Yes, non-Microsoft services were all unchecked under msconfig.
FRST log -
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 31-07-2017
Ran by Peter Bahniuk (administrator) on MINE (06-08-2017 14:45:18)
Running from C:\Documents and Settings\Peter Bahniuk\Desktop
Loaded Profiles: Peter Bahniuk (Available Profiles: Peter Bahniuk & Administrator)
Platform: Microsoft Windows XP Professional Service Pack 3, v.3264 (X86) Language: English (United States)
Internet Explorer Version 6 (Default browser not detected!)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(Creative Technology Ltd) C:\Program Files\Creative\Shared Files\CTAudSvc.exe
(ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agrsmsvc.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Innovative Solutions) C:\Program Files\Innovative Solutions\DriverMax\innostp.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Creative Technology Ltd) C:\WINDOWS\system32\Ctxfihlp.exe
(www.dennisbabkin.com) C:\Compact Tray meter\Compact Tray Meter.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IDMan.exe
(the sz development) C:\Program Files\RimhillEx\RimhillEx.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Creative Technology Ltd) C:\WINDOWS\system32\CTxfispi.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IEMonitor.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
(Vivaldi Technologies AS) C:\Program Files\Vivaldi\Application\vivaldi.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BrStsMon00] => C:\Program Files\Browny02\Brother\BrStMonW.exe [3084288 2012-07-31] (Brother Industries, Ltd.)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM\...\Run: [CTxfiHlp] => CTXFIHLP.EXE*
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2013-12-23] (Advanced Micro Devices, Inc.)
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll [2013-12-23] (ATI Technologies Inc.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Run: [Compact Tray Meter] => C:\Compact Tray meter\Compact Tray Meter.exe [3081672 2014-05-31] (www.dennisbabkin.com)
HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Run: [IDMan] => C:\Program Files\Internet Download Manager\IDMan.exe [4027504 2017-07-15] (Tonec Inc.)
HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Run: [Device Doctor] => C:\Program Files (x86)\Device Doctor\DDTray.exe [1046504 2017-03-30] (Device Doctor Software Inc.)
HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Run: [DriverMax_RESTART] => [X]
HKU\S-1-5-18\...\RunOnce: [tscuninstall] => %systemroot%\system32\tscupgrd.exe
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, credssp.dll, msnsspc.dll
Startup: C:\Documents and Settings\Peter Bahniuk\Start Menu\Programs\Startup\RimhillEx.lnk [2016-11-07]
ShortcutTarget: RimhillEx.lnk -> C:\Program Files\RimhillEx\RimhillEx.exe (the sz development)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{6A394987-A551-40AF-9ADD-BA74B9C7F236}: [NameServer] 203.97.78.43 203.97.78.44
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1390067357-606747145-725345543-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKU\S-1-5-21-1390067357-606747145-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2017-07-13] (Internet Download Manager, Tonec Inc.)
FireFox:
========
FF DefaultProfile: nejrxvyi.default
FF ProfilePath: C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default [2017-07-31]
FF Extension: (Status-4-Evar) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\
[email protected] [2016-11-04]
FF Extension: (ColorfulTabs) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} [2016-11-04]
FF Extension: (Flagfox) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2016-11-04]
FF Extension: (FlashGot) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2016-11-12]
FF Extension: (RightToClick) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi [2016-11-04]
FF Extension: (Adblock Plus) - C:\Documents and Settings\Peter Bahniuk\Application Data\Mozilla\Firefox\Profiles\nejrxvyi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-04]
FF Extension: (IDM integration) - C:\Program Files\Internet Download Manager\idmmzcc2.xpi [2017-01-26]
FF ProfilePath: C:\Documents and Settings\Peter Bahniuk\Application Data\K-Meleon\lvu8bvvw.default [2017-06-29]
FF user.js: detected! => C:\Documents and Settings\Peter Bahniuk\Application Data\K-Meleon\lvu8bvvw.default\user.js [2006-04-07]
FF Extension: (NewsFox) - C:\Program Files\K-Meleon\browser\extensions\{899DF1F8-2F43-4394-8315-37F6744E6319}.xpi [2015-03-13] [not signed]
FF HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\Firefox\Extensions: [
[email protected]] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\SeaMonkey\Extensions: [
[email protected]] - C:\Documents and Settings\Peter Bahniuk\Application Data\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Documents and Settings\Peter Bahniuk\Application Data\IDM\idmmzcc5 [2017-07-26] [not signed]
FF HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\SeaMonkey\Extensions: [
[email protected]] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-29] ()
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2017-07-15]
CHR HKLM\...\Chrome\Extension: [pkijdmeepjhpenmighhaodgfoogncnlk] - C:\Program Files\Offline Explorer\mpoe.crx <not found>
Opera:
=======
OPR Extension: (EagleGet Free Downloader) - C:\Documents and Settings\Peter Bahniuk\Application Data\Opera Software\Opera Stable\Extensions\kaebhgioafceeldhgjmendlfhbfjefmo [2017-02-20]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AgereModemAudio; C:\Program Files\LSI SoftModem\agrsmsvc.exe [14336 2009-03-27] (LSI Corporation)
R2 Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [643072 2013-12-23] (ATI Technologies Inc.) [File not signed]
S4 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [270336 2012-07-13] (Brother Industries, Ltd.) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2017-08-05] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
S2 KMService; C:\WINDOWS\system32\srvany.exe [8192 2016-10-08] () [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [3398608 2017-05-09] (Malwarebytes)
S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2017-07-27] (Power Admin LLC)
S3 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
S3 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [File not signed]
S2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [File not signed]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [6852096 2013-12-23] (ATI Technologies Inc.) [File not signed]
R3 EtronHub3; C:\WINDOWS\System32\Drivers\EtronHub3.sys [46848 2012-02-19] (Etron Technology Inc)
R3 EtronXHCI; C:\WINDOWS\System32\Drivers\EtronXHCI.sys [68352 2012-02-19] (Etron Technology Inc)
R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-04] () [File not signed]
R1 IDMTDI; C:\WINDOWS\System32\DRIVERS\idmtdi.sys [142144 2017-07-15] (Tonec Inc.)
R0 MBAMSwissArmy; C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [221600 2017-08-06] (Malwarebytes)
R3 pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [47360 2016-10-24] (VSO Software) [File not signed]
R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-30] (Almico Software)
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [28520 2015-03-24] (Avira GmbH)
S3 VClone; C:\WINDOWS\System32\DRIVERS\VClone.sys [30720 2013-07-25] (Elaborate Bytes AG) [File not signed]
R1 ZAM; C:\WINDOWS\System32\drivers\zam32.sys [181496 2017-07-27] (Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard32.sys [181496 2017-07-27] (Zemana Ltd.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-08-06 14:40 - 2017-08-06 14:40 - 000000000 ____D C:\Process Monitor
2017-08-06 14:35 - 2017-08-06 14:44 - 001777664 _____ (Farbar) C:\Documents and Settings\Peter Bahniuk\Desktop\FRST.exe
2017-08-06 09:55 - 2017-08-06 09:56 - 000017209 _____ C:\junk.txt
2017-08-05 21:02 - 2017-08-05 21:02 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Local Settings\Application Data\ATI
2017-08-05 21:02 - 2017-08-05 21:02 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\ATI
2017-08-05 21:02 - 2017-08-05 21:02 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\ATI
2017-08-05 21:00 - 2017-08-05 21:00 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Catalyst Control Center
2017-08-05 20:59 - 2017-08-05 20:59 - 000000000 ____D C:\Program Files\ATI
2017-08-05 20:59 - 2017-08-05 20:59 - 000000000 _____ C:\WINDOWS\ativpsrm.bin
2017-08-05 20:59 - 2013-12-23 20:37 - 000071192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc32.dll
2017-08-05 20:59 - 2013-12-23 20:37 - 000071192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom32.dll
2017-08-05 20:59 - 2013-12-23 20:33 - 006852096 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtag.sys
2017-08-05 20:59 - 2013-12-23 20:27 - 000442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIDEMGX.dll
2017-08-05 20:59 - 2013-12-23 20:26 - 000306176 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvag.dll
2017-08-05 20:59 - 2013-12-23 20:04 - 000212992 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atipdlxx.dll
2017-08-05 20:59 - 2013-12-23 20:04 - 000163840 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\Oemdspif.dll
2017-08-05 20:59 - 2013-12-23 20:04 - 000043520 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\ati2edxx.dll
2017-08-05 20:59 - 2013-12-23 20:02 - 000643072 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe
2017-08-05 20:59 - 2013-12-23 20:01 - 000053248 _____ ( ATI Technologies Inc.) C:\WINDOWS\system32\ATIDDC.DLL
2017-08-05 20:59 - 2013-12-23 19:48 - 004847552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\ati3duag.dll
2017-08-05 20:59 - 2013-12-23 19:38 - 000307200 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiiiexx.dll
2017-08-05 20:59 - 2013-12-23 19:35 - 018964480 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atioglxx.dll
2017-08-05 20:59 - 2013-12-23 19:27 - 002380800 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\ativvaxx.dll
2017-08-05 20:59 - 2013-12-23 19:22 - 001610912 _____ C:\WINDOWS\system32\ativvaxx.cap
2017-08-05 20:59 - 2013-12-23 19:15 - 000296208 _____ C:\WINDOWS\system32\atiapfxx.blb
2017-08-05 20:59 - 2013-12-23 19:15 - 000163840 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2017-08-05 20:59 - 2013-12-23 19:11 - 000929792 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atikvmag.dll
2017-08-05 20:59 - 2013-12-23 19:06 - 000017408 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atitvo32.dll
2017-08-05 20:59 - 2013-12-23 19:05 - 000053248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2017-08-05 20:59 - 2013-12-23 19:01 - 000663552 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2cqag.dll
2017-08-05 20:59 - 2013-12-23 19:01 - 000495616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiok3x2.dll
2017-08-05 20:59 - 2013-07-04 21:41 - 000710269 _____ C:\WINDOWS\system32\atiicdxx.dat
2017-08-05 20:59 - 2012-07-16 14:25 - 000038445 _____ C:\WINDOWS\atiogl.xml
2017-08-05 20:59 - 2010-08-28 06:32 - 000294912 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2017-08-05 20:59 - 2009-06-23 03:34 - 000045056 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2017-08-05 20:59 - 2009-05-12 09:35 - 000118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe
2017-08-05 20:59 - 2001-11-10 04:01 - 000024064 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\ativcoxx.dll
2017-08-05 13:43 - 2017-08-06 14:29 - 000054400 _____ C:\WINDOWS\system32\BMXState-{00000004-00000000-00000001-00001102-00000005-00311102}.rfx
2017-08-05 13:43 - 2017-08-06 14:29 - 000000788 _____ C:\WINDOWS\system32\DVCState-{00000004-00000000-00000001-00001102-00000005-00311102}.rfx
2017-08-05 13:42 - 2017-08-05 13:42 - 000000000 ____D C:\Program Files\Common Files\Creative Labs Shared
2017-08-05 12:34 - 2017-08-05 12:56 - 000015737 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\HWiNFO32.INI
2017-08-05 12:34 - 2017-07-06 09:33 - 003460208 _____ (REALiX) C:\Documents and Settings\Peter Bahniuk\Desktop\HWiNFO32.exe
2017-08-05 10:51 - 2017-08-05 21:00 - 000000000 ____D C:\Program Files\ATI Technologies
2017-08-05 10:51 - 2017-08-05 10:51 - 000000000 ____D C:\AMD
2017-08-04 18:02 - 2017-08-05 12:33 - 000000114 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\USB Disk Format Tool.url
2017-08-04 18:02 - 2017-08-04 18:02 - 000000876 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Unknown Device Identifier.lnk
2017-08-04 18:02 - 2017-08-04 18:02 - 000000000 ____D C:\Program Files\Unknown Device Identifier
2017-08-04 18:02 - 2017-08-04 18:02 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Unknown Device Identifier 9.01
2017-08-04 17:54 - 2017-08-04 18:01 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\Device Doctor
2017-08-04 17:54 - 2017-08-04 17:54 - 000000763 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Device Doctor.lnk
2017-08-04 17:54 - 2017-08-04 17:54 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Device Doctor
2017-08-04 17:53 - 2017-08-06 14:42 - 000000304 _____ C:\WINDOWS\Tasks\DriverMax Notification.job
2017-08-04 17:53 - 2017-08-06 14:37 - 000000308 _____ C:\WINDOWS\Tasks\DriverMaxAgent.job
2017-08-04 17:53 - 2017-08-04 17:53 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\My Drivers
2017-08-04 17:52 - 2017-08-06 14:30 - 000000308 _____ C:\WINDOWS\Tasks\Application Starter - 8882161c434ab0fd43dca37f474f4351.job
2017-08-04 17:52 - 2017-08-04 18:02 - 000000310 _____ C:\WINDOWS\Tasks\DriverMaxWelcome.job
2017-08-04 17:52 - 2017-08-04 17:52 - 000000887 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\DriverMax.lnk
2017-08-04 17:52 - 2017-08-04 17:52 - 000000000 ____D C:\Program Files\Innovative Solutions
2017-08-04 17:52 - 2017-08-04 17:52 - 000000000 ____D C:\My Drivers
2017-08-04 17:52 - 2017-08-04 17:52 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Local Settings\Application Data\Innovative Solutions
2017-08-04 17:52 - 2017-08-04 17:52 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\Innovative Solutions
2017-08-04 17:52 - 2017-08-04 17:52 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\DriverMax
2017-08-04 12:49 - 2008-07-30 00:06 - 000027144 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\SafeBoot-for-Windows-XP-SP3.reg
2017-08-04 01:58 - 2017-08-04 01:58 - 000000000 ____D C:\Program Files\Common Files\AV
2017-08-04 01:58 - 2015-07-28 17:52 - 000821920 _____ (Safer-Networking Ltd. ) C:\Documents and Settings\All Users\Desktop\Post Win10 Spybot-install.exe
2017-08-04 00:33 - 2017-08-04 01:50 - 000065536 _____ C:\WINDOWS\system32\config\SpybotSD.evt
2017-08-04 00:33 - 2017-08-04 00:33 - 000001842 _____ C:\Documents and Settings\All Users\Start Menu\Programs\Spybot-S&D Start Center.lnk
2017-08-04 00:33 - 2017-08-04 00:33 - 000001836 _____ C:\Documents and Settings\All Users\Desktop\Spybot-S&D Start Center.lnk
2017-08-04 00:32 - 2017-08-04 02:32 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2017-08-04 00:32 - 2017-08-04 01:58 - 000000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2017-08-04 00:32 - 2013-09-20 10:49 - 000018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe
2017-08-03 20:00 - 2017-08-03 20:00 - 000000902 _____ C:\Documents and Settings\All Users\Start Menu\Programs\Registry Repair.lnk
2017-08-03 20:00 - 2017-08-03 20:00 - 000000896 _____ C:\Documents and Settings\All Users\Desktop\Registry Repair.lnk
2017-08-03 20:00 - 2017-08-03 20:00 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\GlarySoft
2017-08-03 20:00 - 2017-08-03 20:00 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Glarysoft
2017-08-03 19:59 - 2017-08-03 19:59 - 000000000 ____D C:\Program Files\Glarysoft
2017-08-03 19:40 - 2007-11-30 23:26 - 000364032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3svc.dll
2017-08-03 19:40 - 2007-11-30 23:26 - 000103424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uihelper.dll
2017-08-03 19:40 - 2007-11-30 23:26 - 000076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wam51.dll
2017-08-03 19:40 - 2007-11-30 23:26 - 000053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamreg51.dll
2017-08-03 19:40 - 2007-11-30 23:26 - 000033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tools.dll
2017-08-03 19:40 - 2007-11-30 23:25 - 000571392 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintlgnt.ime
2017-08-03 19:40 - 2007-11-30 23:25 - 000079360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winar30.ime
2017-08-03 19:40 - 2007-11-30 23:25 - 000065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winime.ime
2017-08-03 19:40 - 2007-11-30 23:25 - 000065024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\unicdime.ime
2017-08-03 19:40 - 2007-11-30 23:24 - 000426041 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\voicepad.dll
2017-08-03 19:40 - 2007-11-30 23:24 - 000156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winzm.ime
2017-08-03 19:40 - 2007-11-30 23:24 - 000156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winsp.ime
2017-08-03 19:40 - 2007-11-30 23:24 - 000156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winpy.ime
2017-08-03 19:40 - 2007-11-30 23:24 - 000086073 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\voicesub.dll
2017-08-03 19:40 - 2007-11-30 23:24 - 000076288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uniime.dll
2017-08-03 19:40 - 2007-11-30 23:24 - 000072704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wingb.ime
2017-08-03 19:40 - 2007-11-30 23:24 - 000010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tmigrate.dll
2017-08-03 19:40 - 2007-11-30 14:16 - 000455168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintsetp.exe
2017-08-03 19:40 - 2007-11-30 14:16 - 000044032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintlphr.exe
2017-08-03 19:40 - 2006-03-01 00:00 - 000073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ext.dll
2017-08-03 19:40 - 2006-03-01 00:00 - 000048256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w32.dll
2017-08-03 19:40 - 2006-03-01 00:00 - 000041600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.dll
2017-08-03 19:40 - 2006-03-01 00:00 - 000031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.sys
2017-08-03 19:40 - 2006-03-01 00:00 - 000028288 ____C C:\WINDOWS\system32\dllcache\xjis.nls
2017-08-03 19:40 - 2006-03-01 00:00 - 000014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsprof.exe
2017-08-03 19:40 - 2006-03-01 00:00 - 000009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamps51.dll
2017-08-03 19:40 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3svapi.dll
2017-08-03 19:40 - 2006-03-01 00:00 - 000004608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ctrs51.dll
2017-08-03 19:39 - 2007-11-30 23:26 - 000267776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxssvc.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000236544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smi2smir.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000229376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscover.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000142848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsclnt.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000119808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtstocom.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000092160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntwin.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\svcext51.dll
2017-08-03 19:39 - 2007-11-30 23:26 - 000046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sspifilt.dll
2017-08-03 19:39 - 2007-11-30 23:26 - 000045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ssinc51.dll
2017-08-03 19:39 - 2007-11-30 23:26 - 000042496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\davcdata.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmp.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000024064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntcmd.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetin51.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmptrap.exe
2017-08-03 19:39 - 2007-11-30 23:26 - 000007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\migregdb.exe
2017-08-03 19:39 - 2007-11-30 23:25 - 000562176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsst.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000482304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlgnt.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000456192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpsvc.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000451584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsapi.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000400384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsxp32.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000397312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxstiff.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000358400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpincl.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000285184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscomex.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000268288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpext.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000259072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpcl.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000257024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infocomm.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000246272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxst30.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000221696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\seo.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000218112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_g18030.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000192512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxswzrd.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000188416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpsmir.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000154112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsui.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000145408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iische51.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000125952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsv251.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000101888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\evntagnt.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000085504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\metada51.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000079872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iislog51.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000079360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phon.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000078848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dayi.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000078336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chajei.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quick.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000072192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscom.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpod51.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsevent.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000044544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nsepm.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000039936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpthrd.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000039936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hostmib.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000037888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\md5filt.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000035328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iprip.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lmmib2.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gzip.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000029184 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rw330ext.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000027648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rw001ext.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iscomlog.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsdrv.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\romanime.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisadmin.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000024064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\compfilt.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsmon.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsext32.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lpdsvc.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000021504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintlgnt.ime
2017-08-03 19:39 - 2007-11-30 23:25 - 000018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lprmon.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\exstrace.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lonsint.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpapi.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000009728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rwnh.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsperf.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpmb51.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pwsdata.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisfecnv.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpmib.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpmib.dll
2017-08-03 19:39 - 2007-11-30 23:25 - 000004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rpcref.dll
2017-08-03 19:39 - 2007-11-30 23:23 - 000175104 ____C C:\WINDOWS\system32\dllcache\pintlcsa.dll
2017-08-03 19:39 - 2007-11-30 23:23 - 000067584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmigrate.dll
2017-08-03 19:39 - 2007-11-30 23:23 - 000053760 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlcsd.dll
2017-08-03 19:39 - 2007-11-30 23:23 - 000015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs404.dll
2017-08-03 19:39 - 2007-11-30 23:23 - 000015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs804.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 013463552 ____C C:\WINDOWS\system32\dllcache\hwxjpn.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000811064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjp81k.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000716856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpcus.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000368696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpcic.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000340023 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjp81.ime
2017-08-03 19:39 - 2007-11-30 23:22 - 000315455 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskf.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000274489 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjputyc.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000106496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrcic.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000102456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imlang.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000094720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekr61.ime
2017-08-03 19:39 - 2007-11-30 23:22 - 000086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmbx.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000081976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdct.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdibm02.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\f3ahvoas.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlk41a.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsres.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlk41j.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdax2.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd106n.dll
2017-08-03 19:39 - 2007-11-30 23:22 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101.dll
2017-08-03 19:39 - 2007-11-30 23:21 - 000198656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintime.dll
2017-08-03 19:39 - 2007-11-30 23:21 - 000173568 ____C C:\WINDOWS\system32\dllcache\chtskf.dll
2017-08-03 19:39 - 2007-11-30 23:21 - 000097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtmbx.dll
2017-08-03 19:39 - 2007-11-30 23:21 - 000056320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtskdic.dll
2017-08-03 19:39 - 2007-11-30 16:25 - 000020736 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ramdisk.sys
2017-08-03 19:39 - 2007-11-30 14:16 - 000480256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintsetp.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000307257 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdct.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000262200 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjputy.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000233527 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjprw.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000208952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpmig.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000196665 ____C C:\WINDOWS\system32\dllcache\imjpinst.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000155705 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdsvr.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000070144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlphr.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000059392 ____C C:\WINDOWS\system32\dllcache\imscinst.exe
2017-08-03 19:39 - 2007-11-30 14:16 - 000057399 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cplexe.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 010129408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxkor.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 010096640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxcht.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 001875968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.lex
2017-08-03 19:39 - 2006-03-01 00:00 - 001677824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chsbrkr.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 001158818 ____C C:\WINDOWS\system32\dllcache\korwbrkr.lex
2017-08-03 19:39 - 2006-03-01 00:00 - 000838144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtbrkr.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000471102 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskdic.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000311359 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsv.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000229439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\multibox.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000189986 ____C C:\WINDOWS\system32\dllcache\c_1361.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000187938 ____C C:\WINDOWS\system32\dllcache\c_20005.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000186402 ____C C:\WINDOWS\system32\dllcache\c_20001.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000185378 ____C C:\WINDOWS\system32\dllcache\c_20003.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000185344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\thawbrkr.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000180770 ____C C:\WINDOWS\system32\dllcache\c_20932.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000180258 ____C C:\WINDOWS\system32\dllcache\c_20004.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000180258 ____C C:\WINDOWS\system32\dllcache\c_20000.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000177698 ____C C:\WINDOWS\system32\dllcache\c_20949.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000173602 ____C C:\WINDOWS\system32\dllcache\c_20936.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000173602 ____C C:\WINDOWS\system32\dllcache\c_20002.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000143422 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\softkey.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000134339 ____C C:\WINDOWS\system32\dllcache\imekr.lex
2017-08-03 19:39 - 2006-03-01 00:00 - 000132608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsclntr.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxviceo.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000111104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscfgwz.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000108827 ____C C:\WINDOWS\system32\dllcache\hanja.lex
2017-08-03 19:39 - 2006-03-01 00:00 - 000102463 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsm.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000101376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srusbusd.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000098304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000092416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000092032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000083748 ____C C:\WINDOWS\system32\dllcache\prcp.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000083748 ____C C:\WINDOWS\system32\dllcache\prc.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000079872 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia330.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000079872 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia001.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000070656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\korwbrkr.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000066594 ____C C:\WINDOWS\system32\dllcache\c_864.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066594 ____C C:\WINDOWS\system32\dllcache\c_862.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066594 ____C C:\WINDOWS\system32\dllcache\c_858.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066594 ____C C:\WINDOWS\system32\dllcache\c_720.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_870.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_708.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_28596.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_21027.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_21025.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20924.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20880.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20871.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20838.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20833.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20424.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20423.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20420.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20297.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20290.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20285.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20284.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20280.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20278.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20277.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20273.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20269.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20108.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20107.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20106.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_20105.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000060928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisclex4.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imkrinst.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000057856 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuimgd.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000057398 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdadm.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000056320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\convlog.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000054528 ____C (Philips Semiconductors GmbH) C:\WINDOWS\system32\dllcache\cap7146.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nextlink.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000047066 ____C C:\WINDOWS\system32\dllcache\ksc.nls
2017-08-03 19:39 - 2006-03-01 00:00 - 000045109 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpuex.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000045056 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esunid.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000044032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmig.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm9aw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000036927 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs411.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hanjadic.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\controt.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000031744 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esucmd.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb6w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sma3w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pagecnt.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsroute.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm87w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm81w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8cw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm93w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm92w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mdsync.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm90w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8dw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8aw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm89w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000025856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\et4000.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm59w.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000022016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logscrpt.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000021896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdipx.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\permchk.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\counters.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000019464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdspx.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iiscrmap.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\simptcp.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cprofile.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000018432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jupiw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\status.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quser.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsm.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgport.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\register.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\flattemp.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs412.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgusr.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chglogon.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000013192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdasync.sys
2017-08-03 19:39 - 2006-03-01 00:00 - 000011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxmcro.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxssend.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_iscii.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpstup.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000009728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\query.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000009728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\change.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecat.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iwrps.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infoctrs.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecnt.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpctrs2.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnec95.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isapips.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iissync.exe
2017-08-03 19:39 - 2006-03-01 00:00 - 000006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_is2022.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxgl.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth3.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth2.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinpun.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101a.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftlx041e.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smimsgif.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsy.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdvntc.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdusa.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdurdu.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth1.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth0.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr2.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr1.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintel.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintam.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinmar.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinkan.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinhin.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinguj.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdindev.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdheb.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdfa.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv2.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv1.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda3.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda2.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda1.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdgeo.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarmw.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarme.dll
2017-08-03 19:39 - 2006-03-01 00:00 - 000003584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iismui.dll
2017-08-03 19:39 - 2003-03-24 16:52 - 000094208 ____C C:\WINDOWS\system32\dllcache\fpencode.dll
2017-08-03 19:39 - 2003-03-24 16:52 - 000024632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpadmcgi.exe
2017-08-03 19:39 - 2003-03-24 16:52 - 000020541 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpadmdll.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_mailmsg.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_scripto.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_fcachdll.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_ntfsdrv.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_seos.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe
2017-08-03 19:39 - 2001-08-17 22:36 - 000012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_smtpctrs.dll
2017-08-03 19:39 - 2001-08-17 22:36 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_snprfdll.dll
2017-08-03 19:38 - 2017-08-03 19:38 - 000262144 _____ C:\WINDOWS\system32\config\userdifr
2017-08-03 19:38 - 2007-11-30 23:26 - 000030720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrstas.exe
2017-08-03 19:38 - 2007-11-30 23:26 - 000008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\staxmem.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 002134528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpsnap.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000829440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetmgr.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000369664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asp51.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000331264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aqueue.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000290816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adsiis51.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000189440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpadm.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000133632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrtl.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000108544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\appconf.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000068608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isatq.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000068608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisext51.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000064512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iismap.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\coadmin.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admwprox.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000029696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admexs.dll
2017-08-03 19:38 - 2007-11-30 23:25 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infoadmn.dll
2017-08-03 19:38 - 2007-11-30 23:22 - 000076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logui.ocx
2017-08-03 19:38 - 2007-11-30 23:21 - 000275968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\certwiz.ocx
2017-08-03 19:38 - 2007-11-30 23:21 - 000076288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cnfgprts.ocx
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0804.dll
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0412.dll
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0411.dll
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt040d.dll
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0404.dll
2017-08-03 19:38 - 2007-04-02 22:56 - 000019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agt0401.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000195618 ____C C:\WINDOWS\system32\dllcache\c_10002.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000177698 ____C C:\WINDOWS\system32\dllcache\c_10003.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000173602 ____C C:\WINDOWS\system32\dllcache\c_10008.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000169984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisui.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000162850 ____C C:\WINDOWS\system32\dllcache\c_10001.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000094720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\certmap.ocx
2017-08-03 19:38 - 2006-03-01 00:00 - 000082172 ____C C:\WINDOWS\system32\dllcache\bopomofo.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066728 ____C C:\WINDOWS\system32\dllcache\big5.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1149.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1148.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1147.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1146.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1145.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1144.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1143.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1142.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1141.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1140.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_1047.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_10021.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_10005.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000066082 ____C C:\WINDOWS\system32\dllcache\c_10004.nls
2017-08-03 19:38 - 2006-03-01 00:00 - 000049664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adrot.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\browscap.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asptxn.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetsloc.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisreset.exe
2017-08-03 19:38 - 2006-03-01 00:00 - 000010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aspperf.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\authfilt.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetmgr.exe
2017-08-03 19:38 - 2006-03-01 00:00 - 000007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamregps.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsapi2.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admxprox.dll
2017-08-03 19:38 - 2006-03-01 00:00 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrstap.dll
2017-08-03 19:38 - 2004-05-13 00:39 - 000876653 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4awel.dll
2017-08-03 19:38 - 2004-05-13 00:39 - 000598071 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpmmc.dll
2017-08-03 19:38 - 2004-05-13 00:39 - 000184435 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4amsft.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000208896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpmmcsat.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000188494 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpcount.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000188480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cfgwiz.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000147513 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4apws.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000109328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp98swin.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000102509 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4atxt.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000082035 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4anscp.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000049212 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4awebs.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000049210 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4areg.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000041020 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4avnb.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000032827 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcptest.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000032826 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp4avss.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000020541 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpexedll.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000020540 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\author.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000020540 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admin.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000020538 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fpremadm.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000020536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shtml.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000016439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\author.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000016439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admin.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000016437 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shtml.exe
2017-08-03 19:38 - 2003-03-24 16:52 - 000016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcptsat.dll
2017-08-03 19:38 - 2003-03-24 16:52 - 000014608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fp98sadm.exe
2017-08-03 19:38 - 2001-08-17 22:36 - 000045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_aqadmin.dll
2017-08-03 19:38 - 2001-08-17 22:36 - 000005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_adsiisex.dll
2017-08-03 19:37 - 2017-08-03 19:37 - 000000749 ___RH C:\WINDOWS\WindowsShell.Manifest
2017-08-03 19:37 - 2017-08-03 19:37 - 000000749 ___RH C:\WINDOWS\system32\wuaucpl.cpl.manifest
2017-08-03 19:37 - 2017-08-03 19:37 - 000000749 ___RH C:\WINDOWS\system32\sapi.cpl.manifest
2017-08-03 19:37 - 2017-08-03 19:37 - 000000749 ___RH C:\WINDOWS\system32\nwc.cpl.manifest
2017-08-03 19:37 - 2017-08-03 19:37 - 000000749 ___RH C:\WINDOWS\system32\ncpa.cpl.manifest
2017-08-03 19:37 - 2017-08-03 19:37 - 000000488 ___RH C:\WINDOWS\system32\logonui.exe.manifest
2017-08-03 19:34 - 2017-08-03 19:34 - 000000123 _____ C:\WINDOWS\pnplog.txt
2017-08-03 19:28 - 2007-12-01 01:32 - 001292766 ____R C:\WINDOWS\SET2B.tmp
2017-08-03 19:28 - 2007-12-01 01:32 - 001292766 ____C C:\WINDOWS\system32\dllcache\SP3.CAT
2017-08-03 19:28 - 2007-12-01 01:32 - 000113057 ____C C:\WINDOWS\system32\dllcache\tabletpc.cat
2017-08-03 19:28 - 2007-12-01 01:27 - 002134325 ____C C:\WINDOWS\system32\dllcache\NT5.CAT
2017-08-03 19:28 - 2007-12-01 01:27 - 001088979 ____R C:\WINDOWS\SET2E.tmp
2017-08-03 19:28 - 2007-12-01 01:27 - 001088979 ____C C:\WINDOWS\system32\dllcache\NTPRINT.CAT
2017-08-03 19:28 - 2007-12-01 01:27 - 000516849 ____C C:\WINDOWS\system32\dllcache\NT5INF.CAT
2017-08-03 19:28 - 2007-12-01 01:27 - 000144623 ____C C:\WINDOWS\system32\dllcache\netfx.cat
2017-08-03 19:28 - 2007-12-01 01:27 - 000034886 ____C C:\WINDOWS\system32\dllcache\mediactr.cat
2017-08-03 19:28 - 2007-12-01 01:27 - 000034202 ____C C:\WINDOWS\system32\dllcache\FP4.CAT
2017-08-03 19:28 - 2007-12-01 01:26 - 000027130 ____C C:\WINDOWS\system32\dllcache\msn7.cat
2017-08-03 19:28 - 2007-12-01 01:26 - 000016674 ____R C:\WINDOWS\SET3A.tmp
2017-08-03 19:28 - 2007-12-01 01:26 - 000016674 ____C C:\WINDOWS\system32\dllcache\IMS.CAT
2017-08-03 19:28 - 2007-12-01 01:26 - 000014572 ____C C:\WINDOWS\system32\dllcache\msn9.cat
2017-08-03 19:28 - 2007-12-01 01:26 - 000012502 ____C C:\WINDOWS\system32\dllcache\MSMSGS.CAT
2017-08-03 19:28 - 2007-12-01 01:26 - 000010166 ____C C:\WINDOWS\system32\dllcache\MSTSWEB.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000797189 ____C C:\WINDOWS\system32\dllcache\NT5IIS.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000399645 ____C C:\WINDOWS\system32\dllcache\MAPIMIG.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000037484 ____C C:\WINDOWS\system32\dllcache\MW770.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000024661 ____C (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spxcoins.dll
2017-08-03 19:28 - 2006-03-01 00:00 - 000024661 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\spxcoins.dll
2017-08-03 19:28 - 2006-03-01 00:00 - 000014573 ____R C:\WINDOWS\SET75.tmp
2017-08-03 19:28 - 2006-03-01 00:00 - 000013472 ____C C:\WINDOWS\system32\dllcache\HPCRDP.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irclass.dll
2017-08-03 19:28 - 2006-03-01 00:00 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll
2017-08-03 19:28 - 2006-03-01 00:00 - 000008574 ____C C:\WINDOWS\system32\dllcache\IASNT4.CAT
2017-08-03 19:28 - 2006-03-01 00:00 - 000007382 ____C C:\WINDOWS\system32\dllcache\OEMBIOS.CAT
2017-08-03 18:03 - 2017-08-06 14:30 - 000000000 ____D C:\WINDOWS\system32\NtmsData
2017-08-03 17:52 - 2017-08-03 17:52 - 003153920 _____ C:\Documents and Settings\Peter Bahniuk\secsetup.sdb
2017-08-03 15:24 - 2017-08-03 15:24 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\adaware
2017-08-01 23:24 - 2017-08-01 23:25 - 000000004 _____ C:\ScrubRetValFile.txt
2017-08-01 22:57 - 2017-08-01 22:57 - 000615154 _____ C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1390067357-606747145-725345543-1003-0.dat
2017-08-01 22:53 - 2017-08-01 22:53 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2017-08-01 22:53 - 2017-08-01 22:53 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2017-08-01 22:53 - 2017-08-01 22:45 - 001607032 _____ (Microsoft Corporation) C:\Documents and Settings\Peter Bahniuk\Desktop\MGADiag.exe
2017-08-01 21:30 - 2015-03-24 14:59 - 000028520 _____ (Avira GmbH) C:\WINDOWS\system32\Drivers\ssmdrv.sys
2017-08-01 13:01 - 2017-08-01 14:16 - 000000694 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Fixlog.txt
2017-07-31 17:52 - 2017-07-31 17:52 - 000064109 _____ C:\tdsskiller.txt
2017-07-31 17:47 - 2017-07-31 17:52 - 000128308 _____ C:\TDSSKiller.3.1.0.15_31.07.2017_17.47.20_log.txt
2017-07-31 17:46 - 2017-08-05 10:24 - 000000000 ____D C:\Documents and Settings\Administrator\Local Settings\temp
2017-07-31 17:46 - 2017-07-31 17:46 - 000016106 _____ C:\ComboFix.txt
2017-07-31 17:46 - 2017-07-31 17:46 - 000000000 ____D C:\Documents and Settings\NetworkService\Local Settings\temp
2017-07-31 17:46 - 2017-07-31 17:46 - 000000000 ____D C:\Documents and Settings\LocalService\Local Settings\temp
2017-07-31 17:38 - 2011-06-26 18:45 - 000256000 _____ C:\WINDOWS\PEV.exe
2017-07-31 17:38 - 2010-11-08 05:20 - 000208896 _____ C:\WINDOWS\MBR.exe
2017-07-31 17:38 - 2009-04-20 16:56 - 000060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000098816 _____ C:\WINDOWS\sed.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000080412 _____ C:\WINDOWS\grep.exe
2017-07-31 17:38 - 2000-08-31 12:00 - 000068096 _____ C:\WINDOWS\zip.exe
2017-07-31 17:37 - 2017-07-31 17:22 - 005659794 ____R (Swearware) C:\Documents and Settings\Peter Bahniuk\Desktop\ComboFix_2.exe
2017-07-31 16:49 - 2017-07-31 17:46 - 000000000 ____D C:\WINDOWS\erdnt
2017-07-31 16:49 - 2017-07-31 17:46 - 000000000 ____D C:\Qoobox
2017-07-31 16:48 - 2017-07-10 00:33 - 004922400 _____ (AO Kaspersky Lab) C:\Documents and Settings\Peter Bahniuk\Desktop\tdsskiller.exe
2017-07-30 13:12 - 2017-07-30 13:16 - 000000354 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Perms.txt
2017-07-30 13:11 - 2013-05-02 07:56 - 000459114 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\GrantPerms.exe
2017-07-30 11:06 - 2017-07-30 11:06 - 000001036 _____ C:\VEW_application.txt
2017-07-30 11:05 - 2017-07-30 11:06 - 000001036 _____ C:\VEW.txt
2017-07-30 11:05 - 2017-07-30 11:05 - 000002014 _____ C:\VEW_system.txt
2017-07-30 11:01 - 2017-07-30 11:01 - 000820212 _____ C:\WINDOWS\SIGVERIF.TXT
2017-07-30 10:43 - 2017-08-06 14:45 - 000025765 _____ C:\WINDOWS\ZAM.krnl.trace
2017-07-30 10:43 - 2017-08-06 14:45 - 000009352 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2017-07-30 10:12 - 2017-08-03 16:10 - 000000000 ____D C:\Program Files\SpeedFan
2017-07-30 10:12 - 2017-07-30 10:12 - 000000045 _____ C:\WINDOWS\system32\initdebug.nfo
2017-07-30 00:31 - 2017-07-30 00:32 - 000048868 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Speccy.txt
2017-07-30 00:29 - 2017-07-30 00:29 - 000005583 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\System Idle Process.txt
2017-07-30 00:26 - 2017-07-30 00:18 - 002724512 _____ (Sysinternals - www.sysinternals.com) C:\Documents and Settings\Peter Bahniuk\Desktop\procexp.exe
2017-07-29 12:02 - 2017-07-29 12:02 - 000512828 _____ C:\Documents and Settings\Peter Bahniuk\My Documents\Sys_XP_Support.zip
2017-07-29 12:00 - 2017-07-29 12:00 - 000051582 _____ C:\Documents and Settings\Peter Bahniuk\My Documents\reports
2017-07-29 11:49 - 2017-07-29 11:49 - 000147968 _____ C:\Documents and Settings\Peter Bahniuk\My Documents\old_BSOD_XP_v1.3_jcgriff2_PROD_Sysnative.exe
2017-07-29 11:46 - 2017-07-29 11:46 - 000716448 _____ (Sysinternals - www.sysinternals.com) C:\Documents and Settings\Peter Bahniuk\My Documents\autoruns.exe
2017-07-29 11:26 - 2017-07-29 11:26 - 000000654 _____ C:\Documents and Settings\All Users\Desktop\Speccy.lnk
2017-07-29 11:26 - 2017-07-29 11:26 - 000000000 ____D C:\Program Files\Speccy
2017-07-28 22:21 - 2017-07-28 22:38 - 003234816 _____ C:\Documents and Settings\Peter Bahniuk\Can You Trust Your Color Meter-131132803.mp4.part
2017-07-28 00:14 - 2017-07-28 00:14 - 000024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2017-07-28 00:13 - 2017-07-28 00:26 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\RogueKiller
2017-07-28 00:12 - 2017-07-28 00:13 - 000003388 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Rkill.txt
2017-07-28 00:12 - 2017-07-27 23:52 - 022176840 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\RogueKiller_portable32_(12.11.8.0).exe
2017-07-28 00:12 - 2017-07-27 16:40 - 001792640 _____ (Bleeping Computer, LLC) C:\Documents and Settings\Peter Bahniuk\Desktop\uSeRiNiT.exe
2017-07-27 17:25 - 2017-07-27 17:25 - 000189112 _____ (Power Admin LLC) C:\WINDOWS\PAExec.exe
2017-07-27 17:10 - 2017-08-05 14:07 - 000000664 _____ C:\WINDOWS\system32\d3d9caps.dat
2017-07-27 17:10 - 2017-07-27 17:10 - 000181496 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard32.sys
2017-07-27 17:10 - 2017-07-27 17:10 - 000181496 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam32.sys
2017-07-27 17:10 - 2017-07-27 17:10 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Local Settings\Application Data\Zemana
2017-07-27 16:53 - 2017-07-27 17:10 - 000003152 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Rkill_.txt
2017-07-27 16:53 - 2017-07-27 16:53 - 000003368 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Rkill_1.txt
2017-07-27 16:52 - 2017-08-06 14:30 - 000221600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-07-27 16:52 - 2017-07-27 16:52 - 000001715 _____ C:\Documents and Settings\All Users\Desktop\Malwarebytes.lnk
2017-07-27 16:52 - 2017-07-27 16:52 - 000000000 ____D C:\Program Files\Malwarebytes
2017-07-27 16:52 - 2017-07-27 16:52 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Malwarebytes
2017-07-27 16:52 - 2017-06-27 12:06 - 000059936 _____ C:\WINDOWS\system32\Drivers\mbae.sys
2017-07-27 10:23 - 2017-08-01 09:33 - 000025887 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Addition.txt
2017-07-27 10:22 - 2017-08-06 14:45 - 000012455 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\FRST.txt
2017-07-27 10:22 - 2017-08-06 14:45 - 000000000 ____D C:\FRST
2017-07-27 02:45 - 2017-07-27 02:47 - 000000000 ____D C:\Tweaking.com - Windows Repair
2017-07-27 02:34 - 2017-07-27 02:36 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Desktop\Tweaking.com - Windows Repair
2017-07-27 01:57 - 2017-07-27 01:57 - 000000000 ____D C:\Documents and Settings\Administrator\Application Data\Foxit Software
2017-07-27 01:16 - 2017-07-27 01:16 - 000094208 _____ C:\WINDOWS\Minidump\Mini072717-02.dmp
2017-07-27 01:05 - 2017-07-27 01:05 - 000094208 _____ C:\WINDOWS\Minidump\Mini072717-01.dmp
2017-07-27 00:56 - 2017-07-27 00:58 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\Foxit Software
2017-07-27 00:56 - 2017-07-27 00:56 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\Foxit AgentInformation
2017-07-27 00:56 - 2017-07-27 00:56 - 000000000 ____D C:\Documents and Settings\All Users\Foxit Software
2017-07-27 00:56 - 2017-07-27 00:56 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Foxit ContentPlatform
2017-07-26 20:16 - 2017-07-26 20:16 - 000000696 _____ C:\Documents and Settings\Peter Bahniuk\Desktop\Internet Download Manager.lnk
2017-07-26 20:15 - 2017-07-26 20:16 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Start Menu\Programs\Internet Download Manager
2017-07-26 20:15 - 2017-07-26 20:16 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Internet Download Manager
2017-07-15 05:18 - 2017-07-15 05:13 - 000142144 _____ (Tonec Inc.) C:\WINDOWS\system32\Drivers\idmtdi.sys
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-08-06 14:45 - 2016-10-08 18:44 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Local Settings\Temp
2017-08-06 14:35 - 2016-10-09 16:00 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\IDM
2017-08-06 14:34 - 2016-10-09 06:30 - 000334490 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-08-06 14:31 - 2016-10-08 19:02 - 000006914 _____ C:\WINDOWS\ModemLog_LSI PCI-SV92PP Soft Modem.txt
2017-08-06 14:30 - 2016-11-05 16:23 - 000000408 _____ C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1478319800.job
2017-08-06 14:30 - 2016-10-08 18:57 - 000458752 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2017-08-06 14:30 - 2016-10-08 18:43 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-08-06 14:29 - 2016-10-09 19:22 - 000054400 _____ C:\WINDOWS\system32\BMXStateBkp-{00000004-00000000-00000001-00001102-00000005-00311102}.rfx
2017-08-06 14:29 - 2016-10-08 18:44 - 000000178 ___SH C:\Documents and Settings\Peter Bahniuk\ntuser.ini
2017-08-06 14:29 - 2016-10-08 18:43 - 000031848 _____ C:\WINDOWS\SchedLgU.Txt
2017-08-06 14:28 - 2016-10-09 06:28 - 000000211 ___SH C:\boot.ini
2017-08-06 14:28 - 2006-03-01 00:00 - 000000528 _____ C:\WINDOWS\win.ini
2017-08-06 14:28 - 2006-03-01 00:00 - 000000227 _____ C:\WINDOWS\system.ini
2017-08-05 21:02 - 2006-03-01 00:00 - 000012984 _____ C:\WINDOWS\system32\wpa.dbl
2017-08-05 20:59 - 2016-10-09 06:23 - 000000000 ___HD C:\WINDOWS\inf
2017-08-05 14:08 - 2016-10-21 15:38 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Zoom Player
2017-08-05 13:42 - 2016-10-09 19:21 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\Creative
2017-08-05 13:42 - 2016-10-08 18:51 - 000000000 ___HD C:\Program Files\InstallShield Installation Information
2017-08-05 13:41 - 2016-10-09 19:20 - 000445016 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2017-08-05 13:41 - 2016-10-09 19:20 - 000109144 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2017-08-05 13:41 - 2016-10-09 19:20 - 000000000 ____D C:\WINDOWS\system32\Data
2017-08-05 13:41 - 2016-10-09 19:20 - 000000000 ____D C:\Program Files\Creative
2017-08-05 13:41 - 2016-10-09 06:23 - 000000000 RSHDC C:\WINDOWS\system32\dllcache
2017-08-05 10:26 - 2017-06-29 13:55 - 000000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2017-08-05 10:26 - 2017-06-29 13:54 - 001144120 _____ C:\WINDOWS\ntbtlog.txt
2017-08-04 17:54 - 2016-11-24 09:18 - 000000000 ____D C:\Program Files (x86)
2017-08-04 17:53 - 2016-10-08 18:44 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk
2017-08-04 07:19 - 2016-10-09 06:28 - 022806528 _____ C:\WINDOWS\system32\config\software.sav
2017-08-04 07:19 - 2016-10-09 06:28 - 006029312 _____ C:\WINDOWS\system32\config\system.sav
2017-08-04 07:19 - 2016-10-09 06:28 - 000524288 _____ C:\WINDOWS\system32\config\default.sav
2017-08-04 07:19 - 2016-10-09 06:28 - 000262144 _____ C:\WINDOWS\system32\config\userdiff
2017-08-04 07:19 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\usmt
2017-08-04 07:19 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\Setup
2017-08-04 07:19 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system
2017-08-04 07:19 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\L2Schemas
2017-08-04 07:19 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\Help
2017-08-04 07:18 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\Network Diagnostic
2017-08-04 07:18 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\mui
2017-08-04 07:18 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\Media
2017-08-04 07:18 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\ime
2017-08-04 07:17 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\npp
2017-08-04 07:17 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\PeerNet
2017-08-04 07:17 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\msagent
2017-08-04 07:12 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\icsxml
2017-08-04 07:11 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\ias
2017-08-04 07:11 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\1033
2017-08-04 07:10 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\Driver Cache
2017-08-03 19:49 - 2016-10-08 18:39 - 000000000 ____D C:\WINDOWS\Registration
2017-08-03 19:47 - 2016-10-08 18:43 - 000000178 ___SH C:\Documents and Settings\LocalService\ntuser.ini
2017-08-03 19:41 - 2016-10-09 06:29 - 000622088 _____ C:\WINDOWS\setuplog.txt
2017-08-03 19:38 - 2016-10-09 06:30 - 000004161 _____ C:\WINDOWS\ODBCINST.INI
2017-08-03 19:38 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\security
2017-08-03 19:38 - 2016-10-08 18:41 - 000316640 _____ C:\WINDOWS\WMSysPr9.prx
2017-08-03 19:38 - 2016-10-08 18:41 - 000023392 _____ C:\WINDOWS\system32\nscompat.tlb
2017-08-03 19:38 - 2016-10-08 18:41 - 000016832 _____ C:\WINDOWS\system32\amcompat.tlb
2017-08-03 19:38 - 2016-10-08 18:41 - 000001607 _____ C:\Documents and Settings\All Users\Start Menu\Set Program Access and Defaults.lnk
2017-08-03 19:38 - 2016-10-08 18:41 - 000001599 _____ C:\Documents and Settings\Default User\Start Menu\Programs\Remote Assistance.lnk
2017-08-03 19:38 - 2016-10-08 18:41 - 000001507 _____ C:\Documents and Settings\All Users\Start Menu\Windows Update.lnk
2017-08-03 19:38 - 2016-10-08 18:41 - 000001280 _____ C:\WINDOWS\OEWABLog.txt
2017-08-03 19:38 - 2016-10-08 18:41 - 000000792 _____ C:\Documents and Settings\Default User\Start Menu\Programs\Windows Media Player.lnk
2017-08-03 19:38 - 2016-10-08 18:41 - 000000278 _____ C:\Documents and Settings\All Users\Start Menu\Windows Catalog.lnk
2017-08-03 19:37 - 2016-10-09 06:23 - 000000000 ___RD C:\WINDOWS\Web
2017-08-03 19:37 - 2016-10-09 06:23 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-08-03 19:37 - 2016-10-08 18:41 - 000000488 ___RH C:\WINDOWS\system32\WindowsLogon.manifest
2017-08-03 19:37 - 2016-10-08 18:40 - 000000786 _____ C:\Documents and Settings\All Users\Start Menu\Programs\Windows Movie Maker.lnk
2017-08-03 19:37 - 2016-10-08 18:40 - 000000749 ___RH C:\WINDOWS\system32\cdplayer.exe.manifest
2017-08-03 19:37 - 2016-10-08 18:39 - 000022720 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-08-03 19:37 - 2016-10-08 18:39 - 000000609 _____ C:\Documents and Settings\All Users\Start Menu\Programs\Windows Messenger.lnk
2017-08-03 19:37 - 2016-10-08 18:38 - 000000000 ____D C:\WINDOWS\system32\Com
2017-08-03 19:35 - 2016-10-09 07:34 - 000004444 _____ C:\WINDOWS\system32\pid.PNF
2017-08-03 19:28 - 2016-10-09 06:29 - 000000000 ___HD C:\Documents and Settings\Default User
2017-08-03 19:02 - 2016-10-09 06:29 - 000262144 _____ C:\WINDOWS\system32\config\security.sav
2017-08-03 17:46 - 2016-10-09 06:30 - 000001891 _____ C:\WINDOWS\imsins.BAK
2017-08-03 16:22 - 2017-06-29 13:39 - 000185286 _____ C:\WINDOWS\Tweaking.com - Windows Repair Setup Log.txt
2017-08-03 15:24 - 2016-10-08 18:57 - 000042872 _____ C:\Documents and Settings\Peter Bahniuk\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2017-08-01 22:58 - 2016-11-24 09:36 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Package Cache
2017-08-01 22:58 - 2016-10-09 06:29 - 000184224 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-08-01 22:57 - 2016-11-23 14:53 - 000203250 _____ C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2017-08-01 22:56 - 2016-10-09 06:30 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2017-08-01 22:56 - 2016-10-09 06:29 - 000000000 ____D C:\Documents and Settings\All Users
2017-08-01 22:56 - 2016-10-08 23:44 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Microsoft Help
2017-08-01 21:59 - 2016-10-09 06:29 - 001107888 _____ C:\WINDOWS\setupapi.old
2017-07-31 17:45 - 2016-10-09 16:00 - 000000000 ____D C:\Documents and Settings\Peter Bahniuk\Application Data\DMCache
2017-07-30 17:28 - 2016-11-16 22:16 - 000000000 ____D C:\Program Files\HWiNFO32
2017-07-30 17:28 - 2016-11-16 22:16 - 000000000 ____D C:\Documents and Settings\All Users\Start Menu\Programs\HWiNFO32
2017-07-28 21:38 - 2017-03-09 20:00 - 000000000 ____D C:\Youtube command line downloader
2017-07-27 17:08 - 2017-03-03 14:41 - 000000000 ____D C:\Program Files\TubeDigger
2017-07-27 02:47 - 2017-06-29 13:56 - 000044496 _____ C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2017-07-27 01:16 - 2016-11-24 11:02 - 000000000 ____D C:\WINDOWS\Minidump
2017-07-27 00:43 - 2016-10-10 10:53 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\Adobe
2017-07-26 20:50 - 2016-10-16 13:35 - 000000000 ____D C:\Program Files\VideoLAN
2017-07-26 20:16 - 2016-10-09 15:56 - 000000000 ____D C:\Program Files\Internet Download Manager
==================== Files in the root of some directories =======
2016-10-09 21:03 - 2017-03-02 20:03 - 000000651 _____ () C:\Documents and Settings\Peter Bahniuk\Application Data\pacemaker.ini
2016-10-09 21:03 - 2016-10-09 21:03 - 000000010 _____ () C:\Documents and Settings\Peter Bahniuk\Application Data\pacemaker_songparams.txt
2016-10-24 21:04 - 2016-10-24 21:04 - 000007887 _____ () C:\Documents and Settings\Peter Bahniuk\Application Data\pcouffin.cat
2016-10-24 21:04 - 2016-10-24 21:04 - 000001144 _____ () C:\Documents and Settings\Peter Bahniuk\Application Data\pcouffin.inf
2016-10-24 21:04 - 2016-10-24 21:04 - 000000034 _____ () C:\Documents and Settings\Peter Bahniuk\Application Data\pcouffin.log
2016-10-24 21:04 - 2016-10-24 21:04 - 000047360 _____ (VSO Software) C:\Documents and Settings\Peter Bahniuk\Application Data\pcouffin.sys
2016-11-14 19:23 - 2016-11-14 19:23 - 000003584 _____ () C:\Documents and Settings\Peter Bahniuk\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
2017-08-05 10:24 - 2017-08-05 10:24 - 000000000 _____ () C:\Documents and Settings\Administrator\Local Settings\Temp\parctmp.exe
2017-08-01 21:31 - 2017-08-01 21:32 - 000000000 ____D () C:\Documents and Settings\Peter Bahniuk\Local Settings\Temp\avgnt.exe
2017-08-04 02:25 - 2017-08-04 12:47 - 000000000 _____ () C:\Documents and Settings\Peter Bahniuk\Local Settings\Temp\parctmp.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
FRST Addition log -
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 31-07-2017
Ran by Peter Bahniuk (06-08-2017 14:45:40)
Running from C:\Documents and Settings\Peter Bahniuk\Desktop
Microsoft Windows XP Professional Service Pack 3, v.3264 (X86) (2017-08-03 07:40:10)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1390067357-606747145-725345543-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
ASPNET (S-1-5-21-1390067357-606747145-725345543-1004 - Limited - Enabled)
Guest (S-1-5-21-1390067357-606747145-725345543-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-1390067357-606747145-725345543-1000 - Limited - Disabled)
Peter Bahniuk (S-1-5-21-1390067357-606747145-725345543-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Peter Bahniuk
SUPPORT_388945a0 (S-1-5-21-1390067357-606747145-725345543-1002 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 16.00 (HKLM\...\7-Zip) (Version: 16.00 - Igor Pavlov)
Adobe Flash Player 23 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Adobe Flash Player 24 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 24.0.0.221 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{33C731E7-B72A-1587-A3EF-054FCC011A3C}) (Version: 8.0.891.0 - Advanced Micro Devices, Inc.)
Auslogics Disk Defrag Professional (HKLM\...\{ADE1535C-C836-4F2E-BDA1-1C7C304743E3}_is1) (Version: 4.3.4.0 - Auslogics Software Pty Ltd)
Auslogics Registry Cleaner (HKLM\...\{8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1) (Version: 3.4.0.0 - Auslogics Labs Pty Ltd)
Bass Audio Decoder (remove only) (HKLM\...\Bass Audio Decoder) (Version: - )
Blue Cat's Stereo Flanger VST 2.62 (HKLM\...\{0F0B0627-3CC7-4C3D-B246-D84FD3B30488}) (Version: 2.62 - Blue Cat Audio)
Corel PaintShop Pro X6 (HKLM\...\_{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D}) (Version: 16.1.0.48 - Corel Corporation)
Corel PaintShop Pro X6 (HKLM\...\{161AB62E-65D6-46E5-B3D8-2AC15D3B920B}) (Version: 16.1.0.48 - Corel Corporation) Hidden
Creative Audio Control Panel (HKLM\...\AudioCS) (Version: 3.00 - Creative Technology Limited)
Creative Software AutoUpdate (HKLM\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited)
Delta Force Task Force Dagger (HKLM\...\Delta Force Task Force Dagger) (Version: - )
Device Doctor v4.0.1 (HKLM\...\Device Doctor_is1) (Version: 4.0.1 - Device Doctor Software Inc.)
DirectVobSub (remove only) (HKLM\...\DirectVobSub) (Version: - )
DriverMax 9 (HKLM\...\DMX5_is1) (Version: 9.37.0.260 - Innovative Solutions)
EasyBCD 2.2 (HKLM\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies)
Etron USB3.0 Host Controller (HKLM\...\{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.109 - Etron Technology) Hidden
Etron USB3.0 Host Controller (HKLM\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.109 - Etron Technology)
GetDiz (HKLM\...\GetDiz) (Version: 4.91 - Outertech)
HashTab 5.2.0.14 (HKLM\...\HashTab) (Version: 5.2.0.14 - Implbits Software)
HL-3150CDN (HKLM\...\{C6580DE1-F539-4700-ADD2-3185121E51A8}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
HWiNFO32 Version 5.52 (HKLM\...\HWiNFO32_is1) (Version: 5.52 - Martin Malík - REALiX)
ICA (HKLM\...\{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D}) (Version: 16.1.0.48 - Corel Corporation) Hidden
ImgBurn (HKLM\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.)
IPM_PSP_COM (HKLM\...\{164D34E1-0271-4960-8A26-E8990A302DB1}) (Version: 16.1.0.48 - Corel Corporation) Hidden
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
K-Meleon 75.0 (x86 en-US) (HKLM\...\K-Meleon 75.0 (x86 en-US)) (Version: 75.0 - kmeleonbrowser.org)
LAV Filters 0.68.1 (HKLM\...\lavfilters_is1) (Version: 0.68.1 - Hendrik Leppkes)
LSI PCI-SV92PP Soft Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.96 - LSI Corporation)
MadVR (remove only) (HKLM\...\MadVR) (Version: - )
Malwarebytes version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Mozilla Firefox 49.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 49.0.1 (x86 en-US)) (Version: 49.0.1 - Mozilla)
Nero 11 DiscSpeed (HKLM\...\{B8B03F99-F600-4D96-ADBD-2F384240FB9C}) (Version: 11.0.00400 - Nero AG)
NirSoft BlueScreenView (HKLM\...\NirSoft BlueScreenView) (Version: - )
nLite 1.4.9.3 (HKLM\...\nLite_is1) (Version: 1.4.9.3 - Dino Nuhagic (nuhi))
OpenAL (HKLM\...\OpenAL) (Version: - )
Opera 12.17 (HKLM\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA)
Opera Stable 36.0.2130.65 (HKLM\...\Opera 36.0.2130.65) (Version: 36.0.2130.65 - Opera Software)
Opti Drive Control 1.70 (HKLM\...\{80157B54-DB3E-4EE9-8AD8-63A905765FF4}_is1) (Version: - Erik Deppe)
PaceMaker plug-in for Winamp and MediaMonkey (HKLM\...\PaceMaker plug-in) (Version: 2.7 - PaceMaker plug-inc.)
PFF Editor 1.2.9 (HKLM\...\PFF Editor_is1) (Version: - Dfzone.be)
PotPlayer (HKLM\...\PotPlayer) (Version: - Kakao Corp.)
PowerArchiver 2016 (HKLM\...\{A18ABA31-100B-4650-A221-0C13B08AD585}) (Version: 16.10.07 - ConeXware, Inc.) Hidden
PowerArchiver 2016 (HKLM\...\PowerArchiver 2016 16.10.07) (Version: 16.10.07 - ConeXware, Inc.)
PSPPContent (HKLM\...\{162BD2D6-6C63-41A7-8151-93188450D36A}) (Version: 16.1.0.48 - Corel Corporation) Hidden
PSPPHelp (HKLM\...\{16346B2A-87BC-407C-9D6B-72A4D21ABF03}) (Version: 16.1.0.48 - Corel Corporation) Hidden
Quake II (HKLM\...\Quake2UninstallKey) (Version: - )
Registry Repair 5.0.1.85 (HKLM\...\Registry Repair) (Version: 5.0.1.85 - Glarysoft Ltd)
RimhillEx 1.08 (HKU\S-1-5-21-1390067357-606747145-725345543-1003\...\RimhillEx_is1) (Version: - the sz development)
Setup (HKLM\...\{16006EE1-DDB7-4E5F-8696-9FEF32C0151A}) (Version: 16.1.0.48 - Corel Corporation) Hidden
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
swMSM (HKLM\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TMPGEnc Plus 2.5 (HKLM\...\{2A1E27FF-BE53-45B4-950F-060236E98E3D}) (Version: 2.524.63.181 - Pegasys Inc.) Hidden
TMPGEnc Plus 2.5 (HKLM\...\InstallShield_{2A1E27FF-BE53-45B4-950F-060236E98E3D}) (Version: 2.524.63.181 - Pegasys Inc.)
Unknown Device Identifier 9.01 (HKLM\...\Unknown Device Identifier_is1) (Version: 9.01 - Huntersoft)
Vivaldi (HKLM\...\Vivaldi) (Version: 1.0.435.46 - Vivaldi)
VSO Inspector 2.0.2 (HKLM\...\VSO Inspector_is1) (Version: - VSO-Software SARL)
WebFldrs XP (HKLM\...\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}) (Version: 9.50.7523 - Microsoft Corporation) Hidden
Winamp (HKLM\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Zoom Player (remove only) (HKLM\...\ZoomPlayer) (Version: 12.7 - Inmatrix LTD)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files\Internet Download Manager\IDMShellExt.dll [2017-06-24] (Tonec Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov)
ContextMenuHandlers1: [Corel PaintShop Pro X6] -> {8D7FD0F0-C023-4451-B68B-CD054993F53D} => c:\Program Files\Corel\Corel PaintShop Pro X6\PSPContextMenu.dll [2013-10-17] (Corel Software, Inc.)
ContextMenuHandlers1: [PowerArchiver] -> {d03d3e68-0c44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\PowerArchiver\PASHLEXT.DLL [2016-04-11] (ConeXware, Inc.)
ContextMenuHandlers2: [Corel PaintShop Pro X6] -> {8D7FD0F0-C023-4451-B68B-CD054993F53D} => c:\Program Files\Corel\Corel PaintShop Pro X6\PSPContextMenu.dll [2013-10-17] (Corel Software, Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov)
ContextMenuHandlers4: [Corel PaintShop Pro X6] -> {8D7FD0F0-C023-4451-B68B-CD054993F53D} => c:\Program Files\Corel\Corel PaintShop Pro X6\PSPContextMenu.dll [2013-10-17] (Corel Software, Inc.)
ContextMenuHandlers4: [ZPShellExt] -> {ABE00001-0123-ABED-1248-0248ADFA1909} => C:\Program Files\Zoom Player\zpshlext.dll [2008-08-12] ()
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll [2013-12-23] (Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-10] (Igor Pavlov)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)
ContextMenuHandlers6: [PowerArchiver] -> {d03d3e68-0c44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\PowerArchiver\PASHLEXT.DLL [2016-04-11] (ConeXware, Inc.)
==================== Scheduled Tasks=============================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Application Starter - 8882161c434ab0fd43dca37f474f4351.job => C:\Program Files\Innovative Solutions\DriverMax\innostp.exe
Task: C:\WINDOWS\Tasks\DriverMax Notification.job => C:\Program Files\Innovative Solutions\DriverMax\drivermax.exe
Task: C:\WINDOWS\Tasks\DriverMaxAgent.job => C:\Program Files\Innovative Solutions\DriverMax\drivermax.exe
Task: C:\WINDOWS\Tasks\DriverMaxWelcome.job => C:\Program Files\Innovative Solutions\DriverMax\drivermax.exe
Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1478319800.job => C:\Program Files\Opera\launcher.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Buy or Upgrade Zoom Player.lnk -> hxxp://inmatrix.com/shop_relay/buyshortcut.shtm
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Download Skins.lnk -> hxxp://skins.inmatrix.com
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Video Tutorials.lnk -> hxxp://inmatrix.com/tutorial_redir.htm
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Help\Forum.lnk -> hxxp://forum.inmatrix.com
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Help\Frequently Asked Questions.lnk -> hxxp://www.inmatrix.com/zplayer/fa
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Help\Home Page.lnk -> hxxp://www.inmatrix.com
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Help\Online Help.lnk -> hxxp://www.inmatrix.com/zplaye
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\Zoom Player\Help\Usage Guides.lnk -> hxxp://www.inmatrix.com/articles.shtm
Shortcut: C:\Documents and Settings\All Users\Start Menu\Programs\NeoSmart Technologies\EasyBCD\Online Documentation.lnk -> hxxp://neosmart.net/wiki/display/EBCD
==================== Loaded Modules (Whitelisted) ==============
2017-08-04 00:32 - 2014-05-13 12:04 - 000109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2017-08-04 00:32 - 2014-05-13 12:04 - 000416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2017-08-04 00:32 - 2014-05-13 12:04 - 000167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-03-01 01:20 - 2014-03-01 01:20 - 000002560 _____ () C:\WINDOWS\CTXFIRES.DLL
2010-03-16 12:22 - 2010-03-16 12:22 - 000014848 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\AxInterop.WBOCXLib.dll
2014-01-07 11:28 - 2014-01-07 11:28 - 000016384 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll
2013-12-23 03:15 - 2013-12-23 03:15 - 000270336 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2016-11-30 16:14 - 2016-05-08 02:47 - 000947832 _____ () C:\Program Files\Vivaldi\Application\1.0.435.46\ffmpeg.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2006-03-01 00:00 - 2017-07-31 17:45 - 000000027 _____ C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1390067357-606747145-725345543-1003\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Bliss.bmp
DNS Servers: 203.97.78.43 - 203.97.78.44
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
DomainProfile\AuthorizedApplications: [C:\Program Files\Winamp\winamp.exe] => Enabled:Winamp
DomainProfile\AuthorizedApplications: [C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe] => Enabled:PotPlayer (32-Bit)
StandardProfile\AuthorizedApplications: [C:\Program Files\Opera\opera.exe] => Enabled:Opera Internet Browser
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla Firefox)
StandardProfile\AuthorizedApplications: [C:\Program Files\Winamp\winamp.exe] => Enabled:Winamp
StandardProfile\AuthorizedApplications: [C:\Program Files\Vivaldi\Application\vivaldi.exe] => Enabled:Vivaldi
StandardProfile\AuthorizedApplications: [C:\Program Files\DAUM\PotPlayer\PotPlayerMini.exe] => Enabled:PotPlayer (32-Bit)
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
StandardProfile\GloballyOpenPorts: [139:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22004
StandardProfile\GloballyOpenPorts: [445:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22005
StandardProfile\GloballyOpenPorts: [137:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22001
StandardProfile\GloballyOpenPorts: [138:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22002
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Enabled:@xpsp2res.dll,-22008
==================== Restore Points =========================
03-08-2017 19:49:26 System Checkpoint
04-08-2017 18:07:20 Installed Realtek High Definition Audio Driver
05-08-2017 10:53:40 Removed Realtek High Definition Audio Driver
05-08-2017 13:41:58 Installed Creative Audio Control Panel
05-08-2017 13:42:14 Installed Creative Software AutoUpdate
==================== Faulty Device Manager Devices =============
Name: PCI Device
Description: PCI Device
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Ethernet Controller
Description: Ethernet Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (08/03/2017 08:01:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application iexplore.exe, version 6.0.2900.3264, faulting module urlmon.dll, version 6.0.2900.3264, fault address 0x0003acdd.
Processing media-specific event for [iexplore.exe!ws!]
Error: (08/03/2017 06:07:50 PM) (Source: LoadPerf) (EventID: 3011) (User: )
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The
Error code is the first DWORD in Data section.
Error: (08/03/2017 06:07:50 PM) (Source: LoadPerf) (EventID: 3012) (User: )
Description: The performance strings in the Performance registry value is corrupted when
process Performance extension counter provider. BaseIndex value from Performance
registry is the first DWORD in Data section, LastCounter value is the second
DWORD in Data section, and LastHelp value is the third DWORD in Data section.
Error: (08/03/2017 05:46:45 PM) (Source: LoadPerf) (EventID: 3011) (User: )
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The
Error code is the first DWORD in Data section.
Error: (08/03/2017 05:46:45 PM) (Source: LoadPerf) (EventID: 3012) (User: )
Description: The performance strings in the Performance registry value is corrupted when
process Performance extension counter provider. BaseIndex value from Performance
registry is the first DWORD in Data section, LastCounter value is the second
DWORD in Data section, and LastHelp value is the third DWORD in Data section.
Error: (08/03/2017 05:43:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application repair_windows.exe, version 4.0.0.1, faulting module gdi32.dll, version 5.1.2600.3264, fault address 0x0001c6fd.
Processing media-specific event for [repair_windows.exe!ws!]
Error: (08/03/2017 05:25:33 PM) (Source: LoadPerf) (EventID: 3011) (User: )
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The
Error code is the first DWORD in Data section.
Error: (08/03/2017 05:25:33 PM) (Source: LoadPerf) (EventID: 3012) (User: )
Description: The performance strings in the Performance registry value is corrupted when
process Performance extension counter provider. BaseIndex value from Performance
registry is the first DWORD in Data section, LastCounter value is the second
DWORD in Data section, and LastHelp value is the third DWORD in Data section.
Error: (08/03/2017 04:05:33 PM) (Source: LoadPerf) (EventID: 3011) (User: )
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The
Error code is the first DWORD in Data section.
Error: (08/03/2017 04:05:33 PM) (Source: LoadPerf) (EventID: 3012) (User: )
Description: The performance strings in the Performance registry value is corrupted when
process Performance extension counter provider. BaseIndex value from Performance
registry is the first DWORD in Data section, LastCounter value is the second
DWORD in Data section, and LastHelp value is the third DWORD in Data section.
System errors:
=============
Error: (08/06/2017 02:30:40 PM) (Source: 0) (EventID: 4311) (User: )
Description: Event-ID 4311
Error: (08/06/2017 02:30:24 PM) (Source: DCOM) (EventID: 10005) (User: MINE)
Description: DCOM got error "%%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it." attempting to start the service BrYNSvc with arguments ""
in order to run the server:
{F2189AE3-E432-427F-93B6-38D1C6F5E8D4}
Error: (08/06/2017 02:30:22 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18). This security permission can be modified using the Component Services administrative tool.
Error: (08/06/2017 02:30:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Spybot-S&D 2 Security Center Service service failed to start due to the following error:
Spybot-S&D 2 Security Center Service is not a valid Win32 application.
Error: (08/06/2017 02:30:20 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: This computer is configured as a member of a workgroup, not as
a member of a domain. The Netlogon service does not need to run in this
configuration.
Error: (08/06/2017 02:30:20 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18). This security permission can be modified using the Component Services administrative tool.
Error: (08/06/2017 02:28:42 PM) (Source: 0) (EventID: 4311) (User: )
Description: Event-ID 4311
Error: (08/06/2017 02:28:27 PM) (Source: DCOM) (EventID: 10005) (User: MINE)
Description: DCOM got error "%%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it." attempting to start the service BrYNSvc with arguments ""
in order to run the server:
{F2189AE3-E432-427F-93B6-38D1C6F5E8D4}
Error: (08/06/2017 02:28:24 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18). This security permission can be modified using the Component Services administrative tool.
Error: (08/06/2017 02:28:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Spybot-S&D 2 Security Center Service service failed to start due to the following error:
Spybot-S&D 2 Security Center Service is not a valid Win32 application.
==================== Memory info ===========================
Processor: Intel® Core i5-3570K CPU @ 3.40GHz
Percentage of memory in use: 22%
Total physical RAM: 3296.08 MB
Available physical RAM: 2558.51 MB
Total Virtual: 5180.32 MB
Available Virtual: 4441.54 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:97.76 GB) (Free:79.64 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:119.73 GB) (Free:4.06 GB) NTFS ==>[drive with boot components (Windows XP)]
Drive e: () (Fixed) (Total:353.01 GB) (Free:226.18 GB) NTFS
Drive f: () (Fixed) (Total:14.99 GB) (Free:10.9 GB) NTFS
Drive g: () (Fixed) (Total:310 GB) (Free:12.86 GB) NTFS
Drive h: () (Fixed) (Total:35.91 GB) (Free:10.24 GB) NTFS
Drive i: (WXPOEM_EN) (CDROM) (Total:0.63 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 66CD451A)
Partition 1: (Active) - (Size=119.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=310 GB) - (Type=OF Extended)
Partition 3: (Not Active) - (Size=35.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 465.8 GB) (Disk ID: 4B19BE7B)
Partition 1: (Active) - (Size=97.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=368 GB) - (Type=OF Extended)
==================== End of Addition.txt ============================