Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

My Computer is Severely Infected


  • This topic is locked This topic is locked

#16
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts
Hello,

Not sure what that is. I just scanned my computer with it and it should look something like this below. Did the scan find anything during scan ?

Emsisoft Emergency Kit - Version 12.0
Last update: 2/25/2017 10:23:34 PM
User account: Sebastian-PC\Sebastian
Computer name: SEBASTIAN-PC
OS version: Windows 7x64 Service Pack 1

Scan settings:

Scan type: Malware Scan
Objects: Rootkits, Memory, Traces, Files

Detect PUPs: On
Scan archives: Off
ADS Scan: On
File extension filter: Off
Direct disk access: Off

Scan start: 2/25/2017 10:23:58 PM
C:\Users\Sebastian\AppData\Local\Temp\Fixlist-4.txt detected: Trojan.LNK.StartPage.B (B) [krnl.xmd]
C:\Users\Sebastian\AppData\Local\Temp\Fixlist-3.txt detected: Trojan.LNK.StartPage.B (B) [krnl.xmd]

Scanned 76175
Found 2

Scan end: 2/25/2017 10:27:05 PM
Scan time: 0:03:07
My scan has found false postives


Back to the Malwarebytes issue.

Could you run the MBAM-Clean.exe
Download and run https://downloads.ma...file/mbam_clean Save the file to the desktop and run it.
Then once more reinstall Malwarebytes.
  • 0

Advertisements


#17
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Ah yes, I do have that more detailed log file. I will paste it here when I get home. It did indeed find something.

 

Should I post it and wait to do your next steps?


  • 0

#18
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts

:geek:

Post the log then do that Malwarebytes thing, like to get that running if we can.


  • 0

#19
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts
Emsisoft Emergency Kit - Version 12.0
Last update: 2/25/2017 8:39:28 PM
User account: DESKTOP-LUMVVN2\P-Dub
Computer name: DESKTOP-LUMVVN2
OS version: Windows 10x64 
 
Scan settings:
 
Scan type: Custom Scan
Objects: Rootkits, Memory, Traces, C:\
 
Detect PUPs: On
Scan archives: On
ADS Scan: On
File extension filter: Off
Direct disk access: Off
 
Scan start: 2/25/2017 8:57:27 PM
C:\windows\System32\Drivers\drmkpro64.sys detected: Generic.Malware.P!V.D3C2E55B (B) [krnl.xmd]
C:\Windows\System32\drivers\drmkpro64.sys detected: Generic.Malware.P!V.D3C2E55B (B) [krnl.xmd]
 
Scanned 238446
Found 2
 
Scan end: 2/25/2017 9:38:32 PM
Scan time: 0:41:05
 
C:\windows\System32\Drivers\drmkpro64.sys Generic.Malware.P!V.D3C2E55B (B)
 
Quarantined 1

  • 0

#20
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts
Also, should I be deleting these as we go from program to program?
  • 0

#21
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts

Yes.


  • 0

#22
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Okay, deleted what we quarantined. Ran program, restarted, reinstalled. Still same error.


  • 0

#23
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts
It's the malware. Lets try RKill. It stops all the running malware and may let malwarebytes run.

Download RKill from here: http://www.bleepingc...download/rkill/

There are three buttons to choose from with different names on, select the first one and save it to your desktop.
  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista or Windows 7/8/10, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • A log pops up at the end of the run. This log file is located at C:\rkill.log. Please post this in your next reply.
  • If you do not see the black box flash on the screen delete the icon from the desktop and go back to the link for the download, select the next button and try to run the tool again, continue to repeat this process using the remaining buttons until the tool runs. You will find further links if you scroll down the page with other names, try them one at a time.
  • If the tool does not run from any of the links provided, please let me know.

    Do not reboot the computer.

    Post log from RKIll,

    Try Malwarebytes, does it run now...?

  • 0

#24
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts
Rkill 2.8.4 by Lawrence Abrams (Grinler)
Copyright 2008-2017 BleepingComputer.com
More Information about Rkill can be found at this link:
 
Program started at: 02/27/2017 05:42:12 PM in x64 mode.
Windows Version: Windows 10 Home 
 
Checking for Windows services to stop:
 
 * No malware services found to stop.
 
Checking for processes to terminate:
 
 * No malware processes found to kill.
 
Checking Registry for malware related settings:
 
 * No issues found in the Registry.
 
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
 
Performing miscellaneous checks:
 
 * No issues found.
 
Checking Windows Service Integrity: 
 
 * agp440 [Missing Service]
 * gagp30kx [Missing Service]
 * IEEtwCollectorService [Missing Service]
 * IoQos [Missing Service]
 * nv_agp [Missing Service]
 * TimeBroker [Missing Service]
 * uagp35 [Missing Service]
 * uliagpkx [Missing Service]
 * WcsPlugInService [Missing Service]
 * wpcfltr [Missing Service]
 * WSService [Missing Service]
 
 * AJRouter => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted [Incorrect ImagePath]
 * WpnService => %systemroot%\system32\svchost.exe -k netsvcs [Incorrect ImagePath]
 
 * vmicrdv => %SystemRoot%\System32\icsvcext.dll [Incorrect ServiceDLL]
 * vmicvss => %SystemRoot%\System32\icsvcext.dll [Incorrect ServiceDLL]
 
Searching for Missing Digital Signatures: 
 
 * No issues found.
 
Checking HOSTS File: 
 
 * No issues found.
 
Program finished at: 02/27/2017 05:45:09 PM
Execution time: 0 hours(s), 2 minute(s), and 56 seconds(s)
 
 
 
 
Sadly, program still does not run, same error.

  • 0

#25
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts
Hello,

Bear with me, just walked in from work. I have 3 things for you to do while i feed the kids and dogs. Take your time. I'll be back later. Very glad I caught you just now.

Please do these 3 things for me.

Next
  • Please download Junkware Removal Tool to your Desktop.
  • Please close your security software to avoid potential conflicts. See Here how to disable you security protection (Anti Virus)
  • Run the tool by double-clicking it. If you are using Windows Vista or 7, right-mouse click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete, depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your Desktop and will automatically open.
  • Please post the contents of JRT.txt into your reply.

    Next

    Re-run Farbar Recovery Scan Tool (FRST/FRST64) you ran at the very beginning of this topic.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Make sure you checkmark Addition.txt box.
    • Press Scan button.
    • Scan will create two logs, FRST.txt and Addition.txt in the same directory the tool is run. Please copy and paste them to your reply.
    Next after you posted the logs from FRST
    go to start search and type, cmd, right click on the returned cmd.exe and select "run as administrator" at the prompt type or (copy & paste) the text in the code box into the command prompt
    echo > 0 & tasklist /v >> 0 & net start >> 0 & notepad 0
  • (press enter)

    Post the notepad outcome here please (all of it). From the code you ran in the command prompt.
    Post the JRT log report
    Post the new Frst.txt and additions.txt log reports.

    Thanks
    Joe :)





  • 0

Advertisements


#26
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Much obliged for all your help so far.

 

In order:

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 10 Home x64 
Ran by P-Dub (Administrator) on Mon 02/27/2017 at 18:15:16.45
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
File System: 4 
 
Failed to delete: C:\Users\P-Dub\AppData\Local\cpx (Folder) 
Failed to delete: C:\windows\tempcoral.vbs (File) 
Failed to delete: C:\Program Files (x86)\cpx (Folder) 
Failed to delete: C:\Program Files (x86)\dataup (Folder) 
 
 
 
Registry: 4 
 
Failed to delete: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cpx (Registry Value) 
Failed to delete: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx (Registry Value) 
Failed to delete: HKLM\SYSTEM\CurrentControlSet\services\Dataup (Registry Key) 
Failed to delete: HKLM\SYSTEM\CurrentControlSet\services\windowsmanagementservice (Registry Key) 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 02/27/2017 at 18:30:09.54
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-02-2017 01
Ran by P-Dub (administrator) on DESKTOP-LUMVVN2 (27-02-2017 18:33:05)
Running from C:\Users\P-Dub\Desktop
Loaded Profiles: P-Dub (Available Profiles: defaultuser0 & P-Dub)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
() C:\Program Files (x86)\dataup\dataup.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe
Failed to access process -> explorer.exe
() C:\Program Files (x86)\cpx\cpx.exe
() C:\Program Files (x86)\cpx\cpx.exe
() C:\Program Files (x86)\svcvmx\svcvmx.exe
() C:\Program Files (x86)\cpx\cpx.exe
(Microsoft Corporation) C:\Windows\System32\SrTasks.exe
() C:\Program Files (x86)\svcvmx\vmxclient.exe
() C:\Program Files (x86)\svcvmx\vmxclient.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.693_none_42ff55c9655f38bf\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\cpx\cpx.exe
() C:\Program Files (x86)\cpx\cpx.exe
() C:\Program Files (x86)\svcvmx\vmxclient.exe
 
==================== Registry (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Malwarebytes TrayApp] => C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKLM-x32\...\Run: [cpx] => C:\Program Files (x86)\cpx\cpx.exe [649216 2017-01-05] () <===== ATTENTION
HKLM-x32\...\Run: [svcvmx] => C:\Program Files (x86)\svcvmx\svcvmx.exe [896512 2017-01-13] ()
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{59e1c601-20d6-45c9-a6b4-284b3c58dc9c}: [DhcpNameServer] 192.168.9.10 192.168.10.10 192.168.2.1 192.168.7.10 192.168.11.10 192.168.8.10 192.168.12.10
Tcpip\..\Interfaces\{6e92c86d-194b-42e3-945e-46642cce0cb4}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{6efc347d-6124-496e-95ab-a14ddab012e6}: [DhcpNameServer] 10.0.0.10
 
Internet Explorer:
==================
HKU\S-1-5-21-1578420096-1607769468-3208362581-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-10-10] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-10-10] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-10] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-10] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-10] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-10] (Microsoft Corporation)
 
FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-17] (Google Inc.)
 
Chrome: 
=======
CHR Profile: C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default [2017-02-27]
CHR Extension: (Google Slides) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-02-17]
CHR Extension: (Google Docs) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-02-17]
CHR Extension: (Google Drive) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-17]
CHR Extension: (YouTube) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-17]
CHR Extension: (Google Sheets) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-02-17]
CHR Extension: (Google Docs Offline) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-02-18]
CHR Extension: (AdBlock) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-02-25]
CHR Extension: (Chrome Web Store Payments) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-17]
CHR Extension: (Gmail) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-17]
CHR Extension: (Chrome Media Router) - C:\Users\P-Dub\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-17]
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2902200 2016-01-03] (Microsoft Corporation)
R2 Dataup; C:\Program Files (x86)\dataup\dataup.exe [77824 2017-01-05] () [File not signed] <==== ATTENTION
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2016-09-20] (Nero AG)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S2 qdcomsvc; "C:\Program Files (x86)\qdcomsvc\qdcomsvc.exe" /svc [X] <==== ATTENTION
S2 windowsmanagementservice; C:\Users\P-Dub\AppData\Local\Temp\20170220\ct.exe [X] <==== ATTENTION <==== ATTENTION
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 BCM43XX; C:\windows\system32\DRIVERS\bcmwl63a.sys [7585280 2016-07-16] (Broadcom Corporation)
R1 drmkpro64; C:\windows\System32\drivers\drmkpro64.sys [53832 2012-01-31] () [File not signed] <==== ATTENTION
R1 epp; C:\EEK\bin64\epp.sys [114968 2016-10-31] (Emsisoft Ltd)
S3 HtcVCom32; C:\windows\system32\DRIVERS\HtcVComV64.sys [121800 2010-03-09] (QUALCOMM Incorporated)
R3 int0800; C:\windows\System32\drivers\flashud.sys [51712 2009-09-09] (Intel Corporation)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 NETwNe64; C:\windows\System32\drivers\NETwew01.sys [3343872 2016-07-16] (Intel Corporation)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek                                            )
S0 WdBoot; C:\windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-02-27 18:33 - 2017-02-27 18:36 - 00009796 _____ C:\Users\P-Dub\Desktop\FRST.txt
2017-02-27 18:32 - 2017-02-27 18:32 - 00000000 ____D C:\Users\P-Dub\Desktop\FRST-OlderVersion
2017-02-27 18:30 - 2017-02-27 18:30 - 00001162 _____ C:\Users\P-Dub\Desktop\JRT.txt
2017-02-27 18:11 - 2017-02-27 18:11 - 00001212 _____ C:\Users\P-Dub\Desktop\Turn_Off_Windows_Defender.reg
2017-02-27 18:07 - 2017-02-27 18:15 - 01663040 _____ (Malwarebytes) C:\Users\P-Dub\Desktop\JRT.exe
2017-02-27 17:53 - 2017-02-27 17:56 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\P-Dub\Desktop\iExplore.exe
2017-02-27 17:52 - 2017-02-27 18:01 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\P-Dub\Desktop\rkill.com
2017-02-26 22:41 - 2017-02-26 22:41 - 00001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-02-26 22:41 - 2017-02-26 22:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-02-26 22:41 - 2017-01-20 07:47 - 00077416 _____ C:\windows\system32\Drivers\mbae64.sys
2017-02-26 22:40 - 2017-02-26 22:40 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-02-26 22:15 - 2017-02-26 22:40 - 00000000 ____D C:\Program Files\Malwarebytes
2017-02-26 22:12 - 2017-02-26 22:14 - 55566792 _____ (Malwarebytes ) C:\Users\P-Dub\Desktop\mb3-setup-consumer-3.0.6.1469.exe
2017-02-26 22:05 - 2017-02-26 22:05 - 00566128 _____ (Malwarebytes) C:\Users\P-Dub\Desktop\mbam-clean-2.3.0.1001.exe
2017-02-25 21:37 - 2017-02-25 21:37 - 00000000 ____D C:\Users\P-Dub\AppData\Local\TempOfficeC2R6974F696-D4E0-4CE0-ADDB-9C99E86E83CE
2017-02-25 20:25 - 2017-02-26 22:33 - 00000000 ____D C:\EEK
2017-02-25 20:21 - 2017-02-25 20:24 - 292161608 _____ C:\Users\P-Dub\Desktop\EmsisoftEmergencyKit.exe
2017-02-21 22:48 - 2017-02-21 23:08 - 00000000 ____D C:\AdwCleaner
2017-02-21 22:45 - 2017-02-21 22:47 - 04015056 _____ C:\Users\P-Dub\Desktop\adwcleaner_6.043.exe
2017-02-20 22:27 - 2017-02-27 18:33 - 00000000 ____D C:\FRST
2017-02-20 22:26 - 2017-02-27 18:32 - 02423296 _____ (Farbar) C:\Users\P-Dub\Desktop\FRST64.exe
2017-02-20 12:33 - 2017-02-20 12:29 - 00602112 _____ (OldTimer Tools) C:\Users\P-Dub\Desktop\OTL.exe
2017-02-20 12:32 - 2017-02-20 12:32 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-02-19 22:16 - 2017-02-19 22:16 - 00000000 ____D C:\Users\P-Dub\AppData\Local\cpx
2017-02-19 22:16 - 2017-02-19 22:16 - 00000000 ____D C:\Program Files (x86)\cpx
2017-02-19 21:16 - 2017-02-27 18:18 - 00000000 ____D C:\Program Files (x86)\svcvmx
2017-02-19 21:16 - 2017-02-20 11:43 - 00000000 ____D C:\Users\P-Dub\AppData\Local\llssoft
2017-02-19 21:16 - 2017-02-19 21:16 - 00000000 ____D C:\Users\P-Dub\AppData\Local\CEF
2017-02-19 20:48 - 2017-02-19 20:48 - 00000256 _____ C:\Users\P-Dub\Downloads\Unlock_code.bin
2017-02-19 20:24 - 2017-02-19 20:24 - 00000000 ____D C:\Users\P-Dub\Desktop\OneDrivers_Fastboot
2017-02-19 20:24 - 2013-04-25 11:43 - 00000256 _____ C:\Users\P-Dub\Documents\Unlock_code.bin
2017-02-19 20:23 - 2017-02-19 20:24 - 26910854 _____ C:\Users\P-Dub\Desktop\OneDrivers_Fastboot.zip
2017-02-19 20:15 - 2017-02-19 20:15 - 00000000 ____D C:\Program Files (x86)\winscr
2017-02-19 20:12 - 2017-02-19 22:13 - 00006549 _____ C:\windows\TEMPcoral.vbs
2017-02-19 20:12 - 2017-02-19 20:12 - 01852928 _____ (splsrv Corp.) C:\windows\SysWOW64\splsrv.exe
2017-02-19 20:12 - 2017-02-19 20:12 - 00000000 ____D C:\Program Files (x86)\dataup
2017-02-19 20:11 - 2017-02-19 20:11 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\c
2017-02-19 20:10 - 2017-02-20 12:58 - 00000000 ____D C:\Program Files\WinRAR
2017-02-19 20:10 - 2017-02-19 20:10 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\WinRAR
2017-02-19 20:09 - 2017-02-19 20:09 - 02179856 _____ C:\Users\P-Dub\Downloads\winrar-x64-540.exe
2017-02-19 19:57 - 2017-02-19 19:48 - 00683760 ____N C:\Users\P-Dub\Documents\AndroidHtcSync2bu.apk
2017-02-19 19:34 - 2017-02-19 19:34 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\HTC
2017-02-19 19:31 - 2017-02-26 22:39 - 00000000 ____D C:\Users\P-Dub\AppData\Local\HTC MediaHub
2017-02-19 19:31 - 2017-02-19 19:34 - 00000000 ____D C:\Users\P-Dub\Documents\HTC
2017-02-19 19:31 - 2017-02-19 19:31 - 00002111 _____ C:\Users\Public\Desktop\HTC Sync Manager.lnk
2017-02-19 19:31 - 2017-02-19 19:31 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\Apple Computer
2017-02-19 19:31 - 2017-02-19 19:31 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Apple Computer
2017-02-19 19:31 - 2017-02-19 19:31 - 00000000 ____D C:\Users\P-Dub\.android
2017-02-19 19:31 - 2017-02-19 19:31 - 00000000 ____D C:\ProgramData\HTC
2017-02-19 19:30 - 2017-02-19 20:25 - 00000000 ____D C:\Program Files (x86)\HTC
2017-02-19 19:30 - 2017-02-19 19:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC
2017-02-19 19:30 - 2017-02-19 19:30 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2017-02-19 19:29 - 2017-02-19 19:29 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Downloaded Installations
2017-02-19 19:26 - 2017-02-19 19:28 - 147561816 _____ C:\Users\P-Dub\Downloads\setup_3.1.77.0_htc_NO_EULA.exe
2017-02-19 19:24 - 2017-02-19 19:24 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-02-18 22:04 - 2016-12-21 00:09 - 00263472 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-02-18 22:04 - 2016-12-20 23:46 - 00034304 _____ (Microsoft Corporation) C:\windows\SysWOW64\LaunchWinApp.exe
2017-02-18 22:04 - 2016-12-20 23:43 - 00285184 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-02-18 22:04 - 2016-12-20 23:41 - 00253952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.BioFeedback.dll
2017-02-18 22:04 - 2016-12-20 23:40 - 00557568 _____ (Microsoft Corporation) C:\windows\SysWOW64\StoreAgent.dll
2017-02-18 22:04 - 2016-12-20 23:40 - 00318976 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpencom.dll
2017-02-18 22:04 - 2016-12-20 23:40 - 00237056 _____ (Microsoft Corporation) C:\windows\SysWOW64\SyncSettings.dll
2017-02-18 22:04 - 2016-12-20 23:40 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallAgent.exe
2017-02-18 22:04 - 2016-12-20 23:39 - 00223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallAgentUserBroker.exe
2017-02-18 22:04 - 2016-12-20 23:38 - 00866816 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Cred.dll
2017-02-18 22:04 - 2016-12-20 23:34 - 07626752 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll
2017-02-18 22:04 - 2016-12-20 23:30 - 05398016 _____ (Microsoft Corporation) C:\windows\SysWOW64\aclui.dll
2017-02-18 22:04 - 2016-12-20 23:30 - 01255936 _____ (Microsoft Corporation) C:\windows\SysWOW64\AzureSettingSyncProvider.dll
2017-02-18 22:04 - 2016-12-20 23:25 - 07469056 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2017-02-18 22:04 - 2016-12-20 23:22 - 01883648 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Logon.dll
2017-02-18 22:04 - 2016-12-14 00:01 - 01557808 _____ (Microsoft Corporation) C:\windows\SysWOW64\winmde.dll
2017-02-18 22:04 - 2016-12-13 23:45 - 00147968 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32k.sys
2017-02-18 22:04 - 2016-12-13 23:42 - 00167424 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinSCard.dll
2017-02-18 22:04 - 2016-12-13 23:36 - 00074752 _____ (Microsoft Corporation) C:\windows\SysWOW64\updatepolicy.dll
2017-02-18 22:04 - 2016-12-13 23:35 - 00712192 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2017-02-18 22:04 - 2016-12-13 23:35 - 00553984 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2017-02-18 22:04 - 2016-12-13 23:22 - 02998272 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2017-02-18 22:04 - 2016-12-13 23:22 - 02748416 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpcore.dll
2017-02-18 22:04 - 2016-12-09 05:01 - 01503544 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2017-02-18 22:04 - 2016-12-09 05:01 - 00861024 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManager.dll
2017-02-18 22:04 - 2016-12-09 04:57 - 06668040 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-02-18 22:04 - 2016-12-09 04:52 - 01435896 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2017-02-18 22:04 - 2016-12-09 04:18 - 00165376 _____ (Microsoft Corporation) C:\windows\SysWOW64\mdmregistration.dll
2017-02-18 22:04 - 2016-11-11 03:01 - 01969912 _____ (Microsoft Corporation) C:\windows\SysWOW64\hevcdecoder.dll
2017-02-18 22:04 - 2016-11-11 02:54 - 00122208 _____ (Microsoft Corporation) C:\windows\SysWOW64\migisol.dll
2017-02-18 22:04 - 2016-11-11 02:47 - 01430720 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-02-18 22:04 - 2016-11-11 02:41 - 00157536 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudStorageWizard.exe
2017-02-18 22:04 - 2016-11-11 02:38 - 01263856 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2017-02-18 22:04 - 2016-11-11 02:26 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgentc.exe
2017-02-18 22:04 - 2016-11-11 02:24 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2017-02-18 22:04 - 2016-11-11 02:23 - 00094208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepositoryClient.dll
2017-02-18 22:04 - 2016-11-11 02:20 - 00306176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieproxy.dll
2017-02-18 22:04 - 2016-11-11 02:19 - 00506880 _____ (Microsoft Corporation) C:\windows\SysWOW64\DevicePairing.dll
2017-02-18 22:04 - 2016-11-11 02:19 - 00114176 _____ (Microsoft Corporation) C:\windows\SysWOW64\setupugc.exe
2017-02-18 22:04 - 2016-11-11 02:18 - 02333184 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2017-02-18 22:04 - 2016-11-11 02:18 - 01336320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsecedit.dll
2017-02-18 22:04 - 2016-11-11 02:18 - 00318464 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFolder.dll
2017-02-18 22:04 - 2016-11-11 02:17 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManHTTPConfig.exe
2017-02-18 22:04 - 2016-11-11 02:16 - 00253952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-02-18 22:04 - 2016-11-11 02:15 - 01357824 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAutomationCore.dll
2017-02-18 22:04 - 2016-11-11 02:15 - 00348672 _____ (Microsoft Corporation) C:\windows\SysWOW64\zipfldr.dll
2017-02-18 22:04 - 2016-11-11 02:12 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdtcuiu.dll
2017-02-18 22:04 - 2016-11-11 02:06 - 01228288 _____ (Microsoft Corporation) C:\windows\SysWOW64\usercpl.dll
2017-02-18 22:04 - 2016-11-11 02:06 - 00359936 _____ (Microsoft Corporation) C:\windows\SysWOW64\mtxclu.dll
2017-02-18 22:04 - 2016-11-11 02:05 - 03370496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepository.dll
2017-02-18 22:04 - 2016-11-11 02:04 - 02682880 _____ (Microsoft Corporation) C:\windows\SysWOW64\netshell.dll
2017-02-18 22:04 - 2016-11-11 02:04 - 01595392 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2017-02-18 22:04 - 2016-11-11 02:04 - 00912896 _____ (Microsoft Corporation) C:\windows\SysWOW64\comdlg32.dll
2017-02-18 22:04 - 2016-11-11 02:04 - 00358912 _____ (Microsoft Corporation) C:\windows\SysWOW64\stobject.dll
2017-02-18 22:04 - 2016-11-11 02:03 - 02256384 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2017-02-18 22:04 - 2016-11-11 02:03 - 01556480 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2017-02-18 22:04 - 2016-11-11 02:02 - 00711680 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Search.dll
2017-02-18 22:04 - 2016-11-02 06:09 - 02257104 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2017-02-18 22:04 - 2016-11-02 06:04 - 00596832 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2017-02-18 22:04 - 2016-11-02 06:01 - 01425000 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d9.dll
2017-02-18 22:04 - 2016-11-02 06:01 - 00276832 _____ (Microsoft Corporation) C:\windows\SysWOW64\input.dll
2017-02-18 22:04 - 2016-11-02 05:48 - 00095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2017-02-18 22:04 - 2016-11-02 05:46 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininetlui.dll
2017-02-18 22:04 - 2016-11-02 05:44 - 00089088 _____ (Microsoft Corporation) C:\windows\SysWOW64\AuthExt.dll
2017-02-18 22:04 - 2016-11-02 05:43 - 00731136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d8.dll
2017-02-18 22:04 - 2016-11-02 05:42 - 00632832 _____ (Microsoft Corporation) C:\windows\SysWOW64\sud.dll
2017-02-18 22:04 - 2016-11-02 05:42 - 00549376 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActionCenterCPL.dll
2017-02-18 22:04 - 2016-11-02 05:40 - 00548352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ddraw.dll
2017-02-18 22:04 - 2016-11-02 05:39 - 00236544 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll
2017-02-18 22:04 - 2016-11-02 05:38 - 00760832 _____ (Microsoft Corporation) C:\windows\SysWOW64\appwiz.cpl
2017-02-18 22:04 - 2016-11-02 05:31 - 00090624 _____ (Microsoft Corporation) C:\windows\SysWOW64\olepro32.dll
2017-02-18 22:04 - 2016-11-02 05:29 - 00884224 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2017-02-18 22:04 - 2016-11-02 05:28 - 00079360 _____ (Microsoft Corporation) C:\windows\SysWOW64\asycfilt.dll
2017-02-18 22:04 - 2016-11-02 05:27 - 02458112 _____ (Microsoft Corporation) C:\windows\SysWOW64\themecpl.dll
2017-02-18 22:04 - 2016-11-02 05:27 - 00580608 _____ (Microsoft Corporation) C:\windows\SysWOW64\hgcpl.dll
2017-02-18 22:04 - 2016-11-02 05:27 - 00422400 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.dll
2017-02-18 22:04 - 2016-11-02 05:26 - 01509376 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2017-02-18 22:04 - 2016-11-02 05:26 - 00798208 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2017-02-18 22:04 - 2016-11-02 05:23 - 03106304 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2017-02-18 22:04 - 2016-11-02 05:23 - 02356736 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVidCtl.dll
2017-02-18 22:04 - 2016-10-14 23:19 - 00272720 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2017-02-18 22:04 - 2016-10-14 23:15 - 00687936 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvproc.dll
2017-02-18 22:04 - 2016-10-14 23:10 - 00254656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpeffects.dll
2017-02-18 22:04 - 2016-10-14 23:06 - 05685760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2017-02-18 22:04 - 2016-10-14 22:57 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\dtdump.exe
2017-02-18 22:04 - 2016-10-14 22:56 - 00306688 _____ (Microsoft Corporation) C:\windows\SysWOW64\esentutl.exe
2017-02-18 22:04 - 2016-10-14 22:54 - 00410112 _____ (Microsoft Corporation) C:\windows\SysWOW64\SndVolSSO.dll
2017-02-18 22:04 - 2016-10-14 22:54 - 00152064 _____ (Microsoft Corporation) C:\windows\SysWOW64\autoplay.dll
2017-02-18 22:04 - 2016-10-14 22:54 - 00102912 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpshell.dll
2017-02-18 22:04 - 2016-10-14 22:52 - 00288256 _____ (Microsoft Corporation) C:\windows\SysWOW64\systemcpl.dll
2017-02-18 22:04 - 2016-10-14 22:48 - 01323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2017-02-18 22:04 - 2016-10-14 22:47 - 01113600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2017-02-18 22:04 - 2016-10-14 22:44 - 00636928 _____ (Microsoft Corporation) C:\windows\SysWOW64\winhttp.dll
2017-02-18 22:04 - 2016-10-14 22:43 - 02748928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mispace.dll
2017-02-18 22:04 - 2016-10-14 22:37 - 00709120 _____ (Microsoft Corporation) C:\windows\SysWOW64\CPFilters.dll
2017-02-18 22:04 - 2016-10-14 22:36 - 01170944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.dll
2017-02-18 22:04 - 2016-10-14 22:36 - 00081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\cmifw.dll
2017-02-18 22:04 - 2016-10-05 04:31 - 00058880 _____ (Microsoft Corporation) C:\windows\SysWOW64\ConfigureExpandedStorage.dll
2017-02-18 22:04 - 2016-10-05 04:28 - 00584192 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbonRes.dll
2017-02-18 22:04 - 2016-10-05 04:28 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.dll
2017-02-18 22:04 - 2016-10-05 04:26 - 00088576 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-02-18 22:04 - 2016-10-05 04:25 - 00404992 _____ (Microsoft Corporation) C:\windows\SysWOW64\dsreg.dll
2017-02-18 22:04 - 2016-10-05 04:25 - 00299520 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccountApis.dll
2017-02-18 22:04 - 2016-10-05 04:23 - 00426496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-02-18 22:04 - 2016-10-05 04:21 - 00567808 _____ (Microsoft Corporation) C:\windows\SysWOW64\ChatApis.dll
2017-02-18 22:04 - 2016-10-05 04:18 - 00858112 _____ (Microsoft Corporation) C:\windows\SysWOW64\EmailApis.dll
2017-02-18 22:04 - 2016-10-05 04:17 - 00089088 _____ (Microsoft Corporation) C:\windows\SysWOW64\adsmsext.dll
2017-02-18 22:04 - 2016-10-05 04:14 - 01456640 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2017-02-18 22:04 - 2016-10-05 04:13 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\offreg.dll
2017-02-18 22:04 - 2016-10-05 04:09 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentApis.dll
2017-02-18 22:04 - 2016-10-05 04:08 - 00598528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.dll
2017-02-18 22:04 - 2016-10-05 04:07 - 02646016 _____ (Microsoft Corporation) C:\windows\SysWOW64\CertEnroll.dll
2017-02-18 22:04 - 2016-10-05 04:06 - 01013248 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.Http.dll
2017-02-18 22:04 - 2016-10-05 04:06 - 00850944 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactApis.dll
2017-02-18 22:04 - 2016-09-15 12:40 - 00965472 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgent.dll
2017-02-18 22:04 - 2016-09-15 12:37 - 00402352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ws2_32.dll
2017-02-18 22:04 - 2016-09-15 12:22 - 00975744 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.appcore.dll
2017-02-18 22:04 - 2016-09-15 12:22 - 00433832 _____ (Microsoft Corporation) C:\windows\SysWOW64\WWanAPI.dll
2017-02-18 22:04 - 2016-09-15 12:19 - 00361104 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsmf.dll
2017-02-18 22:04 - 2016-09-15 12:03 - 00094720 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2017-02-18 22:04 - 2016-09-15 12:00 - 00554496 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2017-02-18 22:04 - 2016-09-15 11:59 - 00255488 _____ (Microsoft Corporation) C:\windows\SysWOW64\unimdm.tsp
2017-02-18 22:04 - 2016-09-15 11:59 - 00136192 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinRtTracing.dll
2017-02-18 22:04 - 2016-09-15 11:58 - 00291840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2017-02-18 22:04 - 2016-09-15 11:58 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlancfg.dll
2017-02-18 22:04 - 2016-09-15 11:58 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-02-18 22:04 - 2016-09-15 11:58 - 00059904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2017-02-18 22:04 - 2016-09-15 11:57 - 00392192 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Gaming.Input.dll
2017-02-18 22:04 - 2016-09-15 11:57 - 00315904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-02-18 22:04 - 2016-09-15 11:57 - 00171520 _____ (Microsoft Corporation) C:\windows\SysWOW64\ClipboardServer.dll
2017-02-18 22:04 - 2016-09-15 11:56 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Core.dll
2017-02-18 22:04 - 2016-09-15 11:55 - 01243136 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-02-18 22:04 - 2016-09-15 11:55 - 00575488 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2017-02-18 22:04 - 2016-09-15 11:55 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetworkCollectionAgent.dll
2017-02-18 22:04 - 2016-09-15 11:55 - 00218624 _____ (Microsoft Corporation) C:\windows\SysWOW64\WwaApi.dll
2017-02-18 22:04 - 2016-09-15 11:55 - 00175616 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Scanners.dll
2017-02-18 22:04 - 2016-09-15 11:54 - 00747520 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Ocr.dll
2017-02-18 22:04 - 2016-09-15 11:54 - 00461312 _____ (Microsoft Corporation) C:\windows\SysWOW64\webio.dll
2017-02-18 22:04 - 2016-09-15 11:53 - 00819200 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppContracts.dll
2017-02-18 22:04 - 2016-09-15 11:53 - 00340480 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2017-02-18 22:04 - 2016-09-15 11:53 - 00284672 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.dll
2017-02-18 22:04 - 2016-09-15 11:52 - 00816640 _____ (Microsoft Corporation) C:\windows\SysWOW64\NaturalLanguage6.dll
2017-02-18 22:04 - 2016-09-15 11:52 - 00297472 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2017-02-18 22:04 - 2016-09-15 11:51 - 00762368 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2017-02-18 22:04 - 2016-09-15 11:49 - 00468992 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2017-02-18 22:04 - 2016-09-15 11:48 - 01320448 _____ (Microsoft Corporation) C:\windows\SysWOW64\comsvcs.dll
2017-02-18 22:04 - 2016-09-15 11:46 - 00558080 _____ (Microsoft Corporation) C:\windows\SysWOW64\clusapi.dll
2017-02-18 22:04 - 2016-09-15 11:45 - 02642944 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2017-02-18 22:04 - 2016-09-15 11:44 - 00209920 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSAC3ENC.DLL
2017-02-18 22:04 - 2016-09-15 11:43 - 03520512 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsrchvw.exe
2017-02-18 22:04 - 2016-09-15 11:42 - 00719872 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_sr.dll
2017-02-18 22:04 - 2016-09-15 11:40 - 02026496 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2017-02-18 22:04 - 2016-09-15 11:40 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2017-02-18 22:04 - 2016-09-15 11:40 - 01656320 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Perception.dll
2017-02-18 22:04 - 2016-09-15 11:39 - 01232384 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-02-18 22:04 - 2016-09-15 11:39 - 01170944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-02-18 22:04 - 2016-09-15 11:39 - 01004544 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Input.Inking.dll
2017-02-18 22:04 - 2016-09-15 11:39 - 00827904 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll
2017-02-18 22:04 - 2016-09-15 11:38 - 00773120 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2017-02-18 22:04 - 2016-09-15 11:38 - 00620544 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.dll
2017-02-18 22:04 - 2016-09-15 11:36 - 00448512 _____ (Microsoft Corporation) C:\windows\SysWOW64\TpmCoreProvisioning.dll
2017-02-18 22:04 - 2016-09-15 11:35 - 00331776 _____ (Microsoft Corporation) C:\windows\SysWOW64\SessEnv.dll
2017-02-18 22:04 - 2016-09-07 00:27 - 01362504 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpmde.dll
2017-02-18 22:04 - 2016-09-07 00:17 - 00782176 _____ (Microsoft Corporation) C:\windows\SysWOW64\WWAHost.exe
2017-02-18 22:04 - 2016-09-06 23:59 - 00018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExtrasXmlParser.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\POSyncServices.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00054784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AddressParser.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTypeHelperUtil.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00037888 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataLanguageUtil.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccessRes.dll
2017-02-18 22:04 - 2016-09-06 23:58 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\PhoneutilRes.dll
2017-02-18 22:04 - 2016-09-06 23:57 - 00224256 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExSMime.dll
2017-02-18 22:04 - 2016-09-06 23:57 - 00045568 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2017-02-18 22:04 - 2016-09-06 23:56 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactActivation.dll
2017-02-18 22:04 - 2016-09-06 23:55 - 00147456 _____ (Microsoft Corporation) C:\windows\SysWOW64\VCardParser.dll
2017-02-18 22:04 - 2016-09-06 23:54 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataPlatformHelperUtil.dll
2017-02-18 22:04 - 2016-09-06 23:53 - 00118272 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentActivation.dll
2017-02-18 22:04 - 2016-09-06 23:49 - 00260096 _____ (Microsoft Corporation) C:\windows\SysWOW64\Phoneutil.dll
2017-02-18 22:04 - 2016-09-06 23:46 - 00846336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebcamUi.dll
2017-02-18 22:04 - 2016-09-06 23:34 - 04557824 _____ (Microsoft) C:\windows\SysWOW64\dbgeng.dll
2017-02-18 22:04 - 2016-09-06 23:34 - 00444416 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSync.dll
2017-02-18 22:04 - 2016-09-06 23:31 - 01293312 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPDMC.exe
2017-02-18 22:04 - 2016-09-06 23:31 - 00461312 _____ (Microsoft) C:\windows\SysWOW64\DbgModel.dll
2017-02-18 22:04 - 2016-08-20 00:04 - 00592384 _____ (Microsoft Corporation) C:\windows\SysWOW64\GamePanel.exe
2017-02-18 22:04 - 2016-08-20 00:00 - 00141824 _____ (Windows ® Win 7 DDK provider) C:\windows\SysWOW64\DscCoreConfProv.dll
2017-02-18 22:04 - 2016-08-19 23:58 - 00020480 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi_passthru.dll
2017-02-18 22:04 - 2016-08-05 22:45 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\netiougc.exe
2017-02-18 22:04 - 2016-08-05 22:41 - 00068096 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncPolicy.dll
2017-02-18 22:04 - 2016-08-05 22:39 - 00181760 _____ (Microsoft Corporation) C:\windows\SysWOW64\tcpipcfg.dll
2017-02-18 22:04 - 2016-08-05 22:33 - 00020992 _____ (Microsoft Corporation) C:\windows\SysWOW64\smphost.dll
2017-02-18 22:04 - 2016-08-05 22:29 - 00298496 _____ (Microsoft Corporation) C:\windows\SysWOW64\resutils.dll
2017-02-18 22:04 - 2016-08-05 04:10 - 00939872 _____ (Microsoft Corporation) C:\windows\SysWOW64\pidgenx.dll
2017-02-18 22:04 - 2016-08-05 03:29 - 00568832 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.UXRes.dll
2017-02-18 22:04 - 2016-08-05 03:23 - 00105984 _____ (Microsoft Corporation) C:\windows\SysWOW64\sppc.dll
2017-02-18 22:04 - 2016-08-05 03:18 - 00118272 _____ (Microsoft Corporation) C:\windows\SysWOW64\slc.dll
2017-02-18 22:04 - 2016-08-01 23:47 - 00079536 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32u.dll
2017-02-18 22:04 - 2016-07-21 20:18 - 00297552 _____ (Microsoft Corporation) C:\windows\SysWOW64\wevtapi.dll
2017-02-18 22:03 - 2016-12-21 00:59 - 00218976 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinesam.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 03892864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfcore.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 01852720 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmp4srcsnk.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 01360464 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetsrc.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 01277344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfasfsrcsnk.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 01201872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmpeg2srcsnk.dll
2017-02-18 22:03 - 2016-12-21 00:02 - 00980832 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetcore.dll
2017-02-18 22:03 - 2016-12-21 00:01 - 20969928 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2017-02-18 22:03 - 2016-12-20 23:41 - 00231936 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-02-18 22:03 - 2016-12-20 23:39 - 01300480 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVPXENC.dll
2017-02-18 22:03 - 2016-12-20 23:35 - 04612608 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.dll
2017-02-18 22:03 - 2016-12-20 23:35 - 00198656 _____ (Microsoft Corporation) C:\windows\SysWOW64\indexeddbserver.dll
2017-02-18 22:03 - 2016-12-20 23:33 - 19413504 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2017-02-18 22:03 - 2016-12-20 23:32 - 19417600 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2017-02-18 22:03 - 2016-12-20 23:27 - 00640000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MCRecvSrc.dll
2017-02-18 22:03 - 2016-12-20 23:26 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVP9DEC.dll
2017-02-18 22:03 - 2016-12-20 23:25 - 06474752 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspaint.exe
2017-02-18 22:03 - 2016-12-20 23:24 - 06044160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2017-02-18 22:03 - 2016-12-20 23:24 - 05061120 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2017-02-18 22:03 - 2016-12-20 23:24 - 03733504 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2017-02-18 22:03 - 2016-12-20 23:24 - 00886272 _____ (Microsoft Corporation) C:\windows\SysWOW64\aadtb.dll
2017-02-18 22:03 - 2016-12-20 23:22 - 00860672 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncCore.dll
2017-02-18 22:03 - 2016-12-14 00:21 - 02206496 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2017-02-18 22:03 - 2016-12-14 00:08 - 00341344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2017-02-18 22:03 - 2016-12-14 00:06 - 00509792 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncHost.exe
2017-02-18 22:03 - 2016-12-14 00:01 - 00382784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2017-02-18 22:03 - 2016-12-14 00:01 - 00076984 _____ (Microsoft Corporation) C:\windows\SysWOW64\remoteaudioendpoint.dll
2017-02-18 22:03 - 2016-12-13 23:46 - 01631232 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-02-18 22:03 - 2016-12-13 23:40 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudBackupSettings.dll
2017-02-18 22:03 - 2016-12-13 23:40 - 00104448 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-02-18 22:03 - 2016-12-13 23:38 - 13869056 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.dll
2017-02-18 22:03 - 2016-12-13 23:38 - 00213504 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.CredDialogController.dll
2017-02-18 22:03 - 2016-12-13 23:35 - 00755712 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2017-02-18 22:03 - 2016-12-13 23:32 - 00806400 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3D12.dll
2017-02-18 22:03 - 2016-12-13 23:32 - 00497152 _____ (Microsoft Corporation) C:\windows\SysWOW64\LogonController.dll
2017-02-18 22:03 - 2016-12-09 05:11 - 02048496 _____ C:\windows\SysWOW64\CoreUIComponents.dll
2017-02-18 22:03 - 2016-12-09 05:01 - 02323728 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2017-02-18 22:03 - 2016-12-09 05:00 - 00106896 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2017-02-18 22:03 - 2016-12-09 04:59 - 02166752 _____ (Microsoft Corporation) C:\windows\SysWOW64\combase.dll
2017-02-18 22:03 - 2016-12-09 04:59 - 00846560 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinTypes.dll
2017-02-18 22:03 - 2016-12-09 04:56 - 00959112 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2017-02-18 22:03 - 2016-12-09 04:52 - 01415752 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32full.dll
2017-02-18 22:03 - 2016-12-09 04:51 - 00117240 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2017-02-18 22:03 - 2016-12-09 04:41 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\WordBreakers.dll
2017-02-18 22:03 - 2016-12-09 04:34 - 00288768 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincorlib.dll
2017-02-18 22:03 - 2016-12-09 04:32 - 00635904 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2017-02-18 22:03 - 2016-12-09 04:31 - 03689984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2017-02-18 22:03 - 2016-12-09 04:31 - 00313856 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2017-02-18 22:03 - 2016-12-09 04:28 - 03306496 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFMediaEngine.dll
2017-02-18 22:03 - 2016-12-09 04:23 - 12177920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2017-02-18 22:03 - 2016-12-09 04:20 - 03198464 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdp.dll
2017-02-18 22:03 - 2016-12-09 04:18 - 03666432 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2017-02-18 22:03 - 2016-12-09 04:18 - 02138112 _____ (Microsoft Corporation) C:\windows\SysWOW64\InputService.dll
2017-02-18 22:03 - 2016-12-09 04:17 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ShareHost.dll
2017-02-18 22:03 - 2016-12-09 04:16 - 00353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\TextInputFramework.dll
2017-02-18 22:03 - 2016-12-09 04:15 - 00206848 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Core.TextInput.dll
2017-02-18 22:03 - 2016-12-09 04:15 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\InputLocaleManager.dll
2017-02-18 22:03 - 2016-12-09 04:15 - 00068096 _____ (Microsoft Corporation) C:\windows\SysWOW64\EditBufferTestHook.dll
2017-02-18 22:03 - 2016-12-09 03:54 - 00483840 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreMessaging.dll
2017-02-18 22:03 - 2016-11-11 03:01 - 00167848 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscapi.dll
2017-02-18 22:03 - 2016-11-11 03:00 - 01706488 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2017-02-18 22:03 - 2016-11-11 02:59 - 01572768 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2017-02-18 22:03 - 2016-11-11 02:49 - 00869848 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2017-02-18 22:03 - 2016-11-11 02:49 - 00248480 _____ (Microsoft Corporation) C:\windows\SysWOW64\policymanager.dll
2017-02-18 22:03 - 2016-11-11 02:48 - 02277248 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11.dll
2017-02-18 22:03 - 2016-11-11 02:47 - 05722832 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.storage.dll
2017-02-18 22:03 - 2016-11-11 02:47 - 00527880 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll
2017-02-18 22:03 - 2016-11-11 02:42 - 01123912 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2017-02-18 22:03 - 2016-11-11 02:42 - 00952416 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsvr.dll
2017-02-18 22:03 - 2016-11-11 02:42 - 00374448 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFPlay.dll
2017-02-18 22:03 - 2016-11-11 02:42 - 00152416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTWorkQ.dll
2017-02-18 22:03 - 2016-11-11 02:42 - 00091936 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfaudiocnv.dll
2017-02-18 22:03 - 2016-11-11 02:41 - 04311736 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2017-02-18 22:03 - 2016-11-11 02:27 - 00065024 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetCfgNotifyObjectHost.exe
2017-02-18 22:03 - 2016-11-11 02:25 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapsBtSvc.dll
2017-02-18 22:03 - 2016-11-11 02:25 - 00071168 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosStorage.dll
2017-02-18 22:03 - 2016-11-11 02:24 - 00519168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ngccredprov.dll
2017-02-18 22:03 - 2016-11-11 02:24 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\BcastDVRHelper.dll
2017-02-18 22:03 - 2016-11-11 02:24 - 00138240 _____ (Microsoft Corporation) C:\windows\SysWOW64\DisplayManager.dll
2017-02-18 22:03 - 2016-11-11 02:23 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppCapture.dll
2017-02-18 22:03 - 2016-11-11 02:22 - 00505856 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcastdvr.exe
2017-02-18 22:03 - 2016-11-11 02:22 - 00122880 _____ (Microsoft Corporation) C:\windows\SysWOW64\sendmail.dll
2017-02-18 22:03 - 2016-11-11 02:21 - 00332288 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapConfiguration.dll
2017-02-18 22:03 - 2016-11-11 02:21 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-02-18 22:03 - 2016-11-11 02:19 - 01755136 _____ (Microsoft Corporation) C:\windows\SysWOW64\DeviceFlows.DataModel.dll
2017-02-18 22:03 - 2016-11-11 02:19 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupShim.dll
2017-02-18 22:03 - 2016-11-11 02:19 - 00298496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll
2017-02-18 22:03 - 2016-11-11 02:19 - 00284672 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepsync.dll
2017-02-18 22:03 - 2016-11-11 02:19 - 00125952 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepapi.dll
2017-02-18 22:03 - 2016-11-11 02:18 - 01196544 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscui.cpl
2017-02-18 22:03 - 2016-11-11 02:18 - 00431616 _____ (Microsoft Corporation) C:\windows\SysWOW64\efswrt.dll
2017-02-18 22:03 - 2016-11-11 02:18 - 00108544 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscinterop.dll
2017-02-18 22:03 - 2016-11-11 02:17 - 00333312 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActivationManager.dll
2017-02-18 22:03 - 2016-11-11 02:15 - 00838144 _____ (Microsoft Corporation) C:\windows\SysWOW64\JpMapControl.dll
2017-02-18 22:03 - 2016-11-11 02:15 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptngc.dll
2017-02-18 22:03 - 2016-11-11 02:14 - 00395264 _____ (Microsoft Corporation) C:\windows\SysWOW64\dmenrollengine.dll
2017-02-18 22:03 - 2016-11-11 02:10 - 06109184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mos.dll
2017-02-18 22:03 - 2016-11-11 02:10 - 00746496 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdtcprx.dll
2017-02-18 22:03 - 2016-11-11 02:09 - 05380608 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll
2017-02-18 22:03 - 2016-11-11 02:09 - 00545280 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmkvsrcsnk.dll
2017-02-18 22:03 - 2016-11-11 02:08 - 00053248 _____ (Microsoft Corporation) C:\windows\SysWOW64\xolehlp.dll
2017-02-18 22:03 - 2016-11-11 02:06 - 02362880 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapRouter.dll
2017-02-18 22:03 - 2016-11-11 02:06 - 02109952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapGeocoder.dll
2017-02-18 22:03 - 2016-11-11 02:06 - 00400384 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToManager.dll
2017-02-18 22:03 - 2016-11-11 02:05 - 04423680 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2017-02-18 22:03 - 2016-11-11 02:04 - 01992704 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmcore.dll
2017-02-18 22:03 - 2016-11-11 02:04 - 00715264 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlCore.dll
2017-02-18 22:03 - 2016-11-11 02:03 - 02484736 _____ (Microsoft Corporation) C:\windows\SysWOW64\gameux.dll
2017-02-18 22:03 - 2016-11-11 02:03 - 01576448 _____ (Microsoft Corporation) C:\windows\SysWOW64\actxprxy.dll
2017-02-18 22:03 - 2016-11-11 02:03 - 00772608 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntshrui.dll
2017-02-18 22:03 - 2016-11-11 02:03 - 00760832 _____ (Microsoft Corporation) C:\windows\SysWOW64\NMAA.dll
2017-02-18 22:03 - 2016-11-11 02:03 - 00565248 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasapi32.dll
2017-02-18 22:03 - 2016-11-02 07:01 - 00484584 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2017-02-18 22:03 - 2016-11-02 07:01 - 00315744 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2017-02-18 22:03 - 2016-11-02 06:22 - 00601712 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2017-02-18 22:03 - 2016-11-02 06:08 - 00602464 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupEngine.dll
2017-02-18 22:03 - 2016-11-02 06:08 - 00576408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2017-02-18 22:03 - 2016-11-02 06:08 - 00186424 _____ (Microsoft Corporation) C:\windows\SysWOW64\weretw.dll
2017-02-18 22:03 - 2016-11-02 06:08 - 00111968 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupApi.dll
2017-02-18 22:03 - 2016-11-02 06:01 - 00545936 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontdrvhost.exe
2017-02-18 22:03 - 2016-11-02 05:49 - 00037376 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2017-02-18 22:03 - 2016-11-02 05:48 - 00081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2017-02-18 22:03 - 2016-11-02 05:48 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\efsext.dll
2017-02-18 22:03 - 2016-11-02 05:45 - 00182784 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsensorgroup.dll
2017-02-18 22:03 - 2016-11-02 05:43 - 00270336 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2017-02-18 22:03 - 2016-11-02 05:43 - 00198144 _____ (Microsoft Corporation) C:\windows\SysWOW64\FSClient.dll
2017-02-18 22:03 - 2016-11-02 05:43 - 00126464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2017-02-18 22:03 - 2016-11-02 05:42 - 00202752 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-02-18 22:03 - 2016-11-02 05:40 - 00896512 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontext.dll
2017-02-18 22:03 - 2016-11-02 05:39 - 00465920 _____ (Microsoft Corporation) C:\windows\SysWOW64\LockAppBroker.dll
2017-02-18 22:03 - 2016-11-02 05:36 - 00063488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ErrorDetailsUpdate.dll
2017-02-18 22:03 - 2016-11-02 05:35 - 00336896 _____ (Microsoft Corporation) C:\windows\SysWOW64\msinfo32.exe
2017-02-18 22:03 - 2016-11-02 05:33 - 12349952 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2017-02-18 22:03 - 2016-11-02 05:30 - 00134144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ErrorDetails.dll
2017-02-18 22:03 - 2016-11-02 05:29 - 01247232 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Globalization.dll
2017-02-18 22:03 - 2016-11-02 05:29 - 00122368 _____ (Microsoft Corporation) C:\windows\SysWOW64\NPSM.dll
2017-02-18 22:03 - 2016-11-02 05:28 - 00807424 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2017-02-18 22:03 - 2016-11-02 05:28 - 00109568 _____ (Microsoft Corporation) C:\windows\SysWOW64\chartv.dll
2017-02-18 22:03 - 2016-11-02 05:23 - 00199680 _____ (Microsoft Corporation) C:\windows\SysWOW64\GlobCollationHost.dll
2017-02-18 22:03 - 2016-11-02 04:11 - 00788624 _____ C:\windows\SysWOW64\locale.nls
2017-02-18 22:03 - 2016-11-02 04:11 - 00788624 _____ C:\windows\system32\locale.nls
2017-02-18 22:03 - 2016-10-14 23:33 - 00455040 _____ (Microsoft Corporation) C:\windows\SysWOW64\DolbyDecMFT.dll
2017-02-18 22:03 - 2016-10-14 23:18 - 01556712 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2017-02-18 22:03 - 2016-10-14 23:18 - 00749920 _____ (Microsoft Corporation) C:\windows\SysWOW64\drvstore.dll
2017-02-18 22:03 - 2016-10-14 23:00 - 00018432 _____ (Microsoft Corporation) C:\windows\SysWOW64\stdole2.tlb
2017-02-18 22:03 - 2016-10-14 22:59 - 00187904 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfksproxy.dll
2017-02-18 22:03 - 2016-10-14 22:57 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpdxm.dll
2017-02-18 22:03 - 2016-10-14 22:56 - 00327680 _____ (Microsoft Corporation) C:\windows\SysWOW64\daxexec.dll
2017-02-18 22:03 - 2016-10-14 22:56 - 00095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\BluetoothApis.dll
2017-02-18 22:03 - 2016-10-14 22:55 - 00142336 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.WiFi.dll
2017-02-18 22:03 - 2016-10-14 22:51 - 00226304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll
2017-02-18 22:03 - 2016-10-14 22:46 - 00471552 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-02-18 22:03 - 2016-10-14 22:44 - 00747008 _____ (Microsoft Corporation) C:\windows\SysWOW64\RemoteNaturalLanguage.dll
2017-02-18 22:03 - 2016-10-14 22:44 - 00470016 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-02-18 22:03 - 2016-10-14 22:42 - 00459776 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-02-18 22:03 - 2016-10-14 22:42 - 00076800 _____ (Microsoft Corporation) C:\windows\SysWOW64\powercfg.exe
2017-02-18 22:03 - 2016-10-14 22:41 - 00067584 _____ (Microsoft Corporation) C:\windows\SysWOW64\iscsiwmi.dll
2017-02-18 22:03 - 2016-10-14 22:39 - 00357376 _____ (Microsoft Corporation) C:\windows\SysWOW64\Geolocation.dll
2017-02-18 22:03 - 2016-10-14 22:38 - 00675840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.dll
2017-02-18 22:03 - 2016-10-14 22:36 - 00542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.Connectivity.dll
2017-02-18 22:03 - 2016-10-14 22:35 - 02708992 _____ (Microsoft Corporation) C:\windows\SysWOW64\esent.dll
2017-02-18 22:03 - 2016-10-14 22:35 - 02005504 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2017-02-18 22:03 - 2016-10-05 04:50 - 00116576 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostCommon.dll
2017-02-18 22:03 - 2016-10-05 04:49 - 01980768 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2017-02-18 22:03 - 2016-10-05 04:48 - 01022304 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppxPackaging.dll
2017-02-18 22:03 - 2016-10-05 04:28 - 00123904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.HostName.dll
2017-02-18 22:03 - 2016-10-05 04:27 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-02-18 22:03 - 2016-10-05 04:26 - 00184320 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserMgrProxy.dll
2017-02-18 22:03 - 2016-10-05 04:26 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovs.dll
2017-02-18 22:03 - 2016-10-05 04:25 - 00117760 _____ (Microsoft Corporation) C:\windows\SysWOW64\AuthBroker.dll
2017-02-18 22:03 - 2016-10-05 04:24 - 00483840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.AllJoyn.dll
2017-02-18 22:03 - 2016-10-05 04:20 - 00661504 _____ (Microsoft Corporation) C:\windows\SysWOW64\WpcWebFilter.dll
2017-02-18 22:03 - 2016-10-05 04:16 - 00508416 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2017-02-18 22:03 - 2016-10-05 04:15 - 00141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\dialclient.dll
2017-02-18 22:03 - 2016-10-05 04:09 - 00691712 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2017-02-18 22:03 - 2016-10-05 04:07 - 00589312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Sensors.dll
2017-02-18 22:03 - 2016-10-05 04:05 - 00751104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-02-18 22:03 - 2016-09-15 12:37 - 00496872 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2017-02-18 22:03 - 2016-09-15 12:33 - 00083120 _____ (Microsoft Corporation) C:\windows\SysWOW64\devenum.dll
2017-02-18 22:03 - 2016-09-15 12:23 - 00170960 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2017-02-18 22:03 - 2016-09-15 12:18 - 00856872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfreadwrite.dll
2017-02-18 22:03 - 2016-09-15 12:13 - 00113504 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmapi.dll
2017-02-18 22:03 - 2016-09-15 12:03 - 00067584 _____ (Microsoft Corporation) C:\windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2017-02-18 22:03 - 2016-09-15 12:03 - 00026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\odbcconf.dll
2017-02-18 22:03 - 2016-09-15 12:01 - 00141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Radios.dll
2017-02-18 22:03 - 2016-09-15 12:01 - 00055296 _____ (Microsoft Corporation) C:\windows\SysWOW64\findnetprinters.dll
2017-02-18 22:03 - 2016-09-15 11:59 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovslegacy.dll
2017-02-18 22:03 - 2016-09-15 11:58 - 00203776 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovhost.dll
2017-02-18 22:03 - 2016-09-15 11:58 - 00129024 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2017-02-18 22:03 - 2016-09-15 11:57 - 00374784 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.LowLevel.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00670208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.PointOfService.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00609280 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Import.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00265728 _____ C:\windows\SysWOW64\Windows.Perception.Stub.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00262656 _____ (Microsoft Corporation) C:\windows\SysWOW64\pdh.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00257536 _____ (Microsoft Corporation) C:\windows\SysWOW64\DataExchange.dll
2017-02-18 22:03 - 2016-09-15 11:56 - 00057856 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManagerApi.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00562176 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.SmartCards.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00386048 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00332288 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Bluetooth.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00325120 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleacc.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00185856 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-02-18 22:03 - 2016-09-15 11:55 - 00152064 _____ (Microsoft Corporation) C:\windows\SysWOW64\biwinrt.dll
2017-02-18 22:03 - 2016-09-15 11:54 - 00498688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mbsmsapi.dll
2017-02-18 22:03 - 2016-09-15 11:54 - 00431104 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprdim.dll
2017-02-18 22:03 - 2016-09-15 11:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredProvDataModel.dll
2017-02-18 22:03 - 2016-09-15 11:54 - 00262144 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Picker.dll
2017-02-18 22:03 - 2016-09-15 11:53 - 00466432 _____ (Microsoft Corporation) C:\windows\SysWOW64\sppcext.dll
2017-02-18 22:03 - 2016-09-15 11:53 - 00314368 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Usb.dll
2017-02-18 22:03 - 2016-09-15 11:52 - 00525824 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintDialogs.dll
2017-02-18 22:03 - 2016-09-15 11:52 - 00500224 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.dll
2017-02-18 22:03 - 2016-09-15 11:52 - 00445952 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprapi.dll
2017-02-18 22:03 - 2016-09-15 11:52 - 00238080 _____ (Microsoft Corporation) C:\windows\SysWOW64\AboveLockAppHost.dll
2017-02-18 22:03 - 2016-09-15 11:51 - 00288256 _____ (Microsoft Corporation) C:\windows\SysWOW64\CryptoWinRT.dll
2017-02-18 22:03 - 2016-09-15 11:50 - 01534464 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-02-18 22:03 - 2016-09-15 11:50 - 00071168 _____ (Microsoft Corporation) C:\windows\SysWOW64\pwrshplugin.dll
2017-02-18 22:03 - 2016-09-15 11:49 - 00901120 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-02-18 22:03 - 2016-09-15 11:49 - 00653312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.AccountsControl.dll
2017-02-18 22:03 - 2016-09-15 11:47 - 01077760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Editing.dll
2017-02-18 22:03 - 2016-09-15 11:47 - 00355328 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTMediaFrame.dll
2017-02-18 22:03 - 2016-09-15 11:47 - 00134656 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Energy.dll
2017-02-18 22:03 - 2016-09-15 11:46 - 00795648 _____ (Microsoft Corporation) C:\windows\SysWOW64\MiracastReceiver.dll
2017-02-18 22:03 - 2016-09-15 11:46 - 00713216 _____ (Microsoft Corporation) C:\windows\SysWOW64\wpnapps.dll
2017-02-18 22:03 - 2016-09-15 11:46 - 00343040 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToDevice.dll
2017-02-18 22:03 - 2016-09-15 11:45 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\dlnashext.dll
2017-02-18 22:03 - 2016-09-15 11:44 - 02153984 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi.dll
2017-02-18 22:03 - 2016-09-15 11:43 - 00433664 _____ (Microsoft Corporation) C:\windows\SysWOW64\imapi2.dll
2017-02-18 22:03 - 2016-09-15 11:43 - 00220672 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToReceiver.dll
2017-02-18 22:03 - 2016-09-15 11:42 - 01220608 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Audio.dll
2017-02-18 22:03 - 2016-09-15 11:42 - 00545792 _____ (Microsoft Corporation) C:\windows\SysWOW64\uReFS.dll
2017-02-18 22:03 - 2016-09-15 11:42 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\BackgroundMediaPolicy.dll
2017-02-18 22:03 - 2016-09-15 11:40 - 00348160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Midi.dll
2017-02-18 22:03 - 2016-09-15 11:39 - 02740224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msftedit.dll
2017-02-18 22:03 - 2016-09-15 11:38 - 00691200 _____ (Microsoft Corporation) C:\windows\SysWOW64\TokenBroker.dll
2017-02-18 22:03 - 2016-09-15 11:38 - 00654336 _____ (Microsoft Corporation) C:\windows\SysWOW64\MbaeApiPublic.dll
2017-02-18 22:03 - 2016-09-07 00:13 - 00640976 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2017-02-18 22:03 - 2016-09-07 00:13 - 00529928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2017-02-18 22:03 - 2016-09-07 00:12 - 00321792 _____ (Microsoft Corporation) C:\windows\SysWOW64\LockAppHost.exe
2017-02-18 22:03 - 2016-09-07 00:00 - 00009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2017-02-18 22:03 - 2016-09-07 00:00 - 00009216 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MosHost.dll
2017-02-18 22:03 - 2016-09-06 23:59 - 00409088 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosResource.dll
2017-02-18 22:03 - 2016-09-06 23:59 - 00110080 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MapControls.dll
2017-02-18 22:03 - 2016-09-06 23:59 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlStringsRes.dll
2017-02-18 22:03 - 2016-09-06 23:58 - 00058880 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosHostClient.dll
2017-02-18 22:03 - 2016-09-06 23:58 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2017-02-18 22:03 - 2016-09-06 23:57 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2017-02-18 22:03 - 2016-09-06 23:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2017-02-18 22:03 - 2016-09-06 23:53 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappgnui.dll
2017-02-18 22:03 - 2016-09-06 23:52 - 00536576 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingOnlineServices.dll
2017-02-18 22:03 - 2016-09-06 23:52 - 00289280 _____ (Microsoft Corporation) C:\windows\SysWOW64\NmaDirect.dll
2017-02-18 22:03 - 2016-09-06 23:52 - 00243712 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapp3hst.dll
2017-02-18 22:03 - 2016-09-06 23:50 - 00426496 _____ (Microsoft Corporation) C:\windows\SysWOW64\OneDriveSettingSyncProvider.dll
2017-02-18 22:03 - 2016-09-06 23:50 - 00235008 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapphost.dll
2017-02-18 22:03 - 2016-09-06 23:47 - 00197120 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappcfg.dll
2017-02-18 22:03 - 2016-09-06 23:46 - 00575488 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2017-02-18 22:03 - 2016-09-06 23:39 - 00895488 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Streaming.dll
2017-02-18 22:03 - 2016-09-06 23:36 - 02423296 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSAJApi.dll
2017-02-18 22:03 - 2016-08-26 23:58 - 00121368 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2017-02-18 22:03 - 2016-08-26 23:43 - 00022528 _____ (Microsoft Corporation) C:\windows\SysWOW64\encapi.dll
2017-02-18 22:03 - 2016-08-20 00:34 - 00136032 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostUser.dll
2017-02-18 22:03 - 2016-08-20 00:14 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\C_G18030.DLL
2017-02-18 22:03 - 2016-08-20 00:14 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\C_IS2022.DLL
2017-02-18 22:03 - 2016-08-20 00:14 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\c_GSM7.DLL
2017-02-18 22:03 - 2016-08-20 00:06 - 00389632 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2017-02-18 22:03 - 2016-08-19 23:56 - 00020992 _____ (Microsoft Corporation) C:\windows\SysWOW64\delegatorprovider.dll
2017-02-18 22:03 - 2016-08-05 23:17 - 00790760 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2017-02-18 22:03 - 2016-08-05 23:08 - 00313560 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanapi.dll
2017-02-18 22:03 - 2016-08-05 23:03 - 01343928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsrcsnk.dll
2017-02-18 22:03 - 2016-08-05 23:03 - 00036168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2017-02-18 22:03 - 2016-08-05 22:50 - 02755584 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2017-02-18 22:03 - 2016-08-05 22:48 - 00015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanhlp.dll
2017-02-18 22:03 - 2016-08-05 22:48 - 00009216 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2017-02-18 22:03 - 2016-08-05 22:48 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2017-02-18 22:03 - 2016-08-05 22:48 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2017-02-18 22:03 - 2016-08-05 22:46 - 09260032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2017-02-18 22:03 - 2016-08-05 22:45 - 00226304 _____ (Microsoft Corporation) C:\windows\SysWOW64\container.dll
2017-02-18 22:03 - 2016-08-05 22:45 - 00038912 _____ (Microsoft Corporation) C:\windows\SysWOW64\wfdprov.dll
2017-02-18 22:03 - 2016-08-05 22:45 - 00029696 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2017-02-18 22:03 - 2016-08-05 22:44 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2017-02-18 22:03 - 2016-08-05 22:44 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\deviceassociation.dll
2017-02-18 22:03 - 2016-08-05 22:28 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\samlib.dll
2017-02-18 22:03 - 2016-08-05 22:21 - 00102400 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinelsa.dll
2017-02-18 22:03 - 2016-08-05 03:29 - 00019968 _____ (Microsoft Corporation) C:\windows\SysWOW64\slcext.dll
2017-02-18 22:03 - 2016-08-01 23:37 - 00121344 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakrathunk.dll
2017-02-18 22:03 - 2016-08-01 23:30 - 00822784 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakradiag.dll
2017-02-18 21:56 - 2016-12-21 02:49 - 00328008 _____ (Microsoft Corporation) C:\windows\system32\Windows.Storage.ApplicationData.dll
2017-02-18 21:56 - 2016-12-09 05:15 - 08168000 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2017-02-18 21:56 - 2016-11-11 05:14 - 02186896 _____ (Microsoft Corporation) C:\windows\system32\hevcdecoder.dll
2017-02-18 21:56 - 2016-11-11 04:25 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryBroker.dll
2017-02-18 21:56 - 2016-11-11 04:24 - 00122880 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryClient.dll
2017-02-18 21:56 - 2016-11-11 04:24 - 00107520 _____ (Microsoft Corporation) C:\windows\system32\VPNv2CSP.dll
2017-02-18 21:56 - 2016-11-11 04:14 - 02104320 _____ (Microsoft Corporation) C:\windows\system32\wlidsvc.dll
2017-02-18 21:56 - 2016-11-11 04:05 - 04136448 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepository.dll
2017-02-18 21:56 - 2016-10-14 22:39 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\winhttp.dll
2017-02-18 21:56 - 2016-10-14 22:37 - 01643008 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.dll
2017-02-18 21:56 - 2016-10-05 04:18 - 01656832 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2017-02-18 21:56 - 2016-09-15 12:29 - 00081760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\stornvme.sys
2017-02-18 21:56 - 2016-09-15 12:29 - 00074080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vpci.sys
2017-02-18 21:56 - 2016-09-15 12:15 - 00130912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storahci.sys
2017-02-18 21:56 - 2016-09-15 11:46 - 00049664 _____ (Microsoft Corporation) C:\windows\system32\ffbroker.dll
2017-02-18 21:56 - 2016-09-15 11:43 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\cmintegrator.dll
2017-02-18 21:56 - 2016-09-15 11:42 - 00123904 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2017-02-18 21:56 - 2016-09-15 11:40 - 00467968 _____ (Microsoft Corporation) C:\windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-02-18 21:56 - 2016-09-15 11:40 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-02-18 21:56 - 2016-09-15 11:40 - 00082432 _____ (Microsoft Corporation) C:\windows\system32\Windows.System.UserDeviceAssociation.dll
2017-02-18 21:56 - 2016-09-15 11:39 - 00547840 _____ (Microsoft Corporation) C:\windows\system32\Windows.Gaming.Input.dll
2017-02-18 21:56 - 2016-09-15 11:38 - 00730112 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2017-02-18 21:56 - 2016-09-15 11:38 - 00205824 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2017-02-18 21:56 - 2016-09-15 11:37 - 01507840 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.FaceAnalysis.dll
2017-02-18 21:56 - 2016-09-15 11:37 - 00390144 _____ (Microsoft Corporation) C:\windows\system32\Search.ProtocolHandler.MAPI2.dll
2017-02-18 21:56 - 2016-09-15 11:36 - 00358912 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.dll
2017-02-18 21:56 - 2016-09-15 11:36 - 00349184 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2017-02-18 21:56 - 2016-09-15 11:35 - 01087488 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Vpn.dll
2017-02-18 21:56 - 2016-09-15 11:35 - 01060352 _____ (Microsoft Corporation) C:\windows\system32\AppContracts.dll
2017-02-18 21:56 - 2016-09-15 11:32 - 00634368 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2017-02-18 21:56 - 2016-09-15 11:24 - 01080320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Ocr.dll
2017-02-18 21:56 - 2016-09-15 11:23 - 03405824 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2017-02-18 21:56 - 2016-09-15 11:21 - 02538496 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2017-02-18 21:56 - 2016-09-15 11:20 - 02424320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Perception.dll
2017-02-18 21:56 - 2016-09-15 11:19 - 00903680 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2017-02-18 21:56 - 2016-08-05 22:44 - 00226816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2017-02-18 21:56 - 2016-08-05 22:43 - 00200704 _____ (Microsoft Corporation) C:\windows\system32\ClipboardServer.dll
2017-02-18 21:56 - 2016-08-05 22:35 - 00471552 _____ (Microsoft Corporation) C:\windows\system32\DscCore.dll
2017-02-18 21:56 - 2016-08-05 03:29 - 00568832 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.UXRes.dll
2017-02-18 21:55 - 2016-12-21 02:42 - 22224480 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2017-02-18 21:55 - 2016-12-21 02:41 - 01600632 _____ (Microsoft Corporation) C:\windows\system32\sppobjs.dll
2017-02-18 21:55 - 2016-12-21 02:14 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\LaunchWinApp.exe
2017-02-18 21:55 - 2016-12-21 02:09 - 00368640 _____ (Microsoft Corporation) C:\windows\system32\OneBackupHandler.dll
2017-02-18 21:55 - 2016-12-21 02:09 - 00363520 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BioFeedback.dll
2017-02-18 21:55 - 2016-12-21 02:08 - 00418304 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BlockedShutdown.dll
2017-02-18 21:55 - 2016-12-21 02:08 - 00360448 _____ (Microsoft Corporation) C:\windows\system32\rdpencom.dll
2017-02-18 21:55 - 2016-12-21 02:08 - 00289792 _____ (Microsoft Corporation) C:\windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-02-18 21:55 - 2016-12-21 02:08 - 00211968 _____ (Microsoft Corporation) C:\windows\system32\InstallAgent.exe
2017-02-18 21:55 - 2016-12-21 02:07 - 00748544 _____ (Microsoft Corporation) C:\windows\system32\StoreAgent.dll
2017-02-18 21:55 - 2016-12-21 02:06 - 06285312 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll
2017-02-18 21:55 - 2016-12-21 02:06 - 00310784 _____ (Microsoft Corporation) C:\windows\system32\SyncSettings.dll
2017-02-18 21:55 - 2016-12-21 02:06 - 00260608 _____ (Microsoft Corporation) C:\windows\system32\InstallAgentUserBroker.exe
2017-02-18 21:55 - 2016-12-21 02:06 - 00147456 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2017-02-18 21:55 - 2016-12-21 02:05 - 00425984 _____ (Microsoft Corporation) C:\windows\system32\aadcloudap.dll
2017-02-18 21:55 - 2016-12-21 02:05 - 00049152 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Shell.dll
2017-02-18 21:55 - 2016-12-21 02:01 - 09131008 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll
2017-02-18 21:55 - 2016-12-21 01:59 - 01908224 _____ (Microsoft Corporation) C:\windows\system32\AzureSettingSyncProvider.dll
2017-02-18 21:55 - 2016-12-21 01:55 - 08129536 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2017-02-18 21:55 - 2016-12-21 01:55 - 04749312 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_nt.dll
2017-02-18 21:55 - 2016-12-21 01:51 - 08075776 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2017-02-18 21:55 - 2016-12-21 01:49 - 02691072 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Logon.dll
2017-02-18 21:55 - 2016-12-21 01:49 - 01062912 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncCore.dll
2017-02-18 21:55 - 2016-12-21 01:47 - 01121280 _____ (Microsoft Corporation) C:\windows\system32\aadtb.dll
2017-02-18 21:55 - 2016-12-14 00:23 - 00404832 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2017-02-18 21:55 - 2016-12-14 00:19 - 00584544 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncHost.exe
2017-02-18 21:55 - 2016-12-14 00:17 - 00319288 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2017-02-18 21:55 - 2016-12-14 00:14 - 01694712 _____ (Microsoft Corporation) C:\windows\system32\winmde.dll
2017-02-18 21:55 - 2016-12-13 23:46 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2017-02-18 21:55 - 2016-12-13 23:43 - 00201728 _____ (Microsoft Corporation) C:\windows\system32\ScDeviceEnum.dll
2017-02-18 21:55 - 2016-12-13 23:42 - 00352768 _____ (Microsoft Corporation) C:\windows\system32\cloudAP.dll
2017-02-18 21:55 - 2016-12-13 23:42 - 00236544 _____ (Microsoft Corporation) C:\windows\system32\WinSCard.dll
2017-02-18 21:55 - 2016-12-13 23:40 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\certprop.dll
2017-02-18 21:55 - 2016-12-13 23:39 - 00837632 _____ (Microsoft Corporation) C:\windows\system32\wbiosrvc.dll
2017-02-18 21:55 - 2016-12-13 23:39 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\updatehandlers.dll
2017-02-18 21:55 - 2016-12-13 23:37 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\updatepolicy.dll
2017-02-18 21:55 - 2016-12-13 23:36 - 01002496 _____ (Microsoft Corporation) C:\windows\system32\SRH.dll
2017-02-18 21:55 - 2016-12-13 23:36 - 00539648 _____ (Microsoft Corporation) C:\windows\system32\usocore.dll
2017-02-18 21:55 - 2016-12-13 23:26 - 00932864 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2017-02-18 21:55 - 2016-12-13 23:26 - 00869888 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2017-02-18 21:55 - 2016-12-13 23:25 - 02009600 _____ (Microsoft Corporation) C:\windows\system32\SRHInproc.dll
2017-02-18 21:55 - 2016-12-13 23:24 - 00673792 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2017-02-18 21:55 - 2016-12-13 23:23 - 03134976 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2017-02-18 21:55 - 2016-12-13 23:22 - 02317824 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2017-02-18 21:55 - 2016-12-13 23:22 - 01513472 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2017-02-18 21:55 - 2016-12-13 23:22 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\wuuhext.dll
2017-02-18 21:55 - 2016-12-13 23:21 - 03616768 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2017-02-18 21:55 - 2016-12-09 05:20 - 01738560 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2017-02-18 21:55 - 2016-12-09 05:19 - 01293152 _____ (Microsoft Corporation) C:\windows\system32\LicenseManager.dll
2017-02-18 21:55 - 2016-12-09 05:10 - 01461200 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2017-02-18 21:55 - 2016-12-09 04:27 - 00981504 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.OnlineId.dll
2017-02-18 21:55 - 2016-12-09 04:21 - 04746752 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2017-02-18 21:55 - 2016-12-09 04:20 - 00730624 _____ (Microsoft Corporation) C:\windows\system32\fveapi.dll
2017-02-18 21:55 - 2016-11-11 05:15 - 00198856 _____ (Microsoft Corporation) C:\windows\system32\wscapi.dll
2017-02-18 21:55 - 2016-11-11 05:15 - 00101216 _____ (Microsoft Corporation) C:\windows\system32\DeviceReactivation.dll
2017-02-18 21:55 - 2016-11-11 05:02 - 00360040 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsAdminFlows.exe
2017-02-18 21:55 - 2016-11-11 05:01 - 01859264 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2017-02-18 21:55 - 2016-11-11 05:00 - 00223584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2017-02-18 21:55 - 2016-11-11 04:56 - 00163752 _____ (Microsoft Corporation) C:\windows\system32\RTWorkQ.dll
2017-02-18 21:55 - 2016-11-11 04:55 - 00882680 _____ (Microsoft Corporation) C:\windows\system32\EditionUpgradeManagerObj.dll
2017-02-18 21:55 - 2016-11-11 04:55 - 00743224 _____ (Microsoft Corporation) C:\windows\system32\sppwinob.dll
2017-02-18 21:55 - 2016-11-11 04:54 - 01418312 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2017-02-18 21:55 - 2016-11-11 04:51 - 00454592 _____ (Microsoft Corporation) C:\windows\system32\services.exe
2017-02-18 21:55 - 2016-11-11 04:31 - 00366080 _____ (Microsoft Corporation) C:\windows\system32\RDXTaskFactory.dll
2017-02-18 21:55 - 2016-11-11 04:26 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\modem.sys
2017-02-18 21:55 - 2016-11-11 04:26 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\ReAgentc.exe
2017-02-18 21:55 - 2016-11-11 04:24 - 00158720 _____ (Microsoft Corporation) C:\windows\system32\VEStoreEventHandlers.dll
2017-02-18 21:55 - 2016-11-11 04:24 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sendmail.dll
2017-02-18 21:55 - 2016-11-11 04:23 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnr.dll
2017-02-18 21:55 - 2016-11-11 04:23 - 00058880 _____ (Microsoft Corporation) C:\windows\system32\Windows.Shell.Search.UriHandler.dll
2017-02-18 21:55 - 2016-11-11 04:20 - 00641024 _____ (Microsoft Corporation) C:\windows\system32\ngccredprov.dll
2017-02-18 21:55 - 2016-11-11 04:20 - 00590336 _____ (Microsoft Corporation) C:\windows\system32\efswrt.dll
2017-02-18 21:55 - 2016-11-11 04:20 - 00574464 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_StorageSense.dll
2017-02-18 21:55 - 2016-11-11 04:20 - 00381952 _____ (Microsoft Corporation) C:\windows\system32\cryptngc.dll
2017-02-18 21:55 - 2016-11-11 04:19 - 00495104 _____ (Microsoft Corporation) C:\windows\system32\DataSenseHandlers.dll
2017-02-18 21:55 - 2016-11-11 04:19 - 00388096 _____ (Microsoft Corporation) C:\windows\system32\zipfldr.dll
2017-02-18 21:55 - 2016-11-11 04:19 - 00366080 _____ (Microsoft Corporation) C:\windows\system32\SearchFolder.dll
2017-02-18 21:55 - 2016-11-11 04:19 - 00320000 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-02-18 21:55 - 2016-11-11 04:17 - 01220096 _____ (Microsoft Corporation) C:\windows\system32\wscui.cpl
2017-02-18 21:55 - 2016-11-11 04:16 - 02716672 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2017-02-18 21:55 - 2016-11-11 04:16 - 01477632 _____ (Microsoft Corporation) C:\windows\system32\wsecedit.dll
2017-02-18 21:55 - 2016-11-11 04:16 - 00184832 _____ (Microsoft Corporation) C:\windows\system32\wscsvc.dll
2017-02-18 21:55 - 2016-11-11 04:16 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\EditionUpgradeHelper.dll
2017-02-18 21:55 - 2016-11-11 04:16 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\RjvMDMConfig.dll
2017-02-18 21:55 - 2016-11-11 04:15 - 00282624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2017-02-18 21:55 - 2016-11-11 04:15 - 00159232 _____ (Microsoft Corporation) C:\windows\system32\wscinterop.dll
2017-02-18 21:55 - 2016-11-11 04:15 - 00032256 _____ (Microsoft Corporation) C:\windows\system32\WSManHTTPConfig.exe
2017-02-18 21:55 - 2016-11-11 04:14 - 00713216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2017-02-18 21:55 - 2016-11-11 04:13 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\StorSvc.dll
2017-02-18 21:55 - 2016-11-11 04:11 - 00096256 _____ (Microsoft Corporation) C:\windows\system32\umpoext.dll
2017-02-18 21:55 - 2016-11-11 04:07 - 02510848 _____ (Microsoft Corporation) C:\windows\system32\NetworkMobileSettings.dll
2017-02-18 21:55 - 2016-11-11 04:05 - 02852864 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-02-18 21:55 - 2016-11-11 04:04 - 01709056 _____ (Microsoft Corporation) C:\windows\system32\UIAutomationCore.dll
2017-02-18 21:55 - 2016-11-11 04:04 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\usercpl.dll
2017-02-18 21:55 - 2016-11-11 04:04 - 00909312 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Search.dll
2017-02-18 21:55 - 2016-11-11 04:04 - 00691712 _____ (Microsoft Corporation) C:\windows\system32\lsm.dll
2017-02-18 21:55 - 2016-11-11 04:04 - 00389632 _____ (Microsoft Corporation) C:\windows\system32\stobject.dll
2017-02-18 21:55 - 2016-11-11 04:03 - 00283648 _____ (Microsoft Corporation) C:\windows\system32\wkssvc.dll
2017-02-18 21:55 - 2016-11-11 04:02 - 01726976 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2017-02-18 21:55 - 2016-11-02 06:13 - 00423776 _____ (Microsoft Corporation) C:\windows\system32\wifitask.exe
2017-02-18 21:55 - 2016-11-02 05:56 - 00322912 _____ (Microsoft Corporation) C:\windows\system32\input.dll
2017-02-18 21:55 - 2016-11-02 05:34 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\microsoft-windows-system-events.dll
2017-02-18 21:55 - 2016-11-02 05:31 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2017-02-18 21:55 - 2016-11-02 05:30 - 00321536 _____ (Microsoft Corporation) C:\windows\system32\PsmServiceExtHost.dll
2017-02-18 21:55 - 2016-11-02 05:28 - 00252928 _____ (Microsoft Corporation) C:\windows\system32\ubpm.dll
2017-02-18 21:55 - 2016-11-02 05:28 - 00240640 _____ (Microsoft Corporation) C:\windows\system32\NetworkDesktopSettings.dll
2017-02-18 21:55 - 2016-11-02 05:27 - 01388544 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Cred.dll
2017-02-18 21:55 - 2016-11-02 05:27 - 00545792 _____ (Microsoft Corporation) C:\windows\system32\timedate.cpl
2017-02-18 21:55 - 2016-11-02 05:26 - 00273920 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2017-02-18 21:55 - 2016-11-02 05:25 - 00655872 _____ (Microsoft Corporation) C:\windows\system32\sud.dll
2017-02-18 21:55 - 2016-11-02 05:25 - 00541696 _____ (Microsoft Corporation) C:\windows\system32\ipnathlp.dll
2017-02-18 21:55 - 2016-11-02 05:25 - 00496128 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.UserAccountsHandlers.dll
2017-02-18 21:55 - 2016-11-02 05:18 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2017-02-18 21:55 - 2016-11-02 05:17 - 01282048 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2017-02-18 21:55 - 2016-11-02 05:16 - 02512384 _____ (Microsoft Corporation) C:\windows\system32\themecpl.dll
2017-02-18 21:55 - 2016-11-02 05:15 - 01348608 _____ (Microsoft Corporation) C:\windows\system32\wifinetworkmanager.dll
2017-02-18 21:55 - 2016-11-02 05:15 - 00483328 _____ (Microsoft Corporation) C:\windows\system32\twinapi.dll
2017-02-18 21:55 - 2016-11-02 05:13 - 03496960 _____ (Microsoft Corporation) C:\windows\system32\MSVidCtl.dll
2017-02-18 21:55 - 2016-11-02 05:13 - 03299840 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2017-02-18 21:55 - 2016-11-02 03:20 - 00446896 _____ C:\windows\system32\ApnDatabase.xml
2017-02-18 21:55 - 2016-10-14 23:41 - 05622088 _____ (Microsoft Corporation) C:\windows\system32\sppsvc.exe
2017-02-18 21:55 - 2016-10-14 23:38 - 00409952 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2017-02-18 21:55 - 2016-10-14 23:30 - 00509280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys
2017-02-18 21:55 - 2016-10-14 23:30 - 00341936 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2017-02-18 21:55 - 2016-10-14 23:26 - 00691080 _____ (Microsoft Corporation) C:\windows\system32\msvproc.dll
2017-02-18 21:55 - 2016-10-14 23:21 - 02537824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2017-02-18 21:55 - 2016-10-14 23:21 - 00584032 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2017-02-18 21:55 - 2016-10-14 23:00 - 00323584 _____ (Microsoft Corporation) C:\windows\system32\twinui.pcshell.dll
2017-02-18 21:55 - 2016-10-14 23:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2017-02-18 21:55 - 2016-10-14 22:57 - 00186880 _____ (Microsoft Corporation) C:\windows\system32\MusNotification.exe
2017-02-18 21:55 - 2016-10-14 22:55 - 00236544 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_Flights.dll
2017-02-18 21:55 - 2016-10-14 22:54 - 00717312 _____ (Microsoft Corporation) C:\windows\system32\taskbarcpl.dll
2017-02-18 21:55 - 2016-10-14 22:54 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\TpmTasks.dll
2017-02-18 21:55 - 2016-10-14 22:52 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\MusUpdateHandlers.dll
2017-02-18 21:55 - 2016-10-14 22:50 - 00509440 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_Bluetooth.dll
2017-02-18 21:55 - 2016-10-14 22:50 - 00438784 _____ (Microsoft Corporation) C:\windows\system32\EncDec.dll
2017-02-18 21:55 - 2016-10-14 22:49 - 01913344 _____ (Microsoft Corporation) C:\windows\system32\wsp_fs.dll
2017-02-18 21:55 - 2016-10-14 22:48 - 01554944 _____ (Microsoft Corporation) C:\windows\system32\wsp_health.dll
2017-02-18 21:55 - 2016-10-14 22:46 - 03287552 _____ (Microsoft Corporation) C:\windows\system32\mispace.dll
2017-02-18 21:55 - 2016-10-14 22:37 - 01980416 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2017-02-18 21:55 - 2016-10-05 05:33 - 00128864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tm.sys
2017-02-18 21:55 - 2016-10-05 04:38 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2017-02-18 21:55 - 2016-10-05 04:38 - 00237568 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Diagnostics.dll
2017-02-18 21:55 - 2016-10-05 04:35 - 00196096 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.dll
2017-02-18 21:55 - 2016-10-05 04:35 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.Ngc.dll
2017-02-18 21:55 - 2016-10-05 04:31 - 00748544 _____ (Microsoft Corporation) C:\windows\system32\ChatApis.dll
2017-02-18 21:55 - 2016-10-05 04:31 - 00561664 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2017-02-18 21:55 - 2016-10-05 04:31 - 00480768 _____ (Microsoft Corporation) C:\windows\system32\dsreg.dll
2017-02-18 21:55 - 2016-10-05 04:29 - 01145856 _____ (Microsoft Corporation) C:\windows\system32\EmailApis.dll
2017-02-18 21:55 - 2016-10-05 04:28 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\GamePanel.exe
2017-02-18 21:55 - 2016-10-05 04:26 - 00590848 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2017-02-18 21:55 - 2016-10-05 04:20 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2017-02-18 21:55 - 2016-10-05 04:19 - 02390016 _____ (Microsoft Corporation) C:\windows\system32\smartscreen.exe
2017-02-18 21:55 - 2016-10-05 04:18 - 00983040 _____ (Microsoft Corporation) C:\windows\system32\ngcsvc.dll
2017-02-18 21:55 - 2016-10-05 04:17 - 02914304 _____ (Microsoft Corporation) C:\windows\system32\CertEnroll.dll
2017-02-18 21:55 - 2016-10-05 04:16 - 00771072 _____ (Microsoft Corporation) C:\windows\system32\AppointmentApis.dll
2017-02-18 21:55 - 2016-10-05 04:16 - 00765440 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Sensors.dll
2017-02-18 21:55 - 2016-10-05 04:15 - 00774656 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.dll
2017-02-18 21:55 - 2016-10-05 04:14 - 01013760 _____ (Microsoft Corporation) C:\windows\system32\ContactApis.dll
2017-02-18 21:55 - 2016-10-05 04:13 - 01328128 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Http.dll
2017-02-18 21:55 - 2016-10-05 04:12 - 00998912 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2017-02-18 21:55 - 2016-09-15 12:30 - 00354264 _____ (Microsoft Corporation) C:\windows\system32\systemreset.exe
2017-02-18 21:55 - 2016-09-15 12:29 - 01117024 _____ (Microsoft Corporation) C:\windows\system32\ReAgent.dll
2017-02-18 21:55 - 2016-09-15 12:29 - 00424640 _____ (Microsoft Corporation) C:\windows\system32\ws2_32.dll
2017-02-18 21:55 - 2016-09-15 12:29 - 00218008 _____ (Microsoft Corporation) C:\windows\system32\LsaIso.exe
2017-02-18 21:55 - 2016-09-15 12:25 - 00280472 _____ (Microsoft Corporation) C:\windows\system32\bdeunlock.exe
2017-02-18 21:55 - 2016-09-15 12:21 - 01000288 _____ (Microsoft Corporation) C:\windows\system32\SecConfig.efi
2017-02-18 21:55 - 2016-09-15 12:16 - 01157000 _____ (Microsoft Corporation) C:\windows\system32\twinapi.appcore.dll
2017-02-18 21:55 - 2016-09-15 12:16 - 00527808 _____ (Microsoft Corporation) C:\windows\system32\WWanAPI.dll
2017-02-18 21:55 - 2016-09-15 12:15 - 00649568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fvevol.sys
2017-02-18 21:55 - 2016-09-15 11:44 - 00118784 _____ (Microsoft Corporation) C:\windows\system32\UserDataTimeUtil.dll
2017-02-18 21:55 - 2016-09-15 11:42 - 00492544 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2017-02-18 21:55 - 2016-09-15 11:41 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\unimdm.tsp
2017-02-18 21:55 - 2016-09-15 11:41 - 00259072 _____ (Microsoft Corporation) C:\windows\system32\Family.SyncEngine.dll
2017-02-18 21:55 - 2016-09-15 11:41 - 00156160 _____ (Microsoft Corporation) C:\windows\system32\Family.Client.dll
2017-02-18 21:55 - 2016-09-15 11:41 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\Family.Authentication.dll
2017-02-18 21:55 - 2016-09-15 11:40 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\RMapi.dll
2017-02-18 21:55 - 2016-09-15 11:38 - 00573952 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnrGidsHandler.dll
2017-02-18 21:55 - 2016-09-15 11:38 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\PimIndexMaintenance.dll
2017-02-18 21:55 - 2016-09-15 11:37 - 00680448 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2017-02-18 21:55 - 2016-09-15 11:37 - 00296448 _____ (Microsoft Corporation) C:\windows\system32\wlancfg.dll
2017-02-18 21:55 - 2016-09-15 11:37 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Scanners.dll
2017-02-18 21:55 - 2016-09-15 11:36 - 00686592 _____ (Microsoft Corporation) C:\windows\system32\dsregcmd.exe
2017-02-18 21:55 - 2016-09-15 11:36 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\fveapibase.dll
2017-02-18 21:55 - 2016-09-15 11:35 - 01013248 _____ (Microsoft Corporation) C:\windows\system32\XblAuthManager.dll
2017-02-18 21:55 - 2016-09-15 11:35 - 00538112 _____ (Microsoft Corporation) C:\windows\system32\sppcext.dll
2017-02-18 21:55 - 2016-09-15 11:35 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\SensorService.dll
2017-02-18 21:55 - 2016-09-15 11:35 - 00252416 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-02-18 21:55 - 2016-09-15 11:35 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\easwrt.dll
2017-02-18 21:55 - 2016-09-15 11:34 - 00642048 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.InkControls.dll
2017-02-18 21:55 - 2016-09-15 11:34 - 00560640 _____ (Microsoft Corporation) C:\windows\system32\webio.dll
2017-02-18 21:55 - 2016-09-15 11:33 - 00966144 _____ (Microsoft Corporation) C:\windows\system32\sbe.dll
2017-02-18 21:55 - 2016-09-15 11:33 - 00963584 _____ (Microsoft Corporation) C:\windows\system32\WebcamUi.dll
2017-02-18 21:55 - 2016-09-15 11:32 - 00361472 _____ (Microsoft Corporation) C:\windows\system32\bdesvc.dll
2017-02-18 21:55 - 2016-09-15 11:30 - 00458752 _____ (Microsoft Corporation) C:\windows\system32\RTMediaFrame.dll
2017-02-18 21:55 - 2016-09-15 11:30 - 00175616 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-02-18 21:55 - 2016-09-15 11:29 - 01082368 _____ (Microsoft Corporation) C:\windows\system32\reseteng.dll
2017-02-18 21:55 - 2016-09-15 11:29 - 00329728 _____ (Microsoft Corporation) C:\windows\system32\fvecpl.dll
2017-02-18 21:55 - 2016-09-15 11:29 - 00156672 _____ (Microsoft Corporation) C:\windows\system32\RelPost.exe
2017-02-18 21:55 - 2016-09-15 11:27 - 02860032 _____ (Microsoft Corporation) C:\windows\system32\storagewmi.dll
2017-02-18 21:55 - 2016-09-15 11:27 - 00796672 _____ (Microsoft Corporation) C:\windows\system32\fvewiz.dll
2017-02-18 21:55 - 2016-09-15 11:27 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\SpaceControl.dll
2017-02-18 21:55 - 2016-09-15 11:27 - 00279040 _____ (Microsoft Corporation) C:\windows\system32\fveui.dll
2017-02-18 21:55 - 2016-09-15 11:27 - 00211968 _____ (Microsoft Corporation) C:\windows\system32\manage-bde.exe
2017-02-18 21:55 - 2016-09-15 11:27 - 00171008 _____ (Microsoft Corporation) C:\windows\system32\fvenotify.exe
2017-02-18 21:55 - 2016-09-15 11:27 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\Sens.dll
2017-02-18 21:55 - 2016-09-15 11:26 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\BitLockerDeviceEncryption.exe
2017-02-18 21:55 - 2016-09-15 11:26 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\bdeui.dll
2017-02-18 21:55 - 2016-09-15 11:25 - 00947200 _____ (Microsoft Corporation) C:\windows\system32\wsp_sr.dll
2017-02-18 21:55 - 2016-09-15 11:25 - 00130560 _____ (Microsoft Corporation) C:\windows\system32\SpaceAgent.exe
2017-02-18 21:55 - 2016-09-15 11:24 - 04596224 _____ (Microsoft Corporation) C:\windows\system32\xpsrchvw.exe
2017-02-18 21:55 - 2016-09-15 11:24 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Web.Core.dll
2017-02-18 21:55 - 2016-09-15 11:23 - 01361408 _____ (Microsoft Corporation) C:\windows\system32\SharedStartModel.dll
2017-02-18 21:55 - 2016-09-15 11:21 - 00971264 _____ (Microsoft Corporation) C:\windows\system32\twinui.appcore.dll
2017-02-18 21:55 - 2016-09-15 11:21 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.dll
2017-02-18 21:55 - 2016-09-15 11:20 - 01535488 _____ (Microsoft Corporation) C:\windows\system32\SpeechPal.dll
2017-02-18 21:55 - 2016-09-15 11:20 - 01266176 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Input.Inking.dll
2017-02-18 21:55 - 2016-09-15 11:20 - 00875520 _____ (Microsoft Corporation) C:\windows\system32\TokenBroker.dll
2017-02-18 21:55 - 2016-09-15 11:19 - 01424896 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Maps.dll
2017-02-18 21:55 - 2016-09-15 11:18 - 01369088 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Phone.dll
2017-02-18 21:55 - 2016-09-15 11:16 - 01817088 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.dll
2017-02-18 21:55 - 2016-09-15 11:16 - 00531456 _____ (Microsoft Corporation) C:\windows\system32\TpmCoreProvisioning.dll
2017-02-18 21:55 - 2016-09-15 11:16 - 00387072 _____ (Microsoft Corporation) C:\windows\system32\SessEnv.dll
2017-02-18 21:55 - 2016-09-15 11:16 - 00035328 _____ (Microsoft Corporation) C:\windows\system32\spaceman.exe
2017-02-18 21:55 - 2016-09-07 00:44 - 02049480 _____ (Microsoft Corporation) C:\windows\system32\wmpmde.dll
2017-02-18 21:55 - 2016-09-07 00:34 - 00857440 _____ (Microsoft Corporation) C:\windows\system32\WWAHost.exe
2017-02-18 21:55 - 2016-09-07 00:33 - 00450392 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2017-02-18 21:55 - 2016-09-07 00:03 - 00008192 _____ (Microsoft Corporation) C:\windows\system32\UserDataAccessRes.dll
2017-02-18 21:55 - 2016-09-07 00:02 - 00045568 _____ (Microsoft Corporation) C:\windows\system32\UserDataTypeHelperUtil.dll
2017-02-18 21:55 - 2016-09-07 00:02 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\UserDataLanguageUtil.dll
2017-02-18 21:55 - 2016-09-07 00:02 - 00023552 _____ (Microsoft Corporation) C:\windows\system32\ExtrasXmlParser.dll
2017-02-18 21:55 - 2016-09-07 00:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\PhoneutilRes.dll
2017-02-18 21:55 - 2016-09-07 00:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\PhoneServiceRes.dll
2017-02-18 21:55 - 2016-09-07 00:01 - 00137728 _____ (Microsoft Corporation) C:\windows\system32\wificonnapi.dll
2017-02-18 21:55 - 2016-09-07 00:01 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\AddressParser.dll
2017-02-18 21:55 - 2016-09-07 00:01 - 00065024 _____ (Microsoft Corporation) C:\windows\system32\POSyncServices.dll
2017-02-18 21:55 - 2016-09-06 23:59 - 00263680 _____ (Microsoft Corporation) C:\windows\system32\ExSMime.dll
2017-02-18 21:55 - 2016-09-06 23:59 - 00064512 _____ (Microsoft Corporation) C:\windows\system32\UserDataPlatformHelperUtil.dll
2017-02-18 21:55 - 2016-09-06 23:59 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\ContactActivation.dll
2017-02-18 21:55 - 2016-09-06 23:58 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\VCardParser.dll
2017-02-18 21:55 - 2016-09-06 23:58 - 00133632 _____ (Microsoft Corporation) C:\windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-02-18 21:55 - 2016-09-06 23:56 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\AppointmentActivation.dll
2017-02-18 21:55 - 2016-09-06 23:55 - 06574592 _____ (Microsoft Corporation) C:\windows\system32\wwanmm.dll
2017-02-18 21:55 - 2016-09-06 23:55 - 00781824 _____ (Microsoft Corporation) C:\windows\system32\PhoneService.dll
2017-02-18 21:55 - 2016-09-06 23:54 - 00805888 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2017-02-18 21:55 - 2016-09-06 23:54 - 00678912 _____ (Microsoft Corporation) C:\windows\system32\PhoneProviders.dll
2017-02-18 21:55 - 2016-09-06 23:54 - 00468992 _____ (Microsoft Corporation) C:\windows\system32\wwanconn.dll
2017-02-18 21:55 - 2016-09-06 23:54 - 00315904 _____ (Microsoft Corporation) C:\windows\system32\Phoneutil.dll
2017-02-18 21:55 - 2016-09-06 23:53 - 00526848 _____ (Microsoft Corporation) C:\windows\system32\OneDriveSettingSyncProvider.dll
2017-02-18 21:55 - 2016-09-06 23:49 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2017-02-18 21:55 - 2016-09-06 23:45 - 00248320 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2017-02-18 21:55 - 2016-09-06 23:40 - 01312768 _____ (Microsoft Corporation) C:\windows\system32\SensorDataService.exe
2017-02-18 21:55 - 2016-09-06 23:39 - 05384192 _____ (Microsoft) C:\windows\system32\dbgeng.dll
2017-02-18 21:55 - 2016-09-06 23:38 - 01555456 _____ (Microsoft Corporation) C:\windows\system32\WMPDMC.exe
2017-02-18 21:55 - 2016-09-06 23:37 - 00540160 _____ (Microsoft Corporation) C:\windows\system32\SettingSync.dll
2017-02-18 21:55 - 2016-09-06 23:35 - 00650240 _____ (Microsoft) C:\windows\system32\DbgModel.dll
2017-02-18 21:55 - 2016-08-20 00:20 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\wwanprotdim.dll
2017-02-18 21:55 - 2016-08-20 00:17 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\LicenseManagerSvc.dll
2017-02-18 21:55 - 2016-08-20 00:12 - 00476672 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2017-02-18 21:55 - 2016-08-20 00:08 - 00204288 _____ (Windows ® Win 7 DDK provider) C:\windows\system32\DscCoreConfProv.dll
2017-02-18 21:55 - 2016-08-20 00:06 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\storagewmi_passthru.dll
2017-02-18 21:55 - 2016-08-20 00:04 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\delegatorprovider.dll
2017-02-18 21:55 - 2016-08-05 23:31 - 00041824 _____ (Microsoft Corporation) C:\windows\system32\SysResetErr.exe
2017-02-18 21:55 - 2016-08-05 23:26 - 01176664 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2017-02-18 21:55 - 2016-08-05 23:16 - 00026408 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2017-02-18 21:55 - 2016-08-05 23:15 - 00408600 _____ (Microsoft Corporation) C:\windows\system32\tsmf.dll
2017-02-18 21:55 - 2016-08-05 22:48 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2017-02-18 21:55 - 2016-08-05 22:48 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.exe
2017-02-18 21:55 - 2016-08-05 22:46 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\WinBioDataModelOOBE.exe
2017-02-18 21:55 - 2016-08-05 22:45 - 00049664 _____ (Microsoft Corporation) C:\windows\system32\StorageUsage.dll
2017-02-18 21:55 - 2016-08-05 22:45 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\netiougc.exe
2017-02-18 21:55 - 2016-08-05 22:43 - 00280064 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_WorkAccess.dll
2017-02-18 21:55 - 2016-08-05 22:41 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\WinBioDataModel.dll
2017-02-18 21:55 - 2016-08-05 22:40 - 00234496 _____ (Microsoft Corporation) C:\windows\system32\tcpipcfg.dll
2017-02-18 21:55 - 2016-08-05 22:40 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncPolicy.dll
2017-02-18 21:55 - 2016-08-05 22:34 - 00023552 _____ (Microsoft Corporation) C:\windows\system32\smphost.dll
2017-02-18 21:55 - 2016-08-05 22:23 - 00520192 _____ (Microsoft Corporation) C:\windows\system32\w32time.dll
2017-02-18 21:55 - 2016-08-05 04:14 - 01066328 _____ (Microsoft Corporation) C:\windows\system32\pidgenx.dll
2017-02-18 21:55 - 2016-08-05 04:05 - 00665768 _____ (Microsoft Corporation) C:\windows\system32\GenValObj.exe
2017-02-18 21:55 - 2016-08-05 03:28 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\slcext.dll
2017-02-18 21:55 - 2016-08-05 03:22 - 00138240 _____ (Microsoft Corporation) C:\windows\system32\sppc.dll
2017-02-18 21:55 - 2016-08-05 03:08 - 00135168 _____ (Microsoft Corporation) C:\windows\system32\slc.dll
2017-02-18 21:55 - 2016-08-02 03:44 - 00114192 _____ (Microsoft Corporation) C:\windows\system32\win32u.dll
2017-02-18 21:55 - 2016-08-02 03:21 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\Chakrathunk.dll
2017-02-18 21:55 - 2016-08-02 03:15 - 00231424 _____ (Microsoft Corporation) C:\windows\system32\shutdownux.dll
2017-02-18 21:55 - 2016-08-02 03:13 - 01081856 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2017-02-18 21:54 - 2016-12-21 03:08 - 00136032 _____ (Microsoft Corporation) C:\windows\system32\ImplatSetup.dll
2017-02-18 21:54 - 2016-12-21 03:04 - 07816032 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2017-02-18 21:54 - 2016-12-21 02:46 - 00624048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2017-02-18 21:54 - 2016-12-21 02:43 - 04130440 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2017-02-18 21:54 - 2016-12-21 02:43 - 01454504 _____ (Microsoft Corporation) C:\windows\system32\mfnetsrc.dll
2017-02-18 21:54 - 2016-12-21 02:43 - 01071736 _____ (Microsoft Corporation) C:\windows\system32\mfnetcore.dll
2017-02-18 21:54 - 2016-12-21 02:43 - 00092512 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2017-02-18 21:54 - 2016-12-21 02:42 - 01988560 _____ (Microsoft Corporation) C:\windows\system32\mfmp4srcsnk.dll
2017-02-18 21:54 - 2016-12-21 02:42 - 01702392 _____ (Microsoft Corporation) C:\windows\system32\mfasfsrcsnk.dll
2017-02-18 21:54 - 2016-12-21 02:42 - 01300600 _____ (Microsoft Corporation) C:\windows\system32\mfmpeg2srcsnk.dll
2017-02-18 21:54 - 2016-12-21 02:15 - 22563840 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2017-02-18 21:54 - 2016-12-21 02:13 - 00119808 _____ (Microsoft Corporation) C:\windows\system32\KnobsCsp.dll
2017-02-18 21:54 - 2016-12-21 02:12 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\ProvPluginEng.dll
2017-02-18 21:54 - 2016-12-21 02:10 - 00234496 _____ (Microsoft Corporation) C:\windows\system32\KnobsCore.dll
2017-02-18 21:54 - 2016-12-21 02:08 - 01292288 _____ (Microsoft Corporation) C:\windows\system32\MSVPXENC.dll
2017-02-18 21:54 - 2016-12-21 02:08 - 00349184 _____ (Microsoft Corporation) C:\windows\system32\provengine.dll
2017-02-18 21:54 - 2016-12-21 02:05 - 00261632 _____ (Microsoft Corporation) C:\windows\system32\indexeddbserver.dll
2017-02-18 21:54 - 2016-12-21 01:58 - 23678464 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2017-02-18 21:54 - 2016-12-21 01:56 - 00947712 _____ (Microsoft Corporation) C:\windows\system32\MSVP9DEC.dll
2017-02-18 21:54 - 2016-12-21 01:56 - 00936960 _____ (Microsoft Corporation) C:\windows\system32\MCRecvSrc.dll
2017-02-18 21:54 - 2016-12-21 01:53 - 06664192 _____ (Microsoft Corporation) C:\windows\system32\mspaint.exe
2017-02-18 21:54 - 2016-12-21 01:50 - 01490432 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2017-02-18 21:54 - 2016-12-21 01:49 - 04149248 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2017-02-18 21:54 - 2016-12-14 00:34 - 02482280 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2017-02-18 21:54 - 2016-12-13 23:41 - 00223744 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2017-02-18 21:54 - 2016-12-13 23:22 - 00707584 _____ (Microsoft Corporation) C:\windows\system32\LogonController.dll
2017-02-18 21:54 - 2016-12-09 05:27 - 00172528 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2017-02-18 21:54 - 2016-12-09 05:20 - 02189664 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2017-02-18 21:54 - 2016-12-09 05:20 - 00658784 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms2.sys
2017-02-18 21:54 - 2016-12-09 05:20 - 00402272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2017-02-18 21:54 - 2016-12-09 04:45 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\WordBreakers.dll
2017-02-18 21:54 - 2016-12-09 04:42 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\cdd.dll
2017-02-18 21:54 - 2016-12-09 04:36 - 03059200 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2017-02-18 21:54 - 2016-12-09 04:33 - 03777536 _____ (Microsoft Corporation) C:\windows\system32\MFMediaEngine.dll
2017-02-18 21:54 - 2016-12-09 04:27 - 13084160 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2017-02-18 21:54 - 2016-12-09 04:22 - 02820096 _____ (Microsoft Corporation) C:\windows\system32\InputService.dll
2017-02-18 21:54 - 2016-12-09 04:20 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\mdmregistration.dll
2017-02-18 21:54 - 2016-12-09 04:19 - 00433664 _____ (Microsoft Corporation) C:\windows\system32\TextInputFramework.dll
2017-02-18 21:54 - 2016-12-09 04:19 - 00261120 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Core.TextInput.dll
2017-02-18 21:54 - 2016-12-09 04:19 - 00119296 _____ (Microsoft Corporation) C:\windows\system32\InputLocaleManager.dll
2017-02-18 21:54 - 2016-12-09 04:19 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\EditBufferTestHook.dll
2017-02-18 21:54 - 2016-11-11 05:13 - 02213760 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2017-02-18 21:54 - 2016-11-11 05:13 - 01886344 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2017-02-18 21:54 - 2016-11-11 05:12 - 00128352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\partmgr.sys
2017-02-18 21:54 - 2016-11-11 05:08 - 00142176 _____ (Microsoft Corporation) C:\windows\system32\migisol.dll
2017-02-18 21:54 - 2016-11-11 05:01 - 07219672 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll
2017-02-18 21:54 - 2016-11-11 04:59 - 00433504 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdbss.sys
2017-02-18 21:54 - 2016-11-11 04:57 - 01473048 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2017-02-18 21:54 - 2016-11-11 04:56 - 01062480 _____ (Microsoft Corporation) C:\windows\system32\mfsvr.dll
2017-02-18 21:54 - 2016-11-11 04:56 - 00424616 _____ (Microsoft Corporation) C:\windows\system32\MFPlay.dll
2017-02-18 21:54 - 2016-11-11 04:56 - 00126568 _____ (Microsoft Corporation) C:\windows\system32\mfaudiocnv.dll
2017-02-18 21:54 - 2016-11-11 04:27 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\NetCfgNotifyObjectHost.exe
2017-02-18 21:54 - 2016-11-11 04:27 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\lpremove.exe
2017-02-18 21:54 - 2016-11-11 04:25 - 00151040 _____ (Microsoft Corporation) C:\windows\system32\MapsBtSvc.dll
2017-02-18 21:54 - 2016-11-11 04:25 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\MosStorage.dll
2017-02-18 21:54 - 2016-11-11 04:24 - 00110080 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-02-18 21:54 - 2016-11-11 04:22 - 00489472 _____ (Microsoft Corporation) C:\windows\system32\NetSetupShim.dll
2017-02-18 21:54 - 2016-11-11 04:22 - 00082944 _____ (Microsoft Corporation) C:\windows\system32\moshost.dll
2017-02-18 21:54 - 2016-11-11 04:21 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\ieproxy.dll
2017-02-18 21:54 - 2016-11-11 04:21 - 00587776 _____ (Microsoft Corporation) C:\windows\system32\vpnike.dll
2017-02-18 21:54 - 2016-11-11 04:21 - 00313856 _____ (Microsoft Corporation) C:\windows\system32\moshostcore.dll
2017-02-18 21:54 - 2016-11-11 04:20 - 00657920 _____ (Microsoft Corporation) C:\windows\system32\rasmans.dll
2017-02-18 21:54 - 2016-11-11 04:20 - 00446976 _____ (Microsoft Corporation) C:\windows\system32\MapConfiguration.dll
2017-02-18 21:54 - 2016-11-11 04:20 - 00115200 _____ (Microsoft Corporation) C:\windows\system32\IdCtrls.dll
2017-02-18 21:54 - 2016-11-11 04:18 - 00278016 _____ (Microsoft Corporation) C:\windows\system32\netplwiz.dll
2017-02-18 21:54 - 2016-11-11 04:17 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\ProvSysprep.dll
2017-02-18 21:54 - 2016-11-11 04:14 - 07654400 _____ (Microsoft Corporation) C:\windows\system32\mos.dll
2017-02-18 21:54 - 2016-11-11 04:14 - 00615424 _____ (Microsoft Corporation) C:\windows\system32\wpnprv.dll
2017-02-18 21:54 - 2016-11-11 04:14 - 00178176 _____ (Microsoft Corporation) C:\windows\system32\sppnp.dll
2017-02-18 21:54 - 2016-11-11 04:13 - 07812096 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll
2017-02-18 21:54 - 2016-11-11 04:11 - 00870400 _____ (Microsoft Corporation) C:\windows\system32\mfmkvsrcsnk.dll
2017-02-18 21:54 - 2016-11-11 04:09 - 01366016 _____ (Microsoft Corporation) C:\windows\system32\wpncore.dll
2017-02-18 21:54 - 2016-11-11 04:08 - 00539136 _____ (Microsoft Corporation) C:\windows\system32\PlayToManager.dll
2017-02-18 21:54 - 2016-11-11 04:07 - 03441152 _____ (Microsoft Corporation) C:\windows\system32\MapRouter.dll
2017-02-18 21:54 - 2016-11-11 04:07 - 02953216 _____ (Microsoft Corporation) C:\windows\system32\MapGeocoder.dll
2017-02-18 21:54 - 2016-11-11 04:07 - 01060864 _____ (Microsoft Corporation) C:\windows\system32\JpMapControl.dll
2017-02-18 21:54 - 2016-11-11 04:07 - 00347648 _____ (Microsoft Corporation) C:\windows\system32\rascustom.dll
2017-02-18 21:54 - 2016-11-11 04:06 - 03400192 _____ (Microsoft Corporation) C:\windows\system32\SyncCenter.dll
2017-02-18 21:54 - 2016-11-11 04:06 - 00960000 _____ (Microsoft Corporation) C:\windows\system32\modernexecserver.dll
2017-02-18 21:54 - 2016-11-11 04:06 - 00650752 _____ (Microsoft Corporation) C:\windows\system32\RDXService.dll
2017-02-18 21:54 - 2016-11-11 04:05 - 01031680 _____ (Microsoft Corporation) C:\windows\system32\MapsStore.dll
2017-02-18 21:54 - 2016-11-11 04:04 - 02800128 _____ (Microsoft Corporation) C:\windows\system32\netshell.dll
2017-02-18 21:54 - 2016-11-11 04:03 - 02669056 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2017-02-18 21:54 - 2016-11-11 04:03 - 00905216 _____ (Microsoft Corporation) C:\windows\system32\MapControlCore.dll
2017-02-18 21:54 - 2016-11-11 04:03 - 00842240 _____ (Microsoft Corporation) C:\windows\system32\ntshrui.dll
2017-02-18 21:54 - 2016-11-11 04:03 - 00632320 _____ (Microsoft Corporation) C:\windows\system32\rasapi32.dll
2017-02-18 21:54 - 2016-11-11 04:02 - 00936448 _____ (Microsoft Corporation) C:\windows\system32\NMAA.dll
2017-02-18 21:54 - 2016-11-02 06:13 - 00773720 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2017-02-18 21:54 - 2016-11-02 06:12 - 02255712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2017-02-18 21:54 - 2016-11-02 06:03 - 02750936 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2017-02-18 21:54 - 2016-11-02 06:02 - 00848736 _____ (Microsoft Corporation) C:\windows\system32\NetSetupEngine.dll
2017-02-18 21:54 - 2016-11-02 06:02 - 00148832 _____ (Microsoft Corporation) C:\windows\system32\NetSetupApi.dll
2017-02-18 21:54 - 2016-11-02 05:55 - 00048992 _____ (Microsoft Corporation) C:\windows\system32\Drivers\iorate.sys
2017-02-18 21:54 - 2016-11-02 05:29 - 00336896 _____ (Microsoft Corporation) C:\windows\system32\NetworkBindingEngineMigPlugin.dll
2017-02-18 21:54 - 2016-11-02 05:29 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\FSClient.dll
2017-02-18 21:54 - 2016-11-02 05:29 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\mfsensorgroup.dll
2017-02-18 21:54 - 2016-11-02 05:29 - 00276992 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2017-02-18 21:54 - 2016-11-02 05:29 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2017-02-18 21:54 - 2016-11-02 05:28 - 00321024 _____ (Microsoft Corporation) C:\windows\system32\NetworkUXBroker.dll
2017-02-18 21:54 - 2016-11-02 05:28 - 00088576 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2017-02-18 21:54 - 2016-11-02 05:27 - 00631296 _____ (Microsoft Corporation) C:\windows\system32\WlanMediaManager.dll
2017-02-18 21:54 - 2016-11-02 05:22 - 13441024 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2017-02-18 21:54 - 2016-11-02 05:22 - 00369664 _____ (Microsoft Corporation) C:\windows\system32\msinfo32.exe
2017-02-18 21:54 - 2016-11-02 05:19 - 00805888 _____ (Microsoft Corporation) C:\windows\system32\FrameServer.dll
2017-02-18 21:54 - 2016-11-02 05:19 - 00154112 _____ (Microsoft Corporation) C:\windows\system32\NPSM.dll
2017-02-18 21:54 - 2016-11-02 05:19 - 00089088 _____ (Microsoft Corporation) C:\windows\system32\asycfilt.dll
2017-02-18 21:54 - 2016-11-02 05:17 - 00982528 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2017-02-18 21:54 - 2016-11-02 05:16 - 01637888 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2017-02-18 21:54 - 2016-11-02 05:16 - 00579072 _____ (Microsoft Corporation) C:\windows\system32\LockAppBroker.dll
2017-02-18 21:54 - 2016-11-02 05:16 - 00265728 _____ (Microsoft Corporation) C:\windows\system32\NetSetupSvc.dll
2017-02-18 21:54 - 2016-10-14 23:26 - 00811416 _____ (Microsoft Corporation) C:\windows\system32\MFCaptureEngine.dll
2017-02-18 21:54 - 2016-10-14 23:21 - 00292872 _____ (Microsoft Corporation) C:\windows\system32\wmpeffects.dll
2017-02-18 21:54 - 2016-10-14 22:59 - 00130560 _____ (Microsoft Corporation) C:\windows\splwow64.exe
2017-02-18 21:54 - 2016-10-14 22:59 - 00018432 _____ (Microsoft Corporation) C:\windows\system32\stdole2.tlb
2017-02-18 21:54 - 2016-10-14 22:57 - 00217600 _____ (Microsoft Corporation) C:\windows\system32\wmpdxm.dll
2017-02-18 21:54 - 2016-10-14 22:56 - 00065024 _____ (Microsoft Corporation) C:\windows\system32\OnDemandConnRouteHelper.dll
2017-02-18 21:54 - 2016-10-14 22:55 - 00126464 _____ (Microsoft Corporation) C:\windows\system32\wmpshell.dll
2017-02-18 21:54 - 2016-10-14 22:49 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\MDMAppInstaller.exe
2017-02-18 21:54 - 2016-10-14 22:47 - 00720896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-02-18 21:54 - 2016-10-14 22:46 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-02-18 21:54 - 2016-10-14 22:45 - 00702464 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Playback.MediaPlayer.dll
2017-02-18 21:54 - 2016-10-14 22:44 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\powercfg.exe
2017-02-18 21:54 - 2016-10-14 22:41 - 00945664 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll
2017-02-18 21:54 - 2016-10-14 22:38 - 00913920 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.dll
2017-02-18 21:54 - 2016-10-14 22:36 - 00983040 _____ (Microsoft Corporation) C:\windows\system32\RemoteNaturalLanguage.dll
2017-02-18 21:54 - 2016-10-14 22:36 - 00792064 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe
2017-02-18 21:54 - 2016-10-14 22:35 - 00701952 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Connectivity.dll
2017-02-18 21:54 - 2016-10-05 05:22 - 01181536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2017-02-18 21:54 - 2016-10-05 05:17 - 01322848 _____ (Microsoft Corporation) C:\windows\system32\wpx.dll
2017-02-18 21:54 - 2016-10-05 05:12 - 02446696 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2017-02-18 21:54 - 2016-10-05 04:36 - 00113664 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-02-18 21:54 - 2016-10-05 04:32 - 00223744 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.HostName.dll
2017-02-18 21:54 - 2016-10-05 04:32 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\AuthBroker.dll
2017-02-18 21:54 - 2016-10-05 04:30 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll
2017-02-18 21:54 - 2016-10-05 04:29 - 00368640 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll
2017-02-18 21:54 - 2016-10-05 04:27 - 00945664 _____ (Microsoft Corporation) C:\windows\system32\WpcWebFilter.dll
2017-02-18 21:54 - 2016-10-05 04:22 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\offreg.dll
2017-02-18 21:54 - 2016-10-05 04:18 - 00759296 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2017-02-18 21:54 - 2016-10-05 04:15 - 00833024 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2017-02-18 21:54 - 2016-10-05 04:12 - 00924672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.BackgroundTransfer.dll
2017-02-18 21:54 - 2016-09-15 12:29 - 00512416 _____ (Microsoft Corporation) C:\windows\system32\MSAudDecMFT.dll
2017-02-18 21:54 - 2016-09-15 12:11 - 00862064 _____ (Microsoft Corporation) C:\windows\system32\mfreadwrite.dll
2017-02-18 21:54 - 2016-09-15 12:11 - 00725664 _____ (Microsoft Corporation) C:\windows\system32\MSVideoDSP.dll
2017-02-18 21:54 - 2016-09-15 12:06 - 00387872 _____ (Microsoft Corporation) C:\windows\system32\wmpps.dll
2017-02-18 21:54 - 2016-09-15 11:43 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\odbcconf.dll
2017-02-18 21:54 - 2016-09-15 11:41 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\NfcRadioMedia.dll
2017-02-18 21:54 - 2016-09-15 11:39 - 00418304 _____ C:\windows\system32\Windows.Perception.Stub.dll
2017-02-18 21:54 - 2016-09-15 11:39 - 00295936 _____ (Microsoft Corporation) C:\windows\system32\pdh.dll
2017-02-18 21:54 - 2016-09-15 11:38 - 00671232 _____ (Microsoft Corporation) C:\windows\system32\NetworkCollectionAgent.dll
2017-02-18 21:54 - 2016-09-15 11:38 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\provops.dll
2017-02-18 21:54 - 2016-09-15 11:38 - 00132096 _____ (Microsoft Corporation) C:\windows\system32\PrintWSDAHost.dll
2017-02-18 21:54 - 2016-09-15 11:38 - 00125952 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll
2017-02-18 21:54 - 2016-09-15 11:36 - 00852480 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Import.dll
2017-02-18 21:54 - 2016-09-15 11:36 - 00719360 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdiWiFi.sys
2017-02-18 21:54 - 2016-09-15 11:36 - 00456192 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2017-02-18 21:54 - 2016-09-15 11:36 - 00387584 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2017-02-18 21:54 - 2016-09-15 11:36 - 00324608 _____ (Microsoft Corporation) C:\windows\system32\usbmon.dll
2017-02-18 21:54 - 2016-09-15 11:35 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2017-02-18 21:54 - 2016-09-15 11:35 - 00496128 _____ (Microsoft Corporation) C:\windows\system32\mprdim.dll
2017-02-18 21:54 - 2016-09-15 11:35 - 00472064 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Bluetooth.dll
2017-02-18 21:54 - 2016-09-15 11:35 - 00358400 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll
2017-02-18 21:54 - 2016-09-15 11:34 - 00671744 _____ (Microsoft Corporation) C:\windows\system32\mbsmsapi.dll
2017-02-18 21:54 - 2016-09-15 11:34 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\AccountsRt.dll
2017-02-18 21:54 - 2016-09-15 11:34 - 00284160 _____ (Microsoft Corporation) C:\windows\system32\AboveLockAppHost.dll
2017-02-18 21:54 - 2016-09-15 11:33 - 00512000 _____ (Microsoft Corporation) C:\windows\system32\mprapi.dll
2017-02-18 21:54 - 2016-09-15 11:32 - 01037312 _____ (Microsoft Corporation) C:\windows\system32\nettrace.dll
2017-02-18 21:54 - 2016-09-15 11:31 - 00090624 _____ (Microsoft Corporation) C:\windows\system32\pwrshplugin.dll
2017-02-18 21:54 - 2016-09-15 11:30 - 01403392 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Editing.dll
2017-02-18 21:54 - 2016-09-15 11:29 - 01105408 _____ (Microsoft Corporation) C:\windows\system32\MiracastReceiver.dll
2017-02-18 21:54 - 2016-09-15 11:28 - 00864256 _____ (Microsoft Corporation) C:\windows\system32\wpnapps.dll
2017-02-18 21:54 - 2016-09-15 11:28 - 00442368 _____ (Microsoft Corporation) C:\windows\system32\PlayToDevice.dll
2017-02-18 21:54 - 2016-09-15 11:27 - 01078784 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Streaming.dll
2017-02-18 21:54 - 2016-09-15 11:27 - 00228352 _____ (Microsoft Corporation) C:\windows\system32\MSAC3ENC.DLL
2017-02-18 21:54 - 2016-09-15 11:26 - 00501248 _____ (Microsoft Corporation) C:\windows\system32\imapi2.dll
2017-02-18 21:54 - 2016-09-15 11:26 - 00279552 _____ (Microsoft Corporation) C:\windows\system32\PlayToReceiver.dll
2017-02-18 21:54 - 2016-09-15 11:25 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Audio.dll
2017-02-18 21:54 - 2016-09-15 11:25 - 00411648 _____ (Microsoft Corporation) C:\windows\system32\SensorsApi.dll
2017-02-18 21:54 - 2016-09-15 11:25 - 00057856 _____ (Microsoft Corporation) C:\windows\system32\BackgroundMediaPolicy.dll
2017-02-18 21:54 - 2016-09-15 11:24 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Devices.dll
2017-02-18 21:54 - 2016-09-15 11:23 - 01040896 _____ (Microsoft Corporation) C:\windows\system32\NaturalLanguage6.dll
2017-02-18 21:54 - 2016-09-15 11:23 - 00611328 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.dll
2017-02-18 21:54 - 2016-09-15 11:22 - 00857600 _____ (Microsoft Corporation) C:\windows\system32\mprddm.dll
2017-02-18 21:54 - 2016-09-15 11:21 - 02208768 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.3D.dll
2017-02-18 21:54 - 2016-09-15 11:20 - 02095616 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2017-02-18 21:54 - 2016-09-15 11:20 - 00845824 _____ (Microsoft Corporation) C:\windows\system32\MbaeApiPublic.dll
2017-02-18 21:54 - 2016-09-15 11:19 - 03202048 _____ (Microsoft Corporation) C:\windows\system32\msftedit.dll
2017-02-18 21:54 - 2016-09-15 11:19 - 01130496 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2017-02-18 21:54 - 2016-09-07 00:54 - 00133472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2017-02-18 21:54 - 2016-09-07 00:33 - 00681304 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ClipSp.sys
2017-02-18 21:54 - 2016-09-07 00:29 - 00595488 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2017-02-18 21:54 - 2016-09-07 00:29 - 00382272 _____ (Microsoft Corporation) C:\windows\system32\LockAppHost.exe
2017-02-18 21:54 - 2016-09-07 00:24 - 00057400 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2017-02-18 21:54 - 2016-09-07 00:04 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MosHost.dll
2017-02-18 21:54 - 2016-09-07 00:03 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\MosResource.dll
2017-02-18 21:54 - 2016-09-07 00:03 - 00110080 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MapControls.dll
2017-02-18 21:54 - 2016-09-07 00:03 - 00095232 _____ (Microsoft Corporation) C:\windows\system32\MapsCSP.dll
2017-02-18 21:54 - 2016-09-07 00:03 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MosTrace.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00078848 _____ (Microsoft Corporation) C:\windows\system32\MosHostClient.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00025088 _____ (Microsoft Corporation) C:\windows\system32\nativemap.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00015360 _____ (Microsoft Corporation) C:\windows\system32\MapsBtSvcProxy.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2017-02-18 21:54 - 2016-09-07 00:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\MapControlStringsRes.dll
2017-02-18 21:54 - 2016-09-07 00:00 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2017-02-18 21:54 - 2016-09-07 00:00 - 00049152 _____ (Microsoft Corporation) C:\windows\system32\mapstoasttask.dll
2017-02-18 21:54 - 2016-09-06 23:59 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\mapsupdatetask.dll
2017-02-18 21:54 - 2016-09-06 23:55 - 00820736 _____ (Microsoft Corporation) C:\windows\system32\BingOnlineServices.dll
2017-02-18 21:54 - 2016-09-06 23:54 - 00366592 _____ (Microsoft Corporation) C:\windows\system32\NmaDirect.dll
2017-02-18 21:54 - 2016-09-06 23:41 - 01891328 _____ (Microsoft Corporation) C:\windows\system32\pnidui.dll
2017-02-18 21:54 - 2016-09-06 23:37 - 02370048 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2017-02-18 21:54 - 2016-08-27 00:12 - 00244816 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2017-02-18 21:54 - 2016-08-20 01:06 - 00108384 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pdc.sys
2017-02-18 21:54 - 2016-08-20 00:22 - 00028672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2017-02-18 21:54 - 2016-08-20 00:21 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\RemovableMediaProvisioningPlugin.dll
2017-02-18 21:54 - 2016-08-20 00:20 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\BarcodeProvisioningPlugin.dll
2017-02-18 21:54 - 2016-08-20 00:19 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\NFCProvisioningPlugin.dll
2017-02-18 21:54 - 2016-08-20 00:18 - 00200704 _____ (Microsoft Corporation) C:\windows\system32\provisioningcsp.dll
2017-02-18 21:54 - 2016-08-20 00:18 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\provtool.exe
2017-02-18 21:54 - 2016-08-20 00:15 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\provhandlers.dll
2017-02-18 21:54 - 2016-08-20 00:14 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\provdatastore.dll
2017-02-18 21:54 - 2016-08-05 23:29 - 00199008 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wof.sys
2017-02-18 21:54 - 2016-08-05 23:23 - 00168800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2017-02-18 21:54 - 2016-08-05 23:18 - 00396168 _____ (Microsoft Corporation) C:\windows\system32\wlanapi.dll
2017-02-18 21:54 - 2016-08-05 23:13 - 01847048 _____ (Microsoft Corporation) C:\windows\system32\mfsrcsnk.dll
2017-02-18 21:54 - 2016-08-05 23:13 - 00044472 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2017-02-18 21:54 - 2016-08-05 22:48 - 02755584 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2017-02-18 21:54 - 2016-08-05 22:48 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\wlanhlp.dll
2017-02-18 21:54 - 2016-08-05 22:48 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2017-02-18 21:54 - 2016-08-05 22:47 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2017-02-18 21:54 - 2016-08-05 22:47 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\WiFiConfigSP.dll
2017-02-18 21:54 - 2016-08-05 22:47 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2017-02-18 21:54 - 2016-08-05 22:47 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2017-02-18 21:54 - 2016-08-05 22:46 - 09260032 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2017-02-18 21:54 - 2016-08-05 22:46 - 00094720 _____ (Microsoft Corporation) C:\windows\system32\dasHost.exe
2017-02-18 21:54 - 2016-08-05 22:46 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\wfdprov.dll
2017-02-18 21:54 - 2016-08-05 22:45 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2017-02-18 21:54 - 2016-08-05 22:44 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\deviceassociation.dll
2017-02-18 21:54 - 2016-08-05 22:43 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\wlansvcpal.dll
2017-02-18 21:54 - 2016-08-05 22:41 - 00462336 _____ (Microsoft Corporation) C:\windows\system32\wlansec.dll
2017-02-18 21:54 - 2016-08-05 22:41 - 00412160 _____ (Microsoft Corporation) C:\windows\system32\wlanmsm.dll
2017-02-18 21:54 - 2016-08-05 22:39 - 00298496 _____ (Microsoft Corporation) C:\windows\system32\wifiprofilessettinghandler.dll
2017-02-18 21:54 - 2016-08-05 22:36 - 00447488 _____ (Microsoft Corporation) C:\windows\system32\das.dll
2017-02-18 21:54 - 2016-08-05 22:31 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\wpninprc.dll
2017-02-18 21:54 - 2016-08-05 22:19 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\offlinelsa.dll
2017-02-18 21:53 - 2016-12-21 03:08 - 00245600 _____ (Microsoft Corporation) C:\windows\system32\offlinesam.dll
2017-02-18 21:53 - 2016-12-21 02:42 - 00241504 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHost.dll
2017-02-18 21:53 - 2016-12-21 02:00 - 00440320 _____ (Microsoft Corporation) C:\windows\system32\fhcfg.dll
2017-02-18 21:53 - 2016-12-21 01:59 - 00883712 _____ (Microsoft Corporation) C:\windows\system32\samsrv.dll
2017-02-18 21:53 - 2016-12-21 01:57 - 00462336 _____ (Microsoft Corporation) C:\windows\system32\fhsettingsprovider.dll
2017-02-18 21:53 - 2016-12-21 01:54 - 05511680 _____ (Microsoft Corporation) C:\windows\system32\aclui.dll
2017-02-18 21:53 - 2016-12-21 01:53 - 04474368 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_47.dll
2017-02-18 21:53 - 2016-12-21 01:53 - 01692672 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.onecore.dll
2017-02-18 21:53 - 2016-12-21 01:51 - 05611008 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2017-02-18 21:53 - 2016-12-21 01:51 - 02275840 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2017-02-18 21:53 - 2016-12-14 00:41 - 00590960 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2017-02-18 21:53 - 2016-12-14 00:14 - 00418952 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2017-02-18 21:53 - 2016-12-14 00:14 - 00089416 _____ (Microsoft Corporation) C:\windows\system32\remoteaudioendpoint.dll
2017-02-18 21:53 - 2016-12-13 23:48 - 01631232 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Resources.dll
2017-02-18 21:53 - 2016-12-13 23:42 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-02-18 21:53 - 2016-12-13 23:40 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\domgmt.dll
2017-02-18 21:53 - 2016-12-13 23:40 - 00266752 _____ (Microsoft Corporation) C:\windows\system32\ConsoleLogon.dll
2017-02-18 21:53 - 2016-12-13 23:39 - 00257024 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.CredDialogController.dll
2017-02-18 21:53 - 2016-12-13 23:38 - 17188864 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.dll
2017-02-18 21:53 - 2016-12-13 23:38 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\CloudBackupSettings.dll
2017-02-18 21:53 - 2016-12-13 23:35 - 00600576 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2017-02-18 21:53 - 2016-12-13 23:24 - 01005568 _____ (Microsoft Corporation) C:\windows\system32\D3D12.dll
2017-02-18 21:53 - 2016-12-13 23:23 - 01231872 _____ (Microsoft Corporation) C:\windows\system32\dosvc.dll
2017-02-18 21:53 - 2016-12-09 05:42 - 01637728 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2017-02-18 21:53 - 2016-12-09 05:42 - 00137568 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2017-02-18 21:53 - 2016-12-09 05:34 - 01051112 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2017-02-18 21:53 - 2016-12-09 05:34 - 00894096 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2017-02-18 21:53 - 2016-12-09 05:33 - 01354320 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2017-02-18 21:53 - 2016-12-09 05:33 - 01173496 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2017-02-18 21:53 - 2016-12-09 05:30 - 00377184 _____ (Microsoft Corporation) C:\windows\system32\Drivers\clfs.sys
2017-02-18 21:53 - 2016-12-09 05:29 - 02681200 _____ C:\windows\system32\CoreUIComponents.dll
2017-02-18 21:53 - 2016-12-09 05:20 - 02677544 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2017-02-18 21:53 - 2016-12-09 05:19 - 00168424 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2017-02-18 21:53 - 2016-12-09 05:18 - 02913144 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2017-02-18 21:53 - 2016-12-09 05:18 - 01267512 _____ (Microsoft Corporation) C:\windows\system32\WinTypes.dll
2017-02-18 21:53 - 2016-12-09 05:14 - 01274712 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2017-02-18 21:53 - 2016-12-09 05:10 - 01572768 _____ (Microsoft Corporation) C:\windows\system32\gdi32full.dll
2017-02-18 21:53 - 2016-12-09 04:41 - 00380928 _____ (Microsoft Corporation) C:\windows\system32\wincorlib.dll
2017-02-18 21:53 - 2016-12-09 04:36 - 00410112 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll
2017-02-18 21:53 - 2016-12-09 04:33 - 01589760 _____ (Microsoft Corporation) C:\windows\system32\msdtctm.dll
2017-02-18 21:53 - 2016-12-09 04:28 - 01004544 _____ (Microsoft Corporation) C:\windows\system32\enterprisecsps.dll
2017-02-18 21:53 - 2016-12-09 04:27 - 05114368 _____ (Microsoft Corporation) C:\windows\system32\cdp.dll
2017-02-18 21:53 - 2016-12-09 04:25 - 00376832 _____ (Microsoft Corporation) C:\windows\system32\CryptoWinRT.dll
2017-02-18 21:53 - 2016-12-09 04:20 - 00172544 _____ (Microsoft Corporation) C:\windows\system32\DeviceEnroller.exe
2017-02-18 21:53 - 2016-11-11 05:14 - 00603488 _____ (Microsoft Corporation) C:\windows\system32\ContentDeliveryManager.Utilities.dll
2017-02-18 21:53 - 2016-11-11 05:13 - 00352096 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2017-02-18 21:53 - 2016-11-11 05:03 - 01069720 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2017-02-18 21:53 - 2016-11-11 05:03 - 00266544 _____ (Microsoft Corporation) C:\windows\system32\policymanager.dll
2017-02-18 21:53 - 2016-11-11 05:02 - 02828376 _____ (Microsoft Corporation) C:\windows\system32\d3d11.dll
2017-02-18 21:53 - 2016-11-11 05:01 - 00637400 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2017-02-18 21:53 - 2016-11-11 04:56 - 04673304 _____ (Microsoft Corporation) C:\windows\explorer.exe
2017-02-18 21:53 - 2016-11-11 04:56 - 00187520 _____ (Microsoft Corporation) C:\windows\system32\CloudStorageWizard.exe
2017-02-18 21:53 - 2016-11-11 04:28 - 00040960 _____ (Microsoft Corporation) C:\windows\system32\CbtBackgroundManagerPolicy.dll
2017-02-18 21:53 - 2016-11-11 04:26 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\ReportingCSP.dll
2017-02-18 21:53 - 2016-11-11 04:25 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\DisplayManager.dll
2017-02-18 21:53 - 2016-11-11 04:25 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\dmcertinst.exe
2017-02-18 21:53 - 2016-11-11 04:25 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\HttpsDataSource.dll
2017-02-18 21:53 - 2016-11-11 04:24 - 00159744 _____ (Microsoft Corporation) C:\windows\system32\ACPBackgroundManagerPolicy.dll
2017-02-18 21:53 - 2016-11-11 04:24 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\browserbroker.dll
2017-02-18 21:53 - 2016-11-11 04:23 - 00567296 _____ (Microsoft Corporation) C:\windows\system32\DevicePairing.dll
2017-02-18 21:53 - 2016-11-11 04:23 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\EAMProgressHandler.dll
2017-02-18 21:53 - 2016-11-11 04:21 - 00379392 _____ (Microsoft Corporation) C:\windows\system32\apprepsync.dll
2017-02-18 21:53 - 2016-11-11 04:20 - 00407552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Management.dll
2017-02-18 21:53 - 2016-11-11 04:20 - 00339456 _____ (Microsoft Corporation) C:\windows\system32\cdpusersvc.dll
2017-02-18 21:53 - 2016-11-11 04:20 - 00176128 _____ (Microsoft Corporation) C:\windows\system32\apprepapi.dll
2017-02-18 21:53 - 2016-11-11 04:20 - 00125952 _____ (Microsoft Corporation) C:\windows\system32\setupugc.exe
2017-02-18 21:53 - 2016-11-11 04:19 - 00411648 _____ (Microsoft Corporation) C:\windows\system32\cdpsvc.dll
2017-02-18 21:53 - 2016-11-11 04:19 - 00389632 _____ (Microsoft Corporation) C:\windows\system32\ActivationManager.dll
2017-02-18 21:53 - 2016-11-11 04:19 - 00285696 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseAppMgmtSvc.dll
2017-02-18 21:53 - 2016-11-11 04:19 - 00198144 _____ (Microsoft Corporation) C:\windows\system32\dpapisrv.dll
2017-02-18 21:53 - 2016-11-11 04:18 - 02084352 _____ (Microsoft Corporation) C:\windows\system32\DeviceFlows.DataModel.dll
2017-02-18 21:53 - 2016-11-11 04:13 - 00306176 _____ (Microsoft Corporation) C:\windows\system32\msdtcuiu.dll
2017-02-18 21:53 - 2016-11-11 04:12 - 00870912 _____ (Microsoft Corporation) C:\windows\system32\msdtcprx.dll
2017-02-18 21:53 - 2016-11-11 04:09 - 00164352 _____ (Microsoft Corporation) C:\windows\system32\dialserver.dll
2017-02-18 21:53 - 2016-11-11 04:07 - 00991232 _____ (Microsoft Corporation) C:\windows\system32\comdlg32.dll
2017-02-18 21:53 - 2016-11-11 04:05 - 01779712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2017-02-18 21:53 - 2016-11-11 04:04 - 02611200 _____ (Microsoft Corporation) C:\windows\system32\gameux.dll
2017-02-18 21:53 - 2016-11-11 04:04 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\dmenrollengine.dll
2017-02-18 21:53 - 2016-11-11 04:03 - 04708864 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2017-02-18 21:53 - 2016-11-11 04:03 - 02287616 _____ (Microsoft Corporation) C:\windows\system32\dwmcore.dll
2017-02-18 21:53 - 2016-11-11 04:02 - 03542016 _____ (Microsoft Corporation) C:\windows\system32\actxprxy.dll
2017-02-18 21:53 - 2016-11-02 06:20 - 00378720 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2017-02-18 21:53 - 2016-11-02 06:02 - 00682816 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2017-02-18 21:53 - 2016-11-02 06:02 - 00238056 _____ (Microsoft Corporation) C:\windows\system32\weretw.dll
2017-02-18 21:53 - 2016-11-02 06:00 - 00534096 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2017-02-18 21:53 - 2016-11-02 05:56 - 01609920 _____ (Microsoft Corporation) C:\windows\system32\d3d9.dll
2017-02-18 21:53 - 2016-11-02 05:56 - 00628552 _____ (Microsoft Corporation) C:\windows\system32\fontdrvhost.exe
2017-02-18 21:53 - 2016-11-02 05:32 - 00045056 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2017-02-18 21:53 - 2016-11-02 05:32 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\efsext.dll
2017-02-18 21:53 - 2016-11-02 05:31 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\WpcTok.exe
2017-02-18 21:53 - 2016-11-02 05:31 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\wininetlui.dll
2017-02-18 21:53 - 2016-11-02 05:30 - 00635904 _____ (Microsoft Corporation) C:\windows\system32\FlightSettings.dll
2017-02-18 21:53 - 2016-11-02 05:30 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\dab.dll
2017-02-18 21:53 - 2016-11-02 05:28 - 00566784 _____ (Microsoft Corporation) C:\windows\system32\ActionCenterCPL.dll
2017-02-18 21:53 - 2016-11-02 05:28 - 00432128 _____ (Microsoft Corporation) C:\windows\system32\WpAXHolder.dll
2017-02-18 21:53 - 2016-11-02 05:28 - 00411136 _____ (Microsoft Corporation) C:\windows\system32\DeviceCenter.dll
2017-02-18 21:53 - 2016-11-02 05:28 - 00279552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-02-18 21:53 - 2016-11-02 05:28 - 00274432 _____ (Microsoft Corporation) C:\windows\system32\ListSvc.dll
2017-02-18 21:53 - 2016-11-02 05:26 - 00579072 _____ (Microsoft Corporation) C:\windows\system32\ddraw.dll
2017-02-18 21:53 - 2016-11-02 05:25 - 00956416 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.desktop.dll
2017-02-18 21:53 - 2016-11-02 05:24 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\fontext.dll
2017-02-18 21:53 - 2016-11-02 05:23 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bowser.sys
2017-02-18 21:53 - 2016-11-02 05:22 - 00337920 _____ (Microsoft Corporation) C:\windows\system32\AudioEndpointBuilder.dll
2017-02-18 21:53 - 2016-11-02 05:21 - 00942080 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2017-02-18 21:53 - 2016-11-02 05:19 - 01586176 _____ (Microsoft Corporation) C:\windows\system32\Windows.Globalization.dll
2017-02-18 21:53 - 2016-11-02 05:19 - 00130560 _____ (Microsoft Corporation) C:\windows\system32\chartv.dll
2017-02-18 21:53 - 2016-11-02 05:18 - 00836608 _____ (Microsoft Corporation) C:\windows\system32\WpcRefreshTask.dll
2017-02-18 21:53 - 2016-11-02 05:17 - 00828416 _____ (Microsoft Corporation) C:\windows\system32\appwiz.cpl
2017-02-18 21:53 - 2016-11-02 05:16 - 00770560 _____ (Microsoft Corporation) C:\windows\system32\bisrv.dll
2017-02-18 21:53 - 2016-11-02 05:16 - 00629248 _____ (Microsoft Corporation) C:\windows\system32\hgcpl.dll
2017-02-18 21:53 - 2016-11-02 05:16 - 00308736 _____ (Microsoft Corporation) C:\windows\system32\ActionCenter.dll
2017-02-18 21:53 - 2016-11-02 05:13 - 00322048 _____ (Microsoft Corporation) C:\windows\system32\GlobCollationHost.dll
2017-02-18 21:53 - 2016-10-14 23:51 - 00595296 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2017-02-18 21:53 - 2016-10-14 23:51 - 00283488 _____ (Microsoft Corporation) C:\windows\system32\DeviceCensus.exe
2017-02-18 21:53 - 2016-10-14 23:51 - 00078688 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2017-02-18 21:53 - 2016-10-14 23:48 - 00498952 _____ (Microsoft Corporation) C:\windows\system32\DolbyDecMFT.dll
2017-02-18 21:53 - 2016-10-14 23:37 - 00063328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dam.sys
2017-02-18 21:53 - 2016-10-14 23:30 - 01851696 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2017-02-18 21:53 - 2016-10-14 23:29 - 00908640 _____ (Microsoft Corporation) C:\windows\system32\drvstore.dll
2017-02-18 21:53 - 2016-10-14 23:29 - 00079200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\crashdmp.sys
2017-02-18 21:53 - 2016-10-14 23:26 - 00160096 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostBroker.dll
2017-02-18 21:53 - 2016-10-14 23:21 - 01100128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2017-02-18 21:53 - 2016-10-14 23:05 - 07216640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2017-02-18 21:53 - 2016-10-14 22:59 - 00272384 _____ (Microsoft Corporation) C:\windows\system32\mfksproxy.dll
2017-02-18 21:53 - 2016-10-14 22:56 - 00339968 _____ (Microsoft Corporation) C:\windows\system32\esentutl.exe
2017-02-18 21:53 - 2016-10-14 22:56 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.WiFi.dll
2017-02-18 21:53 - 2016-10-14 22:56 - 00098816 _____ (Microsoft Corporation) C:\windows\system32\BthRadioMedia.dll
2017-02-18 21:53 - 2016-10-14 22:55 - 00329216 _____ (Microsoft Corporation) C:\windows\system32\wc_storage.dll
2017-02-18 21:53 - 2016-10-14 22:55 - 00265728 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll
2017-02-18 21:53 - 2016-10-14 22:54 - 00241152 _____ (Microsoft Corporation) C:\windows\system32\dafBth.dll
2017-02-18 21:53 - 2016-10-14 22:54 - 00217088 _____ (Microsoft Corporation) C:\windows\system32\DevicePairingFolder.dll
2017-02-18 21:53 - 2016-10-14 22:52 - 00163328 _____ (Microsoft Corporation) C:\windows\system32\autoplay.dll
2017-02-18 21:53 - 2016-10-14 22:51 - 00429568 _____ (Microsoft Corporation) C:\windows\system32\SndVolSSO.dll
2017-02-18 21:53 - 2016-10-14 22:48 - 01054208 _____ (Microsoft Corporation) C:\windows\system32\qmgr.dll
2017-02-18 21:53 - 2016-10-14 22:45 - 01790464 _____ (Microsoft Corporation) C:\windows\system32\LocationFramework.dll
2017-02-18 21:53 - 2016-10-14 22:43 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\energy.dll
2017-02-18 21:53 - 2016-10-14 22:43 - 00078336 _____ (Microsoft Corporation) C:\windows\system32\iscsiwmi.dll
2017-02-18 21:53 - 2016-10-14 22:42 - 00467968 _____ (Microsoft Corporation) C:\windows\system32\Geolocation.dll
2017-02-18 21:53 - 2016-10-14 22:37 - 00093184 _____ (Microsoft Corporation) C:\windows\system32\cmifw.dll
2017-02-18 21:53 - 2016-10-14 22:36 - 00347136 _____ (Microsoft Corporation) C:\windows\system32\Display.dll
2017-02-18 21:53 - 2016-10-14 22:36 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\fhcpl.dll
2017-02-18 21:53 - 2016-10-14 22:35 - 03054080 _____ (Microsoft Corporation) C:\windows\system32\esent.dll
2017-02-18 21:53 - 2016-10-14 22:34 - 02476544 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2017-02-18 21:53 - 2016-10-14 22:34 - 01840640 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2017-02-18 21:53 - 2016-10-14 22:32 - 00886784 _____ (Microsoft Corporation) C:\windows\system32\CPFilters.dll
2017-02-18 21:53 - 2016-10-14 22:31 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ahcache.sys
2017-02-18 21:53 - 2016-10-05 05:12 - 01112928 _____ (Microsoft Corporation) C:\windows\system32\AppxPackaging.dll
2017-02-18 21:53 - 2016-10-05 04:34 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dfsc.sys
2017-02-18 21:53 - 2016-10-05 04:33 - 00651264 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.AllJoyn.dll
2017-02-18 21:53 - 2016-10-05 04:33 - 00157696 _____ (Microsoft Corporation) C:\windows\system32\credprovs.dll
2017-02-18 21:53 - 2016-10-05 04:31 - 00425472 _____ (Microsoft Corporation) C:\windows\system32\bcdedit.exe
2017-02-18 21:53 - 2016-10-05 04:23 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\dialclient.dll
2017-02-18 21:53 - 2016-09-15 12:30 - 00646136 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2017-02-18 21:53 - 2016-09-15 12:29 - 00023392 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cmimcext.sys
2017-02-18 21:53 - 2016-09-15 12:27 - 00434528 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2017-02-18 21:53 - 2016-09-15 12:26 - 00090400 _____ (Microsoft Corporation) C:\windows\system32\devenum.dll
2017-02-18 21:53 - 2016-09-15 12:20 - 00634944 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2017-02-18 21:53 - 2016-09-15 12:16 - 00206096 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2017-02-18 21:53 - 2016-09-15 12:14 - 00119648 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wcifs.sys
2017-02-18 21:53 - 2016-09-15 12:07 - 00128864 _____ (Microsoft Corporation) C:\windows\system32\dwmapi.dll
2017-02-18 21:53 - 2016-09-15 12:06 - 00372440 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.MediaControl.dll
2017-02-18 21:53 - 2016-09-15 11:41 - 00090624 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Printers.dll
2017-02-18 21:53 - 2016-09-15 11:39 - 00186368 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Radios.dll
2017-02-18 21:53 - 2016-09-15 11:38 - 00505856 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.WiFiDirect.dll
2017-02-18 21:53 - 2016-09-15 11:38 - 00343552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SmartCards.Phone.dll
2017-02-18 21:53 - 2016-09-15 11:38 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\credprovhost.dll
2017-02-18 21:53 - 2016-09-15 11:38 - 00171520 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SerialCommunication.dll
2017-02-18 21:53 - 2016-09-15 11:37 - 00912384 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SmartCards.dll
2017-02-18 21:53 - 2016-09-15 11:37 - 00568320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.LowLevel.dll
2017-02-18 21:53 - 2016-09-15 11:37 - 00171520 _____ (Microsoft Corporation) C:\windows\system32\biwinrt.dll
2017-02-18 21:53 - 2016-09-15 11:36 - 00166912 _____ (Microsoft Corporation) C:\windows\system32\credprovslegacy.dll
2017-02-18 21:53 - 2016-09-15 11:35 - 00949248 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.PointOfService.dll
2017-02-18 21:53 - 2016-09-15 11:35 - 00431616 _____ (Microsoft Corporation) C:\windows\system32\Windows.Cortana.Desktop.dll
2017-02-18 21:53 - 2016-09-15 11:35 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Picker.dll
2017-02-18 21:53 - 2016-09-15 11:35 - 00280064 _____ (Microsoft Corporation) C:\windows\system32\DataExchange.dll
2017-02-18 21:53 - 2016-09-15 11:35 - 00128000 _____ (Microsoft Corporation) C:\windows\system32\rshx32.dll
2017-02-18 21:53 - 2016-09-15 11:34 - 00437248 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Usb.dll
2017-02-18 21:53 - 2016-09-15 11:33 - 03753984 _____ (Microsoft Corporation) C:\windows\system32\bootux.dll
2017-02-18 21:53 - 2016-09-15 11:30 - 01639424 _____ (Microsoft Corporation) C:\windows\system32\comsvcs.dll
2017-02-18 21:53 - 2016-09-15 11:30 - 01227264 _____ (Microsoft Corporation) C:\windows\system32\gpsvc.dll
2017-02-18 21:53 - 2016-09-15 11:30 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\Windows.Energy.dll
2017-02-18 21:53 - 2016-09-15 11:30 - 00104960 _____ (Microsoft Corporation) C:\windows\system32\CastLaunch.dll
2017-02-18 21:53 - 2016-09-15 11:29 - 00715264 _____ (Microsoft Corporation) C:\windows\system32\clusapi.dll
2017-02-18 21:53 - 2016-09-15 11:27 - 00582656 _____ (Microsoft Corporation) C:\windows\system32\BootMenuUX.dll
2017-02-18 21:53 - 2016-09-15 11:27 - 00250368 _____ (Microsoft Corporation) C:\windows\system32\discan.dll
2017-02-18 21:53 - 2016-09-15 11:26 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\resutils.dll
2017-02-18 21:53 - 2016-09-15 11:25 - 00628736 _____ (Microsoft Corporation) C:\windows\system32\uReFS.dll
2017-02-18 21:53 - 2016-09-15 11:23 - 00460800 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Midi.dll
2017-02-18 21:53 - 2016-09-15 11:22 - 01709056 _____ (Microsoft Corporation) C:\windows\system32\wevtsvc.dll
2017-02-18 21:53 - 2016-09-15 11:20 - 01275392 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Bluetooth.dll
2017-02-18 21:53 - 2016-09-15 11:17 - 00122368 _____ (Microsoft Corporation) C:\windows\system32\FontProvider.dll
2017-02-18 21:53 - 2016-09-07 00:48 - 00379744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Classpnp.sys
2017-02-18 21:53 - 2016-09-07 00:29 - 00755656 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2017-02-18 21:53 - 2016-09-07 00:29 - 00523712 _____ (Microsoft Corporation) C:\windows\system32\DMRServer.dll
2017-02-18 21:53 - 2016-09-06 23:59 - 00071168 _____ (Microsoft Corporation) C:\windows\system32\eappprxy.dll
2017-02-18 21:53 - 2016-09-06 23:56 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\eapp3hst.dll
2017-02-18 21:53 - 2016-09-06 23:56 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\eappgnui.dll
2017-02-18 21:53 - 2016-09-06 23:55 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\eappcfg.dll
2017-02-18 21:53 - 2016-09-06 23:54 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\CredProvDataModel.dll
2017-02-18 21:53 - 2016-09-06 23:53 - 00302592 _____ (Microsoft Corporation) C:\windows\system32\eapphost.dll
2017-02-18 21:53 - 2016-09-06 23:43 - 00484352 _____ (Microsoft Corporation) C:\windows\system32\MDEServer.exe
2017-02-18 21:53 - 2016-09-06 23:39 - 03116544 _____ (Microsoft Corporation) C:\windows\system32\MSAJApi.dll
2017-02-18 21:53 - 2016-09-06 23:33 - 00058368 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2017-02-18 21:53 - 2016-08-26 23:44 - 00027136 _____ (Microsoft Corporation) C:\windows\system32\encapi.dll
2017-02-18 21:53 - 2016-08-20 00:21 - 00227840 _____ (Microsoft Corporation) C:\windows\system32\C_G18030.DLL
2017-02-18 21:53 - 2016-08-20 00:21 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\c_GSM7.DLL
2017-02-18 21:53 - 2016-08-20 00:20 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\C_IS2022.DLL
2017-02-18 21:53 - 2016-08-20 00:07 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\AppXApplicabilityBlob.dll
2017-02-18 21:53 - 2016-08-18 20:33 - 00162850 _____ C:\windows\system32\C_932.NLS
2017-02-18 21:53 - 2016-08-05 22:45 - 00327680 _____ (Microsoft Corporation) C:\windows\system32\container.dll
2017-02-18 21:53 - 2016-08-05 22:40 - 00239104 _____ (Microsoft Corporation) C:\windows\system32\dafpos.dll
2017-02-18 21:53 - 2016-08-05 22:29 - 00123904 _____ (Microsoft Corporation) C:\windows\system32\samlib.dll
2017-02-18 21:53 - 2016-07-21 20:25 - 00389000 _____ (Microsoft Corporation) C:\windows\system32\wevtapi.dll
2017-02-18 21:52 - 2016-12-21 02:37 - 00455520 _____ (Microsoft Corporation) C:\windows\system32\securekernel.exe
2017-02-18 21:52 - 2016-12-14 00:41 - 01235296 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2017-02-18 21:52 - 2016-12-14 00:33 - 01356864 _____ (Microsoft Corporation) C:\windows\system32\ClipUp.exe
2017-02-18 21:52 - 2016-12-14 00:18 - 00715104 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vhdmp.sys
2017-02-18 21:52 - 2016-12-14 00:18 - 00335712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pci.sys
2017-02-18 21:52 - 2016-12-09 05:28 - 00764392 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll
2017-02-18 21:52 - 2016-12-09 05:18 - 01100128 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2017-02-18 21:52 - 2016-12-09 05:18 - 00989024 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2017-02-18 21:52 - 2016-12-09 05:18 - 00947552 _____ (Microsoft Corporation) C:\windows\system32\hvloader.efi
2017-02-18 21:52 - 2016-12-09 05:18 - 00811872 _____ (Microsoft Corporation) C:\windows\system32\hvloader.exe
2017-02-18 21:52 - 2016-12-09 04:37 - 00411136 _____ (Microsoft Corporation) C:\windows\system32\facecredentialprovider.dll
2017-02-18 21:52 - 2016-12-09 04:21 - 00716800 _____ (Microsoft Corporation) C:\windows\system32\ShareHost.dll
2017-02-18 21:52 - 2016-11-11 05:00 - 00219488 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tpm.sys
2017-02-18 21:52 - 2016-11-11 04:26 - 00258560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\xboxgip.sys
2017-02-18 21:52 - 2016-11-11 04:26 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseModernAppMgmtCSP.dll
2017-02-18 21:52 - 2016-11-11 04:25 - 00198656 _____ (Microsoft Corporation) C:\windows\system32\BcastDVRHelper.dll
2017-02-18 21:52 - 2016-11-11 04:24 - 00170496 _____ (Microsoft Corporation) C:\windows\system32\AppCapture.dll
2017-02-18 21:52 - 2016-11-11 04:22 - 00143360 _____ (Microsoft Corporation) C:\windows\system32\EDPCleanup.exe
2017-02-18 21:52 - 2016-11-11 04:19 - 00620544 _____ (Microsoft Corporation) C:\windows\system32\bcastdvr.exe
2017-02-18 21:52 - 2016-11-11 04:16 - 00560128 _____ (Microsoft Corporation) C:\windows\system32\AppReadiness.dll
2017-02-18 21:52 - 2016-11-11 04:07 - 01691136 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2017-02-18 21:52 - 2016-11-02 05:28 - 00324608 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-02-18 21:52 - 2016-11-02 05:23 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\ErrorDetailsUpdate.dll
2017-02-18 21:52 - 2016-11-02 05:20 - 00167936 _____ (Microsoft Corporation) C:\windows\system32\ErrorDetails.dll
2017-02-18 21:52 - 2016-11-02 05:16 - 00881664 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2017-02-18 21:52 - 2016-10-14 23:51 - 00584032 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2017-02-18 21:52 - 2016-10-14 23:51 - 00322912 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2017-02-18 21:52 - 2016-10-14 23:51 - 00232800 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2017-02-18 21:52 - 2016-10-14 23:38 - 00500064 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2017-02-18 21:52 - 2016-10-14 23:30 - 00557408 _____ (Microsoft Corporation) C:\windows\system32\Drivers\spaceport.sys
2017-02-18 21:52 - 2016-10-14 22:56 - 00219648 _____ (Microsoft Corporation) C:\windows\system32\AudioSrvPolicyManager.dll
2017-02-18 21:52 - 2016-10-14 22:56 - 00120832 _____ (Microsoft Corporation) C:\windows\system32\BluetoothApis.dll
2017-02-18 21:52 - 2016-10-14 22:55 - 00156672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2017-02-18 21:52 - 2016-10-14 22:54 - 00463872 _____ (Microsoft Corporation) C:\windows\system32\daxexec.dll
2017-02-18 21:52 - 2016-10-14 22:39 - 00631296 _____ (Microsoft Corporation) C:\windows\system32\NotificationController.dll
2017-02-18 21:52 - 2016-10-05 05:35 - 00279904 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sdbus.sys
2017-02-18 21:52 - 2016-10-05 05:16 - 00187232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dumpsd.sys
2017-02-18 21:52 - 2016-10-05 05:13 - 00146784 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostCommon.dll
2017-02-18 21:52 - 2016-10-05 05:09 - 00064352 _____ (Avago Technologies) C:\windows\system32\Drivers\MegaSas2i.sys
2017-02-18 21:52 - 2016-10-05 04:33 - 00268800 _____ (Microsoft Corporation) C:\windows\system32\UserMgrProxy.dll
2017-02-18 21:52 - 2016-10-05 04:24 - 00099328 _____ (Microsoft Corporation) C:\windows\system32\adsmsext.dll
2017-02-18 21:52 - 2016-09-15 12:29 - 00169056 _____ (Microsoft Corporation) C:\windows\system32\skci.dll
2017-02-18 21:52 - 2016-09-15 11:43 - 00039424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\kbdhid.sys
2017-02-18 21:52 - 2016-09-15 11:42 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\winhvr.sys
2017-02-18 21:52 - 2016-09-15 11:38 - 00427008 _____ (Microsoft Corporation) C:\windows\system32\vmrdvcore.dll
2017-02-18 21:52 - 2016-09-15 11:38 - 00349696 _____ (Microsoft Corporation) C:\windows\system32\icsvcext.dll
2017-02-18 21:52 - 2016-09-15 11:35 - 00329728 _____ (Microsoft Corporation) C:\windows\system32\deviceaccess.dll
2017-02-18 21:52 - 2016-09-15 11:35 - 00305152 _____ (Microsoft Corporation) C:\windows\system32\icsvc.dll
2017-02-18 21:52 - 2016-09-15 11:33 - 00896512 _____ (Microsoft Corporation) C:\windows\system32\Windows.AccountsControl.dll
2017-02-18 21:52 - 2016-09-15 11:23 - 01020928 _____ (Microsoft Corporation) C:\windows\system32\usermgr.dll
2017-02-18 21:52 - 2016-09-10 08:21 - 00118272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\capimg.sys
2017-02-18 21:52 - 2016-09-07 00:34 - 00178528 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostUser.dll
2017-02-18 21:52 - 2016-09-07 00:29 - 00118112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\EhStorTcgDrv.sys
2017-02-18 21:52 - 2016-09-06 23:59 - 00095232 _____ (Microsoft Corporation) C:\windows\system32\tzautoupdate.dll
2017-02-18 21:52 - 2016-09-06 23:56 - 00157696 _____ (Microsoft Corporation) C:\windows\system32\XamlTileRender.dll
2017-02-18 21:52 - 2016-09-06 23:46 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\dlnashext.dll
2017-02-18 21:52 - 2016-08-20 00:20 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\xinputhid.sys
2017-02-18 21:52 - 2016-08-05 23:16 - 00073568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hvservice.sys
2017-02-18 21:52 - 2016-08-05 23:16 - 00020320 _____ (Microsoft Corporation) C:\windows\system32\kdhvcom.dll
2017-02-18 21:52 - 2016-08-05 22:47 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidusb.sys
2017-02-18 21:52 - 2016-08-05 22:46 - 00040960 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2017-02-18 21:26 - 2017-02-25 21:51 - 00000000 ____D C:\windows\system32\MRT
2017-02-18 21:26 - 2017-02-25 21:41 - 138020592 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-02-18 21:21 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\windows\system32\PresentationNative_v0300.dll
2017-02-18 21:21 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-02-18 21:21 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2017-02-18 21:21 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationNative_v0300.dll
2017-02-18 21:21 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-02-18 21:21 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2017-02-18 20:55 - 2017-02-18 20:48 - 00485032 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2017-02-18 20:50 - 2016-12-21 02:08 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2017-02-18 20:50 - 2016-12-20 23:44 - 00120320 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2017-02-17 19:57 - 2017-02-17 19:57 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Comms
2017-02-17 19:48 - 2017-02-17 19:48 - 00002355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-17 19:48 - 2017-02-17 19:48 - 00002343 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-02-17 19:47 - 2017-02-17 19:55 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Google
2017-02-17 19:47 - 2017-02-17 19:48 - 00000000 ____D C:\Program Files (x86)\Google
2017-02-17 19:47 - 2017-02-17 19:47 - 01129376 _____ (Google Inc.) C:\Users\P-Dub\Downloads\ChromeSetup.exe
2017-02-17 19:46 - 2017-02-17 19:46 - 00000000 ____D C:\Users\P-Dub\AppData\Local\MicrosoftEdge
2017-02-17 19:43 - 2017-02-17 19:43 - 00003290 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task v2
2017-02-17 19:42 - 2017-02-17 19:43 - 00002374 _____ C:\Users\P-Dub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-02-17 19:42 - 2017-02-17 19:43 - 00000000 ___RD C:\Users\P-Dub\OneDrive
2017-02-17 19:42 - 2017-02-17 19:42 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\Skype
2017-02-17 19:42 - 2017-02-17 19:42 - 00000000 ____D C:\Users\P-Dub\AppData\Local\NetworkTiles
2017-02-17 19:40 - 2017-02-17 19:40 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Publishers
2017-02-17 19:39 - 2017-02-19 19:45 - 00000000 ____D C:\Users\P-Dub
2017-02-17 19:39 - 2017-02-18 22:06 - 00000000 ____D C:\Users\P-Dub\AppData\Local\Packages
2017-02-17 19:39 - 2017-02-18 21:13 - 00000000 ____D C:\Users\P-Dub\AppData\Local\ConnectedDevicesPlatform
2017-02-17 19:39 - 2017-02-17 19:39 - 00000020 ___SH C:\Users\P-Dub\ntuser.ini
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 _SHDL C:\Users\P-Dub\My Documents
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 _SHDL C:\Users\P-Dub\Documents\My Videos
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 _SHDL C:\Users\P-Dub\Documents\My Pictures
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 _SHDL C:\Users\P-Dub\Documents\My Music
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 ____D C:\Users\P-Dub\AppData\Roaming\Adobe
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 ____D C:\Users\P-Dub\AppData\Local\VirtualStore
2017-02-17 19:39 - 2017-02-17 19:39 - 00000000 ____D C:\Users\P-Dub\AppData\Local\TileDataLayer
2017-02-17 19:22 - 2017-02-17 19:24 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2017-02-17 19:22 - 2017-02-17 19:22 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2017-02-17 19:22 - 2017-02-17 19:22 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2017-02-17 19:22 - 2017-02-17 19:22 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2017-02-17 18:39 - 2017-02-17 18:39 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2017-02-17 18:39 - 2017-02-17 18:39 - 00000000 _SHDL C:\Users\defaultuser0\My Documents
2017-02-17 18:39 - 2017-02-17 18:39 - 00000000 _SHDL C:\Users\defaultuser0\Documents\My Videos
2017-02-17 18:39 - 2017-02-17 18:39 - 00000000 _SHDL C:\Users\defaultuser0\Documents\My Pictures
2017-02-17 18:39 - 2017-02-17 18:39 - 00000000 _SHDL C:\Users\defaultuser0\Documents\My Music
2017-02-17 18:39 - 2017-02-17 18:39 - 00000000 ____D C:\Users\defaultuser0
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-02-27 18:10 - 2016-07-16 06:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-02-27 18:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\AppReadiness
2017-02-27 17:39 - 2016-10-10 18:50 - 01170810 _____ C:\windows\system32\PerfStringBackup.INI
2017-02-27 17:39 - 2016-07-16 06:47 - 00000000 ____D C:\windows\LiveKernelReports
2017-02-26 22:45 - 2016-10-10 18:44 - 00000000 ____D C:\windows\system32\SleepStudy
2017-02-26 22:38 - 2016-10-10 18:44 - 00000006 ____H C:\windows\Tasks\SA.DAT
2017-02-26 22:37 - 2016-07-16 01:04 - 00262144 _____ C:\windows\system32\config\BBI
2017-02-25 23:15 - 2016-07-16 06:47 - 00000000 ____D C:\windows\rescache
2017-02-25 09:08 - 2016-07-16 06:36 - 00000000 ____D C:\windows\CbsTemp
2017-02-20 13:26 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\NDF
2017-02-20 12:32 - 2016-07-16 06:45 - 00000000 ____D C:\windows\INF
2017-02-19 19:46 - 2016-10-10 18:44 - 00333096 _____ C:\windows\system32\FNTCACHE.DAT
2017-02-19 00:16 - 2016-10-10 18:53 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ___SD C:\windows\SysWOW64\F12
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ___SD C:\windows\system32\F12
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ___SD C:\windows\system32\dsc
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ___SD C:\windows\system32\DiagSvcs
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\SysWOW64\setup
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\SysWOW64\oobe
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\WinBioPlugIns
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\setup
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\oobe
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\migwiz
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\lv-LV
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\lt-LT
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\et-EE
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\es-MX
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\en-GB
2017-02-19 00:10 - 2016-07-16 06:47 - 00000000 ____D C:\windows\system32\appraiser
2017-02-19 00:10 - 2016-07-16 01:04 - 00000000 ____D C:\windows\SysWOW64\Dism
2017-02-19 00:10 - 2016-07-16 01:04 - 00000000 ____D C:\windows\system32\Sysprep
2017-02-19 00:10 - 2016-07-16 01:04 - 00000000 ____D C:\windows\system32\Dism
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ___RD C:\windows\ImmersiveControlPanel
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ___RD C:\Program Files\Windows Defender
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\windows\ShellExperiences
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\windows\Provisioning
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\windows\bcastdvr
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-02-19 00:09 - 2016-07-16 06:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-02-19 00:09 - 2016-07-16 01:04 - 00000000 ____D C:\windows\servicing
2017-02-19 00:08 - 2016-07-16 06:47 - 00015425 _____ C:\windows\system32\OEMDefaultAssociations.xml
2017-02-17 19:27 - 2016-07-16 06:47 - 00000000 ____D C:\windows\appcompat
2017-02-17 19:26 - 2016-10-10 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-02-17 18:39 - 2016-07-16 06:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-02-17 18:37 - 2016-10-10 19:44 - 00000000 ____D C:\windows\Panther
2017-02-06 14:48 - 2016-07-16 06:49 - 00835576 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2017-02-06 14:48 - 2016-07-16 06:49 - 00177656 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
 
Files to move or delete:
====================
C:\Program Files (x86)\cpx\cpx.exe
 
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2016-10-10 18:44
 
==================== End of FRST.txt ============================

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2017 01
Ran by P-Dub (27-02-2017 18:43:34)
Running from C:\Users\P-Dub\Desktop
Windows 10 Home Version 1607 (X64) (2017-02-18 00:22:04)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-1578420096-1607769468-3208362581-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1578420096-1607769468-3208362581-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-1578420096-1607769468-3208362581-1001 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-1578420096-1607769468-3208362581-501 - Limited - Disabled)
P-Dub (S-1-5-21-1578420096-1607769468-3208362581-1002 - Administrator - Enabled) => C:\Users\P-Dub
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.98.4.60 - Conexant)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HTC BMP USB Driver (HKLM-x32\...\{31A559C1-9E4D-423B-9DD3-34A6C5398752}) (Version: 1.0.5375 - HTC)
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.17.0.001 - HTC Corporation)
HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.77.0 - HTC)
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC)
Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.6001.1054 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1578420096-1607769468-3208362581-1002\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6001.1054 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6001.1054 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6001.1054 - Microsoft Corporation) Hidden
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {363B275A-ABE0-48EB-9855-75CC2ACBAE06} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\windows\system32\MRT.exe [2017-02-25] (Microsoft Corporation)
Task: {65C9DCFF-F194-4DE0-90EE-E81FDA8ADBF4} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-03] (Microsoft Corporation)
Task: {692FBEEE-9915-4BDC-82F4-1A0962F196BF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-03] (Microsoft Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2016-10-10 18:46 - 2016-01-03 11:36 - 00162472 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2017-01-05 17:36 - 2017-01-05 17:36 - 00077824 ____N () C:\Program Files (x86)\dataup\dataup.exe
2013-10-17 15:27 - 2013-10-17 15:27 - 00166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
2016-07-16 06:42 - 2016-07-16 06:42 - 00231424 _____ () C:\windows\SYSTEM32\ism32k.dll
2017-02-18 21:53 - 2016-12-09 05:29 - 02681200 _____ () C:\windows\system32\CoreUIComponents.dll
2017-02-18 21:53 - 2016-12-09 05:29 - 02681200 _____ () C:\windows\SYSTEM32\CoreUIComponents.dll
2016-10-10 18:46 - 2016-10-10 18:46 - 08901800 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2017-01-05 11:00 - 2017-01-05 11:00 - 00649216 ____N () C:\Program Files (x86)\cpx\cpx.exe
2017-01-13 20:09 - 2017-01-13 20:09 - 00896512 _____ () C:\Program Files (x86)\svcvmx\svcvmx.exe
2017-01-20 20:18 - 2017-01-20 20:18 - 01087488 _____ () C:\Program Files (x86)\svcvmx\vmxclient.exe
2017-02-18 21:53 - 2016-12-21 01:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-02-18 21:53 - 2016-12-21 01:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-02-18 21:53 - 2016-12-21 01:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-02-18 21:53 - 2016-12-21 01:48 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-02-18 21:53 - 2016-12-21 01:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-02-18 21:53 - 2016-12-21 01:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-02-17 19:48 - 2017-02-01 04:47 - 02459992 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libglesv2.dll
2017-02-17 19:48 - 2017-02-01 04:47 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libegl.dll
2016-09-21 23:32 - 2016-09-21 23:32 - 00224768 ____N () C:\Program Files (x86)\dataup\help_dll.dll
2016-10-21 09:07 - 2016-10-21 09:07 - 00030720 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DbAccess.dll
2016-10-21 09:07 - 2016-10-21 09:07 - 00607016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\sqlite3.dll
2016-10-21 09:07 - 2016-10-21 09:07 - 00059392 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NAdvLog.dll
2016-10-21 09:07 - 2016-10-21 09:07 - 00035864 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
2016-10-21 09:07 - 2016-10-21 09:07 - 00079888 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\ninstallerhelper.dll
2016-10-21 09:08 - 2016-10-21 09:08 - 00129016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\zlib1.dll
2016-10-21 09:09 - 2016-10-21 09:09 - 00223240 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DevConnMon.dll
2016-11-13 18:17 - 2016-11-13 18:17 - 45076480 ____N () C:\Program Files (x86)\cpx\libcef.dll
2016-03-24 11:30 - 2016-03-24 11:30 - 00933376 ____N () C:\Program Files (x86)\cpx\core.dll
2016-11-13 18:01 - 2016-11-13 18:01 - 01643008 ____N () C:\Program Files (x86)\cpx\libglesv2.dll
2016-11-13 18:01 - 2016-11-13 18:01 - 00074752 ____N () C:\Program Files (x86)\cpx\libegl.dll
2015-10-20 22:08 - 2015-10-20 22:08 - 16493384 ____N () C:\Program Files (x86)\cpx\PepperFlash\pepflashplayer.dll
2017-02-18 21:53 - 2016-12-09 05:29 - 02681200 _____ () C:\windows\System32\CoreUIComponents.dll
2017-01-14 19:40 - 2017-01-14 19:40 - 53460992 _____ () C:\Program Files (x86)\svcvmx\libcef.dll
2016-05-31 11:43 - 2016-05-31 11:43 - 01976832 _____ () C:\Program Files (x86)\svcvmx\libglesv2.dll
2016-05-31 11:44 - 2016-05-31 11:44 - 00075264 _____ () C:\Program Files (x86)\svcvmx\libegl.dll
2016-06-15 17:15 - 2016-06-15 17:15 - 17599640 _____ () C:\Program Files (x86)\svcvmx\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2016-07-16 06:47 - 2016-07-16 06:45 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-1578420096-1607769468-3208362581-1002\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{86A7931B-F2B8-4464-8489-A2139ABD7271}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{C5D7BA41-7D4E-401D-BEF3-B356CF977A33}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{618BACFA-BC77-43E8-9F1F-3C739518D789}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe
 
==================== Restore Points =========================
 
25-02-2017 09:02:42 Windows Update
25-02-2017 09:06:27 Windows Modules Installer
27-02-2017 18:15:21 JRT Pre-Junkware Removal
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (02/27/2017 06:33:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: vmxclient.exe, version: 1.0.1.5, time stamp: 0x5882001c
Faulting module name: libcef.dll, version: 3.2526.1373.0, time stamp: 0x587a0d9a
Exception code: 0x80000003
Fault offset: 0x0193bc73
Faulting process id: 0x17f4
Faulting application start time: 0x01d29151dd4e74ac
Faulting application path: C:\Program Files (x86)\svcvmx\vmxclient.exe
Faulting module path: C:\Program Files (x86)\svcvmx\libcef.dll
Report Id: eca25130-c64e-4694-baed-f49e1c68c8ea
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (02/27/2017 06:18:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-LUMVVN2)
Description: Activation of app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (02/27/2017 06:16:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
 
System Error:
Access is denied.
.
 
Error: (02/27/2017 06:09:51 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.14393.479 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: da8
 
Start Time: 01d2914a5e93819c
 
Termination Time: 0
 
Application Path: C:\Windows\explorer.exe
 
Report Id: b41b96e1-fd3f-11e6-9bdd-f80f411de8dd
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
Error: (02/27/2017 05:45:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-LUMVVN2)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (02/27/2017 05:45:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-LUMVVN2)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (02/27/2017 05:45:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-LUMVVN2)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (02/26/2017 10:35:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-LUMVVN2)
Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (02/26/2017 10:04:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.14393.447, time stamp: 0x5819bf85
Faulting module name: twinapi.appcore.dll, version: 10.0.14393.206, time stamp: 0x57daca78
Exception code: 0xc000027b
Fault offset: 0x000000000006d1c4
Faulting process id: 0x2780
Faulting application start time: 0x01d290a63ee2cc02
Faulting application path: C:\windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Faulting module path: C:\Windows\System32\twinapi.appcore.dll
Report Id: 835500d1-4800-4a4e-a451-cf72ac5be3d2
Faulting package full name: Microsoft.Windows.ShellExperienceHost_10.0.14393.693_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: App
 
Error: (02/26/2017 10:04:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.14393.447, time stamp: 0x5819bf85
Faulting module name: twinapi.appcore.dll, version: 10.0.14393.206, time stamp: 0x57daca78
Exception code: 0xc000027b
Fault offset: 0x000000000006d1c4
Faulting process id: 0x2938
Faulting application start time: 0x01d290a63c6bdeca
Faulting application path: C:\windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Faulting module path: C:\Windows\System32\twinapi.appcore.dll
Report Id: a4afded6-153b-464a-9371-104d8162eea9
Faulting package full name: Microsoft.Windows.ShellExperienceHost_10.0.14393.693_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: App
 
 
System errors:
=============
Error: (02/27/2017 06:46:29 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:41:04 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:35:29 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:30:21 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:25:20 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:22:04 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:20:20 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:18:12 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:18:12 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
Error: (02/27/2017 06:18:12 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-LUMVVN2)
Description: Unable to start a DCOM Server: {D63B10C5-BB46-4990-A94F-E40B9D520160} as Unavailable/Unavailable. The error:
"87"
Happened while starting this command:
C:\Windows\System32\RuntimeBroker.exe -Embedding
 
 
==================== Memory info =========================== 
 
Processor: Pentium® Dual-Core CPU E5700 @ 3.00GHz
Percentage of memory in use: 65%
Total physical RAM: 3965.24 MB
Available physical RAM: 1383.64 MB
Total Virtual: 5353.15 MB
Available Virtual: 1872.43 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:294.62 GB) (Free:264.85 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: DB38935E)
Partition 1: (Active) - (Size=499 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=294.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=3 GB) - (Type=27)
 
==================== End of Addition.txt ============================
 
 
 
 
 
ECHO is on.
 
Image Name                     PID Session Name        Session#    Mem Usage Status          User Name                                              CPU Time Window Title                                                            
========================= ======== ================ =========== ============ =============== ================================================== ============ ========================================================================
System Idle Process              0 Services                   0          4 K Unknown         NT AUTHORITY\SYSTEM                                     0:12:21 N/A                                                                     
System                           4 Services                   0     10,492 K Unknown         N/A                                                     0:04:14 N/A                                                                     
smss.exe                       348 Services                   0        960 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
csrss.exe                      468 Services                   0      4,088 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:01 N/A                                                                     
wininit.exe                    556 Services                   0      4,628 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
services.exe                   644 Services                   0      6,132 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:03 N/A                                                                     
lsass.exe                      668 Services                   0     11,452 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:05 N/A                                                                     
svchost.exe                    776 Services                   0     19,720 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:13 N/A                                                                     
svchost.exe                    840 Services                   0     10,184 K Unknown         NT AUTHORITY\NETWORK SERVICE                            0:00:07 N/A                                                                     
svchost.exe                    336 Services                   0     42,664 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:41 N/A                                                                     
svchost.exe                    392 Services                   0     20,352 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:09 N/A                                                                     
svchost.exe                    420 Services                   0     67,488 K Unknown         NT AUTHORITY\SYSTEM                                     0:02:27 N/A                                                                     
svchost.exe                    504 Services                   0     19,140 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:06 N/A                                                                     
svchost.exe                   1116 Services                   0     18,872 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:06 N/A                                                                     
svchost.exe                   1288 Services                   0     19,372 K Unknown         NT AUTHORITY\NETWORK SERVICE                            0:00:22 N/A                                                                     
svchost.exe                   1404 Services                   0      8,880 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:09 N/A                                                                     
svchost.exe                   1496 Services                   0     11,236 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:00 N/A                                                                     
svchost.exe                   1596 Services                   0     12,732 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:01 N/A                                                                     
spoolsv.exe                   1712 Services                   0     11,116 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
OfficeClickToRun.exe          1956 Services                   0     23,396 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:01 N/A                                                                     
dataup.exe                    1964 Services                   0     10,456 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
svchost.exe                   1976 Services                   0     23,848 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:03 N/A                                                                     
HSMServiceEntry.exe           1988 Services                   0      8,324 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:24 N/A                                                                     
PassThruSvr.exe               2004 Services                   0      3,720 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
svchost.exe                   1424 Services                   0     18,456 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:05 N/A                                                                     
svchost.exe                   1452 Services                   0      6,948 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:00 N/A                                                                     
MsMpEng.exe                   1504 Services                   0     95,888 K Unknown         NT AUTHORITY\SYSTEM                                     0:12:05 N/A                                                                     
Memory Compression            2060 Services                   0     97,328 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:37 N/A                                                                     
NisSrv.exe                    2924 Services                   0     21,640 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:02:19 N/A                                                                     
SearchIndexer.exe             3636 Services                   0     26,740 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:09 N/A                                                                     
MpCmdRun.exe                  2536 Services                   0     10,848 K Unknown         NT AUTHORITY\NETWORK SERVICE                            0:00:00 N/A                                                                     
audiodg.exe                    848 Services                   0     13,680 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:01:33 N/A                                                                     
svchost.exe                   5896 Services                   0      6,368 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:00 N/A                                                                     
GoogleUpdate.exe               408 Services                   0        108 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
GoogleCrashHandler.exe        6368 Services                   0        108 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
GoogleCrashHandler64.exe      1796 Services                   0        172 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
dasHost.exe                   5284 Services                   0      3,940 K Unknown         NT AUTHORITY\LOCAL SERVICE                              0:00:00 N/A                                                                     
svchost.exe                   8044 Services                   0     18,040 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:47 N/A                                                                     
explorer.exe                  8552                            2          4 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
csrss.exe                     7220 Console                    3      5,324 K Running         NT AUTHORITY\SYSTEM                                     0:00:06 N/A                                                                     
winlogon.exe                  5840 Console                    3      6,600 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:00 N/A                                                                     
dwm.exe                       8204 Console                    3     56,188 K Running         Window Manager\DWM-3                                    0:00:46 DWM Notification Window                                                 
sihost.exe                     456 Console                    3     18,156 K Not Responding  DESKTOP-LUMVVN2\P-Dub                                   0:00:01 N/A                                                                     
svchost.exe                   8888 Console                    3     16,096 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
taskhostw.exe                  756 Console                    3     14,840 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 Task Host Window                                                        
explorer.exe                  3448 Console                    3     92,992 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:21 N/A                                                                     
cpx.exe                       7512 Console                    3     89,076 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:04:08 TASK - farahmariyam | Funny Or Die                                      
cpx.exe                       9164 Console                    3    121,284 K Not Responding  DESKTOP-LUMVVN2\P-Dub                                   0:02:37 AngleHiddenWindow                                                       
svcvmx.exe                    3872 Console                    3      7,736 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
cpx.exe                       7508 Console                    3    283,480 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:13:21 N/A                                                                     
ctfmon.exe                    8860 Console                    3      6,448 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
vmxclient.exe                 9136 Console                    3     75,372 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:04:19 client                                                                  
vmxclient.exe                 7416 Console                    3     82,356 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:01:36 AngleHiddenWindow                                                       
InstallAgent.exe             10108 Console                    3     11,316 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
InstallAgentUserBroker.ex     9680 Console                    3      9,828 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
chrome.exe                   18724 Console                    3     79,696 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:22 My Computer is Severely Infected - Page 2 - Virus, Spyware, Malware Remo
chrome.exe                   18696 Console                    3      7,012 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
chrome.exe                   18492 Console                    3      8,428 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
chrome.exe                   18736 Console                    3     63,572 K Not Responding  DESKTOP-LUMVVN2\P-Dub                                   0:00:05 AngleHiddenWindow                                                       
chrome.exe                   19560 Console                    3     62,904 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:07 N/A                                                                     
chrome.exe                   17184 Console                    3     70,256 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:09 N/A                                                                     
FRST64.exe                   19656 Console                    3     38,316 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:01:45 Farbar Recovery Scan Tool (x64) Version: 27-02-2017 01                  
vmxclient.exe                11284 Console                    3        116 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
notepad.exe                  20324 Console                    3     13,688 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 FRST.txt - Notepad                                                      
notepad.exe                  19092 Console                    3     13,028 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 Addition.txt - Notepad                                                  
dllhost.exe                  17444 Console                    3     11,020 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 OleMainThreadWndName                                                    
vmxclient.exe                18108 Console                    3    351,120 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:01:36 N/A                                                                     
ShellExperienceHost.exe      13900 Console                    3     48,708 K Not Responding  DESKTOP-LUMVVN2\P-Dub                                   0:00:06 Start                                                                   
backgroundTaskHost.exe       12700 Console                    3      9,988 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
WmiPrvSE.exe                 20272 Services                   0     30,128 K Unknown         NT AUTHORITY\SYSTEM                                     0:00:07 N/A                                                                     
WmiPrvSE.exe                  7184 Services                   0      9,604 K Unknown         NT AUTHORITY\NETWORK SERVICE                            0:00:00 N/A                                                                     
SearchUI.exe                 19856 Console                    3    140,564 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:07 Cortana                                                                 
cpx.exe                      20200 Console                    3    148,032 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:28 N/A                                                                     
smartscreen.exe              13448 Console                    3     14,644 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
vmxclient.exe                13216 Console                    3    126,052 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:17 N/A                                                                     
cpx.exe                       6228 Console                    3     12,668 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
cmd.exe                      13924 Console                    3      2,924 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 tasklist  /v                                                            
conhost.exe                  18344 Console                    3     11,396 K Running         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 CicMarshalWnd                                                           
vmxclient.exe                12884 Console                    3     59,700 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:02 N/A                                                                     
cpx.exe                      12712 Console                    3    110,716 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:03 N/A                                                                     
tasklist.exe                 20052 Console                    3      8,380 K Unknown         DESKTOP-LUMVVN2\P-Dub                                   0:00:00 N/A                                                                     
These Windows services are started:
 
   Application Information
   AppX Deployment Service (AppXSVC)
   Background Intelligent Transfer Service
   Background Tasks Infrastructure Service
   Base Filtering Engine
   CDPUserSvc_8a7c71
   CNG Key Isolation
   COM+ Event System
   Connected Devices Platform Service
   Connected User Experiences and Telemetry
   CoreMessaging
   Credential Manager
   Cryptographic Services
   Dataup Service
   DCOM Server Process Launcher
   Delivery Optimization
   Device Association Service
   DHCP Client
   Diagnostic Policy Service
   Diagnostic Service Host
   Diagnostic System Host
   Distributed Link Tracking Client
   DNS Client
   Geolocation Service
   HTCMonitorService
   Human Interface Device Service
   Internet Pass-Through Service
   IP Helper
   Local Session Manager
   Microsoft Office Click-to-Run Service
   Network Connection Broker
   Network Connections
   Network List Service
   Network Location Awareness
   Network Store Interface Service
   Plug and Play
   Power
   Print Spooler
   Program Compatibility Assistant Service
   Remote Procedure Call (RPC)
   RPC Endpoint Mapper
   Security Accounts Manager
   Security Center
   Server
   Shell Hardware Detection
   SSDP Discovery
   State Repository Service
   Storage Service
   Superfetch
   Sync Host_8a7c71
   System Event Notification Service
   System Events Broker
   Task Scheduler
   TCP/IP NetBIOS Helper
   Themes
   Tile Data model server
   Time Broker
   User Manager
   User Profile Service
   Windows Audio
   Windows Audio Endpoint Builder
   Windows Connection Manager
   Windows Defender Network Inspection Service
   Windows Defender Service
   Windows Driver Foundation - User-mode Driver Framework
   Windows Event Log
   Windows Firewall
   Windows Font Cache Service
   Windows Image Acquisition (WIA)
   Windows License Manager Service
   Windows Management Instrumentation
   Windows Push Notifications System Service
   Windows Search
   Windows Update
   WinHTTP Web Proxy Auto-Discovery Service
   WLAN AutoConfig
   Workstation
 
The command completed successfully.
 
 
 
 

  • 0

#27
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts
Next

Please boot into safemode with networking.
To do that:
4 ways to boot into safe mode for Windows 10. See link below:
http://www.digitalci...mode-windows-10

Once in safe mode open the task manager, show processes for all users. In the process list look for these processes running:
dataup.exe
cpx.exe
svcvmx.exe
vmxclient.exe

There may be more then one of each stop them all if found by right clicking on them and choosing end process.

That's the malware running you can see it in the task manager list that you posted for me. There's a chance you may not see them in safe mode. If not go ahead and run the fixlist as outlined below:

Then
Always right click on FRST and choose "Run as administrator"

Download the enclosed => file.Attached File  fixlist.txt   2.62KB   39 downloads Save it in the location FRST64 is. Run FRST and click on the Fix button. Wait until finished.
The tool will make a log in the location FRST is, (Fixlog.txt). Please post it to your reply.

Then
Run adwcleaner in safe mode too, get me the log from that.
Run junk removal tool while in safemode need the log
See if Malwarebytes will run too.

Thanks
Joe :)
  • 0

#28
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Fix result of Farbar Recovery Scan Tool (x64) Version: 27-02-2017 01
Ran by P-Dub (27-02-2017 22:26:31) Run:2
Running from C:\Users\P-Dub\Desktop
Loaded Profiles: P-Dub (Available Profiles: defaultuser0 & P-Dub)
Boot Mode: Safe Mode (minimal)
==============================================

fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:
Unlock: C:\windows\System32\drivers\drmkpro64.sys
Unlock: C:\Program Files (x86)\qdcomsvc
Unlock: C:\Program Files (x86)\dataup
Unlock: C:\Program Files (x86)\dataup\dataup.exe
Unlock: C:\Program Files (x86)\cpx\cpx.exe
Unlock: C:\Program Files (x86)\cpx
Unlock: C:\Program Files (x86)\svcvmx\svcvmx.exe
Unlock: C:\Program Files (x86)\svcvmx\vmxclient.exe
unlock: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cpx
reg: reg delete "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cpx" /f
unlock: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx
reg: reg delete "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx" /f
unlock: HKLM\SYSTEM\CurrentControlSet\services\Dataup
reg: reg delete "HKLM\SYSTEM\CurrentControlSet\services\Dataup" /f
unlock: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\windowsmanagementservice
reg: reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\windowsmanagementservice" /f
HKLM-x32\...\Run: [cpx] => C:\Program Files (x86)\cpx\cpx.exe [649216 2017-01-05] () <===== ATTENTION
HKLM-x32\...\Run: [svcvmx] => C:\Program Files (x86)\svcvmx\svcvmx.exe [896512 2017-01-13] ()
R2 Dataup; C:\Program Files (x86)\dataup\dataup.exe [77824 2017-01-05] () [File not signed] <==== ATTENTION
S2 qdcomsvc; "C:\Program Files (x86)\qdcomsvc\qdcomsvc.exe" /svc [X] <==== ATTENTION
S2 windowsmanagementservice; C:\Users\P-Dub\AppData\Local\Temp\20170220\ct.exe [X] <==== ATTENTION <==== ATTENTION
R1 drmkpro64; C:\windows\System32\drivers\drmkpro64.sys [53832 2012-01-31] () [File not signed] <==== ATTENTION
C:\Users\P-Dub\AppData\Local\cpx
C:\Program Files (x86)\cpx
C:\Program Files (x86)\svcvmx
C:\Users\P-Dub\AppData\Local\llssoft
C:\Users\P-Dub\AppData\Local\CEF
C:\windows\TEMPcoral.vbs
C:\Program Files (x86)\dataup
C:\Users\P-Dub\AppData\Roaming\c
C:\Users\P-Dub\AppData\Local\Temp\20170220\ct.exe
C:\Program Files (x86)\qdcomsvc\qdcomsvc.exe" /svc
C:\Program Files (x86)\qdcomsvc
C:\windows\System32\drivers\drmkpro64.sys
C:\Program Files (x86)\winscr
C:\Program Files (x86)\svcvmx\libcef.dll
C:\Program Files (x86)\svcvmx\libglesv2.dll
C:\Program Files (x86)\svcvmx\libegl.dll
C:\Program Files (x86)\svcvmx\pepflashplayer.dll
C:\Program Files (x86)\cpx\libcef.dll
C:\Program Files (x86)\cpx\core.dll
C:\Program Files (x86)\cpx\libglesv2.dll
C:\Program Files (x86)\cpx\libegl.dll
C:\Program Files (x86)\cpx\PepperFlash\pepflashplayer.dll
C:\Program Files (x86)\dataup\help_dll.dll
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
RemoveProxy:
hosts:
Emptytemp:
*****************

Processes closed successfully.
Error: Restore point can only be created in normal mode.
"C:\windows\System32\drivers\drmkpro64.sys" => was unlocked
"C:\Program Files (x86)\qdcomsvc" => not found.
"C:\Program Files (x86)\dataup" => was unlocked
"C:\Program Files (x86)\dataup\dataup.exe" => was unlocked
"C:\Program Files (x86)\cpx\cpx.exe" => was unlocked
"C:\Program Files (x86)\cpx" => was unlocked
"C:\Program Files (x86)\svcvmx\svcvmx.exe" => was unlocked
"C:\Program Files (x86)\svcvmx\vmxclient.exe" => was unlocked
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cpx" => key could not be unlocked

========= reg delete "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\cpx" /f =========

ERROR: Invalid key name.
Type "REG DELETE /?" for usage.


========= End of Reg: =========

"HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx" => key could not be unlocked

========= reg delete "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx" /f =========

ERROR: Invalid key name.
Type "REG DELETE /?" for usage.


========= End of Reg: =========

"HKLM\SYSTEM\CurrentControlSet\services\Dataup" => key was unlocked

========= reg delete "HKLM\SYSTEM\CurrentControlSet\services\Dataup" /f =========

The operation completed successfully.



========= End of Reg: =========

"HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\windowsmanagementservice" => key was unlocked

========= reg delete "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\windowsmanagementservice" /f =========

The operation completed successfully.



========= End of Reg: =========

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\cpx => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\svcvmx => value removed successfully
Dataup => service not found.
HKLM\System\CurrentControlSet\Services\qdcomsvc => key removed successfully
qdcomsvc => service removed successfully
windowsmanagementservice => service not found.
HKLM\System\CurrentControlSet\Services\drmkpro64 => key removed successfully
drmkpro64 => service removed successfully
C:\Users\P-Dub\AppData\Local\cpx => moved successfully
C:\Program Files (x86)\cpx => moved successfully
C:\Program Files (x86)\svcvmx => moved successfully
C:\Users\P-Dub\AppData\Local\llssoft => moved successfully
C:\Users\P-Dub\AppData\Local\CEF => moved successfully
C:\windows\TEMPcoral.vbs => moved successfully
C:\Program Files (x86)\dataup => moved successfully
C:\Users\P-Dub\AppData\Roaming\c => moved successfully
"C:\Users\P-Dub\AppData\Local\Temp\20170220\ct.exe" => not found.
"C:\Program Files (x86)\qdcomsvc\qdcomsvc.exe /svc" => not found.
"C:\Program Files (x86)\qdcomsvc" => not found.
C:\windows\System32\drivers\drmkpro64.sys => moved successfully
C:\Program Files (x86)\winscr => moved successfully
"C:\Program Files (x86)\svcvmx\libcef.dll" => not found.
"C:\Program Files (x86)\svcvmx\libglesv2.dll" => not found.
"C:\Program Files (x86)\svcvmx\libegl.dll" => not found.
"C:\Program Files (x86)\svcvmx\pepflashplayer.dll" => not found.
"C:\Program Files (x86)\cpx\libcef.dll" => not found.
"C:\Program Files (x86)\cpx\core.dll" => not found.
"C:\Program Files (x86)\cpx\libglesv2.dll" => not found.
"C:\Program Files (x86)\cpx\libegl.dll" => not found.
"C:\Program Files (x86)\cpx\PepperFlash\pepflashplayer.dll" => not found.
"C:\Program Files (x86)\dataup\help_dll.dll" => not found.

========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to connect to BITS - 0x8007043c
This service cannot be started in Safe Mode



========= End of CMD: =========


========= netsh winsock reset catalog =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========


========= ipconfig /flushdns =========


Windows IP Configuration

Could not flush the DNS Resolver Cache: Function failed during execution.


========= End of CMD: =========


========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-1578420096-1607769468-3208362581-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-1578420096-1607769468-3208362581-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


========= End of RemoveProxy: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7385237 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 4629330 B
Edge => 19456 B
Chrome => 48434179 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 18658 B
defaultuser0 => 0 B
P-Dub => 93364731 B

RecycleBin => 4783870 B
EmptyTemp: => 151.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 22:27:13 ====

 

 

 

# AdwCleaner v6.043 - Logfile created 27/02/2017 at 22:31:47
# Updated on 27/01/2017 by Malwarebytes
# Database : 2017-02-20.3 [Local]
# Operating System : Windows 10 Home  (X64)
# Username : P-Dub - DESKTOP-LUMVVN2
# Running from : C:\Users\P-Dub\Desktop\adwcleaner_6.043.exe
# Mode: Scan
# Support : https://www.malwarebytes.com/support



***** [ Services ] *****

No malicious services found.


***** [ Folders ] *****

No malicious folders found.


***** [ Files ] *****

No malicious files found.


***** [ DLL ] *****

No malicious DLLs found.


***** [ WMI ] *****

No malicious keys found.


***** [ Shortcuts ] *****

No infected shortcut found.


***** [ Scheduled Tasks ] *****

No malicious task found.


***** [ Registry ] *****

Key Found:  HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Dataup
Key Found:  [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Dataup
Value Found:  [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [cpx]


***** [ Web browsers ] *****

No malicious Firefox based browser items found.
No malicious Chromium based browser items found.

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1898 Bytes] - [21/02/2017 23:08:26]
C:\AdwCleaner\AdwCleaner[S0].txt - [1788 Bytes] - [21/02/2017 23:01:23]
C:\AdwCleaner\AdwCleaner[S1].txt - [1367 Bytes] - [27/02/2017 22:31:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1440 Bytes] ##########
 

 

 

 

# AdwCleaner v6.043 - Logfile created 27/02/2017 at 22:40:01
# Updated on 27/01/2017 by Malwarebytes
# Database : 2017-02-20.3 [Local]
# Operating System : Windows 10 Home  (X64)
# Username : P-Dub - DESKTOP-LUMVVN2
# Running from : C:\Users\P-Dub\Desktop\adwcleaner_6.043.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support



***** [ Services ] *****



***** [ Folders ] *****



***** [ Files ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Shortcuts ] *****



***** [ Scheduled Tasks ] *****



***** [ Registry ] *****

[-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Dataup
[#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Dataup
[-] Value deleted: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [cpx]


***** [ Web browsers ] *****



*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1898 Bytes] - [21/02/2017 23:08:26]
C:\AdwCleaner\AdwCleaner[C2].txt - [1117 Bytes] - [27/02/2017 22:40:01]
C:\AdwCleaner\AdwCleaner[S0].txt - [1788 Bytes] - [21/02/2017 23:01:23]
C:\AdwCleaner\AdwCleaner[S1].txt - [1527 Bytes] - [27/02/2017 22:31:47]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1336 Bytes] ##########
 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 10 Home x64
Ran by P-Dub (Limited) on Mon 02/27/2017 at 22:44:59.99
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mon 02/27/2017 at 22:46:00.04
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


  • 0

#29
Puppywhirl

Puppywhirl

    Member

  • Topic Starter
  • Member
  • PipPip
  • 25 posts

Also, Malwarebytes has a new error message, couldn't find service. I suppose that is promising (But that also means I didn't operate the correct safemode.. opps)


  • 0

#30
zep516

zep516

    Trusted Helper

  • Malware Removal
  • 6,791 posts
Hello,

Re: Malwarebytes you got the error in safe mode ?

Lets see what's left.

Re-run Farbar Recovery Scan Tool (FRST/FRST64) you ran at the very beginning of this topic.
  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Make sure you checkmark Addition.txt box.
  • Press Scan button.
  • Scan will create two logs, FRST.txt and Addition.txt in the same directory the tool is run. Please copy and paste them to your reply.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP