOW64\networkexplorer.dll
2016-11-10 09:27:41 29C620A02D9703AC81FD666C3EF082C2 122880 ----a-w- C:\Windows\SysWOW64\odbccp32.dll
2016-11-10 09:27:41 2708C75F1A7FA45403383C7E43A82A81 402944 ----a-w- C:\Windows\SysWOW64\drmmgrtn.dll
2016-11-10 09:27:41 1A592132917CB343E692B419C2A1BD9F 96256 ----a-w- C:\Windows\SysWOW64\inseng.dll
2016-11-10 09:27:41 1274A7FD37E2DA781282CEE1D2131374 174592 ----a-w- C:\Windows\SysWOW64\ocsetapi.dll
2016-11-10 09:27:41 0F75B8C47003F47B7358C7840FA3883C 83968 ----a-w- C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-11-10 09:27:41 00F48A9D03F672F7EBE601FFA9BB6F28 219648 ----a-w- C:\Windows\SysWOW64\iTVData.dll
2016-11-10 09:27:39 FF3C5379DE4FD18498C255D096FED3F5 902656 ----a-w- C:\Windows\SysWOW64\WMADMOD.DLL
2016-11-10 09:27:39 F7CF764F8155492EB50E4505A6DA8D87 427520 ----a-w- C:\Windows\SysWOW64\PortableDeviceStatus.dll
2016-11-10 09:27:39 F75BFDACAF4AD540444FFC31B49BDA99 489984 ----a-w- C:\Windows\SysWOW64\d3d10level9.dll
2016-11-10 09:27:39 F65D14471F76F9C91315352932408939 99328 ----a-w- C:\Windows\SysWOW64\QSVRMGMT.DLL
2016-11-10 09:27:39 F14A9B1778376D0B1788E402AC1F831A 108032 ----a-w- C:\Windows\SysWOW64\shacct.dll
2016-11-10 09:27:39 EF64A97756128630A40B41C3B2567259 318464 ----a-w- C:\Windows\SysWOW64\WMPhoto.dll
2016-11-10 09:27:39 EEE470F2A771FC0B543BDEEF74FCECA0 73216 ----a-w- C:\Windows\SysWOW64\msiexec.exe
2016-11-10 09:27:39 E9C7D94D71857409BF741F1B7561D0E6 105472 ----a-w- C:\Windows\SysWOW64\wmpshell.dll
2016-11-10 09:27:39 E9AEF26AEEBFAAB901FAB3D93677DF98 72704 ----a-w- C:\Windows\SysWOW64\Mpeg2Data.ax
2016-11-10 09:27:39 E783DE1447EC0EED7B768BB69705D8E3 84480 ----a-w- C:\Windows\SysWOW64\kstvtune.ax
2016-11-10 09:27:39 E715C4BA7BB5C8594DD8BB88FD030477 163840 ----a-w- C:\Windows\SysWOW64\odbctrac.dll
2016-11-10 09:27:39 DCEABBA22E12CC44C2E7785C0EB9C6E3 91648 ----a-w- C:\Windows\SysWOW64\avifil32.dll
2016-11-10 09:27:39 D8868258E3F26B40ECB8E945C2DA8BD9 142336 ----a-w- C:\Windows\SysWOW64\powercfg.cpl
2016-11-10 09:27:39 D4191EFAB91E00FC09257AA5EBAF503B 158720 ----a-w- C:\Windows\SysWOW64\mprapi.dll
2016-11-10 09:27:39 D25958B2A71EF488959272878EF934BE 31744 ----a-w- C:\Windows\SysWOW64\utildll.dll
2016-11-10 09:27:39 D15880276D208AF03521B8F922C1F3B5 221184 ----a-w- C:\Windows\SysWOW64\Mystify.scr
2016-11-10 09:27:39 D0C94D78DC8652153F020F5B6ACED36F 52224 ----a-w- C:\Windows\SysWOW64\rdpd3d.dll
2016-11-10 09:27:39 C555046481601ED19920F2D3E76B8A36 36864 ----a-w- C:\Windows\SysWOW64\tsgqec.dll
2016-11-10 09:27:39 B21B85E60DA18D7D338599D95D4CB211 77824 ----a-w- C:\Windows\SysWOW64\olethk32.dll
2016-11-10 09:27:39 A29E036A5A3B37C7530F3EA1CF385129 21504 ----a-w- C:\Windows\SysWOW64\lsmproxy.dll
2016-11-10 09:27:39 9D67B55896F679CD6C0FC7EAD0F4BDEA 183296 ----a-w- C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2016-11-10 09:27:39 9B9EF57993ECC02CE7469F3F3AC3CE10 242176 ----a-w- C:\Windows\SysWOW64\eapp3hst.dll
2016-11-10 09:27:39 98F657555DD1C1A30362927DF8FBB266 28672 ----a-w- C:\Windows\SysWOW64\iscsium.dll
2016-11-10 09:27:39 9204A9C716B7B4AA451010DEDB0BB5BE 176128 ----a-w- C:\Windows\SysWOW64\MFPlay.dll
2016-11-10 09:27:39 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\SysWOW64\mapistub.dll
2016-11-10 09:27:39 8BC9DB92C4B2F3BE89185BEAB2AFC1F6 76800 ----a-w- C:\Windows\SysWOW64\mapi32.dll
2016-11-10 09:27:39 831319977C168FFCF4E9ABB83A992F80 220672 ----a-w- C:\Windows\SysWOW64\Ribbons.scr
2016-11-10 09:27:39 8126CB6DEA909054E4ECA1F0D55B7579 98304 ----a-w- C:\Windows\SysWOW64\fphc.dll
2016-11-10 09:27:39 7DF45A1E1A4AAFDEEFF2CA8F8200F37B 350720 ----a-w- C:\Windows\SysWOW64\WPDSp.dll
2016-11-10 09:27:39 775C41C2F2EF3DD150A7444B95E631D0 878592 ----a-w- C:\Windows\SysWOW64\Bubbles.scr
2016-11-10 09:27:39 5CF15474FFDB5005E54958DF6EDD97AB 507392 ----a-w- C:\Windows\SysWOW64\wmdrmdev.dll
2016-11-10 09:27:39 5CCDCD40E732D54E0F7451AC66AC1C87 90112 ----a-w- C:\Windows\SysWOW64\srvcli.dll
2016-11-10 09:27:39 53CA6BF58658815FCB472205291DD953 59392 ----a-w- C:\Windows\SysWOW64\unimdmat.dll
2016-11-10 09:27:39 487F44B08EFEAF5AD087878357B9403D 236544 ----a-w- C:\Windows\SysWOW64\pdh.dll
2016-11-10 09:27:39 465BEA35F7ED4A4A57686DEA7EA10F47 34816 ----a-w- C:\Windows\SysWOW64\cscapi.dll
2016-11-10 09:27:39 45DC6C69CE5759666EC758BAD657B040 31744 ----a-w- C:\Windows\SysWOW64\msvidc32.dll
2016-11-10 09:27:39 3C978218A87248FA7D1BD33C8AC7B447 67072 ----a-w- C:\Windows\SysWOW64\mshtmled.dll
2016-11-10 09:27:39 37485CC09B7E6E70093A4DF62B3CC744 1160192 ----a-w- C:\Windows\SysWOW64\OpcServices.dll
2016-11-10 09:27:39 33CDDA42E768A997827CC480EC13DAD5 60928 ----a-w- C:\Windows\SysWOW64\ncryptui.dll
2016-11-10 09:27:39 2F3FD95C12AAED396EB1FFE4AF919BFF 82944 ----a-w- C:\Windows\SysWOW64\logman.exe
2016-11-10 09:27:39 13CDD3FF0961A2EC6D9829A1640DD6DC 309760 ----a-w- C:\Windows\SysWOW64\sqlcese30.dll
2016-11-10 09:27:39 0920B14AA67A8B04ACF48FFE7C6F0927 186368 ----a-w- C:\Windows\SysWOW64\bitsadmin.exe
2016-11-10 09:27:38 CE292C4C10B8DB6070F262EA2733F0DC 189952 ----a-w- C:\Windows\SysWOW64\sqmapi.dll
2016-11-10 09:27:38 B2FD31E20B423335FE3273B4BF95813C 155136 ----a-w- C:\Windows\SysWOW64\imagehlp.dll
2016-11-10 09:27:38 AF2E7640E72F005DDB86158E1F8BA1FC 109568 ----a-w- C:\Windows\SysWOW64\wiavideo.dll
2016-11-10 09:27:38 9E44D3D2D1D2DA5ED565D471E350F1CD 541184 ----a-w- C:\Windows\SysWOW64\WMVSDECD.DLL
2016-11-10 09:27:38 92DF43A9CDD39C67F2B2D2F98799E086 283136 ----a-w- C:\Windows\SysWOW64\qdv.dll
2016-11-10 09:27:38 8007508CEF6A5B10C24F7971DAF00F09 51200 ----a-w- C:\Windows\SysWOW64\takeown.exe
2016-11-10 09:27:38 71EAF975B87917ADCB26886482F6FB5B 75776 ----a-w- C:\Windows\SysWOW64\psisrndr.ax
2016-11-10 09:27:38 630A31F277349109299E590856A4B004 107008 ----a-w- C:\Windows\SysWOW64\Kswdmcap.ax
2016-11-10 09:27:38 55663BED58AEDDE8ADE37A582CD8380C 50176 ----a-w- C:\Windows\SysWOW64\iyuv_32.dll
2016-11-10 09:27:38 4D6262D5CFFA7D932126D2B85C373F87 153600 ----a-w- C:\Windows\SysWOW64\VBICodec.ax
2016-11-10 09:27:38 41A2EEB3FC7C4677787C612478DBD69A 436736 ----a-w- C:\Windows\SysWOW64\wmdrmnet.dll
2016-11-10 09:27:38 1060D60CCA69A8136A87DBE3C8F4A467 128512 ----a-w- C:\Windows\SysWOW64\EhStorAPI.dll
2016-11-10 09:27:38 0CE0812F2BDFED908FB1066AD4B868C7 115200 ----a-w- C:\Windows\SysWOW64\dot3msm.dll
2016-11-10 09:27:17 E5A4A1326A02F8E7B59E6C3270CE7202 47104 ----a-w- C:\Windows\SysWOW64\wkscli.dll
2016-11-10 09:27:17 D4496F4DC6B90F6915CEB1DB20B44C07 25600 ----a-w- C:\Windows\SysWOW64\netiougc.exe
2016-11-10 09:27:17 D30117DB43F48C4DBA9B41C08156A339 22528 ----a-w- C:\Windows\SysWOW64\msyuv.dll
2016-11-10 09:27:17 CC0C2CF2EBD58234C45C5D0C046ABB79 28160 ----a-w- C:\Windows\SysWOW64\AzSqlExt.dll
2016-11-10 09:27:17 CB9EF09B4BF03F8DE663B3F55D61A8E9 265216 ----a-w- C:\Windows\SysWOW64\msnetobj.dll
2016-11-10 09:27:17 CACE16598662D697169B3B1EF2FA4549 85504 ----a-w- C:\Windows\SysWOW64\secproc_ssp.dll
2016-11-10 09:27:17 BC080CEA43CB990F28B049742706581F 61952 ----a-w- C:\Windows\SysWOW64\spbcd.dll
2016-11-10 09:27:17 B2E1E4A16EDD02396F451F915FA3CBFA 69632 ----a-w- C:\Windows\SysWOW64\rastapi.dll
2016-11-10 09:27:17 925AE681543B4E666E172B5BD7E45B32 71680 ----a-w- C:\Windows\SysWOW64\QCLIPROV.DLL
2016-11-10 09:27:17 7BD10646253ED4F6FD361279181362E7 70656 ----a-w- C:\Windows\SysWOW64\MuiUnattend.exe
2016-11-10 09:27:17 7B47059ADEA2983C073562DD40F3FD73 46592 ----a-w- C:\Windows\SysWOW64\pdhui.dll
2016-11-10 09:27:17 79C626237AD93981BDF72606DD543CEE 37888 ----a-w- C:\Windows\SysWOW64\relog.exe
2016-11-10 09:27:17 7224D964A6D657374C551C878EB2C386 96768 ----a-w- C:\Windows\SysWOW64\sspicli.dll
2016-11-10 09:27:17 665AAD05AEE9E37A7A9BAEDCAC775989 12288 ----a-w- C:\Windows\SysWOW64\tsbyuv.dll
2016-11-10 09:27:17 65B76F79BA94CF8837D556D4C9067773 739328 ----a-w- C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-11-10 09:27:17 6357E2B68753A1F5CF4A68A25C4FD14A 51712 ----a-w- C:\Windows\SysWOW64\wsnmp32.dll
2016-11-10 09:27:17 5A220C5CFC74AB3C2517D1F1B670D5D3 100864 ----a-w- C:\Windows\SysWOW64\sppinst.dll
2016-11-10 09:27:17 56D80B7E622338AF0F93B25A85D97188 14848 ----a-w- C:\Windows\SysWOW64\syssetup.dll
2016-11-10 09:27:17 50BB4FBC720D23497EEB5C9DAC497405 136192 ----a-w- C:\Windows\SysWOW64\mydocs.dll
2016-11-10 09:27:17 4EA584FCC419E66E9ADCEEAE0B0A7301 122880 ----a-w- C:\Windows\SysWOW64\iasrecst.dll
2016-11-10 09:27:17 4542DED3177F52CF075565987885EB0D 144896 ----a-w- C:\Windows\SysWOW64\iscsicli.exe
2016-11-10 09:27:17 44F5C1CF70AC8F7239F3B3667E58697A 65024 ----a-w- C:\Windows\SysWOW64\CertPolEng.dll
2016-11-10 09:27:17 3FBBE458FB60D5F38EF5E19F53772088 66560 ----a-w- C:\Windows\SysWOW64\cca.dll
2016-11-10 09:27:17 3F5A4F3A11EAA28DCD5C85C06C09D853 115712 ----a-w- C:\Windows\SysWOW64\setupcln.dll
2016-11-10 09:27:17 382BDDDE3438F9A65935ABC6B3F76D1B 70656 ----a-w- C:\Windows\SysWOW64\amstream.dll
2016-11-10 09:27:17 2C60338287CB0AEC009D0B48CEA864D2 133632 ----a-w- C:\Windows\SysWOW64\diskpart.exe
2016-11-10 09:27:17 2BC3BA232E46F310BEDF9A14260AD650 85504 ----a-w- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2016-11-10 09:27:17 2AF094C822BD6094F14A8E85FB51D52A 71168 ----a-w- C:\Windows\SysWOW64\resutils.dll
2016-11-10 09:27:17 24498D084FAA7A459C91066EC241E1CE 56832 ----a-w- C:\Windows\SysWOW64\vfwwdm32.dll
2016-11-10 09:27:17 100733DAEA508929EDDF1A3A3B7324CE 158720 ----a-w- C:\Windows\SysWOW64\itircl.dll
2016-11-10 09:27:17 0AEE06C1CB1123AE2C9873908DB59BAF 176128 ----a-w- C:\Windows\SysWOW64\msorcl32.dll
2016-11-10 09:27:17 079D12BFED9E3E03D02A44BAF8FFA3A9 128000 ----a-w- C:\Windows\SysWOW64\desk.cpl
2016-11-10 09:27:17 04FAE971A77E76B3F4EF44053AEE0905 13312 ----a-w- C:\Windows\SysWOW64\msrle32.dll
2016-11-10 09:27:17 02C25A63D58FC12DEA8FA4ECDB832CC0 24064 ----a-w- C:\Windows\SysWOW64\netbtugc.exe
2016-11-10 09:27:17 00263CA2071DC9A6EE577EB356B0D1D9 84992 ----a-w- C:\Windows\SysWOW64\cmstp.exe
2016-11-10 09:27:16 FAA05DD44E5DF264AEBE3F03BA4211BB 35840 ----a-w- C:\Windows\SysWOW64\shimgvw.dll
2016-11-10 09:27:16 E81591FCC19409E11F9A913728746391 31232 ----a-w- C:\Windows\SysWOW64\prevhost.exe
2016-11-10 09:27:16 E460AFD3A201408919ADB05977095E8D 69632 ----a-w- C:\Windows\SysWOW64\tlscsp.dll
2016-11-10 09:27:16 CCA67BD391CFC9F036323B2522887A6A 101376 ----a-w- C:\Windows\SysWOW64\mobsync.exe
2016-11-10 09:27:16 C2DF5544931944AE00C59A0B3080EBFE 41984 ----a-w- C:\Windows\SysWOW64\luainstall.dll
2016-11-10 09:27:16 B2120B16B3E221B4D3342E87867A5163 280064 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp.exe
2016-11-10 09:27:16 AD61F7AFE913B2642650504DF283AA63 28672 ----a-w- C:\Windows\SysWOW64\dnscacheugc.exe
2016-11-10 09:27:16 AC32AF909111561893E42E8EC89C5532 1027584 ----a-w- C:\Windows\SysWOW64\IMJP10.IME
2016-11-10 09:27:16 AA5F3F417DF0F470D67A7862451EA8E1 36352 ----a-w- C:\Windows\SysWOW64\mciqtz32.dll
2016-11-10 09:27:16 A8CE0C7F1D37E0B8082608A148B6B976 22016 ----a-w- C:\Windows\SysWOW64\secur32.dll
2016-11-10 09:27:16 8E4B58E12B3FA65ED1462846906E0B59 121344 ----a-w- C:\Windows\SysWOW64\sppc.dll
2016-11-10 09:27:16 8CE1A6D16B9077E91E192499EB611C5F 56832 ----a-w- C:\Windows\SysWOW64\netapi32.dll
2016-11-10 09:27:16 7A6986DD659B96398A11AF5173892715 73216 ----a-w- C:\Windows\SysWOW64\cabinet.dll
2016-11-10 09:27:16 6DB7ECBA34165ACB99A1A3C7F739E757 94208 ----a-w- C:\Windows\SysWOW64\eappgnui.dll
2016-11-10 09:27:16 5F8B3561CD7024C0F488A2E43434AE22 13312 ----a-w- C:\Windows\SysWOW64\muifontsetup.dll
2016-11-10 09:27:16 4DAD175C07B982A1518FE64FDBB7071A 28672 ----a-w- C:\Windows\SysWOW64\WerFaultSecure.exe
2016-11-10 09:27:16 3F2B83695E5BF11930C16AF50E991F96 144384 ----a-w- C:\Windows\SysWOW64\wmpps.dll
2016-11-10 09:27:16 3D97D200A1449F3995E88BEA8F7D0C81 48640 ----a-w- C:\Windows\SysWOW64\ksxbar.ax
2016-11-10 09:27:16 3C519BC7767F41F1C88DB0395F31A817 19968 ----a-w- C:\Windows\SysWOW64\spopk.dll
2016-11-10 09:27:16 2BF84985DE59544A0460BB33F804DA3A 22016 ----a-w- C:\Windows\SysWOW64\ReAgentc.exe
2016-11-10 09:27:16 2883942DF154A6CEBDB75B42C0093CF3 59904 ----a-w- C:\Windows\SysWOW64\MSDvbNP.ax
2016-11-10 09:27:16 20B3934DB73EABA2B49B7177873CB81F 22528 ----a-w- C:\Windows\SysWOW64\netutils.dll
2016-11-10 09:27:16 1DE21EC4A2232FF4F5298ADCAE7B3690 82944 ----a-w- C:\Windows\SysWOW64\iccvid.dll
2016-11-10 09:27:16 199D8ECB6748B2B866CBA52A8D092034 278016 ----a-w- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2016-11-10 09:27:16 18F02C555FBC9885DF9DB77754D6BB9B 62976 ----a-w- C:\Windows\SysWOW64\findstr.exe
2016-11-10 09:27:15 FB1BA42D1A1440E99C6B8667E141CFB1 17408 ----a-w- C:\Windows\SysWOW64\perfts.dll
2016-11-10 09:27:15 E84735F79C272FCEC320A6BED2861475 45568 ----a-w- C:\Windows\SysWOW64\g711codc.ax
2016-11-10 09:27:15 BF7DDBE14FA4B68AAB6A3C78EF5C96B8 52736 ----a-w- C:\Windows\SysWOW64\inetmib1.dll
2016-11-10 09:27:15 A6F09E5669D9A19035F6D942CAA15882 119808 ----a-w- C:\Windows\SysWOW64\imm32.dll
2016-11-10 09:27:15 86B9E27CDB040DE1C981BEC2A56326A7 1164800 ----a-w- C:\Windows\SysWOW64\UIRibbonRes.dll
2016-11-10 09:27:15 7069AAB8536F29ED7323140973A2894B 30720 ----a-w- C:\Windows\SysWOW64\msdmo.dll
2016-11-10 09:27:15 6E2C504C11A2D0B3820EDAF66E6DF06B 40960 ----a-w- C:\Windows\SysWOW64\odbcconf.dll
2016-11-10 09:27:15 6C796F88B7D9BF52A45757E2C837185A 21504 ----a-w- C:\Windows\SysWOW64\rdprefdrvapi.dll
2016-11-10 09:27:15 45760EECC8B74B251171BE4F247F17CB 41984 ----a-w- C:\Windows\SysWOW64\browcli.dll
2016-11-10 09:27:15 373A87DBFD387DDC54375F547834FBBD 33792 ----a-w- C:\Windows\SysWOW64\vbisurf.ax
2016-11-10 09:27:15 2C098921217204301D76BF3BD5D953BB 34304 ----a-w- C:\Windows\SysWOW64\unlodctr.exe
2016-11-10 09:27:12 CFD8B8537036CF35F6254192997A4D8E 20992 ----a-w- C:\Windows\SysWOW64\shgina.dll
2016-11-10 09:27:12 B5506B451BFE7148ECA7056BDA2970BD 8704 ----a-w- C:\Windows\SysWOW64\riched32.dll
2016-11-10 09:27:12 AC122407B29378FF9646F03404AC7C54 36352 ----a-w- C:\Windows\SysWOW64\wshbth.dll
2016-11-10 09:27:12 AAF7BEB63E2CC499834B608A85A55E4E 21504 ----a-w- C:\Windows\SysWOW64\wsdchngr.dll
2016-11-10 09:27:12 A42E7748BE906434C5FD17161D168C20 17408 ----a-w- C:\Windows\SysWOW64\schedcli.dll
2016-11-10 09:27:12 9E122E5CD1BB79CF8F0BCEAC947B81C0 68096 ----a-w- C:\Windows\SysWOW64\napdsnap.dll
2016-11-10 09:27:12 89E783711AF91AF09E1EF30EF3107446 9728 ----a-w- C:\Windows\SysWOW64\sscore.dll
2016-11-10 09:27:12 7B3FD36359DE5D2EE49D213CCAD13427 22528 ----a-w- C:\Windows\SysWOW64\elsTrans.dll
2016-11-10 09:27:12 6D666983C638F5E507C4A11AED1291CC 30208 ----a-w- C:\Windows\SysWOW64\dsauth.dll
2016-11-10 09:27:12 667CCB1A75CE6853B08CE16EA908BB88 12800 ----a-w- C:\Windows\SysWOW64\msfeedssync.exe
2016-11-10 09:27:12 57A51217581614DE07F30E34D6BB4993 23040 ----a-w- C:\Windows\SysWOW64\cscdll.dll
2016-11-10 09:27:12 543324F86787BFA31AABBAA7A91D08D0 21504 ----a-w- C:\Windows\SysWOW64\TRAPI.dll
2016-11-10 09:27:12 426B3701F975B6C160F1C925A2E6CADF 34304 ----a-w- C:\Windows\SysWOW64\atmlib.dll
2016-11-10 09:27:12 41EE23F636C6E9BDE5E8C09454CBEEFD 430080 ----a-w- C:\Windows\SysWOW64\imkr80.ime
2016-11-10 09:27:12 0552A8684BF7566F744D5B19FF6AEC6B 19456 ----a-w- C:\Windows\SysWOW64\bitsperf.dll
2016-11-10 09:27:11 F977BE7B8C5462087374364EAFB3C15B 10752 ----a-w- C:\Windows\SysWOW64\browseui.dll
2016-11-10 09:27:11 B50ADE806DA25E20449C3EC822F2A24A 386048 ----a-w- C:\Windows\SysWOW64\html.iec
2016-11-10 09:27:11 21CE1E98A17FD46BE371719DFD046958 11264 ----a-w- C:\Windows\SysWOW64\wshirda.dll
2016-11-10 09:27:11 0A4A970D997125C7E8A06D72C20369FB 8192 ----a-w- C:\Windows\SysWOW64\spwmp.dll
2016-11-10 09:27:10 CE2900082FA2FCFF84DB7C54E8157AE7 7680 ----a-w- C:\Windows\SysWOW64\KBDTUF.DLL
2016-11-10 09:27:10 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\SysWOW64\msdxm.ocx
2016-11-10 09:27:10 1AD13A1281BAC6D90B1512A6FFCBB78C 4096 ----a-w- C:\Windows\SysWOW64\dxmasf.dll
2016-11-10 09:27:10 0A8E209F3C1D1FB6889465D1019CC5BF 10752 ----a-w- C:\Windows\SysWOW64\shunimpl.dll
2016-11-10 09:27:10 088F89DE9FC7B7B2987A8FD56283E8AE 7680 ----a-w- C:\Windows\SysWOW64\KBDSG.DLL
2016-11-10 09:27:10 035074DAEB2333A248FD9C6B88AD16CD 11264 ----a-w- C:\Windows\SysWOW64\C_ISCII.DLL
2016-11-10 09:27:09 7092786358683785D33750D5065E582B 7680 ----a-w- C:\Windows\SysWOW64\kbdlk41a.dll
2016-11-10 09:27:09 4A386B6D98985211DD53230E021D96DB 7680 ----a-w- C:\Windows\SysWOW64\KBDGKL.DLL
2016-11-10 09:27:09 2D4B571E791864812B1E16593DB04059 7680 ----a-w- C:\Windows\SysWOW64\KBDGR1.DLL
2016-11-10 09:27:09 15A3B56FC389403885B34D80F16F7F19 7680 ----a-w- C:\Windows\SysWOW64\KBDTUQ.DLL
2016-11-10 09:27:08 FEA475B6EA19F97552FF8DB32A7CA466 6656 ----a-w- C:\Windows\SysWOW64\KBDBLR.DLL
2016-11-10 09:27:08 D6801E2ABA69BC4E3D054B95672D2375 7680 ----a-w- C:\Windows\SysWOW64\KBDCZ1.DLL
2016-11-10 09:27:08 BB6A8AF899EF1B083D5598E4FC5AFCEF 6656 ----a-w- C:\Windows\SysWOW64\KBDTAJIK.DLL
2016-11-10 09:27:08 71C4F42DC8DB668E826DA79462EA741E 6656 ----a-w- C:\Windows\SysWOW64\KBDUS.DLL
2016-11-10 09:27:08 51844675D4825C7C0DA4CABB339076BA 6656 ----a-w- C:\Windows\SysWOW64\KBDMON.DLL
2016-11-10 09:27:08 50FBE3673400D829F1B2F862E506B7DE 7168 ----a-w- C:\Windows\SysWOW64\KBDINHIN.DLL
2016-11-10 09:27:08 3CA70549F8DAD444D338C1764DBECE8A 6656 ----a-w- C:\Windows\SysWOW64\KBDTURME.DLL
2016-11-10 09:27:08 38F0CE2CAAD25209E332E4F6875408E4 6656 ----a-w- C:\Windows\SysWOW64\KBDINTEL.DLL
2016-11-10 09:27:08 3296259F0A8869B43ED7A1780019A3B6 6656 ----a-w- C:\Windows\SysWOW64\KBDGEO.DLL
2016-11-10 09:27:08 0FBC74AA20FE0AE6884279F893169C60 12625408 ----a-w- C:\Windows\SysWOW64\wmploc.DLL
2016-11-10 09:27:07 FB675B46C2CD4A6CFBF2E4FC1E9E78D8 7168 ----a-w- C:\Windows\SysWOW64\KBDPO.DLL
2016-11-10 09:27:07 E78640D09AD4B39741DB1348977F7440 6656 ----a-w- C:\Windows\SysWOW64\KBDUGHR1.DLL
2016-11-10 09:27:07 E56C4703D0D9B476EF6195AD22C2ACC0 35328 ----a-w- C:\Windows\SysWOW64\pifmgr.dll
2016-11-10 09:27:07 E48A447DC871F38DCBE1E6968BAC724B 7168 ----a-w- C:\Windows\SysWOW64\KBDINKAN.DLL
2016-11-10 09:27:07 D667E487B72FEB7FFEAD869ECC0467CF 2560 ----a-w- C:\Windows\SysWOW64\dpnaddr.dll
2016-11-10 09:27:07 D35F4DFF5D7B3D6503CF9888B833C801 69120 ----a-w- C:\Windows\SysWOW64\nlsbres.dll
2016-11-10 09:27:07 A6D9ECB19815C28B7F46CD7C78277A90 6656 ----a-w- C:\Windows\SysWOW64\KBDMAORI.DLL
2016-11-10 09:27:07 A17F329C13843466533858226FA79863 7168 ----a-w- C:\Windows\SysWOW64\KBDNEPR.DLL
2016-11-10 09:27:07 9271FEAC9A9315BBE57AF7FDF015F149 6656 ----a-w- C:\Windows\SysWOW64\KBDBASH.DLL
2016-11-10 09:27:07 8023492406076F27EE87F9FB797306BA 7168 ----a-w- C:\Windows\SysWOW64\KBDINBEN.DLL
2016-11-10 09:27:07 7E6E8F04A776F832809BD983AE754C09 7168 ----a-w- C:\Windows\SysWOW64\KBDINMAR.DLL
2016-11-10 09:27:07 48C566013F2B20F0BABCAD98079EEC05 2048 ----a-w- C:\Windows\SysWOW64\tzres.dll
2016-11-10 09:27:07 3F0BB313E64983FF701D43C930530AC7 7680 ----a-w- C:\Windows\SysWOW64\spwizres.dll
2016-11-10 09:27:07 3BF12A89957899B2051F681478D4BCC3 7168 ----a-w- C:\Windows\SysWOW64\KBDINORI.DLL
2016-11-10 09:27:07 3B98C3BA686360321BAA7CD3B1596BEE 6656 ----a-w- C:\Windows\SysWOW64\KBDBULG.DLL
2016-11-10 09:27:07 238B267A88D47051F681E08B323BA61A 7168 ----a-w- C:\Windows\SysWOW64\KBDINTAM.DLL
2016-11-10 09:27:07 2272041C588CFC769B81B7CF1DEF8C85 7168 ----a-w- C:\Windows\SysWOW64\KBDSF.DLL
2016-11-10 09:27:07 1CB227CE60A8FC9B6CFDC52842F27A8E 6656 ----a-w- C:\Windows\SysWOW64\KBDLT1.DLL
2016-11-10 09:26:57 C236A8735A48B165A2A7724357DBE332 105559 ----a-w- C:\Windows\SysWOW64\RacRules.xml
2016-11-10 09:26:54 A399514D3B28C9A3453A486BBAAFF1C7 189952 ----a-w- C:\Windows\SysWOW64\wdscore.dll
2016-11-10 09:26:51 C059C6B7518A9D6DE3616A3143392FE6 1041 ----a-w- C:\Windows\SysWOW64\tcpbidi.xml
2016-11-10 09:26:47 704314FD398C81D5F342CAA5DF7B7F21 363008 ----a-w- C:\Windows\SysWOW64\wbemcomn.dll
====== C:\Windows\SysWOW64\drivers =====
====== C:\Windows\Sysnative =====
2016-11-16 20:08:19 5614386D4CFDF9E56F355C45BEEBC976 12872 ----a-w- C:\Windows\Sysnative\bootdelete.exe
2016-11-11 11:36:36 EAD9E413A6CEB9FD8E2AD9DC0716C061 58336 ----a-w- C:\Windows\Sysnative\wuauclt.exe
2016-11-11 11:36:36 E76F105AD039B9E4DA9ECE839298C4A2 44512 ----a-w- C:\Windows\Sysnative\wups2.dll
2016-11-11 11:36:36 6335F8B4B89F002A3801473C1A799237 2620928 ----a-w- C:\Windows\Sysnative\wucltux.dll
2016-11-11 11:36:36 61FF576450CCC80564B850BC3FB6713A 2477536 ----a-w- C:\Windows\Sysnative\wuaueng.dll
2016-11-11 11:36:16 7EC6617005F76714C7E16605E7A8AB06 38880 ----a-w- C:\Windows\Sysnative\wups.dll
2016-11-11 11:36:16 1180B5ADFB507258DA10F51B46681A33 97792 ----a-w- C:\Windows\Sysnative\wudriver.dll
2016-11-11 11:36:16 0DB2758CF1BAFE22E0970FDA0785B74C 700384 ----a-w- C:\Windows\Sysnative\wuapi.dll
2016-11-11 11:35:56 45D4BDEA136E72E75CF008D3C38D949A 198600 ----a-w- C:\Windows\Sysnative\wuwebv.dll
2016-11-11 11:35:56 29FE783F75362AD6D2D9C0555BA83BD2 36864 ----a-w- C:\Windows\Sysnative\wuapp.exe
2016-11-10 09:29:26 E1DCEE9E3EC0522DF24397BE1A64E449 1942856 ----a-w- C:\Windows\Sysnative\dfshim.dll
2016-11-10 09:29:26 1C8B787BAA52DEAD1A6FEC1502D652F0 8988160 ----a-w- C:\Windows\Sysnative\mshtml.dll
2016-11-10 09:29:26 0F02C3FF97EAB0D8295854D6C4F82BEE 48976 ----a-w- C:\Windows\Sysnative\netfxperf.dll
2016-11-10 09:29:19 64ABE1250EC1A1CFD1442E7C8800216E 1838080 ----a-w- C:\Windows\Sysnative\d3d10warp.dll
2016-11-10 09:29:19 0A56ED57B8A7D5CE903613B5DBFD535D 3715584 ----a-w- C:\Windows\Sysnative\mstscax.dll
2016-11-10 09:29:19 04D4A3C86479841A8D8740DB3E9AA43C 12288 ----a-w- C:\Windows\Sysnative\TsUsbRedirectionGroupPolicyExtension.dll
2016-11-10 09:29:18 F1115299B9F4C983BC4523B33E3A506C 12260864 ----a-w- C:\Windows\Sysnative\ieframe.dll
2016-11-10 09:29:12 BF9CCC0BF39B418C8D0AE8B05CF95B7D 1743360 ----a-w- C:\Windows\Sysnative\sysmain.dll
2016-11-10 09:29:10 EFEB2023C5B494D04472996BF02B1B01 1465344 ----a-w- C:\Windows\Sysnative\XpsPrint.dll
2016-11-10 09:29:10 26E716ED95DC48CF6E5AC046089366AF 14174208 ----a-w- C:\Windows\Sysnative\shell32.dll
2016-11-10 09:29:10 0191E738BF521FE6EC567148E73C086B 3650560 ----a-w- C:\Windows\Sysnative\MSVidCtl.dll
2016-11-10 09:29:08 6C597496AB646EB9F31C68241050F771 2314752 ----a-w- C:\Windows\Sysnative\tquery.dll
2016-11-10 09:29:08 1EB82516F21F27EED1833B4F9FD9614E 14633472 ----a-w- C:\Windows\Sysnative\wmp.dll
2016-11-10 09:29:06 A08C010D859F8EB42BDD7E1D55B8CA27 444752 ----a-w- C:\Windows\Sysnative\mscoree.dll
2016-11-10 09:29:06 9E3C848BBDB5521271B3B038ECE8CC88 3205120 ----a-w- C:\Windows\Sysnative\mmcndmgr.dll
2016-11-10 09:29:06 95F8353F1408F3E637A4CE5E976F1798 902144 ----a-w- C:\Windows\Sysnative\d2d1.dll
2016-11-10 09:29:06 3556D5A8BF2CC508BDAB51DEC38D7C61 1731936 ----a-w- C:\Windows\Sysnative\ntdll.dll
2016-11-10 09:29:06 017F5CE9BC2333FE0FB738B0A9C13C2F 2223616 ----a-w- C:\Windows\Sysnative\mssrch.dll
2016-11-10 09:29:03 1C27130219A604124E9E19C26B2E31EB 485888 ----a-w- C:\Windows\Sysnative\secproc_isv.dll
2016-11-10 09:29:02 DB7E9251C0EE697FCFAE2406097BF611 488448 ----a-w- C:\Windows\Sysnative\secproc.dll
2016-11-10 09:29:02 C8AAF0D10B1BC3844E51BFC19F48004B 359424 ----a-w- C:\Windows\Sysnative\RMActivate.exe
2016-11-10 09:29:02 89F8615C9A46998F8808E3BD384FE3EE 362496 ----a-w- C:\Windows\Sysnative\RMActivate_isv.exe
2016-11-10 09:29:02 3D840598CECAAE8470804918EE5A00B5 3008000 ----a-w- C:\Windows\Sysnative\xpsservices.dll
2016-11-10 09:29:02 2D1FFFFB473C60805F53598F77A6E283 919040 ----a-w- C:\Windows\Sysnative\jscript.dll
2016-11-10 09:29:02 20ECAC7791DCBA69121631CB627E5A96 4120064 ----a-w- C:\Windows\Sysnative\mf.dll
2016-11-10 09:29:02 0611473C1AD9E2D991CD9482068417F7 1219584 ----a-w- C:\Windows\Sysnative\rpcrt4.dll
2016-11-10 09:29:01 6C60B5ACA7442EFB794082CDACFC001C 2086912 ----a-w- C:\Windows\Sysnative\ole32.dll
2016-11-10 09:29:01 262F6592C3299C005FD6BEC90FC4463A 1110016 ----a-w- C:\Windows\Sysnative\schedsvc.dll
2016-11-10 09:29:00 F6C5302E1F4813D552F41A0AC82455E5 1188864 ----a-w- C:\Windows\Sysnative\wininet.dll
2016-11-10 09:29:00 D63F0353F632FB1EDE724173BE6DB5B5 2565632 ----a-w- C:\Windows\Sysnative\esent.dll
2016-11-10 09:29:00 BAAFAF9CEAEC0B73C2A3550A01F6CECB 1197056 ----a-w- C:\Windows\Sysnative\taskschd.dll
2016-11-10 09:29:00 B24450E38722F69F338533A36ECFFC29 1556992 ----a-w- C:\Windows\Sysnative\RacEngn.dll
2016-11-10 09:29:00 6011714C8C5C55CBFFAD24D61E879FBD 1646080 ----a-w- C:\Windows\Sysnative\wevtsvc.dll
2016-11-10 09:29:00 5FADA8B707318E1BD63A7E2B81E6C8CB 1490944 ----a-w- C:\Windows\Sysnative\urlmon.dll
2016-11-10 09:29:00 5180380D353277D395D3B36D790AA93E 2444288 ----a-w- C:\Windows\Sysnative\iertutil.dll
2016-11-10 09:29:00 4449D23E8F197862F1B16F1E6C89C36C 1340416 ----a-w- C:\Windows\Sysnative\diagperf.dll
2016-11-10 09:29:00 364E7E33289341D4EB83CFA95D7B23AF 263168 ----a-w- C:\Windows\Sysnative\spwizui.dll
2016-11-10 09:28:59 EED05D42D91835064703E2318552ED25 1866240 ----a-w- C:\Windows\Sysnative\ExplorerFrame.dll
2016-11-10 09:28:59 0E2F58F6E698EDCB9E58FAD0CBCD0567 1753088 ----a-w- C:\Windows\Sysnative\vssapi.dll
2016-11-10 09:28:59 022B05CEE68D7826A93AEDB4F1EB369E 1881088 ----a-w- C:\Windows\Sysnative\msxml3.dll
2016-11-10 09:28:58 739BDC031DF0790FF8BB1AB244152C50 3860992 ----a-w- C:\Windows\Sysnative\UIRibbon.dll
2016-11-10 09:28:58 06CBA28981689B96B1E6A16F463F2260 299392 ----a-w- C:\Windows\Sysnative\mcupdate_GenuineIntel.dll
2016-11-10 09:28:58 01E2855FB06C422E721D890AF201C2D7 1326080 ----a-w- C:\Windows\Sysnative\NaturalLanguage6.dll
2016-11-10 09:28:56 BCB1310604AA415C4508708975B3931E 2018304 ----a-w- C:\Windows\Sysnative\WsmSvc.dll
2016-11-10 09:28:56 A89392A32BA98468710FD7E38318934B 3126272 ----a-w- C:\Windows\Sysnative\win32k.sys
2016-11-10 09:28:56 9864D52F15AD32094A636C6B5281D9E7 3027968 ----a-w- C:\Windows\Sysnative\WMVCORE.DLL
2016-11-10 09:28:56 5EC92F0EAE3CA59F647C3CA5AA7CB053 347904 ----a-w- C:\Windows\Sysnative\systemsf.ebd
2016-11-10 09:28:55 9422A7C7D41E3255286EA0C69FA8C607 1544192 ----a-w- C:\Windows\Sysnative\DWrite.dll
2016-11-10 09:28:55 8A1846C0817513AD18BA48B4427771FC 320352 ----a-w- C:\Windows\Sysnative\PresentationHost.exe
2016-11-10 09:28:55 704CD4CAC010E8E6D8DE9B778ED17773 301568 ----a-w- C:\Windows\Sysnative\spreview.exe
2016-11-10 09:28:55 54FFC9C8898113ACE189D4AA7199D2C1 828416 ----a-w- C:\Windows\Sysnative\MPSSVC.dll
2016-11-10 09:28:55 33E4AFE6DCBC638771AFD25D556D8E5D 109928 ----a-w- C:\Windows\Sysnative\PresentationHostProxy.dll
2016-11-10 09:28:55 29C1D5B330B802EFA1A8357373BC97FE 598016 ----a-w- C:\Windows\Sysnative\spinstall.exe
2016-11-10 09:28:55 0BF4362E18DFC52382F418278DCC52C4 274944 ----a-w- C:\Windows\Sysnative\rdpdd.dll
2016-11-10 09:28:54 C918FA31EECCA023ECB4CF53E9EC5856 960512 ----a-w- C:\Windows\Sysnative\CPFilters.dll
2016-11-10 09:28:54 86CC31F0A3D05C1DBD587552FF2DADFF 3957760 ----a-w- C:\Windows\Sysnative\WinSAT.exe
2016-11-10 09:28:54 8206692C891DDDD7FD097422005E8BAE 1888256 ----a-w- C:\Windows\Sysnative\WMVDECOD.DLL
2016-11-10 09:28:54 263B26106606A010CF877472B535E4BB 1975296 ----a-w- C:\Windows\Sysnative\CertEnroll.dll
2016-11-10 09:28:52 FCD84C381E0140AF901E58D48882D26B 853504 ----a-w- C:\Windows\Sysnative\IKEEXT.DLL
2016-11-10 09:28:52 B0F69B9DE0AEBFD7E4CEADE6758DF627 867840 ----a-w- C:\Windows\Sysnative\SearchFolder.dll
2016-11-10 09:28:52 65D57212965A93FE78E41E3998BB97AD 715264 ----a-w- C:\Windows\Sysnative\kerberos.dll
2016-11-10 09:28:52 5C29199C9F0EDE64F17F268084EC4392 2004480 ----a-w- C:\Windows\Sysnative\msxml6.dll
2016-11-10 09:28:52 4C3DAEE652B005B483F16B8E9131C99D 2067456 ----a-w- C:\Windows\Sysnative\d3d9.dll
2016-11-10 09:28:51 7A6326D96D53048FDEC542DF23D875A0 1161216 ----a-w- C:\Windows\Sysnative\kernel32.dll
2016-11-10 09:28:51 277BBC7E1AA1EE957F573A10ECA7EF3A 777728 ----a-w- C:\Windows\Sysnative\gpsvc.dll
2016-11-10 09:28:51 1BC6D282FF30D768515EAE0431F91552 5066752 ----a-w- C:\Windows\Sysnative\AuthFWSnapin.dll
2016-11-10 09:28:50 F4B0CD6B1D9490A86F60C142F68687CC 1026560 ----a-w- C:\Windows\Sysnative\mstime.dll
2016-11-10 09:28:50 B60BA0BC31B0CB414593E169F6F21CC2 1600512 ----a-w- C:\Windows\Sysnative\VSSVC.exe
2016-11-10 09:28:50 B4447F606BB19FD8AD0BAFB59B90F5D9 1137664 ----a-w- C:\Windows\Sysnative\FntCache.dll
2016-11-10 09:28:50 990EA3103E06D68CE0E755A9C3D70107 3391488 ----a-w- C:\Windows\Sysnative\dbgeng.dll
2016-11-10 09:28:50 4BA77A5EF71C14C764B0ED4701683E3E 1632256 ----a-w- C:\Windows\Sysnative\dwmcore.dll
2016-11-10 09:28:50 3F9F2AFA135F0663946A006DD5FFD897 1456128 ----a-w- C:\Windows\Sysnative\crypt32.dll
2016-11-10 09:28:49 F23FEF6D569FCE88671949894A8BECF1 679424 ----a-w- C:\Windows\Sysnative\audiosrv.dll
2016-11-10 09:28:49 E6F0F82788E8BD0F7A616350EFA0761C 958464 ----a-w- C:\Windows\Sysnative\actxprxy.dll
2016-11-10 09:28:49 DA68C291B4EF2DEC9C5963266BCAE454 419840 ----a-w- C:\Windows\Sysnative\KernelBase.dll
2016-11-10 09:28:49 A199DE544BF5C61C134B22C7592226FC 340992 ----a-w- C:\Windows\Sysnative\schannel.dll
2016-11-10 09:28:49 9F84806B3991D338FFDFC4ECF86A6923 1447936 ----a-w- C:\Windows\Sysnative\lsasrv.dll
2016-11-10 09:28:49 1EA7969E3271CBC59E1730697DC74682 849920 ----a-w- C:\Windows\Sysnative\qmgr.dll
2016-11-10 09:28:49 03E012434BBE2B66D8C56B4A69461615 750080 ----a-w- C:\Windows\Sysnative\TSWorkspace.dll
2016-11-10 09:28:48 D92420AC58F49F173D7E1CAE32629F3E 1244160 ----a-w- C:\Windows\Sysnative\imapi2fs.dll
2016-11-10 09:28:48 C36968D59834F6C54CC9C351B8EF5405 787968 ----a-w- C:\Windows\Sysnative\d3d11.dll
2016-11-10 09:28:48 AA339DD8BB128EF66660DFBBB59043D3 695808 ----a-w- C:\Windows\Sysnative\netlogon.dll
2016-11-10 09:28:48 58F4493BF748A3A89689997B7BD00E95 444416 ----a-w- C:\Windows\Sysnative\winhttp.dll
2016-11-10 09:28:48 50F739538EF014B2E7EC59431749D838 1116672 ----a-w- C:\Windows\Sysnative\mstsc.exe
2016-11-10 09:28:48 38004222971ECB9FA32408E17426069B 470016 ----a-w- C:\Windows\Sysnative\XpsGdiConverter.dll
2016-11-10 09:28:48 2E648163254233755035B46DD7B89123 680960 ----a-w- C:\Windows\Sysnative\termsrv.dll
2016-11-10 09:28:48 27B9E163740A226B65E4B9E186117911 244736 ----a-w- C:\Windows\Sysnative\sqmapi.dll
2016-11-10 09:28:47 F06BB4E336EA57511FDBAFAFCC47DE62 1212416 ----a-w- C:\Windows\Sysnative\propsys.dll
2016-11-10 09:28:47 EF12B8385AA2849999008A977918F96B 312320 ----a-w- C:\Windows\Sysnative\msv1_0.dll
2016-11-10 09:28:47 78F4E7F5C56CB9716238EB57DA4B6A75 1504256 ----a-w- C:\Windows\Sysnative\wbengine.exe
2016-11-10 09:28:47 5D8E6C95156ED1F79A63D1EADE6F9ED5 1900544 ----a-w- C:\Windows\Sysnative\setupapi.dll
2016-11-10 09:28:47 5C627D1B1138676C0A7AB2C2C190D123 512000 ----a-w- C:\Windows\Sysnative\rpcss.dll
2016-11-10 09:28:47 582AC6D9873E31DFA28A4547270862DD 476160 ----a-w- C:\Windows\Sysnative\QAGENTRT.DLL
2016-11-10 09:28:46 FE70103391A64039A921DBFFF9C7AB1B 1008128 ----a-w- C:\Windows\Sysnative\user32.dll
2016-11-10 09:28:46 F9959237F106F2B2609E61A290C0652E 1281024 ----a-w- C:\Windows\Sysnative\werconcpl.dll
2016-11-10 09:28:46 F1B205F932F62F94506A5F332C895DAF 577536 ----a-w- C:\Windows\Sysnative\WSDApi.dll
2016-11-10 09:28:46 A52B6CC24063CC83C78C0E6F24DEEC01 357888 ----a-w- C:\Windows\Sysnative\dnsapi.dll
2016-11-10 09:28:46 7FF8E121AFA05BDAB23B9FEDCDAB7A33 720896 ----a-w- C:\Windows\Sysnative\odbc32.dll
2016-11-10 09:28:46 7A3B0B61574E7A78534E55344EFA7DEF 702464 ----a-w- C:\Windows\Sysnative\msfeeds.dll
2016-11-10 09:28:46 65EA57712340C09B1B0C427B4848AE05 464384 ----a-w- C:\Windows\Sysnative\taskeng.exe
2016-11-10 09:28:46 60EB9DB7A449FC083D2F02B0A0425104 1796096 ----a-w- C:\Windows\Sysnative\certmgr.dll
2016-11-10 09:28:46 43D808F5D9E1A18E5EEB5EBC83969E4E 317952 ----a-w- C:\Windows\Sysnative\dhcpcore.dll
2016-11-10 09:28:46 42F05F980F164E084DB65B2E8CD8430F 861696 ----a-w- C:\Windows\Sysnative\oleaut32.dll
2016-11-10 09:28:46 0BEE002C68E28CE6DA161DCF1376D7D7 1927680 ----a-w- C:\Windows\Sysnative\authui.dll
2016-11-10 09:28:45 F55F754866D79A11D5B36DA1A17E6737 146944 ----a-w- C:\Windows\Sysnative\scavengeui.dll
2016-11-10 09:28:45 C5DEA5B95AF9AA981C88CAB94A58213E 419880 ----a-w- C:\Windows\Sysnative\locale.nls
2016-11-10 09:28:45 BC9489DF517C426D4044D99F14449134 395776 ----a-w- C:\Windows\Sysnative\webio.dll
2016-11-10 09:28:45 380C3F69472B96B5D35AF834855EE8BF 612864 ----a-w- C:\Windows\Sysnative\vbscript.dll
2016-11-10 09:28:44 EAF32CB8C1F810E4715B4DFBE785C7FF 448512 ----a-w- C:\Windows\Sysnative\shlwapi.dll
2016-11-10 09:28:44 E64D9EC8018C55873B40FDEE9DBEF5B3 758272 ----a-w- C:\Windows\Sysnative\PortableDeviceApi.dll
2016-11-10 09:28:44 D971173B54CA16810F138518A08F9566 299520 ----a-w- C:\Windows\Sysnative\tsmf.dll
2016-11-10 09:28:44 B806E50427511BCF4AD8E8239C3E25FA 404480 ----a-w- C:\Windows\Sysnative\umpnpmgr.dll
2016-11-10 09:28:44 A42F2C1EB3B66C54FB3C7B79D30C1A6D 2652160 ----a-w- C:\Windows\Sysnative\netshell.dll
2016-11-10 09:28:44 89B89AE23491F5D4E338499A3D568269 955904 ----a-w- C:\Windows\Sysnative\localspl.dll
2016-11-10 09:28:44 80F720E3C6B85A5FA9F359F881510880 1509888 ----a-w- C:\Windows\Sysnative\msdtctm.dll
2016-11-10 09:28:44 52D30D72E4833CDC3B49B60498766486 457216 ----a-w- C:\Windows\Sysnative\msdrm.dll
2016-11-10 09:28:44 4A435F95B940E93A88FEC144BD409789 210944 ----a-w- C:\Windows\Sysnative\ncsi.dll
2016-11-10 09:28:44 1484B9EBF567346582DE571B0E164AE0 295936 ----a-w- C:\Windows\Sysnative\framedynos.dll
2016-11-10 09:28:43 F404E59DB6A0F122AB26BF4F3E2FD0FA 658944 ----a-w- C:\Windows\Sysnative\dxgi.dll
2016-11-10 09:28:43 EEBF65C66183A22431818953D960EF8C 1572352 ----a-w- C:\Windows\Sysnative\quartz.dll
2016-11-10 09:28:43 9F4EA339FD6315CBDC4E543B2A222F45 524288 ----a-w- C:\Windows\Sysnative\wmicmiplugin.dll
2016-11-10 09:28:43 9835E63E09F824D22B689D2BB789BAB9 594432 ----a-w- C:\Windows\Sysnative\comdlg32.dll
2016-11-10 09:28:43 9662EE182644511439F1C53745DC1C88 343040 ----a-w- C:\Windows\Sysnative\lsm.exe
2016-11-10 09:28:43 90499F3163A9F815CF196A205EA3CD5D 342016 ----a-w- C:\Windows\Sysnative\apphelp.dll
2016-11-10 09:28:43 4BBFA57F594F7E8A8EDC8F377184C3F0 297984 ----a-w- C:\Windows\Sysnative\ws2_32.dll
2016-11-10 09:28:43 426BA4E737A7988FD1202AF2F2B2F4A6 321024 ----a-w- C:\Windows\Sysnative\d3d10_1core.dll
2016-11-10 09:28:43 355A138ABDFD43FBABCAE3A1B06AB93D 481280 ----a-w- C:\Windows\Sysnative\wmpps.dll
2016-11-10 09:28:43 2F8B1E3EE3545D3B5A8D56FA1AE07B65 800256 ----a-w- C:\Windows\Sysnative\usp10.dll
2016-11-10 09:28:43 1EE99A89CC788ADA662441D1E9830529 303616 ----a-w- C:\Windows\Sysnative\nlasvc.dll
2016-11-10 09:28:43 1151B1BAA6F350B1DB6598E0FEA7C457 390656 ----a-w- C:\Windows\Sysnative\winlogon.exe
2016-11-10 09:28:43 03706015DB44368375AEBE6339490E66 519680 ----a-w- C:\Windows\Sysnative\netcfgx.dll
2016-11-10 09:28:39 FF2B106909EED48C536DA04742C0324A 2055680 ----a-w- C:\Windows\Sysnative\Query.dll
2016-11-10 09:28:39 4715F8F8CDBFFF2728BA38B789A1D7C7 2543616 ----a-w- C:\Windows\Sysnative\wpdshext.dll
2016-11-10 09:28:39 356E96B2FE133373116D1AEBBCA896A3 422912 ----a-w- C:\Windows\Sysnative\drvstore.dll
2016-11-10 09:28:39 1D5185A4C7E6695431AE4B55C3D7D333 326144 ----a-w- C:\Windows\Sysnative\mswsock.dll
2016-11-10 09:28:39 0ADD464D92D6189A7697C0C5BBEE1909 897536 ----a-w- C:\Windows\Sysnative\azroles.dll
2016-11-10 09:28:38 F8297797CC1993E25B8967D6032BFB31 1098240 ----a-w- C:\Windows\Sysnative\Vault.dll
2016-11-10 09:28:38 E2F68DC7FBD6E0BF031CA3809A739346 605552 ----a-w- C:\Windows\Sysnative\winload.exe
2016-11-10 09:28:38 DD72849FE94E6F49732E1E9A6484FBAF 281600 ----a-w- C:\Windows\Sysnative\DShowRdpFilter.dll
2016-11-10 09:28:38 D95D441EAB70A93C9EEBB114AD38EEE0 722944 ----a-w- C:\Windows\Sysnative\EncDec.dll
2016-11-10 09:28:38 CD55F5355D8F55D44C9F4ED875705BD6 183296 ----a-w- C:\Windows\Sysnative\dnsrslvr.dll
2016-11-10 09:28:38 A744BA6E04C8AA4592818178DBF89521 758784 ----a-w- C:\Windows\Sysnative\samsrv.dll
2016-11-10 09:28:38 A455A0BB8F206667FECA96B9B905875B 778752 ----a-w- C:\Windows\Sysnative\mssvp.dll
2016-11-10 09:28:38 82974D6A2FD19445CC5171FC378668A4 705024 ----a-w- C:\Windows\Sysnative\BFE.DLL
2016-11-10 09:28:38 7A59CC95C9AA105184C607AC4CDE0D3E 1118208 ----a-w- C:\Windows\Sysnative\sbe.dll
2016-11-10 09:28:38 6B851E682A36453E1B1EE297FFB6E2AB 266240 ----a-w- C:\Windows\Sysnative\QAGENT.DLL
2016-11-10 09:28:38 5746BD7E255DD6A8AFA06F7C42C1BA41 345088 ----a-w- C:\Windows\Sysnative\cmd.exe
2016-11-10 09:28:38 50D28F3F8B7C17056520C80A29EFE17C 653312 ----a-w- C:\Windows\Sysnative\lpksetup.exe
2016-11-10 09:28:38 46C393535458BE01DBC22C5F24135611 566208 ----a-w- C:\Windows\Sysnative\winresume.efi
2016-11-10 09:28:38 2AC11BE0F5D9A01433732AAB8BA21774 751104 ----a-w- C:\Windows\Sysnative\win32spl.dll
2016-11-10 09:28:37 9CEAD32E79A62150FE9F8557E58E008B 582656 ----a-w- C:\Windows\Sysnative\sxs.dll
2016-11-10 09:28:37 8CA406EF4805B7097D3E5CED50540A50 272896 ----a-w- C:\Windows\Sysnative\mcbuilder.exe
2016-11-10 09:28:37 6DC4A7242F565C9E9C9CCC7BB0FA75C7 473600 ----a-w- C:\Windows\Sysnative\taskcomp.dll
2016-11-10 09:28:37 54C0E2C37436A15DA2CC40FDA742E2F5 381440 ----a-w- C:\Windows\Sysnative\mfds.dll
2016-11-10 09:28:37 4E4FFB09D895AA000DD56D1404F69A7E 312832 ----a-w- C:\Windows\Sysnative\Wldap32.dll
2016-11-10 09:28:37 3DB6D04E1C64272F8B14EB8BC4616280 258560 ----a-w- C:\Windows\Sysnative\WebClnt.dll
2016-11-10 09:28:37 26B73A85855681500BCC25C7CD9FF5B1 1190400 ----a-w- C:\Windows\Sysnative\WindowsCodecs.dll
2016-11-10 09:28:36 F9AFD12BB4B1CFA5FCC0A5B37C604FD2 84992 ----a-w- C:\Windows\Sysnative\dot3api.dll
2016-11-10 09:28:36 ED3AF52CE4FFBE152BD27D0B6CE676F5 584192 ----a-w- C:\Windows\Sysnative\ipsmsnap.dll
2016-11-10 09:28:36 C55516D98DD5D8F0153C2A9B4227DA86 1158656 ----a-w- C:\Windows\Sysnative\webservices.dll
2016-11-10 09:28:36 B96C17B5DC1424D56EEA3A99E97428CD 559104 ----a-w- C:\Windows\Sysnative\spoolsv.exe
2016-11-10 09:28:36 AAEF1B0563D6EDD324E834F64D0A0ED5 933888 ----a-w- C:\Windows\Sysnative\sqlsrv32.dll
2016-11-10 09:28:36 A0524499F4C63CADA7E1529FC77F5DC1 235008 ----a-w- C:\Windows\Sysnative\hgprint.dll
2016-11-10 09:28:36 945E54F23C72D37B8CD1987AF0DB63BF 345600 ----a-w- C:\Windows\Sysnative\fveapi.dll
2016-11-10 09:28:36 6E3155F216665BD375CBEC37F2C14123 252928 ----a-w- C:\Windows\Sysnative\iepeers.dll
2016-11-10 09:28:36 29B8F363D674A989852C5DAADD572F9F 642944 ----a-w- C:\Windows\Sysnative\winload.efi
2016-11-10 09:28:36 10F815BE90A66AAFC6C713D1BD626064 1808384 ----a-w- C:\Windows\Sysnative\pnidui.dll
2016-11-10 09:28:36 0D9764D58C5EFD672B7184854B152E5E 235008 ----a-w- C:\Windows\Sysnative\winsta.dll
2016-11-10 09:28:36 0BA1DDE4AEC55DF894109D10E3F19481 518672 ----a-w- C:\Windows\Sysnative\winresume.exe
2016-11-10 09:28:36 0B6231BF38174A1628C4AC812CC75804 121856 ----a-w- C:\Windows\Sysnative\SessEnv.dll
2016-11-10 09:28:35 1084AA52CCC324EA54C7121FA24C2221 403968 ----a-w- C:\Windows\Sysnative\gdi32.dll
2016-11-10 09:28:34 EB3F9C2DE1236B5D46B2291D82970E43 220672 ----a-w- C:\Windows\Sysnative\wintrust.dll
2016-11-10 09:28:34 C37D1BCE87EE81C17EE602F1391DDE48 1009152 ----a-w- C:\Windows\Sysnative\mcmde.dll
2016-11-10 09:28:34 BA9DC5F6E03309B795566122847B8428 630272 ----a-w- C:\Windows\Sysnative\evr.dll
2016-11-10 09:28:34 B86399C64A19EB45519466413FA5E361 1441280 ----a-w- C:\Windows\Sysnative\wlanpref.dll
2016-11-10 09:28:34 B862B1040C5D9843678ECEA8EB4099C0 288256 ----a-w- C:\Windows\Sysnative\MSNP.ax
2016-11-10 09:28:34 A1CDE92DDC170D307DB3C5BAA348811B 183808 ----a-w- C:\Windows\Sysnative\prncache.dll
2016-11-10 09:28:34 97E0EC3D6D99E8CC2B17EF2D3760E8FC 285696 ----a-w- C:\Windows\Sysnative\schtasks.exe
2016-11-10 09:28:34 7A17485DC7D8A7AC81321A42CD034519 109056 ----a-w- C:\Windows\Sysnative\userenv.dll
2016-11-10 09:28:34 2383B9314592FEC47900BC5A6C7AEC83 1243136 ----a-w- C:\Windows\Sysnative\WMNetMgr.dll
2016-11-10 09:28:34 19A6EDD4236403AE9869D12BEDF2B11E 409600 ----a-w- C:\Windows\Sysnative\photowiz.dll
2016-11-10 09:28:34 0FE5CD5F9C9248F42D1EF56E495B182E 263168 ----a-w- C:\Windows\Sysnative\vpnike.dll
2016-11-10 09:28:32 F149E8CAE538DBF7059B00326673F602 1024512 ----a-w- C:\Windows\Sysnative\wmpmde.dll
2016-11-10 09:28:32 E8706A051BFFC9DA9E9B935AAA432AAC 257024 ----a-w- C:\Windows\Sysnative\mfreadwrite.dll
2016-11-10 09:28:32 DC220AE6F64819099F7EBD6F137E32E7 296448 ----a-w- C:\Windows\Sysnative\AudioSes.dll
2016-11-10 09:28:32 DBEFD454F8318A0EF691FDD2EAAB44EB 689152 ----a-w- C:\Windows\Sysnative\FXSSVC.exe
2016-11-10 09:28:32 D9F42719019740BAA6D1C6D536CBDAA6 236032 ----a-w- C:\Windows\Sysnative\srvsvc.dll
2016-11-10 09:28:32 AF84C72EE2E49DA2B13EF30DABA5B5CC 412160 ----a-w- C:\Windows\Sysnative\aepdu.dll
2016-11-10 09:28:32 AAF932B4011D14052955D4B212A4DA8D 370688 ----a-w- C:\Windows\Sysnative\shsvcs.dll
2016-11-10 09:28:32 62D2B05F7426D4735F50DC207D569281 279040 ----a-w- C:\Windows\Sysnative\framedyn.dll
2016-11-10 09:28:32 612F1A6DA62A004128943A184123D184 605696 ----a-w- C:\Windows\Sysnative\wmpeffects.dll
2016-11-10 09:28:32 4F15D75ADF6156BF56ECED6D4A55C389 501248 ----a-w- C:\Windows\Sysnative\IPSECSVC.DLL
2016-11-10 09:28:32 2B373B5F7E36B5ED5DA176D4400EF091 1082880 ----a-w- C:\Windows\Sysnative\sppobjs.dll
2016-11-10 09:28:32 1F137AC28556D4507F97F736B0AC7D45 424448 ----a-w- C:\Windows\Sysnative\aeinv.dll
2016-11-10 09:28:32 105B83027DD0C664242CFD74EE70C11D 2072576 ----a-w- C:\Windows\Sysnative\WMPEncEn.dll
2016-11-10 09:28:32 101797BA603D227946B4B5109867EB19 2262528 ----a-w- C:\Windows\Sysnative\SyncCenter.dll
2016-11-10 09:28:32 0A98C4E4975F5D735F8361FFEBF2793D 171520 ----a-w- C:\Windows\Sysnative\fde.dll
2016-11-10 09:28:31 C3761661C17C2248A9379A8FB89E3DE1 257024 ----a-w- C:\Windows\Sysnative\stobject.dll
2016-11-10 09:28:31 8130391F82D52D36C0441F714136957F 503296 ----a-w- C:\Windows\Sysnative\imapi2.dll
2016-11-10 09:28:31 77FD3C1F628FDA66DEA1D8234CEC7E52 551936 ----a-w- C:\Windows\Sysnative\localsec.dll
2016-11-10 09:28:31 021287C2050FD5DB4A8B084E2C38139C 501248 ----a-w- C:\Windows\Sysnative\WinSATAPI.dll
2016-11-10 09:28:30 F62B62E3CAAB44E6C6056955954AE86F 303616 ----a-w- C:\Windows\Sysnative\scansetting.dll
2016-11-10 09:28:30 F4EA461A9DDF4861A0BDE2B0DD5645BA 324096 ----a-w- C:\Windows\Sysnative\netdiagfx.dll
2016-11-10 09:28:30 DD853B7E91F22F842B8C8CB5096EE3B3 223232 ----a-w- C:\Windows\Sysnative\QSHVHOST.DLL
2016-11-10 09:28:30 D6C7780A364C6BBACFA796BAB9F1B374 298104 ----a-w- C:\Windows\Sysnative\bcryptprimitives.dll
2016-11-10 09:28:30 D291620D4C51C5F5FFA62CCDC52C5C13 378880 ----a-w- C:\Windows\Sysnative\msinfo32.exe
2016-11-10 09:28:30 CC0AB40F02D2C2A12209715A3C1B07B8 197120 ----a-w- C:\Windows\Sysnative\credui.dll
2016-11-10 09:28:30 BA0F80C7878558C28B1B298E94D259FF 1050624 ----a-w- C:\Windows\Sysnative\printui.dll
2016-11-10 09:28:30 B7AC66C1CCD87D7C49256B5451DED4FA 244224 ----a-w- C:\Windows\Sysnative\spp.dll
2016-11-10 09:28:30 B3A33600DCDFB84D7FBE09ADEB1C9B8A 100864 ----a-w- C:\Windows\Sysnative\davclnt.dll
2016-11-10 09:28:30 A34A587FFFD45FA649FBA6D03784D257 569344 ----a-w- C:\Windows\Sysnative\iphlpsvc.dll
2016-11-10 09:28:30 5C78838B4D166D1A27DB3A8A820C799A 209920 ----a-w- C:\Windows\Sysnative\profsvc.dll
2016-11-10 09:28:30 55DE45B116711881C852D2841E4C84DD 253440 ----a-w- C:\Windows\Sysnative\tcpipcfg.dll
2016-11-10 09:28:30 507D5567A0A4EE86C4B0CE2CE1777025 166912 ----a-w- C:\Windows\Sysnative\inetpp.dll
2016-11-10 09:28:30 3504B34CD2DE00BA3CC1A195F1B739BD 2746880 ----a-w- C:\Windows\Sysnative\gameux.dll
2016-11-10 09:28:30 2F1A635997A0E86AAF99F974E72905B1 165376 ----a-w- C:\Windows\Sysnative\netid.dll
2016-11-10 09:28:30 20FACCF61372C1C6BBAAA5CE413875EA 504320 ----a-w- C:\Windows\Sysnative\biocpl.dll
2016-11-10 09:28:30 05569A79BF4693670B709144382D02D4 144384 ----a-w- C:\Windows\Sysnative\cdd.dll
2016-11-10 09:28:29 C7CF6A6E137463219E1259E3F0F0DD6C 1389056 ----a-w- C:\Windows\Sysnative\pla.dll
2016-11-10 09:28:29 BD51024FB014064BC9FE8C715C18392F 337920 ----a-w- C:\Windows\Sysnative\conhost.exe
2016-11-10 09:28:29 B0951D9AF84D9639CF81BC99BE4084C0 477696 ----a-w- C:\Windows\Sysnative\PhotoScreensaver.scr
2016-11-10 09:28:29 5A9290C6413880C3C109522124AB0981 571904 ----a-w- C:\Windows\Sysnative\mspbda.dll
2016-11-10 09:28:28 F6F22291024906E43D135A4B1705FEAC 418816 ----a-w- C:\Windows\Sysnative\sppwinob.dll
2016-11-10 09:28:28 F38FA28124B1F9A7676A08CE2980344C 187904 ----a-w- C:\Windows\Sysnative\rpchttp.dll
2016-11-10 09:28:28 DDB88D0BB116D468B2B3EFBB6E3D6D06 122880 ----a-w- C:\Windows\Sysnative\aitagent.exe
2016-11-10 09:28:28 D38535978F93F9FC9F28BE6093A87DBE 552960 ----a-w- C:\Windows\Sysnative\msdri.dll
2016-11-10 09:28:28 C15B3D813F4382ADE98F1892350F21C7 307200 ----a-w- C:\Windows\Sysnative\wusa.exe
2016-11-10 09:28:28 8DD52E8E6128F4B2DA92CE27402871C1 580096 ----a-w- C:\Windows\Sysnative\wiaservc.dll
2016-11-10 09:28:28 8D6B481601D01A456E75C3210F1830BE 533504 ----a-w- C:\Windows\Sysnative\vds.exe
2016-11-10 09:28:28 76CB184041C6D21838BC1DF903E3C155 161792 ----a-w- C:\Windows\Sysnative\ocsetapi.dll
2016-11-10 09:28:28 713DE8F093E17A7342728BC94C4A4D61 976896 ----a-w- C:\Windows\Sysnative\inetcomm.dll
2016-11-10 09:28:28 6F1AC6100B372F22709B24CFC9E2CC16 934912 ----a-w- C:\Windows\Sysnative\FirewallControlPanel.dll
2016-11-10 09:28:28 6A16BCE3C09496650BE881C467611653 3211776 ----a-w- C:\Windows\Sysnative\msi.dll
2016-11-10 09:28:28 57528A746F7A1026B41FB8447F9591B5 229888 ----a-w- C:\Windows\Sysnative\XpsRasterService.dll
2016-11-10 09:28:28 4E39FFB3BEB58A232429E44C60ED1264 199168 ----a-w- C:\Windows\Sysnative\PkgMgr.exe
2016-11-10 09:28:28 42A9CB6906D9A8BEDC83B57163E62924 459776 ----a-w- C:\Windows\Sysnative\DXP.dll
2016-11-10 09:28:28 2B81776DA02017A37FE26C662827470E 145920 ----a-w- C:\Windows\Sysnative\IPHLPAPI.DLL
2016-11-10 09:28:28 2477A28081BDAEE622CF045ACF8EE124 207872 ----a-w- C:\Windows\Sysnative\cfgmgr32.dll
2016-11-10 09:28:28 1834B31C749B86DAC233BBBA1C03BC48 625664 ----a-w- C:\Windows\Sysnative\mscms.dll
2016-11-10 09:28:28 15597883FBE9B056F276ADA3AD87D9AF 177152 ----a-w- C:\Windows\Sysnative\cryptsvc.dll
2016-11-10 09:28:28 12EF9606585C3451BACFE99A2AAD24C7 1031680 ----a-w- C:\Windows\Sysnative\rdpcore.dll
2016-11-10 09:28:28 066DA0F1237E3AFD48792739EEEEC03D 186368 ----a-w- C:\Windows\Sysnative\ocsetup.exe
2016-11-10 09:28:28 02E20372D9D6D28E37BA9704EDC90B67 405504 ----a-w- C:\Windows\Sysnative\wisptis.exe
2016-11-10 09:28:28 0015ACFBBDD164A8A730009908868CA7 442368 ----a-w- C:\Windows\Sysnative\winspool.drv
2016-11-10 09:28:27 CFB8C673F9188F99466E76C6972191E0 263040 ----a-w- C:\Windows\Sysnative\hal.dll
2016-11-10 09:28:27 CF1A231594E1B7D59D9279FAA38AD4C2 348160 ----a-w- C:\Windows\Sysnative\eapp3hst.dll
2016-11-10 09:28:27 96DB78C9C50CEED9DA5050EFFEE272A2 264192 ----a-w- C:\Windows\Sysnative\upnp.dll
2016-11-10 09:28:27 93221146D4EBBF314C29B23CD6CC391D 117248 ----a-w- C:\Windows\Sysnative\wpdbusenum.dll
2016-11-10 09:28:27 87356377F31DA5F20A833811CD59499C 303616 ----a-w- C:\Windows\Sysnative\eapphost.dll
2016-11-10 09:28:27 7BBF670114373CE6A203FA155A9E0D0A 509952 ----a-w- C:\Windows\Sysnative\ntshrui.dll
2016-11-10 09:28:27 7368A2AFD46E5A4481D1DE9D14848EDD 367104 ----a-w- C:\Windows\Sysnative\wcncsvc.dll
2016-11-10 09:28:27 649F5F47EA85C08AEE9353CEEF810233 850944 ----a-w- C:\Windows\Sysnative\mmsys.cpl
2016-11-10 09:28:27 2DF29664ED261F0FC448E58F338F0671 221184 ----a-w- C:\Windows\Sysnative\mprapi.dll
2016-11-10 09:28:27 24F4B480F335A6C724AF352253C5D98B 112640 ----a-w- C:\Windows\Sysnative\thumbcache.dll
2016-11-10 09:28:27 11338E0557B07BC32CDB980B6EDB35AA 780008 ----a-w- C:\Windows\Sysnative\ci.dll
2016-11-10 09:28:27 0A551CCDEF9D6F99A008B5B075354650 128000 ----a-w- C:\Windows\Sysnative\Robocopy.exe
2016-11-10 09:28:27 040B198DA82AC2C4DB22E088BBAFD10B 148992 ----a-w- C:\Windows\Sysnative\t2embed.dll
2016-11-10 09:28:26 FCFCD1101C5DA23B4B95F93D02B2C169 128512 ----a-w- C:\Windows\Sysnative\dwmredir.dll
2016-11-10 09:28:26 ED78427259134C63ED69804D2132B86C 232960 ----a-w- C:\Windows\Sysnative\scecli.dll
2016-11-10 09:28:26 DE418798DA91AAA067A2EF41D8A7B886 429568 ----a-w- C:\Windows\Sysnative\puiobj.dll
2016-11-10 09:28:26 DC8560036F238C904DC9FBCEA7796D54 658432 ----a-w- C:\Windows\Sysnative\PerfCenterCPL.dll
2016-11-10 09:28:26 DA92473D08DFCE8D355684D636ECAE5A 367104 ----a-w- C:\Windows\Sysnative\atmfd.dll
2016-11-10 09:28:26 D7111757FCB56070D15D37DAD910CC35 1457664 ----a-w- C:\Windows\Sysnative\DxpTaskSync.dll
2016-11-10 09:28:26 D56C13F26ADCB3BC0455DB42883F6E7D 445952 ----a-w- C:\Windows\Sysnative\iedkcs32.dll
2016-11-10 09:28:26 A26FC69123A5CA107040B553A58075C7 158720 ----a-w- C:\Windows\Sysnative\aaclient.dll
2016-11-10 09:28:26 884415BD4269C02EAF8E2613BF85500D 46592 ----a-w- C:\Windows\Sysnative\msasn1.dll
2016-11-10 09:28:26 73FCB7919DEE80EE556F2E498594EBAE 235520 ----a-w- C:\Windows\Sysnative\onex.dll
2016-11-10 09:28:26 3D991793E642D063508503FE68907BA4 675328 ----a-w- C:\Windows\Sysnative\DXPTaskRingtone.dll
2016-11-10 09:28:26 2DF36F15B2BC1571A6A542A3C2107920 70656 ----a-w- C:\Windows\Sysnative\nlaapi.dll
2016-11-10 09:28:26 2C647ABE9A424E55B5F3DAE4629B4277 2851840 ----a-w- C:\Windows\Sysnative\themeui.dll
2016-11-10 09:28:26 2A86E54B441AD41557F75DC5609B9793 136192 ----a-w- C:\Windows\Sysnative\sspicli.dll
2016-11-10 09:28:26 28A7D7C7E2FDD1D55F12F750CD6331EC 1160192 ----a-w- C:\Windows\Sysnative\MSMPEG2ENC.DLL
2016-11-10 09:28:26 047AD05DE61C166A1BED4CF5A9083ED8 217088 ----a-w- C:\Windows\Sysnative\iasrad.dll
2016-11-10 09:28:25 F7E418D5BB71996347A8C431E6DC778C 462336 ----a-w- C:\Windows\Sysnative\wiadefui.dll
2016-11-10 09:28:25 EE867A0870FC9E4972BA9EAAD35651E2 344064 ----a-w- C:\Windows\Sysnative\rasmans.dll
2016-11-10 09:28:25 C4DF22EC976FF51A8A4057BE3C3D3F03 475136 ----a-w- C:\Windows\Sysnative\wlangpui.dll
2016-11-10 09:28:25 BBCDF350817BA86416C0F06B6981BE8D 406016 ----a-w- C:\Windows\Sysnative\scesrv.dll
2016-11-10 09:28:25 9EDB0A8337529D69F96DD1B2E70FA2F7 691200 ----a-w- C:\Windows\Sysnative\VAN.dll
2016-11-10 09:28:25 6E26EE228F60D75C732D209688FB546C 1363968 ----a-w- C:\Windows\Sysnative\wdc.dll
2016-11-10 09:28:25 6D3E70937228FD90F2A7185D33D4C46E 239616 ----a-w- C:\Windows\Sysnative\dskquoui.dll
2016-11-10 09:28:25 56BEB546F3F6EEAAAD5759E0B32E7C58 1689600 ----a-w- C:\Windows\Sysnative\netcenter.dll
2016-11-10 09:28:25 4E81439902079C348B61D7FF027FE147 483840 ----a-w- C:\Windows\Sysnative\StructuredQuery.dll
2016-11-10 09:28:25 1EAC1A8CA6874BF5B15E2EFB9A9A7B86 799744 ----a-w- C:\Windows\Sysnative\msftedit.dll
2016-11-10 09:28:25 11C405A2DCF38E098316FD904A4FB662 1120768 ----a-w- C:\Windows\Sysnative\sdengin2.dll
2016-11-10 09:28:25 098EF40B77F88148349AAEBFE38E87C7 243200 ----a-w- C:\Windows\Sysnative\wow64.dll
2016-11-10 09:28:24 FC51229C7D4AFA0D6F186133728B95AB 67584 ----a-w- C:\Windows\Sysnative\samcli.dll
2016-11-10 09:28:24 F731DB7489A0994F682D68A2B21AA5AE 684032 ----a-w- C:\Windows\Sysnative\TabletPC.cpl
2016-11-10 09:28:24 E3C61FD7B7C2557E1F1B0B4CEC713585 92672 ----a-w- C:\Windows\Sysnative\TabSvc.dll
2016-11-10 09:28:24 E377BBA01F34E4183C32E5BBD688CE83 95232 ----a-w- C:\Windows\Sysnative\regapi.dll
2016-11-10 09:28:24 C6B0B5AA20C8E51234A039472ABA75B2 88576 ----a-w- C:\Windows\Sysnative\setupcl.exe
2016-11-10 09:28:24 C3489639EC8E181044F6C6BFD3D01AC9 273920 ----a-w- C:\Windows\Sysnative\SndVol.exe
2016-11-10 09:28:24 B9F0A4020AA98B7A20287BF7FE99A1FD 107520 ----a-w- C:\Windows\Sysnative\QUTIL.DLL
2016-11-10 09:28:24 A6F309DD01DC5BD7BFB3E3C1C413573F 100864 ----a-w- C:\Windows\Sysnative\iasacct.dll
2016-11-10 09:28:24 90A914FE79249D6BD7F53EFF00FAECFD 248832 ----a-w- C:\Windows\Sysnative\wksprt.exe
2016-11-10 09:28:24 8569E35D00F45972E506502EEE622BA4 340992 ----a-w- C:\Windows\Sysnative\srchadmin.dll
2016-11-10 09:28:24 7A95C95B6C4CF292D689106BCAE49543 78848 ----a-w- C:\Windows\Sysnative\WUDFSvc.dll
2016-11-10 09:28:24 7373DE70D405FF08DC53336B83989138 424448 ----a-w- C:\Windows\Sysnative\rastls.dll
2016-11-10 09:28:24 517110BD83835338C037269E603DB55D 69120 ----a-w- C:\Windows\Sysnative\taskhost.exe
2016-11-10 09:28:24 218A400108F280428FA22282D3268BBC 63488 ----a-w- C:\Windows\Sysnative\wscapi.dll
2016-11-10 09:28:24 1FCB1A72BF5C784F7358E6BEF38E4571 515584 ----a-w- C:\Windows\Sysnative\timedate.cpl
2016-11-10 09:28:24 0B5511674394666E9D221F8681B2C2E6 112000 ----a-w- C:\Windows\Sysnative\consent.exe
2016-11-10 09:28:23 EFDFB3DD38A4376F93E7985173813ABD 232448 ----a-w- C:\Windows\Sysnative\ListSvc.dll
2016-11-10 09:28:23 E19D102BAF266F34592F7C742FBFA886 300032 ----a-w- C:\Windows\Sysnative\msconfig.exe
2016-11-10 09:28:23 D95AD0B6A27A14DCD31B3E5BAF635898 166784 ----a-w- C:\Windows\Sysnative\basecsp.dll
2016-11-10 09:28:23 98BB7E40685F7F79C20E2ABA93818346 41472 ----a-w- C:\Windows\Sysnative\mimefilt.dll
2016-11-10 09:28:23 6A5C1A8AC0B572679361026D0E900420 332288 ----a-w- C:\Windows\Sysnative\hgcpl.dll
2016-11-10 09:28:23 587BB0FA7D11F81251539A630C097C8C 726528 ----a-w- C:\Windows\Sysnative\appwiz.cpl
2016-11-10 09:28:23 40F0849F65D13EE87B9A9AE3C1DD6823 316928 ----a-w- C:\Windows\Sysnative\tapisrv.dll
2016-11-10 09:28:23 1473768973453DE50DC738C2955FC4DD 217088 ----a-w- C:\Windows\Sysnative\wdmaud.drv
2016-11-10 09:28:23 0FE14E3B3C0DAA77DFB5B60E1D274D6F 215552 ----a-w- C:\Windows\Sysnative\netiohlp.dll
2016-11-10 09:28:22 FCFF56E69B4961BFB2599E14E7EB7FDE 1538560 ----a-w- C:\Windows\Sysnative\inetcpl.cpl
2016-11-10 09:28:22 E5E13FCBD1D247BF4CCD8BE3C7D8A5EA 72192 ----a-w- C:\Windows\Sysnative\fdeploy.dll
2016-11-10 09:28:22 E0406AEF04B088D1C49FC78D0546F689 214016 ----a-w- C:\Windows\Sysnative\winsrv.dll
2016-11-10 09:28:22 CE776FE2FC6FDE12FC455412CE45162E 40960 ----a-w- C:\Windows\Sysnative\TsUsbGDCoInstaller.dll
2016-11-10 09:28:22 ACB4F32174EB5066D4684369CEA925E9 372736 ----a-w- C:\Windows\Sysnative\mtxclu.dll
2016-11-10 09:28:22 A943D670747778C7597987A4B5B9A679 974336 ----a-w- C:\Windows\Sysnative\WFS.exe
2016-11-10 09:28:22 988121D083B7AB61D4A7E244290BAAB0 50176 ----a-w- C:\Windows\Sysnative\lsmproxy.dll
2016-11-10 09:28:22 8956BA8E83F83ED3B54B292CEB42F219 726528 ----a-w- C:\Windows\Sysnative\AuxiliaryDisplayCpl.dll
2016-11-10 09:28:22 81749E073AC5857B044A686B406E5244 314368 ----a-w- C:\Windows\Sysnative\clusapi.dll
2016-11-10 09:28:22 1928FCD320E7410A113B1AE49A77C236 258560 ----a-w- C:\Windows\Sysnative\mpg2splt.ax
2016-11-10 09:28:21 850BD2D2D9CB5894935C3B6333CAD6FD 633344 ----a-w- C:\Windows\Sysnative\riched20.dll
2016-11-10 09:28:20 FEB91B4DA0D540865260A33838654FA3 90112 ----a-w- C:\Windows\Sysnative\nci.dll
2016-11-10 09:28:20 F152755F131ADFE452D534F4E9383590 355328 ----a-w- C:\Windows\Sysnative\Faultrep.dll
2016-11-10 09:28:20 DB55D6EA72B92C8F8268A5B795156433 139264 ----a-w- C:\Windows\Sysnative\cabview.dll
2016-11-10 09:28:20 CFA6B4D4A70D67C6387C29FA6FD703D0 2193920 ----a-w- C:\Windows\Sysnative\themecpl.dll
2016-11-10 09:28:20 C6505DE3561537BA1004D638C2F93F2F 188928 ----a-w- C:\Windows\Sysnative\netjoin.dll
2016-11-10 09:28:20 C2A8CB1275ECB85D246A9ECC02A728E3 65536 ----a-w- C:\Windows\Sysnative\RpcRtRemote.dll
2016-11-10 09:28:20 B4296172C4766788BA1D087941372E54 357888 ----a-w- C:\Windows\Sysnative\sharemediacpl.dll
2016-11-10 09:28:20 B3F03B594E7A6353273D43F6E7EA1D25 2250752 ----a-w- C:\Windows\Sysnative\SensorsCpl.dll
2016-11-10 09:28:20 AFA10DB13B9A0537297AEEF2CD66352F 1077248 ----a-w- C:\Windows\Sysnative\Narrator.exe
2016-11-10 09:28:20 ABBEC8D6CC5C610877BF98D99F4B4413 57856 ----a-w- C:\Windows\Sysnative\licmgr10.dll
2016-11-10 09:28:20 8FFE297B8449386E7B6851458B6E474E 186880 ----a-w- C:\Windows\Sysnative\logoncli.dll
2016-11-10 09:28:20 851A1382EED3E3A7476DB004F4EE3E1A 118784 ----a-w- C:\Windows\Sysnative\wkssvc.dll
2016-11-10 09:28:20 7881A5557CD9A9D40D994A57D24001AB 118272 ----a-w- C:\Windows\Sysnative\dnscmmc.dll
2016-11-10 09:28:20 77B5035BC6EDF4D1B6265391AECEE4C0 38912 ----a-w- C:\Windows\Sysnative\vpnikeapi.dll
2016-11-10 09:28:20 55EDFADBEFB5B1C28DCE340DDCD2206E 486400 ----a-w- C:\Windows\Sysnative\powercpl.dll
2016-11-10 09:28:20 3B536A8BEC3B4F23FFDFD78B11A2AB93 777728 ----a-w- C:\Windows\Sysnative\autochk.exe
2016-11-10 09:28:20 35E397D6CA8407B86D8A7972F0C90711 359936 ----a-w- C:\Windows\Sysnative\eudcedit.exe
2016-11-10 09:28:20 14DFDEAF4E589ED3F1FF187A86B9408C 633856 ----a-w- C:\Windows\Sysnative\comctl32.dll
2016-11-10 09:28:20 067FA52BFB59A56110A12312EF9AF243 232448 ----a-w- C:\Windows\Sysnative\sppcomapi.dll
2016-11-10 09:28:20 04FAFCAF36632E03B6BFC48275178349 763904 ----a-w- C:\Windows\Sysnative\autofmt.exe
2016-11-10 09:28:19 F5F9D892E8196C074C3A159569EEB886 156160 ----a-w- C:\Windows\Sysnative\prntvpt.dll
2016-11-10 09:28:19 F41831D2A3D6E2152525EA3F75316ACD 611840 ----a-w- C:\Windows\Sysnative\wpd_ci.dll
2016-11-10 09:28:19 E62E6C6E0ECE74CD8345808F5A5F9F00 414208 ----a-w- C:\Windows\Sysnative\wlanui.dll
2016-11-10 09:28:19 D5CCA1453B98A5801E6D5FF0FF89DC6C 126464 ----a-w- C:\Windows\Sysnative\audiodg.exe
2016-11-10 09:28:19 CDEBD55FFBDA3889AA2A8CE52B9DC097 1264640 ----a-w- C:\Windows\Sysnative\sdclt.exe
2016-11-10 09:28:19 C3F3509C9127B1EFF9012CBC152ADF56 793088 ----a-w- C:\Windows\Sysnative\autoconv.exe
2016-11-10 09:28:19 B26F4F737E8F9DF4F31AF6CF31D05820 162816 ----a-w- C:\Windows\Sysnative\dps.dll
2016-11-10 09:28:19 A6585E85184E3E6B45AE833536CAA282 168448 ----a-w- C:\Windows\Sysnative\bcdsrv.dll
2016-11-10 09:28:19 97BA1A7979EB66F4E8E95270854DFBDC 455168 ----a-w- C:\Windows\Sysnative\nshipsec.dll
2016-11-10 09:28:19 9697D0C831C3D33EAA22D3454554638A 154960 ----a-w- C:\Windows\Sysnative\mscorier.dll
2016-11-10 09:28:19 4BE691DE828BFC1CB1EBBC767586D73A 933376 ----a-w- C:\Windows\Sysnative\SmiEngine.dll
2016-11-10 09:28:19 431DC374BB338D99400B24FAC576D7D1 130048 ----a-w- C:\Windows\Sysnative\shsetup.dll
2016-11-10 09:28:19 36F3D6CF6842573E5955D0B7CD2BF281 222720 ----a-w- C:\Windows\Sysnative\wwanconn.dll
2016-11-10 09:28:19 345BC7CADBE91E78B52497EF3B0D910B 116224 ----a-w- C:\Windows\Sysnative\fms.dll
2016-11-10 09:28:18 9613BEA1E1509884EC472A10858EC61D 861184 ----a-w- C:\Windows\Sysnative\fontext.dll
2016-11-10 09:28:18 621B74BFCE49F9372AED2859FD87343C 211456 ----a-w- C:\Windows\Sysnative\mprddm.dll
2016-11-10 09:28:15 FA4C36B574BF387D9582ED2C54A347A8 957440 ----a-w- C:\Windows\Sysnative\mblctr.exe
2016-11-10 09:28:15 F832EEEA97CDDA1AF577E721F652A0D1 749568 ----a-w- C:\Windows\Sysnative\batmeter.dll
2016-11-10 09:28:15 F0074CEB72EA93608037C98A1F187DB5 1066496 ----a-w- C:\Windows\Sysnative\Display.dll
2016-11-10 09:28:15 AE57DB2CCE48C85D0AD1EB38AE67EAA3 223232 ----a-w- C:\Windows\Sysnative\wmpsrcwp.dll
2016-11-10 09:28:15 A6BF31A71B409DFA8CAC83159E1E2AFF 114688 ----a-w- C:\Windows\Sysnative\AxInstSv.dll
2016-11-10 09:28:15 5E2C61BE8E093DBFE7FC37585BE42869 267264 ----a-w- C:\Windows\Sysnative\FXSCOVER.exe
2016-11-10 09:28:15 52D3D5E3586988D4D9E34ACAAC33105C 22016 ----a-w- C:\Windows\Sysnative\credssp.dll
2016-11-10 09:28:15 194ABF8D943999276C9EE0B4922E45B4 624128 ----a-w- C:\Windows\Sysnative\qedit.dll
2016-11-10 09:28:12 E17E0188BB90FAE42D83E98707EFA59C 3524608 ----a-w- C:\Windows\Sysnative\sppsvc.exe
2016-11-10 09:28:12 DC50B0FE1C3F654AC25B5484BF3A458C 1202176 ----a-w- C:\Windows\Sysnative\DiagCpl.dll
2016-11-10 09:28:12 D7F1EF374A90709B31591823B002F918 225280 ----a-w- C:\Windows\Sysnative\SndVolSSO.dll
2016-11-10 09:28:12 BE306D6E345A5FD8A049726C6F9DE6F8 98304 ----a-w- C:\Windows\Sysnative\WSTPager.ax
2016-11-10 09:28:12 B53C4B69B695EDA1B7E41D35CA4244E2 52224 ----a-w- C:\Windows\Sysnative\rtutils.dll
2016-11-10 09:28:12 B4043658A8AE988AA19001CF9DFCFDF9 100864 ----a-w- C:\Windows\Sysnative\fontsub.dll
2016-11-10 09:28:12 A717A35120DBAB5AB707AB40662AF9DD 211456 ----a-w- C:\Windows\Sysnative\rasppp.dll
2016-11-10 09:28:12 908ACB1F594274965A53926B10C81E89 187904 ----a-w- C:\Windows\Sysnative\provsvc.dll
2016-11-10 09:28:12 89C92686DED63EEAF1DB03F97A1898F2 433512 ----a-w- C:\Windows\Sysnative\MCEWMDRMNDBootstrap.dll
2016-11-10 09:28:12 887EB84BB2EC3F4C1510C98E8C1ADFC0 625664 ----a-w- C:\Windows\Sysnative\usercpl.dll
2016-11-10 09:28:12 7A09F960C73A63D68293EFDFD843A5FF 69120 ----a-w- C:\Windows\Sysnative\dot3cfg.dll
2016-11-10 09:28:12 2D66F79983F266621E6450E08A536DAD 250880 ----a-w- C:\Windows\Sysnative\ksproxy.ax
2016-11-10 09:28:12 26653D1C26E9E2AA5DD596354BA9FAF3 2217856 ----a-w- C:\Windows\Sysnative\bootres.dll
2016-11-10 09:28:12 01073F2BA36792C9BFD1BD622A6247B3 812032 ----a-w- C:\Windows\Sysnative\wpccpl.dll
2016-11-10 09:28:11 CF6850A72BEB4845A3BFFB3F5E8014B2 300032 ----a-w- C:\Windows\Sysnative\pdh.dll
2016-11-10 09:28:11 C8FDF0FA9E97E2FAAF3F814716AAA881 115200 ----a-w- C:\Windows\Sysnative\WPDShServiceObj.dll
2016-11-10 09:28:11 C6C83C0DF40E11FA1F06625E95E41DE7 31744 ----a-w- C:\Windows\Sysnative\proquota.exe
2016-11-10 09:28:11 C4F40F6CACD796A8E16671D0E9A2F319 196608 ----a-w- C:\Windows\Sysnative\shdocvw.dll
2016-11-10 09:28:11 C418F8085C61D3B6911EE82157CA3775 78848 ----a-w- C:\Windows\Sysnative\hbaapi.dll
2016-11-10 09:28:11 B4CE0CAB186EBF4DF54BD34B4F0C0A06 403968 ----a-w- C:\Windows\Sysnative\untfs.dll
2016-11-10 09:28:11 8699D60D780483F2A1B6B35EF967A78A 268288 ----a-w- C:\Windows\Sysnative\MSAC3ENC.DLL
2016-11-10 09:28:11 7C58DEFD1306691C43837CEC18BC64A3 279552 ----a-w- C:\Windows\Sysnative\dxdiagn.dll
2016-11-10 09:28:11 2D2A6EC8EAD30EC3ACE2FD6FB1B3E122 416256 ----a-w- C:\Windows\Sysnative\prnfldr.dll
2016-11-10 09:28:11 09F7401D56F2393C6CA534FF0241A590 257024 ----a-w- C:\Windows\Sysnative\taskmgr.exe
2016-11-10 09:28:10 FD28E3B46F63337EAF905120F1E00070 3745792 ----a-w- C:\Windows\Sysnative\accessibilitycpl.dll
2016-11-10 09:28:10 EBA8C525E8427E9F75BF340F3C043690 149504 ----a-w- C:\Windows\Sysnative\rdpcorekmts.dll
2016-11-10 09:28:10 C5CE5CE799387E82B7698A0EE5544A6D 349696 ----a-w- C:\Windows\Sysnative\slui.exe
2016-11-10 09:28:10 BBAAE027C176402E221CADBFCAEB5407 366080 ----a-w- C:\Windows\Sysnative\zipfldr.dll
2016-11-10 09:28:10 BAFE84E637BF7388C96EF48D4D3FDD53 30720 ----a-w- C:\Windows\Sysnative\userinit.exe
2016-11-10 09:28:10 894B39B50E4FD1580884085D59352839 233984 ----a-w- C:\Windows\Sysnative\defaultlocationcpl.dll
2016-11-10 09:28:10 67C5556E2A9F0F9FFB5FC40A8761FABB 335360 ----a-w- C:\Windows\Sysnative\msieftp.dll
2016-11-10 09:28:10 47B8DEBEC68FACCD026F99CAE8698C93 290304 ----a-w- C:\Windows\Sysnative\webcheck.dll
2016-11-10 09:28:10 14DBF43745F54326CBBC7211750B6D20 104960 ----a-w- C:\Windows\Sysnative\Mpeg2Data.ax
2016-11-10 09:28:09 FCF433BFE9F44C8FD2FAF1E8DED23D72 898560 ----a-w- C:\Windows\Sysnative\OobeFldr.dll
2016-11-10 09:28:09 FC788F5AD10723BE69B2C2DE4522774E 503296 ----a-w- C:\Windows\Sysnative\srcore.dll
2016-11-10 09:28:09 F0112F2DDAC14DFD4B3A69BB0164D005 243712 ----a-w- C:\Windows\Sysnative\taskbarcpl.dll
2016-11-10 09:28:09 EC84D7DCAE6AE0FE87EE5D4F0D50DC55 769536 ----a-w- C:\Windows\Sysnative\sud.dll
2016-11-10 09:28:09 DAAF9C77603F77988D3B0E74400F5038 352768 ----a-w- C:\Windows\Sysnative\sysdm.cpl
2016-11-10 09:28:09 D2D30DAC4DE4EC8BF09564BB51915263 2146816 ----a-w- C:\Windows\Sysnative\networkmap.dll
2016-11-10 09:28:09 C4E28504E92F7D34C830C9D767B9948D 221696 ----a-w- C:\Windows\Sysnative\OnLineIDCpl.dll
2016-11-10 09:28:09 B3BFBD758506ECB50C5804AAA76318F9 1065984 ----a-w- C:\Windows\Sysnative\cryptui.dll
2016-11-10 09:28:09 B1FB3DDCA0FDF408750D5843591AFBC6 252416 ----a-w- C:\Windows\Sysnative\dot3svc.dll
2016-11-10 09:28:09 AFCEB74CD93E7B494BBA1CC026841C33 366592 ----a-w- C:\Windows\Sysnative\qdvd.dll
2016-11-10 09:28:09 92DBF0A4C9239169010FC6E07859C82E 780800 ----a-w- C:\Windows\Sysnative\ActionCenter.dll
2016-11-10 09:28:09 92545BE920E55B1677786FB4C183B329 108032 ----a-w- C:\Windows\Sysnative\psisrndr.ax
2016-11-10 09:28:09 780836BB63852990382DF27DE7FEFD20 346112 ----a-w- C:\Windows\Sysnative\bcdedit.exe
2016-11-10 09:28:09 5CB328C0A51B9DC8067581474E1E07C2 77312 ----a-w- C:\Windows\Sysnative\rdpwsx.dll
2016-11-10 09:28:09 534D84434D9DB1D1E1E865F64E52AA8E 172544 ----a-w- C:\Windows\Sysnative\twext.dll
2016-11-10 09:28:09 4C2C4640BF23AAFCF90519E0F34436CE 508928 ----a-w- C:\Windows\Sysnative\DeviceCenter.dll
2016-11-10 09:28:09 2C2FBB6DC3CE8FAF4AB2F7C6C5071C4C 373248 ----a-w- C:\Windows\Sysnative\intl.cpl
2016-11-10 09:28:07 F8051F06E1C4AA3F2EFE4402AF5919B1 91648 ----a-w- C:\Windows\Sysnative\isoburn.exe
2016-11-10 09:28:07 DD48B7D93771674F330763613AA7C095 472064 ----a-w- C:\Windows\Sysnative\azroleui.dll
2016-11-10 09:28:07 BC4A4569F5E50EE9993E9DD9784C2FE3 95232 ----a-w- C:\Windows\Sysnative\cca.dll
2016-11-10 09:28:07 A3D570EEADFFA62D3DC8AB10E281FF8B 701440 ----a-w- C:\Windows\Sysnative\dsuiext.dll
2016-11-10 09:28:07 713B611F6B796EECDA6F9970ACD9845B 154624 ----a-w- C:\Windows\Sysnative\uxlib.dll
2016-11-10 09:28:07 67B6B783979C8CF96DCCC2813CB21C10 24064 ----a-w- C:\Windows\Sysnative\sisbkup.dll
2016-11-10 09:28:07 4179D7F2872EA3BCB6A2BE95340D2FAA 345600 ----a-w- C:\Windows\Sysnative\MediaMetadataHandler.dll
2016-11-10 09:28:07 2F6DA6A2C092BC61F0324E3C52935252 146944 ----a-w- C:\Windows\Sysnative\recovery.dll
2016-11-10 09:28:07 2C6E1A303EC8DE78F257C2D7BAD4E849 84992 ----a-w- C:\Windows\Sysnative\asycfilt.dll
2016-11-10 09:28:06 F7A256EC899C72B4ECDD2C02CB592EFD 721408 ----a-w- C:\Windows\Sysnative\bthprops.cpl
2016-11-10 09:28:06 F3B306179F1840C0813DC6771B018358 238080 ----a-w- C:\Windows\Sysnative\recdisc.exe
2016-11-10 09:28:06 E7B1B5D5A1D1E4C77AE995D725A1FEE5 762368 ----a-w- C:\Windows\Sysnative\sdcpl.dll
2016-11-10 09:28:06 D8A79180614C14F87DA1038FFEB56F71 29184 ----a-w- C:\Windows\Sysnative\sspisrv.dll
2016-11-10 09:28:06 BCEA9AB347E53BC03B2E36BE0B8BA0EF 45056 ----a-w- C:\Windows\Sysnative\httpapi.dll
2016-11-10 09:28:06 BB074F35B49EB2EA416962B596281E1E 419840 ----a-w- C:\Windows\Sysnative\systemcpl.dll
2016-11-10 09:28:06 A648C4A06DE367065B24056D067B4460 414720 ----a-w- C:\Windows\Sysnative\wlanmsm.dll
2016-11-10 09:28:06 A10B048B681C38E26CA90CD1BC123604 200192 ----a-w- C:\Windows\Sysnative\syncui.dll
2016-11-10 09:28:06 94DFBB481BF51158B216E23C5C1C9D6E 460800 ----a-w- C:\Windows\Sysnative\certcli.dll
2016-11-10 09:28:06 7F8E83B9466A0A002D4AB15C104062A7 304128 ----a-w- C:\Windows\Sysnative\efscore.dll
2016-11-10 09:28:06 7D067C851FD270E7C3495788AD487CDE 549888 ----a-w- C:\Windows\Sysnative\ActionCenterCPL.dll
2016-11-10 09:28:06 6EA4234DC55346E0709560FE7C2C1972 170496 ----a-w- C:\Windows\Sysnative\sdrsvc.dll
2016-11-10 09:28:06 6A1B51F414E2F83ECC2B9AFA0121FEF6 207360 ----a-w- C:\Windows\Sysnative\sysclass.dll
2016-11-10 09:28:06 69A4347A8EAD86185EFF2F75755176E6 38912 ----a-w- C:\Windows\Sysnative\msvidc32.dll
2016-11-10 09:28:06 6140A1493EC6FFFE2DF350EA0E9A7D8B 66048 ----a-w- C:\Windows\Sysnative\ncryptui.dll
2016-11-10 09:28:06 4A6305A5386DA8293E218F60B0BA12FA 451072 ----a-w- C:\Windows\Sysnative\shwebsvc.dll
2016-11-10 09:28:06 4659DD732B02A7593469882ACEF1BFF6 193024 ----a-w- C:\Windows\Sysnative\netplwiz.dll
2016-11-10 09:28:06 3DC58E2CA9A146A65F2066F2DC983898 196096 ----a-w- C:\Windows\Sysnative\VBICodec.ax
2016-11-10 09:28:06 3977D4A871CA0D4F2ED1E7DB46829731 70656 ----a-w- C:\Windows\Sysnative\appinfo.dll
2016-11-10 09:28:06 29B19D564600319FD3746C48F888717C 58368 ----a-w- C:\Windows\Sysnative\tzutil.exe
2016-11-10 09:28:06 1FB6588DDF991124D49475C99BBC9C5B 155136 ----a-w- C:\Windows\Sysnative\autoplay.dll
2016-11-10 09:28:05 CA4166E8424EA3E8053876B47603DBE6 445952 ----a-w- C:\Windows\Sysnative\spwizeng.dll
2016-11-10 09:28:05 AE67E6224419C1A88800DF29E6A95F88 135680 ----a-w- C:\Windows\Sysnative\AuxiliaryDisplayServices.dll
2016-11-10 09:28:05 5F7C94678DAE6EF130CDDC1BBDC1738E 66048 ----a-w- C:\Windows\Sysnative\ksxbar.ax
2016-11-10 09:27:46 FF71E16F8F5672A77F4B8689AA50D38A 474112 ----a-w- C:\Windows\Sysnative\sysmon.ocx
2016-11-10 09:27:46 E5BE95454ACC06415C8C58FDAB6DD2A4 82944 ----a-w- C:\Windows\Sysnative\msfeedsbs.dll
2016-11-10 09:27:46 B6F9B45112E56992EF3EFA369FB7F047 185856 ----a-w- C:\Windows\Sysnative\vdsutil.dll
2016-11-10 09:27:46 AAFAF68D1A450325DA58D9EAD997B427 240640 ----a-w- C:\Windows\Sysnative\MFPlay.dll
2016-11-10 09:27:46 837C657B122B77C6E33FA0D4C9903B1F 97280 ----a-w- C:\Windows\Sysnative\mshtmled.dll
2016-11-10 09:27:46 2F794096269B32C1611B29341AD4A599 421888 ----a-w- C:\Windows\Sysnative\termmgr.dll
2016-11-10 09:27:45 FA2F60F09DDF459CB4AA9DE8A83B65B3 68096 ----a-w- C:\Windows\Sysnative\rdpd3d.dll
2016-11-10 09:27:45 EAFA08FDE52AF3C564D2D4D7B8BF66E3 84480 ----a-w- C:\Windows\Sysnative\UserAccountControlSettings.dll
2016-11-10 09:27:45 E8C9D8F4AA8D340894808CFB61A029EA 48640 ----a-w- C:\Windows\Sysnative\wwanprotdim.dll
2016-11-10 09:27:45 D2A0FFA75AB181B19B5EB93BB29C7686 321536 ----a-w- C:\Windows\Sysnative\unimdm.tsp
2016-11-10 09:27:45 D1353DE9899D713C2875B9731DD2A489 641024 ----a-w- C:\Windows\Sysnative\msscp.dll
2016-11-10 09:27:45 D01AF6EE1C350D8B34BF2D780A229DEC 212992 ----a-w- C:\Windows\Sysnative\odbctrac.dll
2016-11-10 09:27:45 CA2985996BB49924B677113DF95CFEA7 189952 ----a-w- C:\Windows\Sysnative\SmartcardCredentialProvider.dll
2016-11-10 09:27:45 BC566D17914B07ABAAB3A5A385CC3300 129536 ----a-w- C:\Windows\Sysnative\ntlanman.dll
2016-11-10 09:27:45 9C75CB8B98610F0CD85D99BB5876308B 446976 ----a-w- C:\Windows\Sysnative\sqlcese30.dll
2016-11-10 09:27:45 93FBF8D840C2B496FD3833108AAB5825 163840 ----a-w- C:\Windows\Sysnative\odbccp32.dll
2016-11-10 09:27:45 8DEDB880C3CB1B7024F2C8EE2F3E1151 333824 ----a-w- C:\Windows\Sysnative\ssText3d.scr
2016-11-10 09:27:45 8CE1C165396F2453012B3E23ADD9DF76 313856 ----a-w- C:\Windows\Sysnative\ReAgent.dll
2016-11-10 09:27:45 858DF0795CB5B4BACE0F33708925A414 28160 ----a-w- C:\Windows\Sysnative\secur32.dll
2016-11-10 09:27:45 5CE9241C030C004FF92037DF8F7401B0 54272 ----a-w- C:\Windows\Sysnative\iyuv_32.dll
2016-11-10 09:27:45 56840D971042FA448E9F75062BB26DAD 282624 ----a-w- C:\Windows\Sysnative\iTVData.dll
2016-11-10 09:27:45 40308014B44489795DA132D3F2CC13DA 281088 ----a-w- C:\Windows\Sysnative\iprtrmgr.dll
2016-11-10 09:27:45 3DB5A1EACE7F3049ECC49FA64461E254 296960 ----a-w- C:\Windows\Sysnative\rstrui.exe
2016-11-10 09:27:45 3BCB70DA9B5A2011E01E35ED29A3F3F3 279040 ----a-w- C:\Windows\Sysnative\sethc.exe
2016-11-10 09:27:45 3834D69D6D189AC08B52BD8DF8CB06A6 44032 ----a-w- C:\Windows\Sysnative\tsgqec.dll
2016-11-10 09:27:44 FFF9D00CF16397C64317F213484F94BD 67072 ----a-w- C:\Windows\Sysnative\wsnmp32.dll
2016-11-10 09:27:44 FDC385A0F7D7DD880C4622D1DF08ABE9 344576 ----a-w- C:\Windows\Sysnative\ntprint.dll
2016-11-10 09:27:44 FA43D418BC945D27D0625B697B8442B5 94720 ----a-w- C:\Windows\Sysnative\cabinet.dll
2016-11-10 09:27:44 F17D1D393BBC69C5322FBFAFACA28C7F 80384 ----a-w- C:\Windows\Sysnative\certprop.dll
2016-11-10 09:27:44 C7301A1D3DB09DE86528D9D916069859 606208 ----a-w- C:\Windows\Sysnative\dfrgui.exe
2016-11-10 09:27:44 C07CEEF7737E9101E06CD656192B4BCB 48128 ----a-w- C:\Windows\Sysnative\ftp.exe
2016-11-10 09:27:44 B6D6886149573278CBA6ABD44C4317F5 15360 ----a-w- C:\Windows\Sysnative\slwga.dll
2016-11-10 09:27:44 AC2170D1DDEEA5CEDE106DA188F18138 173568 ----a-w- C:\Windows\Sysnative\powercfg.cpl
2016-11-10 09:27:44 A3D4197E5DC267D488C467133E8407DF 270848 ----a-w- C:\Windows\Sysnative\srrstr.dll
2016-11-10 09:27:44 A302DA1404664CEF1D416ED4DE49EA2B 133632 ----a-w- C:\Windows\Sysnative\NAPHLPR.DLL
2016-11-10 09:27:44 A190DA6546501CB4146BBCC0B6A3F48B 128000 ----a-w- C:\Windows\Sysnative\msiexec.exe
2016-11-10 09:27:44 9EB716B82B5CB2E26524BC3A37FB7BA2 358400 ----a-w- C:\Windows\Sysnative\wmpdxm.dll
2016-11-10 09:27:44 96C14589E835B99E5C3B1C35C738AF7E 495104 ----a-w- C:\Windows\Sysnative\drmmgrtn.dll
2016-11-10 09:27:44 9498656CAE8A5047B9CD4C69075FF66B 153088 ----a-w- C:\Windows\Sysnative\remotepg.dll
2016-11-10 09:27:44 90C06682302B3F911EA22211A2FFC6ED 102912 ----a-w- C:\Windows\Sysnative\kstvtune.ax
2016-11-10 09:27:44 8B22B0CF8912F810B28AFBFC8B42727F 53248 ----a-w- C:\Windows\Sysnative\acppage.dll
2016-11-10 09:27:44 8A25506B6948EFBD5A7F37E53CCD36D9 86016 ----a-w- C:\Windows\Sysnative\TSpkg.dll
2016-11-10 09:27:44 891C5270AFE8A69366702C88F3E24768 109568 ----a-w- C:\Windows\Sysnative\nslookup.exe
2016-11-10 09:27:44 82C87FBF43957E69530EB6521F8FF0D1 1133568 ----a-w- C:\Windows\Sysnative\cdosys.dll
2016-11-10 09:27:44 7D5645EE0EA77D539828433D9B95F5EB 217600 ----a-w- C:\Windows\Sysnative\WinSCard.dll
2016-11-10 09:27:44 60E8C91E58AB800C3879BE11DD8D6BD5 225280 ----a-w- C:\Windows\Sysnative\DevicePairingFolder.dll
2016-11-10 09:27:44 4A3B1F516F2CD426CA0562DDABE3C6B9 255488 ----a-w- C:\Windows\Sysnative\wavemsp.dll
2016-11-10 09:27:44 405F4D32D2185F1F1BD753D8EEAFFB3A 1672704 ----a-w- C:\Windows\Sysnative\networkexplorer.dll
2016-11-10 09:27:44 3C91392D448F6E5D525A85B7550D8BA9 71680 ----a-w- C:\Windows\Sysnative\wkscli.dll
2016-11-10 09:27:44 3BDCBB29D727C49DC3E3256253467281 781312 ----a-w- C:\Windows\Sysnative\wmdrmsdk.dll
2016-11-10 09:27:44 3B6928BC39E5530CEAD1E99269E7B1EE 152064 ----a-w- C:\Windows\Sysnative\net1.exe
2016-11-10 09:27:44 3A9C9BAF610B0DD4967086040B3B62A9 128000 ----a-w- C:\Windows\Sysnative\srvcli.dll
2016-11-10 09:27:44 3A66846F45BE2E46F7EA16B2F7D2EF34 175616 ----a-w- C:\Windows\Sysnative\bcdboot.exe
2016-11-10 09:27:44 2A796B7E73673B960B1EA963A70DBC4F 102400 ----a-w- C:\Windows\Sysnative\sppnp.dll
2016-11-10 09:27:43 97A891E2BF7FDA830BCFC6269DA3F5E9 840192 ----a-w- C:\Windows\Sysnative\blackbox.dll
2016-11-10 09:27:43 8FAFCA21FE9B20C420CE9D4DC50A7169 293888 ----a-w- C:\Windows\Sysnative\wsqmcons.exe
2016-11-10 09:27:43 7C932706EC416BCFC2FB9DB66D823643 206848 ----a-w- C:\Windows\Sysnative\mfps.dll
2016-11-10 09:27:43 5088595871D94EAD05CFD9351002B589 594432 ----a-w- C:\Windows\Sysnative\wvc.dll
2016-11-10 09:27:43 423982DD851406A52B6399DDB196C606 636416 ----a-w- C:\Windows\Sysnative\wmdrmdev.dll
2016-11-10 09:27:43 285DEA88F17836A6D5EE2C2116750982 26112 ----a-w- C:\Windows\Sysnative\WerFaultSecure.exe
2016-11-10 09:27:42 EB3E45B0F5C5743863C86F38E8CDC151 213504 ----a-w- C:\Windows\Sysnative\ActionQueue.dll
2016-11-10 09:27:42 E0773633E4193B183FB396192581BD86 50176 ----a-w- C:\Windows\Sysnative\NAPCRYPT.DLL
2016-11-10 09:27:42 E060CAF6D6C303A2C9BC13435F7F81A1 180736 ----a-w- C:\Windows\Sysnative\ifsutil.dll
2016-11-10 09:27:42 D45BE8BAED0B82F6BBC9D9421FA8FA1C 241664 ----a-w- C:\Windows\Sysnative\Ribbons.scr
2016-11-10 09:27:42 CEED624D1291081B1B7D921FBB9C61D9 14848 ----a-w- C:\Windows\Sysnative\tsbyuv.dll
2016-11-10 09:27:42 BC617A4E1B4FA8DF523A061739A0BD87 30720 ----a-w- C:\Windows\Sysnative\seclogon.dll
2016-11-10 09:27:42 B94D3DACCF5882B697A1C53D00BE643A 25600 ----a-w- C:\Windows\Sysnative\msyuv.dll
2016-11-10 09:27:42 AE55B3FC3D29593A9CEBA5909AB4A346 16896 ----a-w- C:\Windows\Sysnative\muifontsetup.dll
2016-11-10 09:27:42 A7A8CA53D9C9FD90C07AB0EB38E5316B 1087488 ----a-w- C:\Windows\Sysnative\dbghelp.dll
2016-11-10 09:27:42 9FCA3A84338ADEF2AFF67CDA46EF8539 59904 ----a-w- C:\Windows\Sysnative\umb.dll
2016-11-10 09:27:42 8F4BB0CFECED925D440ABC2481278360 91648 ----a-w- C:\Windows\Sysnative\mapistub.dll
2016-11-10 09:27:42 8F4BB0CFECED925D440ABC2481278360 91648 ----a-w- C:\Windows\Sysnative\mapi32.dll
2016-11-10 09:27:42 8EF0D5C41EC907751B8429162B1239ED 136192 ----a-w- C:\Windows\Sysnative\browser.dll
2016-11-10 09:27:42 80E69670BDA10F32A941BA7358E33012 182784 ----a-w- C:\Windows\Sysnative\WUDFPlatform.dll
2016-11-10 09:27:42 70454DC107F93A2261A340E5B89BF052 125440 ----a-w- C:\Windows\Sysnative\inseng.dll
2016-11-10 09:27:42 6F3F29905F0EC4CE22C1FD8ACBF6C6DE 294912 ----a-w- C:\Windows\Sysnative\WindowsAnytimeUpgradeResults.exe
2016-11-10 09:27:42 6E90B7A6C66355AA8DDC5CABF6073DE1 497664 ----a-w- C:\Windows\Sysnative\main.cpl
2016-11-10 09:27:42 6CECA4C6A489C9B2E6073AFDAAE3F607 29184 ----a-w- C:\Windows\Sysnative\netutils.dll
2016-11-10 09:27:42 650CAEA856943E29F25A25D31E004B18 623104 ----a-w- C:\Windows\Sysnative\FXSAPI.dll
2016-11-10 09:27:42 605A399F42B09D6147DDAC2C7851BD36 254464 ----a-w- C:\Windows\Sysnative\qasf.dll
2016-11-10 09:27:42 56DAA6A090E528BD938B08616434717C 132608 ----a-w- C:\Windows\Sysnative\wmpshell.dll
2016-11-10 09:27:42 515F6B0BBC6E3A09B57C5AE6C41765D2 899584 ----a-w- C:\Windows\Sysnative\Bubbles.scr
2016-11-10 09:27:42 4FFB0D0E913D8A2767F6D8B7C0375208 222208 ----a-w- C:\Windows\Sysnative\rdpencom.dll
2016-11-10 09:27:42 4E1073B674746EEA0B2EA0F4775EA6A4 8192 ----a-w- C:\Windows\Sysnative\TsUsbRedirectionGroupPolicyControl.exe
2016-11-10 09:27:42 47AD5ED974A4FDB582824C5DCB6E7482 573952 ----a-w- C:\Windows\Sysnative\d3d10level9.dll
2016-11-10 09:27:42 45989C268EC2CC9EEA80030AF96CDA5A 16384 ----a-w- C:\Windows\Sysnative\msrle32.dll
2016-11-10 09:27:42 3EB98CFF1C242167DF5FDBC6441CE3C5 172544 ----a-w- C:\Windows\Sysnative\perfmon.exe
2016-11-10 09:27:42 25871B7114005B04B24A5114CD5234CF 31744 ----a-w- C:\Windows\Sysnative\AzSqlExt.dll
2016-11-10 09:27:42 2472BDF30C62F3E81AE27A968C25608C 73216 ----a-w- C:\Windows\Sysnative\unimdmat.dll
2016-11-10 09:27:42 22D98BF27F3DAE2B3E9559B9C40D49A1 37376 ----a-w- C:\Windows\Sysnative\iscsium.dll
2016-11-10 09:27:42 2102EE1AC5A82401C93DDEE67B66EE67 363520 ----a-w- C:\Windows\Sysnative\diskraid.exe
2016-11-10 09:27:42 1B4A711265FEA91259553D7B4E83394B 73728 ----a-w- C:\Windows\Sysnative\tlscsp.dll
2016-11-10 09:27:42 17E6B6B2ADA2630E01EAE9F9AC7A1D63 242688 ----a-w- C:\Windows\Sysnative\Mystify.scr
2016-11-10 09:27:42 03DC34242009D26061A4B1E91DF51C9B 1911808 ----a-w- C:\Windows\Sysnative\OpcServices.dll
2016-11-10 09:27:42 025E7DBDB98866ED3CB2D4DDA70B364D 56832 ----a-w- C:\Windows\Sysnative\runonce.exe
2016-11-10 09:27:41 E87D22236DFDF100715F142D4D258FB7 1232896 ----a-w- C:\Windows\Sysnative\WMADMOD.DLL
2016-11-10 09:27:41 DC81872E3E6BCA39B322A7FA1A044040 232448 ----a-w- C:\Windows\Sysnative\bitsadmin.exe
2016-11-10 09:27:41 C5AC93CF3BA30D367FB49148A2B673B9 48128 ----a-w- C:\Windows\Sysnative\PrintIsolationProxy.dll
2016-11-10 09:27:41 BA94F132C66F2BD456854490C800C4F2 124928 ----a-w- C:\Windows\Sysnative\wiavideo.dll
2016-11-10 09:27:41 B84CB0F6C83F5D515570334AC505720C 133120 ----a-w- C:\Windows\Sysnative\Kswdmcap.ax
2016-11-10 09:27:41 B23E4D796A3FEB91241A806EC18D5C32 395776 ----a-w- C:\Windows\Sysnative\nltest.exe
2016-11-10 09:27:41 AC3D7EE5F9EC2AB4BE0CDDE362D026A4 190976 ----a-w- C:\Windows\Sysnative\vdsbas.dll
2016-11-10 09:27:41 994DF4AC984DC0EAB52EE51AF0E2B90C 666112 ----a-w- C:\Windows\Sysnative\WMVSDECD.DLL
2016-11-10 09:27:41 862596399AAFD2A21DB2AF9270CD4F70 238080 ----a-w- C:\Windows\Sysnative\mstask.dll
2016-11-10 09:27:41 6A84E68B538B8B04608BF2F0D426CE6F 337920 ----a-w- C:\Windows\Sysnative\raschap.dll
2016-11-10 09:27:41 4B4CA7B9008C56E380BC0A97FE0F2B4D 17408 ----a-w- C:\Windows\Sysnative\syssetup.dll
2016-11-10 09:27:41 3EEC0FB1DDD317AA1E8933B912439736 146944 ----a-w- C:\Windows\Sysnative\MdSched.exe
2016-11-10 09:27:41 2236436F5522E6F9153569AD24C4F70F 215040 ----a-w- C:\Windows\Sysnative\wpdwcn.dll
2016-11-10 09:27:41 0BE09CD858ABF9DF6ED259D57A1A1663 84992 ----a-w- C:\Windows\Sysnative\Mcx2Svc.dll
2016-11-10 09:27:39 F8E722E173C976353881024088794450 431104 ----a-w- C:\Windows\Sysnative\WPDSp.dll
2016-11-10 09:27:39 F848764F21653CB94037945A76A59171 62976 ----a-w- C:\Windows\Sysnative\PnPUnattend.exe
2016-11-10 09:27:39 F0C6A924CAED0D26E7150F4009384AA6 130048 ----a-w- C:\Windows\Sysnative\desk.cpl
2016-11-10 09:27:39 EDEC311F8BC0C12117A6492C382BE4D7 181248 ----a-w- C:\Windows\Sysnative\qcap.dll
2016-11-10 09:27:39 EC5F6EE00337DB400229B69FB43F92C5 124416 ----a-w- C:\Windows\Sysnative\QSVRMGMT.DLL
2016-11-10 09:27:39 E4A343322CF7F4463DF18DDF04109BF3 250880 ----a-w- C:\Windows\Sysnative\qdv.dll
2016-11-10 09:27:39 C6A4A29DD06F38D0045FBE3F3A1DBAD5 121344 ----a-w- C:\Windows\Sysnative\fphc.dll
2016-11-10 09:27:39 C5BC9544F0C5C6532EFA9508732244C2 78848 ----a-w- C:\Windows\Sysnative\spbcd.dll
2016-11-10 09:27:39 BCC2CE468E24159FFEF2134D6566D117 121856 ----a-w- C:\Windows\Sysnative\secproc_ssp_isv.dll
2016-11-10 09:27:39 BC631580FC99C75740DC1C6AF20B986B 978944 ----a-w- C:\Windows\Sysnative\WMSPDMOD.DLL
2016-11-10 09:27:39 AF1CCAFDAF72439B123A37BD6509F19E 325632 ----a-w- C:\Windows\Sysnative\msnetobj.dll
2016-11-10 09:27:39 AEBA315A5631B407A2E9C6E1BD711A9D 63488 ----a-w- C:\Windows\Sysnative\setbcdlocale.dll
2016-11-10 09:27:39 A9CD8CA91A60D6CF28719008C553BC08 121856 ----a-w- C:\Windows\Sysnative\secproc_ssp.dll
2016-11-10 09:27:39 9BAC981F66940ACFF5469D15B769E056 104448 ----a-w- C:\Windows\Sysnative\logman.exe
2016-11-10 09:27:39 98E7911BEFE83F76777317CE6905666D 78848 ----a-w- C:\Windows\Sysnative\tabcal.exe
2016-11-10 09:27:39 97F5D9014617AB0025F9CC5DD9FF6FF2 98816 ----a-w- C:\Windows\Sysnative\RegisterIEPKEYs.exe
2016-11-10 09:27:39 94D74880B59751661B7A7CF11BAEC9B3 288256 ----a-w- C:\Windows\Sysnative\mssphtb.dll
2016-11-10 09:27:39 8888DC2ACEBFE75B3B52CE01AB2249C3 313344 ----a-w- C:\Windows\Sysnative\dot3ui.dll
2016-11-10 09:27:39 854D93A45BA56523FB73599BF0852604 224256 ----a-w- C:\Windows\Sysnative\PortableDeviceSyncProvider.dll
2016-11-10 09:27:39 82E642B23F61A6863794E448C1EAAE34 392192 ----a-w- C:\Windows\Sysnative\WMPhoto.dll
2016-11-10 09:27:39 8166A3DAFCB98790436F9B8B686C0608 435712 ----a-w- C:\Windows\Sysnative\PortableDeviceStatus.dll
2016-11-10 09:27:39 765A0868EB29240873FB40E32F9C2053 527872 ----a-w- C:\Windows\Sysnative\wmdrmnet.dll
2016-11-10 09:27:39 6B3E852970892B3033DC996C282C2C93 89088 ----a-w- C:\Windows\Sysnative\amstream.dll
2016-11-10 09:27:39 53F4BCD594CC2A791E16246AED525B6D 63488 ----a-w- C:\Windows\Sysnative\takeown.exe
2016-11-10 09:27:39 4E9C2DB10F7E6AE91BF761139D4B745B 135168 ----a-w- C:\Windows\Sysnative\shacct.dll
2016-11-10 09:27:39 4D85B1B44DC19C0C46E6DDE35895FD0F 61952 ----a-w- C:\Windows\Sysnative\vss_ps.dll
2016-11-10 09:27:39 1BF0CB861A48FEB1638228760750F3CB 46080 ----a-w- C:\Windows\Sysnative\cscapi.dll
2016-11-10 09:27:38 FE536088C8A94F0E6AEDAE34342B056E 79872 ----a-w- C:\Windows\Sysnative\QCLIPROV.DLL
2016-11-10 09:27:38 FCE23E27F62989AD0BB88E256E847A41 71680 ----a-w- C:\Windows\Sysnative\CertPolEng.dll
2016-11-10 09:27:38 D0FF1CA89D013B94768A289023958F6B 226816 ----a-w- C:\Windows\Sysnative\WUDFHost.exe
2016-11-10 09:27:38 B73A6E4B319AFFE64582AC5C1801BB3F 15360 ----a-w- C:\Windows\Sysnative\nrpsrv.dll
2016-11-10 09:27:38 9BB99503D6A4DD62569EDE9E5E2672A5 27136 ----a-w- C:\Windows\Sysnative\HotStartUserAgent.dll
2016-11-10 09:27:38 764908FE1FA96F93C95B1B67A0FCED29 72704 ----a-w- C:\Windows\Sysnative\netapi32.dll
2016-11-10 09:27:38 74C6DA5522F420C394AE34B2D3D677E3 92160 ----a-w- C:\Windows\Sysnative\cmstp.exe
2016-11-10 09:27:38 4C6F525A346E80A8834CE2E7A870B203 198656 ----a-w- C:\Windows\Sysnative\iasrecst.dll
2016-11-10 09:27:38 3DA66EF520D45081DCFFDAECD3DE17C8 61440 ----a-w- C:\Windows\Sysnative\djoin.exe
2016-11-10 09:27:38 25833C9289AEA84AE3F552FE7A0B1C19 1148416 ----a-w- C:\Windows\Sysnative\IMJP10.IME
2016-11-10 09:27:38 1C8A7466E79B306C6D703FE8A6AC5612 68096 ----a-w- C:\Windows\Sysnative\vfwwdm32.dll
2016-11-10 09:27:38 03AB2A2E426C2AD400AC8315226347F8 144896 ----a-w- C:\Windows\Sysnative\EhStorAPI.dll
2016-11-10 09:27:38 00EED37FFA36C9FCF8370160596B891E 37376 ----a-w- C:\Windows\Sysnative\shimgvw.dll
2016-11-10 09:27:17 FF80CAD87555E8E4D2CFD7B9058343F8 13312 ----a-w- C:\Windows\Sysnative\sscore.dll
2016-11-10 09:27:17 FAEE5377E2B48FAAF3702E73DB8D6F58 166400 ----a-w- C:\Windows\Sysnative\diskpart.exe
2016-11-10 09:27:17 F024FD214655A287536026B00C08430F 194048 ----a-w- C:\Windows\Sysnative\itircl.dll
2016-11-10 09:27:17 C8994E2703410F8DFE19DE5BF82994C0 143360 ----a-w- C:\Windows\Sysnative\mydocs.dll
2016-11-10 09:27:17 C58193D44CF096225288E351611C77A3 14848 ----a-w- C:\Windows\Sysnative\BWUnpairElevated.dll
2016-11-10 09:27:17 C1A8C1D804EFB14D344E958BC6AA572C 61952 ----a-w- C:\Windows\Sysnative\WavDest.dll
2016-11-10 09:27:17 B5BCBC935B89B4BB38F0FC7378A52F65 306688 ----a-w- C:\Windows\Sysnative\RMActivate_ssp.exe
2016-11-10 09:27:17 A88D5A2FA2B16934A74C4B1138676560 75776 ----a-w- C:\Windows\Sysnative\MSDvbNP.ax
2016-11-10 09:27:17 A6DE0C14462B422D24FCB88AF4C3D67B 305152 ----a-w- C:\Windows\Sysnative\RMActivate_ssp_isv.exe
2016-11-10 09:27:17 A5C09AA0017428B30BE3423CB84DEB61 152064 ----a-w- C:\Windows\Sysnative\iscsicli.exe
2016-11-10 09:27:17 A5A70AF023570C1D26501B14338C1D6C 58880 ----a-w- C:\Windows\Sysnative\browcli.dll
2016-11-10 09:27:17 558C42D165DB5799B4072DC0A9C27C0B 35840 ----a-w- C:\Windows\Sysnative\msdmo.dll
2016-11-10 09:27:17 509E88FF7B257885775791FAF0965D6A 102400 ----a-w- C:\Windows\Sysnative\mobsync.exe
2016-11-10 09:27:17 3DC7F21CF94CC930E7E8F63D4AEBA71A 51712 ----a-w- C:\Windows\Sysnative\MultiDigiMon.exe
2016-11-10 09:27:17 387E72E739E15E3D37907A86D9FF98E2 90624 ----a-w- C:\Windows\Sysnative\KMSVC.DLL
2016-11-10 09:27:17 2B734931F36EF571816236D7C792BC80 103936 ----a-w- C:\Windows\Sysnative\dot3msm.dll
2016-11-10 09:27:17 2A436796758BF2555A26C770FE8A6FEE 74240 ----a-w- C:\Windows\Sysnative\fdProxy.dll
2016-11-10 09:27:17 1A481461B004DBAC04C28CF70455A751 57856 ----a-w- C:\Windows\Sysnative\g711codc.ax
2016-11-10 09:27:17 1A0882C441AB2A685DAF076FF15F6482 43008 ----a-w- C:\Windows\Sysnative\relog.exe
2016-11-10 09:27:17 1950B1C38AED4154BA79F77E36494D8A 681472 ----a-w- C:\Windows\Sysnative\WUDFx.dll
2016-11-10 09:27:17 0F8A86A636A774DBB63B3A8659723312 43520 ----a-w- C:\Windows\Sysnative\vbisurf.ax
2016-11-10 09:27:16 E811F8510B133E70CF6E509FB809824F 36352 ----a-w- C:\Windows\Sysnative\wdiasqmmodule.dll
2016-11-10 09:27:16 E674F9D3B685167F6C83EAE8BEF7F567 41472 ----a-w- C:\Windows\Sysnative\mciqtz32.dll
2016-11-10 09:27:16 DB76DB15EFC6E4D1153A6C5BC895948D 145920 ----a-w- C:\Windows\Sysnative\sppc.dll
2016-11-10 09:27:16 C4BFE4B61086416B0529212F92BCE081 24064 ----a-w- C:\Windows\Sysnative\schedcli.dll
2016-11-10 09:27:16 BD3E64A49311E558C08F4F04B53F82D8 36864 ----a-w- C:\Windows\Sysnative\choice.exe
2016-11-10 09:27:16 B8509DCFCFD577F568BE4026BFD982C0 76800 ----a-w- C:\Windows\Sysnative\imagehlp.dll
2016-11-10 09:27:16 9BDAEBDBDE7B98068F7F59E51476160C 103936 ----a-w- C:\Windows\Sysnative\eappgnui.dll
2016-11-10 09:27:16 90CC31E54E79E9E5800FFF3CCF2FC5DB 65536 ----a-w- C:\Windows\Sysnative\inetmib1.dll
2016-11-10 09:27:16 826E2C7B96B024A203D237E7AFB5A81C 18944 ----a-w- C:\Windows\Sysnative\spopk.dll
2016-11-10 09:27:16 6B05D2C6A32F3D7CE89E4ECEF7C3B7A5 31232 ----a-w- C:\Windows\Sysnative\prevhost.exe
2016-11-10 09:27:16 6A2E9BBD516D064C925A9634A5632854 71168 ----a-w- C:\Windows\Sysnative\findstr.exe
2016-11-10 09:27:16 5C18CD22BE4628865FCB63337A6E5EF6 10429 ----a-w- C:\Windows\Sysnative\ScavengeSpace.xml
2016-11-10 09:27:16 5A1976E146C82EE36611AD47DF626B1E 51712 ----a-w- C:\Windows\Sysnative\repair-bde.exe
2016-11-10 09:27:16 43FA401CF9F3343F5B0CB800909506B5 434688 ----a-w- C:\Windows\Sysnative\FXSTIFF.dll
2016-11-10 09:27:16 35C2F5EE281D0CC00B6185435EE6D1A7 48640 ----a-w- C:\Windows\Sysnative\luainstall.dll
2016-11-10 09:27:16 31ABDD039F63BABBED8C031F87E0F6DE 1080320 ----a-w- C:\Windows\Sysnative\onexui.dll
2016-11-10 09:27:16 0B0A8CE57A798231C0B6E4F7ABBFE5D1 79872 ----a-w- C:\Windows\Sysnative\manage-bde.exe
2016-11-10 09:27:15 FF6148B1C150DA05D35C68D143AD6DEA 147456 ----a-w- C:\Windows\Sysnative\RDPENCDD.dll
2016-11-10 09:27:15 F97883C70C964AF913C4D1BD37D38A57 33792 ----a-w- C:\Windows\Sysnative\profprov.dll
2016-11-10 09:27:15 E5285C0E295E2F5A522EE79C7F7A15CA 12288 ----a-w- C:\Windows\Sysnative\msfeedssync.exe
2016-11-10 09:27:15 ABC58A1A2C4D527A358EEF2142268FE5 21504 ----a-w- C:\Windows\Sysnative\TRAPI.dll
2016-11-10 09:27:15 93BF245D8A1DB0BF1C8A3FFDFF3E2C83 53248 ----a-w- C:\Windows\Sysnative\odbcconf.dll
2016-11-10 09:27:15 85CD6797A4EDE1E3E0378DCBDF227CF0 72192 ----a-w- C:\Windows\Sysnative\napdsnap.dll
2016-11-10 09:27:15 859E2A5AB0CBD752F9C030D74F55D30C 17920 ----a-w- C:\Windows\Sysnative\fixmapi.exe
2016-11-10 09:27:15 786D0E9BE38BAD3C8FFFA9BAB6909582 36864 ----a-w- C:\Windows\Sysnative\dsauth.dll
2016-11-10 09:27:15 748849C42DEA24C723048E24BCA1BD55 47104 ----a-w- C:\Windows\Sysnative\wshbth.dll
2016-11-10 09:27:15 715F03B4C7223349768013EA95D9E5B7 27648 ----a-w- C:\Windows\Sysnative\LogonUI.exe
2016-11-10 09:27:15 688649DB892D2D8C6BEDCBDDAFCBDEB3 44544 ----a-w- C:\Windows\Sysnative\WUDFCoinstaller.dll
2016-11-10 09:27:15 55E3404EBA301BC8A420157BFE7184D2 1164800 ----a-w- C:\Windows\Sysnative\UIRibbonRes.dll
2016-11-10 09:27:15 19E41CCCEE697CC9465396B370929792 41984 ----a-w- C:\Windows\Sysnative\FXSMON.dll
2016-11-10 09:27:15 12929BDE96189F4E968AD035573424F0 25600 ----a-w- C:\Windows\Sysnative\elsTrans.dll
2016-11-10 09:27:15 0AC26F97A742C187AF6CF2E1B8C2D1EE 46080 ----a-w- C:\Windows\Sysnative\atmlib.dll
2016-11-10 09:27:12 FF50D93AAF2C520B43B0910EF2A1838B 457216 ----a-w- C:\Windows\Sysnative\imkr80.ime
2016-11-10 09:27:12 F890B16A75982537CDDDD1F5F8298337 23040 ----a-w- C:\Windows\Sysnative\rdprefdrvapi.dll
2016-11-10 09:27:12 F7DC62E68443D27AC248741DF07E451E 482816 ----a-w- C:\Windows\Sysnative\html.iec
2016-11-10 09:27:12 F1D89890A434B46242DFB73EB2DAEE5A 28160 ----a-w- C:\Windows\Sysnative\shgina.dll
2016-11-10 09:27:12 7EE5F17A21D9A9101207DF4BC37B085D 30208 ----a-w- C:\Windows\Sysnative\cscdll.dll
2016-11-10 09:27:12 4C1244FEF74C60A4B1B151C76609CBE2 26112 ----a-w- C:\Windows\Sysnative\wsdchngr.dll
2016-11-10 09:27:12 3B1829281D9273D00AEEA7F749A688F9 18432 ----a-w- C:\Windows\Sysnative\FXSUNATD.exe
2016-11-10 09:27:12 29409ED7400CA5BCCC30C0EE5147A60D 24576 ----a-w- C:\Windows\Sysnative\bitsperf.dll
2016-11-10 09:27:11 EF00EAD1A0C4978C685BEB83FF1C9EF6 10240 ----a-w- C:\Windows\Sysnative\rdpcfgex.dll
2016-11-10 09:27:11 C742077774E78A388F11EC943AD717FC 361984 ----a-w- C:\Windows\Sysnative\wow64win.dll
2016-11-10 09:27:11 BE5A0F4022E998E9319EA39598B427EA 9728 ----a-w- C:\Windows\Sysnative\spwmp.dll
2016-11-10 09:27:11 99F5AEDBA338CE63F047D86E07DA36F6 13312 ----a-w- C:\Windows\Sysnative\wow64cpu.dll
2016-11-10 09:27:11 3181F76ED237CC3D50D10CEA05AF8B60 10752 ----a-w- C:\Windows\Sysnative\riched32.dll
2016-11-10 09:27:11 12597124DF5E54B932945D326F916C9A 14336 ----a-w- C:\Windows\Sysnative\browseui.dll
2016-11-10 09:27:11 11A087ED1D82FF01F74CEA03CF25E348 13824 ----a-w- C:\Windows\Sysnative\wshirda.dll
2016-11-10 09:27:11 103D54F329686C2CCF67156117A30D53 13312 ----a-w- C:\Windows\Sysnative\C_ISCII.DLL
2016-11-10 09:27:10 D027C5FDA1072C099165725AB8A54165 5120 ----a-w- C:\Windows\Sysnative\msdxm.ocx
2016-11-10 09:27:10 D027C5FDA1072C099165725AB8A54165 5120 ----a-w- C:\Windows\Sysnative\dxmasf.dll
2016-11-10 09:27:10 6DFF455CE6D7338F9146578BE21594C2 7680 ----a-w- C:\Windows\Sysnative\KBDSF.DLL
2016-11-10 09:27:10 33CFB33A0BBEA072A8BEE03618D9EC38 11264 ----a-w- C:\Windows\Sysnative\shunimpl.dll
2016-11-10 09:27:10 110B1CB812D2A7208FC366654ABB80CE 8192 ----a-w- C:\Windows\Sysnative\KBDTUF.DLL
2016-11-10 09:27:09 B64E6DA93066E6DCECB046E3E75C61A5 7680 ----a-w- C:\Windows\Sysnative\KBDINBEN.DLL
2016-11-10 09:27:09 757BDC7D5870E23A83DAD7EB9132C6BE 7680 ----a-w- C:\Windows\Sysnative\KBDNEPR.DLL
2016-11-10 09:27:09 4B1D11E789F27C99B7D18F7765E256C1 7680 ----a-w- C:\Windows\Sysnative\KBDPO.DLL
2016-11-10 09:27:09 4572948BA797E6EE4D33B5B55A98A099 8192 ----a-w- C:\Windows\Sysnative\KBDSG.DLL
2016-11-10 09:27:09 35701AA2A2B63A97714B1016374E0557 8192 ----a-w- C:\Windows\Sysnative\KBDTUQ.DLL
2016-11-10 09:27:09 1F9860C03FAC9A1052C96837649D7723 7680 ----a-w- C:\Windows\Sysnative\KBDINTAM.DLL
2016-11-10 09:27:09 14232FB0BCBB446352C37CF3260FC3E4 8192 ----a-w- C:\Windows\Sysnative\KBDGKL.DLL
2016-11-10 09:27:09 0BC9A864E8AC046A85613C451699D91A 8192 ----a-w- C:\Windows\Sysnative\kbdlk41a.dll
2016-11-10 09:27:08 E19AD0D49BFF5938B3E374873AC174DE 12625920 ----a-w- C:\Windows\Sysnative\wmploc.DLL
2016-11-10 09:27:08 A09DB2FEA18B9652F8D20B5CAEB5A44E 6656 ----a-w- C:\Windows\Sysnative\KBDGEO.DLL
2016-11-10 09:27:08 77EC39CBFDDD4B54F741B27004882542 8192 ----a-w- C:\Windows\Sysnative\KBDCZ1.DLL
2016-11-10 09:27:08 166930BF9AC87B8DC52EC4F77821D4B1 7680 ----a-w- C:\Windows\Sysnative\KBDGR1.DLL
2016-11-10 09:27:07 C6E8BA35B529D33E2056C4922CC11336 7168 ----a-w- C:\Windows\Sysnative\KBDINORI.DLL
2016-11-10 09:27:07 C3E6B50E73E2212C3A2768054F9A523B 7168 ----a-w- C:\Windows\Sysnative\KBDINKAN.DLL
2016-11-10 09:27:07 C1FC0D0BCA806CAD557C7CAF3E78E1DA 7168 ----a-w- C:\Windows\Sysnative\KBDBASH.DLL
2016-11-10 09:27:07 AE3821CB2E8CF9F6FB04ECA83E7A3C34 7168 ----a-w- C:\Windows\Sysnative\KBDUGHR1.DLL
2016-11-10 09:27:07 AD20BF819D5C52F36CAAAE33EFB2AC14 7168 ----a-w- C:\Windows\Sysnative\KBDINHIN.DLL
2016-11-10 09:27:07 A50E189FDB7E1018E9B2AEF101A236A7 2048 ----a-w- C:\Windows\Sysnative\tzres.dll
2016-11-10 09:27:07 9CB174523429D757DC8B896F5C3967C7 7168 ----a-w- C:\Windows\Sysnative\KBDBULG.DLL
2016-11-10 09:27:07 79F73766D279D1842581EA60D6FD44F1 7168 ----a-w- C:\Windows\Sysnative\KBDBLR.DLL
2016-11-10 09:27:07 78523A26F5604C0568FE9D1CE86E36F4 7168 ----a-w- C:\Windows\Sysnative\KBDUS.DLL
2016-11-10 09:27:07 78027FCA53D99FFF446C47B30C33890C 52736 ----a-w- C:\Windows\Sysnative\BlbEvents.dll
2016-11-10 09:27:07 6132CBC243CAB9B5462ED4419DAF3ECE 7168 ----a-w- C:\Windows\Sysnative\KBDTAJIK.DLL
2016-11-10 09:27:07 59825A3288FDEC4D00FF99ADBD77AD79 7168 ----a-w- C:\Windows\Sysnative\KBDINTEL.DLL
2016-11-10 09:27:07 4E1EED4AC7C69E33BA461E68F748EFA0 7168 ----a-w- C:\Windows\Sysnative\KBDLT1.DLL
2016-11-10 09:27:07 46302663F2E25F9877A10BC9F1E619D6 7168 ----a-w- C:\Windows\Sysnative\KBDINMAR.DLL
2016-11-10 09:27:07 3C6085842F154C350213511B0D3E381A 7168 ----a-w- C:\Windows\Sysnative\KBDMON.DLL
2016-11-10 09:27:07 3924400E5C14A561E3C7279B95523160 35328 ----a-w- C:\Windows\Sysnative\pifmgr.dll
2016-11-10 09:27:07 383345EA4003833B44D40E4F363034DD 3072 ----a-w- C:\Windows\Sysnative\dpnaddr.dll
2016-11-10 09:27:07 36917E19EDABCC37054C6F2FD27DB6FC 69120 ----a-w- C:\Windows\Sysnative\nlsbres.dll
2016-11-10 09:27:07 28E9FE419779A4DB32F841CE8B572139 7168 ----a-w- C:\Windows\Sysnative\KBDMAORI.DLL
2016-11-10 09:27:07 174E2AF0968A86D5FBFA7B00C79677B6 7168 ----a-w- C:\Windows\Sysnative\KBDTURME.DLL
2016-11-10 09:27:07 10116D686A4DBA135E5C394E931E5D98 7680 ----a-w- C:\Windows\Sysnative\spwizres.dll
2016-11-10 09:26:57 C236A8735A48B165A2A7724357DBE332 105559 ----a-w- C:\Windows\Sysnative\RacRules.xml
2016-11-10 09:26:54 6369F960C28A16F4502C480EEDE3652C 399872 ----a-w- C:\Windows\Sysnative\dpx.dll
2016-11-10 09:26:29 7DB5AA22A8A8E5C2D335F44853C1F6DE 529408 ----a-w- C:\Windows\Sysnative\wbemcomn.dll
====== C:\Windows\Sysnative\drivers =====
2016-11-17 14:12:23 9450007630E89154884F1FDA5E56C9AF 82936 ----a-w- C:\Windows\Sysnative\drivers\aswHdsKe.sys
2016-11-13 04:52:49 78488AF2AB2111D67B3C4044707A519B 192216 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys
2016-11-13 04:52:11 78BFF5425E044086E74E78650A359FBB 27008 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys
2016-11-13 04:52:11 452ACB7A9914398D9E18CCCFFCF92208 64896 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys
2016-11-13 04:52:11 1239597BAB7EED2BB16D035AF87E65D9 140672 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys
2016-11-10 09:29:19 D11C783E3EF9A3C52C0EBE83CC5000E9 59392 ----a-w- C:\Windows\Sysnative\drivers\TsUsbFlt.sys
2016-11-10 09:29:12 509383E505C973ED7534A06B3D19688D 1924480 ----a-w- C:\Windows\Sysnative\drivers\tcpip.sys
2016-11-10 09:29:00 05D78AA5CB5F3F5C31160BDB955D0B7C 1659776 ----a-w- C:\Windows\Sysnative\drivers\ntfs.sys
2016-11-10 09:28:58 D931D7309DEB2317035B07C9F9E6B0BD 273792 ----a-w- C:\Windows\Sysnative\drivers\msiscsi.sys
2016-11-10 09:28:50 79B47FD40D9A817E932F9D26FAC0A81C 951680 ----a-w- C:\Windows\Sysnative\drivers\ndis.sys
2016-11-10 09:28:50 0EA7DE1ACB728DD5A369FD742D6EEE28 753664 ----a-w- C:\Windows\Sysnative\drivers\http.sys
2016-11-10 09:28:49 D31DC7A16DEA4A9BAF179F3D6FBDB38C 499712 ----a-w- C:\Windows\Sysnative\drivers\afd.sys
2016-11-10 09:28:48 D0F73A42040F21F92FD314B42AC5C9E7 413184 ----a-w- C:\Windows\Sysnative\drivers\srv2.sys
2016-11-10 09:28:48 2098B8556D1CEC2ACA9A29CD479E3692 468992 ----a-w- C:\Windows\Sysnative\drivers\srv.sys
2016-11-10 09:28:46 F7CD50FE7139F07E77DA8AC8033D1832 166272 ----a-w- C:\Windows\Sysnative\drivers\nvstor.sys
2016-11-10 09:28:46 C8E033EA95337FDCE489D1D0348B9A23 376192 ----a-w- C:\Windows\Sysnative\drivers\netio.sys
2016-11-10 09:28:45 DDAD5A7AB24D8B65F8D724F5C20FD806 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys
2016-11-10 09:28:45 09594D1089C523423B32A4229263F068 261632 ----a-w- C:\Windows\Sysnative\drivers\netbt.sys
2016-11-10 09:28:44 D5FEA92400F12412B3922087C09DA6A5 459248 ----a-w- C:\Windows\Sysnative\drivers\cng.sys
2016-11-10 09:28:44 5D9FD91F3D38DC9DA01E3CB5FA89CD48 148352 ----a-w- C:\Windows\Sysnative\drivers\nvraid.sys
2016-11-10 09:28:44 2BA8F3250828CCDB4204ECF2C6F40B6A 167936 ----a-w- C:\Windows\Sysnative\drivers\srvnet.sys
2016-11-10 09:28:42 6EC6D772EAE38DC17C14AED9B178D24B 107904 ----a-w- C:\Windows\Sysnative\drivers\amdsata.sys
2016-11-10 09:28:39 15B66C206B5CB095BAB980553F38ED23 210944 ----a-w- C:\Windows\Sysnative\drivers\rdpwd.sys
2016-11-10 09:28:38 F5BEE30450E18E6B83A5012C100616FD 982912 ----a-w- C:\Windows\Sysnative\drivers\dxgkrnl.sys
2016-11-10 09:28:37 2CE2DF28C83AEAF30084E1B1EB253CBB 215936 ----a-w- C:\Windows\Sysnative\drivers\vhdmp.sys
2016-11-10 09:28:36 CCE3074CEE5F2FAF1E7468F224C409CC 189824 ----a-w- C:\Windows\Sysnative\drivers\storport.sys
2016-11-10 09:28:35 759A9EEB0FA9ED79DA1FB7D4EF78866D 366976 ----a-w- C:\Windows\Sysnative\drivers\msrpc.sys
2016-11-10 09:28:35 0D08D2F3B3FF84E433346669B5E0F639 295808 ----a-w- C:\Windows\Sysnative\drivers\volsnap.sys
2016-11-10 09:28:34 A87D604AEA360176311474C87A63BB88 229888 ----a-w- C:\Windows\Sysnative\drivers\1394ohci.sys
2016-11-10 09:28:34 77F665941019A1594D887A74F301FA2F 309248 ----a-w- C:\Windows\Sysnative\drivers\rdbss.sys
2016-11-10 09:28:31 08E2345DF129082BCDFFDC1440F9C00D 287744 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb10.sys
2016-11-10 09:28:30 FF4232A1A64012BAA1FD97C7B67DF593 328192 ----a-w- C:\Windows\Sysnative\drivers\udfs.sys
2016-11-10 09:28:30 FAF015B07E3A2874A790A39B7D2C579F 158208 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb.sys
2016-11-10 09:28:30 DA6B67270FD9DB3697B20FCE94950741 289664 ----a-w- C:\Windows\Sysnative\drivers\fltMgr.sys
2016-11-10 09:28:28 DC722758B8261E1ABAFD31A3C0A66380 140800 ----a-w- C:\Windows\Sysnative\drivers\mrxdav.sys
2016-11-10 09:28:28 D2AAFD421940F640B407AEFAAEBD91B0 71552 ----a-w- C:\Windows\Sysnative\drivers\volmgr.sys
2016-11-10 09:28:28 94575C0571D1462A0F70BDE6BD6EE6B3 184704 ----a-w- C:\Windows\Sysnative\drivers\pci.sys
2016-11-10 09:28:28 471815800AE33E6F1C32FB1B97C490CA 129536 ----a-w- C:\Windows\Sysnative\drivers\rasl2tp.sys
2016-11-10 09:28:27 DB801A638D011B9633829EB6F663C900 140672 ----a-w- C:\Windows\Sysnative\drivers\msdsm.sys
2016-11-10 09:28:27 CCD53B5BD33CE0C889E830D839C8B66E 95616 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys
2016-11-10 09:28:27 39D2ABCD392F3D8A6DCE7B60AE7B8EFC 78720 ----a-w- C:\Windows\Sysnative\drivers\HpSAMD.sys
2016-11-10 09:28:26 C9F0E1BD74365A8771590E9008D22AB6 82944 ----a-w- C:\Windows\Sysnative\drivers\ipfltdrv.sys
2016-11-10 09:28:26 ACFAD0B512226C7A83C7CB09FD55A9AD 179072 ----a-w- C:\Windows\Sysnative\drivers\Classpnp.sys
2016-11-10 09:28:26 1F7B25B858FA27015169FE95E54108ED 223248 ----a-w- C:\Windows\Sysnative\drivers\fvevol.sys
2016-11-10 09:28:26 1142A21DB581A84EA5597B03A26EBAA0 27008 ----a-w- C:\Windows\Sysnative\drivers\amdxata.sys
2016-11-10 09:28:26 108D87409C5812EF47D81E22843E8C9D 128000 ----a-w- C:\Windows\Sysnative\drivers\mrxsmb20.sys
2016-11-10 09:28:25 B6D64EE607637301FF8C33139B4950DE 325120 ----a-w- C:\Windows\Sysnative\drivers\usbport.sys
2016-11-10 09:28:24 D76510CFA0FC09023077F22C2F979D86 91648 ----a-w- C:\Windows\Sysnative\drivers\USBSTOR.SYS
2016-11-10 09:28:24 C25F0BAFA182CBCA2DD3C851C2E75796 31104 ----a-w- C:\Windows\Sysnative\drivers\msahci.sys
2016-11-10 09:28:24 871EADAC56B0A4C6512BBE32753CCF79 75136 ----a-w- C:\Windows\Sysnative\drivers\partmgr.sys
2016-11-10 09:28:24 561E7E1F06895D78DE991E01DD0FB6E5 63360 ----a-w- C:\Windows\Sysnative\drivers\termdd.sys
2016-11-10 09:28:24 53F7305169863F0A2BDDC49E116C2E11 164352 ----a-w- C:\Windows\Sysnative\drivers\ndiswan.sys
2016-11-10 09:28:23 F92A2C41117A11A00BE01CA01A7FCDE9 111104 ----a-w- C:\Windows\Sysnative\drivers\raspptp.sys
2016-11-10 09:28:23 D81D9E70B8A6DD14D42D7B4EFA65D5F2 334208 ----a-w- C:\Windows\Sysnative\drivers\acpi.sys
2016-11-10 09:28:23 24FBF5CC5C04150073C315A7C83521EE 243712 ----a-w- C:\Windows\Sysnative\drivers\ks.sys
2016-11-10 09:28:22 B27A7B563F66EAD82B488EBAD5E4DD55 27520 ----a-w- C:\Windows\Sysnative\drivers\Diskdump.sys
2016-11-10 09:28:22 AC03AF3329579FFFB455AA2DAABBE22B 103808 ----a-w- C:\Windows\Sysnative\drivers\sbp2port.sys
2016-11-10 09:28:22 3DF4395A7CF8B7A72A5F4606366B8C2D 410496 ----a-w- C:\Windows\Sysnative\drivers\iaStorV.sys
2016-11-10 09:28:20 9FF918A261752C12639E8AD4208D2C2F 152960 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys
2016-11-10 09:28:20 74EE782B1D9C241EFE425565854C661C 52224 ----a-w- C:\Windows\Sysnative\drivers\usbehci.sys
2016-11-10 09:28:19 A255814907C89BE58B79EF2F189B843B 363392 ----a-w- C:\Windows\Sysnative\drivers\volmgrx.sys
2016-11-10 09:28:19 356AFD78A6ED4457169241AC3965230C 88576 ----a-w- C:\Windows\Sysnative\drivers\wanarp.sys
2016-11-10 09:28:19 1B1E264203D4EF9D3DA1987AD70355AB 171392 ----a-w- C:\Windows\Sysnative\drivers\scsiport.sys
2016-11-10 09:28:15 8B0E40E7E8BBF5ACF390465609D89FF1 76800 ----a-w- C:\Windows\Sysnative\drivers\hidclass.sys
2016-11-10 09:28:12 34ED295FA0121C241BFEF24764FC4520 213888 ----a-w- C:\Windows\Sysnative\drivers\rdyboost.sys
2016-11-10 09:28:11 A34FE1E025E88798E746F484956C0720 155520 ----a-w- C:\Windows\Sysnative\drivers\ataport.sys
2016-11-10 09:28:11 32E7A3D591D671A6DF2DB515A5CBE0FA 94592 ----a-w- C:\Windows\Sysnative\drivers\mountmgr.sys
2016-11-10 09:28:09 DC96BD9CCB8403251BCF25047573558E 343040 ----a-w- C:\Windows\Sysnative\drivers\usbhub.sys
2016-11-10 09:28:09 CE18B2CDFC837C99E5FAE9CA6CBA5D30 39424 ----a-w- C:\Windows\Sysnative\drivers\tssecsrv.sys
2016-11-10 09:28:07 A5462BD6884960C9DC85ED49D34FF392 14720 ----a-w- C:\Windows\Sysnative\drivers\hwpolicy.sys
2016-11-10 09:28:07 63B5129D7127E7757FCC9EA9D3763963 288640 ----a-w- C:\Windows\Sysnative\drivers\FWPKCLNT.SYS
2016-11-10 09:28:06 A44B420D30BD56E145D6A2BC8768EC58 155008 ----a-w- C:\Windows\Sysnative\drivers\mpio.sys
2016-11-10 09:27:45 015C0D8E0E0421B4CFD48CFFE2825879 57856 ----a-w- C:\Windows\Sysnative\drivers\ndproxy.sys
2016-11-10 09:27:42 DC54A574663A895C8763AF0FA1FF7561 48640 ----a-w- C:\Windows\Sysnative\drivers\umbus.sys
2016-11-10 09:27:42 9CD68BDDF322535C02ADC8331013D13D 258048 ----a-w- C:\Windows\Sysnative\drivers\dxgmms1.sys
2016-11-10 09:27:41 DF687E3D8836BFB04FCC0615BF15A519 45056 ----a-w- C:\Windows\Sysnative\drivers\tcpipreg.sys
2016-11-10 09:27:41 CAF88D6573D21CD2AA27001DDBFDC74D 146432 ----a-w- C:\Windows\Sysnative\drivers\rmcast.sys
2016-11-10 09:27:39 136185F9FB2CC61E573E676AA5402356 56832 ----a-w- C:\Windows\Sysnative\drivers\ndisuio.sys
2016-11-10 09:27:17 481DFF26B4DCA8F4CBAC1F7DCE1D6829 98816 ----a-w- C:\Windows\Sysnative\drivers\usbccgp.sys
2016-11-10 09:27:17 0557CF5A2556BD58E26384169D72438D 131584 ----a-w- C:\Windows\Sysnative\drivers\pacer.sys
2016-11-10 09:27:16 9BB2EF44EAA163B29C4A4587887A0FE4 102400 ----a-w- C:\Windows\Sysnative\drivers\dfsc.sys
2016-11-10 09:27:16 3566A8DAAFA27AF944F5D705EAA64894 125440 ----a-w- C:\Windows\Sysnative\drivers\tunnel.sys
2016-11-10 09:27:15 6F020A220388ECA0AB6062DC27BD16B6 26624 ----a-w- C:\Windows\Sysnative\drivers\tdi.sys
2016-11-10 09:27:12 C3EC945DEC43C00E2AD4C98DDDD064C7 31744 ----a-w- C:\Windows\Sysnative\drivers\usbrpm.sys
2016-11-10 09:27:12 99F8E788246D495CE3794D7E7821D2CA 12800 ----a-w- C:\Windows\Sysnative\drivers\acpipmi.sys
2016-11-10 09:27:11 9592090A7E2B61CD582B612B6DF70536 30208 ----a-w- C:\Windows\Sysnative\drivers\hidusb.sys
2016-11-10 09:27:11 89A69C3F2F319B43379399547526D952 61440 ----a-w- C:\Windows\Sysnative\drivers\appid.sys
2016-11-10 09:27:11 292A8E03B3FCE04E39B5BE9B14132030 32896 ----a-w- C:\Windows\Sysnative\drivers\USBCAMD2.sys
2016-11-10 09:27:11 0FC1AEA580957AA8817B8F305D18CA3A 78848 ----a-w- C:\Windows\Sysnative\drivers\IPMIDrv.sys
2016-11-10 09:27:11 0705EFF5B42A9DB58548EEC3B26BB484 33280 ----a-w- C:\Windows\Sysnative\drivers\kbdhid.sys
2016-11-10 09:27:11 03EDB043586CCEBA243D689BDDA370A8 38912 ----a-w- C:\Windows\Sysnative\drivers\CompositeBus.sys
2016-11-10 09:27:10 F036CE71586E93D94DAB220D7BDF4416 147456 ----a-w- C:\Windows\Sysnative\drivers\cdrom.sys
2016-11-10 09:27:10 DD85B78243A19B59F0637DCF284DA63C 14336 ----a-w- C:\Windows\Sysnative\drivers\sffp_sd.sys
2016-11-10 09:27:10 D3381DC54C34D79B22CEE0D65BA91B7C 112128 ----a-w- C:\Windows\Sysnative\drivers\WUDFPf.sys
2016-11-10 09:27:10 CF8D590BE3373029D57AF80914190682 172544 ----a-w- C:\Windows\Sysnative\drivers\WUDFRd.sys
2016-11-10 09:27:10 97BFED39B6B79EB12CDDBFEED51F56BB 122368 ----a-w- C:\Windows\Sysnative\drivers\hdaudbus.sys
2016-11-10 09:27:10 975761C778E33CD22498059B91E7373A 350208 ----a-w- C:\Windows\Sysnative\drivers\HdAudio.sys
2016-11-10 09:27:10 253F38D0D7074C02FF8DEB9836C97D2B 29696 ----a-w- C:\Windows\Sysnative\drivers\scfilter.sys
2016-11-09 03:10:39 06362BBA1347CBA0996F4B39BB1D8353 37144 ----a-w- C:\Windows\Sysnative\drivers\aswKbd.sys
2016-11-09 03:09:04 D60D9201739400F0FBDB9E36A3212D91 293352 ----a-w- C:\Windows\Sysnative\drivers\aswvmm.sys
2016-11-09 03:09:04 9C58B6E9663D0A76D00D83E43C765BDF 163416 ----a-w- C:\Windows\Sysnative\drivers\aswStm.sys
2016-11-09 03:09:04 28213B34725B18387CC1B8C3D73858A1 513632 ----a-w- C:\Windows\Sysnative\drivers\aswsp.sys
2016-11-09 03:09:03 937885085BFE5BD08EC1BC0245DD203B 74544 ----a-w- C:\Windows\Sysnative\drivers\aswRvrt.sys
2016-11-09 03:09:03 1BB00571CC2C78463ABD7E9C32970758 108816 ----a-w- C:\Windows\Sysnative\drivers\aswMonFlt.sys
2016-11-09 03:09:02 9B480B472D6826E7257C90E2D0EE2954 37656 ----a-w- C:\Windows\Sysnative\drivers\aswHwid.sys
2016-11-09 03:09:02 7010B57D708DA5C9686A5923EE621776 103064 ----a-w- C:\Windows\Sysnative\drivers\aswRdr2.sys
2016-11-09 03:09:01 0B6352251C5D84130DF4252D33D266C2 969184 ----a-w- C:\Windows\Sysnative\drivers\aswsnx.sys
2016-11-09 00:05:27 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_09_00.Wdf
====== C:\Windows\Tasks ======
2016-11-14 12:33:50 303C6BD5932B58D0717830D546364506 4476 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Acrobat Update Task
2016-11-10 15:41:03 7420ED546F62B1E981E126A18EDBC6AA 898 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-10 15:41:03 6364CD29BB0490DBC2D947BA5576D903 3894 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineUA
2016-11-10 15:41:02 A15F86B2D8E52029AD145C2335611CC5 894 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-10 15:41:02 44948EC4C1DFC2F54028EB6933EE920E 3642 ----a-w- C:\Windows\Sysnative\Tasks\GoogleUpdateTaskMachineCore
2016-11-10 09:07:44 A46BD09F1881ADF6DCA291E5DECABB1D 3934 ----a-w- C:\Windows\Sysnative\Tasks\User_Feed_Synchronization-{DB204F65-6A22-4B79-BEBF-B433516A7B24}
2016-11-09 17:51:52 E795B0C07CF4423585C943E1D1C62A2D 3768 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater
2016-11-09 17:51:52 E36085663B7BED680E5A9CDF3CC5E565 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-11-09 03:11:40 B8FE124A69C0B9CDE85170056766FD61 3892 ----a-w- C:\Windows\Sysnative\Tasks\SafeZone scheduled Autoupdate 1478661099
2016-11-09 03:09:14 07AA747AD5ABDA85129DBA714B337C9F 3922 ----a-w- C:\Windows\Sysnative\Tasks\avast! Emergency Update
2016-11-09 02:21:23 D5F637B510D969C04451BFD08024AAF7 3326 ----a-w- C:\Windows\Sysnative\Tasks\hpUrlLauncher.exe_{A68363CF-D9DB-4AED-8600-3917D9422166}
2016-11-09 02:13:14 F623DBD299EDA994FF8C2F1555371582 2918 ----a-w- C:\Windows\Sysnative\Tasks\hpUrlLauncher.exe_{DC6E83E2-6668-47F7-A81C-9B3604049E81}
2016-11-09 02:01:33 AD5DF7ACF6A2C18F0AA31E5A20081E90 3630 ----a-w- C:\Windows\Sysnative\Tasks\HPCustParticipation HP Deskjet 3050A J611 series
====== C:\Windows\Temp ======
======= C:\Program Files =====
2016-11-10 20:52:22 -------- d-----w- C:\Program Files\HitmanPro
2016-11-09 17:51:54 -------- d-----w- C:\Program Files\TrueKey
2016-11-09 03:09:16 -------- d-----w- C:\Program Files\Common Files\AV
2016-11-09 02:00:41 -------- d-----w- C:\Program Files\HP
2016-11-09 01:36:27 -------- d-----w- C:\Program Files\NVIDIA Corporation
======= C:\PROGRA~2 =====
2016-11-14 12:32:44 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe
2016-11-14 12:32:44 -------- d-----w- C:\PROGRA~2\Adobe
2016-11-10 17:33:52 -------- d-----w- C:\PROGRA~2\AbiWord
2016-11-09 03:30:18 -------- d-----w- C:\PROGRA~2\COMMON~1\Nova Development
2016-11-09 03:29:55 -------- d-----w- C:\PROGRA~2\Creative Home
2016-11-09 03:10:46 -------- d-----w- C:\PROGRA~2\Google
2016-11-09 03:09:16 -------- d-----w- C:\PROGRA~2\COMMON~1\AV
2016-11-09 02:02:43 -------- d-----w- C:\PROGRA~2\Hewlett-Packard
2016-11-09 02:02:34 -------- d-----w- C:\PROGRA~2\Microsoft
2016-11-09 02:02:33 -------- d-----w- C:\PROGRA~2\MSN Toolbar
2016-11-09 02:02:12 -------- d-----w- C:\PROGRA~2\Microsoft Silverlight
2016-11-09 02:01:52 -------- d-----w- C:\PROGRA~2\HP Photo Creations
2016-11-09 02:01:07 -------- d-----w- C:\PROGRA~2\HP
2016-11-09 01:48:42 -------- d-----w- C:\PROGRA~2\Microsoft.NET
2016-11-09 01:37:10 -------- d-----w- C:\PROGRA~2\VulkanRT
2016-11-09 01:36:27 -------- d-----w- C:\PROGRA~2\NVIDIA Corporation
======= C: =====
2016-11-21 11:28:57 3E514D0DF6080454167BEAE99C9F6428 74848 ----a-w- C:\virus.txt
2016-11-20 22:03:09 3CFFF0A6FC0F559B4D25A6B8E96CD424 1061 ----a-w- C:\Malware Scah.txt
====== C:\Users\Sharon\AppData\Roaming ======
2016-11-14 12:49:49 -------- d-----w- C:\Users\Sharon\AppData\Locallow\Adobe
2016-11-11 15:50:49 -------- d-----w- C:\Users\Sharon\AppData\Local\ElevatedDiagnostics
2016-11-10 17:35:13 -------- d-----w- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AbiWord Word Processor
2016-11-10 09:15:56 -------- d-----w- C:\Users\Sharon\AppData\Local\Google
2016-11-09 21:03:37 -------- d-----w- C:\Users\Sharon\AppData\Roaming\Adobe
2016-11-09 17:51:18 -------- d-----w- C:\Users\Sharon\AppData\Local\Adobe
2016-11-09 17:08:00 -------- d-----w- C:\Users\Sharon\AppData\Local\Programs
2016-11-09 04:02:53 CE2C0307A5109926192406491D434304 579448 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2016-11-09 03:42:33 -------- d-----w- C:\Users\Sharon\AppData\Local\HCSShell
2016-11-09 03:41:17 -------- d-----w- C:\Users\Sharon\AppData\Local\Nova Development
2016-11-09 03:41:17 -------- d-----w- C:\Users\Sharon\AppData\Local\Creative Home
2016-11-09 03:12:04 -------- d-----w- C:\Users\Sharon\AppData\Local\CEF
2016-11-09 03:10:46 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google
2016-11-09 02:53:01 -------- d-----w- C:\Users\Sharon\AppData\Local\Mozilla
2016-11-09 02:05:23 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft
2016-11-09 02:02:06 -------- d-----w- C:\Users\Sharon\AppData\Roaming\Mozilla
2016-11-09 02:01:35 -------- d-----w- C:\Users\Sharon\AppData\Roaming\HpUpdate
2016-11-09 01:59:42 248CB92DF9E0EB484A60ADF07C105351 96584 ----a-w- C:\Users\Sharon\AppData\Local\GDIPFONTCACHEV1.DAT
2016-11-09 01:59:42 -------- d-----w- C:\Users\Sharon\AppData\Local\HP
2016-11-09 01:35:01 -------- d-----w- C:\Users\Sharon\AppData\Local\Diagnostics
2016-11-09 01:32:30 -------- d-s---w- C:\Users\Sharon\AppData\Locallow\Microsoft
2016-11-09 01:28:12 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm
2016-11-09 01:27:10 -------- d-----r- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2016-11-09 01:27:10 -------- d-----r- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-11-09 01:26:52 -------- d-----w- C:\Users\Sharon\AppData\Roaming\Identities
2016-11-09 01:26:20 -------- d-s---w- C:\Users\Sharon\AppData\Roaming\Microsoft
2016-11-09 01:26:20 -------- d-----w- C:\Users\Sharon\AppData\Roaming\Media Center Programs
2016-11-09 01:26:20 -------- d-----w- C:\Users\Sharon\AppData\Local\Temp
2016-11-09 01:26:20 -------- d-----w- C:\Users\Sharon\AppData\Local\Microsoft
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2016-11-09 01:25:40 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking
====== C:\Users\Sharon ======
2016-11-16 19:47:12 90F503A58ED6B340C78D626D553672F6 8576448 ----a-w- C:\Users\Sharon\Downloads\ccsetup524.exe
2016-11-13 04:51:00 52F4695C53B02ADA7D648F95F2E2F8B4 22851472 ----a-w- C:\Users\Sharon\Downloads\mbam-setup-2.2.1.1043.exe
2016-11-11 13:00:03 -------- d-----w- C:\ProgramData\Adobe
2016-11-10 23:00:30 121F06C1DA71965212F3B6C13C17C514 3910208 ----a-w- C:\Users\Sharon\Downloads\adwcleaner_6.030.exe
2016-11-10 20:52:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2016-11-10 20:50:29 -------- d-----w- C:\ProgramData\HitmanPro
2016-11-10 20:50:19 76ACA89383D1B0EE9FD71F7603DAA7B4 11581544 ----a-w- C:\Users\Sharon\Downloads\hitmanpro_x64.exe
2016-11-10 20:42:34 E39FC95F0276DCBB25EFFEC2CFFA8E37 1631928 ----a-w- C:\Users\Sharon\Downloads\JRT.exe
2016-11-10 17:38:41 -------- d-----w- C:\Users\Sharon\AbiSuite
2016-11-10 17:35:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AbiWord Word Processor
2016-11-10 17:33:03 5D04D875F415062F8BABD49656FF7D3A 8335349 ----a-w- C:\Users\Sharon\Downloads\abiword-setup-2.8.6.exe
2016-11-10 15:40:38 14C5FE681464253C5A8429BEA50B685C 1065376 ----a-w- C:\Users\Sharon\Downloads\ChromeSetup.exe
2016-11-09 18:14:42 -------- d-----w- C:\ProgramData\Creative Home
2016-11-09 03:39:15 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hallmark
2016-11-09 02:02:28 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-11-09 02:01:52 -------- d-----w- C:\ProgramData\HP Photo Creations
2016-11-09 02:01:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-11-09 02:01:08 -------- d-----w- C:\ProgramData\HP
2016-11-09 02:00:34 7B916F5AF8C9812D3613974FA6FF33DA 57 ----a-w- C:\ProgramData\Ament.ini
2016-11-09 01:44:57 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-11-09 01:37:24 -------- d-----w- C:\ProgramData\NVIDIA
2016-11-09 01:36:33 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2016-11-09 01:27:10 -------- d-----r- C:\Users\Sharon\Searches
2016-11-09 01:26:44 -------- d-----r- C:\Users\Sharon\Contacts
2016-11-09 01:26:21 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Sharon\ntuser.ini
2016-11-09 01:26:20 -------- d--h--w- C:\Users\Sharon\AppData
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Videos
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Saved Games
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Pictures
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Music
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Links
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Favorites
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Downloads
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Documents
2016-11-09 01:26:20 -------- d-----r- C:\Users\Sharon\Desktop
 
====== C: exe-files ==
2016-11-24 00:04:31 A6D27C01F98F8A71A9257C2496DDBC2F 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1549888893-200277295-3011799959-1000\$IIN9XHU.exe
2016-11-24 00:04:27 A380914BF260E2C31BAD58B4C56BC21D 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-1549888893-200277295-3011799959-1000\$IY5KG4P.exe
2016-11-24 00:03:25 7EA0260488F304D68067A50B33A23AC2 1309184 ----a-w- C:\$Recycle.Bin\S-1-5-21-1549888893-200277295-3011799959-1000\$RIN9XHU.exe
2016-11-24 00:00:28 7EA0260488F304D68067A50B33A23AC2 1309184 ----a-w- C:\$Recycle.Bin\S-1-5-21-1549888893-200277295-3011799959-1000\$RY5KG4P.exe
2016-11-17 18:52:26 54CAC87B5623141BDED15F97EB7F25A3 2259448 ----a-w- C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\SwReporter\14.81.1\software_reporter_tool.exe
=== C: other files ==
2016-11-17 14:12:23 9450007630E89154884F1FDA5E56C9AF 82936 ----a-w- C:\Windows\System32\drivers\aswHdsKe.sys
 
==== Orphaned Tasks deleted from Registry ======================
 
avast Emergency Update deleted
 
==== Startup Registry Enabled ======================
 
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
 
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"
 
[HKEY_USERS\S-1-5-21-1549888893-200277295-3011799959-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
 
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft..../?LinkID=122915/build:7601"
 
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
 
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
 
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="C:\Windows\System32\SPReview\SPReview.exe /sp:1 /errorfwlink:http://go.microsoft..../?LinkID=122915/build:7601"
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"="C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe"
"Microsoft Default Manager"="C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe -resume"
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui"
"AddressBookReminderApp"="C:\Program Files (x86)\Creative Home\Hallmark Card Studio 2011 Deluxe\ReminderApp.exe"
 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
 
==== Startup Folders ======================
 
2016-11-09 02:21:21 1956 ----a-w- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - .lnk
2016-11-16 14:09:13 1956 ----a-w- C:\Users\Sharon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP Deskjet 3050A J611 series.lnk
2016-11-09 03:39:16 2325 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Event Planner Reminder.lnk
 
==== Task Scheduler Jobs ======================
 
C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [11/09/2016 09:51 AM]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [11/10/2016 07:40 AM]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [11/10/2016 07:40 AM]
 
==== Other Scheduled Tasks ======================
 
"C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\HPCustParticipation HP Deskjet 3050A J611 series" ["C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe"]
"C:\Windows\SysNative\tasks\hpUrlLauncher.exe_{A68363CF-D9DB-4AED-8600-3917D9422166}" [C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\utils\hpUrlLauncher.exe]
"C:\Windows\SysNative\tasks\hpUrlLauncher.exe_{DC6E83E2-6668-47F7-A81C-9B3604049E81}" [C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\utils\hpUrlLauncher.exe]
"C:\Windows\SysNative\tasks\SafeZone scheduled Autoupdate 1478661099" [C:\Program Files\AVAST Software\SZBrowser\launcher.exe]
"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{DB204F65-6A22-4B79-BEBF-B433516A7B24}" [C:\Windows\system32\msfeedssync.exe]
"C:\Windows\SysNative\tasks\AVAST Software\Avast settings backup" [C:\Program Files\Common Files\AV\avast Antivirus\backup.exe]
 
==== Firefox Start and Search pages ======================
 
ProfilePath: C:\Users\Sharon\AppData\Roaming\Mozilla\Firefox\Profiles\gez929vh.default
user_pref("browser.startup.homepage", "https://mail.google....l/u/0/#inbox");
 
==== Firefox Extensions Registry ======================
 
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"[email protected]"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11/08/2016 07:08 PM]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"[email protected]"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11/08/2016 07:08 PM]
 
==== Firefox Extensions ======================
 
==== Firefox Plugins ======================
 
Profilepath: C:\Users\Sharon\AppData\Roaming\Mozilla\Firefox\Profiles\gez929vh.default
83FCFA3C1E0D7523C21CCFBF336D2687 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll - Shockwave Flash
 
 
==== Chromium Look ======================
 
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - No path found[]
gomekmidlodglbbmalcneegieacbdmki - No path found[]
 
Google Slides - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Google Docs - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Avast SafePrice - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Google Sheets - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Google Docs Offline - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
Avast Online Security - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Login Faster - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgakoheffeejfgmnmaejknoeegcbnfgo
Chrome Web Store Payments - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Chrome Media Router - Sharon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
 
==== Set IE to Default ======================
 
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
 
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
 
==== All HKLM and HKCU SearchScopes ======================
 
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/...ms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/...ms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.co...q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/...Box&FORM=IE8SRC
 
==== Empty IE Cache ======================
 
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Sharon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
 
==== Empty FireFox Cache ======================
 
No FireFox Cache found
 
==== Empty Chrome Cache ======================
 
C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot
 
==== Empty All Flash Cache ======================
 
Flash Cache Emptied Successfully
 
==== Empty All Java Cache ======================
 
No Java Cache Found
 
==== C:\zoek_backup content ======================
 
C:\zoek_backup (files=8 folders=3 14694197 bytes)
 
==== Empty Temp Folders ======================
 
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Sharon\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
 
==== After Reboot ======================
 
==== Empty Temp Folders ======================
 
C:\Windows\Temp successfully emptied
C:\Users\Sharon\AppData\Local\Temp successfully emptied
 
==== Empty Recycle Bin ======================
 
C:\$RECYCLE.BIN successfully emptied
 
==== Deleting Files / Folders ======================
 
"C:\Users\Sharon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted
"C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted
"C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted
"C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted
"C:\Users\Sharon\AppData\Local\Google\Chrome\User Data\Default\Cache\index" deleted
 
==== EOF on Wed 11/23/2016 at 16:34:11.99 ======================

  • 0

#18
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts

I stand amazed at some of these scans.  I hope this is right.  Have a wonderful Thanksgiving.  We will be going to our daughters so I won't be on for a couple days.  I do so thank you for helping me with this problem.


  • 0

#19
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
Hello,

Next

Clean out your temporary internet files and temp files.

Download TFC by OldTimer http://oldtimer.geekstogo.com/TFC.exeto your desktop.
Double-click TFC.exe to run it.
Note: If you are running on Vista, right-click on the file and choose Run As Administrator
TFC will close all programs when run, so make sure you have saved all your work before you begin.

* Click the Start button to begin the cleaning process.
* Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two.
* Please let TFC run uninterrupted until it is finished.
Once TFC is finished it should restart your computer. If it does not, please manually restart the computer yourself to ensure a complete cleaning.

Next Reset Chrome

How to reset Chrome browser settings;

1.In the top-right corner of the browser window, click the Chrome menu
2.Select Settings.
3.At the bottom, click Show advanced settings.
4.Under the section "Reset settings,” click Reset settings.
5.In the dialog that appears, click Reset.

Let me know how things are after this.

Thanks
Joe :)

Hope Thanksgiving was fun..
  • 0

#20
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts

I have done all you instructed me to do.  I shall let you know how things go.  Yes, we had a wonderful Thanksgiving.  All the grandchildren came home and that is always so nice.  Thank you so much for all your help on this.  


  • 0

#21
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts

Hello, I have not been on the computer much this week as I had to take my husband to the Dr. twice and I go again tomorrow.  I can't really say if it is better so please excuse me.  I will try to get on Friday some and then will be able to see if Mind Spark is gone for good.  I do hope it is.  Just wanted to update you on this for I know I should post before 4 days and I have tried to get back on here but been busy running.  Once again, thank you for staying with me on this.  I do so appreciate your help.  


  • 0

#22
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
No problem Sharon, the doctor is in :)

Post a Malwarebytes log when you're able too.
  • 0

#23
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts
Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 12/2/2016
Scan Time: 12:42 AM
Logfile: malwarescan.txt
Administrator: Yes
 
Version: 2.2.1.1043
Malware Database: v2016.12.02.03
Rootkit Database: v2016.11.20.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Sharon
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 264910
Time Elapsed: 5 min, 42 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 0
(No malicious items detected)
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)

  • 0

#24
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
Hello,

Looks like we may have succeeded. Let it run for a few days and we will see.

Thanks
Joe :)
  • 0

#25
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts

Will do that and will let you know the first of next week Joe.  Thank you so very much for all your help.  


  • 0

Advertisements


#26
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts

Good morning Joe,  I do believe it is gone for it is not coming up at all now.  I am so thankful for your help.  I hope you have a blessed Christmas and a very Happy New Year.  Thank you again...


  • 0

#27
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
Hello,

If there are no further issues,

We need to remove the tools we used and then close the topic.


The following procedures will implement some cleanup procedures to remove these tools. It will also reset your System Restore by flushing out previous restore points and create a new restore point. It will also remove all the backups our tools may have made.
Any leftover logs, files, folders or tools remaining on your Desktop which were not removed can be deleted manually (right-click the file + delete).


Why we need to remove some of our tools:
Some of the tools we have used to clean your computer were made by fellow malware fighters and are very powerful and if used incorrectly or at the wronge time can make the computer an expensive paper weight. They are updated all the time and some of them more than once a day so by the time you are ready to use them again they will already be outdated.



Download DelFix by Xplode and save it to your desktop.
  • Run the tool by right click on the 51a5ce45263de-delfix.png icon and Run as administrator option.
  • Make sure that these ones are checked:
    • Remove disinfection tools
    • Purge system restore
    • Reset system settings
  • Push Run.
  • The program will run for a few seconds and display a notepad report.
    Paste it for my review.

  • 0

#28
Sharon Lee

Sharon Lee

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 512 posts
# DelFix v1.013 - Logfile created 07/12/2016 at 07:34:53
# Updated 17/04/2016 by Xplode
# Username : Sharon - SHARON-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
 
~ Removing disinfection tools ...
 
Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\Sharon\Desktop\JRT.txt
Deleted : C:\Users\Sharon\Downloads\adwcleaner_6.030.exe
Deleted : C:\Users\Sharon\Downloads\JRT.exe
Deleted : C:\Users\Sharon\Downloads\TFC.exe
Deleted : C:\Users\Sharon\Downloads\zoek.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
 
~ Cleaning system restore ...
 
Deleted : RP #1 [Windows Update | 11/09/2016 01:26:16]
Deleted : RP #2 [Windows Update | 11/09/2016 01:35:05]
Deleted : RP #3 [Windows Update | 11/09/2016 01:47:09]
Deleted : RP #5 [Windows Defender Checkpoint | 11/09/2016 02:15:09]
Deleted : RP #6 [Installed Hallmark Card Studio 2011 Deluxe. | 11/09/2016 03:29:35]
Deleted : RP #7 [Windows Update | 11/09/2016 17:36:43]
Deleted : RP #8 [Windows Update | 11/10/2016 09:37:51]
Deleted : RP #9 [Installed Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 | 11/10/2016 17:34:01]
Deleted : RP #10 [JRT Pre-Junkware Removal | 11/10/2016 20:42:53]
Deleted : RP #11 [Checkpoint by HitmanPro | 11/10/2016 20:55:28]
Deleted : RP #12 [Windows Update | 11/11/2016 11:35:01]
Deleted : RP #13 [JRT Pre-Junkware Removal | 11/11/2016 11:55:06]
Deleted : RP #14 [Checkpoint by HitmanPro | 11/11/2016 12:17:26]
Deleted : RP #15 [Checkpoint by HitmanPro | 11/11/2016 12:18:52]
Deleted : RP #16 [JRT Pre-Junkware Removal | 11/11/2016 21:12:17]
Deleted : RP #17 [JRT Pre-Junkware Removal | 11/12/2016 18:20:29]
Deleted : RP #18 [JRT Pre-Junkware Removal | 11/12/2016 21:38:26]
Deleted : RP #19 [JRT Pre-Junkware Removal | 11/13/2016 04:30:32]
Deleted : RP #20 [Checkpoint by HitmanPro | 11/13/2016 04:44:44]
Deleted : RP #21 [JRT Pre-Junkware Removal | 11/15/2016 12:16:11]
Deleted : RP #22 [JRT Pre-Junkware Removal | 11/16/2016 14:10:57]
Deleted : RP #23 [Checkpoint by HitmanPro | 11/16/2016 20:08:03]
Deleted : RP #24 [Checkpoint by HitmanPro | 11/18/2016 16:25:52]
Deleted : RP #25 [JRT Pre-Junkware Removal | 11/20/2016 21:48:20]
Deleted : RP #26 [JRT Pre-Junkware Removal | 11/21/2016 12:17:18]
Deleted : RP #27 [Checkpoint by HitmanPro | 11/21/2016 12:42:42]
Deleted : RP #28 [zoek.exe restore point | 11/24/2016 00:05:59]
 
New restore point created !
 
~ Resetting system settings ... OK
 
########## - EOF - ##########
 
This is it.  Hope it worked great.  Thank you again...

  • 0

#29
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,799 posts
Well done Sharon,

I see no signs of malware on your computer, and feel satisfied that our work here is done.


You usually get infected because your security settings are too low.

Here are a number of recommendations that will help tighten them, and which will contribute to making you a less likely victim:

Safe Computing Practices please read Here


Since this issue appears to be resolved ... this Topic has been closed. Glad we could help.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.

Thanks
Joe :)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP