Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Internet extremely slow/failed to respond errors


  • Please log in to reply

#1
skandranon1971

skandranon1971

    Member

  • Member
  • PipPip
  • 64 posts

Hello,

 

I recently bought this refurbished laptop and it has gotten extremely slow to open internet pages or gets "failed to respond" messages on any page I try to open.

 

Here are the logs from FRST:

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-03-2017
Ran by Skand (administrator) on DESKTOP-NLA9JFV (14-03-2017 19:21:41)
Running from C:\Users\Skand\Desktop
Loaded Profiles: Skand (Available Profiles: defaultuser0 & Skand)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.SmartMonitor.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4500 series\Bin\ScanToPCActivationApp.exe
(Spotify Ltd) C:\Users\Skand\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Facebook) C:\Users\Skand\AppData\Local\Facebook\Games\FacebookGameroom.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(The CefSharp Authors) C:\Users\Skand\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
 
==================== Registry (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2096424 2010-05-27] (Synaptics Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-09] (AVAST Software)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Run: [HP ENVY 4500 series (NET)] => C:\Program Files\HP\HP ENVY 4500 series\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Run: [Spotify Web Helper] => C:\Users\Skand\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000 2017-02-22] (Spotify Ltd)
HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Run: [Spotify] => C:\Users\Skand\AppData\Roaming\Spotify\Spotify.exe [7067760 2017-02-22] (Spotify Ltd)
HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9363672 2017-02-07] (Piriform Ltd)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
SSODL: EldosMountNotificator-cbfs6 - {7FFA333D-C50A-41CF-B82D-CA7F90F87B5C} - C:\windows\system32\cbfsMntNtf6.dll (/n software, Inc.)
SSODL-x32: EldosMountNotificator-cbfs6 - {7FFA333D-C50A-41CF-B82D-CA7F90F87B5C} - C:\windows\SysWOW64\cbfsMntNtf6.dll (/n software, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-09] (AVAST Software)
ShellIconOverlayIdentifiers: [EldosIconOverlay-cbfs6] -> {08CD45B4-2BBE-4624-B6BE-B9BF6E277788} => C:\windows\system32\cbfsMntNtf6.dll [2016-08-03] (/n software, Inc.)
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay-cbfs6] -> {08CD45B4-2BBE-4624-B6BE-B9BF6E277788} => C:\windows\SysWOW64\cbfsMntNtf6.dll [2016-08-03] (/n software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-03-10]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-03-12]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Skand\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Hosts: 0.0.0.1 mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 68.105.28.11 68.105.29.11 68.105.28.12
Tcpip\..\Interfaces\{0ccbdf35-77e1-4ac7-bdf6-2572faf57f08}: [DhcpNameServer] 209.222.18.222 209.222.18.218
Tcpip\..\Interfaces\{6efc347d-6124-496e-95ab-a14ddab012e6}: [DhcpNameServer] 10.0.0.10
Tcpip\..\Interfaces\{97e153f1-a98f-4f6a-93c1-8e7cc9940a39}: [DhcpNameServer] 68.105.28.11 68.105.29.11 68.105.28.12
Tcpip\..\Interfaces\{f9fc4226-acff-4981-9ab9-6e0ccc95c934}: [DhcpNameServer] 192.168.9.10 192.168.10.10 192.168.2.1 192.168.7.10 192.168.11.10 192.168.8.10 192.168.12.10
 
Internet Explorer:
==================
HKU\S-1-5-21-667472850-572182410-979922198-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell13.msn.com/?pc=DCJB
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-01-29] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-01-29] (Microsoft Corporation)
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security)
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-01-29] (Microsoft Corporation)
 
FireFox:
========
FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-01-29] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-02-18] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default [2017-03-14]
CHR Extension: (Google Slides) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-02-18]
CHR Extension: (Google Docs) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-02-18]
CHR Extension: (Google Drive) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-02-18]
CHR Extension: (YouTube) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-18]
CHR Extension: (eBay) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnadbgmffcofipfljniafanjcafjlbom [2017-02-18]
CHR Extension: (Word Search) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnjkggjhcbohgnikmegjkodmakmimlkj [2017-02-18]
CHR Extension: (Adobe Acrobat) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-03]
CHR Extension: (Avast SafePrice) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-10]
CHR Extension: (Google Sheets) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-02-18]
CHR Extension: (Google Docs Offline) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-02-18]
CHR Extension: (Avast Online Security) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-03-09]
CHR Extension: (Personal Trainer) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmgohkgndpahjklgpdihieeedjeneoke [2017-02-18]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-08]
CHR Extension: (Gmail) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-02-18]
CHR Extension: (Chrome Media Router) - C:\Users\Skand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-18]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-09] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-09] (AVAST Software)
S3 becldr3Service; C:\Program Files\BCL Technologies\easyConverter SDK 3\Common\becldr.exe [263168 2013-07-03] () [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3704520 2017-02-18] (Microsoft Corporation)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.500\McCHSvc.exe [329480 2017-01-18] (McAfee, Inc.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800 2017-01-05] (McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16248 2017-01-05] (McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2017-01-05] (McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [672208 2017-02-02] (Wacom Technology, Corp.)
S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe -originalversion 4.4.127.0 [X]
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 aswbidsdriver; C:\windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-09] (AVAST Software s.r.o.)
R0 aswbidsh; C:\windows\system32\drivers\aswbidsha.sys [189768 2017-03-09] (AVAST Software s.r.o.)
R0 aswblog; C:\windows\system32\drivers\aswbloga.sys [334600 2017-03-09] (AVAST Software s.r.o.)
R0 aswbuniv; C:\windows\system32\drivers\aswbuniva.sys [48528 2017-03-09] (AVAST Software s.r.o.)
S3 aswHwid; C:\windows\system32\drivers\aswHwid.sys [38296 2017-03-09] (AVAST Software)
R1 aswKbd; C:\windows\system32\drivers\aswKbd.sys [32088 2017-03-09] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [126600 2017-03-09] (AVAST Software)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [100640 2017-03-09] (AVAST Software)
R0 aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [75704 2017-03-09] (AVAST Software)
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [993608 2017-03-09] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [548928 2017-03-10] (AVAST Software)
R2 aswStm; C:\windows\system32\drivers\aswStm.sys [162528 2017-03-09] (AVAST Software)
R0 aswVmm; C:\windows\system32\drivers\aswVmm.sys [337592 2017-03-14] (AVAST Software)
R1 cbfs6; C:\windows\system32\drivers\cbfs6.sys [460992 2016-08-03] (/n software, Inc.)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [77408 2017-02-24] ()
R2 MBAMChameleon; C:\windows\system32\drivers\MBAMChameleon.sys [186304 2017-03-14] (Malwarebytes)
R3 MBAMFarflt; C:\windows\system32\drivers\farflt.sys [111544 2017-03-14] (Malwarebytes)
S3 MBAMProtection; C:\windows\system32\drivers\mbam.sys [43968 2017-03-14] (Malwarebytes)
R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [251840 2017-03-14] (Malwarebytes)
R3 MBAMWebProtection; C:\windows\system32\drivers\mwac.sys [92088 2017-03-14] (Malwarebytes)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNe64; C:\windows\System32\drivers\NETwew01.sys [3343872 2016-07-16] (Intel Corporation)
R3 RICOH SmartCard Reader; C:\windows\system32\DRIVERS\rismcx64.sys [79488 2006-10-02] (RICOH Company, Ltd.)
R3 vpnpbus; C:\windows\System32\drivers\vpnpbus.sys [18624 2016-08-03] (/n software, Inc.)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-03-14 19:21 - 2017-03-14 19:22 - 00019229 _____ C:\Users\Skand\Desktop\FRST.txt
2017-03-14 19:21 - 2017-03-14 19:21 - 00000000 ____D C:\FRST
2017-03-14 19:18 - 2017-03-14 19:21 - 02424832 _____ (Farbar) C:\Users\Skand\Desktop\FRST64.exe
2017-03-14 14:08 - 2017-03-14 14:08 - 01324075 _____ C:\Users\Skand\Desktop\Zach - Weebly ELA - Week 20a,b,c,d Homework.pdf
2017-03-14 13:11 - 2017-03-14 13:11 - 00311708 _____ C:\Users\Skand\Desktop\Zach - Weebly ELA - Week 19b Homework.pdf
2017-03-14 13:02 - 2017-03-14 13:02 - 00273418 _____ C:\Users\Skand\Desktop\Zach - Weebly ELA - Week 19 Homework.pdf
2017-03-14 09:14 - 2017-03-14 09:14 - 00010735 _____ C:\Users\Skand\Downloads\meeting (1).collab
2017-03-14 08:25 - 2017-03-14 08:25 - 00010735 _____ C:\Users\Skand\Downloads\meeting.collab
2017-03-13 22:54 - 2017-03-13 22:54 - 00023248 _____ C:\Users\Skand\Desktop\Zach - Art - Unit 7, Lesson 1b.pdf
2017-03-13 22:53 - 2017-03-13 22:53 - 00016551 _____ C:\Users\Skand\Desktop\Zach - Art - Unit 7, Lesson 1.pdf
2017-03-13 21:48 - 2017-03-13 21:48 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-03-13 16:33 - 2017-03-13 16:33 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablet
2017-03-13 16:27 - 2017-03-13 16:28 - 76565008 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.20-7 (1).exe
2017-03-13 16:17 - 2017-03-13 16:18 - 76912576 _____ C:\Users\Skand\Downloads\Unconfirmed 936630.crdownload
2017-03-13 16:17 - 2017-03-13 16:17 - 00000000 ____D C:\Users\Skand\AppData\Roaming\CELSYS
2017-03-13 16:13 - 2017-03-13 16:13 - 00000000 ____D C:\Users\Skand\OneDrive\Documents\CELSYS_EN
2017-03-13 16:13 - 2017-03-13 16:13 - 00000000 ____D C:\Users\Skand\AppData\Roaming\CELSYS_EN
2017-03-13 14:55 - 2017-03-13 14:57 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (7).exe
2017-03-13 14:55 - 2017-03-13 14:57 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (6).exe
2017-03-13 14:54 - 2017-03-13 14:57 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (5).exe
2017-03-13 14:54 - 2017-03-13 14:57 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (4).exe
2017-03-13 14:54 - 2017-03-13 14:57 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (3).exe
2017-03-13 14:47 - 2017-03-13 14:49 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (2).exe
2017-03-13 14:47 - 2017-03-13 14:48 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3 (1).exe
2017-03-13 14:36 - 2017-03-13 14:36 - 00000849 _____ C:\Users\Public\Desktop\CLIP STUDIO PAINT (64bit).lnk
2017-03-13 14:36 - 2017-03-13 14:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CLIP STUDIO
2017-03-13 14:36 - 2017-03-13 14:36 - 00000000 ____D C:\ProgramData\CELSYS_EN
2017-03-13 14:36 - 2017-03-13 14:36 - 00000000 ____D C:\Program Files\CELSYS
2017-03-13 14:30 - 2017-03-13 14:31 - 00000000 ____D C:\Users\Skand\AppData\Roaming\WTablet
2017-03-13 14:18 - 2017-03-13 14:18 - 00000000 ____D C:\Program Files\TabletPlugins
2017-03-13 14:18 - 2017-03-13 14:18 - 00000000 ____D C:\Program Files (x86)\TabletPlugins
2017-03-13 14:16 - 2016-08-03 16:00 - 00235424 _____ (/n software, Inc.) C:\windows\SysWOW64\cbfsNetRdr6.dll
2017-03-13 14:16 - 2016-08-03 16:00 - 00134560 _____ (/n software, Inc.) C:\windows\system32\cbfsNetRdr6.dll
2017-03-13 14:16 - 2016-08-03 15:59 - 00196000 _____ (/n software, Inc.) C:\windows\system32\cbfsMntNtf6.dll
2017-03-13 14:16 - 2016-08-03 15:59 - 00170400 _____ (/n software, Inc.) C:\windows\SysWOW64\cbfsMntNtf6.dll
2017-03-13 14:16 - 2016-08-03 15:48 - 00460992 _____ (/n software, Inc.) C:\windows\system32\Drivers\cbfs6.sys
2017-03-13 14:15 - 2017-03-13 14:19 - 01058032 _____ (Amazon Services LLC) C:\Users\Skand\Downloads\CLIP_STUDIO_PAINT_PRO_Downloader (1).exe
2017-03-13 14:15 - 2016-08-03 16:01 - 00018848 _____ (/n software, Inc.) C:\windows\system32\elevtmsg.dll
2017-03-13 14:15 - 2016-08-03 15:48 - 00018624 _____ (/n software, Inc.) C:\windows\system32\Drivers\vpnpbus.sys
2017-03-13 14:13 - 2017-03-13 16:30 - 00000000 ____D C:\Program Files\Tablet
2017-03-13 14:13 - 2017-02-02 17:01 - 02274256 _____ (Wacom Technology, Corp.) C:\windows\system32\Wacom_Tablet.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 02267600 _____ (Wacom Technology, Corp.) C:\windows\system32\Wacom_Touch_Tablet.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 02173392 _____ (Wacom Technology, Corp.) C:\windows\system32\WacomMT.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 02111952 _____ (Wacom Technology, Corp.) C:\windows\system32\Wintab32.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 01787856 _____ (Wacom Technology, Corp.) C:\windows\SysWOW64\Wacom_Tablet.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 01781200 _____ (Wacom Technology, Corp.) C:\windows\SysWOW64\Wacom_Touch_Tablet.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 01673168 _____ (Wacom Technology, Corp.) C:\windows\SysWOW64\WacomMT.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 01632720 _____ (Wacom Technology, Corp.) C:\windows\SysWOW64\Wintab32.dll
2017-03-13 14:04 - 2017-03-13 14:26 - 00000000 ____D C:\Users\Skand\Desktop\CLIP STUDIO PAINT PRO (Download)
2017-03-13 14:04 - 2017-03-13 14:19 - 00000000 ____D C:\Users\Skand\OneDrive\Documents\Amazon Downloader Logs
2017-03-13 14:04 - 2017-03-13 14:07 - 76565008 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.20-7.exe
2017-03-13 14:00 - 2017-03-13 14:04 - 01058032 _____ (Amazon Services LLC) C:\Users\Skand\Downloads\CLIP_STUDIO_PAINT_PRO_Downloader.exe
2017-03-13 13:59 - 2017-03-13 14:00 - 76912576 _____ C:\Users\Skand\Downloads\WacomTablet_6.3.21-3.exe
2017-03-12 15:26 - 2017-03-12 22:05 - 00019957 _____ C:\Users\Skand\Desktop\Zach ELA.xlsx
2017-03-12 14:53 - 2017-03-12 14:53 - 00000000 ___HD C:\OneDriveTemp
2017-03-11 18:55 - 2017-03-11 18:55 - 00009108 _____ C:\Users\Skand\Downloads\Checking1 (1).qfx
2017-03-11 18:27 - 2017-03-11 20:16 - 00035831 _____ C:\Users\Skand\Desktop\Wells Fargo Guild Checking Account Statements.xlsx
2017-03-11 18:05 - 2017-03-11 18:05 - 00007869 _____ C:\Users\Skand\OneDrive\Documents\BD409500
2017-03-11 17:14 - 2017-03-11 17:14 - 00000218 _____ C:\Users\Skand\AppData\Local\recently-used.xbel
2017-03-11 17:12 - 2017-03-11 17:12 - 00001464 _____ C:\Users\Skand\Downloads\Checking1 (17).csv
2017-03-11 17:12 - 2017-03-11 17:12 - 00000569 _____ C:\Users\Skand\Downloads\Checking1 (16).csv
2017-03-11 17:11 - 2017-03-11 17:11 - 00000296 _____ C:\Users\Skand\Downloads\Checking1 (15).csv
2017-03-11 17:10 - 2017-03-11 17:10 - 00000305 _____ C:\Users\Skand\Downloads\Checking1 (14).csv
2017-03-11 17:09 - 2017-03-11 17:09 - 00000305 _____ C:\Users\Skand\Downloads\Checking1 (13).csv
2017-03-11 17:08 - 2017-03-11 17:08 - 00000422 _____ C:\Users\Skand\Downloads\Checking1 (12).csv
2017-03-11 17:08 - 2017-03-11 17:08 - 00000307 _____ C:\Users\Skand\Downloads\Checking1 (11).csv
2017-03-11 17:05 - 2017-03-11 17:05 - 00000676 _____ C:\Users\Skand\Downloads\Checking1 (10).csv
2017-03-11 17:03 - 2017-03-11 17:03 - 00000178 _____ C:\Users\Skand\Downloads\Checking1 (9).csv
2017-03-11 17:01 - 2017-03-11 17:01 - 00000676 _____ C:\Users\Skand\Downloads\Checking1 (7).csv
2017-03-11 17:01 - 2017-03-11 17:01 - 00000178 _____ C:\Users\Skand\Downloads\Checking1 (8).csv
2017-03-11 17:00 - 2017-03-11 17:00 - 00000182 _____ C:\Users\Skand\Downloads\Checking1 (6).csv
2017-03-11 16:59 - 2017-03-11 16:59 - 00000639 _____ C:\Users\Skand\Downloads\Checking1 (5).csv
2017-03-11 16:59 - 2017-03-11 16:59 - 00000177 _____ C:\Users\Skand\Downloads\Checking1 (4).csv
2017-03-11 16:58 - 2017-03-11 16:58 - 00000188 _____ C:\Users\Skand\Downloads\Checking1 (3).csv
2017-03-11 16:57 - 2017-03-11 16:57 - 00000414 _____ C:\Users\Skand\Downloads\Checking1 (2).csv
2017-03-11 16:56 - 2017-03-11 16:56 - 00000317 _____ C:\Users\Skand\Downloads\Checking1 (1).csv
2017-03-11 16:54 - 2017-03-11 16:54 - 00000192 _____ C:\Users\Skand\Downloads\Checking1.csv
2017-03-11 16:53 - 2017-03-11 16:54 - 00001419 _____ C:\Users\Skand\Downloads\Checking1.qfx
2017-03-11 16:03 - 2017-03-11 16:13 - 00000000 ____D C:\Users\Skand\Downloads\USS.Indianapolis.Men.of.Courage.2016.720p.BRRip.x264.AAC-ETRG
2017-03-11 15:59 - 2017-03-11 15:59 - 00020510 _____ C:\Users\Skand\Downloads\2F4DE224BCB6DE09BC96CBC4AD35F777A8B46DEB.torrent
2017-03-10 19:40 - 2017-03-10 19:40 - 00000000 ____D C:\Users\Skand\Downloads\The Complete Grimm's Fairy Tales - Jacob and Wilhelm Grimm
2017-03-10 19:39 - 2017-03-10 19:39 - 00019666 _____ C:\Users\Skand\Downloads\[limetorrents.cc]The.Complete.Grimms.Fairy.Tales.-.Jacob.and.Wilhelm.Grimm.torrent
2017-03-10 18:51 - 2017-03-10 22:08 - 00000000 ____D C:\Users\Skand\Downloads\The.Last.Of.The.Mohicans.1992.Dir.Def.Cut.1080p.BluRay.AAC.x264-ETRG
2017-03-10 18:50 - 2017-03-10 18:50 - 00042259 _____ C:\Users\Skand\Downloads\[limetorrents.cc]The.Last.Of.The.Mohicans.1992.Dir.Def.Cut.1080p.BluRay.AAC.x264-ETRG.torrent
2017-03-10 17:20 - 2017-03-10 17:20 - 00184536 _____ C:\Users\Skand\Downloads\[limetorrents.cc]Doctor.Who.Season.1-9.480p.torrent
2017-03-10 17:07 - 2017-03-10 17:07 - 00000000 ____D C:\Users\Skand\Downloads\Dr Who season 1-26 (240x160)
2017-03-10 16:36 - 2017-03-10 16:36 - 00122888 _____ C:\Users\Skand\Downloads\[zooqle.com] Dr Who season 1-26 (240x160).torrent
2017-03-10 16:32 - 2017-03-10 16:32 - 00100332 _____ C:\Users\Skand\Downloads\[limetorrents.cc]Doctor.Who.2005.Season.1-6.torrent
2017-03-10 13:41 - 2017-03-10 13:41 - 00002016 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2017-03-10 13:41 - 2017-03-10 13:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2017-03-10 13:40 - 2017-03-10 13:40 - 00000000 ____D C:\Program Files\McAfee Security Scan
2017-03-10 13:24 - 2017-03-10 13:24 - 00000000 ____D C:\ProgramData\TrueKey
2017-03-10 13:23 - 2017-03-12 21:40 - 00000000 ____D C:\Users\Skand\AppData\Local\tkdata
2017-03-10 13:23 - 2017-03-12 12:05 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Key.lnk
2017-03-10 13:23 - 2017-03-10 13:23 - 00001232 _____ C:\Users\Public\Desktop\True Key.lnk
2017-03-10 13:23 - 2017-03-10 13:23 - 00000000 ____D C:\Program Files\Common Files\Intel
2017-03-10 13:21 - 2017-03-10 13:21 - 00000000 ____D C:\Program Files\Intel Security
2017-03-10 13:18 - 2017-03-12 13:31 - 00000000 ____D C:\Program Files (x86)\McAfee
2017-03-10 13:18 - 2017-03-10 13:18 - 00000000 ____D C:\Program Files\Common Files\McAfee
2017-03-10 13:09 - 2017-03-12 13:31 - 00000000 ____D C:\Program Files\TrueKey
2017-03-10 13:09 - 2017-03-12 12:06 - 00000000 ____D C:\ProgramData\McAfee
2017-03-10 13:09 - 2017-03-10 13:53 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2017-03-10 13:09 - 2017-03-10 13:09 - 00003806 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2017-03-10 13:09 - 2017-03-10 13:09 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2017-03-09 18:03 - 2017-03-09 18:03 - 00345137 _____ C:\Users\Skand\Downloads\Zach - Math - Week 26 - Assignment  Revised.pdf
2017-03-09 18:03 - 2017-03-09 18:03 - 00345137 _____ C:\Users\Skand\Downloads\Zach - Math - Week 26 - Assignment  Revised (1).pdf
2017-03-09 13:18 - 2017-03-14 19:01 - 00251840 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2017-03-09 13:18 - 2017-03-14 19:01 - 00186304 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMChameleon.sys
2017-03-09 13:18 - 2017-03-14 19:01 - 00111544 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2017-03-09 13:18 - 2017-03-14 19:01 - 00092088 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2017-03-09 13:18 - 2017-03-14 19:01 - 00043968 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2017-03-09 13:18 - 2017-03-09 13:18 - 00001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-03-09 13:18 - 2017-03-09 13:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-03-09 13:18 - 2017-02-24 07:23 - 00077408 _____ C:\windows\system32\Drivers\mbae64.sys
2017-03-09 13:17 - 2017-03-09 13:17 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-03-09 13:17 - 2017-03-09 13:17 - 00000000 ____D C:\Program Files\Malwarebytes
2017-03-09 13:16 - 2017-03-09 13:17 - 57131432 _____ (Malwarebytes ) C:\Users\Skand\Downloads\mb3-setup-consumer-3.0.6.1469-1075.exe
2017-03-09 10:24 - 2017-03-10 10:49 - 00004022 _____ C:\windows\System32\Tasks\SafeZone scheduled Autoupdate 1489080247
2017-03-09 10:24 - 2017-03-10 10:49 - 00001095 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-03-09 10:23 - 2017-03-09 10:23 - 00032088 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys
2017-03-09 10:17 - 2017-03-09 10:17 - 00000000 ____D C:\Users\Skand\AppData\Roaming\AVAST Software
2017-03-09 10:16 - 2017-03-10 13:18 - 00000000 ____D C:\Program Files\Common Files\AV
2017-03-09 10:16 - 2017-03-09 10:16 - 00001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2017-03-09 10:16 - 2017-03-09 10:16 - 00000000 ____D C:\windows\System32\Tasks\AVAST Software
2017-03-09 10:15 - 2017-03-14 10:16 - 00337592 _____ (AVAST Software) C:\windows\system32\Drivers\aswvmm.sys
2017-03-09 10:15 - 2017-03-10 10:47 - 00548928 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2017-03-09 10:15 - 2017-03-09 10:15 - 00003994 _____ C:\windows\System32\Tasks\Avast Emergency Update
2017-03-09 10:15 - 2017-03-09 10:12 - 00162528 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2017-03-09 10:15 - 2017-03-09 10:12 - 00126600 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2017-03-09 10:15 - 2017-03-09 10:12 - 00100640 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2017-03-09 10:15 - 2017-03-09 10:12 - 00075704 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys
2017-03-09 10:15 - 2017-03-09 10:12 - 00038296 _____ (AVAST Software) C:\windows\system32\Drivers\aswHwid.sys
2017-03-09 10:15 - 2017-03-09 10:09 - 00993608 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2017-03-09 10:15 - 2017-03-09 10:08 - 00334600 _____ (AVAST Software s.r.o.) C:\windows\system32\Drivers\aswbloga.sys
2017-03-09 10:15 - 2017-03-09 10:08 - 00309272 _____ (AVAST Software s.r.o.) C:\windows\system32\Drivers\aswbidsdrivera.sys
2017-03-09 10:15 - 2017-03-09 10:08 - 00189768 _____ (AVAST Software s.r.o.) C:\windows\system32\Drivers\aswbidsha.sys
2017-03-09 10:15 - 2017-03-09 10:08 - 00048528 _____ (AVAST Software s.r.o.) C:\windows\system32\Drivers\aswbuniva.sys
2017-03-09 10:13 - 2017-03-09 10:12 - 00398408 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2017-03-09 10:07 - 2017-03-09 10:22 - 00000000 ____D C:\Program Files\AVAST Software
2017-03-09 10:05 - 2017-03-09 12:30 - 00000000 ____D C:\ProgramData\AVAST Software
2017-03-09 10:05 - 2017-03-09 10:05 - 06654960 _____ (AVAST Software) C:\Users\Skand\Downloads\avast_free_antivirus_setup_online_cnet2.exe
2017-03-09 10:03 - 2017-03-09 10:03 - 00002870 _____ C:\windows\System32\Tasks\CCleanerSkipUAC
2017-03-09 10:03 - 2017-03-09 10:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-03-09 10:03 - 2017-03-09 10:03 - 00000000 ____D C:\Program Files\CCleaner
2017-03-09 10:01 - 2017-03-09 10:02 - 09261616 _____ (Piriform Ltd) C:\Users\Skand\Downloads\ccsetup527.exe
2017-03-09 10:01 - 2017-03-09 10:02 - 09261616 _____ (Piriform Ltd) C:\Users\Skand\Downloads\ccsetup527 (1).exe
2017-03-06 22:00 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\John Ringo - Black Tide Rising [1-4]-(Sci-Fi) ePUB+
2017-03-06 22:00 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\Jeff Kinney - Diary of a Wimpy Kid 1-9 Series
2017-03-06 22:00 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\HP Downloads
2017-03-06 22:00 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\Excel 2013 Power Programming with VBA
2017-03-06 22:00 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\Collection - J.D. Robb [In Death (Eve Dallas) Series 01-39]
2017-03-06 21:59 - 2017-03-06 22:00 - 00000000 ____D C:\Users\Skand\Desktop\BBC Big Muzzy Collection [English,Spanish,French,German]
2017-03-06 21:59 - 2017-03-06 21:59 - 00000000 ____D C:\Users\Skand\Desktop\Passcape Software Reset Windows Password 5.1.5 Advanced Edition BootCDUSB
2017-03-06 21:59 - 2017-03-06 21:59 - 00000000 ____D C:\Users\Skand\Desktop\Paladin of Shadows Series by John Ringo (Books 1 to 5)
2017-03-06 21:59 - 2017-03-06 21:59 - 00000000 ____D C:\Users\Skand\Desktop\Al Stohlman Leather Working Books
2017-03-06 21:58 - 2017-03-06 21:58 - 00000000 ____D C:\Users\Skand\Desktop\Muzzy
2017-03-06 21:58 - 2017-03-06 21:58 - 00000000 ____D C:\Users\Skand\Desktop\Man of the House (2005) 720p BrRip by maric62985
2017-03-06 21:58 - 2017-03-06 21:58 - 00000000 ____D C:\Users\Skand\Desktop\Log
2017-03-06 21:58 - 2017-03-06 21:58 - 00000000 ____D C:\Users\Skand\Desktop\kc-fonts_black-asylum
2017-03-06 21:58 - 2017-03-06 21:58 - 00000000 ____D C:\Users\Skand\Desktop\Kate Daniels
2017-03-06 15:29 - 2017-03-06 15:30 - 00000000 ____D C:\Users\Skand\Desktop\Jon and Carla
2017-03-06 15:29 - 2017-03-06 15:29 - 00000000 ____D C:\Users\Skand\Desktop\Jared and Courtney
2017-03-06 10:32 - 2017-03-06 10:36 - 00000000 ____D C:\Users\Skand\Downloads\The Secret Garden (1987 Hallmark VHS)
2017-03-03 17:06 - 2017-03-03 17:06 - 00080733 _____ C:\Users\Skand\Downloads\Harry.Potter.and.the.Deathly.Hallows-.Part.1.(2010).BluRay.720p.x264.Ganool.torrent
2017-03-03 14:22 - 2017-03-03 14:22 - 00015264 _____ C:\Users\Skand\Downloads\The.Wizard.of.Oz.(2939).(1080p).torrent
2017-03-03 14:16 - 2017-03-03 14:16 - 00023407 _____ C:\Users\Skand\Downloads\The_Wizard_of_Oz_(2939)_[1080p].torrent
2017-02-28 20:14 - 2017-03-10 13:53 - 00000892 _____ C:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2017-02-28 20:14 - 2017-03-10 13:09 - 00004026 _____ C:\windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-02-27 16:28 - 2017-02-27 16:28 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-02-26 18:47 - 2017-02-26 18:47 - 00038284 _____ C:\Users\Skand\Downloads\player.stl
2017-02-26 18:47 - 2017-02-26 18:47 - 00000000 ___RD C:\Users\Skand\3D Objects
2017-02-25 23:10 - 2017-02-25 23:10 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-02-24 23:41 - 2017-02-24 23:49 - 00000000 ____D C:\Users\Skand\Downloads\Fallen (6 Book Series) ~ Lauren Kate [BluA]epub
2017-02-24 16:59 - 2017-02-25 23:47 - 00000000 ____D C:\Users\Skand\Downloads\The Secret Garden[1993]DvDrip[720x576]AC3[2ch][Eng]-RHooD
2017-02-23 16:09 - 2017-02-23 16:09 - 00000000 ____D C:\Users\Skand\AppData\Roaming\FamilyTreeMaker
2017-02-23 16:08 - 2017-02-23 16:08 - 00000000 ____D C:\Users\Skand\AppData\Local\IsolatedStorage
2017-02-23 16:07 - 2017-02-23 22:12 - 00000000 ____D C:\Users\Skand\OneDrive\Documents\Family Tree Maker
2017-02-23 16:07 - 2017-02-23 16:07 - 00252832 _____ C:\windows\patchw32.dll
2017-02-23 16:04 - 2017-02-23 16:04 - 00000000 ____D C:\Users\Skand\AppData\Local\Ancestry.com
2017-02-23 16:03 - 2017-02-23 16:03 - 00001022 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Family Tree Maker 2014.lnk
2017-02-23 16:02 - 2017-02-23 16:07 - 00000000 ____D C:\Program Files\Family Tree Maker 2014
2017-02-23 16:02 - 2017-02-23 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Family Tree Maker 2014
2017-02-23 16:02 - 2017-02-23 16:02 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BCL easyConverter SDK 3
2017-02-23 16:02 - 2017-02-23 16:02 - 00000000 ____D C:\Program Files\BCL Technologies
2017-02-23 16:02 - 2017-02-23 16:02 - 00000000 ____D C:\Program Files (x86)\BCL Technologies
2017-02-23 16:00 - 2017-02-23 16:04 - 00000000 ___HD C:\ProgramData\{3F06E471-FD45-4DB4-83A5-E68D149EA29F}
2017-02-23 16:00 - 2017-02-23 16:00 - 00000000 ____D C:\Users\Skand\AppData\Local\PackageAware
2017-02-22 16:13 - 2017-02-23 00:49 - 00000000 ____D C:\Users\Skand\Downloads\Ancestry.com Family Tree Maker 2014 v22.0.0.207 - [spam-TPB]
2017-02-22 16:11 - 2017-02-22 16:11 - 00013928 _____ C:\Users\Skand\Downloads\Family.Tree.Maker.2014.+.Updates.torrent
2017-02-22 16:09 - 2017-03-06 13:35 - 00000000 ____D C:\Users\Skand\AppData\Roaming\deluge
2017-02-21 13:31 - 2017-02-21 13:31 - 00005950 _____ C:\Users\Skand\Downloads\winmail.dat
2017-02-20 23:21 - 2017-02-20 23:21 - 00000000 ____D C:\Users\Skand\OneDrive\Documents\Custom Office Templates
2017-02-20 12:56 - 2017-03-13 15:18 - 00000000 ____D C:\Users\Skand\Desktop\Games
2017-02-20 00:25 - 2017-03-14 19:03 - 00000000 ____D C:\Users\Skand\AppData\Local\Spotify
2017-02-20 00:25 - 2017-02-20 00:25 - 00001843 _____ C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2017-02-20 00:24 - 2017-03-14 19:04 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Spotify
2017-02-20 00:23 - 2017-02-20 00:24 - 00353488 _____ (Spotify Ltd) C:\Users\Skand\Downloads\SpotifySetup.exe
2017-02-20 00:06 - 2017-03-12 22:00 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
2017-02-20 00:05 - 2017-03-12 21:59 - 00000000 ____D C:\Users\Skand\AppData\Local\Facebook
2017-02-20 00:04 - 2017-02-20 00:04 - 00252088 _____ (Facebook) C:\Users\Skand\Downloads\FacebookGameroom.exe
2017-02-19 17:07 - 2017-03-13 15:23 - 00000000 ____D C:\Users\Skand\Desktop\Homework
2017-02-19 15:36 - 2017-02-19 15:36 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Hewlett-Packard
2017-02-19 15:24 - 2017-02-19 15:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2017-02-19 15:21 - 2017-03-13 14:35 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-02-19 15:21 - 2017-02-19 15:21 - 00000000 ____D C:\System.sav
2017-02-19 15:21 - 2017-02-19 15:21 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2017-02-19 15:20 - 2017-02-19 15:20 - 00000000 ____D C:\Users\Skand\AppData\Roaming\hpqLog
2017-02-19 14:44 - 2017-02-19 14:44 - 00000000 ____D C:\ProgramData\Visan
2017-02-19 14:44 - 2017-02-19 14:44 - 00000000 ____D C:\ProgramData\HP Photo Creations
2017-02-19 14:44 - 2017-02-19 14:44 - 00000000 ____D C:\Program Files (x86)\HP Photo Creations
2017-02-19 14:43 - 2017-02-26 15:46 - 00000000 ____D C:\Users\Skand\AppData\Roaming\HpUpdate
2017-02-19 14:43 - 2017-02-19 14:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-02-19 14:43 - 2017-02-19 14:43 - 00003768 _____ C:\windows\System32\Tasks\HPCustParticipation HP ENVY 4500 series
2017-02-19 14:43 - 2014-07-21 17:31 - 00763912 ____N (Hewlett-Packard Development Company, LP) C:\windows\system32\HPDiscoPMC511.dll
2017-02-19 14:42 - 2017-02-19 15:20 - 00000000 ____D C:\Program Files (x86)\HP
2017-02-19 14:42 - 2017-02-19 14:42 - 00000057 _____ C:\ProgramData\Ament.ini
2017-02-19 14:42 - 2017-02-19 14:42 - 00000000 ____D C:\ProgramData\HP
2017-02-19 14:42 - 2017-02-19 14:42 - 00000000 ____D C:\Program Files\HP
2017-02-19 14:41 - 2017-02-19 14:44 - 00000000 ____D C:\Users\Skand\AppData\Local\HP
2017-02-19 14:38 - 2017-02-19 16:01 - 00000000 ____D C:\Users\Skand\AppData\Local\Hewlett-Packard
2017-02-19 14:38 - 2017-02-19 14:39 - 00000000 ____D C:\Users\Skand\Downloads\HP Downloads
2017-02-19 14:38 - 2017-02-19 14:38 - 00000000 ____D C:\windows\System32\Tasks\Hewlett-Packard
2017-02-19 14:37 - 2017-02-19 15:21 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2017-02-19 14:35 - 2017-02-19 14:35 - 04057776 _____ (Oleg N. Scherbakov) C:\Users\Skand\Downloads\HPSupportSolutionsFramework-12.5.32.203.exe
2017-02-19 13:20 - 2016-12-20 21:40 - 00237056 _____ (Microsoft Corporation) C:\windows\SysWOW64\SyncSettings.dll
2017-02-19 13:20 - 2016-12-20 21:30 - 01255936 _____ (Microsoft Corporation) C:\windows\SysWOW64\AzureSettingSyncProvider.dll
2017-02-19 13:20 - 2016-12-20 21:25 - 07469056 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2017-02-19 13:20 - 2016-12-13 21:42 - 00167424 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinSCard.dll
2017-02-19 13:20 - 2016-12-09 02:18 - 00165376 _____ (Microsoft Corporation) C:\windows\SysWOW64\mdmregistration.dll
2017-02-19 13:20 - 2016-11-11 00:54 - 00122208 _____ (Microsoft Corporation) C:\windows\SysWOW64\migisol.dll
2017-02-19 13:20 - 2016-11-11 00:38 - 01263856 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2017-02-19 13:20 - 2016-11-11 00:26 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgentc.exe
2017-02-19 13:20 - 2016-11-11 00:20 - 00306176 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieproxy.dll
2017-02-19 13:20 - 2016-11-11 00:18 - 01336320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsecedit.dll
2017-02-19 13:20 - 2016-11-11 00:18 - 00318464 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFolder.dll
2017-02-19 13:20 - 2016-11-11 00:06 - 01228288 _____ (Microsoft Corporation) C:\windows\SysWOW64\usercpl.dll
2017-02-19 13:20 - 2016-11-11 00:04 - 02682880 _____ (Microsoft Corporation) C:\windows\SysWOW64\netshell.dll
2017-02-19 13:20 - 2016-11-11 00:04 - 00358912 _____ (Microsoft Corporation) C:\windows\SysWOW64\stobject.dll
2017-02-19 13:20 - 2016-11-02 04:09 - 02257104 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2017-02-19 13:20 - 2016-11-02 04:04 - 00596832 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2017-02-19 13:20 - 2016-11-02 04:01 - 00276832 _____ (Microsoft Corporation) C:\windows\SysWOW64\input.dll
2017-02-19 13:20 - 2016-11-02 03:48 - 00095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2017-02-19 13:20 - 2016-11-02 03:42 - 00632832 _____ (Microsoft Corporation) C:\windows\SysWOW64\sud.dll
2017-02-19 13:20 - 2016-11-02 03:31 - 00090624 _____ (Microsoft Corporation) C:\windows\SysWOW64\olepro32.dll
2017-02-19 13:20 - 2016-11-02 03:29 - 00884224 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2017-02-19 13:20 - 2016-11-02 03:28 - 00079360 _____ (Microsoft Corporation) C:\windows\SysWOW64\asycfilt.dll
2017-02-19 13:20 - 2016-11-02 03:27 - 02458112 _____ (Microsoft Corporation) C:\windows\SysWOW64\themecpl.dll
2017-02-19 13:20 - 2016-11-02 03:26 - 01509376 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2017-02-19 13:20 - 2016-10-14 21:10 - 00254656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpeffects.dll
2017-02-19 13:20 - 2016-10-14 20:54 - 00102912 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpshell.dll
2017-02-19 13:20 - 2016-10-14 20:52 - 00288256 _____ (Microsoft Corporation) C:\windows\SysWOW64\systemcpl.dll
2017-02-19 13:20 - 2016-10-05 02:14 - 01456640 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2017-02-19 13:20 - 2016-10-05 02:13 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\offreg.dll
2017-02-19 13:20 - 2016-09-15 10:40 - 00965472 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgent.dll
2017-02-19 13:20 - 2016-09-15 10:19 - 00361104 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsmf.dll
2017-02-19 13:20 - 2016-09-15 10:00 - 00554496 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2017-02-19 13:20 - 2016-09-15 09:59 - 00255488 _____ (Microsoft Corporation) C:\windows\SysWOW64\unimdm.tsp
2017-02-19 13:20 - 2016-09-15 09:58 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlancfg.dll
2017-02-19 13:20 - 2016-09-15 09:55 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetworkCollectionAgent.dll
2017-02-19 13:20 - 2016-09-15 09:53 - 00340480 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2017-02-19 13:20 - 2016-09-15 09:52 - 00816640 _____ (Microsoft Corporation) C:\windows\SysWOW64\NaturalLanguage6.dll
2017-02-19 13:20 - 2016-09-15 09:51 - 00762368 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2017-02-19 13:20 - 2016-09-15 09:44 - 00209920 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSAC3ENC.DLL
2017-02-19 13:20 - 2016-09-06 21:46 - 00846336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebcamUi.dll
2017-02-19 13:20 - 2016-09-06 21:34 - 00444416 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSync.dll
2017-02-19 13:20 - 2016-08-05 20:41 - 00068096 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncPolicy.dll
2017-02-19 13:20 - 2016-08-05 02:10 - 00939872 _____ (Microsoft Corporation) C:\windows\SysWOW64\pidgenx.dll
2017-02-19 13:20 - 2016-08-05 01:23 - 00105984 _____ (Microsoft Corporation) C:\windows\SysWOW64\sppc.dll
2017-02-19 13:20 - 2016-08-05 01:18 - 00118272 _____ (Microsoft Corporation) C:\windows\SysWOW64\slc.dll
2017-02-19 13:19 - 2016-12-20 22:09 - 00263472 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-02-19 13:19 - 2016-12-20 22:01 - 20969928 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2017-02-19 13:19 - 2016-12-20 21:46 - 00034304 _____ (Microsoft Corporation) C:\windows\SysWOW64\LaunchWinApp.exe
2017-02-19 13:19 - 2016-12-20 21:43 - 00285184 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-02-19 13:19 - 2016-12-20 21:41 - 00253952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.BioFeedback.dll
2017-02-19 13:19 - 2016-12-20 21:40 - 00557568 _____ (Microsoft Corporation) C:\windows\SysWOW64\StoreAgent.dll
2017-02-19 13:19 - 2016-12-20 21:40 - 00318976 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpencom.dll
2017-02-19 13:19 - 2016-12-20 21:40 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallAgent.exe
2017-02-19 13:19 - 2016-12-20 21:39 - 00223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallAgentUserBroker.exe
2017-02-19 13:19 - 2016-12-20 21:38 - 00866816 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Cred.dll
2017-02-19 13:19 - 2016-12-20 21:35 - 04612608 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.dll
2017-02-19 13:19 - 2016-12-20 21:34 - 07626752 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll
2017-02-19 13:19 - 2016-12-20 21:30 - 05398016 _____ (Microsoft Corporation) C:\windows\SysWOW64\aclui.dll
2017-02-19 13:19 - 2016-12-20 21:24 - 06044160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2017-02-19 13:19 - 2016-12-20 21:24 - 00886272 _____ (Microsoft Corporation) C:\windows\SysWOW64\aadtb.dll
2017-02-19 13:19 - 2016-12-20 21:22 - 01883648 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Logon.dll
2017-02-19 13:19 - 2016-12-20 21:22 - 00860672 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncCore.dll
2017-02-19 13:19 - 2016-12-13 22:08 - 00341344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2017-02-19 13:19 - 2016-12-13 22:06 - 00509792 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncHost.exe
2017-02-19 13:19 - 2016-12-13 22:01 - 01557808 _____ (Microsoft Corporation) C:\windows\SysWOW64\winmde.dll
2017-02-19 13:19 - 2016-12-13 21:45 - 00147968 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32k.sys
2017-02-19 13:19 - 2016-12-13 21:36 - 00074752 _____ (Microsoft Corporation) C:\windows\SysWOW64\updatepolicy.dll
2017-02-19 13:19 - 2016-12-13 21:35 - 00755712 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2017-02-19 13:19 - 2016-12-13 21:35 - 00712192 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2017-02-19 13:19 - 2016-12-13 21:35 - 00553984 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptui.dll
2017-02-19 13:19 - 2016-12-13 21:22 - 02998272 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2017-02-19 13:19 - 2016-12-13 21:22 - 02748416 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpcore.dll
2017-02-19 13:19 - 2016-12-09 03:01 - 01503544 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2017-02-19 13:19 - 2016-12-09 03:01 - 00861024 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManager.dll
2017-02-19 13:19 - 2016-12-09 02:57 - 06668040 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-02-19 13:19 - 2016-12-09 02:52 - 01435896 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2017-02-19 13:19 - 2016-12-09 02:32 - 00635904 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2017-02-19 13:19 - 2016-12-09 02:18 - 03666432 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2017-02-19 13:19 - 2016-11-11 01:01 - 01969912 _____ (Microsoft Corporation) C:\windows\SysWOW64\hevcdecoder.dll
2017-02-19 13:19 - 2016-11-11 01:01 - 00167848 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscapi.dll
2017-02-19 13:19 - 2016-11-11 00:59 - 01572768 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2017-02-19 13:19 - 2016-11-11 00:47 - 01430720 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-02-19 13:19 - 2016-11-11 00:42 - 00152416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTWorkQ.dll
2017-02-19 13:19 - 2016-11-11 00:41 - 00157536 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudStorageWizard.exe
2017-02-19 13:19 - 2016-11-11 00:24 - 00519168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ngccredprov.dll
2017-02-19 13:19 - 2016-11-11 00:24 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2017-02-19 13:19 - 2016-11-11 00:23 - 00094208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepositoryClient.dll
2017-02-19 13:19 - 2016-11-11 00:22 - 00122880 _____ (Microsoft Corporation) C:\windows\SysWOW64\sendmail.dll
2017-02-19 13:19 - 2016-11-11 00:19 - 00506880 _____ (Microsoft Corporation) C:\windows\SysWOW64\DevicePairing.dll
2017-02-19 13:19 - 2016-11-11 00:19 - 00114176 _____ (Microsoft Corporation) C:\windows\SysWOW64\setupugc.exe
2017-02-19 13:19 - 2016-11-11 00:18 - 02333184 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2017-02-19 13:19 - 2016-11-11 00:18 - 01196544 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscui.cpl
2017-02-19 13:19 - 2016-11-11 00:18 - 00431616 _____ (Microsoft Corporation) C:\windows\SysWOW64\efswrt.dll
2017-02-19 13:19 - 2016-11-11 00:18 - 00108544 _____ (Microsoft Corporation) C:\windows\SysWOW64\wscinterop.dll
2017-02-19 13:19 - 2016-11-11 00:17 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSManHTTPConfig.exe
2017-02-19 13:19 - 2016-11-11 00:16 - 00253952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-02-19 13:19 - 2016-11-11 00:15 - 01357824 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAutomationCore.dll
2017-02-19 13:19 - 2016-11-11 00:15 - 00348672 _____ (Microsoft Corporation) C:\windows\SysWOW64\zipfldr.dll
2017-02-19 13:19 - 2016-11-11 00:15 - 00285696 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptngc.dll
2017-02-19 13:19 - 2016-11-11 00:12 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdtcuiu.dll
2017-02-19 13:19 - 2016-11-11 00:06 - 00400384 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToManager.dll
2017-02-19 13:19 - 2016-11-11 00:06 - 00359936 _____ (Microsoft Corporation) C:\windows\SysWOW64\mtxclu.dll
2017-02-19 13:19 - 2016-11-11 00:05 - 03370496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepository.dll
2017-02-19 13:19 - 2016-11-11 00:04 - 01595392 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2017-02-19 13:19 - 2016-11-11 00:04 - 00912896 _____ (Microsoft Corporation) C:\windows\SysWOW64\comdlg32.dll
2017-02-19 13:19 - 2016-11-11 00:03 - 02256384 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2017-02-19 13:19 - 2016-11-11 00:03 - 01556480 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2017-02-19 13:19 - 2016-11-11 00:03 - 00772608 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntshrui.dll
2017-02-19 13:19 - 2016-11-11 00:02 - 00711680 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Search.dll
2017-02-19 13:19 - 2016-11-02 04:22 - 00601712 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleaut32.dll
2017-02-19 13:19 - 2016-11-02 04:08 - 00602464 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupEngine.dll
2017-02-19 13:19 - 2016-11-02 04:01 - 01425000 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d9.dll
2017-02-19 13:19 - 2016-11-02 03:46 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininetlui.dll
2017-02-19 13:19 - 2016-11-02 03:44 - 00089088 _____ (Microsoft Corporation) C:\windows\SysWOW64\AuthExt.dll
2017-02-19 13:19 - 2016-11-02 03:43 - 00731136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d8.dll
2017-02-19 13:19 - 2016-11-02 03:42 - 00549376 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActionCenterCPL.dll
2017-02-19 13:19 - 2016-11-02 03:40 - 00548352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ddraw.dll
2017-02-19 13:19 - 2016-11-02 03:39 - 00236544 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll
2017-02-19 13:19 - 2016-11-02 03:38 - 00760832 _____ (Microsoft Corporation) C:\windows\SysWOW64\appwiz.cpl
2017-02-19 13:19 - 2016-11-02 03:28 - 00807424 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2017-02-19 13:19 - 2016-11-02 03:27 - 00580608 _____ (Microsoft Corporation) C:\windows\SysWOW64\hgcpl.dll
2017-02-19 13:19 - 2016-11-02 03:27 - 00422400 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.dll
2017-02-19 13:19 - 2016-11-02 03:26 - 00798208 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2017-02-19 13:19 - 2016-11-02 03:23 - 03106304 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2017-02-19 13:19 - 2016-11-02 03:23 - 02356736 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVidCtl.dll
2017-02-19 13:19 - 2016-10-14 21:19 - 00272720 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2017-02-19 13:19 - 2016-10-14 21:15 - 00687936 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvproc.dll
2017-02-19 13:19 - 2016-10-14 21:06 - 05685760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2017-02-19 13:19 - 2016-10-14 21:00 - 00018432 _____ (Microsoft Corporation) C:\windows\SysWOW64\stdole2.tlb
2017-02-19 13:19 - 2016-10-14 20:57 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\dtdump.exe
2017-02-19 13:19 - 2016-10-14 20:56 - 00306688 _____ (Microsoft Corporation) C:\windows\SysWOW64\esentutl.exe
2017-02-19 13:19 - 2016-10-14 20:54 - 00410112 _____ (Microsoft Corporation) C:\windows\SysWOW64\SndVolSSO.dll
2017-02-19 13:19 - 2016-10-14 20:54 - 00152064 _____ (Microsoft Corporation) C:\windows\SysWOW64\autoplay.dll
2017-02-19 13:19 - 2016-10-14 20:48 - 01323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2017-02-19 13:19 - 2016-10-14 20:47 - 01113600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2017-02-19 13:19 - 2016-10-14 20:46 - 00471552 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-02-19 13:19 - 2016-10-14 20:44 - 00747008 _____ (Microsoft Corporation) C:\windows\SysWOW64\RemoteNaturalLanguage.dll
2017-02-19 13:19 - 2016-10-14 20:44 - 00636928 _____ (Microsoft Corporation) C:\windows\SysWOW64\winhttp.dll
2017-02-19 13:19 - 2016-10-14 20:44 - 00470016 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-02-19 13:19 - 2016-10-14 20:43 - 02748928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mispace.dll
2017-02-19 13:19 - 2016-10-14 20:42 - 00459776 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-02-19 13:19 - 2016-10-14 20:42 - 00076800 _____ (Microsoft Corporation) C:\windows\SysWOW64\powercfg.exe
2017-02-19 13:19 - 2016-10-14 20:38 - 00675840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.dll
2017-02-19 13:19 - 2016-10-14 20:37 - 00709120 _____ (Microsoft Corporation) C:\windows\SysWOW64\CPFilters.dll
2017-02-19 13:19 - 2016-10-14 20:36 - 01170944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.dll
2017-02-19 13:19 - 2016-10-14 20:36 - 00081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\cmifw.dll
2017-02-19 13:19 - 2016-10-05 02:31 - 00058880 _____ (Microsoft Corporation) C:\windows\SysWOW64\ConfigureExpandedStorage.dll
2017-02-19 13:19 - 2016-10-05 02:28 - 00584192 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbonRes.dll
2017-02-19 13:19 - 2016-10-05 02:28 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.dll
2017-02-19 13:19 - 2016-10-05 02:28 - 00123904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.HostName.dll
2017-02-19 13:19 - 2016-10-05 02:26 - 00088576 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-02-19 13:19 - 2016-10-05 02:25 - 00404992 _____ (Microsoft Corporation) C:\windows\SysWOW64\dsreg.dll
2017-02-19 13:19 - 2016-10-05 02:25 - 00299520 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccountApis.dll
2017-02-19 13:19 - 2016-10-05 02:25 - 00117760 _____ (Microsoft Corporation) C:\windows\SysWOW64\AuthBroker.dll
2017-02-19 13:19 - 2016-10-05 02:23 - 00426496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-02-19 13:19 - 2016-10-05 02:21 - 00567808 _____ (Microsoft Corporation) C:\windows\SysWOW64\ChatApis.dll
2017-02-19 13:19 - 2016-10-05 02:20 - 00661504 _____ (Microsoft Corporation) C:\windows\SysWOW64\WpcWebFilter.dll
2017-02-19 13:19 - 2016-10-05 02:18 - 00858112 _____ (Microsoft Corporation) C:\windows\SysWOW64\EmailApis.dll
2017-02-19 13:19 - 2016-10-05 02:17 - 00089088 _____ (Microsoft Corporation) C:\windows\SysWOW64\adsmsext.dll
2017-02-19 13:19 - 2016-10-05 02:16 - 00508416 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2017-02-19 13:19 - 2016-10-05 02:09 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentApis.dll
2017-02-19 13:19 - 2016-10-05 02:08 - 00598528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.dll
2017-02-19 13:19 - 2016-10-05 02:07 - 02646016 _____ (Microsoft Corporation) C:\windows\SysWOW64\CertEnroll.dll
2017-02-19 13:19 - 2016-10-05 02:07 - 00589312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Sensors.dll
2017-02-19 13:19 - 2016-10-05 02:06 - 01013248 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.Http.dll
2017-02-19 13:19 - 2016-10-05 02:06 - 00850944 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactApis.dll
2017-02-19 13:19 - 2016-09-15 10:37 - 00402352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ws2_32.dll
2017-02-19 13:19 - 2016-09-15 10:22 - 00975744 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.appcore.dll
2017-02-19 13:19 - 2016-09-15 10:22 - 00433832 _____ (Microsoft Corporation) C:\windows\SysWOW64\WWanAPI.dll
2017-02-19 13:19 - 2016-09-15 10:03 - 00094720 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2017-02-19 13:19 - 2016-09-15 10:03 - 00067584 _____ (Microsoft Corporation) C:\windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2017-02-19 13:19 - 2016-09-15 10:01 - 00055296 _____ (Microsoft Corporation) C:\windows\SysWOW64\findnetprinters.dll
2017-02-19 13:19 - 2016-09-15 09:59 - 00136192 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinRtTracing.dll
2017-02-19 13:19 - 2016-09-15 09:58 - 00291840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2017-02-19 13:19 - 2016-09-15 09:58 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-02-19 13:19 - 2016-09-15 09:58 - 00059904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2017-02-19 13:19 - 2016-09-15 09:57 - 00392192 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Gaming.Input.dll
2017-02-19 13:19 - 2016-09-15 09:57 - 00315904 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-02-19 13:19 - 2016-09-15 09:57 - 00171520 _____ (Microsoft Corporation) C:\windows\SysWOW64\ClipboardServer.dll
2017-02-19 13:19 - 2016-09-15 09:56 - 00265728 _____ C:\windows\SysWOW64\Windows.Perception.Stub.dll
2017-02-19 13:19 - 2016-09-15 09:56 - 00262656 _____ (Microsoft Corporation) C:\windows\SysWOW64\pdh.dll
2017-02-19 13:19 - 2016-09-15 09:56 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Core.dll
2017-02-19 13:19 - 2016-09-15 09:56 - 00057856 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManagerApi.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 01243136 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 00575488 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 00325120 _____ (Microsoft Corporation) C:\windows\SysWOW64\oleacc.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 00218624 _____ (Microsoft Corporation) C:\windows\SysWOW64\WwaApi.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 00185856 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-02-19 13:19 - 2016-09-15 09:55 - 00175616 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Scanners.dll
2017-02-19 13:19 - 2016-09-15 09:54 - 00747520 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Ocr.dll
2017-02-19 13:19 - 2016-09-15 09:54 - 00461312 _____ (Microsoft Corporation) C:\windows\SysWOW64\webio.dll
2017-02-19 13:19 - 2016-09-15 09:54 - 00431104 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprdim.dll
2017-02-19 13:19 - 2016-09-15 09:53 - 00819200 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppContracts.dll
2017-02-19 13:19 - 2016-09-15 09:53 - 00466432 _____ (Microsoft Corporation) C:\windows\SysWOW64\sppcext.dll
2017-02-19 13:19 - 2016-09-15 09:53 - 00284672 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.dll
2017-02-19 13:19 - 2016-09-15 09:52 - 00525824 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintDialogs.dll
2017-02-19 13:19 - 2016-09-15 09:52 - 00500224 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.dll
2017-02-19 13:19 - 2016-09-15 09:52 - 00297472 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2017-02-19 13:19 - 2016-09-15 09:50 - 01534464 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-02-19 13:19 - 2016-09-15 09:50 - 00071168 _____ (Microsoft Corporation) C:\windows\SysWOW64\pwrshplugin.dll
2017-02-19 13:19 - 2016-09-15 09:49 - 00468992 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2017-02-19 13:19 - 2016-09-15 09:48 - 01320448 _____ (Microsoft Corporation) C:\windows\SysWOW64\comsvcs.dll
2017-02-19 13:19 - 2016-09-15 09:47 - 01077760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Editing.dll
2017-02-19 13:19 - 2016-09-15 09:47 - 00355328 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTMediaFrame.dll
2017-02-19 13:19 - 2016-09-15 09:46 - 00713216 _____ (Microsoft Corporation) C:\windows\SysWOW64\wpnapps.dll
2017-02-19 13:19 - 2016-09-15 09:46 - 00558080 _____ (Microsoft Corporation) C:\windows\SysWOW64\clusapi.dll
2017-02-19 13:19 - 2016-09-15 09:46 - 00343040 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToDevice.dll
2017-02-19 13:19 - 2016-09-15 09:45 - 02642944 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2017-02-19 13:19 - 2016-09-15 09:44 - 02153984 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi.dll
2017-02-19 13:19 - 2016-09-15 09:43 - 03520512 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsrchvw.exe
2017-02-19 13:19 - 2016-09-15 09:43 - 00220672 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToReceiver.dll
2017-02-19 13:19 - 2016-09-15 09:42 - 00719872 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_sr.dll
2017-02-19 13:19 - 2016-09-15 09:42 - 00049664 _____ (Microsoft Corporation) C:\windows\SysWOW64\BackgroundMediaPolicy.dll
2017-02-19 13:19 - 2016-09-15 09:40 - 02026496 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2017-02-19 13:19 - 2016-09-15 09:40 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2017-02-19 13:19 - 2016-09-15 09:40 - 01656320 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Perception.dll
2017-02-19 13:19 - 2016-09-15 09:39 - 01232384 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-02-19 13:19 - 2016-09-15 09:39 - 01170944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-02-19 13:19 - 2016-09-15 09:39 - 01004544 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Input.Inking.dll
2017-02-19 13:19 - 2016-09-15 09:39 - 00827904 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll
2017-02-19 13:19 - 2016-09-15 09:38 - 00773120 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2017-02-19 13:19 - 2016-09-15 09:38 - 00691200 _____ (Microsoft Corporation) C:\windows\SysWOW64\TokenBroker.dll
2017-02-19 13:19 - 2016-09-15 09:38 - 00620544 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.dll
2017-02-19 13:19 - 2016-09-15 09:36 - 00448512 _____ (Microsoft Corporation) C:\windows\SysWOW64\TpmCoreProvisioning.dll
2017-02-19 13:19 - 2016-09-15 09:35 - 00331776 _____ (Microsoft Corporation) C:\windows\SysWOW64\SessEnv.dll
2017-02-19 13:19 - 2016-09-06 22:27 - 01362504 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpmde.dll
2017-02-19 13:19 - 2016-09-06 22:17 - 00782176 _____ (Microsoft Corporation) C:\windows\SysWOW64\WWAHost.exe
2017-02-19 13:19 - 2016-09-06 21:59 - 00018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExtrasXmlParser.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\POSyncServices.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00054784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AddressParser.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTypeHelperUtil.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00037888 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataLanguageUtil.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccessRes.dll
2017-02-19 13:19 - 2016-09-06 21:58 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\PhoneutilRes.dll
2017-02-19 13:19 - 2016-09-06 21:57 - 00224256 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExSMime.dll
2017-02-19 13:19 - 2016-09-06 21:57 - 00045568 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2017-02-19 13:19 - 2016-09-06 21:56 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactActivation.dll
2017-02-19 13:19 - 2016-09-06 21:55 - 00147456 _____ (Microsoft Corporation) C:\windows\SysWOW64\VCardParser.dll
2017-02-19 13:19 - 2016-09-06 21:54 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataPlatformHelperUtil.dll
2017-02-19 13:19 - 2016-09-06 21:53 - 00118272 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentActivation.dll
2017-02-19 13:19 - 2016-09-06 21:50 - 00426496 _____ (Microsoft Corporation) C:\windows\SysWOW64\OneDriveSettingSyncProvider.dll
2017-02-19 13:19 - 2016-09-06 21:49 - 00260096 _____ (Microsoft Corporation) C:\windows\SysWOW64\Phoneutil.dll
2017-02-19 13:19 - 2016-09-06 21:34 - 04557824 _____ (Microsoft) C:\windows\SysWOW64\dbgeng.dll
2017-02-19 13:19 - 2016-09-06 21:31 - 01293312 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPDMC.exe
2017-02-19 13:19 - 2016-09-06 21:31 - 00461312 _____ (Microsoft) C:\windows\SysWOW64\DbgModel.dll
2017-02-19 13:19 - 2016-08-19 22:06 - 00389632 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2017-02-19 13:19 - 2016-08-19 22:04 - 00592384 _____ (Microsoft Corporation) C:\windows\SysWOW64\GamePanel.exe
2017-02-19 13:19 - 2016-08-19 22:00 - 00141824 _____ (Windows ® Win 7 DDK provider) C:\windows\SysWOW64\DscCoreConfProv.dll
2017-02-19 13:19 - 2016-08-19 21:58 - 00020480 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi_passthru.dll
2017-02-19 13:19 - 2016-08-19 21:56 - 00020992 _____ (Microsoft Corporation) C:\windows\SysWOW64\delegatorprovider.dll
2017-02-19 13:19 - 2016-08-05 21:17 - 00790760 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2017-02-19 13:19 - 2016-08-05 21:08 - 00313560 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanapi.dll
2017-02-19 13:19 - 2016-08-05 20:48 - 00015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanhlp.dll
2017-02-19 13:19 - 2016-08-05 20:45 - 00038912 _____ (Microsoft Corporation) C:\windows\SysWOW64\wfdprov.dll
2017-02-19 13:19 - 2016-08-05 20:45 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\netiougc.exe
2017-02-19 13:19 - 2016-08-05 20:44 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\deviceassociation.dll
2017-02-19 13:19 - 2016-08-05 20:39 - 00181760 _____ (Microsoft Corporation) C:\windows\SysWOW64\tcpipcfg.dll
2017-02-19 13:19 - 2016-08-05 20:33 - 00020992 _____ (Microsoft Corporation) C:\windows\SysWOW64\smphost.dll
2017-02-19 13:19 - 2016-08-05 20:29 - 00298496 _____ (Microsoft Corporation) C:\windows\SysWOW64\resutils.dll
2017-02-19 13:19 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.UXRes.dll
2017-02-19 13:19 - 2016-08-05 01:29 - 00019968 _____ (Microsoft Corporation) C:\windows\SysWOW64\slcext.dll
2017-02-19 13:19 - 2016-08-01 21:47 - 00079536 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32u.dll
2017-02-19 13:19 - 2016-08-01 21:37 - 00121344 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakrathunk.dll
2017-02-19 13:19 - 2016-08-01 21:30 - 00822784 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakradiag.dll
2017-02-19 13:19 - 2016-07-21 18:18 - 00297552 _____ (Microsoft Corporation) C:\windows\SysWOW64\wevtapi.dll
2017-02-19 13:18 - 2016-12-20 22:59 - 00218976 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinesam.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 03892864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfcore.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 01852720 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmp4srcsnk.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 01360464 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetsrc.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 01277344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfasfsrcsnk.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 01201872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmpeg2srcsnk.dll
2017-02-19 13:18 - 2016-12-20 22:02 - 00980832 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetcore.dll
2017-02-19 13:18 - 2016-12-20 21:41 - 00231936 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-02-19 13:18 - 2016-12-20 21:39 - 01300480 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVPXENC.dll
2017-02-19 13:18 - 2016-12-20 21:35 - 00198656 _____ (Microsoft Corporation) C:\windows\SysWOW64\indexeddbserver.dll
2017-02-19 13:18 - 2016-12-20 21:33 - 19413504 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2017-02-19 13:18 - 2016-12-20 21:32 - 19417600 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2017-02-19 13:18 - 2016-12-20 21:27 - 00640000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MCRecvSrc.dll
2017-02-19 13:18 - 2016-12-20 21:26 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVP9DEC.dll
2017-02-19 13:18 - 2016-12-20 21:25 - 06474752 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspaint.exe
2017-02-19 13:18 - 2016-12-20 21:24 - 05061120 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2017-02-19 13:18 - 2016-12-20 21:24 - 03733504 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2017-02-19 13:18 - 2016-12-13 22:21 - 02206496 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2017-02-19 13:18 - 2016-12-13 22:01 - 00382784 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2017-02-19 13:18 - 2016-12-13 22:01 - 00076984 _____ (Microsoft Corporation) C:\windows\SysWOW64\remoteaudioendpoint.dll
2017-02-19 13:18 - 2016-12-13 21:46 - 01631232 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-02-19 13:18 - 2016-12-13 21:40 - 00231424 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudBackupSettings.dll
2017-02-19 13:18 - 2016-12-13 21:40 - 00104448 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-02-19 13:18 - 2016-12-13 21:38 - 13869056 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.dll
2017-02-19 13:18 - 2016-12-13 21:38 - 00213504 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.CredDialogController.dll
2017-02-19 13:18 - 2016-12-13 21:32 - 00806400 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3D12.dll
2017-02-19 13:18 - 2016-12-13 21:32 - 00497152 _____ (Microsoft Corporation) C:\windows\SysWOW64\LogonController.dll
2017-02-19 13:18 - 2016-12-09 03:11 - 02048496 _____ C:\windows\SysWOW64\CoreUIComponents.dll
2017-02-19 13:18 - 2016-12-09 03:01 - 02323728 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2017-02-19 13:18 - 2016-12-09 03:00 - 00106896 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2017-02-19 13:18 - 2016-12-09 02:59 - 02166752 _____ (Microsoft Corporation) C:\windows\SysWOW64\combase.dll
2017-02-19 13:18 - 2016-12-09 02:59 - 00846560 _____ (Microsoft Corporation) C:\windows\SysWOW64\WinTypes.dll
2017-02-19 13:18 - 2016-12-09 02:56 - 00959112 _____ (Microsoft Corporation) C:\windows\SysWOW64\ole32.dll
2017-02-19 13:18 - 2016-12-09 02:52 - 01415752 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32full.dll
2017-02-19 13:18 - 2016-12-09 02:51 - 00117240 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2017-02-19 13:18 - 2016-12-09 02:41 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\WordBreakers.dll
2017-02-19 13:18 - 2016-12-09 02:34 - 00288768 _____ (Microsoft Corporation) C:\windows\SysWOW64\wincorlib.dll
2017-02-19 13:18 - 2016-12-09 02:31 - 03689984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2017-02-19 13:18 - 2016-12-09 02:31 - 00313856 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2017-02-19 13:18 - 2016-12-09 02:28 - 03306496 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFMediaEngine.dll
2017-02-19 13:18 - 2016-12-09 02:23 - 12177920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2017-02-19 13:18 - 2016-12-09 02:20 - 03198464 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdp.dll
2017-02-19 13:18 - 2016-12-09 02:18 - 02138112 _____ (Microsoft Corporation) C:\windows\SysWOW64\InputService.dll
2017-02-19 13:18 - 2016-12-09 02:17 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ShareHost.dll
2017-02-19 13:18 - 2016-12-09 02:16 - 00353280 _____ (Microsoft Corporation) C:\windows\SysWOW64\TextInputFramework.dll
2017-02-19 13:18 - 2016-12-09 02:15 - 00206848 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Core.TextInput.dll
2017-02-19 13:18 - 2016-12-09 02:15 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\InputLocaleManager.dll
2017-02-19 13:18 - 2016-12-09 02:15 - 00068096 _____ (Microsoft Corporation) C:\windows\SysWOW64\EditBufferTestHook.dll
2017-02-19 13:18 - 2016-12-09 01:54 - 00483840 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreMessaging.dll
2017-02-19 13:18 - 2016-11-11 01:00 - 01706488 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2017-02-19 13:18 - 2016-11-11 00:49 - 00869848 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2017-02-19 13:18 - 2016-11-11 00:49 - 00248480 _____ (Microsoft Corporation) C:\windows\SysWOW64\policymanager.dll
2017-02-19 13:18 - 2016-11-11 00:48 - 02277248 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11.dll
2017-02-19 13:18 - 2016-11-11 00:47 - 05722832 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.storage.dll
2017-02-19 13:18 - 2016-11-11 00:47 - 00527880 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll
2017-02-19 13:18 - 2016-11-11 00:42 - 01123912 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfplat.dll
2017-02-19 13:18 - 2016-11-11 00:42 - 00952416 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsvr.dll
2017-02-19 13:18 - 2016-11-11 00:42 - 00374448 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFPlay.dll
2017-02-19 13:18 - 2016-11-11 00:42 - 00091936 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfaudiocnv.dll
2017-02-19 13:18 - 2016-11-11 00:41 - 04311736 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2017-02-19 13:18 - 2016-11-11 00:27 - 00065024 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetCfgNotifyObjectHost.exe
2017-02-19 13:18 - 2016-11-11 00:25 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapsBtSvc.dll
2017-02-19 13:18 - 2016-11-11 00:25 - 00071168 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosStorage.dll
2017-02-19 13:18 - 2016-11-11 00:24 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\BcastDVRHelper.dll
2017-02-19 13:18 - 2016-11-11 00:24 - 00138240 _____ (Microsoft Corporation) C:\windows\SysWOW64\DisplayManager.dll
2017-02-19 13:18 - 2016-11-11 00:23 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppCapture.dll
2017-02-19 13:18 - 2016-11-11 00:22 - 00505856 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcastdvr.exe
2017-02-19 13:18 - 2016-11-11 00:21 - 00332288 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapConfiguration.dll
2017-02-19 13:18 - 2016-11-11 00:21 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-02-19 13:18 - 2016-11-11 00:19 - 01755136 _____ (Microsoft Corporation) C:\windows\SysWOW64\DeviceFlows.DataModel.dll
2017-02-19 13:18 - 2016-11-11 00:19 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupShim.dll
2017-02-19 13:18 - 2016-11-11 00:19 - 00298496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll
2017-02-19 13:18 - 2016-11-11 00:19 - 00284672 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepsync.dll
2017-02-19 13:18 - 2016-11-11 00:19 - 00125952 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepapi.dll
2017-02-19 13:18 - 2016-11-11 00:17 - 00333312 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActivationManager.dll
2017-02-19 13:18 - 2016-11-11 00:15 - 00838144 _____ (Microsoft Corporation) C:\windows\SysWOW64\JpMapControl.dll
2017-02-19 13:18 - 2016-11-11 00:14 - 00395264 _____ (Microsoft Corporation) C:\windows\SysWOW64\dmenrollengine.dll
2017-02-19 13:18 - 2016-11-11 00:10 - 06109184 _____ (Microsoft Corporation) C:\windows\SysWOW64\mos.dll
2017-02-19 13:18 - 2016-11-11 00:10 - 00746496 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdtcprx.dll
2017-02-19 13:18 - 2016-11-11 00:09 - 05380608 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll
2017-02-19 13:18 - 2016-11-11 00:09 - 00545280 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmkvsrcsnk.dll
2017-02-19 13:18 - 2016-11-11 00:08 - 00053248 _____ (Microsoft Corporation) C:\windows\SysWOW64\xolehlp.dll
2017-02-19 13:18 - 2016-11-11 00:06 - 02362880 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapRouter.dll
2017-02-19 13:18 - 2016-11-11 00:06 - 02109952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapGeocoder.dll
2017-02-19 13:18 - 2016-11-11 00:05 - 04423680 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2017-02-19 13:18 - 2016-11-11 00:04 - 01992704 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmcore.dll
2017-02-19 13:18 - 2016-11-11 00:04 - 00715264 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlCore.dll
2017-02-19 13:18 - 2016-11-11 00:03 - 02484736 _____ (Microsoft Corporation) C:\windows\SysWOW64\gameux.dll
2017-02-19 13:18 - 2016-11-11 00:03 - 01576448 _____ (Microsoft Corporation) C:\windows\SysWOW64\actxprxy.dll
2017-02-19 13:18 - 2016-11-11 00:03 - 00760832 _____ (Microsoft Corporation) C:\windows\SysWOW64\NMAA.dll
2017-02-19 13:18 - 2016-11-11 00:03 - 00565248 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasapi32.dll
2017-02-19 13:18 - 2016-11-02 05:01 - 00484584 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2017-02-19 13:18 - 2016-11-02 05:01 - 00315744 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2017-02-19 13:18 - 2016-11-02 04:08 - 00576408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2017-02-19 13:18 - 2016-11-02 04:08 - 00186424 _____ (Microsoft Corporation) C:\windows\SysWOW64\weretw.dll
2017-02-19 13:18 - 2016-11-02 04:08 - 00111968 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupApi.dll
2017-02-19 13:18 - 2016-11-02 04:01 - 00545936 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontdrvhost.exe
2017-02-19 13:18 - 2016-11-02 03:49 - 00037376 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2017-02-19 13:18 - 2016-11-02 03:48 - 00081408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2017-02-19 13:18 - 2016-11-02 03:48 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\efsext.dll
2017-02-19 13:18 - 2016-11-02 03:45 - 00182784 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsensorgroup.dll
2017-02-19 13:18 - 2016-11-02 03:43 - 00270336 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2017-02-19 13:18 - 2016-11-02 03:43 - 00198144 _____ (Microsoft Corporation) C:\windows\SysWOW64\FSClient.dll
2017-02-19 13:18 - 2016-11-02 03:43 - 00126464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2017-02-19 13:18 - 2016-11-02 03:42 - 00202752 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-02-19 13:18 - 2016-11-02 03:40 - 00896512 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontext.dll
2017-02-19 13:18 - 2016-11-02 03:39 - 00465920 _____ (Microsoft Corporation) C:\windows\SysWOW64\LockAppBroker.dll
2017-02-19 13:18 - 2016-11-02 03:36 - 00063488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ErrorDetailsUpdate.dll
2017-02-19 13:18 - 2016-11-02 03:35 - 00336896 _____ (Microsoft Corporation) C:\windows\SysWOW64\msinfo32.exe
2017-02-19 13:18 - 2016-11-02 03:33 - 12349952 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2017-02-19 13:18 - 2016-11-02 03:30 - 00134144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ErrorDetails.dll
2017-02-19 13:18 - 2016-11-02 03:29 - 01247232 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Globalization.dll
2017-02-19 13:18 - 2016-11-02 03:29 - 00122368 _____ (Microsoft Corporation) C:\windows\SysWOW64\NPSM.dll
2017-02-19 13:18 - 2016-11-02 03:28 - 00109568 _____ (Microsoft Corporation) C:\windows\SysWOW64\chartv.dll
2017-02-19 13:18 - 2016-11-02 03:23 - 00199680 _____ (Microsoft Corporation) C:\windows\SysWOW64\GlobCollationHost.dll
2017-02-19 13:18 - 2016-11-02 02:11 - 00788624 _____ C:\windows\SysWOW64\locale.nls
2017-02-19 13:18 - 2016-11-02 02:11 - 00788624 _____ C:\windows\system32\locale.nls
2017-02-19 13:18 - 2016-10-14 21:33 - 00455040 _____ (Microsoft Corporation) C:\windows\SysWOW64\DolbyDecMFT.dll
2017-02-19 13:18 - 2016-10-14 21:18 - 01556712 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2017-02-19 13:18 - 2016-10-14 21:18 - 00749920 _____ (Microsoft Corporation) C:\windows\SysWOW64\drvstore.dll
2017-02-19 13:18 - 2016-10-14 20:59 - 00187904 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfksproxy.dll
2017-02-19 13:18 - 2016-10-14 20:57 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmpdxm.dll
2017-02-19 13:18 - 2016-10-14 20:56 - 00327680 _____ (Microsoft Corporation) C:\windows\SysWOW64\daxexec.dll
2017-02-19 13:18 - 2016-10-14 20:56 - 00095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\BluetoothApis.dll
2017-02-19 13:18 - 2016-10-14 20:55 - 00142336 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.WiFi.dll
2017-02-19 13:18 - 2016-10-14 20:51 - 00226304 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll
2017-02-19 13:18 - 2016-10-14 20:41 - 00067584 _____ (Microsoft Corporation) C:\windows\SysWOW64\iscsiwmi.dll
2017-02-19 13:18 - 2016-10-14 20:39 - 00357376 _____ (Microsoft Corporation) C:\windows\SysWOW64\Geolocation.dll
2017-02-19 13:18 - 2016-10-14 20:36 - 00542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.Connectivity.dll
2017-02-19 13:18 - 2016-10-14 20:35 - 02708992 _____ (Microsoft Corporation) C:\windows\SysWOW64\esent.dll
2017-02-19 13:18 - 2016-10-14 20:35 - 02005504 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2017-02-19 13:18 - 2016-10-05 02:50 - 00116576 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostCommon.dll
2017-02-19 13:18 - 2016-10-05 02:49 - 01980768 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2017-02-19 13:18 - 2016-10-05 02:48 - 01022304 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppxPackaging.dll
2017-02-19 13:18 - 2016-10-05 02:27 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-02-19 13:18 - 2016-10-05 02:26 - 00184320 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserMgrProxy.dll
2017-02-19 13:18 - 2016-10-05 02:26 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovs.dll
2017-02-19 13:18 - 2016-10-05 02:24 - 00483840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.AllJoyn.dll
2017-02-19 13:18 - 2016-10-05 02:15 - 00141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\dialclient.dll
2017-02-19 13:18 - 2016-10-05 02:09 - 00691712 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2017-02-19 13:18 - 2016-10-05 02:05 - 00751104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-02-19 13:18 - 2016-09-15 10:37 - 00496872 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2017-02-19 13:18 - 2016-09-15 10:33 - 00083120 _____ (Microsoft Corporation) C:\windows\SysWOW64\devenum.dll
2017-02-19 13:18 - 2016-09-15 10:23 - 00170960 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2017-02-19 13:18 - 2016-09-15 10:18 - 00856872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfreadwrite.dll
2017-02-19 13:18 - 2016-09-15 10:13 - 00113504 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmapi.dll
2017-02-19 13:18 - 2016-09-15 10:03 - 00026112 _____ (Microsoft Corporation) C:\windows\SysWOW64\odbcconf.dll
2017-02-19 13:18 - 2016-09-15 10:01 - 00141824 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Radios.dll
2017-02-19 13:18 - 2016-09-15 09:59 - 00143872 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovslegacy.dll
2017-02-19 13:18 - 2016-09-15 09:58 - 00203776 _____ (Microsoft Corporation) C:\windows\SysWOW64\credprovhost.dll
2017-02-19 13:18 - 2016-09-15 09:58 - 00129024 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2017-02-19 13:18 - 2016-09-15 09:57 - 00374784 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.LowLevel.dll
2017-02-19 13:18 - 2016-09-15 09:56 - 00670208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.PointOfService.dll
2017-02-19 13:18 - 2016-09-15 09:56 - 00609280 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Import.dll
2017-02-19 13:18 - 2016-09-15 09:56 - 00257536 _____ (Microsoft Corporation) C:\windows\SysWOW64\DataExchange.dll
2017-02-19 13:18 - 2016-09-15 09:55 - 00562176 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.SmartCards.dll
2017-02-19 13:18 - 2016-09-15 09:55 - 00386048 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-02-19 13:18 - 2016-09-15 09:55 - 00332288 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Bluetooth.dll
2017-02-19 13:18 - 2016-09-15 09:55 - 00152064 _____ (Microsoft Corporation) C:\windows\SysWOW64\biwinrt.dll
2017-02-19 13:18 - 2016-09-15 09:54 - 00498688 _____ (Microsoft Corporation) C:\windows\SysWOW64\mbsmsapi.dll
2017-02-19 13:18 - 2016-09-15 09:54 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredProvDataModel.dll
2017-02-19 13:18 - 2016-09-15 09:54 - 00262144 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Picker.dll
2017-02-19 13:18 - 2016-09-15 09:53 - 00314368 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Usb.dll
2017-02-19 13:18 - 2016-09-15 09:52 - 00445952 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprapi.dll
2017-02-19 13:18 - 2016-09-15 09:52 - 00238080 _____ (Microsoft Corporation) C:\windows\SysWOW64\AboveLockAppHost.dll
2017-02-19 13:18 - 2016-09-15 09:51 - 00288256 _____ (Microsoft Corporation) C:\windows\SysWOW64\CryptoWinRT.dll
2017-02-19 13:18 - 2016-09-15 09:49 - 00901120 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-02-19 13:18 - 2016-09-15 09:49 - 00653312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.AccountsControl.dll
2017-02-19 13:18 - 2016-09-15 09:47 - 00134656 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Energy.dll
2017-02-19 13:18 - 2016-09-15 09:46 - 00795648 _____ (Microsoft Corporation) C:\windows\SysWOW64\MiracastReceiver.dll
2017-02-19 13:18 - 2016-09-15 09:45 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\dlnashext.dll
2017-02-19 13:18 - 2016-09-15 09:43 - 00433664 _____ (Microsoft Corporation) C:\windows\SysWOW64\imapi2.dll
2017-02-19 13:18 - 2016-09-15 09:42 - 01220608 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Audio.dll
2017-02-19 13:18 - 2016-09-15 09:42 - 00545792 _____ (Microsoft Corporation) C:\windows\SysWOW64\uReFS.dll
2017-02-19 13:18 - 2016-09-15 09:40 - 00348160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Midi.dll
2017-02-19 13:18 - 2016-09-15 09:39 - 02740224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msftedit.dll
2017-02-19 13:18 - 2016-09-15 09:38 - 00654336 _____ (Microsoft Corporation) C:\windows\SysWOW64\MbaeApiPublic.dll
2017-02-19 13:18 - 2016-09-06 22:13 - 00640976 _____ (Microsoft Corporation) C:\windows\SysWOW64\evr.dll
2017-02-19 13:18 - 2016-09-06 22:13 - 00529928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2017-02-19 13:18 - 2016-09-06 22:12 - 00321792 _____ (Microsoft Corporation) C:\windows\SysWOW64\LockAppHost.exe
2017-02-19 13:18 - 2016-09-06 22:00 - 00009728 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2017-02-19 13:18 - 2016-09-06 22:00 - 00009216 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MosHost.dll
2017-02-19 13:18 - 2016-09-06 21:59 - 00409088 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosResource.dll
2017-02-19 13:18 - 2016-09-06 21:59 - 00110080 _____ (Microsoft Corporation) C:\windows\SysWOW64\Microsoft-Windows-MapControls.dll
2017-02-19 13:18 - 2016-09-06 21:59 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlStringsRes.dll
2017-02-19 13:18 - 2016-09-06 21:58 - 00058880 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosHostClient.dll
2017-02-19 13:18 - 2016-09-06 21:58 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2017-02-19 13:18 - 2016-09-06 21:57 - 00002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2017-02-19 13:18 - 2016-09-06 21:54 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2017-02-19 13:18 - 2016-09-06 21:53 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappgnui.dll
2017-02-19 13:18 - 2016-09-06 21:52 - 00536576 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingOnlineServices.dll
2017-02-19 13:18 - 2016-09-06 21:52 - 00289280 _____ (Microsoft Corporation) C:\windows\SysWOW64\NmaDirect.dll
2017-02-19 13:18 - 2016-09-06 21:52 - 00243712 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapp3hst.dll
2017-02-19 13:18 - 2016-09-06 21:50 - 00235008 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapphost.dll
2017-02-19 13:18 - 2016-09-06 21:47 - 00197120 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappcfg.dll
2017-02-19 13:18 - 2016-09-06 21:46 - 00575488 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2017-02-19 13:18 - 2016-09-06 21:39 - 00895488 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Streaming.dll
2017-02-19 13:18 - 2016-09-06 21:36 - 02423296 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSAJApi.dll
2017-02-19 13:18 - 2016-08-26 21:58 - 00121368 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfps.dll
2017-02-19 13:18 - 2016-08-26 21:43 - 00022528 _____ (Microsoft Corporation) C:\windows\SysWOW64\encapi.dll
2017-02-19 13:18 - 2016-08-19 22:34 - 00136032 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostUser.dll
2017-02-19 13:18 - 2016-08-19 22:14 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\C_G18030.DLL
2017-02-19 13:18 - 2016-08-19 22:14 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\C_IS2022.DLL
2017-02-19 13:18 - 2016-08-19 22:14 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\c_GSM7.DLL
2017-02-19 13:18 - 2016-08-05 21:03 - 01343928 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsrcsnk.dll
2017-02-19 13:18 - 2016-08-05 21:03 - 00036168 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2017-02-19 13:18 - 2016-08-05 20:50 - 02755584 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2017-02-19 13:18 - 2016-08-05 20:48 - 00009216 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2017-02-19 13:18 - 2016-08-05 20:48 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2017-02-19 13:18 - 2016-08-05 20:48 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2017-02-19 13:18 - 2016-08-05 20:46 - 09260032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2017-02-19 13:18 - 2016-08-05 20:45 - 00226304 _____ (Microsoft Corporation) C:\windows\SysWOW64\container.dll
2017-02-19 13:18 - 2016-08-05 20:45 - 00029696 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2017-02-19 13:18 - 2016-08-05 20:44 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2017-02-19 13:18 - 2016-08-05 20:28 - 00086016 _____ (Microsoft Corporation) C:\windows\SysWOW64\samlib.dll
2017-02-19 13:18 - 2016-08-05 20:21 - 00102400 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinelsa.dll
2017-02-19 13:09 - 2016-12-21 00:49 - 00328008 _____ (Microsoft Corporation) C:\windows\system32\Windows.Storage.ApplicationData.dll
2017-02-19 13:09 - 2016-12-09 03:15 - 08168000 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2017-02-19 13:09 - 2016-11-11 03:14 - 02186896 _____ (Microsoft Corporation) C:\windows\system32\hevcdecoder.dll
2017-02-19 13:09 - 2016-11-11 02:25 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryBroker.dll
2017-02-19 13:09 - 2016-11-11 02:24 - 00122880 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryClient.dll
2017-02-19 13:09 - 2016-11-11 02:24 - 00107520 _____ (Microsoft Corporation) C:\windows\system32\VPNv2CSP.dll
2017-02-19 13:09 - 2016-11-11 02:14 - 02104320 _____ (Microsoft Corporation) C:\windows\system32\wlidsvc.dll
2017-02-19 13:09 - 2016-11-11 02:05 - 04136448 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepository.dll
2017-02-19 13:09 - 2016-10-14 20:39 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\winhttp.dll
2017-02-19 13:09 - 2016-10-14 20:37 - 01643008 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.dll
2017-02-19 13:09 - 2016-10-05 02:18 - 01656832 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2017-02-19 13:09 - 2016-09-15 10:29 - 00081760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\stornvme.sys
2017-02-19 13:09 - 2016-09-15 10:29 - 00074080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vpci.sys
2017-02-19 13:09 - 2016-09-15 10:15 - 00130912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storahci.sys
2017-02-19 13:09 - 2016-09-15 09:46 - 00049664 _____ (Microsoft Corporation) C:\windows\system32\ffbroker.dll
2017-02-19 13:09 - 2016-09-15 09:43 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\cmintegrator.dll
2017-02-19 13:09 - 2016-09-15 09:42 - 00123904 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2017-02-19 13:09 - 2016-09-15 09:40 - 00467968 _____ (Microsoft Corporation) C:\windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-02-19 13:09 - 2016-09-15 09:40 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-02-19 13:09 - 2016-09-15 09:40 - 00082432 _____ (Microsoft Corporation) C:\windows\system32\Windows.System.UserDeviceAssociation.dll
2017-02-19 13:09 - 2016-09-15 09:39 - 00547840 _____ (Microsoft Corporation) C:\windows\system32\Windows.Gaming.Input.dll
2017-02-19 13:09 - 2016-09-15 09:38 - 00730112 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2017-02-19 13:09 - 2016-09-15 09:38 - 00205824 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2017-02-19 13:09 - 2016-09-15 09:37 - 01507840 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.FaceAnalysis.dll
2017-02-19 13:09 - 2016-09-15 09:37 - 00390144 _____ (Microsoft Corporation) C:\windows\system32\Search.ProtocolHandler.MAPI2.dll
2017-02-19 13:09 - 2016-09-15 09:36 - 00358912 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.dll
2017-02-19 13:09 - 2016-09-15 09:36 - 00349184 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2017-02-19 13:09 - 2016-09-15 09:35 - 01087488 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Vpn.dll
2017-02-19 13:09 - 2016-09-15 09:35 - 01060352 _____ (Microsoft Corporation) C:\windows\system32\AppContracts.dll
2017-02-19 13:09 - 2016-09-15 09:32 - 00634368 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2017-02-19 13:09 - 2016-09-15 09:24 - 01080320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Ocr.dll
2017-02-19 13:09 - 2016-09-15 09:23 - 03405824 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2017-02-19 13:09 - 2016-09-15 09:21 - 02538496 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2017-02-19 13:09 - 2016-09-15 09:20 - 02424320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Perception.dll
2017-02-19 13:09 - 2016-09-15 09:19 - 00903680 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2017-02-19 13:09 - 2016-08-19 22:08 - 00204288 _____ (Windows ® Win 7 DDK provider) C:\windows\system32\DscCoreConfProv.dll
2017-02-19 13:09 - 2016-08-05 20:44 - 00226816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2017-02-19 13:09 - 2016-08-05 20:43 - 00200704 _____ (Microsoft Corporation) C:\windows\system32\ClipboardServer.dll
2017-02-19 13:09 - 2016-08-05 20:35 - 00471552 _____ (Microsoft Corporation) C:\windows\system32\DscCore.dll
2017-02-19 13:09 - 2016-08-05 01:29 - 00568832 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.UXRes.dll
2017-02-19 13:08 - 2016-12-21 00:42 - 22224480 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2017-02-19 13:08 - 2016-12-21 00:41 - 01600632 _____ (Microsoft Corporation) C:\windows\system32\sppobjs.dll
2017-02-19 13:08 - 2016-12-21 00:14 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\LaunchWinApp.exe
2017-02-19 13:08 - 2016-12-21 00:09 - 00368640 _____ (Microsoft Corporation) C:\windows\system32\OneBackupHandler.dll
2017-02-19 13:08 - 2016-12-21 00:09 - 00363520 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BioFeedback.dll
2017-02-19 13:08 - 2016-12-21 00:08 - 00418304 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BlockedShutdown.dll
2017-02-19 13:08 - 2016-12-21 00:08 - 00360448 _____ (Microsoft Corporation) C:\windows\system32\rdpencom.dll
2017-02-19 13:08 - 2016-12-21 00:08 - 00289792 _____ (Microsoft Corporation) C:\windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-02-19 13:08 - 2016-12-21 00:08 - 00211968 _____ (Microsoft Corporation) C:\windows\system32\InstallAgent.exe
2017-02-19 13:08 - 2016-12-21 00:07 - 00748544 _____ (Microsoft Corporation) C:\windows\system32\StoreAgent.dll
2017-02-19 13:08 - 2016-12-21 00:06 - 00310784 _____ (Microsoft Corporation) C:\windows\system32\SyncSettings.dll
2017-02-19 13:08 - 2016-12-21 00:06 - 00260608 _____ (Microsoft Corporation) C:\windows\system32\InstallAgentUserBroker.exe
2017-02-19 13:08 - 2016-12-21 00:06 - 00147456 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2017-02-19 13:08 - 2016-12-21 00:05 - 00425984 _____ (Microsoft Corporation) C:\windows\system32\aadcloudap.dll
2017-02-19 13:08 - 2016-12-21 00:05 - 00049152 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Shell.dll
2017-02-19 13:08 - 2016-12-21 00:01 - 09131008 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll
2017-02-19 13:08 - 2016-12-20 23:59 - 01908224 _____ (Microsoft Corporation) C:\windows\system32\AzureSettingSyncProvider.dll
2017-02-19 13:08 - 2016-12-20 23:55 - 08129536 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2017-02-19 13:08 - 2016-12-20 23:55 - 04749312 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_nt.dll
2017-02-19 13:08 - 2016-12-20 23:51 - 08075776 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2017-02-19 13:08 - 2016-12-20 23:49 - 02691072 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Logon.dll
2017-02-19 13:08 - 2016-12-20 23:49 - 01062912 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncCore.dll
2017-02-19 13:08 - 2016-12-20 23:47 - 01121280 _____ (Microsoft Corporation) C:\windows\system32\aadtb.dll
2017-02-19 13:08 - 2016-12-13 22:23 - 00404832 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2017-02-19 13:08 - 2016-12-13 22:19 - 00584544 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncHost.exe
2017-02-19 13:08 - 2016-12-13 22:17 - 00319288 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2017-02-19 13:08 - 2016-12-13 22:14 - 01694712 _____ (Microsoft Corporation) C:\windows\system32\winmde.dll
2017-02-19 13:08 - 2016-12-13 21:46 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2017-02-19 13:08 - 2016-12-13 21:43 - 00201728 _____ (Microsoft Corporation) C:\windows\system32\ScDeviceEnum.dll
2017-02-19 13:08 - 2016-12-13 21:42 - 00352768 _____ (Microsoft Corporation) C:\windows\system32\cloudAP.dll
2017-02-19 13:08 - 2016-12-13 21:40 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\certprop.dll
2017-02-19 13:08 - 2016-12-13 21:39 - 00837632 _____ (Microsoft Corporation) C:\windows\system32\wbiosrvc.dll
2017-02-19 13:08 - 2016-12-13 21:39 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\updatehandlers.dll
2017-02-19 13:08 - 2016-12-13 21:37 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\updatepolicy.dll
2017-02-19 13:08 - 2016-12-13 21:36 - 01002496 _____ (Microsoft Corporation) C:\windows\system32\SRH.dll
2017-02-19 13:08 - 2016-12-13 21:36 - 00539648 _____ (Microsoft Corporation) C:\windows\system32\usocore.dll
2017-02-19 13:08 - 2016-12-13 21:26 - 00932864 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2017-02-19 13:08 - 2016-12-13 21:26 - 00869888 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2017-02-19 13:08 - 2016-12-13 21:25 - 02009600 _____ (Microsoft Corporation) C:\windows\system32\SRHInproc.dll
2017-02-19 13:08 - 2016-12-13 21:24 - 00673792 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2017-02-19 13:08 - 2016-12-13 21:23 - 03134976 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2017-02-19 13:08 - 2016-12-13 21:22 - 02317824 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2017-02-19 13:08 - 2016-12-13 21:22 - 01513472 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2017-02-19 13:08 - 2016-12-13 21:22 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\wuuhext.dll
2017-02-19 13:08 - 2016-12-13 21:21 - 03616768 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2017-02-19 13:08 - 2016-12-09 03:20 - 01738560 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2017-02-19 13:08 - 2016-12-09 03:19 - 01293152 _____ (Microsoft Corporation) C:\windows\system32\LicenseManager.dll
2017-02-19 13:08 - 2016-12-09 03:10 - 01461200 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2017-02-19 13:08 - 2016-12-09 02:27 - 00981504 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.OnlineId.dll
2017-02-19 13:08 - 2016-12-09 02:21 - 04746752 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2017-02-19 13:08 - 2016-12-09 02:20 - 00730624 _____ (Microsoft Corporation) C:\windows\system32\fveapi.dll
2017-02-19 13:08 - 2016-11-11 03:15 - 00198856 _____ (Microsoft Corporation) C:\windows\system32\wscapi.dll
2017-02-19 13:08 - 2016-11-11 03:15 - 00101216 _____ (Microsoft Corporation) C:\windows\system32\DeviceReactivation.dll
2017-02-19 13:08 - 2016-11-11 03:02 - 00360040 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsAdminFlows.exe
2017-02-19 13:08 - 2016-11-11 03:01 - 01859264 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2017-02-19 13:08 - 2016-11-11 03:00 - 00223584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2017-02-19 13:08 - 2016-11-11 02:55 - 00882680 _____ (Microsoft Corporation) C:\windows\system32\EditionUpgradeManagerObj.dll
2017-02-19 13:08 - 2016-11-11 02:54 - 01418312 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2017-02-19 13:08 - 2016-11-11 02:26 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\Drivers\modem.sys
2017-02-19 13:08 - 2016-11-11 02:26 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\ReAgentc.exe
2017-02-19 13:08 - 2016-11-11 02:24 - 00158720 _____ (Microsoft Corporation) C:\windows\system32\VEStoreEventHandlers.dll
2017-02-19 13:08 - 2016-11-11 02:24 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sendmail.dll
2017-02-19 13:08 - 2016-11-11 02:23 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnr.dll
2017-02-19 13:08 - 2016-11-11 02:23 - 00058880 _____ (Microsoft Corporation) C:\windows\system32\Windows.Shell.Search.UriHandler.dll
2017-02-19 13:08 - 2016-11-11 02:20 - 00641024 _____ (Microsoft Corporation) C:\windows\system32\ngccredprov.dll
2017-02-19 13:08 - 2016-11-11 02:20 - 00590336 _____ (Microsoft Corporation) C:\windows\system32\efswrt.dll
2017-02-19 13:08 - 2016-11-11 02:20 - 00574464 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_StorageSense.dll
2017-02-19 13:08 - 2016-11-11 02:20 - 00381952 _____ (Microsoft Corporation) C:\windows\system32\cryptngc.dll
2017-02-19 13:08 - 2016-11-11 02:19 - 00495104 _____ (Microsoft Corporation) C:\windows\system32\DataSenseHandlers.dll
2017-02-19 13:08 - 2016-11-11 02:19 - 00388096 _____ (Microsoft Corporation) C:\windows\system32\zipfldr.dll
2017-02-19 13:08 - 2016-11-11 02:19 - 00366080 _____ (Microsoft Corporation) C:\windows\system32\SearchFolder.dll
2017-02-19 13:08 - 2016-11-11 02:19 - 00320000 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-02-19 13:08 - 2016-11-11 02:16 - 02716672 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2017-02-19 13:08 - 2016-11-11 02:16 - 01477632 _____ (Microsoft Corporation) C:\windows\system32\wsecedit.dll
2017-02-19 13:08 - 2016-11-11 02:16 - 00184832 _____ (Microsoft Corporation) C:\windows\system32\wscsvc.dll
2017-02-19 13:08 - 2016-11-11 02:16 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\EditionUpgradeHelper.dll
2017-02-19 13:08 - 2016-11-11 02:15 - 00282624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2017-02-19 13:08 - 2016-11-11 02:15 - 00032256 _____ (Microsoft Corporation) C:\windows\system32\WSManHTTPConfig.exe
2017-02-19 13:08 - 2016-11-11 02:14 - 00713216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2017-02-19 13:08 - 2016-11-11 02:13 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\StorSvc.dll
2017-02-19 13:08 - 2016-11-11 02:11 - 00096256 _____ (Microsoft Corporation) C:\windows\system32\umpoext.dll
2017-02-19 13:08 - 2016-11-11 02:07 - 02510848 _____ (Microsoft Corporation) C:\windows\system32\NetworkMobileSettings.dll
2017-02-19 13:08 - 2016-11-11 02:05 - 02852864 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-02-19 13:08 - 2016-11-11 02:04 - 01709056 _____ (Microsoft Corporation) C:\windows\system32\UIAutomationCore.dll
2017-02-19 13:08 - 2016-11-11 02:04 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\usercpl.dll
2017-02-19 13:08 - 2016-11-11 02:04 - 00909312 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Search.dll
2017-02-19 13:08 - 2016-11-11 02:04 - 00691712 _____ (Microsoft Corporation) C:\windows\system32\lsm.dll
2017-02-19 13:08 - 2016-11-11 02:04 - 00389632 _____ (Microsoft Corporation) C:\windows\system32\stobject.dll
2017-02-19 13:08 - 2016-11-11 02:03 - 00283648 _____ (Microsoft Corporation) C:\windows\system32\wkssvc.dll
2017-02-19 13:08 - 2016-11-11 02:02 - 01726976 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2017-02-19 13:08 - 2016-11-02 04:13 - 00423776 _____ (Microsoft Corporation) C:\windows\system32\wifitask.exe
2017-02-19 13:08 - 2016-11-02 03:56 - 00322912 _____ (Microsoft Corporation) C:\windows\system32\input.dll
2017-02-19 13:08 - 2016-11-02 03:31 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2017-02-19 13:08 - 2016-11-02 03:28 - 00252928 _____ (Microsoft Corporation) C:\windows\system32\ubpm.dll
2017-02-19 13:08 - 2016-11-02 03:28 - 00240640 _____ (Microsoft Corporation) C:\windows\system32\NetworkDesktopSettings.dll
2017-02-19 13:08 - 2016-11-02 03:27 - 01388544 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Cred.dll
2017-02-19 13:08 - 2016-11-02 03:27 - 00545792 _____ (Microsoft Corporation) C:\windows\system32\timedate.cpl
2017-02-19 13:08 - 2016-11-02 03:26 - 00273920 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2017-02-19 13:08 - 2016-11-02 03:25 - 00655872 _____ (Microsoft Corporation) C:\windows\system32\sud.dll
2017-02-19 13:08 - 2016-11-02 03:25 - 00541696 _____ (Microsoft Corporation) C:\windows\system32\ipnathlp.dll
2017-02-19 13:08 - 2016-11-02 03:25 - 00496128 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.UserAccountsHandlers.dll
2017-02-19 13:08 - 2016-11-02 03:18 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2017-02-19 13:08 - 2016-11-02 03:17 - 01282048 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2017-02-19 13:08 - 2016-11-02 03:16 - 02512384 _____ (Microsoft Corporation) C:\windows\system32\themecpl.dll
2017-02-19 13:08 - 2016-11-02 03:15 - 01348608 _____ (Microsoft Corporation) C:\windows\system32\wifinetworkmanager.dll
2017-02-19 13:08 - 2016-11-02 03:15 - 00483328 _____ (Microsoft Corporation) C:\windows\system32\twinapi.dll
2017-02-19 13:08 - 2016-11-02 03:13 - 03496960 _____ (Microsoft Corporation) C:\windows\system32\MSVidCtl.dll
2017-02-19 13:08 - 2016-11-02 03:13 - 03299840 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2017-02-19 13:08 - 2016-11-02 01:20 - 00446896 _____ C:\windows\system32\ApnDatabase.xml
2017-02-19 13:08 - 2016-10-14 21:41 - 05622088 _____ (Microsoft Corporation) C:\windows\system32\sppsvc.exe
2017-02-19 13:08 - 2016-10-14 21:38 - 00409952 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2017-02-19 13:08 - 2016-10-14 21:30 - 00509280 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys
2017-02-19 13:08 - 2016-10-14 21:30 - 00341936 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2017-02-19 13:08 - 2016-10-14 21:26 - 00691080 _____ (Microsoft Corporation) C:\windows\system32\msvproc.dll
2017-02-19 13:08 - 2016-10-14 21:21 - 02537824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2017-02-19 13:08 - 2016-10-14 21:21 - 00584032 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2017-02-19 13:08 - 2016-10-14 21:00 - 00323584 _____ (Microsoft Corporation) C:\windows\system32\twinui.pcshell.dll
2017-02-19 13:08 - 2016-10-14 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2017-02-19 13:08 - 2016-10-14 20:57 - 00186880 _____ (Microsoft Corporation) C:\windows\system32\MusNotification.exe
2017-02-19 13:08 - 2016-10-14 20:55 - 00236544 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_Flights.dll
2017-02-19 13:08 - 2016-10-14 20:54 - 00717312 _____ (Microsoft Corporation) C:\windows\system32\taskbarcpl.dll
2017-02-19 13:08 - 2016-10-14 20:54 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\TpmTasks.dll
2017-02-19 13:08 - 2016-10-14 20:52 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\MusUpdateHandlers.dll
2017-02-19 13:08 - 2016-10-14 20:50 - 00509440 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_Bluetooth.dll
2017-02-19 13:08 - 2016-10-14 20:50 - 00438784 _____ (Microsoft Corporation) C:\windows\system32\EncDec.dll
2017-02-19 13:08 - 2016-10-14 20:49 - 01913344 _____ (Microsoft Corporation) C:\windows\system32\wsp_fs.dll
2017-02-19 13:08 - 2016-10-14 20:48 - 01554944 _____ (Microsoft Corporation) C:\windows\system32\wsp_health.dll
2017-02-19 13:08 - 2016-10-14 20:46 - 03287552 _____ (Microsoft Corporation) C:\windows\system32\mispace.dll
2017-02-19 13:08 - 2016-10-14 20:37 - 01980416 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2017-02-19 13:08 - 2016-10-05 03:33 - 00128864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tm.sys
2017-02-19 13:08 - 2016-10-05 02:38 - 00584192 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2017-02-19 13:08 - 2016-10-05 02:38 - 00237568 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Diagnostics.dll
2017-02-19 13:08 - 2016-10-05 02:35 - 00196096 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.dll
2017-02-19 13:08 - 2016-10-05 02:35 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.Ngc.dll
2017-02-19 13:08 - 2016-10-05 02:31 - 00748544 _____ (Microsoft Corporation) C:\windows\system32\ChatApis.dll
2017-02-19 13:08 - 2016-10-05 02:31 - 00561664 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2017-02-19 13:08 - 2016-10-05 02:31 - 00480768 _____ (Microsoft Corporation) C:\windows\system32\dsreg.dll
2017-02-19 13:08 - 2016-10-05 02:29 - 01145856 _____ (Microsoft Corporation) C:\windows\system32\EmailApis.dll
2017-02-19 13:08 - 2016-10-05 02:28 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\GamePanel.exe
2017-02-19 13:08 - 2016-10-05 02:26 - 00590848 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2017-02-19 13:08 - 2016-10-05 02:20 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2017-02-19 13:08 - 2016-10-05 02:19 - 02390016 _____ (Microsoft Corporation) C:\windows\system32\smartscreen.exe
2017-02-19 13:08 - 2016-10-05 02:18 - 00983040 _____ (Microsoft Corporation) C:\windows\system32\ngcsvc.dll
2017-02-19 13:08 - 2016-10-05 02:17 - 02914304 _____ (Microsoft Corporation) C:\windows\system32\CertEnroll.dll
2017-02-19 13:08 - 2016-10-05 02:16 - 00771072 _____ (Microsoft Corporation) C:\windows\system32\AppointmentApis.dll
2017-02-19 13:08 - 2016-10-05 02:16 - 00765440 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Sensors.dll
2017-02-19 13:08 - 2016-10-05 02:15 - 00774656 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.dll
2017-02-19 13:08 - 2016-10-05 02:14 - 01013760 _____ (Microsoft Corporation) C:\windows\system32\ContactApis.dll
2017-02-19 13:08 - 2016-10-05 02:13 - 01328128 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Http.dll
2017-02-19 13:08 - 2016-10-05 02:12 - 00998912 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2017-02-19 13:08 - 2016-09-15 10:30 - 00354264 _____ (Microsoft Corporation) C:\windows\system32\systemreset.exe
2017-02-19 13:08 - 2016-09-15 10:29 - 01117024 _____ (Microsoft Corporation) C:\windows\system32\ReAgent.dll
2017-02-19 13:08 - 2016-09-15 10:29 - 00424640 _____ (Microsoft Corporation) C:\windows\system32\ws2_32.dll
2017-02-19 13:08 - 2016-09-15 10:29 - 00218008 _____ (Microsoft Corporation) C:\windows\system32\LsaIso.exe
2017-02-19 13:08 - 2016-09-15 10:25 - 00280472 _____ (Microsoft Corporation) C:\windows\system32\bdeunlock.exe
2017-02-19 13:08 - 2016-09-15 10:21 - 01000288 _____ (Microsoft Corporation) C:\windows\system32\SecConfig.efi
2017-02-19 13:08 - 2016-09-15 10:16 - 01157000 _____ (Microsoft Corporation) C:\windows\system32\twinapi.appcore.dll
2017-02-19 13:08 - 2016-09-15 10:16 - 00527808 _____ (Microsoft Corporation) C:\windows\system32\WWanAPI.dll
2017-02-19 13:08 - 2016-09-15 10:15 - 00649568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fvevol.sys
2017-02-19 13:08 - 2016-09-15 09:44 - 00118784 _____ (Microsoft Corporation) C:\windows\system32\UserDataTimeUtil.dll
2017-02-19 13:08 - 2016-09-15 09:42 - 00492544 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2017-02-19 13:08 - 2016-09-15 09:41 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\unimdm.tsp
2017-02-19 13:08 - 2016-09-15 09:41 - 00259072 _____ (Microsoft Corporation) C:\windows\system32\Family.SyncEngine.dll
2017-02-19 13:08 - 2016-09-15 09:41 - 00156160 _____ (Microsoft Corporation) C:\windows\system32\Family.Client.dll
2017-02-19 13:08 - 2016-09-15 09:41 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\Family.Authentication.dll
2017-02-19 13:08 - 2016-09-15 09:38 - 00573952 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnrGidsHandler.dll
2017-02-19 13:08 - 2016-09-15 09:38 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\PimIndexMaintenance.dll
2017-02-19 13:08 - 2016-09-15 09:37 - 00680448 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2017-02-19 13:08 - 2016-09-15 09:37 - 00296448 _____ (Microsoft Corporation) C:\windows\system32\wlancfg.dll
2017-02-19 13:08 - 2016-09-15 09:37 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Scanners.dll
2017-02-19 13:08 - 2016-09-15 09:36 - 00686592 _____ (Microsoft Corporation) C:\windows\system32\dsregcmd.exe
2017-02-19 13:08 - 2016-09-15 09:36 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\fveapibase.dll
2017-02-19 13:08 - 2016-09-15 09:35 - 01013248 _____ (Microsoft Corporation) C:\windows\system32\XblAuthManager.dll
2017-02-19 13:08 - 2016-09-15 09:35 - 00538112 _____ (Microsoft Corporation) C:\windows\system32\sppcext.dll
2017-02-19 13:08 - 2016-09-15 09:35 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\SensorService.dll
2017-02-19 13:08 - 2016-09-15 09:35 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\easwrt.dll
2017-02-19 13:08 - 2016-09-15 09:34 - 00642048 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.InkControls.dll
2017-02-19 13:08 - 2016-09-15 09:34 - 00560640 _____ (Microsoft Corporation) C:\windows\system32\webio.dll
2017-02-19 13:08 - 2016-09-15 09:33 - 00966144 _____ (Microsoft Corporation) C:\windows\system32\sbe.dll
2017-02-19 13:08 - 2016-09-15 09:33 - 00963584 _____ (Microsoft Corporation) C:\windows\system32\WebcamUi.dll
2017-02-19 13:08 - 2016-09-15 09:32 - 00361472 _____ (Microsoft Corporation) C:\windows\system32\bdesvc.dll
2017-02-19 13:08 - 2016-09-15 09:30 - 00175616 _____ (Microsoft Corporation) C:\windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-02-19 13:08 - 2016-09-15 09:29 - 01082368 _____ (Microsoft Corporation) C:\windows\system32\reseteng.dll
2017-02-19 13:08 - 2016-09-15 09:29 - 00329728 _____ (Microsoft Corporation) C:\windows\system32\fvecpl.dll
2017-02-19 13:08 - 2016-09-15 09:27 - 02860032 _____ (Microsoft Corporation) C:\windows\system32\storagewmi.dll
2017-02-19 13:08 - 2016-09-15 09:27 - 00796672 _____ (Microsoft Corporation) C:\windows\system32\fvewiz.dll
2017-02-19 13:08 - 2016-09-15 09:27 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\SpaceControl.dll
2017-02-19 13:08 - 2016-09-15 09:27 - 00279040 _____ (Microsoft Corporation) C:\windows\system32\fveui.dll
2017-02-19 13:08 - 2016-09-15 09:27 - 00211968 _____ (Microsoft Corporation) C:\windows\system32\manage-bde.exe
2017-02-19 13:08 - 2016-09-15 09:27 - 00171008 _____ (Microsoft Corporation) C:\windows\system32\fvenotify.exe
2017-02-19 13:08 - 2016-09-15 09:27 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\Sens.dll
2017-02-19 13:08 - 2016-09-15 09:26 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\BitLockerDeviceEncryption.exe
2017-02-19 13:08 - 2016-09-15 09:26 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\bdeui.dll
2017-02-19 13:08 - 2016-09-15 09:25 - 00947200 _____ (Microsoft Corporation) C:\windows\system32\wsp_sr.dll
2017-02-19 13:08 - 2016-09-15 09:24 - 04596224 _____ (Microsoft Corporation) C:\windows\system32\xpsrchvw.exe
2017-02-19 13:08 - 2016-09-15 09:24 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Web.Core.dll
2017-02-19 13:08 - 2016-09-15 09:23 - 01361408 _____ (Microsoft Corporation) C:\windows\system32\SharedStartModel.dll
2017-02-19 13:08 - 2016-09-15 09:21 - 00971264 _____ (Microsoft Corporation) C:\windows\system32\twinui.appcore.dll
2017-02-19 13:08 - 2016-09-15 09:21 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.dll
2017-02-19 13:08 - 2016-09-15 09:20 - 01535488 _____ (Microsoft Corporation) C:\windows\system32\SpeechPal.dll
2017-02-19 13:08 - 2016-09-15 09:20 - 01266176 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Input.Inking.dll
2017-02-19 13:08 - 2016-09-15 09:20 - 00875520 _____ (Microsoft Corporation) C:\windows\system32\TokenBroker.dll
2017-02-19 13:08 - 2016-09-15 09:19 - 01424896 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Maps.dll
2017-02-19 13:08 - 2016-09-15 09:18 - 01369088 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Phone.dll
2017-02-19 13:08 - 2016-09-15 09:16 - 01817088 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.dll
2017-02-19 13:08 - 2016-09-15 09:16 - 00531456 _____ (Microsoft Corporation) C:\windows\system32\TpmCoreProvisioning.dll
2017-02-19 13:08 - 2016-09-15 09:16 - 00387072 _____ (Microsoft Corporation) C:\windows\system32\SessEnv.dll
2017-02-19 13:08 - 2016-09-15 09:16 - 00035328 _____ (Microsoft Corporation) C:\windows\system32\spaceman.exe
2017-02-19 13:08 - 2016-09-06 22:44 - 02049480 _____ (Microsoft Corporation) C:\windows\system32\wmpmde.dll
2017-02-19 13:08 - 2016-09-06 22:34 - 00857440 _____ (Microsoft Corporation) C:\windows\system32\WWAHost.exe
2017-02-19 13:08 - 2016-09-06 22:33 - 00450392 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2017-02-19 13:08 - 2016-09-06 22:03 - 00008192 _____ (Microsoft Corporation) C:\windows\system32\UserDataAccessRes.dll
2017-02-19 13:08 - 2016-09-06 22:02 - 00045568 _____ (Microsoft Corporation) C:\windows\system32\UserDataTypeHelperUtil.dll
2017-02-19 13:08 - 2016-09-06 22:02 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\UserDataLanguageUtil.dll
2017-02-19 13:08 - 2016-09-06 22:02 - 00023552 _____ (Microsoft Corporation) C:\windows\system32\ExtrasXmlParser.dll
2017-02-19 13:08 - 2016-09-06 22:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\PhoneutilRes.dll
2017-02-19 13:08 - 2016-09-06 22:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\PhoneServiceRes.dll
2017-02-19 13:08 - 2016-09-06 22:01 - 00137728 _____ (Microsoft Corporation) C:\windows\system32\wificonnapi.dll
2017-02-19 13:08 - 2016-09-06 22:01 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\AddressParser.dll
2017-02-19 13:08 - 2016-09-06 22:01 - 00065024 _____ (Microsoft Corporation) C:\windows\system32\POSyncServices.dll
2017-02-19 13:08 - 2016-09-06 21:59 - 00263680 _____ (Microsoft Corporation) C:\windows\system32\ExSMime.dll
2017-02-19 13:08 - 2016-09-06 21:59 - 00064512 _____ (Microsoft Corporation) C:\windows\system32\UserDataPlatformHelperUtil.dll
2017-02-19 13:08 - 2016-09-06 21:59 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\ContactActivation.dll
2017-02-19 13:08 - 2016-09-06 21:58 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\VCardParser.dll
2017-02-19 13:08 - 2016-09-06 21:58 - 00133632 _____ (Microsoft Corporation) C:\windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-02-19 13:08 - 2016-09-06 21:56 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\AppointmentActivation.dll
2017-02-19 13:08 - 2016-09-06 21:55 - 06574592 _____ (Microsoft Corporation) C:\windows\system32\wwanmm.dll
2017-02-19 13:08 - 2016-09-06 21:55 - 00781824 _____ (Microsoft Corporation) C:\windows\system32\PhoneService.dll
2017-02-19 13:08 - 2016-09-06 21:54 - 00805888 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2017-02-19 13:08 - 2016-09-06 21:54 - 00678912 _____ (Microsoft Corporation) C:\windows\system32\PhoneProviders.dll
2017-02-19 13:08 - 2016-09-06 21:54 - 00468992 _____ (Microsoft Corporation) C:\windows\system32\wwanconn.dll
2017-02-19 13:08 - 2016-09-06 21:54 - 00315904 _____ (Microsoft Corporation) C:\windows\system32\Phoneutil.dll
2017-02-19 13:08 - 2016-09-06 21:53 - 00526848 _____ (Microsoft Corporation) C:\windows\system32\OneDriveSettingSyncProvider.dll
2017-02-19 13:08 - 2016-09-06 21:49 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2017-02-19 13:08 - 2016-09-06 21:45 - 00248320 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2017-02-19 13:08 - 2016-09-06 21:40 - 01312768 _____ (Microsoft Corporation) C:\windows\system32\SensorDataService.exe
2017-02-19 13:08 - 2016-09-06 21:39 - 05384192 _____ (Microsoft) C:\windows\system32\dbgeng.dll
2017-02-19 13:08 - 2016-09-06 21:38 - 01555456 _____ (Microsoft Corporation) C:\windows\system32\WMPDMC.exe
2017-02-19 13:08 - 2016-09-06 21:37 - 00540160 _____ (Microsoft Corporation) C:\windows\system32\SettingSync.dll
2017-02-19 13:08 - 2016-09-06 21:35 - 00650240 _____ (Microsoft) C:\windows\system32\DbgModel.dll
2017-02-19 13:08 - 2016-08-19 22:20 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\wwanprotdim.dll
2017-02-19 13:08 - 2016-08-19 22:17 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\LicenseManagerSvc.dll
2017-02-19 13:08 - 2016-08-19 22:12 - 00476672 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2017-02-19 13:08 - 2016-08-19 22:06 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\storagewmi_passthru.dll
2017-02-19 13:08 - 2016-08-19 22:04 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\delegatorprovider.dll
2017-02-19 13:08 - 2016-08-05 21:31 - 00041824 _____ (Microsoft Corporation) C:\windows\system32\SysResetErr.exe
2017-02-19 13:08 - 2016-08-05 21:16 - 00026408 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2017-02-19 13:08 - 2016-08-05 21:15 - 00408600 _____ (Microsoft Corporation) C:\windows\system32\tsmf.dll
2017-02-19 13:08 - 2016-08-05 20:48 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2017-02-19 13:08 - 2016-08-05 20:48 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.exe
2017-02-19 13:08 - 2016-08-05 20:46 - 00057344 _____ (Microsoft Corporation) C:\windows\system32\WinBioDataModelOOBE.exe
2017-02-19 13:08 - 2016-08-05 20:45 - 00049664 _____ (Microsoft Corporation) C:\windows\system32\StorageUsage.dll
2017-02-19 13:08 - 2016-08-05 20:45 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\netiougc.exe
2017-02-19 13:08 - 2016-08-05 20:43 - 00280064 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_WorkAccess.dll
2017-02-19 13:08 - 2016-08-05 20:41 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\WinBioDataModel.dll
2017-02-19 13:08 - 2016-08-05 20:40 - 00234496 _____ (Microsoft Corporation) C:\windows\system32\tcpipcfg.dll
2017-02-19 13:08 - 2016-08-05 20:40 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncPolicy.dll
2017-02-19 13:08 - 2016-08-05 20:34 - 00023552 _____ (Microsoft Corporation) C:\windows\system32\smphost.dll
2017-02-19 13:08 - 2016-08-05 20:23 - 00520192 _____ (Microsoft Corporation) C:\windows\system32\w32time.dll
2017-02-19 13:08 - 2016-08-05 02:14 - 01066328 _____ (Microsoft Corporation) C:\windows\system32\pidgenx.dll
2017-02-19 13:08 - 2016-08-05 02:05 - 00665768 _____ (Microsoft Corporation) C:\windows\system32\GenValObj.exe
2017-02-19 13:08 - 2016-08-05 01:28 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\slcext.dll
2017-02-19 13:08 - 2016-08-05 01:22 - 00138240 _____ (Microsoft Corporation) C:\windows\system32\sppc.dll
2017-02-19 13:08 - 2016-08-05 01:08 - 00135168 _____ (Microsoft Corporation) C:\windows\system32\slc.dll
2017-02-19 13:08 - 2016-08-02 01:44 - 00114192 _____ (Microsoft Corporation) C:\windows\system32\win32u.dll
2017-02-19 13:08 - 2016-08-02 01:21 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\Chakrathunk.dll
2017-02-19 13:08 - 2016-08-02 01:15 - 00231424 _____ (Microsoft Corporation) C:\windows\system32\shutdownux.dll
2017-02-19 13:08 - 2016-08-02 01:13 - 01081856 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2017-02-19 13:07 - 2016-12-21 01:08 - 00136032 _____ (Microsoft Corporation) C:\windows\system32\ImplatSetup.dll
2017-02-19 13:07 - 2016-12-21 01:04 - 07816032 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2017-02-19 13:07 - 2016-12-21 00:46 - 00624048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2017-02-19 13:07 - 2016-12-21 00:43 - 04130440 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2017-02-19 13:07 - 2016-12-21 00:43 - 01454504 _____ (Microsoft Corporation) C:\windows\system32\mfnetsrc.dll
2017-02-19 13:07 - 2016-12-21 00:43 - 01071736 _____ (Microsoft Corporation) C:\windows\system32\mfnetcore.dll
2017-02-19 13:07 - 2016-12-21 00:43 - 00092512 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2017-02-19 13:07 - 2016-12-21 00:42 - 01988560 _____ (Microsoft Corporation) C:\windows\system32\mfmp4srcsnk.dll
2017-02-19 13:07 - 2016-12-21 00:42 - 01702392 _____ (Microsoft Corporation) C:\windows\system32\mfasfsrcsnk.dll
2017-02-19 13:07 - 2016-12-21 00:42 - 01300600 _____ (Microsoft Corporation) C:\windows\system32\mfmpeg2srcsnk.dll
2017-02-19 13:07 - 2016-12-21 00:13 - 00119808 _____ (Microsoft Corporation) C:\windows\system32\KnobsCsp.dll
2017-02-19 13:07 - 2016-12-21 00:12 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\ProvPluginEng.dll
2017-02-19 13:07 - 2016-12-21 00:10 - 00234496 _____ (Microsoft Corporation) C:\windows\system32\KnobsCore.dll
2017-02-19 13:07 - 2016-12-21 00:08 - 01292288 _____ (Microsoft Corporation) C:\windows\system32\MSVPXENC.dll
2017-02-19 13:07 - 2016-12-21 00:08 - 00349184 _____ (Microsoft Corporation) C:\windows\system32\provengine.dll
2017-02-19 13:07 - 2016-12-21 00:06 - 06285312 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll
2017-02-19 13:07 - 2016-12-20 23:56 - 00947712 _____ (Microsoft Corporation) C:\windows\system32\MSVP9DEC.dll
2017-02-19 13:07 - 2016-12-20 23:56 - 00936960 _____ (Microsoft Corporation) C:\windows\system32\MCRecvSrc.dll
2017-02-19 13:07 - 2016-12-20 23:53 - 06664192 _____ (Microsoft Corporation) C:\windows\system32\mspaint.exe
2017-02-19 13:07 - 2016-12-20 23:50 - 01490432 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2017-02-19 13:07 - 2016-12-20 23:49 - 04149248 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2017-02-19 13:07 - 2016-12-13 22:34 - 02482280 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2017-02-19 13:07 - 2016-12-13 21:42 - 00236544 _____ (Microsoft Corporation) C:\windows\system32\WinSCard.dll
2017-02-19 13:07 - 2016-12-13 21:22 - 00707584 _____ (Microsoft Corporation) C:\windows\system32\LogonController.dll
2017-02-19 13:07 - 2016-12-09 03:27 - 00172528 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2017-02-19 13:07 - 2016-12-09 03:20 - 02189664 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2017-02-19 13:07 - 2016-12-09 03:20 - 00658784 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms2.sys
2017-02-19 13:07 - 2016-12-09 03:20 - 00402272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2017-02-19 13:07 - 2016-12-09 02:42 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\cdd.dll
2017-02-19 13:07 - 2016-12-09 02:33 - 03777536 _____ (Microsoft Corporation) C:\windows\system32\MFMediaEngine.dll
2017-02-19 13:07 - 2016-12-09 02:20 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\mdmregistration.dll
2017-02-19 13:07 - 2016-11-11 03:13 - 02213760 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2017-02-19 13:07 - 2016-11-11 03:13 - 01886344 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2017-02-19 13:07 - 2016-11-11 03:12 - 00128352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\partmgr.sys
2017-02-19 13:07 - 2016-11-11 03:08 - 00142176 _____ (Microsoft Corporation) C:\windows\system32\migisol.dll
2017-02-19 13:07 - 2016-11-11 03:01 - 07219672 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll
2017-02-19 13:07 - 2016-11-11 02:59 - 00433504 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdbss.sys
2017-02-19 13:07 - 2016-11-11 02:57 - 01473048 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2017-02-19 13:07 - 2016-11-11 02:56 - 01062480 _____ (Microsoft Corporation) C:\windows\system32\mfsvr.dll
2017-02-19 13:07 - 2016-11-11 02:56 - 00424616 _____ (Microsoft Corporation) C:\windows\system32\MFPlay.dll
2017-02-19 13:07 - 2016-11-11 02:56 - 00163752 _____ (Microsoft Corporation) C:\windows\system32\RTWorkQ.dll
2017-02-19 13:07 - 2016-11-11 02:56 - 00126568 _____ (Microsoft Corporation) C:\windows\system32\mfaudiocnv.dll
2017-02-19 13:07 - 2016-11-11 02:55 - 00743224 _____ (Microsoft Corporation) C:\windows\system32\sppwinob.dll
2017-02-19 13:07 - 2016-11-11 02:51 - 00454592 _____ (Microsoft Corporation) C:\windows\system32\services.exe
2017-02-19 13:07 - 2016-11-11 02:31 - 00366080 _____ (Microsoft Corporation) C:\windows\system32\RDXTaskFactory.dll
2017-02-19 13:07 - 2016-11-11 02:27 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\NetCfgNotifyObjectHost.exe
2017-02-19 13:07 - 2016-11-11 02:27 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\lpremove.exe
2017-02-19 13:07 - 2016-11-11 02:25 - 00151040 _____ (Microsoft Corporation) C:\windows\system32\MapsBtSvc.dll
2017-02-19 13:07 - 2016-11-11 02:25 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\MosStorage.dll
2017-02-19 13:07 - 2016-11-11 02:24 - 00110080 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-02-19 13:07 - 2016-11-11 02:22 - 00489472 _____ (Microsoft Corporation) C:\windows\system32\NetSetupShim.dll
2017-02-19 13:07 - 2016-11-11 02:22 - 00082944 _____ (Microsoft Corporation) C:\windows\system32\moshost.dll
2017-02-19 13:07 - 2016-11-11 02:21 - 00587776 _____ (Microsoft Corporation) C:\windows\system32\vpnike.dll
2017-02-19 13:07 - 2016-11-11 02:21 - 00313856 _____ (Microsoft Corporation) C:\windows\system32\moshostcore.dll
2017-02-19 13:07 - 2016-11-11 02:20 - 00657920 _____ (Microsoft Corporation) C:\windows\system32\rasmans.dll
2017-02-19 13:07 - 2016-11-11 02:20 - 00446976 _____ (Microsoft Corporation) C:\windows\system32\MapConfiguration.dll
2017-02-19 13:07 - 2016-11-11 02:18 - 00278016 _____ (Microsoft Corporation) C:\windows\system32\netplwiz.dll
2017-02-19 13:07 - 2016-11-11 02:17 - 01220096 _____ (Microsoft Corporation) C:\windows\system32\wscui.cpl
2017-02-19 13:07 - 2016-11-11 02:17 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\ProvSysprep.dll
2017-02-19 13:07 - 2016-11-11 02:16 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\RjvMDMConfig.dll
2017-02-19 13:07 - 2016-11-11 02:15 - 00159232 _____ (Microsoft Corporation) C:\windows\system32\wscinterop.dll
2017-02-19 13:07 - 2016-11-11 02:14 - 07654400 _____ (Microsoft Corporation) C:\windows\system32\mos.dll
2017-02-19 13:07 - 2016-11-11 02:14 - 00615424 _____ (Microsoft Corporation) C:\windows\system32\wpnprv.dll
2017-02-19 13:07 - 2016-11-11 02:14 - 00178176 _____ (Microsoft Corporation) C:\windows\system32\sppnp.dll
2017-02-19 13:07 - 2016-11-11 02:13 - 07812096 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll
2017-02-19 13:07 - 2016-11-11 02:11 - 00870400 _____ (Microsoft Corporation) C:\windows\system32\mfmkvsrcsnk.dll
2017-02-19 13:07 - 2016-11-11 02:09 - 01366016 _____ (Microsoft Corporation) C:\windows\system32\wpncore.dll
2017-02-19 13:07 - 2016-11-11 02:08 - 00539136 _____ (Microsoft Corporation) C:\windows\system32\PlayToManager.dll
2017-02-19 13:07 - 2016-11-11 02:07 - 03441152 _____ (Microsoft Corporation) C:\windows\system32\MapRouter.dll
2017-02-19 13:07 - 2016-11-11 02:07 - 02953216 _____ (Microsoft Corporation) C:\windows\system32\MapGeocoder.dll
2017-02-19 13:07 - 2016-11-11 02:07 - 01060864 _____ (Microsoft Corporation) C:\windows\system32\JpMapControl.dll
2017-02-19 13:07 - 2016-11-11 02:07 - 00347648 _____ (Microsoft Corporation) C:\windows\system32\rascustom.dll
2017-02-19 13:07 - 2016-11-11 02:06 - 03400192 _____ (Microsoft Corporation) C:\windows\system32\SyncCenter.dll
2017-02-19 13:07 - 2016-11-11 02:06 - 00960000 _____ (Microsoft Corporation) C:\windows\system32\modernexecserver.dll
2017-02-19 13:07 - 2016-11-11 02:06 - 00650752 _____ (Microsoft Corporation) C:\windows\system32\RDXService.dll
2017-02-19 13:07 - 2016-11-11 02:05 - 01031680 _____ (Microsoft Corporation) C:\windows\system32\MapsStore.dll
2017-02-19 13:07 - 2016-11-11 02:04 - 02800128 _____ (Microsoft Corporation) C:\windows\system32\netshell.dll
2017-02-19 13:07 - 2016-11-11 02:03 - 00905216 _____ (Microsoft Corporation) C:\windows\system32\MapControlCore.dll
2017-02-19 13:07 - 2016-11-11 02:03 - 00842240 _____ (Microsoft Corporation) C:\windows\system32\ntshrui.dll
2017-02-19 13:07 - 2016-11-11 02:03 - 00632320 _____ (Microsoft Corporation) C:\windows\system32\rasapi32.dll
2017-02-19 13:07 - 2016-11-11 02:02 - 00936448 _____ (Microsoft Corporation) C:\windows\system32\NMAA.dll
2017-02-19 13:07 - 2016-11-02 04:13 - 00773720 _____ (Microsoft Corporation) C:\windows\system32\oleaut32.dll
2017-02-19 13:07 - 2016-11-02 04:12 - 02255712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2017-02-19 13:07 - 2016-11-02 04:02 - 00848736 _____ (Microsoft Corporation) C:\windows\system32\NetSetupEngine.dll
2017-02-19 13:07 - 2016-11-02 04:02 - 00148832 _____ (Microsoft Corporation) C:\windows\system32\NetSetupApi.dll
2017-02-19 13:07 - 2016-11-02 03:34 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\microsoft-windows-system-events.dll
2017-02-19 13:07 - 2016-11-02 03:30 - 00321536 _____ (Microsoft Corporation) C:\windows\system32\PsmServiceExtHost.dll
2017-02-19 13:07 - 2016-11-02 03:29 - 00336896 _____ (Microsoft Corporation) C:\windows\system32\NetworkBindingEngineMigPlugin.dll
2017-02-19 13:07 - 2016-11-02 03:29 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\FSClient.dll
2017-02-19 13:07 - 2016-11-02 03:29 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\mfsensorgroup.dll
2017-02-19 13:07 - 2016-11-02 03:28 - 00321024 _____ (Microsoft Corporation) C:\windows\system32\NetworkUXBroker.dll
2017-02-19 13:07 - 2016-11-02 03:27 - 00631296 _____ (Microsoft Corporation) C:\windows\system32\WlanMediaManager.dll
2017-02-19 13:07 - 2016-11-02 03:22 - 13441024 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2017-02-19 13:07 - 2016-11-02 03:22 - 00369664 _____ (Microsoft Corporation) C:\windows\system32\msinfo32.exe
2017-02-19 13:07 - 2016-11-02 03:19 - 00805888 _____ (Microsoft Corporation) C:\windows\system32\FrameServer.dll
2017-02-19 13:07 - 2016-11-02 03:19 - 00154112 _____ (Microsoft Corporation) C:\windows\system32\NPSM.dll
2017-02-19 13:07 - 2016-11-02 03:19 - 00089088 _____ (Microsoft Corporation) C:\windows\system32\asycfilt.dll
2017-02-19 13:07 - 2016-11-02 03:17 - 00982528 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2017-02-19 13:07 - 2016-11-02 03:16 - 00579072 _____ (Microsoft Corporation) C:\windows\system32\LockAppBroker.dll
2017-02-19 13:07 - 2016-11-02 03:16 - 00265728 _____ (Microsoft Corporation) C:\windows\system32\NetSetupSvc.dll
2017-02-19 13:07 - 2016-10-14 21:26 - 00811416 _____ (Microsoft Corporation) C:\windows\system32\MFCaptureEngine.dll
2017-02-19 13:07 - 2016-10-14 21:21 - 00292872 _____ (Microsoft Corporation) C:\windows\system32\wmpeffects.dll
2017-02-19 13:07 - 2016-10-14 20:59 - 00130560 _____ (Microsoft Corporation) C:\windows\splwow64.exe
2017-02-19 13:07 - 2016-10-14 20:59 - 00018432 _____ (Microsoft Corporation) C:\windows\system32\stdole2.tlb
2017-02-19 13:07 - 2016-10-14 20:57 - 00217600 _____ (Microsoft Corporation) C:\windows\system32\wmpdxm.dll
2017-02-19 13:07 - 2016-10-14 20:56 - 00065024 _____ (Microsoft Corporation) C:\windows\system32\OnDemandConnRouteHelper.dll
2017-02-19 13:07 - 2016-10-14 20:55 - 00126464 _____ (Microsoft Corporation) C:\windows\system32\wmpshell.dll
2017-02-19 13:07 - 2016-10-14 20:49 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\MDMAppInstaller.exe
2017-02-19 13:07 - 2016-10-14 20:47 - 00720896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-02-19 13:07 - 2016-10-14 20:46 - 00718848 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-02-19 13:07 - 2016-10-14 20:45 - 00702464 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Playback.MediaPlayer.dll
2017-02-19 13:07 - 2016-10-14 20:44 - 00090112 _____ (Microsoft Corporation) C:\windows\system32\powercfg.exe
2017-02-19 13:07 - 2016-10-14 20:38 - 00913920 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.dll
2017-02-19 13:07 - 2016-10-14 20:36 - 00983040 _____ (Microsoft Corporation) C:\windows\system32\RemoteNaturalLanguage.dll
2017-02-19 13:07 - 2016-10-14 20:36 - 00792064 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe
2017-02-19 13:07 - 2016-10-14 20:35 - 00701952 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Connectivity.dll
2017-02-19 13:07 - 2016-10-05 03:22 - 01181536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2017-02-19 13:07 - 2016-10-05 03:17 - 01322848 _____ (Microsoft Corporation) C:\windows\system32\wpx.dll
2017-02-19 13:07 - 2016-10-05 03:12 - 02446696 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2017-02-19 13:07 - 2016-10-05 02:36 - 00113664 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-02-19 13:07 - 2016-10-05 02:32 - 00223744 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.HostName.dll
2017-02-19 13:07 - 2016-10-05 02:32 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\AuthBroker.dll
2017-02-19 13:07 - 2016-10-05 02:30 - 00396800 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll
2017-02-19 13:07 - 2016-10-05 02:29 - 00368640 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll
2017-02-19 13:07 - 2016-10-05 02:27 - 00945664 _____ (Microsoft Corporation) C:\windows\system32\WpcWebFilter.dll
2017-02-19 13:07 - 2016-10-05 02:22 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\offreg.dll
2017-02-19 13:07 - 2016-10-05 02:15 - 00833024 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2017-02-19 13:07 - 2016-10-05 02:12 - 00924672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.BackgroundTransfer.dll
2017-02-19 13:07 - 2016-09-15 10:29 - 00512416 _____ (Microsoft Corporation) C:\windows\system32\MSAudDecMFT.dll
2017-02-19 13:07 - 2016-09-15 10:11 - 00862064 _____ (Microsoft Corporation) C:\windows\system32\mfreadwrite.dll
2017-02-19 13:07 - 2016-09-15 10:11 - 00725664 _____ (Microsoft Corporation) C:\windows\system32\MSVideoDSP.dll
2017-02-19 13:07 - 2016-09-15 10:06 - 00387872 _____ (Microsoft Corporation) C:\windows\system32\wmpps.dll
2017-02-19 13:07 - 2016-09-15 09:43 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\odbcconf.dll
2017-02-19 13:07 - 2016-09-15 09:41 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\NfcRadioMedia.dll
2017-02-19 13:07 - 2016-09-15 09:40 - 00140800 _____ (Microsoft Corporation) C:\windows\system32\RMapi.dll
2017-02-19 13:07 - 2016-09-15 09:39 - 00418304 _____ C:\windows\system32\Windows.Perception.Stub.dll
2017-02-19 13:07 - 2016-09-15 09:39 - 00295936 _____ (Microsoft Corporation) C:\windows\system32\pdh.dll
2017-02-19 13:07 - 2016-09-15 09:38 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\provops.dll
2017-02-19 13:07 - 2016-09-15 09:38 - 00132096 _____ (Microsoft Corporation) C:\windows\system32\PrintWSDAHost.dll
2017-02-19 13:07 - 2016-09-15 09:38 - 00125952 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll
2017-02-19 13:07 - 2016-09-15 09:36 - 00852480 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Import.dll
2017-02-19 13:07 - 2016-09-15 09:36 - 00719360 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdiWiFi.sys
2017-02-19 13:07 - 2016-09-15 09:36 - 00456192 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2017-02-19 13:07 - 2016-09-15 09:36 - 00324608 _____ (Microsoft Corporation) C:\windows\system32\usbmon.dll
2017-02-19 13:07 - 2016-09-15 09:35 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2017-02-19 13:07 - 2016-09-15 09:35 - 00496128 _____ (Microsoft Corporation) C:\windows\system32\mprdim.dll
2017-02-19 13:07 - 2016-09-15 09:35 - 00358400 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll
2017-02-19 13:07 - 2016-09-15 09:35 - 00252416 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-02-19 13:07 - 2016-09-15 09:34 - 00671744 _____ (Microsoft Corporation) C:\windows\system32\mbsmsapi.dll
2017-02-19 13:07 - 2016-09-15 09:34 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\AccountsRt.dll
2017-02-19 13:07 - 2016-09-15 09:34 - 00284160 _____ (Microsoft Corporation) C:\windows\system32\AboveLockAppHost.dll
2017-02-19 13:07 - 2016-09-15 09:33 - 00512000 _____ (Microsoft Corporation) C:\windows\system32\mprapi.dll
2017-02-19 13:07 - 2016-09-15 09:32 - 01037312 _____ (Microsoft Corporation) C:\windows\system32\nettrace.dll
2017-02-19 13:07 - 2016-09-15 09:31 - 00090624 _____ (Microsoft Corporation) C:\windows\system32\pwrshplugin.dll
2017-02-19 13:07 - 2016-09-15 09:30 - 01403392 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Editing.dll
2017-02-19 13:07 - 2016-09-15 09:30 - 00458752 _____ (Microsoft Corporation) C:\windows\system32\RTMediaFrame.dll
2017-02-19 13:07 - 2016-09-15 09:29 - 01105408 _____ (Microsoft Corporation) C:\windows\system32\MiracastReceiver.dll
2017-02-19 13:07 - 2016-09-15 09:29 - 00156672 _____ (Microsoft Corporation) C:\windows\system32\RelPost.exe
2017-02-19 13:07 - 2016-09-15 09:28 - 00864256 _____ (Microsoft Corporation) C:\windows\system32\wpnapps.dll
2017-02-19 13:07 - 2016-09-15 09:28 - 00442368 _____ (Microsoft Corporation) C:\windows\system32\PlayToDevice.dll
2017-02-19 13:07 - 2016-09-15 09:27 - 01078784 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Streaming.dll
2017-02-19 13:07 - 2016-09-15 09:27 - 00228352 _____ (Microsoft Corporation) C:\windows\system32\MSAC3ENC.DLL
2017-02-19 13:07 - 2016-09-15 09:26 - 00279552 _____ (Microsoft Corporation) C:\windows\system32\PlayToReceiver.dll
2017-02-19 13:07 - 2016-09-15 09:25 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Audio.dll
2017-02-19 13:07 - 2016-09-15 09:25 - 00411648 _____ (Microsoft Corporation) C:\windows\system32\SensorsApi.dll
2017-02-19 13:07 - 2016-09-15 09:25 - 00130560 _____ (Microsoft Corporation) C:\windows\system32\SpaceAgent.exe
2017-02-19 13:07 - 2016-09-15 09:25 - 00057856 _____ (Microsoft Corporation) C:\windows\system32\BackgroundMediaPolicy.dll
2017-02-19 13:07 - 2016-09-15 09:24 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Devices.dll
2017-02-19 13:07 - 2016-09-15 09:23 - 01040896 _____ (Microsoft Corporation) C:\windows\system32\NaturalLanguage6.dll
2017-02-19 13:07 - 2016-09-15 09:23 - 00611328 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.dll
2017-02-19 13:07 - 2016-09-15 09:22 - 00857600 _____ (Microsoft Corporation) C:\windows\system32\mprddm.dll
2017-02-19 13:07 - 2016-09-15 09:21 - 02208768 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.3D.dll
2017-02-19 13:07 - 2016-09-15 09:20 - 00845824 _____ (Microsoft Corporation) C:\windows\system32\MbaeApiPublic.dll
2017-02-19 13:07 - 2016-09-15 09:19 - 03202048 _____ (Microsoft Corporation) C:\windows\system32\msftedit.dll
2017-02-19 13:07 - 2016-09-15 09:19 - 01130496 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2017-02-19 13:07 - 2016-09-06 22:54 - 00133472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2017-02-19 13:07 - 2016-09-06 22:33 - 00681304 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ClipSp.sys
2017-02-19 13:07 - 2016-09-06 22:29 - 00595488 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2017-02-19 13:07 - 2016-09-06 22:29 - 00382272 _____ (Microsoft Corporation) C:\windows\system32\LockAppHost.exe
2017-02-19 13:07 - 2016-09-06 22:24 - 00057400 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2017-02-19 13:07 - 2016-09-06 22:04 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MosHost.dll
2017-02-19 13:07 - 2016-09-06 22:03 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\MosResource.dll
2017-02-19 13:07 - 2016-09-06 22:03 - 00110080 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MapControls.dll
2017-02-19 13:07 - 2016-09-06 22:03 - 00095232 _____ (Microsoft Corporation) C:\windows\system32\MapsCSP.dll
2017-02-19 13:07 - 2016-09-06 22:03 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\Microsoft-Windows-MosTrace.dll
2017-02-19 13:07 - 2016-09-06 22:02 - 00078848 _____ (Microsoft Corporation) C:\windows\system32\MosHostClient.dll
2017-02-19 13:07 - 2016-09-06 22:02 - 00025088 _____ (Microsoft Corporation) C:\windows\system32\nativemap.dll
2017-02-19 13:07 - 2016-09-06 22:02 - 00015360 _____ (Microsoft Corporation) C:\windows\system32\MapsBtSvcProxy.dll
2017-02-19 13:07 - 2016-09-06 22:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2017-02-19 13:07 - 2016-09-06 22:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\MapControlStringsRes.dll
2017-02-19 13:07 - 2016-09-06 22:00 - 00049152 _____ (Microsoft Corporation) C:\windows\system32\mapstoasttask.dll
2017-02-19 13:07 - 2016-09-06 21:59 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\mapsupdatetask.dll
2017-02-19 13:07 - 2016-09-06 21:55 - 00820736 _____ (Microsoft Corporation) C:\windows\system32\BingOnlineServices.dll
2017-02-19 13:07 - 2016-09-06 21:54 - 00366592 _____ (Microsoft Corporation) C:\windows\system32\NmaDirect.dll
2017-02-19 13:07 - 2016-09-06 21:41 - 01891328 _____ (Microsoft Corporation) C:\windows\system32\pnidui.dll
2017-02-19 13:07 - 2016-09-06 21:37 - 02370048 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2017-02-19 13:07 - 2016-08-26 22:12 - 00244816 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2017-02-19 13:07 - 2016-08-19 23:06 - 00108384 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pdc.sys
2017-02-19 13:07 - 2016-08-19 22:22 - 00028672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2017-02-19 13:07 - 2016-08-19 22:21 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\RemovableMediaProvisioningPlugin.dll
2017-02-19 13:07 - 2016-08-19 22:20 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\BarcodeProvisioningPlugin.dll
2017-02-19 13:07 - 2016-08-19 22:19 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\NFCProvisioningPlugin.dll
2017-02-19 13:07 - 2016-08-19 22:18 - 00200704 _____ (Microsoft Corporation) C:\windows\system32\provisioningcsp.dll
2017-02-19 13:07 - 2016-08-19 22:18 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\provtool.exe
2017-02-19 13:07 - 2016-08-19 22:15 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\provhandlers.dll
2017-02-19 13:07 - 2016-08-19 22:14 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\provdatastore.dll
2017-02-19 13:07 - 2016-08-05 21:29 - 00199008 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wof.sys
2017-02-19 13:07 - 2016-08-05 21:26 - 01176664 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2017-02-19 13:07 - 2016-08-05 21:23 - 00168800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2017-02-19 13:07 - 2016-08-05 21:18 - 00396168 _____ (Microsoft Corporation) C:\windows\system32\wlanapi.dll
2017-02-19 13:07 - 2016-08-05 21:13 - 01847048 _____ (Microsoft Corporation) C:\windows\system32\mfsrcsnk.dll
2017-02-19 13:07 - 2016-08-05 21:13 - 00044472 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2017-02-19 13:07 - 2016-08-05 20:48 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\wlanhlp.dll
2017-02-19 13:07 - 2016-08-05 20:48 - 00010752 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2017-02-19 13:07 - 2016-08-05 20:47 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\WiFiConfigSP.dll
2017-02-19 13:07 - 2016-08-05 20:47 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2017-02-19 13:07 - 2016-08-05 20:47 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2017-02-19 13:07 - 2016-08-05 20:46 - 09260032 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2017-02-19 13:07 - 2016-08-05 20:46 - 00094720 _____ (Microsoft Corporation) C:\windows\system32\dasHost.exe
2017-02-19 13:07 - 2016-08-05 20:46 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\wfdprov.dll
2017-02-19 13:07 - 2016-08-05 20:44 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\deviceassociation.dll
2017-02-19 13:07 - 2016-08-05 20:43 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\wlansvcpal.dll
2017-02-19 13:07 - 2016-08-05 20:41 - 00462336 _____ (Microsoft Corporation) C:\windows\system32\wlansec.dll
2017-02-19 13:07 - 2016-08-05 20:41 - 00412160 _____ (Microsoft Corporation) C:\windows\system32\wlanmsm.dll
2017-02-19 13:07 - 2016-08-05 20:39 - 00298496 _____ (Microsoft Corporation) C:\windows\system32\wifiprofilessettinghandler.dll
2017-02-19 13:07 - 2016-08-05 20:36 - 00447488 _____ (Microsoft Corporation) C:\windows\system32\das.dll
2017-02-19 13:07 - 2016-08-05 20:31 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\wpninprc.dll
2017-02-19 13:07 - 2016-08-05 20:19 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\offlinelsa.dll
2017-02-19 13:06 - 2016-12-21 01:08 - 00245600 _____ (Microsoft Corporation) C:\windows\system32\offlinesam.dll
2017-02-19 13:06 - 2016-12-21 00:15 - 22563840 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2017-02-19 13:06 - 2016-12-21 00:05 - 00261632 _____ (Microsoft Corporation) C:\windows\system32\indexeddbserver.dll
2017-02-19 13:06 - 2016-12-21 00:00 - 00440320 _____ (Microsoft Corporation) C:\windows\system32\fhcfg.dll
2017-02-19 13:06 - 2016-12-20 23:59 - 00883712 _____ (Microsoft Corporation) C:\windows\system32\samsrv.dll
2017-02-19 13:06 - 2016-12-20 23:58 - 23678464 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2017-02-19 13:06 - 2016-12-20 23:57 - 00462336 _____ (Microsoft Corporation) C:\windows\system32\fhsettingsprovider.dll
2017-02-19 13:06 - 2016-12-20 23:53 - 04474368 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_47.dll
2017-02-19 13:06 - 2016-12-13 21:48 - 01631232 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.Resources.dll
2017-02-19 13:06 - 2016-12-13 21:42 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-02-19 13:06 - 2016-12-13 21:41 - 00223744 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2017-02-19 13:06 - 2016-12-13 21:38 - 17188864 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.dll
2017-02-19 13:06 - 2016-12-13 21:24 - 01005568 _____ (Microsoft Corporation) C:\windows\system32\D3D12.dll
2017-02-19 13:06 - 2016-12-09 03:20 - 02677544 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2017-02-19 13:06 - 2016-12-09 03:10 - 01572768 _____ (Microsoft Corporation) C:\windows\system32\gdi32full.dll
2017-02-19 13:06 - 2016-12-09 02:45 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\WordBreakers.dll
2017-02-19 13:06 - 2016-12-09 02:36 - 03059200 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2017-02-19 13:06 - 2016-12-09 02:27 - 13084160 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2017-02-19 13:06 - 2016-12-09 02:22 - 02820096 _____ (Microsoft Corporation) C:\windows\system32\InputService.dll
2017-02-19 13:06 - 2016-12-09 02:19 - 00433664 _____ (Microsoft Corporation) C:\windows\system32\TextInputFramework.dll
2017-02-19 13:06 - 2016-12-09 02:19 - 00261120 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Core.TextInput.dll
2017-02-19 13:06 - 2016-12-09 02:19 - 00119296 _____ (Microsoft Corporation) C:\windows\system32\InputLocaleManager.dll
2017-02-19 13:06 - 2016-12-09 02:19 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\EditBufferTestHook.dll
2017-02-19 13:06 - 2016-11-11 03:13 - 00352096 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2017-02-19 13:06 - 2016-11-11 03:02 - 02828376 _____ (Microsoft Corporation) C:\windows\system32\d3d11.dll
2017-02-19 13:06 - 2016-11-11 03:01 - 00637400 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2017-02-19 13:06 - 2016-11-11 02:56 - 04673304 _____ (Microsoft Corporation) C:\windows\explorer.exe
2017-02-19 13:06 - 2016-11-11 02:25 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\DisplayManager.dll
2017-02-19 13:06 - 2016-11-11 02:25 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\HttpsDataSource.dll
2017-02-19 13:06 - 2016-11-11 02:23 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\EAMProgressHandler.dll
2017-02-19 13:06 - 2016-11-11 02:21 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\ieproxy.dll
2017-02-19 13:06 - 2016-11-11 02:20 - 00407552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Management.dll
2017-02-19 13:06 - 2016-11-11 02:20 - 00115200 _____ (Microsoft Corporation) C:\windows\system32\IdCtrls.dll
2017-02-19 13:06 - 2016-11-11 02:19 - 00285696 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseAppMgmtSvc.dll
2017-02-19 13:06 - 2016-11-11 02:19 - 00198144 _____ (Microsoft Corporation) C:\windows\system32\dpapisrv.dll
2017-02-19 13:06 - 2016-11-11 02:09 - 00164352 _____ (Microsoft Corporation) C:\windows\system32\dialserver.dll
2017-02-19 13:06 - 2016-11-11 02:05 - 01779712 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2017-02-19 13:06 - 2016-11-11 02:04 - 02611200 _____ (Microsoft Corporation) C:\windows\system32\gameux.dll
2017-02-19 13:06 - 2016-11-11 02:04 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\dmenrollengine.dll
2017-02-19 13:06 - 2016-11-11 02:03 - 04708864 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2017-02-19 13:06 - 2016-11-11 02:03 - 02669056 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2017-02-19 13:06 - 2016-11-02 04:20 - 00378720 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2017-02-19 13:06 - 2016-11-02 04:03 - 02750936 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2017-02-19 13:06 - 2016-11-02 04:02 - 00682816 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2017-02-19 13:06 - 2016-11-02 04:02 - 00238056 _____ (Microsoft Corporation) C:\windows\system32\weretw.dll
2017-02-19 13:06 - 2016-11-02 03:56 - 01609920 _____ (Microsoft Corporation) C:\windows\system32\d3d9.dll
2017-02-19 13:06 - 2016-11-02 03:56 - 00628552 _____ (Microsoft Corporation) C:\windows\system32\fontdrvhost.exe
2017-02-19 13:06 - 2016-11-02 03:55 - 00048992 _____ (Microsoft Corporation) C:\windows\system32\Drivers\iorate.sys
2017-02-19 13:06 - 2016-11-02 03:32 - 00045056 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2017-02-19 13:06 - 2016-11-02 03:32 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\efsext.dll
2017-02-19 13:06 - 2016-11-02 03:31 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\WpcTok.exe
2017-02-19 13:06 - 2016-11-02 03:31 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\wininetlui.dll
2017-02-19 13:06 - 2016-11-02 03:30 - 00635904 _____ (Microsoft Corporation) C:\windows\system32\FlightSettings.dll
2017-02-19 13:06 - 2016-11-02 03:29 - 00276992 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2017-02-19 13:06 - 2016-11-02 03:29 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2017-02-19 13:06 - 2016-11-02 03:28 - 00566784 _____ (Microsoft Corporation) C:\windows\system32\ActionCenterCPL.dll
2017-02-19 13:06 - 2016-11-02 03:28 - 00432128 _____ (Microsoft Corporation) C:\windows\system32\WpAXHolder.dll
2017-02-19 13:06 - 2016-11-02 03:28 - 00274432 _____ (Microsoft Corporation) C:\windows\system32\ListSvc.dll
2017-02-19 13:06 - 2016-11-02 03:28 - 00088576 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2017-02-19 13:06 - 2016-11-02 03:26 - 00579072 _____ (Microsoft Corporation) C:\windows\system32\ddraw.dll
2017-02-19 13:06 - 2016-11-02 03:24 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\fontext.dll
2017-02-19 13:06 - 2016-11-02 03:19 - 01586176 _____ (Microsoft Corporation) C:\windows\system32\Windows.Globalization.dll
2017-02-19 13:06 - 2016-11-02 03:18 - 00836608 _____ (Microsoft Corporation) C:\windows\system32\WpcRefreshTask.dll
2017-02-19 13:06 - 2016-11-02 03:16 - 01637888 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2017-02-19 13:06 - 2016-11-02 03:16 - 00629248 _____ (Microsoft Corporation) C:\windows\system32\hgcpl.dll
2017-02-19 13:06 - 2016-11-02 03:16 - 00308736 _____ (Microsoft Corporation) C:\windows\system32\ActionCenter.dll
2017-02-19 13:06 - 2016-11-02 03:13 - 00322048 _____ (Microsoft Corporation) C:\windows\system32\GlobCollationHost.dll
2017-02-19 13:06 - 2016-10-14 21:48 - 00498952 _____ (Microsoft Corporation) C:\windows\system32\DolbyDecMFT.dll
2017-02-19 13:06 - 2016-10-14 21:29 - 00908640 _____ (Microsoft Corporation) C:\windows\system32\drvstore.dll
2017-02-19 13:06 - 2016-10-14 21:21 - 01100128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2017-02-19 13:06 - 2016-10-14 20:56 - 00339968 _____ (Microsoft Corporation) C:\windows\system32\esentutl.exe
2017-02-19 13:06 - 2016-10-14 20:56 - 00193536 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.WiFi.dll
2017-02-19 13:06 - 2016-10-14 20:55 - 00265728 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll
2017-02-19 13:06 - 2016-10-14 20:45 - 01790464 _____ (Microsoft Corporation) C:\windows\system32\LocationFramework.dll
2017-02-19 13:06 - 2016-10-14 20:43 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\energy.dll
2017-02-19 13:06 - 2016-10-14 20:43 - 00078336 _____ (Microsoft Corporation) C:\windows\system32\iscsiwmi.dll
2017-02-19 13:06 - 2016-10-14 20:42 - 00467968 _____ (Microsoft Corporation) C:\windows\system32\Geolocation.dll
2017-02-19 13:06 - 2016-10-14 20:41 - 00945664 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll
2017-02-19 13:06 - 2016-10-14 20:37 - 00093184 _____ (Microsoft Corporation) C:\windows\system32\cmifw.dll
2017-02-19 13:06 - 2016-10-14 20:36 - 00347136 _____ (Microsoft Corporation) C:\windows\system32\Display.dll
2017-02-19 13:06 - 2016-10-14 20:36 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\fhcpl.dll
2017-02-19 13:06 - 2016-10-14 20:35 - 03054080 _____ (Microsoft Corporation) C:\windows\system32\esent.dll
2017-02-19 13:06 - 2016-10-14 20:34 - 02476544 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2017-02-19 13:06 - 2016-10-14 20:34 - 01840640 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2017-02-19 13:06 - 2016-10-05 02:34 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dfsc.sys
2017-02-19 13:06 - 2016-10-05 02:23 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\dialclient.dll
2017-02-19 13:06 - 2016-10-05 02:18 - 00759296 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2017-02-19 13:06 - 2016-09-15 10:30 - 00646136 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2017-02-19 13:06 - 2016-09-15 10:27 - 00434528 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2017-02-19 13:06 - 2016-09-15 10:26 - 00090400 _____ (Microsoft Corporation) C:\windows\system32\devenum.dll
2017-02-19 13:06 - 2016-09-15 10:16 - 00206096 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2017-02-19 13:06 - 2016-09-15 09:39 - 00186368 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Radios.dll
2017-02-19 13:06 - 2016-09-15 09:38 - 00671232 _____ (Microsoft Corporation) C:\windows\system32\NetworkCollectionAgent.dll
2017-02-19 13:06 - 2016-09-15 09:38 - 00505856 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.WiFiDirect.dll
2017-02-19 13:06 - 2016-09-15 09:36 - 00387584 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2017-02-19 13:06 - 2016-09-15 09:35 - 00472064 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Bluetooth.dll
2017-02-19 13:06 - 2016-09-15 09:34 - 00437248 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Usb.dll
2017-02-19 13:06 - 2016-09-15 09:30 - 01227264 _____ (Microsoft Corporation) C:\windows\system32\gpsvc.dll
2017-02-19 13:06 - 2016-09-15 09:30 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\Windows.Energy.dll
2017-02-19 13:06 - 2016-09-15 09:29 - 00715264 _____ (Microsoft Corporation) C:\windows\system32\clusapi.dll
2017-02-19 13:06 - 2016-09-15 09:26 - 00501248 _____ (Microsoft Corporation) C:\windows\system32\imapi2.dll
2017-02-19 13:06 - 2016-09-15 09:26 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\resutils.dll
2017-02-19 13:06 - 2016-09-15 09:25 - 00628736 _____ (Microsoft Corporation) C:\windows\system32\uReFS.dll
2017-02-19 13:06 - 2016-09-15 09:22 - 01709056 _____ (Microsoft Corporation) C:\windows\system32\wevtsvc.dll
2017-02-19 13:06 - 2016-09-15 09:20 - 02095616 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2017-02-19 13:06 - 2016-09-06 22:29 - 00755656 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2017-02-19 13:06 - 2016-09-06 22:29 - 00523712 _____ (Microsoft Corporation) C:\windows\system32\DMRServer.dll
2017-02-19 13:06 - 2016-09-06 22:02 - 00002560 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2017-02-19 13:06 - 2016-09-06 22:00 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2017-02-19 13:06 - 2016-09-06 21:59 - 00071168 _____ (Microsoft Corporation) C:\windows\system32\eappprxy.dll
2017-02-19 13:06 - 2016-09-06 21:56 - 00327168 _____ (Microsoft Corporation) C:\windows\system32\eapp3hst.dll
2017-02-19 13:06 - 2016-09-06 21:56 - 00105984 _____ (Microsoft Corporation) C:\windows\system32\eappgnui.dll
2017-02-19 13:06 - 2016-09-06 21:55 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\eappcfg.dll
2017-02-19 13:06 - 2016-09-06 21:53 - 00302592 _____ (Microsoft Corporation) C:\windows\system32\eapphost.dll
2017-02-19 13:06 - 2016-09-06 21:43 - 00484352 _____ (Microsoft Corporation) C:\windows\system32\MDEServer.exe
2017-02-19 13:06 - 2016-08-26 21:44 - 00027136 _____ (Microsoft Corporation) C:\windows\system32\encapi.dll
2017-02-19 13:06 - 2016-08-19 22:21 - 00227840 _____ (Microsoft Corporation) C:\windows\system32\C_G18030.DLL
2017-02-19 13:06 - 2016-08-19 22:21 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\c_GSM7.DLL
2017-02-19 13:06 - 2016-08-19 22:20 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\C_IS2022.DLL
2017-02-19 13:06 - 2016-08-18 18:33 - 00162850 _____ C:\windows\system32\C_932.NLS
2017-02-19 13:06 - 2016-08-05 20:48 - 02755584 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2017-02-19 13:06 - 2016-08-05 20:47 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2017-02-19 13:06 - 2016-08-05 20:45 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2017-02-19 13:06 - 2016-08-05 20:29 - 00123904 _____ (Microsoft Corporation) C:\windows\system32\samlib.dll
2017-02-19 13:06 - 2016-07-21 18:25 - 00389000 _____ (Microsoft Corporation) C:\windows\system32\wevtapi.dll
2017-02-19 13:05 - 2016-12-21 00:42 - 00241504 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHost.dll
2017-02-19 13:05 - 2016-12-20 23:54 - 05511680 _____ (Microsoft Corporation) C:\windows\system32\aclui.dll
2017-02-19 13:05 - 2016-12-20 23:53 - 01692672 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.onecore.dll
2017-02-19 13:05 - 2016-12-20 23:51 - 05611008 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2017-02-19 13:05 - 2016-12-20 23:51 - 02275840 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2017-02-19 13:05 - 2016-12-13 22:41 - 00590960 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2017-02-19 13:05 - 2016-12-13 22:14 - 00418952 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2017-02-19 13:05 - 2016-12-13 22:14 - 00089416 _____ (Microsoft Corporation) C:\windows\system32\remoteaudioendpoint.dll
2017-02-19 13:05 - 2016-12-13 21:40 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\domgmt.dll
2017-02-19 13:05 - 2016-12-13 21:40 - 00266752 _____ (Microsoft Corporation) C:\windows\system32\ConsoleLogon.dll
2017-02-19 13:05 - 2016-12-13 21:39 - 00257024 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.CredDialogController.dll
2017-02-19 13:05 - 2016-12-13 21:38 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\CloudBackupSettings.dll
2017-02-19 13:05 - 2016-12-13 21:35 - 00600576 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2017-02-19 13:05 - 2016-12-13 21:23 - 01231872 _____ (Microsoft Corporation) C:\windows\system32\dosvc.dll
2017-02-19 13:05 - 2016-12-09 03:42 - 01637728 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2017-02-19 13:05 - 2016-12-09 03:42 - 00137568 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2017-02-19 13:05 - 2016-12-09 03:34 - 01051112 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2017-02-19 13:05 - 2016-12-09 03:34 - 00894096 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2017-02-19 13:05 - 2016-12-09 03:33 - 01354320 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2017-02-19 13:05 - 2016-12-09 03:33 - 01173496 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2017-02-19 13:05 - 2016-12-09 03:30 - 00377184 _____ (Microsoft Corporation) C:\windows\system32\Drivers\clfs.sys
2017-02-19 13:05 - 2016-12-09 03:29 - 02681200 _____ C:\windows\system32\CoreUIComponents.dll
2017-02-19 13:05 - 2016-12-09 03:19 - 00168424 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2017-02-19 13:05 - 2016-12-09 03:18 - 02913144 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2017-02-19 13:05 - 2016-12-09 03:18 - 01267512 _____ (Microsoft Corporation) C:\windows\system32\WinTypes.dll
2017-02-19 13:05 - 2016-12-09 03:14 - 01274712 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2017-02-19 13:05 - 2016-12-09 02:41 - 00380928 _____ (Microsoft Corporation) C:\windows\system32\wincorlib.dll
2017-02-19 13:05 - 2016-12-09 02:36 - 00410112 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll
2017-02-19 13:05 - 2016-12-09 02:33 - 01589760 _____ (Microsoft Corporation) C:\windows\system32\msdtctm.dll
2017-02-19 13:05 - 2016-12-09 02:28 - 01004544 _____ (Microsoft Corporation) C:\windows\system32\enterprisecsps.dll
2017-02-19 13:05 - 2016-12-09 02:27 - 05114368 _____ (Microsoft Corporation) C:\windows\system32\cdp.dll
2017-02-19 13:05 - 2016-12-09 02:25 - 00376832 _____ (Microsoft Corporation) C:\windows\system32\CryptoWinRT.dll
2017-02-19 13:05 - 2016-12-09 02:20 - 00172544 _____ (Microsoft Corporation) C:\windows\system32\DeviceEnroller.exe
2017-02-19 13:05 - 2016-11-11 03:14 - 00603488 _____ (Microsoft Corporation) C:\windows\system32\ContentDeliveryManager.Utilities.dll
2017-02-19 13:05 - 2016-11-11 03:03 - 01069720 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2017-02-19 13:05 - 2016-11-11 03:03 - 00266544 _____ (Microsoft Corporation) C:\windows\system32\policymanager.dll
2017-02-19 13:05 - 2016-11-11 02:56 - 00187520 _____ (Microsoft Corporation) C:\windows\system32\CloudStorageWizard.exe
2017-02-19 13:05 - 2016-11-11 02:28 - 00040960 _____ (Microsoft Corporation) C:\windows\system32\CbtBackgroundManagerPolicy.dll
2017-02-19 13:05 - 2016-11-11 02:26 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\ReportingCSP.dll
2017-02-19 13:05 - 2016-11-11 02:25 - 00147968 _____ (Microsoft Corporation) C:\windows\system32\dmcertinst.exe
2017-02-19 13:05 - 2016-11-11 02:24 - 00159744 _____ (Microsoft Corporation) C:\windows\system32\ACPBackgroundManagerPolicy.dll
2017-02-19 13:05 - 2016-11-11 02:24 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\browserbroker.dll
2017-02-19 13:05 - 2016-11-11 02:23 - 00567296 _____ (Microsoft Corporation) C:\windows\system32\DevicePairing.dll
2017-02-19 13:05 - 2016-11-11 02:21 - 00379392 _____ (Microsoft Corporation) C:\windows\system32\apprepsync.dll
2017-02-19 13:05 - 2016-11-11 02:20 - 00339456 _____ (Microsoft Corporation) C:\windows\system32\cdpusersvc.dll
2017-02-19 13:05 - 2016-11-11 02:20 - 00176128 _____ (Microsoft Corporation) C:\windows\system32\apprepapi.dll
2017-02-19 13:05 - 2016-11-11 02:20 - 00125952 _____ (Microsoft Corporation) C:\windows\system32\setupugc.exe
2017-02-19 13:05 - 2016-11-11 02:19 - 00411648 _____ (Microsoft Corporation) C:\windows\system32\cdpsvc.dll
2017-02-19 13:05 - 2016-11-11 02:19 - 00389632 _____ (Microsoft Corporation) C:\windows\system32\ActivationManager.dll
2017-02-19 13:05 - 2016-11-11 02:18 - 02084352 _____ (Microsoft Corporation) C:\windows\system32\DeviceFlows.DataModel.dll
2017-02-19 13:05 - 2016-11-11 02:13 - 00306176 _____ (Microsoft Corporation) C:\windows\system32\msdtcuiu.dll
2017-02-19 13:05 - 2016-11-11 02:12 - 00870912 _____ (Microsoft Corporation) C:\windows\system32\msdtcprx.dll
2017-02-19 13:05 - 2016-11-11 02:07 - 00991232 _____ (Microsoft Corporation) C:\windows\system32\comdlg32.dll
2017-02-19 13:05 - 2016-11-11 02:03 - 02287616 _____ (Microsoft Corporation) C:\windows\system32\dwmcore.dll
2017-02-19 13:05 - 2016-11-11 02:02 - 03542016 _____ (Microsoft Corporation) C:\windows\system32\actxprxy.dll
2017-02-19 13:05 - 2016-11-02 04:00 - 00534096 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2017-02-19 13:05 - 2016-11-02 03:30 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\dab.dll
2017-02-19 13:05 - 2016-11-02 03:28 - 00411136 _____ (Microsoft Corporation) C:\windows\system32\DeviceCenter.dll
2017-02-19 13:05 - 2016-11-02 03:28 - 00279552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-02-19 13:05 - 2016-11-02 03:25 - 00956416 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.desktop.dll
2017-02-19 13:05 - 2016-11-02 03:23 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bowser.sys
2017-02-19 13:05 - 2016-11-02 03:22 - 00337920 _____ (Microsoft Corporation) C:\windows\system32\AudioEndpointBuilder.dll
2017-02-19 13:05 - 2016-11-02 03:21 - 00942080 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2017-02-19 13:05 - 2016-11-02 03:19 - 00130560 _____ (Microsoft Corporation) C:\windows\system32\chartv.dll
2017-02-19 13:05 - 2016-11-02 03:17 - 00828416 _____ (Microsoft Corporation) C:\windows\system32\appwiz.cpl
2017-02-19 13:05 - 2016-11-02 03:16 - 00770560 _____ (Microsoft Corporation) C:\windows\system32\bisrv.dll
2017-02-19 13:05 - 2016-10-14 21:51 - 00595296 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2017-02-19 13:05 - 2016-10-14 21:51 - 00283488 _____ (Microsoft Corporation) C:\windows\system32\DeviceCensus.exe
2017-02-19 13:05 - 2016-10-14 21:51 - 00078688 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2017-02-19 13:05 - 2016-10-14 21:37 - 00063328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dam.sys
2017-02-19 13:05 - 2016-10-14 21:30 - 01851696 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2017-02-19 13:05 - 2016-10-14 21:29 - 00079200 _____ (Microsoft Corporation) C:\windows\system32\Drivers\crashdmp.sys
2017-02-19 13:05 - 2016-10-14 21:26 - 00160096 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostBroker.dll
2017-02-19 13:05 - 2016-10-14 21:05 - 07216640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2017-02-19 13:05 - 2016-10-14 20:59 - 00272384 _____ (Microsoft Corporation) C:\windows\system32\mfksproxy.dll
2017-02-19 13:05 - 2016-10-14 20:56 - 00098816 _____ (Microsoft Corporation) C:\windows\system32\BthRadioMedia.dll
2017-02-19 13:05 - 2016-10-14 20:55 - 00329216 _____ (Microsoft Corporation) C:\windows\system32\wc_storage.dll
2017-02-19 13:05 - 2016-10-14 20:54 - 00241152 _____ (Microsoft Corporation) C:\windows\system32\dafBth.dll
2017-02-19 13:05 - 2016-10-14 20:54 - 00217088 _____ (Microsoft Corporation) C:\windows\system32\DevicePairingFolder.dll
2017-02-19 13:05 - 2016-10-14 20:52 - 00163328 _____ (Microsoft Corporation) C:\windows\system32\autoplay.dll
2017-02-19 13:05 - 2016-10-14 20:51 - 00429568 _____ (Microsoft Corporation) C:\windows\system32\SndVolSSO.dll
2017-02-19 13:05 - 2016-10-14 20:48 - 01054208 _____ (Microsoft Corporation) C:\windows\system32\qmgr.dll
2017-02-19 13:05 - 2016-10-14 20:32 - 00886784 _____ (Microsoft Corporation) C:\windows\system32\CPFilters.dll
2017-02-19 13:05 - 2016-10-14 20:31 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ahcache.sys
2017-02-19 13:05 - 2016-10-05 03:12 - 01112928 _____ (Microsoft Corporation) C:\windows\system32\AppxPackaging.dll
2017-02-19 13:05 - 2016-10-05 02:33 - 00651264 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.AllJoyn.dll
2017-02-19 13:05 - 2016-10-05 02:33 - 00157696 _____ (Microsoft Corporation) C:\windows\system32\credprovs.dll
2017-02-19 13:05 - 2016-10-05 02:31 - 00425472 _____ (Microsoft Corporation) C:\windows\system32\bcdedit.exe
2017-02-19 13:05 - 2016-09-15 10:29 - 00023392 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cmimcext.sys
2017-02-19 13:05 - 2016-09-15 10:20 - 00634944 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2017-02-19 13:05 - 2016-09-15 10:14 - 00119648 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wcifs.sys
2017-02-19 13:05 - 2016-09-15 10:07 - 00128864 _____ (Microsoft Corporation) C:\windows\system32\dwmapi.dll
2017-02-19 13:05 - 2016-09-15 10:06 - 00372440 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.MediaControl.dll
2017-02-19 13:05 - 2016-09-15 09:41 - 00090624 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Printers.dll
2017-02-19 13:05 - 2016-09-15 09:38 - 00343552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SmartCards.Phone.dll
2017-02-19 13:05 - 2016-09-15 09:38 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\credprovhost.dll
2017-02-19 13:05 - 2016-09-15 09:38 - 00171520 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SerialCommunication.dll
2017-02-19 13:05 - 2016-09-15 09:37 - 00912384 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.SmartCards.dll
2017-02-19 13:05 - 2016-09-15 09:37 - 00568320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.LowLevel.dll
2017-02-19 13:05 - 2016-09-15 09:37 - 00171520 _____ (Microsoft Corporation) C:\windows\system32\biwinrt.dll
2017-02-19 13:05 - 2016-09-15 09:36 - 00166912 _____ (Microsoft Corporation) C:\windows\system32\credprovslegacy.dll
2017-02-19 13:05 - 2016-09-15 09:35 - 00949248 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.PointOfService.dll
2017-02-19 13:05 - 2016-09-15 09:35 - 00431616 _____ (Microsoft Corporation) C:\windows\system32\Windows.Cortana.Desktop.dll
2017-02-19 13:05 - 2016-09-15 09:35 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Picker.dll
2017-02-19 13:05 - 2016-09-15 09:35 - 00280064 _____ (Microsoft Corporation) C:\windows\system32\DataExchange.dll
2017-02-19 13:05 - 2016-09-15 09:35 - 00128000 _____ (Microsoft Corporation) C:\windows\system32\rshx32.dll
2017-02-19 13:05 - 2016-09-15 09:33 - 03753984 _____ (Microsoft Corporation) C:\windows\system32\bootux.dll
2017-02-19 13:05 - 2016-09-15 09:33 - 00896512 _____ (Microsoft Corporation) C:\windows\system32\Windows.AccountsControl.dll
2017-02-19 13:05 - 2016-09-15 09:30 - 01639424 _____ (Microsoft Corporation) C:\windows\system32\comsvcs.dll
2017-02-19 13:05 - 2016-09-15 09:30 - 00104960 _____ (Microsoft Corporation) C:\windows\system32\CastLaunch.dll
2017-02-19 13:05 - 2016-09-15 09:27 - 00582656 _____ (Microsoft Corporation) C:\windows\system32\BootMenuUX.dll
2017-02-19 13:05 - 2016-09-15 09:27 - 00250368 _____ (Microsoft Corporation) C:\windows\system32\discan.dll
2017-02-19 13:05 - 2016-09-15 09:23 - 00460800 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Midi.dll
2017-02-19 13:05 - 2016-09-15 09:20 - 01275392 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Bluetooth.dll
2017-02-19 13:05 - 2016-09-15 09:17 - 00122368 _____ (Microsoft Corporation) C:\windows\system32\FontProvider.dll
2017-02-19 13:05 - 2016-09-06 22:48 - 00379744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Classpnp.sys
2017-02-19 13:05 - 2016-09-06 21:54 - 00461312 _____ (Microsoft Corporation) C:\windows\system32\CredProvDataModel.dll
2017-02-19 13:05 - 2016-09-06 21:39 - 03116544 _____ (Microsoft Corporation) C:\windows\system32\MSAJApi.dll
2017-02-19 13:05 - 2016-09-06 21:33 - 00058368 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2017-02-19 13:05 - 2016-08-19 22:07 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\AppXApplicabilityBlob.dll
2017-02-19 13:05 - 2016-08-05 20:45 - 00327680 _____ (Microsoft Corporation) C:\windows\system32\container.dll
2017-02-19 13:05 - 2016-08-05 20:40 - 00239104 _____ (Microsoft Corporation) C:\windows\system32\dafpos.dll
2017-02-19 13:04 - 2016-12-21 00:37 - 00455520 _____ (Microsoft Corporation) C:\windows\system32\securekernel.exe
2017-02-19 13:04 - 2016-12-13 22:41 - 01235296 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2017-02-19 13:04 - 2016-12-13 22:33 - 01356864 _____ (Microsoft Corporation) C:\windows\system32\ClipUp.exe
2017-02-19 13:04 - 2016-12-13 22:18 - 00715104 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vhdmp.sys
2017-02-19 13:04 - 2016-12-13 22:18 - 00335712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pci.sys
2017-02-19 13:04 - 2016-12-09 03:28 - 00764392 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll
2017-02-19 13:04 - 2016-12-09 03:18 - 01100128 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2017-02-19 13:04 - 2016-12-09 03:18 - 00989024 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2017-02-19 13:04 - 2016-12-09 03:18 - 00947552 _____ (Microsoft Corporation) C:\windows\system32\hvloader.efi
2017-02-19 13:04 - 2016-12-09 03:18 - 00811872 _____ (Microsoft Corporation) C:\windows\system32\hvloader.exe
2017-02-19 13:04 - 2016-12-09 02:37 - 00411136 _____ (Microsoft Corporation) C:\windows\system32\facecredentialprovider.dll
2017-02-19 13:04 - 2016-12-09 02:21 - 00716800 _____ (Microsoft Corporation) C:\windows\system32\ShareHost.dll
2017-02-19 13:04 - 2016-11-11 03:00 - 00219488 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tpm.sys
2017-02-19 13:04 - 2016-11-11 02:26 - 00258560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\xboxgip.sys
2017-02-19 13:04 - 2016-11-11 02:26 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseModernAppMgmtCSP.dll
2017-02-19 13:04 - 2016-11-11 02:25 - 00198656 _____ (Microsoft Corporation) C:\windows\system32\BcastDVRHelper.dll
2017-02-19 13:04 - 2016-11-11 02:24 - 00170496 _____ (Microsoft Corporation) C:\windows\system32\AppCapture.dll
2017-02-19 13:04 - 2016-11-11 02:22 - 00143360 _____ (Microsoft Corporation) C:\windows\system32\EDPCleanup.exe
2017-02-19 13:04 - 2016-11-11 02:19 - 00620544 _____ (Microsoft Corporation) C:\windows\system32\bcastdvr.exe
2017-02-19 13:04 - 2016-11-11 02:18 - 00967168 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys
2017-02-19 13:04 - 2016-11-11 02:16 - 00560128 _____ (Microsoft Corporation) C:\windows\system32\AppReadiness.dll
2017-02-19 13:04 - 2016-11-11 02:07 - 01691136 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2017-02-19 13:04 - 2016-11-02 03:28 - 00324608 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-02-19 13:04 - 2016-11-02 03:23 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\ErrorDetailsUpdate.dll
2017-02-19 13:04 - 2016-11-02 03:20 - 00167936 _____ (Microsoft Corporation) C:\windows\system32\ErrorDetails.dll
2017-02-19 13:04 - 2016-11-02 03:16 - 00881664 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2017-02-19 13:04 - 2016-10-14 21:51 - 00584032 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2017-02-19 13:04 - 2016-10-14 21:51 - 00322912 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2017-02-19 13:04 - 2016-10-14 21:51 - 00232800 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2017-02-19 13:04 - 2016-10-14 21:38 - 00500064 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2017-02-19 13:04 - 2016-10-14 21:30 - 00557408 _____ (Microsoft Corporation) C:\windows\system32\Drivers\spaceport.sys
2017-02-19 13:04 - 2016-10-14 20:56 - 00219648 _____ (Microsoft Corporation) C:\windows\system32\AudioSrvPolicyManager.dll
2017-02-19 13:04 - 2016-10-14 20:56 - 00120832 _____ (Microsoft Corporation) C:\windows\system32\BluetoothApis.dll
2017-02-19 13:04 - 2016-10-14 20:55 - 00156672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2017-02-19 13:04 - 2016-10-14 20:54 - 00463872 _____ (Microsoft Corporation) C:\windows\system32\daxexec.dll
2017-02-19 13:04 - 2016-10-14 20:39 - 00631296 _____ (Microsoft Corporation) C:\windows\system32\NotificationController.dll
2017-02-19 13:04 - 2016-10-05 03:35 - 00279904 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sdbus.sys
2017-02-19 13:04 - 2016-10-05 03:16 - 00187232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dumpsd.sys
2017-02-19 13:04 - 2016-10-05 03:13 - 00146784 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostCommon.dll
2017-02-19 13:04 - 2016-10-05 03:09 - 00064352 _____ (Avago Technologies) C:\windows\system32\Drivers\MegaSas2i.sys
2017-02-19 13:04 - 2016-10-05 02:36 - 00128512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthpan.sys
2017-02-19 13:04 - 2016-10-05 02:33 - 00268800 _____ (Microsoft Corporation) C:\windows\system32\UserMgrProxy.dll
2017-02-19 13:04 - 2016-10-05 02:24 - 00099328 _____ (Microsoft Corporation) C:\windows\system32\adsmsext.dll
2017-02-19 13:04 - 2016-09-15 10:29 - 00169056 _____ (Microsoft Corporation) C:\windows\system32\skci.dll
2017-02-19 13:04 - 2016-09-15 09:43 - 00039424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\kbdhid.sys
2017-02-19 13:04 - 2016-09-15 09:42 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\winhvr.sys
2017-02-19 13:04 - 2016-09-15 09:38 - 00427008 _____ (Microsoft Corporation) C:\windows\system32\vmrdvcore.dll
2017-02-19 13:04 - 2016-09-15 09:38 - 00349696 _____ (Microsoft Corporation) C:\windows\system32\icsvcext.dll
2017-02-19 13:04 - 2016-09-15 09:35 - 00329728 _____ (Microsoft Corporation) C:\windows\system32\deviceaccess.dll
2017-02-19 13:04 - 2016-09-15 09:35 - 00305152 _____ (Microsoft Corporation) C:\windows\system32\icsvc.dll
2017-02-19 13:04 - 2016-09-15 09:23 - 01020928 _____ (Microsoft Corporation) C:\windows\system32\usermgr.dll
2017-02-19 13:04 - 2016-09-06 22:34 - 00178528 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHostUser.dll
2017-02-19 13:04 - 2016-09-06 22:29 - 00118112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\EhStorTcgDrv.sys
2017-02-19 13:04 - 2016-09-06 21:59 - 00095232 _____ (Microsoft Corporation) C:\windows\system32\tzautoupdate.dll
2017-02-19 13:04 - 2016-09-06 21:56 - 00157696 _____ (Microsoft Corporation) C:\windows\system32\XamlTileRender.dll
2017-02-19 13:04 - 2016-09-06 21:46 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\dlnashext.dll
2017-02-19 13:04 - 2016-08-19 22:20 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\xinputhid.sys
2017-02-19 13:04 - 2016-08-19 22:18 - 00114176 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthenum.sys
2017-02-19 13:04 - 2016-08-19 22:15 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\Drivers\BTHUSB.SYS
2017-02-19 13:04 - 2016-08-05 21:16 - 00073568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hvservice.sys
2017-02-19 13:04 - 2016-08-05 21:16 - 00020320 _____ (Microsoft Corporation) C:\windows\system32\kdhvcom.dll
2017-02-19 13:04 - 2016-08-05 20:47 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidusb.sys
2017-02-19 13:04 - 2016-08-05 20:46 - 00040960 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2017-02-19 13:03 - 2016-09-10 06:21 - 00118272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\capimg.sys
2017-02-19 12:09 - 2017-02-18 17:49 - 00485032 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2017-02-19 12:06 - 2017-02-23 16:40 - 00000000 ____D C:\windows\system32\MRT
2017-02-19 12:06 - 2017-02-23 16:37 - 138020592 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-02-19 11:59 - 2016-05-25 15:31 - 01166520 _____ (Microsoft Corporation) C:\windows\system32\PresentationNative_v0300.dll
2017-02-19 11:59 - 2016-05-25 15:31 - 00124624 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-02-19 11:59 - 2016-05-25 15:31 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2017-02-19 11:59 - 2016-05-25 12:03 - 00778936 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationNative_v0300.dll
2017-02-19 11:59 - 2016-05-25 12:03 - 00103120 _____ (Microsoft Corporation) C:\windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-02-19 11:59 - 2016-05-25 12:03 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2017-02-18 18:14 - 2016-12-20 21:44 - 00120320 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2017-02-18 18:13 - 2016-12-21 00:08 - 00142848 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2017-02-18 15:50 - 2017-02-18 15:50 - 00336887 _____ C:\Users\Skand\Downloads\DeDRM_plugin.zip
2017-02-18 15:25 - 2017-02-18 15:25 - 03907384 _____ (Microsoft Corporation) C:\Users\Skand\Downloads\Setup.X86.en-US_O365HomePremRetail_0fa9d89c-0f2f-4022-87d5-c6d0cffe3f27_TX_PR_.exe
2017-02-18 15:12 - 2017-02-18 15:12 - 00001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
2017-02-18 15:12 - 2017-02-18 15:12 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2017-02-18 15:11 - 2017-02-18 15:17 - 00000000 ____D C:\Program Files\Adobe
2017-02-18 15:11 - 2017-02-18 15:11 - 00001283 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk
2017-02-18 15:11 - 2017-02-18 15:11 - 00001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2017-02-18 15:10 - 2017-02-18 15:10 - 00001245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk
2017-02-18 15:08 - 2017-02-18 15:08 - 00001599 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2017-02-18 15:08 - 2017-02-18 15:08 - 00001429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2017-02-18 15:06 - 2017-02-18 15:12 - 00000000 ____D C:\Program Files\Common Files\Adobe
2017-02-18 15:01 - 2017-02-18 15:01 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Macromedia
2017-02-18 14:52 - 2017-02-18 14:52 - 00000000 ____D C:\Users\Skand\AppData\Local\calibre-cache
2017-02-18 14:51 - 2017-02-27 22:33 - 00000000 ____D C:\Users\Skand\OneDrive\Documents\Calibre Library
2017-02-18 14:51 - 2017-02-27 22:15 - 00000000 ____D C:\Users\Skand\AppData\Roaming\calibre
2017-02-18 14:50 - 2017-02-18 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management
2017-02-18 14:50 - 2017-02-18 14:50 - 00000000 ____D C:\Program Files (x86)\Calibre2
2017-02-18 14:49 - 2017-02-18 14:49 - 63135744 _____ C:\Users\Skand\Downloads\calibre-2.79.1.msi
2017-02-18 14:44 - 2017-02-18 14:44 - 00000000 ____D C:\Users\Skand\AppData\Local\Private Internet Access
2017-02-18 14:44 - 2017-02-18 14:44 - 00000000 ____D C:\Users\Skand\AppData\Local\Crashpad
2017-02-18 14:43 - 2017-02-18 14:44 - 00000000 ____D C:\Program Files\pia_manager
2017-02-18 14:43 - 2017-02-18 14:43 - 00027136 _____ (The OpenVPN Project) C:\windows\system32\Drivers\tap0901.sys
2017-02-18 14:43 - 2017-02-18 14:43 - 00003270 _____ C:\windows\System32\Tasks\Private Internet Access Startup
2017-02-18 14:43 - 2017-02-18 14:43 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Private Internet Access
2017-02-18 14:42 - 2017-02-18 14:42 - 61428667 _____ C:\Users\Skand\Downloads\pia-v68-installer-win.exe
2017-02-18 14:41 - 2017-02-18 14:41 - 04216840 _____ (Microsoft Corporation) C:\Users\Skand\Downloads\vcredist_x86.exe
2017-02-18 14:40 - 2017-02-18 14:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge
2017-02-18 14:40 - 2017-02-18 14:40 - 00000000 ____D C:\Program Files (x86)\Deluge
2017-02-18 14:38 - 2017-02-18 14:38 - 00000000 ____D C:\Users\Skand\AppData\Local\CEF
2017-02-18 14:37 - 2017-02-21 17:52 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-02-18 14:37 - 2017-02-18 14:40 - 00004562 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task
2017-02-18 14:37 - 2017-02-18 14:37 - 00000000 ____D C:\Users\Skand\AppData\LocalLow\Adobe
2017-02-18 14:36 - 2017-02-18 15:17 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-02-18 14:36 - 2017-02-18 15:12 - 00000000 ____D C:\ProgramData\Adobe
2017-02-18 14:34 - 2017-03-10 13:12 - 00000000 ____D C:\Users\Skand\AppData\Local\Adobe
2017-02-18 14:19 - 2017-03-11 16:08 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Kodi
2017-02-18 14:18 - 2017-03-10 13:19 - 00000000 ____D C:\ProgramData\Package Cache
2017-02-18 14:17 - 2017-02-18 14:17 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
2017-02-18 14:16 - 2017-02-18 14:17 - 00000000 ____D C:\Program Files (x86)\Kodi
2017-02-18 14:15 - 2017-02-18 14:16 - 87266194 _____ C:\Users\Skand\Downloads\kodi-16.1-Jarvis.exe
2017-02-18 14:12 - 2017-02-18 14:14 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Blackboard
2017-02-18 14:12 - 2017-02-18 14:12 - 00001712 _____ C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackboard Collaborate Launcher.lnk
2017-02-18 14:12 - 2017-02-18 14:12 - 00000000 ____D C:\Users\Skand\AppData\LocalLow\Sun
2017-02-18 14:12 - 2017-02-18 14:12 - 00000000 ____D C:\Users\Skand\AppData\Local\Blackboard
2017-02-18 14:07 - 2015-07-18 12:21 - 00000121 _____ C:\Users\Skand\OneDrive\Documents\Jon's Notebook.url
2017-02-18 14:05 - 2017-03-01 18:28 - 00003290 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task v2
2017-02-18 14:05 - 2017-02-18 14:05 - 00002347 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-18 14:04 - 2017-02-18 14:12 - 00000000 ____D C:\Users\Skand\AppData\Local\Google
2017-02-18 14:04 - 2017-02-18 14:05 - 00000000 ____D C:\Program Files (x86)\Google
2017-02-18 14:04 - 2017-02-18 14:04 - 01129376 _____ (Google Inc.) C:\Users\Skand\Downloads\ChromeSetup.exe
2017-02-18 14:04 - 2017-02-18 14:04 - 00003416 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-02-18 14:04 - 2017-02-18 14:04 - 00003292 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-02-18 14:04 - 2017-02-18 14:04 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Skype
2017-02-18 14:03 - 2017-03-14 19:04 - 00000000 ___RD C:\Users\Skand\OneDrive
2017-02-18 14:03 - 2017-03-01 18:28 - 00002366 _____ C:\Users\Skand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-02-18 14:03 - 2017-02-18 14:03 - 00000000 ____D C:\Users\Skand\AppData\Local\NetworkTiles
2017-02-18 14:03 - 2017-02-18 14:03 - 00000000 ____D C:\Users\Skand\AppData\Local\MicrosoftEdge
2017-02-18 14:02 - 2017-02-18 14:02 - 00000000 ____D C:\Users\Skand\AppData\Local\Comms
2017-02-18 14:01 - 2017-02-18 14:01 - 00000000 ____D C:\Users\Skand\AppData\Local\Publishers
2017-02-18 14:00 - 2017-03-10 14:07 - 00000000 ____D C:\Users\Skand\AppData\Local\Packages
2017-02-18 14:00 - 2017-02-18 15:19 - 00000000 ____D C:\Users\Skand\AppData\Roaming\Adobe
2017-02-18 14:00 - 2017-02-18 15:00 - 00000000 ____D C:\Users\Skand\AppData\Local\ConnectedDevicesPlatform
2017-02-18 14:00 - 2017-02-18 14:00 - 00000000 ____D C:\Users\Skand\AppData\Local\VirtualStore
2017-02-18 14:00 - 2017-02-18 14:00 - 00000000 ____D C:\Users\Skand\AppData\Local\TileDataLayer
2017-02-18 13:59 - 2017-03-14 19:01 - 00000000 ____D C:\Users\Skand
2017-02-18 13:59 - 2017-02-18 13:59 - 00000020 ___SH C:\Users\Skand\ntuser.ini
2017-02-18 13:59 - 2017-02-18 13:59 - 00000000 _SHDL C:\Users\Skand\My Documents
2017-02-18 13:59 - 2017-02-18 13:59 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\NetworkTiles
2017-02-18 13:58 - 2017-02-18 13:58 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2017-02-18 13:58 - 2017-02-18 13:58 - 00000000 _SHDL C:\Users\defaultuser0\My Documents
2017-02-18 13:58 - 2017-02-18 13:58 - 00000000 ____D C:\Users\defaultuser0
2017-02-18 13:57 - 2017-02-18 13:59 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2017-02-18 13:57 - 2017-02-18 13:57 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2017-02-18 13:57 - 2017-02-18 13:57 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2017-02-18 13:57 - 2017-02-18 13:57 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-03-14 19:00 - 2016-10-10 16:44 - 00000006 ____H C:\windows\Tasks\SA.DAT
2017-03-14 19:00 - 2016-10-10 16:44 - 00000000 ____D C:\windows\system32\SleepStudy
2017-03-14 18:32 - 2016-07-16 04:36 - 00000000 ____D C:\windows\CbsTemp
2017-03-14 17:38 - 2016-07-16 04:45 - 00000000 ____D C:\windows\INF
2017-03-14 09:57 - 2016-07-16 04:47 - 00000000 ____D C:\windows\AppReadiness
2017-03-14 09:01 - 2016-07-16 04:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-03-13 21:33 - 2016-07-15 23:04 - 00524288 _____ C:\windows\system32\config\BBI
2017-03-12 21:06 - 2016-10-10 16:50 - 01759740 _____ C:\windows\system32\PerfStringBackup.INI
2017-03-10 13:08 - 2016-07-16 04:47 - 00000000 ____D C:\windows\SysWOW64\Macromed
2017-03-10 13:08 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\Macromed
2017-03-09 13:43 - 2016-10-10 16:53 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-03-09 10:06 - 2016-10-10 17:44 - 00000000 ____D C:\windows\Panther
2017-03-09 10:06 - 2016-07-16 04:47 - 00000000 ____D C:\windows\LiveKernelReports
2017-03-01 19:07 - 2016-07-16 04:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-03-01 19:05 - 2016-10-10 16:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-02-21 14:50 - 2016-07-16 04:47 - 00000000 ____D C:\windows\rescache
2017-02-20 19:49 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\NDF
2017-02-19 18:47 - 2016-10-10 16:44 - 04957696 _____ C:\windows\system32\FNTCACHE.DAT
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___SD C:\windows\SysWOW64\F12
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___SD C:\windows\system32\F12
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___SD C:\windows\system32\dsc
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___SD C:\windows\system32\DiagSvcs
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___RD C:\windows\ImmersiveControlPanel
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ___RD C:\Program Files\Windows Defender
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\SysWOW64\setup
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\SysWOW64\oobe
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\WinBioPlugIns
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\setup
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\oobe
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\migwiz
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\lv-LV
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\lt-LT
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\et-EE
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\es-MX
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\en-GB
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\system32\appraiser
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\ShellExperiences
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\Provisioning
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\windows\bcastdvr
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-02-19 18:43 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-02-19 18:43 - 2016-07-15 23:04 - 00000000 ____D C:\windows\SysWOW64\Dism
2017-02-19 18:43 - 2016-07-15 23:04 - 00000000 ____D C:\windows\system32\Sysprep
2017-02-19 18:43 - 2016-07-15 23:04 - 00000000 ____D C:\windows\system32\Dism
2017-02-19 18:43 - 2016-07-15 23:04 - 00000000 ____D C:\windows\servicing
2017-02-19 18:40 - 2016-07-16 04:47 - 00015425 _____ C:\windows\system32\OEMDefaultAssociations.xml
2017-02-18 15:46 - 2016-07-16 04:47 - 00000000 ____D C:\windows\appcompat
2017-02-18 15:07 - 2016-07-16 04:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
 
==================== Files in the root of some directories =======
 
2017-03-11 17:14 - 2017-03-11 17:14 - 0000218 _____ () C:\Users\Skand\AppData\Local\recently-used.xbel
2017-02-19 14:42 - 2017-02-19 14:42 - 0000057 _____ () C:\ProgramData\Ament.ini
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2017-03-13 13:31
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-03-2017
Ran by Skand (14-03-2017 19:24:00)
Running from C:\Users\Skand\Desktop
Windows 10 Home Version 1607 (X64) (2017-02-18 20:57:07)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-667472850-572182410-979922198-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-667472850-572182410-979922198-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-667472850-572182410-979922198-1001 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-667472850-572182410-979922198-501 - Limited - Disabled)
Skand (S-1-5-21-667472850-572182410-979922198-1002 - Administrator - Enabled) => C:\Users\Skand
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated)
Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.2.2288 - AVAST Software)
BCL easyConverter SDK 3 (Word Version) 64 (HKLM\...\{350CC85B-CA59-4F85-909D-8E4CDBF532FA}) (Version: 3.0.64 - BCL Technologies)
Blackboard Collaborate Launcher (HKLM-x32\...\{AEED1D32-C837-405A-8009-6660E3883C9E}) (Version: 1.6.4.0 - Blackboard)
calibre (HKLM-x32\...\{F4E73041-BC8B-4D62-BFD4-EC0D408EB357}) (Version: 2.79.1 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform)
CLIP STUDIO PAINT 1.5.4 (HKLM-x32\...\{88B5A062-DDA1-4F62-A4DD-95D0C4F19979}) (Version: 1.5.4 - CELSYS)
Deluge 1.3.12 (HKLM-x32\...\Deluge) (Version:  - )
Facebook Gameroom 1.3.1.3 (HKLM-x32\...\{7E155A45-DE1A-46E0-A6B2-10FE1D8501FC}) (Version: 1.3.1.3 - Facebook)
Family Tree Maker 2014 (HKLM-x32\...\Family Tree Maker 2014) (Version: 22.0.207 - Ancestry.com, Inc.)
Family Tree Maker 2014 (Version: 22.0.207 - Ancestry.com, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HP ENVY 4500 series Basic Device Software (HKLM\...\{6915424E-704F-4F5D-9057-9C7B406B36DB}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.3.50.9 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{00612F78-52C4-46C0-97F0-F50B6036B5E2}) (Version: 12.5.32.203 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Intel Security True Key (HKLM\...\TrueKey) (Version: 4.12.108.1 - Intel Security)
Kodi (HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Kodi) (Version:  - XBMC-Foundation)
Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.500.3 - McAfee, Inc.)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.7766.2060 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-667472850-572182410-979922198-1002\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7668.2074 - Microsoft Corporation) Hidden
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access)
Product Improvement Study for HP ENVY 4500 series (HKLM\...\{58139103-BACF-4BDC-B71C-955F9164ADA6}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
SafeZone Stable 3.55.2393.590 (x32 Version: 3.55.2393.590 - Avast Software) Hidden
Spotify (HKU\S-1-5-21-667472850-572182410-979922198-1002\...\Spotify) (Version: 1.0.49.125.g72ee7853 - Spotify AB)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.17.4 - Synaptics Incorporated)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.20-7 - Wacom Technology Corp.)
WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {0354FE60-93C3-42D6-9798-B2FC4BB103EA} - System32\Tasks\SafeZone scheduled Autoupdate 1489080247 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-03-03] (Avast Software)
Task: {10B5A7BA-576E-4EED-97DA-1A4973BC0EB5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {1CD6F318-06B1-4247-9E6E-7D8C55AE727C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2016-12-06] (HP Inc.)
Task: {35D7D673-C6B8-42AB-9B6A-08D5DA626A39} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation)
Task: {40F6E310-0ABC-4CC8-AE83-0B274F2C432F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-02-18] (Microsoft Corporation)
Task: {52DAF2C9-1618-4CF4-9646-6F2C9C0B6454} - System32\Tasks\Private Internet Access Startup => C:\Program Files\pia_manager\pia_manager.exe [2017-02-18] ()
Task: {757A1B65-0D2B-431D-A4EF-D09ECF11E780} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-02-07] (Piriform Ltd)
Task: {83569996-C768-4282-A6AF-83836BF754B5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {8C7E504C-B7DE-43EB-8E38-BAD3DB016246} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-12-21] (HP Inc.)
Task: {A9211B58-C8A5-4652-BAA9-D8C70F4A210A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-18] (Google Inc.)
Task: {AFAC1CCE-E8AB-4CDC-9CD6-6F5D15161837} - System32\Tasks\HPCustParticipation HP ENVY 4500 series => C:\Program Files\HP\HP ENVY 4500 series\Bin\HPCustPartic.exe [2014-07-21] (Hewlett-Packard Development Company, LP)
Task: {B26402F6-BD96-49DF-A80E-31E903F00268} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-02-18] (Microsoft Corporation)
Task: {B8C3CA42-39E1-4019-B235-D87433E7E38E} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\windows\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [2017-03-10] (Adobe Systems Incorporated)
Task: {B9650E7D-52AA-4D44-85AB-A4160348B242} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-03-09] (AVAST Software)
Task: {BE25CBE6-931A-4FE3-AFF3-5919C375ACDB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-06] (HP Inc.)
Task: {D16861C2-0319-4BE5-829A-16ED77FC0B52} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-18] (Google Inc.)
Task: {E2D542AF-2996-4BC6-B700-FD65043F6FA7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {F83C4E47-7B66-4E33-AA61-5DC30528305B} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-03-09] (AVAST Software)
Task: {F96607F7-503C-4969-B2A3-927A01F10226} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-03-10] (Adobe Systems Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\windows\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2016-07-16 04:42 - 2016-07-16 04:42 - 00231424 _____ () C:\windows\SYSTEM32\ism32k.dll
2017-02-19 13:05 - 2016-12-09 03:29 - 02681200 _____ () C:\windows\system32\CoreUIComponents.dll
2017-03-09 13:18 - 2017-02-24 07:23 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-03-09 13:18 - 2017-02-24 07:23 - 02264528 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-02-19 13:05 - 2016-12-09 03:29 - 02681200 _____ () C:\windows\SYSTEM32\CoreUIComponents.dll
2017-02-18 15:40 - 2017-01-29 06:55 - 08930504 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2017-02-19 13:08 - 2016-09-06 21:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-02-19 13:08 - 2016-12-21 00:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-13 14:13 - 2017-02-02 17:01 - 01658320 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll
2017-02-19 13:05 - 2016-12-20 23:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-02-19 13:05 - 2016-12-20 23:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-02-19 13:05 - 2016-12-20 23:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-02-19 13:05 - 2016-12-20 23:48 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-02-19 13:05 - 2016-12-20 23:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-02-19 13:05 - 2016-12-20 23:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-12-05 15:19 - 2012-11-26 21:54 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2017-02-18 14:05 - 2017-02-01 02:47 - 02459992 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libglesv2.dll
2017-02-18 14:05 - 2017-02-01 02:47 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libegl.dll
2017-03-13 09:25 - 2017-03-13 09:30 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-03-13 09:25 - 2017-03-13 09:30 - 00182784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-02-19 13:05 - 2016-09-15 10:29 - 03388256 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentDeliveryManager.Background.dll
2017-02-19 13:05 - 2016-09-06 22:36 - 02263904 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentManagementSDK.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 01162752 _____ () C:\Users\Skand\AppData\Local\Facebook\Games\CefSharp.Core.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 67197440 _____ () C:\Users\Skand\AppData\Local\Facebook\Games\libcef.dll
2017-03-09 10:10 - 2017-03-09 10:10 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-03-09 10:11 - 2017-03-09 10:12 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-03-09 10:08 - 2017-03-09 10:08 - 00290352 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-03-09 10:11 - 2017-03-09 10:11 - 00655056 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 00752640 _____ () C:\Users\Skand\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.Core.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 01886208 _____ () C:\Users\Skand\AppData\Local\Facebook\Games\libglesv2.dll
2017-02-15 17:58 - 2017-02-15 17:58 - 00078848 _____ () C:\Users\Skand\AppData\Local\Facebook\Games\libegl.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2016-07-16 04:47 - 2017-03-10 13:41 - 00000853 ____A C:\windows\system32\Drivers\etc\hosts
 
 
0.0.0.1 mssplus.mcafee.com
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-667472850-572182410-979922198-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Skand\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg
DNS Servers: 68.105.28.11 - 68.105.29.11
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{065DFA3D-1F9C-492B-9184-8D1E268DABA1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{8288B7A6-2603-42C1-974A-616BCA6248B2}C:\users\skand\appdata\local\programs\blackboard\blackboard collaborate launcher\resources\java\jre1.7.0_80\bin\javaw.exe] => (Allow) C:\users\skand\appdata\local\programs\blackboard\blackboard collaborate launcher\resources\java\jre1.7.0_80\bin\javaw.exe
FirewallRules: [UDP Query User{994A2EB9-7E8F-443C-8F57-B3098443140C}C:\users\skand\appdata\local\programs\blackboard\blackboard collaborate launcher\resources\java\jre1.7.0_80\bin\javaw.exe] => (Allow) C:\users\skand\appdata\local\programs\blackboard\blackboard collaborate launcher\resources\java\jre1.7.0_80\bin\javaw.exe
FirewallRules: [TCP Query User{07B4B57E-83BA-4661-AD19-42A80D8435C9}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{B90EA63A-19FB-43B5-8541-8C54CAFCB672}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [{0BAD3245-6F1D-44A7-8B80-79D33B9E89F5}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{B675590F-3AD2-4638-B3DA-B580654DB1E0}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\DeviceSetup.exe
FirewallRules: [{881CE171-03A8-4E5C-A827-92F690545C71}] => (Allow) LPort=5357
FirewallRules: [{D635A5F2-09B8-41D5-AA0F-AD74325C3125}] => (Allow) C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [TCP Query User{F461BA15-9FAF-4AED-8ABA-857C08A82B70}C:\users\skand\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\skand\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{2A7B9B48-B442-4F33-9298-F25D17904204}C:\users\skand\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\skand\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{4408D51B-F3DE-41A5-A507-5F32D88F1D8B}C:\users\skand\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\skand\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{F6F0DD57-A59D-494F-AEC7-A981E22A153E}C:\users\skand\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\skand\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{FA47AE8B-3E70-4998-B76E-DC1BF159A6FA}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{EDBFAB23-D6CB-4589-B17D-F07DB93F02AE}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{9D1307ED-5AD1-4A0A-BC96-4B4E95317815}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{378D5BBF-E0A0-49F8-A190-80A62D2AA6E0}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [{47722229-8157-4ADC-B53B-BC7B677F23CE}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.561\SZBrowser.exe
FirewallRules: [{4BE22298-8BC3-4EC0-8F0D-92ECB2BD8D6C}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.590\SZBrowser.exe
 
==================== Restore Points =========================
 
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (03/14/2017 07:14:04 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 07:12:51 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 01:49:21 PM) (Source: Microsoft Office 16) (EventID: 2001) (User: )
Description: Microsoft Word: Rejected Safe Mode action : Word has detected a problem with the existing Normal.dotm.  Would you like to create a new Normal.dotm?.
Rejected Safe Mode action : Microsoft Word.
 
Error: (03/14/2017 01:15:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 01:00:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 12:58:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 12:56:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 12:50:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 12:04:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
Error: (03/14/2017 12:02:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-NLA9JFV)
Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
 
 
System errors:
=============
Error: (03/14/2017 07:07:37 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Downloaded Maps Manager service hung on starting.
 
Error: (03/14/2017 07:05:36 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The HP Support Solutions Framework Service service hung on starting.
 
Error: (03/14/2017 07:02:44 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/14/2017 07:02:44 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/14/2017 07:02:44 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/14/2017 07:02:44 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/14/2017 07:02:42 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 and APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (03/14/2017 07:00:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The InstallerService service failed to start due to the following error: 
The system cannot find the file specified.
 
Error: (03/14/2017 07:00:48 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 6:57:47 PM on ‎3/‎14/‎2017 was unexpected.
 
Error: (03/14/2017 05:39:15 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
CodeIntegrity:
===================================
  Date: 2017-02-19 10:55:11.291
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2017-02-19 10:55:10.274
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5 CPU M 520 @ 2.40GHz
Percentage of memory in use: 78%
Total physical RAM: 1903.38 MB
Available physical RAM: 410.24 MB
Total Virtual: 4335.38 MB
Available Virtual: 1792.79 MB
 
==================== Drives ================================
 
Drive c: (Windows) (Fixed) (Total:230.07 GB) (Free:169.67 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: BE26A186)
Partition 1: (Active) - (Size=499 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=230.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=2.3 GB) - (Type=27)
 
==================== End of Addition.txt ============================

 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 18,776 posts
  • MVP
Please download MiniToolBox, save it to your desktop and run it.
 
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer Errors
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
     
    Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

    • 0

    #3
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    Here is the log:

     

    MiniToolBox by Farbar  Version: 17-06-2016
    Ran by Skand (administrator) on 20-03-2017 at 18:27:01
    Running from "C:\Users\Skand\Desktop"
    Microsoft Windows 10 Home  (X64)
    Model: HP EliteBook 8440p Manufacturer: Hewlett-Packard
    Boot Mode: Normal
    ***************************************************************************
     
    ========================= Flush DNS: ===================================
     
    Windows IP Configuration
     
    Successfully flushed the DNS Resolver Cache.
     
    ========================= IE Proxy Settings: ============================== 
     
    Proxy is not enabled.
    No Proxy Server is set.
     
    "Reset IE Proxy Settings": IE Proxy Settings were reset.
    ========================= Hosts content: =================================
    0.0.0.1 mssplus.mcafee.com
    ========================= IP Configuration: ================================
     
    Intel® Centrino® Ultimate-N 6300 AGN Driver = Wi-Fi 2 (Connected)
    Intel® 82577LM Gigabit Network Connection = Ethernet 2 (Media disconnected)
    Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
    TAP-Windows Adapter V9 = Ethernet 3 (Media disconnected)
     
     
    # ----------------------------------
    # IPv4 Configuration
    # ----------------------------------
    pushd interface ipv4
     
    reset
    set global
    set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Local Area Connection* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Ethernet 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Wi-Fi 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Local Area Connection* 3" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
    set interface interface="Ethernet 3" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
     
     
    popd
    # End of IPv4 configuration
     
     
     
    Windows IP Configuration
     
       Host Name . . . . . . . . . . . . : DESKTOP-NLA9JFV
       Primary Dns Suffix  . . . . . . . : 
       Node Type . . . . . . . . . . . . : Hybrid
       IP Routing Enabled. . . . . . . . : No
       WINS Proxy Enabled. . . . . . . . : No
     
    Ethernet adapter Ethernet 2:
     
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : Comsale.com
       Description . . . . . . . . . . . : Intel® 82577LM Gigabit Network Connection
       Physical Address. . . . . . . . . : B4-99-BA-E7-15-95
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
     
    Wireless LAN adapter Local Area Connection* 3:
     
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
       Physical Address. . . . . . . . . : 00-24-D7-AF-13-A1
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
     
    Ethernet adapter Ethernet 3:
     
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : TAP-Windows Adapter V9
       Physical Address. . . . . . . . . : 00-FF-0C-CB-DF-35
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
     
    Wireless LAN adapter Wi-Fi 2:
     
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : Intel® Centrino® Ultimate-N 6300 AGN
       Physical Address. . . . . . . . . : 00-24-D7-AF-13-A0
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
       IPv6 Address. . . . . . . . . . . : 2600:8801:2100:9390:1400:b066:1f18:7ac1(Preferred) 
       Temporary IPv6 Address. . . . . . : 2600:8801:2100:9390:1d84:65c1:c0dc:8f61(Preferred) 
       Link-local IPv6 Address . . . . . : fe80::1400:b066:1f18:7ac1%17(Preferred) 
       IPv4 Address. . . . . . . . . . . : 192.168.0.8(Preferred) 
       Subnet Mask . . . . . . . . . . . : 255.255.255.0
       Lease Obtained. . . . . . . . . . : Monday, March 20, 2017 6:04:49 PM
       Lease Expires . . . . . . . . . . : Monday, March 20, 2017 7:24:45 PM
       Default Gateway . . . . . . . . . : fe80::1286:8cff:fe19:11d8%17
                                           192.168.0.1
       DHCP Server . . . . . . . . . . . : 192.168.0.1
       DHCPv6 IAID . . . . . . . . . . . : 151004375
       DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-3A-6E-8B-F0-DE-F1-F0-B0-AF
       DNS Servers . . . . . . . . . . . : 68.105.28.11
                                           68.105.29.11
                                           68.105.28.12
       NetBIOS over Tcpip. . . . . . . . : Enabled
     
    Ethernet adapter Bluetooth Network Connection:
     
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
       Physical Address. . . . . . . . . : CC-52-AF-09-D7-D9
       DHCP Enabled. . . . . . . . . . . : Yes
       Autoconfiguration Enabled . . . . : Yes
     
    Tunnel adapter Reusable ISATAP Interface {8A01A9BD-DED8-45C9-BCA6-42B6E5D98751}:
     
       Media State . . . . . . . . . . . : Media disconnected
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : Microsoft ISATAP Adapter
       Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Enabled. . . . . . . . . . . : No
       Autoconfiguration Enabled . . . . : Yes
     
    Tunnel adapter Teredo Tunneling Pseudo-Interface:
     
       Connection-specific DNS Suffix  . : 
       Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
       Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Enabled. . . . . . . . . . . : No
       Autoconfiguration Enabled . . . . : Yes
       IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:24ba:316b:b94b:5910(Preferred) 
       Link-local IPv6 Address . . . . . : fe80::24ba:316b:b94b:5910%11(Preferred) 
       Default Gateway . . . . . . . . . : 
       DHCPv6 IAID . . . . . . . . . . . : 637534208
       DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-3A-6E-8B-F0-DE-F1-F0-B0-AF
       NetBIOS over Tcpip. . . . . . . . : Disabled
    Server:  cdns1.cox.net
    Address:  68.105.28.11
     
    Name:    google.com
    Addresses:  2607:f8b0:4007:808::200e
     216.58.216.14
     
     
    Pinging google.com [2607:f8b0:4007:80d::200e] with 32 bytes of data:
    Reply from 2607:f8b0:4007:80d::200e: time=36ms 
    Reply from 2607:f8b0:4007:80d::200e: time=65ms 
     
    Ping statistics for 2607:f8b0:4007:80d::200e:
        Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
    Approximate round trip times in milli-seconds:
        Minimum = 36ms, Maximum = 65ms, Average = 50ms
    Server:  cdns1.cox.net
    Address:  68.105.28.11
     
    Name:    yahoo.com
    Addresses:  2001:4998:c:a06::2:4008
     2001:4998:58:c02::a9
     2001:4998:44:204::a7
     98.138.253.109
     206.190.36.45
     98.139.183.24
     
     
    Pinging yahoo.com [2001:4998:c:a06::2:4008] with 32 bytes of data:
    Request timed out.
    Reply from 2001:4998:c:a06::2:4008: time=64ms 
     
    Ping statistics for 2001:4998:c:a06::2:4008:
        Packets: Sent = 2, Received = 1, Lost = 1 (50% loss),
    Approximate round trip times in milli-seconds:
        Minimum = 64ms, Maximum = 64ms, Average = 64ms
     
    Pinging 127.0.0.1 with 32 bytes of data:
    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
    Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
     
    Ping statistics for 127.0.0.1:
        Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
    Approximate round trip times in milli-seconds:
        Minimum = 0ms, Maximum = 0ms, Average = 0ms
    ===========================================================================
    Interface List
     23...b4 99 ba e7 15 95 ......Intel® 82577LM Gigabit Network Connection
     22...00 24 d7 af 13 a1 ......Microsoft Wi-Fi Direct Virtual Adapter #2
      3...00 ff 0c cb df 35 ......TAP-Windows Adapter V9
     17...00 24 d7 af 13 a0 ......Intel® Centrino® Ultimate-N 6300 AGN
      5...cc 52 af 09 d7 d9 ......Bluetooth Device (Personal Area Network)
      1...........................Software Loopback Interface 1
     15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
     11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
    ===========================================================================
     
    IPv4 Route Table
    ===========================================================================
    Active Routes:
    Network Destination        Netmask          Gateway       Interface  Metric
              0.0.0.0          0.0.0.0      192.168.0.1      192.168.0.8     40
            127.0.0.0        255.0.0.0         On-link         127.0.0.1    331
            127.0.0.1  255.255.255.255         On-link         127.0.0.1    331
      127.255.255.255  255.255.255.255         On-link         127.0.0.1    331
          192.168.0.0    255.255.255.0         On-link       192.168.0.8    296
          192.168.0.8  255.255.255.255         On-link       192.168.0.8    296
        192.168.0.255  255.255.255.255         On-link       192.168.0.8    296
            224.0.0.0        240.0.0.0         On-link         127.0.0.1    331
            224.0.0.0        240.0.0.0         On-link       192.168.0.8    296
      255.255.255.255  255.255.255.255         On-link         127.0.0.1    331
      255.255.255.255  255.255.255.255         On-link       192.168.0.8    296
    ===========================================================================
    Persistent Routes:
      None
     
    IPv6 Route Table
    ===========================================================================
    Active Routes:
     If Metric Network Destination      Gateway
     17    296 ::/0                     fe80::1286:8cff:fe19:11d8
      1    331 ::1/128                  On-link
     11    331 2001::/32                On-link
     11    331 2001:0:9d38:6ab8:24ba:316b:b94b:5910/128
                                        On-link
     17    296 2600:8801:2100:9390::/64 On-link
     17    296 2600:8801:2100:9390:1400:b066:1f18:7ac1/128
                                        On-link
     17    296 2600:8801:2100:9390:1d84:65c1:c0dc:8f61/128
                                        On-link
     17    296 fe80::/64                On-link
     11    331 fe80::/64                On-link
     17    296 fe80::1400:b066:1f18:7ac1/128
                                        On-link
     11    331 fe80::24ba:316b:b94b:5910/128
                                        On-link
      1    331 ff00::/8                 On-link
     17    296 ff00::/8                 On-link
     11    331 ff00::/8                 On-link
    ===========================================================================
    Persistent Routes:
      None
    ========================= Winsock entries =====================================
     
    Catalog5 01 C:\windows\SysWoW64\napinsp.dll [55808] (Microsoft Corporation)
    Catalog5 02 C:\windows\SysWoW64\pnrpnsp.dll [70656] (Microsoft Corporation)
    Catalog5 03 C:\windows\SysWoW64\pnrpnsp.dll [70656] (Microsoft Corporation)
    Catalog5 04 C:\windows\SysWoW64\NLAapi.dll [65024] (Microsoft Corporation)
    Catalog5 05 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog5 06 C:\windows\SysWoW64\winrnr.dll [24064] (Microsoft Corporation)
    Catalog5 07 C:\windows\SysWoW64\wshbth.dll [51712] (Microsoft Corporation)
    Catalog9 01 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 02 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 03 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 04 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 05 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 06 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 07 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 08 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 09 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 10 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 11 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 12 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    Catalog9 13 C:\windows\SysWoW64\mswsock.dll [306016] (Microsoft Corporation)
    x64-Catalog5 01 C:\Windows\System32\napinsp.dll [67584] (Microsoft Corporation)
    x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [80896] (Microsoft Corporation)
    x64-Catalog5 05 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog5 06 C:\Windows\System32\winrnr.dll [31744] (Microsoft Corporation)
    x64-Catalog5 07 C:\Windows\System32\wshbth.dll [62976] (Microsoft Corporation)
    x64-Catalog9 01 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 02 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 03 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 04 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 05 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 06 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 07 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 08 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 09 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 10 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 11 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 12 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
    x64-Catalog9 13 C:\Windows\System32\mswsock.dll [357216] (Microsoft Corporation)
     
    ========================= Event log errors: ===============================
     
    Application errors:
    ==================
    Error: (03/20/2017 06:06:41 PM) (Source: Application Hang) (User: )
    Description: The program FastBrowserCleaner.exe version 2.0.0.15 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
     
    Process ID: 11f0
     
    Start Time: 01d2a1c98b9a515a
     
    Termination Time: 706
     
    Application Path: C:\Program Files\FastPcTools\Fast Browser Cleaner\FastBrowserCleaner.exe
     
    Report Id: 832a0271-0dd2-11e7-9c03-cc52af09d7d9
     
    Faulting package full name: 
     
    Faulting package-relative application ID:
     
    Error: (03/20/2017 01:31:26 PM) (Source: Microsoft Office 16) (User: )
    Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {9343EF2D-5527-4D05-93B1-836E703B07B2}
     
    Error: (03/20/2017 01:29:49 PM) (Source: Microsoft Office 16) (User: )
    Description: Microsoft Word: Accepted Safe Mode action : Word couldn't start last time. Safe mode could help you troubleshoot the problem, but some features might not be available in this mode.
     
    Do you want to start in safe mode?.
    Accepted Safe Mode action : Microsoft Word.
     
    Error: (03/20/2017 12:44:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: DESKTOP-NLA9JFV)
    Description: Package Microsoft.Windows.Photos_17.214.10010.0_x64__8wekyb3d8bbwe+App was terminated because it took too long to suspend.
     
    Error: (03/20/2017 11:18:28 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: DESKTOP-NLA9JFV)
    Description: Package Microsoft.ZuneVideo_10.17012.10301.0_x64__8wekyb3d8bbwe+Microsoft.ZuneVideo was terminated because it took too long to suspend.
     
    Error: (03/20/2017 11:07:46 AM) (Source: Application Hang) (User: )
    Description: The program WINWORD.EXE version 16.0.7766.2060 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
     
    Process ID: 18ac
     
    Start Time: 01d2a1a4460dcd48
     
    Termination Time: 0
     
    Application Path: C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
     
    Report Id: 9fed59ed-0d97-11e7-9c01-cc52af09d7d9
     
    Faulting package full name: 
     
    Faulting package-relative application ID:
     
    Error: (03/20/2017 10:46:29 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: DESKTOP-NLA9JFV)
    Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
     
    Error: (03/20/2017 10:45:40 AM) (Source: ESENT) (User: )
    Description: taskhostw (4708) WebCacheLocal: Error -1811 (0xfffff8ed) occurred while opening logfile C:\Users\Skand\AppData\Local\Microsoft\Windows\WebCache\V010008E.log.
     
    Error: (03/18/2017 08:52:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: DESKTOP-NLA9JFV)
    Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
     
    Error: (03/18/2017 08:52:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: DESKTOP-NLA9JFV)
    Description: Activation of app Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information.
     
     
    System errors:
    =============
    Error: (03/20/2017 06:16:15 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 04:02:36 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:30:17 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:30:17 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:30:17 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:30:17 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:30:14 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}{F72671A9-012C-4725-9D2F-2A4D32D65169}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
     
    Error: (03/20/2017 03:29:18 PM) (Source: EventLog) (User: )
    Description: The previous system shutdown at 3:00:45 PM on ‎3/‎20/‎2017 was unexpected.
     
    Error: (03/20/2017 02:27:10 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
    Description: Installation Failure: Windows failed to install the following update with error 0x80070002: Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4013429).
     
    Error: (03/20/2017 01:55:49 PM) (Source: DCOM) (User: NT AUTHORITY)
    Description: application-specificLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable
     
     
    Microsoft Office Sessions:
    =========================
    Error: (03/20/2017 06:06:41 PM) (Source: Application Hang)(User: )
    Description: FastBrowserCleaner.exe2.0.0.1511f001d2a1c98b9a515a706C:\Program Files\FastPcTools\Fast Browser Cleaner\FastBrowserCleaner.exe832a0271-0dd2-11e7-9c03-cc52af09d7d9
     
    Error: (03/20/2017 01:31:26 PM) (Source: Microsoft Office 16)(User: )
    Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {9343EF2D-5527-4D05-93B1-836E703B07B2}
     
    Error: (03/20/2017 01:29:49 PM) (Source: Microsoft Office 16)(User: )
    Description: Microsoft WordWord couldn't start last time. Safe mode could help you troubleshoot the problem, but some features might not be available in this mode.
     
    Do you want to start in safe mode?
     
    Error: (03/20/2017 12:44:01 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: DESKTOP-NLA9JFV)
    Description: Microsoft.Windows.Photos_17.214.10010.0_x64__8wekyb3d8bbwe+App
     
    Error: (03/20/2017 11:18:28 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: DESKTOP-NLA9JFV)
    Description: Microsoft.ZuneVideo_10.17012.10301.0_x64__8wekyb3d8bbwe+Microsoft.ZuneVideo
     
    Error: (03/20/2017 11:07:46 AM) (Source: Application Hang)(User: )
    Description: WINWORD.EXE16.0.7766.206018ac01d2a1a4460dcd480C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE9fed59ed-0d97-11e7-9c01-cc52af09d7d9
     
    Error: (03/20/2017 10:46:29 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: DESKTOP-NLA9JFV)
    Description: Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App-2144927142
     
    Error: (03/20/2017 10:45:40 AM) (Source: ESENT)(User: )
    Description: taskhostw4708WebCacheLocal: C:\Users\Skand\AppData\Local\Microsoft\Windows\WebCache\V010008E.log-1811 (0xfffff8ed)
     
    Error: (03/18/2017 08:52:50 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: DESKTOP-NLA9JFV)
    Description: Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App-2144927142
     
    Error: (03/18/2017 08:52:48 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: DESKTOP-NLA9JFV)
    Description: Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App-2144927142
     
     
    CodeIntegrity Errors:
    ===================================
      Date: 2017-03-16 23:55:26.549
      Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
     
      Date: 2017-03-16 23:55:25.967
      Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
     
      Date: 2017-02-19 10:55:11.291
      Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
     
      Date: 2017-02-19 10:55:10.274
      Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
     
     
    =========================== Installed Programs ============================
     
    Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated)
    Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated)
    Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
    Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.2.2288 - AVAST Software)
    BCL easyConverter SDK 3 (Word Version) 64 (HKLM\...\{350CC85B-CA59-4F85-909D-8E4CDBF532FA}) (Version: 3.0.64 - BCL Technologies)
    Blackboard Collaborate Launcher (HKLM-x32\...\{AEED1D32-C837-405A-8009-6660E3883C9E}) (Version: 1.6.4.0 - Blackboard)
    calibre (HKLM-x32\...\{F4E73041-BC8B-4D62-BFD4-EC0D408EB357}) (Version: 2.79.1 - Kovid Goyal)
    CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform)
    CLIP STUDIO PAINT 1.5.4 (HKLM-x32\...\{88B5A062-DDA1-4F62-A4DD-95D0C4F19979}) (Version: 1.5.4 - CELSYS)
    Deluge 1.3.12 (HKLM-x32\...\Deluge) (Version:  - )
    Facebook Gameroom 1.3.1.3 (HKLM-x32\...\{7E155A45-DE1A-46E0-A6B2-10FE1D8501FC}) (Version: 1.3.1.3 - Facebook)
    Family Tree Maker 2014 (HKLM\...\{39EF38DF-2727-4C09-A165-FD3B87BA3AE9}) (Version: 22.0.207 - Ancestry.com, Inc.) Hidden
    Family Tree Maker 2014 (HKLM-x32\...\Family Tree Maker 2014) (Version: 22.0.207 - Ancestry.com, Inc.)
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.)
    Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.32.7 - Google Inc.) Hidden
    HP ENVY 4500 series Basic Device Software (HKLM\...\{6915424E-704F-4F5D-9057-9C7B406B36DB}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
    HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard)
    HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
    HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.3.50.9 - HP Inc.)
    HP Support Solutions Framework (HKLM-x32\...\{00612F78-52C4-46C0-97F0-F50B6036B5E2}) (Version: 12.5.32.203 - HP Inc.)
    HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
    Kodi (HKCU\...\Kodi) (Version:  - XBMC-Foundation)
    Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
    McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.500.3 - McAfee, Inc.)
    Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.7766.2060 - Microsoft Corporation)
    Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
    Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
    Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.7766.2047 - Microsoft Corporation) Hidden
    Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.7668.2074 - Microsoft Corporation) Hidden
    PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
    Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access)
    Product Improvement Study for HP ENVY 4500 series (HKLM\...\{58139103-BACF-4BDC-B71C-955F9164ADA6}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
    SafeZone Stable 3.55.2393.590 (HKLM-x32\...\SafeZone 3.55.2393.590) (Version: 3.55.2393.590 - Avast Software) Hidden
    Spotify (HKCU\...\Spotify) (Version: 1.0.49.125.g72ee7853 - Spotify AB)
    Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.17.4 - Synaptics Incorporated)
    VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
    Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.20-7 - Wacom Technology Corp.)
    WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
    WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.)
     
    ========================= Devices: ================================
     
     
    ========================= Memory info: ===================================
     
    Percentage of memory in use: 82%
    Total physical RAM: 1903.38 MB
    Available physical RAM: 330.93 MB
    Total Virtual: 4335.38 MB
    Available Virtual: 1690.2 MB
     
    ========================= Partitions: =====================================
     
    1 Drive c: (Windows) (Fixed) (Total:230.07 GB) (Free:164.06 GB) NTFS
     
    ========================= Users: ========================================
     
    User accounts for \\DESKTOP-NLA9JFV
     
    Administrator            DefaultAccount           defaultuser0             
    Guest                    Skand                    
     
    ========================= Minidump Files ==================================
     
    No minidump file found
     
     
    **** End of log ****

    • 0

    #4
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 18,776 posts
    • MVP
    Error: (03/14/2017 01:49:21 PM) (Source: Microsoft Office 16) (EventID: 2001) (User: )
    Description: Microsoft Word: Rejected Safe Mode action : Word has detected a problem with the existing Normal.dotm.  Would you like to create a new Normal.dotm?.
    Rejected Safe Mode action : Microsoft Word.

     

     

    Close word.  Search for

     

    normal.dotm

     

    right click on any it finds and Rename to anormal.dotm

     

    Word will create a new one when you start it up.

     

     

    You tried to run something called:  FastPcTools\Fast Browser Cleaner but it didn't work.  I don't see it in the FRST scans so I assume you downloaded it and ran it after the scan.  Please uninstall it and refrain from using unknown software.

     

     

    Go to http://www.speedtest.net/and click on Begin Test
     
    When the Test finishes click on Share This Result and then select Forum then Copy then move to a reply and Ctrl + v
     
    Is that about what you paid for?
     
     
    Get the free version of Speccy:
     
    http://www.filehippo...download_speccy (Look in the upper right for the Download
    Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
    Download, Save and Install it.  Tell it you do not need CCLEANER.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), 
    File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
    (It will be near the top,  10-20  lines down.) Save the file.  Attach the file to your next post.  Attaching the log is the best option as it is too big for the forum.  Attaching is a multi step process.
     
    First click on More Reply Options
    Then scroll down to where you see
    Choose File and click on it.  Point it at the file and hit Open.
    Now click on Attach this file.
     
    Get Process Explorer
     
    Save it to your desktop then run it (Vista or Win7+ - right click and Run As Administrator).  
     
    View, Select Column, check Verified Signer, OK
    Options, Verify Image Signatures
     
     
    Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
     
    Wait a full minute then:
     
    File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.
     
     

    • 0

    #5
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    I apologize.  Ihave been working overtime the last couple of days.  I will do these steps tomorrow when I get home from work.


    • 0

    #6
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 18,776 posts
    • MVP

    No problem.  Get to it when you can.


    • 0

    #7
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    http://beta.speedtes.../6161755518.png

     

    The result look right for the internet test.  I am running the rest now.  the normal.dotm has been renamed and the other file deleted.


    • 0

    #8
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    Speccy result file.

    Attached Files


    • 0

    #9
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts
    Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
    System Idle Process 77.80 0 K 4 K 0
    CompatTelRunner.exe 9.99 33,984 K 17,112 K 10356
    chrome.exe 0.03 91,388 K 113,384 K 8324 Google Chrome Google Inc. (Verified) Google Inc
    procexp64.exe 4.70 26,040 K 57,044 K 336 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    dwm.exe 1.04 81,616 K 22,120 K 2156
    Interrupts 0.62 0 K 0 K n/a Hardware Interrupts and DPCs
    csrss.exe 0.12 2,364 K 4,888 K 8160
    svchost.exe 0.02 9,420 K 11,428 K 868 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    Memory Compression 0.05 708 K 15,832 K 2516
    System 0.25 144 K 2,572 K 4
    svchost.exe < 0.01 41,172 K 28,800 K 584 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    avastui.exe 0.12 17,924 K 23,260 K 4504 Avast Antivirus AVAST Software (Verified) AVAST Software s.r.o.
    RuntimeBroker.exe 0.04 23,868 K 27,928 K 5680 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 0.07 6,192 K 7,220 K 952 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    explorer.exe 3.23 82,840 K 82,196 K 5036 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
    aswidsagenta.exe 0.32 40,116 K 38,776 K 4428 Avast Behavior Shield AVAST Software s.r.o. (Verified) AVAST Software s.r.o.
    CCleaner64.exe 0.01 9,744 K 4,244 K 4576
    AvastSvc.exe 0.33 156,556 K 40,072 K 1856 Avast Service AVAST Software (Verified) AVAST Software s.r.o.
    WmiApSrv.exe 0.02 1,776 K 7,836 K 2740 WMI Performance Reverse Adapter Microsoft Corporation (Verified) Microsoft Windows
    conhost.exe 0.01 1,628 K 596 K 2308
    svchost.exe 0.37 40,944 K 31,372 K 540 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    lsass.exe 0.01 6,728 K 9,128 K 732 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
    HPNetworkCommunicatorCom.exe 0.01 3,648 K 7,152 K 10024 HPNetworkCommunicatorCom Hewlett-Packard Development Company, LP (Verified) Hewlett Packard
    SynTPEnh.exe 0.29 3,976 K 3,236 K 7548 Synaptics TouchPad Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated
    taskhostw.exe 0.01 6,436 K 8,256 K 4936 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
    ScanToPCActivationApp.exe < 0.01 4,672 K 5,488 K 6776 ScanToPCActivationApp Hewlett-Packard Development Company, LP (Verified) Hewlett Packard
    svchost.exe 9,212 K 12,156 K 1408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    SearchProtocolHost.exe 2,208 K 8,276 K 6424
    csrss.exe < 0.01 1,880 K 1,920 K 588
    svchost.exe 9,212 K 10,368 K 7720 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    MBAMService.exe < 0.01 22,940 K 6,008 K 2564 Malwarebytes Service Malwarebytes (Verified) Malwarebytes Corporation
    hpservice.exe < 0.01 1,252 K 516 K 1532 HpService Hewlett-Packard Company (Verified) Hewlett-Packard Company
    svchost.exe < 0.01 7,604 K 14,440 K 2372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    WTabletServicePro.exe 1,512 K 484 K 1620 Tablet Service Wacom Technology, Corp. (Verified) Wacom Technology Corporation
    WmiPrvSE.exe 26,588 K 20,980 K 3436
    WmiPrvSE.exe 10,108 K 16,084 K 6560
    winlogon.exe 2,496 K 1,704 K 6728
    wininit.exe 1,204 K 360 K 660
    WacomHost.exe 1,816 K 640 K 7736
    Wacom_TouchUser.exe 0.03 3,644 K 2,980 K 5392
    Wacom_TabletUser.exe 1,796 K 1,408 K 6100 Tablet user module for professional driver Wacom Technology, Corp. (Verified) Wacom Technology Corporation
    Wacom_Tablet.exe 0.01 8,484 K 3,904 K 6084
    Video.UI.exe Suspended 20,400 K 504 K 6844 Video Application Microsoft Corporation (Verified) Microsoft Corporation
    SynTPHelper.exe 1,144 K 468 K 4388
    svchost.exe 5,152 K 4,256 K 1736 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe < 0.01 13,848 K 11,032 K 1092 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 3,592 K 3,452 K 1664 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 4,840 K 5,864 K 2436 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 14,420 K 9,996 K 1116 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 2,428 K 4,896 K 1472 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 7,332 K 11,084 K 2420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 16,564 K 10,012 K 1084 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 2,964 K 2,724 K 1100 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 1,664 K 708 K 2068 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 1,956 K 6,240 K 6268 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    SSScheduler.exe 1,512 K 600 K 5888 McAfee Security Scanner Scheduler McAfee, Inc. (Verified) McAfee
    SpotifyWebHelper.exe 1,932 K 1,488 K 5940 SpotifyWebHelper Spotify Ltd (Verified) Spotify AB
    spoolsv.exe < 0.01 9,820 K 8,140 K 1424 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
    smss.exe 448 K 324 K 428
    smartscreen.exe 11,444 K 21,860 K 8696 SmartScreen Microsoft Corporation (Verified) Microsoft Windows
    SkypeHost.exe Suspended 31,564 K 864 K 8068 Microsoft Skype Preview Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
    sihost.exe 7,384 K 10,156 K 5280 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
    ShellExperienceHost.exe Suspended 39,672 K 704 K 6760 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
    SettingSyncHost.exe 12,996 K 1,412 K 5300 Host Process for Setting Synchronization Microsoft Corporation (Verified) Microsoft Windows
    services.exe 3,200 K 5,256 K 724
    SearchUI.exe Suspended 50,636 K 640 K 4624 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
    SearchIndexer.exe 0.32 34,504 K 14,052 K 3808 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
    procexp.exe 3,396 K 10,424 K 8312 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    onenoteim.exe Suspended 24,788 K 520 K 600 OneNote Microsoft Corporation (Verified) Microsoft Corporation
    OneDrive.exe < 0.01 49,060 K 6,468 K 1584 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
    OfficeClickToRun.exe 33,724 K 7,816 K 2444 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
    Microsoft.Photos.exe Suspended 45,440 K 792 K 5812 (No signature was present in the subject)
    McTkSchedulerService.exe < 0.01 22,748 K 3,476 K 2460 Intel Security True Key McAfee, Inc. (Verified) McAfee
    MCAFEE~2.EXE 20,384 K 4,232 K 608 Intel Security True Key McAfee, Inc. (Verified) McAfee
    McAfee.TrueKey.Service.exe 47,932 K 3,480 K 10624 Intel Security True Key McAfee, Inc. (Verified) McAfee
    mbamtray.exe 17,224 K 3,768 K 6352 Malwarebytes Tray Application Malwarebytes (Verified) Malwarebytes Corporation
    LockAppHost.exe 5,416 K 1,204 K 1552 LockAppHost Microsoft Corporation (Verified) Microsoft Windows
    igfxtray.exe 1,912 K 1,248 K 2296 igfxTray Module Intel Corporation (Verified) Intel Corporation - pGFX
    igfxpers.exe 2,316 K 1,660 K 2168 persistence Module Intel Corporation (Verified) Intel Corporation - pGFX
    hpwuschd2.exe 1,384 K 876 K 2076 hpwuSchd Application Hewlett-Packard (Verified) Hewlett-Packard Company
    HPSupportSolutionsFrameworkService.exe 44,044 K 2,856 K 4444 HP Support Solutions Framework Service HP Inc. (Verified) HP Inc.
    hkcmd.exe 1,884 K 1,012 K 1036 hkcmd Module Intel Corporation (Verified) Intel Corporation - pGFX
    fontdrvhost.exe 992 K 1,168 K 6996
    FacebookGameroom.exe 34,360 K 12,216 K 4016 FacebookGameroom Facebook (Verified) Facebook
    Facebook Gameroom Browser.exe 30,400 K 2,372 K 7588 CefSharp.BrowserSubprocess The CefSharp Authors (Verified) Facebook
    dasHost.exe 5,940 K 2,420 K 1392
    CompatTelRunner.exe 1,088 K 160 K 10520
    chrome.exe 0.12 276,180 K 247,428 K 4896 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 0.02 160,316 K 69,116 K 3124 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 33,888 K 14,252 K 8776 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 36,500 K 16,864 K 10464 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 47,544 K 24,220 K 9248 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 2,300 K 2,764 K 9276 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 2,392 K 1,208 K 8140 Google Chrome Google Inc. (Verified) Google Inc
    Calculator.exe Suspended 16,332 K 408 K 4952 (No signature was present in the subject)
    backgroundTaskHost.exe Suspended 9,072 K 16,248 K 6232 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
    armsvc.exe 2,628 K 1,896 K 2392 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
    ApplicationFrameHost.exe 23,848 K 6,600 K 4828 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows
    SearchFilterHost.exe Suspended 324 K 72 K 9036

    • 0

    #10
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 18,776 posts
    • MVP

    Speccy says it's running hot but the latest version of Speccy doesn't seem to be very accurate so let's get a second opinion

     

     
    Download, save and Install it (Win 7 or Vista right click and Run As Admin.) then run it (Win 7 or Vista right click and Run As Admin.).
     
    It will tell you your temps.   What is the highest temp it shows when the PC is idle?  What does it show while running an anti-virus scan or watching a video?  A hot CPU is a slow CPU.  It will slow down to protect itself.
     
     
    Normally we do not see Command Timeouts on a Western Digital Drive but yours has some.  Timeouts mean the CPU has to resend the command which will slow things down.  Yours is also complaining that it has been dropped.

    Attribute name Command Timeout
    Real value 2,157
    Current 100
    Worst 26
    Threshold 0
    Raw Value 000000086D
    Status Good
    ...
    BF
    Attribute name G-sense error rate
    Real value 4,482
    Current 1
    Worst 1
    Threshold 0
    Raw Value 0000001182
    Status Good

     

     

    Speedfan can also give us a second opinion on the drive:

     

     
    click on the S.M.A.R.T. tab.  Click on the down arrow to the right of the Hard Disk box.  Select your hard drive.  Click on Perform and In-depth Online Analysis of this hard disk.  Your browser will open.
     
    At the bottom of the new page will be a line:  
     
    The link to get back and see a new report about this hard disk in the future is this.
     
    Right click on the underlined "this" and select Copy Link Address.  Move to a Reply and Paste (Ctrl + v).
     
     
    However, Process Explorer is showing 
     
    CompatTelRunner.exe 9.99 33,984 K 17,112 K 10356

     

     

     
    This is another cause of slowness.  See if you can use
     
    Method 3: Disable CompatTelTunner.exe from Task Scheduler
    on
     
    To stop it from running.  Reboot after you disable the task and make a new Process Explorer log.  Does it seem faster?
     
    (Do not use Method 1 on the above page.  Method 2 is OK to use)

    • 0

    Advertisements


    #11
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts
    44 when idle.  48 - 50 during a video.
     
     
     
    The computer is running a little better.  Still hangs periodically.
     
    Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
    System Idle Process 90.95 0 K 4 K 0
    Spotify.exe 2.38 121,996 K 139,264 K 5296 Spotify Spotify Ltd (Verified) Spotify AB
    procexp64.exe 1.79 38,204 K 58,812 K 6380 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    csrss.exe 0.87 2,208 K 4,852 K 668
    Spotify.exe 0.83 68,380 K 99,624 K 6072 Spotify Spotify Ltd (Verified) Spotify AB
    avastui.exe 0.70 9,856 K 10,580 K 6612 Avast Antivirus AVAST Software (Verified) AVAST Software s.r.o.
    OneDrive.exe 0.64 25,388 K 48,476 K 6056 Microsoft OneDrive Microsoft Corporation (Verified) Microsoft Corporation
    Interrupts 0.62 0 K 0 K n/a Hardware Interrupts and DPCs
    dwm.exe 0.30 50,392 K 34,276 K 84
    System 0.24 132 K 672 K 4
    svchost.exe 0.15 35,796 K 39,192 K 920 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    SearchIndexer.exe 0.12 20,372 K 13,284 K 2164 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
    AvastSvc.exe 0.09 91,644 K 43,504 K 1916 Avast Service AVAST Software (Verified) AVAST Software s.r.o.
    explorer.exe 0.05 44,300 K 98,604 K 5092 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 0.05 7,532 K 14,984 K 1236 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    Memory Compression 0.04 224 K 63,572 K 2728
    FacebookGameroom.exe 0.03 15,580 K 29,996 K 6220 FacebookGameroom Facebook (Verified) Facebook
    aswidsagenta.exe 0.02 32,700 K 21,740 K 3248 Avast Behavior Shield AVAST Software s.r.o. (Verified) AVAST Software s.r.o.
    HPNetworkCommunicatorCom.exe 0.02 3,456 K 12,876 K 6316 HPNetworkCommunicatorCom Hewlett-Packard Development Company, LP (Verified) Hewlett Packard
    conhost.exe 0.01 1,580 K 5,068 K 5984
    svchost.exe 0.01 8,848 K 17,100 K 776 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    SkypeHost.exe 0.01 3,468 K 9,920 K 5608 Microsoft Skype Preview Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
    Wacom_TouchUser.exe 0.01 3,656 K 9,096 K 3412
    svchost.exe 0.01 8,320 K 19,512 K 872 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    CCleaner64.exe 0.01 6,972 K 15,500 K 2348
    taskhostw.exe < 0.01 5,512 K 14,912 K 4604 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
    services.exe < 0.01 4,332 K 6,460 K 720
    Wacom_Tablet.exe < 0.01 8,072 K 16,552 K 3364
    ScanToPCActivationApp.exe < 0.01 4,512 K 15,824 K 1620 ScanToPCActivationApp Hewlett-Packard Development Company, LP (Verified) Hewlett Packard
    Spotify.exe < 0.01 55,080 K 61,888 K 6808 Spotify Spotify Ltd (Verified) Spotify AB
    SynTPEnh.exe < 0.01 3,904 K 17,280 K 5860 Synaptics TouchPad Enhancements Synaptics Incorporated (Verified) Synaptics Incorporated
    SearchFilterHost.exe < 0.01 1,480 K 6,216 K 6724
    csrss.exe < 0.01 1,696 K 3,880 K 584
    MBAMService.exe < 0.01 23,268 K 19,212 K 2408 Malwarebytes Service Malwarebytes (Verified) Malwarebytes Corporation
    hpservice.exe < 0.01 1,280 K 5,084 K 1600 HpService Hewlett-Packard Company (Verified) Hewlett-Packard Company
    WTabletServicePro.exe 1,540 K 5,756 K 1648 Tablet Service Wacom Technology, Corp. (Verified) Wacom Technology Corporation
    winlogon.exe 2,284 K 8,032 K 832
    wininit.exe 1,224 K 4,500 K 656
    wermgr.exe 976 K 3,208 K 5988
    WacomHost.exe 2,072 K 10,380 K 4988
    Wacom_TabletUser.exe 1,844 K 6,508 K 4560 Tablet user module for professional driver Wacom Technology, Corp. (Verified) Wacom Technology Corporation
    UsoClient.exe 1,180 K 4,764 K 5748
    SynTPHelper.exe 1,120 K 4,652 K 1924
    svchost.exe 12,444 K 21,344 K 792 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 4,360 K 9,784 K 936 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 4,220 K 11,416 K 2432 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 17,456 K 19,964 K 500 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 4,868 K 17,748 K 4572 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 6,640 K 20,280 K 2376 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 19,872 K 36,680 K 516 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 2,412 K 8,824 K 1544 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 5,936 K 17,924 K 2492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 4,644 K 10,280 K 1828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 1,804 K 6,184 K 3192 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 3,708 K 8,788 K 1208 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 3,524 K 10,132 K 1696 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    svchost.exe 2,192 K 9,396 K 2056 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
    SSScheduler.exe 1,504 K 5,816 K 1976 McAfee Security Scanner Scheduler McAfee, Inc. (Verified) McAfee
    SpotifyWebHelper.exe 1,972 K 8,716 K 6104 SpotifyWebHelper Spotify Ltd (Verified) Spotify AB
    Spotify.exe 29,640 K 32,260 K 6216 Spotify Spotify Ltd (Verified) Spotify AB
    spoolsv.exe 8,572 K 21,824 K 1956 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
    smss.exe 484 K 876 K 420
    smartscreen.exe 8,704 K 14,968 K 5660 SmartScreen Microsoft Corporation (Verified) Microsoft Windows
    sihost.exe 4,820 K 19,152 K 4580 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
    ShellExperienceHost.exe Suspended 38,008 K 60,096 K 4856 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
    SettingSyncHost.exe 3,816 K 7,568 K 4192 Host Process for Setting Synchronization Microsoft Corporation (Verified) Microsoft Windows
    SearchUI.exe Suspended 43,904 K 54,796 K 2584 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
    SearchProtocolHost.exe 2,092 K 8,908 K 3804
    RuntimeBroker.exe 5,660 K 24,472 K 4748 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
    procexp.exe 3,372 K 10,488 K 5644 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    pia_manager.exe 1,468 K 2,716 K 4612
    OneDriveStandaloneUpdater.exe 18,324 K 7,436 K 5400 Standalone Updater Microsoft Corporation (Verified) Microsoft Corporation
    OfficeClickToRun.exe 14,872 K 20,088 K 2328 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
    mbamtray.exe 13,708 K 20,696 K 4916 Malwarebytes Tray Application Malwarebytes (Verified) Malwarebytes Corporation
    lsass.exe 5,224 K 10,252 K 728 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
    igfxtray.exe 1,928 K 8,672 K 6140 igfxTray Module Intel Corporation (Verified) Intel Corporation - pGFX
    igfxpers.exe 2,164 K 9,416 K 5704 persistence Module Intel Corporation (Verified) Intel Corporation - pGFX
    hpwuschd2.exe 1,376 K 6,208 K 6540 hpwuSchd Application Hewlett-Packard (Verified) Hewlett-Packard Company
    hkcmd.exe 1,940 K 8,380 K 3504 hkcmd Module Intel Corporation (Verified) Intel Corporation - pGFX
    GoogleUpdate.exe 2,088 K 2,424 K 4676
    fontdrvhost.exe 872 K 3,172 K 6436
    dllhost.exe 1,608 K 6,552 K 5888 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
    dasHost.exe 5,448 K 13,024 K 1228
    backgroundTaskHost.exe 2,340 K 9,392 K 7084 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
    backgroundTaskHost.exe 10,236 K 25,484 K 5552 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
    audiodg.exe 6,192 K 10,688 K 6728
    armsvc.exe 1,560 K 5,724 K 2352 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
     

    • 0

    #12
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 18,776 posts
    • MVP
     
    Have you run a boot-time scan with Avast yet?  It takes like 6 hours so I usually let it run at night.
     
     
    Click on the Avast ball.  Then click on Protection, then on Antivirus, then on Other Scans then on Boot-time Scan.  Click on Install Special Definitions.  Click on Run on Next PC Reboot.
     
      Reboot and let it run a scan.  It may take hours.
    Once it finishes it should load windows.   Mute your speakers so it doesn't wake you up when Windows boots.
     
    When you reboot you will see the scan start.  It will tell you where it saves its log.  Usually it's C:\ProgramData\AVAST Software\Avast\report\aswBoot.txt but it might change so verify the location.   This is a hidden location so you will need to tell Windows to let you see it:
     
     
    Copy and paste the text from the log to a Reply when done.

    • 0

    #13
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    Here is the log:

     

    03/29/2017 23:49
    Scan of C:
     
    Scan of *STARTUP
     
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 008 - Heroes of the Equinox (2014) (Digital) (phillywilly-Empire).cbr|>002.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 01 - The City of Shifting Waters - Extended Edition (2010) (The Man-Arrr-Tee-DCP).cbr|>Valerian and Laureline 01 - The City of Shifting Waters - Extended Edition\Valerian 01 - The City of Shifting Waters bonus page.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 011 - The Ghosts of Inverloch (2016) (Cinebook) (digital) (Lynx-Empire).cbr|>006.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 015 - The Circles of Power (2016) (digital) (The Magicians-Empire).cbr|>Valerian - The Circles of Power v15-009.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 015 - The Circles of Power (2016) (Europe Comics) (digital) (Lynx-Empire).cbr|>010.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 016 - Hostages of Ultralum (2016) (digital) (The Magicians-Empire).cbr|>Valerian - Hostages of Ultralum v16-013.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 004 - Welcome to Alflolol (2012) (c2c) (Batmanatee Begins-Novus-HD).cbr|>Valerian and Laureline 04 - Welcome to Alflolol\Valerian and Laureline 04 - Welcome to Alflolol 06.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 004 - Welcome to Alflolol (2012) (digital-Empire).cbr|>042.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 005 - Birds of the Master (2013) (c2c) (batmanatee begins-novus-hd).cbr|>Valerian and Laureline 05 - Birds of the Master\Valerian and Laureline 05 - Birds of the Master 01.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 005 - Birds of the Master (2013) (digital-Empire).cbr|>031.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\Downloads\Valerian and Laureline\Valerian and Laureline 005 - Birds of the Master (2013) (digital-Empire).cbr|>044.jpg Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Understand Your Dog\3143 - My Dog Coach (1294)\3143 - My Dog Coach - Understand Your Dog.rar|>3143 - My Dog Coach - Understand Your Dog with Cesar Millan (EU)(M3).exe|>3143-M~1.EXE|>3143 - My Dog Coach - Understand Your Dog with Cesar Millan (EU)(M3).nds Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Understand Your Dog\3143 - My Dog Coach (1294)\3143 - My Dog Coach - Understand Your Dog.rar|>3143 - My Dog Coach - Understand Your Dog with Cesar Millan (EU)(M3).exe|>3143-M~1.EXE Error 42127 {CAB archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Understand Your Dog\3143 - My Dog Coach (1294)\3143 - My Dog Coach - Understand Your Dog.rar|>3143 - My Dog Coach - Understand Your Dog with Cesar Millan (EU)(M3).exe Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Understand Your Dog\3143 - My Dog Coach (1294)\3143 - My Dog Coach - Understand Your Dog.rar|>3143-M~1.EXE|>3143 - My Dog Coach - Understand Your Dog with Cesar Millan (EU)(M3).nds Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Understand Your Dog\3143 - My Dog Coach (1294)\3143 - My Dog Coach - Understand Your Dog.rar|>3143-M~1.EXE Error 42127 {CAB archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Unknown\Nonprofit Law & Governance for Dumm (1333)\Nonprofit Law & Governance for - Unknown.rar|>Nonprofit Law & Governance for Dummies\Nonprofit Law & Governance for Dummies.pdf Error 42126 {RAR archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Unknown\Flinx 05 For Love Of Mother Not (1313)\Flinx 05 For Love Of Mother Not - Unknown.epub|>content\resources\image002_16.jpg Error 42125 {ZIP archive is corrupted.}
    File C:\Users\Skand\OneDrive\Documents\Calibre Library\Dopespade\THE AMBER WITCH (570)\THE AMBER WITCH - Dopespade.pdf is infected by PDF:UrlMal-inf [Trj], Moved to chest
    Number of searched folders: 46986
    Number of tested files: 630936
    Number of infected files: 1

    • 0

    #14
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 18,776 posts
    • MVP

    Avast just found one thing that it thinks might be malware but it found a lot of bad downloads.  

     

    I would run the builtin memory test:

     

    https://www.howtogee...m-for-problems/

     

    Copy the next line:

    for /F "tokens=*" %1 in ('wevtutil.exe el') DO wevtutil.exe cl "%1"
     

     

     

    Open an elevated command prompt:
     
     
     
    If you open an elevated command prompt it will by default open in c:\Windows\system32
     
    Once you have an elevated command prompt:
     
    Right click and Paste or Edit then Paste and the copied line will appear.  Hit Enter.  You will get a few errors but this will clear all of your old events from the log.
     
    Type(with an Enter after the line):
     
      
    DISM  /Online  /Cleanup-Image  /RestoreHealth 
     
     (I use two spaces so you can be sure to see where one space goes.)
    This will take a while to complete.  Once the prompt returns:
     
    Reboot.  Open an elevated Command Prompt again and type (with an Enter after the line):
     
     
    sfc  /scannow 
     
     
     
    This will also take a few minutes.  
     
    When it finishes it will say one of the following:
     
    Windows did not find any integrity violations (a good thing)
    Windows Resource Protection found corrupt files and repaired them (a good thing)
    Windows Resource Protection found corrupt files but was unable to fix some (or all) of them (not a good thing)
     
    Which do you get?
     
    type:
     
     
    findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \junk.txt  
     
    Hit Enter.  Then type::
     
    notepad  \junk.txt  
     
    Hit Enter. 
     
     Copy the text from notepad and paste it into a reply.
     
     
    1. Please download the Event Viewer Tool by Vino Rosso
    and save it to your Desktop:
    2. Right-click VEW.exe and Run AS Administrator
    3. Under 'Select log to query', select:
     
    * System
    4. Under 'Select type to list', select:
    * Error
    * Warning
     
     
    Then use the 'Number of events' as follows:
     
     
    1. Click the radio button for 'Number of events'
    Type 20 in the 1 to 20 box
    Then click the Run button.
    Notepad will open with the output log.
     
     
    Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)

    • 0

    #15
    skandranon1971

    skandranon1971

      Member

    • Topic Starter
    • Member
    • PipPip
    • 64 posts

    The SFC returned the first option.

     

    2017-03-30 19:58:28, Info                  CSI    00000006 [SR] Verifying 100 components
    2017-03-30 19:58:28, Info                  CSI    00000007 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:58:34, Info                  CSI    0000006c [SR] Verify complete
    2017-03-30 19:58:35, Info                  CSI    0000006d [SR] Verifying 100 components
    2017-03-30 19:58:35, Info                  CSI    0000006e [SR] Beginning Verify and Repair transaction
    2017-03-30 19:58:48, Info                  CSI    000000d5 [SR] Verify complete
    2017-03-30 19:58:48, Info                  CSI    000000d6 [SR] Verifying 100 components
    2017-03-30 19:58:48, Info                  CSI    000000d7 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:58:59, Info                  CSI    0000013c [SR] Verify complete
    2017-03-30 19:58:59, Info                  CSI    0000013d [SR] Verifying 100 components
    2017-03-30 19:58:59, Info                  CSI    0000013e [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:04, Info                  CSI    000001a3 [SR] Verify complete
    2017-03-30 19:59:05, Info                  CSI    000001a4 [SR] Verifying 100 components
    2017-03-30 19:59:05, Info                  CSI    000001a5 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:10, Info                  CSI    0000020a [SR] Verify complete
    2017-03-30 19:59:10, Info                  CSI    0000020b [SR] Verifying 100 components
    2017-03-30 19:59:10, Info                  CSI    0000020c [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:16, Info                  CSI    00000271 [SR] Verify complete
    2017-03-30 19:59:16, Info                  CSI    00000272 [SR] Verifying 100 components
    2017-03-30 19:59:16, Info                  CSI    00000273 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:21, Info                  CSI    000002d9 [SR] Verify complete
    2017-03-30 19:59:22, Info                  CSI    000002da [SR] Verifying 100 components
    2017-03-30 19:59:22, Info                  CSI    000002db [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:27, Info                  CSI    00000340 [SR] Verify complete
    2017-03-30 19:59:27, Info                  CSI    00000341 [SR] Verifying 100 components
    2017-03-30 19:59:27, Info                  CSI    00000342 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:31, Info                  CSI    000003a7 [SR] Verify complete
    2017-03-30 19:59:31, Info                  CSI    000003a8 [SR] Verifying 100 components
    2017-03-30 19:59:31, Info                  CSI    000003a9 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:36, Info                  CSI    0000040e [SR] Verify complete
    2017-03-30 19:59:37, Info                  CSI    0000040f [SR] Verifying 100 components
    2017-03-30 19:59:37, Info                  CSI    00000410 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:42, Info                  CSI    00000475 [SR] Verify complete
    2017-03-30 19:59:42, Info                  CSI    00000476 [SR] Verifying 100 components
    2017-03-30 19:59:42, Info                  CSI    00000477 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:46, Info                  CSI    000004dc [SR] Verify complete
    2017-03-30 19:59:46, Info                  CSI    000004dd [SR] Verifying 100 components
    2017-03-30 19:59:46, Info                  CSI    000004de [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:51, Info                  CSI    00000543 [SR] Verify complete
    2017-03-30 19:59:51, Info                  CSI    00000544 [SR] Verifying 100 components
    2017-03-30 19:59:51, Info                  CSI    00000545 [SR] Beginning Verify and Repair transaction
    2017-03-30 19:59:56, Info                  CSI    000005aa [SR] Verify complete
    2017-03-30 19:59:56, Info                  CSI    000005ab [SR] Verifying 100 components
    2017-03-30 19:59:56, Info                  CSI    000005ac [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:03, Info                  CSI    00000611 [SR] Verify complete
    2017-03-30 20:00:03, Info                  CSI    00000612 [SR] Verifying 100 components
    2017-03-30 20:00:03, Info                  CSI    00000613 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:07, Info                  CSI    00000678 [SR] Verify complete
    2017-03-30 20:00:07, Info                  CSI    00000679 [SR] Verifying 100 components
    2017-03-30 20:00:07, Info                  CSI    0000067a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:13, Info                  CSI    000006e2 [SR] Verify complete
    2017-03-30 20:00:14, Info                  CSI    000006e3 [SR] Verifying 100 components
    2017-03-30 20:00:14, Info                  CSI    000006e4 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:18, Info                  CSI    00000749 [SR] Verify complete
    2017-03-30 20:00:18, Info                  CSI    0000074a [SR] Verifying 100 components
    2017-03-30 20:00:18, Info                  CSI    0000074b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:23, Info                  CSI    000007b0 [SR] Verify complete
    2017-03-30 20:00:23, Info                  CSI    000007b1 [SR] Verifying 100 components
    2017-03-30 20:00:23, Info                  CSI    000007b2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:28, Info                  CSI    00000817 [SR] Verify complete
    2017-03-30 20:00:28, Info                  CSI    00000818 [SR] Verifying 100 components
    2017-03-30 20:00:28, Info                  CSI    00000819 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:32, Info                  CSI    0000087e [SR] Verify complete
    2017-03-30 20:00:33, Info                  CSI    0000087f [SR] Verifying 100 components
    2017-03-30 20:00:33, Info                  CSI    00000880 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:35, Info                  CSI    000008e5 [SR] Verify complete
    2017-03-30 20:00:35, Info                  CSI    000008e6 [SR] Verifying 100 components
    2017-03-30 20:00:35, Info                  CSI    000008e7 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:37, Info                  CSI    0000094c [SR] Verify complete
    2017-03-30 20:00:38, Info                  CSI    0000094d [SR] Verifying 100 components
    2017-03-30 20:00:38, Info                  CSI    0000094e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:45, Info                  CSI    000009b3 [SR] Verify complete
    2017-03-30 20:00:45, Info                  CSI    000009b4 [SR] Verifying 100 components
    2017-03-30 20:00:45, Info                  CSI    000009b5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:00:58, Info                  CSI    00000a1b [SR] Verify complete
    2017-03-30 20:00:58, Info                  CSI    00000a1c [SR] Verifying 100 components
    2017-03-30 20:00:58, Info                  CSI    00000a1d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:04, Info                  CSI    00000a82 [SR] Verify complete
    2017-03-30 20:01:04, Info                  CSI    00000a83 [SR] Verifying 100 components
    2017-03-30 20:01:04, Info                  CSI    00000a84 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:10, Info                  CSI    00000ae9 [SR] Verify complete
    2017-03-30 20:01:10, Info                  CSI    00000aea [SR] Verifying 100 components
    2017-03-30 20:01:10, Info                  CSI    00000aeb [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:15, Info                  CSI    00000b50 [SR] Verify complete
    2017-03-30 20:01:15, Info                  CSI    00000b51 [SR] Verifying 100 components
    2017-03-30 20:01:15, Info                  CSI    00000b52 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:19, Info                  CSI    00000bb7 [SR] Verify complete
    2017-03-30 20:01:19, Info                  CSI    00000bb8 [SR] Verifying 100 components
    2017-03-30 20:01:19, Info                  CSI    00000bb9 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:23, Info                  CSI    00000c1e [SR] Verify complete
    2017-03-30 20:01:23, Info                  CSI    00000c1f [SR] Verifying 100 components
    2017-03-30 20:01:23, Info                  CSI    00000c20 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:27, Info                  CSI    00000c85 [SR] Verify complete
    2017-03-30 20:01:28, Info                  CSI    00000c86 [SR] Verifying 100 components
    2017-03-30 20:01:28, Info                  CSI    00000c87 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:33, Info                  CSI    00000cec [SR] Verify complete
    2017-03-30 20:01:33, Info                  CSI    00000ced [SR] Verifying 100 components
    2017-03-30 20:01:33, Info                  CSI    00000cee [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:36, Info                  CSI    00000d53 [SR] Verify complete
    2017-03-30 20:01:37, Info                  CSI    00000d54 [SR] Verifying 100 components
    2017-03-30 20:01:37, Info                  CSI    00000d55 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:40, Info                  CSI    00000dba [SR] Verify complete
    2017-03-30 20:01:40, Info                  CSI    00000dbb [SR] Verifying 100 components
    2017-03-30 20:01:40, Info                  CSI    00000dbc [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:44, Info                  CSI    00000e23 [SR] Verify complete
    2017-03-30 20:01:45, Info                  CSI    00000e24 [SR] Verifying 100 components
    2017-03-30 20:01:45, Info                  CSI    00000e25 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:48, Info                  CSI    00000e92 [SR] Verify complete
    2017-03-30 20:01:49, Info                  CSI    00000e93 [SR] Verifying 100 components
    2017-03-30 20:01:49, Info                  CSI    00000e94 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:51, Info                  CSI    00000ef9 [SR] Verify complete
    2017-03-30 20:01:51, Info                  CSI    00000efa [SR] Verifying 100 components
    2017-03-30 20:01:51, Info                  CSI    00000efb [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:55, Info                  CSI    00000f60 [SR] Verify complete
    2017-03-30 20:01:56, Info                  CSI    00000f61 [SR] Verifying 100 components
    2017-03-30 20:01:56, Info                  CSI    00000f62 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:01:58, Info                  CSI    00000fd0 [SR] Verify complete
    2017-03-30 20:01:58, Info                  CSI    00000fd1 [SR] Verifying 100 components
    2017-03-30 20:01:58, Info                  CSI    00000fd2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:01, Info                  CSI    0000103a [SR] Verify complete
    2017-03-30 20:02:01, Info                  CSI    0000103b [SR] Verifying 100 components
    2017-03-30 20:02:01, Info                  CSI    0000103c [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:04, Info                  CSI    000010a1 [SR] Verify complete
    2017-03-30 20:02:04, Info                  CSI    000010a2 [SR] Verifying 100 components
    2017-03-30 20:02:04, Info                  CSI    000010a3 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:11, Info                  CSI    00001117 [SR] Verify complete
    2017-03-30 20:02:12, Info                  CSI    00001118 [SR] Verifying 100 components
    2017-03-30 20:02:12, Info                  CSI    00001119 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:22, Info                  CSI    00001199 [SR] Verify complete
    2017-03-30 20:02:22, Info                  CSI    0000119a [SR] Verifying 100 components
    2017-03-30 20:02:22, Info                  CSI    0000119b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:33, Info                  CSI    0000120c [SR] Verify complete
    2017-03-30 20:02:33, Info                  CSI    0000120d [SR] Verifying 100 components
    2017-03-30 20:02:33, Info                  CSI    0000120e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:42, Info                  CSI    0000127c [SR] Verify complete
    2017-03-30 20:02:42, Info                  CSI    0000127d [SR] Verifying 100 components
    2017-03-30 20:02:42, Info                  CSI    0000127e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:48, Info                  CSI    000012f2 [SR] Verify complete
    2017-03-30 20:02:48, Info                  CSI    000012f3 [SR] Verifying 100 components
    2017-03-30 20:02:48, Info                  CSI    000012f4 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:02:54, Info                  CSI    0000137c [SR] Verify complete
    2017-03-30 20:02:54, Info                  CSI    0000137d [SR] Verifying 100 components
    2017-03-30 20:02:54, Info                  CSI    0000137e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:02, Info                  CSI    00001439 [SR] Verify complete
    2017-03-30 20:03:02, Info                  CSI    0000143a [SR] Verifying 100 components
    2017-03-30 20:03:02, Info                  CSI    0000143b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:09, Info                  CSI    000014a4 [SR] Verify complete
    2017-03-30 20:03:09, Info                  CSI    000014a5 [SR] Verifying 100 components
    2017-03-30 20:03:09, Info                  CSI    000014a6 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:15, Info                  CSI    0000150c [SR] Verify complete
    2017-03-30 20:03:15, Info                  CSI    0000150d [SR] Verifying 100 components
    2017-03-30 20:03:15, Info                  CSI    0000150e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:19, Info                  CSI    00001575 [SR] Verify complete
    2017-03-30 20:03:19, Info                  CSI    00001576 [SR] Verifying 100 components
    2017-03-30 20:03:19, Info                  CSI    00001577 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:25, Info                  CSI    000015e1 [SR] Verify complete
    2017-03-30 20:03:26, Info                  CSI    000015e2 [SR] Verifying 100 components
    2017-03-30 20:03:26, Info                  CSI    000015e3 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:38, Info                  CSI    00001652 [SR] Verify complete
    2017-03-30 20:03:38, Info                  CSI    00001653 [SR] Verifying 100 components
    2017-03-30 20:03:38, Info                  CSI    00001654 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:03:50, Info                  CSI    00001705 [SR] Verify complete
    2017-03-30 20:03:51, Info                  CSI    00001706 [SR] Verifying 100 components
    2017-03-30 20:03:51, Info                  CSI    00001707 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:01, Info                  CSI    000017d6 [SR] Verify complete
    2017-03-30 20:04:02, Info                  CSI    000017d7 [SR] Verifying 100 components
    2017-03-30 20:04:02, Info                  CSI    000017d8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:09, Info                  CSI    00001862 [SR] Verify complete
    2017-03-30 20:04:09, Info                  CSI    00001863 [SR] Verifying 100 components
    2017-03-30 20:04:09, Info                  CSI    00001864 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:18, Info                  CSI    000018d5 [SR] Verify complete
    2017-03-30 20:04:18, Info                  CSI    000018d6 [SR] Verifying 100 components
    2017-03-30 20:04:18, Info                  CSI    000018d7 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:24, Info                  CSI    0000194b [SR] Verify complete
    2017-03-30 20:04:25, Info                  CSI    0000194c [SR] Verifying 100 components
    2017-03-30 20:04:25, Info                  CSI    0000194d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:32, Info                  CSI    000019cf [SR] Verify complete
    2017-03-30 20:04:32, Info                  CSI    000019d0 [SR] Verifying 100 components
    2017-03-30 20:04:32, Info                  CSI    000019d1 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:38, Info                  CSI    00001a48 [SR] Verify complete
    2017-03-30 20:04:38, Info                  CSI    00001a49 [SR] Verifying 100 components
    2017-03-30 20:04:38, Info                  CSI    00001a4a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:45, Info                  CSI    00001ab2 [SR] Verify complete
    2017-03-30 20:04:45, Info                  CSI    00001ab3 [SR] Verifying 100 components
    2017-03-30 20:04:45, Info                  CSI    00001ab4 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:04:53, Info                  CSI    00001b1a [SR] Verify complete
    2017-03-30 20:04:54, Info                  CSI    00001b1b [SR] Verifying 100 components
    2017-03-30 20:04:54, Info                  CSI    00001b1c [SR] Beginning Verify and Repair transaction
    2017-03-30 20:05:00, Info                  CSI    00001b88 [SR] Verify complete
    2017-03-30 20:05:00, Info                  CSI    00001b89 [SR] Verifying 100 components
    2017-03-30 20:05:00, Info                  CSI    00001b8a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:05:07, Info                  CSI    00001c09 [SR] Verify complete
    2017-03-30 20:05:08, Info                  CSI    00001c0a [SR] Verifying 100 components
    2017-03-30 20:05:08, Info                  CSI    00001c0b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:05:21, Info                  CSI    00001cae [SR] Verify complete
    2017-03-30 20:05:32, Info                  CSI    00001caf [SR] Verifying 100 components
    2017-03-30 20:05:32, Info                  CSI    00001cb0 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:05:46, Info                  CSI    00001d3d [SR] Verify complete
    2017-03-30 20:05:46, Info                  CSI    00001d3e [SR] Verifying 100 components
    2017-03-30 20:05:46, Info                  CSI    00001d3f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:06, Info                  CSI    00001e1c [SR] Verify complete
    2017-03-30 20:06:07, Info                  CSI    00001e1d [SR] Verifying 100 components
    2017-03-30 20:06:07, Info                  CSI    00001e1e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:16, Info                  CSI    00001e92 [SR] Verify complete
    2017-03-30 20:06:17, Info                  CSI    00001e93 [SR] Verifying 100 components
    2017-03-30 20:06:17, Info                  CSI    00001e94 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:23, Info                  CSI    00001eff [SR] Verify complete
    2017-03-30 20:06:23, Info                  CSI    00001f00 [SR] Verifying 100 components
    2017-03-30 20:06:23, Info                  CSI    00001f01 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:34, Info                  CSI    00001fcb [SR] Verify complete
    2017-03-30 20:06:34, Info                  CSI    00001fcc [SR] Verifying 100 components
    2017-03-30 20:06:34, Info                  CSI    00001fcd [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:39, Info                  CSI    00002032 [SR] Verify complete
    2017-03-30 20:06:39, Info                  CSI    00002033 [SR] Verifying 100 components
    2017-03-30 20:06:39, Info                  CSI    00002034 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:44, Info                  CSI    00002099 [SR] Verify complete
    2017-03-30 20:06:45, Info                  CSI    0000209a [SR] Verifying 100 components
    2017-03-30 20:06:45, Info                  CSI    0000209b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:06:51, Info                  CSI    0000210e [SR] Verify complete
    2017-03-30 20:06:51, Info                  CSI    0000210f [SR] Verifying 100 components
    2017-03-30 20:06:51, Info                  CSI    00002110 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:01, Info                  CSI    00002189 [SR] Verify complete
    2017-03-30 20:07:01, Info                  CSI    0000218a [SR] Verifying 100 components
    2017-03-30 20:07:01, Info                  CSI    0000218b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:14, Info                  CSI    00002213 [SR] Verify complete
    2017-03-30 20:07:14, Info                  CSI    00002214 [SR] Verifying 100 components
    2017-03-30 20:07:14, Info                  CSI    00002215 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:20, Info                  CSI    00002284 [SR] Verify complete
    2017-03-30 20:07:20, Info                  CSI    00002285 [SR] Verifying 100 components
    2017-03-30 20:07:20, Info                  CSI    00002286 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:28, Info                  CSI    00002331 [SR] Verify complete
    2017-03-30 20:07:29, Info                  CSI    00002332 [SR] Verifying 100 components
    2017-03-30 20:07:29, Info                  CSI    00002333 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:36, Info                  CSI    000023b0 [SR] Verify complete
    2017-03-30 20:07:36, Info                  CSI    000023b1 [SR] Verifying 100 components
    2017-03-30 20:07:36, Info                  CSI    000023b2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:44, Info                  CSI    0000242f [SR] Verify complete
    2017-03-30 20:07:44, Info                  CSI    00002430 [SR] Verifying 100 components
    2017-03-30 20:07:44, Info                  CSI    00002431 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:52, Info                  CSI    000024b5 [SR] Verify complete
    2017-03-30 20:07:52, Info                  CSI    000024b6 [SR] Verifying 100 components
    2017-03-30 20:07:52, Info                  CSI    000024b7 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:07:55, Info                  CSI    0000251c [SR] Verify complete
    2017-03-30 20:07:55, Info                  CSI    0000251d [SR] Verifying 100 components
    2017-03-30 20:07:55, Info                  CSI    0000251e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:04, Info                  CSI    0000258f [SR] Verify complete
    2017-03-30 20:08:05, Info                  CSI    00002590 [SR] Verifying 100 components
    2017-03-30 20:08:05, Info                  CSI    00002591 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:25, Info                  CSI    00002662 [SR] Verify complete
    2017-03-30 20:08:25, Info                  CSI    00002663 [SR] Verifying 100 components
    2017-03-30 20:08:25, Info                  CSI    00002664 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:32, Info                  CSI    000026d9 [SR] Verify complete
    2017-03-30 20:08:32, Info                  CSI    000026da [SR] Verifying 100 components
    2017-03-30 20:08:32, Info                  CSI    000026db [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:39, Info                  CSI    0000274c [SR] Verify complete
    2017-03-30 20:08:39, Info                  CSI    0000274d [SR] Verifying 100 components
    2017-03-30 20:08:39, Info                  CSI    0000274e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:43, Info                  CSI    000027b6 [SR] Verify complete
    2017-03-30 20:08:43, Info                  CSI    000027b7 [SR] Verifying 100 components
    2017-03-30 20:08:43, Info                  CSI    000027b8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:50, Info                  CSI    00002833 [SR] Verify complete
    2017-03-30 20:08:51, Info                  CSI    00002834 [SR] Verifying 100 components
    2017-03-30 20:08:51, Info                  CSI    00002835 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:08:59, Info                  CSI    000028d2 [SR] Verify complete
    2017-03-30 20:08:59, Info                  CSI    000028d3 [SR] Verifying 100 components
    2017-03-30 20:08:59, Info                  CSI    000028d4 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:05, Info                  CSI    00002939 [SR] Verify complete
    2017-03-30 20:09:05, Info                  CSI    0000293a [SR] Verifying 100 components
    2017-03-30 20:09:05, Info                  CSI    0000293b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:12, Info                  CSI    000029ab [SR] Verify complete
    2017-03-30 20:09:12, Info                  CSI    000029ac [SR] Verifying 100 components
    2017-03-30 20:09:12, Info                  CSI    000029ad [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:18, Info                  CSI    00002a21 [SR] Verify complete
    2017-03-30 20:09:19, Info                  CSI    00002a22 [SR] Verifying 100 components
    2017-03-30 20:09:19, Info                  CSI    00002a23 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:24, Info                  CSI    00002a99 [SR] Verify complete
    2017-03-30 20:09:24, Info                  CSI    00002a9a [SR] Verifying 100 components
    2017-03-30 20:09:24, Info                  CSI    00002a9b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:31, Info                  CSI    00002b11 [SR] Verify complete
    2017-03-30 20:09:31, Info                  CSI    00002b12 [SR] Verifying 100 components
    2017-03-30 20:09:31, Info                  CSI    00002b13 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:44, Info                  CSI    00002c07 [SR] Verify complete
    2017-03-30 20:09:44, Info                  CSI    00002c08 [SR] Verifying 100 components
    2017-03-30 20:09:44, Info                  CSI    00002c09 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:51, Info                  CSI    00002c81 [SR] Verify complete
    2017-03-30 20:09:51, Info                  CSI    00002c82 [SR] Verifying 100 components
    2017-03-30 20:09:51, Info                  CSI    00002c83 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:09:57, Info                  CSI    00002cf6 [SR] Verify complete
    2017-03-30 20:09:58, Info                  CSI    00002cf7 [SR] Verifying 100 components
    2017-03-30 20:09:58, Info                  CSI    00002cf8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:04, Info                  CSI    00002d63 [SR] Verify complete
    2017-03-30 20:10:04, Info                  CSI    00002d64 [SR] Verifying 100 components
    2017-03-30 20:10:04, Info                  CSI    00002d65 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:11, Info                  CSI    00002dd0 [SR] Verify complete
    2017-03-30 20:10:11, Info                  CSI    00002dd1 [SR] Verifying 100 components
    2017-03-30 20:10:11, Info                  CSI    00002dd2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:23, Info                  CSI    00002e50 [SR] Verify complete
    2017-03-30 20:10:23, Info                  CSI    00002e51 [SR] Verifying 100 components
    2017-03-30 20:10:23, Info                  CSI    00002e52 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:32, Info                  CSI    00002eb7 [SR] Verify complete
    2017-03-30 20:10:32, Info                  CSI    00002eb8 [SR] Verifying 100 components
    2017-03-30 20:10:32, Info                  CSI    00002eb9 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:37, Info                  CSI    00002f28 [SR] Verify complete
    2017-03-30 20:10:38, Info                  CSI    00002f29 [SR] Verifying 100 components
    2017-03-30 20:10:38, Info                  CSI    00002f2a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:45, Info                  CSI    00002f9d [SR] Verify complete
    2017-03-30 20:10:46, Info                  CSI    00002f9e [SR] Verifying 100 components
    2017-03-30 20:10:46, Info                  CSI    00002f9f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:10:54, Info                  CSI    00003022 [SR] Verify complete
    2017-03-30 20:10:54, Info                  CSI    00003023 [SR] Verifying 100 components
    2017-03-30 20:10:54, Info                  CSI    00003024 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:11:03, Info                  CSI    00003093 [SR] Verify complete
    2017-03-30 20:11:03, Info                  CSI    00003094 [SR] Verifying 100 components
    2017-03-30 20:11:03, Info                  CSI    00003095 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:11:12, Info                  CSI    0000310d [SR] Verify complete
    2017-03-30 20:11:13, Info                  CSI    0000310e [SR] Verifying 100 components
    2017-03-30 20:11:13, Info                  CSI    0000310f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:11:23, Info                  CSI    000031af [SR] Verify complete
    2017-03-30 20:11:24, Info                  CSI    000031b0 [SR] Verifying 100 components
    2017-03-30 20:11:24, Info                  CSI    000031b1 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:11:38, Info                  CSI    00003233 [SR] Verify complete
    2017-03-30 20:11:38, Info                  CSI    00003234 [SR] Verifying 100 components
    2017-03-30 20:11:38, Info                  CSI    00003235 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:11:47, Info                  CSI    000032a2 [SR] Verify complete
    2017-03-30 20:11:47, Info                  CSI    000032a3 [SR] Verifying 100 components
    2017-03-30 20:11:47, Info                  CSI    000032a4 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:01, Info                  CSI    0000331d [SR] Verify complete
    2017-03-30 20:12:02, Info                  CSI    0000331e [SR] Verifying 100 components
    2017-03-30 20:12:02, Info                  CSI    0000331f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:13, Info                  CSI    0000338d [SR] Verify complete
    2017-03-30 20:12:13, Info                  CSI    0000338e [SR] Verifying 100 components
    2017-03-30 20:12:13, Info                  CSI    0000338f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:21, Info                  CSI    000033ff [SR] Verify complete
    2017-03-30 20:12:21, Info                  CSI    00003400 [SR] Verifying 100 components
    2017-03-30 20:12:21, Info                  CSI    00003401 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:28, Info                  CSI    0000346a [SR] Verify complete
    2017-03-30 20:12:29, Info                  CSI    0000346b [SR] Verifying 100 components
    2017-03-30 20:12:29, Info                  CSI    0000346c [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:37, Info                  CSI    000034df [SR] Verify complete
    2017-03-30 20:12:37, Info                  CSI    000034e0 [SR] Verifying 100 components
    2017-03-30 20:12:37, Info                  CSI    000034e1 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:44, Info                  CSI    0000355c [SR] Verify complete
    2017-03-30 20:12:44, Info                  CSI    0000355d [SR] Verifying 100 components
    2017-03-30 20:12:44, Info                  CSI    0000355e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:49, Info                  CSI    000035cc [SR] Verify complete
    2017-03-30 20:12:50, Info                  CSI    000035cd [SR] Verifying 100 components
    2017-03-30 20:12:50, Info                  CSI    000035ce [SR] Beginning Verify and Repair transaction
    2017-03-30 20:12:56, Info                  CSI    00003646 [SR] Verify complete
    2017-03-30 20:12:56, Info                  CSI    00003647 [SR] Verifying 100 components
    2017-03-30 20:12:56, Info                  CSI    00003648 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:02, Info                  CSI    000036b6 [SR] Verify complete
    2017-03-30 20:13:03, Info                  CSI    000036b7 [SR] Verifying 100 components
    2017-03-30 20:13:03, Info                  CSI    000036b8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:12, Info                  CSI    0000372c [SR] Verify complete
    2017-03-30 20:13:12, Info                  CSI    0000372d [SR] Verifying 100 components
    2017-03-30 20:13:12, Info                  CSI    0000372e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:20, Info                  CSI    00003798 [SR] Verify complete
    2017-03-30 20:13:21, Info                  CSI    00003799 [SR] Verifying 100 components
    2017-03-30 20:13:21, Info                  CSI    0000379a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:29, Info                  CSI    00003801 [SR] Verify complete
    2017-03-30 20:13:29, Info                  CSI    00003802 [SR] Verifying 100 components
    2017-03-30 20:13:29, Info                  CSI    00003803 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:38, Info                  CSI    0000388d [SR] Verify complete
    2017-03-30 20:13:38, Info                  CSI    0000388e [SR] Verifying 100 components
    2017-03-30 20:13:38, Info                  CSI    0000388f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:13:52, Info                  CSI    00003998 [SR] Verify complete
    2017-03-30 20:13:58, Info                  CSI    00003999 [SR] Verifying 100 components
    2017-03-30 20:13:58, Info                  CSI    0000399a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:06, Info                  CSI    00003a25 [SR] Verify complete
    2017-03-30 20:14:06, Info                  CSI    00003a26 [SR] Verifying 100 components
    2017-03-30 20:14:06, Info                  CSI    00003a27 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:11, Info                  CSI    00003a8c [SR] Verify complete
    2017-03-30 20:14:12, Info                  CSI    00003a8d [SR] Verifying 100 components
    2017-03-30 20:14:12, Info                  CSI    00003a8e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:17, Info                  CSI    00003af3 [SR] Verify complete
    2017-03-30 20:14:17, Info                  CSI    00003af4 [SR] Verifying 100 components
    2017-03-30 20:14:17, Info                  CSI    00003af5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:25, Info                  CSI    00003b5d [SR] Verify complete
    2017-03-30 20:14:25, Info                  CSI    00003b5e [SR] Verifying 100 components
    2017-03-30 20:14:25, Info                  CSI    00003b5f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:33, Info                  CSI    00003bc5 [SR] Verify complete
    2017-03-30 20:14:33, Info                  CSI    00003bc6 [SR] Verifying 100 components
    2017-03-30 20:14:33, Info                  CSI    00003bc7 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:39, Info                  CSI    00003c2c [SR] Verify complete
    2017-03-30 20:14:39, Info                  CSI    00003c2d [SR] Verifying 100 components
    2017-03-30 20:14:39, Info                  CSI    00003c2e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:44, Info                  CSI    00003c94 [SR] Verify complete
    2017-03-30 20:14:44, Info                  CSI    00003c95 [SR] Verifying 100 components
    2017-03-30 20:14:44, Info                  CSI    00003c96 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:49, Info                  CSI    00003cfd [SR] Verify complete
    2017-03-30 20:14:49, Info                  CSI    00003cfe [SR] Verifying 100 components
    2017-03-30 20:14:49, Info                  CSI    00003cff [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:53, Info                  CSI    00003d65 [SR] Verify complete
    2017-03-30 20:14:53, Info                  CSI    00003d66 [SR] Verifying 100 components
    2017-03-30 20:14:53, Info                  CSI    00003d67 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:14:57, Info                  CSI    00003dcc [SR] Verify complete
    2017-03-30 20:14:58, Info                  CSI    00003dcd [SR] Verifying 100 components
    2017-03-30 20:14:58, Info                  CSI    00003dce [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:02, Info                  CSI    00003e33 [SR] Verify complete
    2017-03-30 20:15:02, Info                  CSI    00003e34 [SR] Verifying 100 components
    2017-03-30 20:15:02, Info                  CSI    00003e35 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:09, Info                  CSI    00003ebc [SR] Verify complete
    2017-03-30 20:15:09, Info                  CSI    00003ebd [SR] Verifying 100 components
    2017-03-30 20:15:09, Info                  CSI    00003ebe [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:15, Info                  CSI    00003f25 [SR] Verify complete
    2017-03-30 20:15:15, Info                  CSI    00003f26 [SR] Verifying 100 components
    2017-03-30 20:15:15, Info                  CSI    00003f27 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:24, Info                  CSI    00003f8e [SR] Verify complete
    2017-03-30 20:15:24, Info                  CSI    00003f8f [SR] Verifying 100 components
    2017-03-30 20:15:24, Info                  CSI    00003f90 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:34, Info                  CSI    00003ffb [SR] Verify complete
    2017-03-30 20:15:35, Info                  CSI    00003ffc [SR] Verifying 100 components
    2017-03-30 20:15:35, Info                  CSI    00003ffd [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:44, Info                  CSI    00004062 [SR] Verify complete
    2017-03-30 20:15:44, Info                  CSI    00004063 [SR] Verifying 100 components
    2017-03-30 20:15:44, Info                  CSI    00004064 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:49, Info                  CSI    000040c9 [SR] Verify complete
    2017-03-30 20:15:50, Info                  CSI    000040ca [SR] Verifying 100 components
    2017-03-30 20:15:50, Info                  CSI    000040cb [SR] Beginning Verify and Repair transaction
    2017-03-30 20:15:59, Info                  CSI    00004134 [SR] Verify complete
    2017-03-30 20:15:59, Info                  CSI    00004135 [SR] Verifying 100 components
    2017-03-30 20:15:59, Info                  CSI    00004136 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:04, Info                  CSI    0000419b [SR] Verify complete
    2017-03-30 20:16:04, Info                  CSI    0000419c [SR] Verifying 100 components
    2017-03-30 20:16:04, Info                  CSI    0000419d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:15, Info                  CSI    0000420b [SR] Verify complete
    2017-03-30 20:16:15, Info                  CSI    0000420c [SR] Verifying 100 components
    2017-03-30 20:16:15, Info                  CSI    0000420d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:24, Info                  CSI    0000427b [SR] Verify complete
    2017-03-30 20:16:24, Info                  CSI    0000427c [SR] Verifying 100 components
    2017-03-30 20:16:24, Info                  CSI    0000427d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:29, Info                  CSI    000042e3 [SR] Verify complete
    2017-03-30 20:16:30, Info                  CSI    000042e4 [SR] Verifying 100 components
    2017-03-30 20:16:30, Info                  CSI    000042e5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:34, Info                  CSI    0000434b [SR] Verify complete
    2017-03-30 20:16:35, Info                  CSI    0000434c [SR] Verifying 100 components
    2017-03-30 20:16:35, Info                  CSI    0000434d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:41, Info                  CSI    000043c6 [SR] Verify complete
    2017-03-30 20:16:42, Info                  CSI    000043c7 [SR] Verifying 100 components
    2017-03-30 20:16:42, Info                  CSI    000043c8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:47, Info                  CSI    00004437 [SR] Verify complete
    2017-03-30 20:16:48, Info                  CSI    00004438 [SR] Verifying 100 components
    2017-03-30 20:16:48, Info                  CSI    00004439 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:52, Info                  CSI    0000449e [SR] Verify complete
    2017-03-30 20:16:52, Info                  CSI    0000449f [SR] Verifying 100 components
    2017-03-30 20:16:52, Info                  CSI    000044a0 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:16:56, Info                  CSI    00004505 [SR] Verify complete
    2017-03-30 20:16:56, Info                  CSI    00004506 [SR] Verifying 100 components
    2017-03-30 20:16:56, Info                  CSI    00004507 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:01, Info                  CSI    0000456c [SR] Verify complete
    2017-03-30 20:17:01, Info                  CSI    0000456d [SR] Verifying 100 components
    2017-03-30 20:17:01, Info                  CSI    0000456e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:07, Info                  CSI    000045d3 [SR] Verify complete
    2017-03-30 20:17:07, Info                  CSI    000045d4 [SR] Verifying 100 components
    2017-03-30 20:17:07, Info                  CSI    000045d5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:16, Info                  CSI    00004651 [SR] Verify complete
    2017-03-30 20:17:16, Info                  CSI    00004652 [SR] Verifying 100 components
    2017-03-30 20:17:16, Info                  CSI    00004653 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:24, Info                  CSI    000046c8 [SR] Verify complete
    2017-03-30 20:17:24, Info                  CSI    000046c9 [SR] Verifying 100 components
    2017-03-30 20:17:24, Info                  CSI    000046ca [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:31, Info                  CSI    00004741 [SR] Verify complete
    2017-03-30 20:17:31, Info                  CSI    00004742 [SR] Verifying 100 components
    2017-03-30 20:17:31, Info                  CSI    00004743 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:38, Info                  CSI    000047c0 [SR] Verify complete
    2017-03-30 20:17:38, Info                  CSI    000047c1 [SR] Verifying 100 components
    2017-03-30 20:17:38, Info                  CSI    000047c2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:47, Info                  CSI    0000482b [SR] Verify complete
    2017-03-30 20:17:47, Info                  CSI    0000482c [SR] Verifying 100 components
    2017-03-30 20:17:47, Info                  CSI    0000482d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:17:55, Info                  CSI    000048ae [SR] Verify complete
    2017-03-30 20:17:55, Info                  CSI    000048af [SR] Verifying 100 components
    2017-03-30 20:17:55, Info                  CSI    000048b0 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:03, Info                  CSI    0000492d [SR] Verify complete
    2017-03-30 20:18:04, Info                  CSI    0000492e [SR] Verifying 100 components
    2017-03-30 20:18:04, Info                  CSI    0000492f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:06, Info                  CSI    00004995 [SR] Verify complete
    2017-03-30 20:18:06, Info                  CSI    00004996 [SR] Verifying 100 components
    2017-03-30 20:18:06, Info                  CSI    00004997 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:09, Info                  CSI    000049fe [SR] Verify complete
    2017-03-30 20:18:10, Info                  CSI    000049ff [SR] Verifying 100 components
    2017-03-30 20:18:10, Info                  CSI    00004a00 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:21, Info                  CSI    00004a93 [SR] Verify complete
    2017-03-30 20:18:21, Info                  CSI    00004a94 [SR] Verifying 100 components
    2017-03-30 20:18:21, Info                  CSI    00004a95 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:29, Info                  CSI    00004b22 [SR] Verify complete
    2017-03-30 20:18:29, Info                  CSI    00004b23 [SR] Verifying 100 components
    2017-03-30 20:18:29, Info                  CSI    00004b24 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:43, Info                  CSI    00004bc4 [SR] Verify complete
    2017-03-30 20:18:43, Info                  CSI    00004bc5 [SR] Verifying 100 components
    2017-03-30 20:18:43, Info                  CSI    00004bc6 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:50, Info                  CSI    00004c30 [SR] Verify complete
    2017-03-30 20:18:51, Info                  CSI    00004c31 [SR] Verifying 100 components
    2017-03-30 20:18:51, Info                  CSI    00004c32 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:18:58, Info                  CSI    00004cbb [SR] Verify complete
    2017-03-30 20:18:59, Info                  CSI    00004cbc [SR] Verifying 100 components
    2017-03-30 20:18:59, Info                  CSI    00004cbd [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:05, Info                  CSI    00004d32 [SR] Verify complete
    2017-03-30 20:19:05, Info                  CSI    00004d33 [SR] Verifying 100 components
    2017-03-30 20:19:05, Info                  CSI    00004d34 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:13, Info                  CSI    00004db1 [SR] Verify complete
    2017-03-30 20:19:13, Info                  CSI    00004db2 [SR] Verifying 100 components
    2017-03-30 20:19:13, Info                  CSI    00004db3 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:20, Info                  CSI    00004e24 [SR] Verify complete
    2017-03-30 20:19:21, Info                  CSI    00004e25 [SR] Verifying 100 components
    2017-03-30 20:19:21, Info                  CSI    00004e26 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:30, Info                  CSI    00004ea3 [SR] Verify complete
    2017-03-30 20:19:30, Info                  CSI    00004ea4 [SR] Verifying 100 components
    2017-03-30 20:19:30, Info                  CSI    00004ea5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:38, Info                  CSI    00004f1e [SR] Verify complete
    2017-03-30 20:19:38, Info                  CSI    00004f1f [SR] Verifying 100 components
    2017-03-30 20:19:38, Info                  CSI    00004f20 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:46, Info                  CSI    00004f99 [SR] Verify complete
    2017-03-30 20:19:46, Info                  CSI    00004f9a [SR] Verifying 100 components
    2017-03-30 20:19:46, Info                  CSI    00004f9b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:19:53, Info                  CSI    0000500d [SR] Verify complete
    2017-03-30 20:19:53, Info                  CSI    0000500e [SR] Verifying 100 components
    2017-03-30 20:19:53, Info                  CSI    0000500f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:05, Info                  CSI    00005108 [SR] Verify complete
    2017-03-30 20:20:05, Info                  CSI    00005109 [SR] Verifying 100 components
    2017-03-30 20:20:05, Info                  CSI    0000510a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:14, Info                  CSI    000051bc [SR] Verify complete
    2017-03-30 20:20:14, Info                  CSI    000051bd [SR] Verifying 100 components
    2017-03-30 20:20:14, Info                  CSI    000051be [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:21, Info                  CSI    00005226 [SR] Verify complete
    2017-03-30 20:20:21, Info                  CSI    00005227 [SR] Verifying 100 components
    2017-03-30 20:20:21, Info                  CSI    00005228 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:27, Info                  CSI    0000528d [SR] Verify complete
    2017-03-30 20:20:27, Info                  CSI    0000528e [SR] Verifying 100 components
    2017-03-30 20:20:27, Info                  CSI    0000528f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:34, Info                  CSI    0000530f [SR] Verify complete
    2017-03-30 20:20:34, Info                  CSI    00005310 [SR] Verifying 100 components
    2017-03-30 20:20:34, Info                  CSI    00005311 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:41, Info                  CSI    00005399 [SR] Verify complete
    2017-03-30 20:20:42, Info                  CSI    0000539a [SR] Verifying 100 components
    2017-03-30 20:20:42, Info                  CSI    0000539b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:48, Info                  CSI    00005409 [SR] Verify complete
    2017-03-30 20:20:48, Info                  CSI    0000540a [SR] Verifying 100 components
    2017-03-30 20:20:48, Info                  CSI    0000540b [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:54, Info                  CSI    0000547c [SR] Verify complete
    2017-03-30 20:20:54, Info                  CSI    0000547d [SR] Verifying 100 components
    2017-03-30 20:20:54, Info                  CSI    0000547e [SR] Beginning Verify and Repair transaction
    2017-03-30 20:20:58, Info                  CSI    000054e4 [SR] Verify complete
    2017-03-30 20:20:58, Info                  CSI    000054e5 [SR] Verifying 100 components
    2017-03-30 20:20:58, Info                  CSI    000054e6 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:07, Info                  CSI    0000557d [SR] Verify complete
    2017-03-30 20:21:07, Info                  CSI    0000557e [SR] Verifying 100 components
    2017-03-30 20:21:07, Info                  CSI    0000557f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:15, Info                  CSI    000055f8 [SR] Verify complete
    2017-03-30 20:21:15, Info                  CSI    000055f9 [SR] Verifying 100 components
    2017-03-30 20:21:15, Info                  CSI    000055fa [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:22, Info                  CSI    0000566d [SR] Verify complete
    2017-03-30 20:21:22, Info                  CSI    0000566e [SR] Verifying 100 components
    2017-03-30 20:21:22, Info                  CSI    0000566f [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:27, Info                  CSI    000056dc [SR] Verify complete
    2017-03-30 20:21:27, Info                  CSI    000056dd [SR] Verifying 100 components
    2017-03-30 20:21:27, Info                  CSI    000056de [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:32, Info                  CSI    00005746 [SR] Verify complete
    2017-03-30 20:21:32, Info                  CSI    00005747 [SR] Verifying 100 components
    2017-03-30 20:21:32, Info                  CSI    00005748 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:37, Info                  CSI    000057b3 [SR] Verify complete
    2017-03-30 20:21:38, Info                  CSI    000057b4 [SR] Verifying 100 components
    2017-03-30 20:21:38, Info                  CSI    000057b5 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:43, Info                  CSI    00005848 [SR] Verify complete
    2017-03-30 20:21:44, Info                  CSI    00005849 [SR] Verifying 100 components
    2017-03-30 20:21:44, Info                  CSI    0000584a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:48, Info                  CSI    000058b1 [SR] Verify complete
    2017-03-30 20:21:49, Info                  CSI    000058b2 [SR] Verifying 100 components
    2017-03-30 20:21:49, Info                  CSI    000058b3 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:53, Info                  CSI    0000591b [SR] Verify complete
    2017-03-30 20:21:53, Info                  CSI    0000591c [SR] Verifying 100 components
    2017-03-30 20:21:53, Info                  CSI    0000591d [SR] Beginning Verify and Repair transaction
    2017-03-30 20:21:58, Info                  CSI    00005983 [SR] Verify complete
    2017-03-30 20:21:58, Info                  CSI    00005984 [SR] Verifying 100 components
    2017-03-30 20:21:58, Info                  CSI    00005985 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:04, Info                  CSI    000059f6 [SR] Verify complete
    2017-03-30 20:22:04, Info                  CSI    000059f7 [SR] Verifying 100 components
    2017-03-30 20:22:04, Info                  CSI    000059f8 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:10, Info                  CSI    00005a61 [SR] Verify complete
    2017-03-30 20:22:10, Info                  CSI    00005a62 [SR] Verifying 100 components
    2017-03-30 20:22:10, Info                  CSI    00005a63 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:14, Info                  CSI    00005ac9 [SR] Verify complete
    2017-03-30 20:22:14, Info                  CSI    00005aca [SR] Verifying 100 components
    2017-03-30 20:22:14, Info                  CSI    00005acb [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:18, Info                  CSI    00005b33 [SR] Verify complete
    2017-03-30 20:22:19, Info                  CSI    00005b34 [SR] Verifying 100 components
    2017-03-30 20:22:19, Info                  CSI    00005b35 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:24, Info                  CSI    00005ba7 [SR] Verify complete
    2017-03-30 20:22:25, Info                  CSI    00005ba8 [SR] Verifying 100 components
    2017-03-30 20:22:25, Info                  CSI    00005ba9 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:30, Info                  CSI    00005c10 [SR] Verify complete
    2017-03-30 20:22:31, Info                  CSI    00005c11 [SR] Verifying 100 components
    2017-03-30 20:22:31, Info                  CSI    00005c12 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:39, Info                  CSI    00005c7a [SR] Verify complete
    2017-03-30 20:22:39, Info                  CSI    00005c7b [SR] Verifying 100 components
    2017-03-30 20:22:39, Info                  CSI    00005c7c [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:45, Info                  CSI    00005ce1 [SR] Verify complete
    2017-03-30 20:22:45, Info                  CSI    00005ce2 [SR] Verifying 100 components
    2017-03-30 20:22:45, Info                  CSI    00005ce3 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:51, Info                  CSI    00005d48 [SR] Verify complete
    2017-03-30 20:22:51, Info                  CSI    00005d49 [SR] Verifying 100 components
    2017-03-30 20:22:51, Info                  CSI    00005d4a [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:56, Info                  CSI    00005db0 [SR] Verify complete
    2017-03-30 20:22:56, Info                  CSI    00005db1 [SR] Verifying 100 components
    2017-03-30 20:22:56, Info                  CSI    00005db2 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:22:59, Info                  CSI    00005e17 [SR] Verify complete
    2017-03-30 20:22:59, Info                  CSI    00005e18 [SR] Verifying 100 components
    2017-03-30 20:22:59, Info                  CSI    00005e19 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:23:08, Info                  CSI    00005e7f [SR] Verify complete
    2017-03-30 20:23:08, Info                  CSI    00005e80 [SR] Verifying 53 components
    2017-03-30 20:23:08, Info                  CSI    00005e81 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:23:11, Info                  CSI    00005eb7 [SR] Verify complete
    2017-03-30 20:23:11, Info                  CSI    00005eb8 [SR] Repairing 0 components
    2017-03-30 20:23:11, Info                  CSI    00005eb9 [SR] Beginning Verify and Repair transaction
    2017-03-30 20:23:11, Info                  CSI    00005eba [SR] Repair complete

    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP