Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Possibly infected Homegroup? [Closed]

malware hacked strange homegroup active

  • This topic is locked This topic is locked

#1
bodene

bodene

    New Member

  • Member
  • Pip
  • 3 posts

Hey Guys,

OK so i have been doing some web development training by myself this weekend, and decided to download a few bitnami stacks onto my laptop like WAMP, and also filzilla. Which also lead to me changing some of my firewalls preferences, ports etc and well the end result didnt go too well not only have i stuffed my website (a completely different issue) but now my laptop is doing all kinds of strange. There is now a hmegroup showing up in my network with a phone I have no reference. also i noticed in my firewall there is an active exception called Cast to device streaming server, inbound, system32/mdeserver.exe on local ports 23554, 23555, 23556 and a few other exceptions that have popped up. Also my laptop has been making me reinstall my printer all day, I cant open files from my internet anymore, outlook tells me that one of my emails is now on an insecure server when i open it and a few other glitchy things. HELP!! lol

 

thanks heaps

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-07-2017
Ran by bodene (administrator) on ACERLAPTOP (30-07-2017 01:32:18)
Running from C:\Users\boden\Desktop
Loaded Profiles: bodene & MSSQL$ADK (Available Profiles: defaultuser0 & bodene & MSSQL$ADK & Classic .NET AppPool & .NET v4.5 & DefaultAppPool & .NET v2.0 & .NET v4.5 Classic & .NET v2.0 Classic)
Platform: Windows 10 Home Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Windows ® Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Windows\System32\snmp.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
() C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8241.41275.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8241.41275.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11706.1001.26.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8241.41275.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-28] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2017-07-14] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1409264 2017-07-14] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-07-14] (Apple Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3486520 2017-07-20] (Dropbox, Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 61.9.133.193 61.9.134.49
Tcpip\..\Interfaces\{a76f52a6-93e8-4239-b231-72e008b28584}: [DhcpNameServer] 61.9.133.193 61.9.134.49
Tcpip\..\Interfaces\{db1132b5-5894-48b3-ba16-9d48afa75e42}: [DhcpNameServer] 61.9.133.193 61.9.134.49

Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2017-07-18] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-07-29] (Oracle Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-07-18] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-07-29] (Oracle Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2017-07-15] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-18] (Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-06-13] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-18] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: qycm4xwt.default
FF ProfilePath: C:\Users\boden\AppData\Roaming\Mozilla\Firefox\Profiles\qycm4xwt.default [2017-07-30]
FF Extension: (AUSkey) - C:\Users\boden\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\@au.gov.abr.auskeyfirefox.xpi [2017-04-11]
FF Extension: (Autofill Forms) - C:\Users\boden\AppData\Roaming\Mozilla\Firefox\Profiles\qycm4xwt.default\Extensions\[email protected] [2017-07-17]
FF Extension: (Spell Checker) - C:\Users\boden\AppData\Roaming\Mozilla\Firefox\Profiles\qycm4xwt.default\Extensions\[email protected] [2017-07-17]
FF Extension: (AutoFill Forms) - C:\Users\boden\AppData\Roaming\Mozilla\Firefox\Profiles\qycm4xwt.default\Extensions\[email protected] [2017-07-16]
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-07-29] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-07-29] (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-07-15] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-07-15] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2017-07-15] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-25] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.hubspot.com/
CHR StartupUrls: Default -> "hxxp://google.com/"
CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11908
CHR DefaultSearchKeyword: Default -> NortonSafe
CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?q={searchTerms}&li=ff
CHR Profile: C:\Users\boden\AppData\Local\Google\Chrome\User Data\default [2017-07-29]
CHR Extension: (SEO Website Review) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\aadhkfifilbaikcpdepjppigkmahohkk [2017-07-27]
CHR Extension: (Google Slides) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-07-14]
CHR Extension: (SCheckPro) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\aiacepmnmgokkgjaplbbloiccdmmfcaa [2017-07-27]
CHR Extension: (SEOquake) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\akdgnmcogleenhbclghghlkkdndkjdjc [2017-07-27]
CHR Extension: (Z-Tools) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\aljdpdbkgdlknnlibgeccailhjdcgioh [2017-07-27]
CHR Extension: (Google Docs) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-07-14]
CHR Extension: (Google Drive) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-14]
CHR Extension: (Portent's SEO Page Review) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\babgchcegnkbiojmdpnoilficladccfm [2017-07-27]
CHR Extension: (YouTube) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-14]
CHR Extension: (Advanced Font Settings) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\caclkomlalccbpcdllchkeecicepbmbm [2017-07-27]
CHR Extension: (Dropbox for Gmail) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2017-07-27]
CHR Extension: (MozBar) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\eakacpaijcpapndcfffdgphdiccmpknp [2017-07-28]
CHR Extension: (AdWords URL Extractor) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\enchcppmcjinbnbdoapmchpkenjhgmmp [2017-07-27]
CHR Extension: (WASP.crawler: Analytics Solution Profiler) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\fdogdfpioiggoomoobmfkgckbkheckik [2017-07-27]
CHR Extension: (Google Sheets) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-07-14]
CHR Extension: (Norton Home Page for Chrome) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\gfoabcdjalmeenbjjngidappmppchblc [2017-07-27]
CHR Extension: (Google Docs Offline) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-25]
CHR Extension: (Open SEO Stats(Formerly: PageRank Status)) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\hbdkkfheckcdppiaiabobmennhijkknn [2017-07-27]
CHR Extension: (Norton Safe) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\hbmobhkkblcgdifigjglcjneplefbkmh [2017-07-27]
CHR Extension: (PDF Mergy) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2017-07-27]
CHR Extension: (SEO & Website Analysis) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\hlngmmdolgbdnnimbmblfhhndibdipaf [2017-07-27]
CHR Extension: (Eye Dropper) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\hmdcmlfkchdmnmnmheododdhjedfccka [2017-07-27]
CHR Extension: (Colour Enhancer) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ipkjmjaledkapilfdigkgfmpekpfnkih [2017-07-27]
CHR Extension: (Google Analytics Debugger) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\jnkmfdileelhofjcijamephohjechhna [2017-07-27]
CHR Extension: (Tag Assistant (by Google)) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2017-07-27]
CHR Extension: (SEO PageRank) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\lndiecnlfaibiffoeijpjnblnmdlcpog [2017-07-27]
CHR Extension: (B-Tools) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\mhdcaiodhdpcjcphclghpmlpmfgmibng [2017-07-27]
CHR Extension: (App Store Analytics by SensorTower) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\miicdjjncepfkbbhdklfbpgjchioijkn [2017-07-27]
CHR Extension: (Easy SEO Tools) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\mnlboglefdlldiioafkgbbdfihdoicam [2017-07-27]
CHR Extension: (SEO Wizard) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\nfcpfnfifibiifkdglmoaikikfelkppl [2017-07-27]
CHR Extension: (Website Analysis & SEO Tool) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\nglkdkpdncleifbbjhhlfpakclhahhkn [2017-07-27]
CHR Extension: (WASP.inspector: Analytics Solution Profiler) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\niaoghengfohplclhbjnjheodgkejpih [2017-07-27]
CHR Extension: (Chrome Web Store Payments) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-14]
CHR Extension: (Weekly Keyword Rank Checker) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ogapkeeoeaeepjjoelknannlimdgchhi [2017-07-27]
CHR Extension: (Chrome Apps & Extensions Developer Tool) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ohmmkhmmmpcnpikjeljgnaoabkaalbgc [2017-07-27]
CHR Extension: (HubSpot Sales) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\oiiaigjnkhngdbnoookogelabohpglmd [2017-07-27]
CHR Extension: (SEOmonitor) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\oimoiefndijdcjpphcgldokllodoaihe [2017-07-27]
CHR Extension: (Check My Links) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ojkcdipcgfaekbeaelaapakgnjflfglf [2017-07-27]
CHR Extension: (Speedtest by Ookla) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\pgjjikdiikihdfpoppgaidccahalehjh [2017-07-27]
CHR Extension: (Gmail) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-14]
CHR Extension: (Chrome Media Router) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-25]
CHR Extension: (SEO SERP | INSTANT RANK CHECKER) - C:\Users\boden\AppData\Local\Google\Chrome\User Data\default\Extensions\ppodjebdnlnpkopbegapnmlpajdphgea [2017-07-27]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [323152 2015-05-29] (Windows ® Win 7 DDK provider)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4412104 2017-07-18] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-07-15] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-07-15] (Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [49992 2017-07-20] (Dropbox, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [165104 2015-06-30] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [359848 2015-09-21] (Intel Corporation)
R2 IISADMIN; C:\WINDOWS\system32\inetsrv\inetinfo.exe [17408 2017-07-14] (Microsoft Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Corporation)
R3 Intel® Security Assist; C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [223008 2015-06-24] (Intel Corporation)
R2 LPDSVC; C:\WINDOWS\system32\lpdsvc.dll [49152 2017-07-14] (Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes)
R2 MSSQL$ADK; c:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe [206424 2012-02-11] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2017-03-21] ()
R2 SNMP; C:\WINDOWS\System32\snmp.exe [53248 2017-07-14] (Microsoft Corporation)
R2 SNMP; C:\WINDOWS\SysWOW64\snmp.exe [47104 2017-07-14] (Microsoft Corporation)
S2 SQLAgent$ADK; c:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\SQLAGENT.EXE [438360 2012-02-11] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-28] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3750304 2017-03-21] (Intel® Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77376 2017-07-16] ()
S3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [115704 2017-07-15] (GenesysLogic)
S3 iagpioe; C:\WINDOWS\System32\drivers\iagpioe.sys [41984 2015-06-03] (Intel® Corporation)
S3 iai2ce; C:\WINDOWS\System32\drivers\iai2ce.sys [89592 2015-06-03] (Intel® Corporation)
R3 iaLPSS_GPIO; C:\WINDOWS\System32\drivers\iaLPSS_GPIO.sys [46856 2015-06-15] (Intel Corporation)
R3 iaLPSS_I2C; C:\WINDOWS\System32\drivers\iaLPSS_I2C.sys [132360 2015-06-15] (Intel Corporation)
S3 iaLPSS_SPI; C:\WINDOWS\System32\drivers\iaLPSS_SPI.sys [100856 2014-06-02] (Intel Corporation)
S3 iaLPSS_UART2; C:\WINDOWS\System32\drivers\iaLPSS_UART2.sys [143864 2014-06-02] (Intel Corporation)
S3 iauarte; C:\WINDOWS\System32\drivers\iauarte.sys [112640 2015-06-03] (Intel® Corporation)
S3 ibtuart; C:\WINDOWS\System32\drivers\ibtuart.sys [756464 2016-09-02] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [244744 2017-04-13] (Intel Corporation)
S3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R2 MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys [188352 2017-07-16] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\system32\drivers\farflt.sys [101784 2017-07-30] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\drivers\mbam.sys [45472 2017-07-30] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [253856 2017-07-30] (Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\drivers\mwac.sys [93600 2017-07-30] (Malwarebytes)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 Netwtw02; C:\WINDOWS\system32\DRIVERS\Netwtw02.sys [6739192 2017-04-19] (Intel Corporation)
S3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 SynRMIHID; C:\WINDOWS\System32\drivers\SynRMIHID.sys [51368 2017-07-15] (Synaptics Incorporated)
R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [31280 2017-07-15] (Intel Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-30 01:32 - 2017-07-30 01:32 - 00025370 _____ C:\Users\boden\Desktop\FRST.txt
2017-07-30 01:02 - 2017-07-30 01:02 - 00119523 _____ C:\Users\boden\Downloads\Shortcut.txt
2017-07-30 01:02 - 2017-07-30 01:02 - 00055439 _____ C:\Users\boden\Downloads\Addition.txt
2017-07-30 01:00 - 2017-07-30 01:32 - 00000000 ____D C:\FRST
2017-07-30 01:00 - 2017-07-30 01:02 - 00251849 _____ C:\Users\boden\Downloads\FRST.txt
2017-07-30 01:00 - 2017-07-30 01:00 - 02381312 _____ (Farbar) C:\Users\boden\Desktop\FRST64.exe
2017-07-30 00:26 - 2017-07-30 00:26 - 00000000 ____D C:\Users\boden\Documents\WPA Files
2017-07-30 00:26 - 2017-07-30 00:26 - 00000000 ____D C:\Users\boden\AppData\Local\Windows Performance Analyzer
2017-07-30 00:09 - 2017-04-11 11:57 - 00112840 _____ (Wondershare Software) C:\WINDOWS\system32\WSPDFelementMonitor.dll
2017-07-30 00:04 - 2017-07-30 00:04 - 00106877 _____ C:\Users\boden\Documents\APKPID-18074.pdf
2017-07-29 23:12 - 2017-07-29 23:12 - 00000000 ____D C:\Users\boden\AppData\LocalLow\Oracle
2017-07-29 23:10 - 2017-07-29 23:10 - 00002293 _____ C:\Users\Public\Desktop\HP DeskJet 3630 series.lnk
2017-07-29 23:10 - 2017-07-29 23:10 - 00001240 _____ C:\Users\Public\Desktop\Shop for Supplies - HP DeskJet 3630 series.lnk
2017-07-29 23:06 - 2017-07-29 23:09 - 94076104 _____ C:\Users\boden\Downloads\DJ3630__Full_WebPack_1107(1).exe
2017-07-29 22:57 - 2017-07-29 23:02 - 00019808 _____ () C:\WINDOWS\SysWOW64\CheckingForUpdatesPatch.exe
2017-07-29 22:56 - 2017-07-29 23:01 - 00030816 _____ C:\WINDOWS\SysWOW64\PSDRPatchInstaller.xml
2017-07-29 22:51 - 2017-07-29 22:51 - 00002085 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2017-07-29 22:51 - 2017-07-29 22:51 - 00000000 ____D C:\Users\boden\AppData\Roaming\HPPSDr
2017-07-29 13:08 - 2017-07-29 13:08 - 86296992 _____ (Bitnami) C:\Users\boden\Downloads\bitnami-seopanel-3.11.0-0-windows-installer.exe
2017-07-29 13:00 - 2017-07-29 13:01 - 101113568 _____ (Bitnami) C:\Users\boden\Downloads\bitnami-wordpress-4.8-0-windows-installer.exe
2017-07-28 09:14 - 2017-07-28 09:14 - 32641461 _____ C:\Users\boden\Downloads\themeforest-13870880-the-seo-seo-and-digital-marketing-agency-wordpress-theme-wordpress-theme.zip
2017-07-28 08:13 - 2017-07-28 08:13 - 00000000 ____D C:\Users\boden\Downloads\what-the-file.1.5.3
2017-07-28 05:07 - 2017-07-28 05:08 - 140540116 _____ C:\Users\boden\Downloads\themeforest-13870880-the-seo-seo-and-digital-marketing-agency-wordpress-theme (1).zip
2017-07-28 02:06 - 2017-07-28 02:06 - 00000000 ____D C:\Users\boden\Downloads\debug-this.0.5.1
2017-07-27 23:20 - 2017-07-27 23:24 - 00000600 _____ C:\Users\boden\AppData\Local\PUTTY.RND
2017-07-27 22:29 - 2017-07-29 22:54 - 00000000 ____D C:\Users\boden\AppData\Roaming\FileZilla
2017-07-27 22:29 - 2017-07-27 22:33 - 00000000 ____D C:\Users\boden\AppData\Local\FileZilla
2017-07-27 19:44 - 2017-07-27 19:44 - 00000000 ____D C:\Users\boden\AppData\Roaming\FileZilla Server
2017-07-27 19:30 - 2017-07-27 19:31 - 00000000 ____D C:\Users\boden\AppData\Roaming\Code
2017-07-27 19:30 - 2017-07-27 19:30 - 00000000 ____D C:\Users\boden\.vscode
2017-07-27 19:30 - 2017-07-27 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2017-07-27 19:29 - 2017-07-27 19:29 - 00000000 ____D C:\Program Files (x86)\Microsoft VS Code
2017-07-27 19:27 - 2017-07-27 19:28 - 36408224 _____ (Microsoft Corporation ) C:\Users\boden\Downloads\VSCodeSetup-ia32-1.14.2.exe
2017-07-27 18:35 - 2017-07-27 18:41 - 00000000 ____D C:\Users\boden\Documents\wordpress-4.8
2017-07-27 16:53 - 2017-07-27 16:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2017-07-27 16:29 - 2017-07-27 16:29 - 00003368 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-997882171-2795867351-1868742580-1001
2017-07-27 14:48 - 2017-07-27 14:49 - 00002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Web Platform Installer.lnk
2017-07-27 14:10 - 2017-07-27 14:10 - 00000000 ____D C:\Users\boden\Downloads\themeforest-13870880-the-seo-seo-and-digital-marketing-agency-wordpress-theme
2017-07-27 11:17 - 2017-07-27 11:17 - 00000000 ____D C:\Users\boden\Documents\themeforest-13870880-the-seo-seo-and-digital-marketing-agency-wordpress-theme-wordpress-theme
2017-07-27 11:08 - 2017-07-27 11:09 - 04882132 _____ C:\Users\boden\Downloads\codecanyon-242431-visual-composer-page-builder-for-wordpress.zip
2017-07-27 09:53 - 2017-07-27 09:53 - 00000000 ____D C:\Users\boden\Documents\Custom Office Templates
2017-07-27 03:29 - 2017-07-27 03:29 - 00000000 ____D C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
2017-07-27 02:01 - 2017-07-27 02:01 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2017-07-26 14:09 - 2017-07-26 14:09 - 00000000 ____D C:\Users\boden\AppData\Local\UNP
2017-07-25 16:35 - 2017-07-25 16:35 - 01338368 _____ C:\Users\boden\Downloads\EDF4602_Semester2(S2-01)_2017 (1).pdf
2017-07-25 16:33 - 2017-07-25 16:33 - 01360053 _____ C:\Users\boden\Downloads\EDF4603_Semester2(S2-01)_2017.pdf
2017-07-25 16:22 - 2017-07-25 16:22 - 01338368 _____ C:\Users\boden\Downloads\EDF4602_Semester2(S2-01)_2017.pdf
2017-07-25 14:29 - 2017-07-25 14:29 - 00003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-07-25 14:29 - 2017-07-25 14:29 - 00003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-07-25 14:29 - 2017-07-25 14:29 - 00002348 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-07-25 14:29 - 2017-07-25 14:29 - 00002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-07-25 14:29 - 2017-07-25 14:29 - 00000000 ____D C:\Program Files (x86)\Google
2017-07-25 14:28 - 2017-07-25 14:28 - 01130328 _____ (Google Inc.) C:\Users\boden\Downloads\ChromeSetup (1).exe
2017-07-25 07:36 - 2017-07-25 07:36 - 00000000 ____D C:\Users\boden\Downloads\kraken-1500931051348
2017-07-25 07:17 - 2017-07-25 07:17 - 01298679 _____ C:\Users\boden\Downloads\kraken-1500931051348.zip
2017-07-24 23:07 - 2017-07-24 23:07 - 00010670 _____ C:\Users\boden\Documents\Beauregard redirects.xlsx
2017-07-24 22:01 - 2017-07-24 22:01 - 00004846 _____ C:\Users\boden\Downloads\A139114935I7421703550324G68382ae1-79de-450c-9456-ccc3fc846a15.zip
2017-07-24 22:01 - 2017-07-24 22:01 - 00000000 ____D C:\Users\boden\Downloads\A139114935I7421703550324G68382ae1-79de-450c-9456-ccc3fc846a15
2017-07-24 17:31 - 2017-07-24 17:31 - 01125399 _____ C:\Users\boden\Downloads\EDF 4603 Lecture 1.pdf
2017-07-24 13:38 - 2017-07-25 07:39 - 00000000 ____D C:\Users\boden\Desktop\beauregard remved
2017-07-21 12:00 - 2017-07-21 12:00 - 00000984 _____ C:\Users\boden\GTM beauegard.txt
2017-07-21 03:27 - 2017-07-21 03:27 - 00000000 ____D C:\Program Files (x86)\SeoTools for Excel
2017-07-21 03:26 - 2017-07-21 03:26 - 00000000 ____D C:\Users\boden\Documents\SeoTools_v7.0.13.0_20170521
2017-07-21 03:04 - 2017-07-21 03:04 - 01640928 _____ C:\Users\boden\Downloads\excel-for-seos.pdf
2017-07-21 02:59 - 2017-07-21 02:59 - 00071346 _____ C:\Users\boden\Downloads\excel-for-seo.xlsx
2017-07-21 02:45 - 2017-07-21 02:45 - 00000000 ____D C:\Users\boden\Documents\XENU
2017-07-21 02:09 - 2017-07-21 02:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-07-21 00:54 - 2017-07-21 00:54 - 00000000 ____D C:\Users\boden\AppData\Roaming\seo.spider.ui.SEOSpiderUI
2017-07-21 00:49 - 2017-07-21 00:52 - 182368448 _____ (Screaming Frog Ltd) C:\Users\boden\Downloads\ScreamingFrogSEOSpider-8.0.exe
2017-07-21 00:47 - 2017-07-21 00:54 - 00000000 ____D C:\Users\boden\AppData\Local\JxBrowser
2017-07-21 00:46 - 2017-07-29 23:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-07-21 00:46 - 2017-07-29 23:12 - 00110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2017-07-21 00:46 - 2017-07-21 00:46 - 00000000 ____D C:\Users\boden\AppData\Roaming\Sun
2017-07-21 00:45 - 2017-07-29 23:14 - 00000000 ____D C:\ProgramData\Oracle
2017-07-21 00:45 - 2017-07-29 23:13 - 00000000 ____D C:\Program Files\Java
2017-07-21 00:43 - 2017-07-21 00:53 - 00000000 ____D C:\Program Files (x86)\Screaming Frog SEO Spider
2017-07-20 18:30 - 2017-07-20 18:30 - 00049992 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2017-07-20 18:30 - 2017-07-20 18:30 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2017-07-20 18:30 - 2017-07-20 18:30 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2017-07-20 18:30 - 2017-07-20 18:30 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2017-07-20 16:57 - 2017-07-20 16:57 - 00000000 ____D C:\Users\boden\Desktop\World Logo (002)_1_optimize
2017-07-20 16:56 - 2017-07-20 16:56 - 00016280 _____ C:\Users\boden\Documents\World Logo (002)_1.pdf
2017-07-20 16:00 - 2017-07-20 16:02 - 00000000 ____D C:\Users\boden\AppData\Roaming\Apple Computer
2017-07-20 16:00 - 2017-07-20 16:00 - 00001826 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-07-20 16:00 - 2017-07-20 16:00 - 00000000 ____D C:\Users\boden\AppData\Local\Apple Computer
2017-07-20 16:00 - 2017-07-20 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-07-20 15:59 - 2017-07-20 16:00 - 00000000 ____D C:\Program Files\iTunes
2017-07-20 15:59 - 2017-07-20 15:59 - 00000000 ____D C:\ProgramData\Apple Computer
2017-07-20 15:59 - 2017-07-20 15:59 - 00000000 ____D C:\Program Files\iPod
2017-07-20 15:58 - 2017-07-27 00:23 - 00000000 ____D C:\Users\boden\AppData\Local\Apple
2017-07-20 15:58 - 2017-07-20 15:58 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-07-20 15:58 - 2017-07-20 15:58 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2017-07-20 15:58 - 2017-07-20 15:58 - 00000000 ____D C:\Program Files\Bonjour
2017-07-20 15:58 - 2017-07-20 15:58 - 00000000 ____D C:\Program Files (x86)\Bonjour
2017-07-20 15:58 - 2017-07-20 15:58 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-07-20 15:57 - 2017-07-29 23:34 - 00000000 ____D C:\ProgramData\Apple
2017-07-20 15:55 - 2017-07-20 15:57 - 261024072 _____ (Apple Inc.) C:\Users\boden\Downloads\iTunes64Setup.exe
2017-07-20 11:42 - 2017-07-20 11:43 - 00259734 _____ C:\Users\boden\Downloads\modr-1707en2-f.pdf
2017-07-20 04:21 - 2017-07-20 04:21 - 05228175 _____ C:\Users\boden\Downloads\2017_75_Examples_Final.pdf
2017-07-18 12:44 - 2017-07-18 12:44 - 00303328 _____ C:\Users\boden\Documents\zzzBeauregard First Aid+2_Campaigns+55_Ad groups+2017-07-18.csv
2017-07-18 09:50 - 2017-07-18 09:50 - 00001365 _____ C:\Users\Public\Desktop\PDFelement 6 Pro.lnk
2017-07-18 09:50 - 2017-07-18 09:50 - 00000000 ____D C:\ProgramData\PDFelement 6 Pro
2017-07-18 09:47 - 2017-07-18 09:48 - 00983264 _____ C:\Users\boden\Downloads\pdfelement6-pro_setup_full2990.exe
2017-07-17 07:54 - 2017-07-27 04:42 - 00000000 ____D C:\Users\boden\AppData\Roaming\Google
2017-07-17 06:17 - 2017-07-17 06:17 - 00000000 ____D C:\ProgramData\Wondershare
2017-07-17 06:15 - 2017-07-17 06:15 - 00000000 ____D C:\Users\boden\AppData\Local\Wondershare
2017-07-17 06:14 - 2017-07-29 23:48 - 00000000 ____D C:\Program Files (x86)\Wondershare
2017-07-17 06:14 - 2017-07-29 23:47 - 00000000 ____D C:\Users\boden\AppData\Roaming\Wondershare
2017-07-17 06:14 - 2017-07-29 23:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2017-07-17 06:13 - 2017-07-17 06:13 - 00983264 _____ C:\Users\boden\Downloads\pdfelement6_setup_full2989.exe
2017-07-16 17:07 - 2017-07-30 00:23 - 00253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-07-16 17:07 - 2017-07-30 00:23 - 00101784 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-07-16 17:07 - 2017-07-30 00:23 - 00093600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-07-16 17:07 - 2017-07-30 00:23 - 00045472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-07-16 17:07 - 2017-07-16 17:10 - 00188352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys
2017-07-16 17:06 - 2017-07-16 17:10 - 00077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-07-16 17:06 - 2017-07-16 17:06 - 64025992 _____ (Malwarebytes ) C:\Users\boden\Downloads\mb3-setup-SEMFD.100SEM-3.1.2.1733-1.0.139-1.0.2060.exe
2017-07-16 17:06 - 2017-07-16 17:06 - 00001916 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-07-16 17:06 - 2017-07-16 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-07-16 17:06 - 2017-07-16 17:06 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-07-16 17:06 - 2017-07-16 17:06 - 00000000 ____D C:\Program Files\Malwarebytes
2017-07-16 16:36 - 2017-07-16 16:36 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-07-16 16:36 - 2017-07-16 16:36 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-07-16 16:36 - 2017-07-16 16:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-07-16 16:36 - 2017-07-16 16:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-07-16 16:35 - 2017-07-16 16:35 - 00266192 _____ (Mozilla) C:\Users\boden\Downloads\Firefox Setup Stub 54.0.1.exe
2017-07-16 15:05 - 2017-07-16 15:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_hidscanner_02_15_00.Wdf
2017-07-16 14:04 - 2017-07-16 14:04 - 00000000 ____D C:\Program Files\Common Files\Intel
2017-07-16 14:04 - 2017-07-16 14:04 - 00000000 ____D C:\Program Files (x86)\Cisco
2017-07-16 14:02 - 2017-07-16 14:02 - 00000000 ____D C:\Users\boden\AppData\Roaming\CareCenter
2017-07-15 14:01 - 2017-07-15 14:01 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2017-07-15 14:01 - 2017-07-15 14:01 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2017-07-15 13:13 - 2017-07-15 13:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2017-07-15 13:09 - 2017-07-15 14:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2017-07-15 13:08 - 2017-07-15 13:08 - 00000000 ____D C:\WINDOWS\PCHEALTH
2017-07-15 13:06 - 2017-07-21 02:09 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-07-15 13:06 - 2017-07-16 16:18 - 00000930 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2017-07-15 13:06 - 2017-07-16 16:18 - 00000926 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2017-07-15 13:06 - 2017-07-15 13:06 - 00690080 _____ (Dropbox, Inc.) C:\Users\boden\Downloads\DropboxInstaller (2).exe
2017-07-15 13:06 - 2017-07-15 13:06 - 00003990 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA
2017-07-15 13:06 - 2017-07-15 13:06 - 00003758 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore
2017-07-15 13:06 - 2017-07-15 13:06 - 00000000 __RHD C:\MSOCache
2017-07-15 13:06 - 2017-07-15 13:06 - 00000000 ____D C:\Users\boden\AppData\Local\Microsoft Help
2017-07-15 13:06 - 2017-07-15 13:06 - 00000000 ____D C:\ProgramData\Dropbox
2017-07-15 13:06 - 2017-07-15 13:06 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-07-15 13:05 - 2017-07-15 13:11 - 339799344 _____ (Microsoft Corporation) C:\Users\boden\Downloads\sharepointdesigner_64bit.exe
2017-07-15 13:05 - 2017-07-15 13:10 - 323136464 _____ (Microsoft Corporation) C:\Users\boden\Downloads\spdsp2013-kb2817441-fullfile-x86-en-us.exe
2017-07-15 13:04 - 2017-07-15 13:06 - 403199832 _____ (Microsoft Corporation) C:\Users\boden\Downloads\infopath_4753-1001_x64_en-us.exe
2017-07-15 12:57 - 2017-07-15 12:57 - 00002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002417 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002411 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002405 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00002397 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2017-07-15 12:57 - 2017-07-15 12:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2017-07-15 12:54 - 2017-07-29 15:40 - 00000000 ____D C:\Program Files\Microsoft Office
2017-07-15 12:54 - 2017-07-15 12:54 - 07058744 _____ (Microsoft Corporation) C:\Users\boden\Downloads\Setup.X64.en-us_O365ProPlusRetail_08f77c90-f195-45ee-a287-38b587c6a3b7_TX_PR_b_32_.exe
2017-07-15 12:54 - 2017-07-15 12:54 - 00000000 ____D C:\Program Files\Microsoft Office 15
2017-07-15 11:00 - 2017-07-15 11:00 - 00005404 _____ C:\WINDOWS\System32\Tasks\Software Update Application
2017-07-15 11:00 - 2017-07-15 11:00 - 00004614 _____ C:\WINDOWS\System32\Tasks\ACCAgent
2017-07-15 11:00 - 2017-07-15 11:00 - 00003778 _____ C:\WINDOWS\System32\Tasks\ACC
2017-07-15 11:00 - 2017-07-15 11:00 - 00003060 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
2017-07-15 11:00 - 2017-07-15 11:00 - 00000000 ____D C:\ProgramData\OEM
2017-07-15 11:00 - 2017-07-15 11:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2017-07-15 11:00 - 2017-07-15 11:00 - 00000000 ____D C:\Program Files (x86)\Acer
2017-07-15 06:58 - 2017-07-15 06:58 - 00000000 ___SD C:\WINDOWS\UpdateAssistantV2
2017-07-15 06:51 - 2017-07-15 06:52 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-07-15 06:51 - 2017-07-15 06:51 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-07-15 04:50 - 2017-07-29 23:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-07-15 04:50 - 2017-07-29 23:10 - 00000000 ____D C:\Program Files (x86)\HP
2017-07-15 04:50 - 2017-07-15 04:50 - 00003714 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP DeskJet 3630 series
2017-07-15 04:50 - 2017-07-15 04:50 - 00002064 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk
2017-07-15 04:50 - 2017-07-15 04:50 - 00000000 ____D C:\ProgramData\Visan
2017-07-15 04:50 - 2017-07-15 04:50 - 00000000 ____D C:\ProgramData\HP Photo Creations
2017-07-15 04:50 - 2017-07-15 04:50 - 00000000 ____D C:\Program Files (x86)\HP Photo Creations
2017-07-15 04:49 - 2017-07-29 23:10 - 00000000 ____D C:\ProgramData\HP
2017-07-15 04:49 - 2017-07-28 10:19 - 00000000 ____D C:\Users\boden\AppData\Local\HP
2017-07-15 04:49 - 2017-07-15 04:49 - 00000000 ____D C:\Program Files\HP
2017-07-15 04:45 - 2017-07-15 04:45 - 00000000 ____D C:\Users\boden\Downloads\Virtual Buttons_Intel_1.1.0.21_W10x64_A (1)
2017-07-15 04:43 - 2017-07-15 04:43 - 00000000 ____D C:\Users\boden\Downloads\Virtual Buttons_Intel_1.1.0.21_W10x64_A
2017-07-15 04:36 - 2017-07-15 04:36 - 00000000 ____D C:\Users\boden\Downloads\Touchpad_Synaptics_19.0.7.31_W10x64_A
2017-07-15 04:09 - 2017-07-15 04:09 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2017-07-15 04:09 - 2017-07-15 04:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Intel Corporation
2017-07-15 03:59 - 2017-07-15 03:59 - 00000000 ____D C:\Users\boden\Downloads\Wireless LAN_Atheros_10.0.0.318_W10x64_A
2017-07-15 03:40 - 2017-07-15 03:40 - 00000000 ____D C:\Users\boden\Downloads\IO Drivers_Intel_1.1.253.0_W10x64_A (1)
2017-07-15 02:47 - 2017-07-16 14:02 - 00000000 ____D C:\ProgramData\Acer
2017-07-15 02:28 - 2017-07-15 02:28 - 00000000 ____D C:\WINDOWS\oem
2017-07-15 01:57 - 2017-07-29 11:29 - 00000000 ___DC C:\WINDOWS\Panther
2017-07-15 01:57 - 2017-07-15 01:57 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2017-07-15 01:57 - 2017-07-15 01:57 - 00000000 ____D C:\WINDOWS\InfusedApps
2017-07-15 01:57 - 2017-07-14 12:02 - 00000000 ____D C:\Windows.old
2017-07-15 01:57 - 2017-07-14 07:57 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2017-07-15 01:55 - 2017-07-15 01:55 - 00000000 ____D C:\WINDOWS\Setup
2017-07-15 01:53 - 2017-07-15 01:54 - 00000000 ____D C:\Program Files\UNP
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ___RD C:\WINDOWS\WebManagement
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\WINDOWS\system32\UNP
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\WINDOWS\OCR
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\Program Files\MSBuild
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-07-15 01:53 - 2017-07-15 01:53 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-07-15 01:53 - 2017-07-15 00:51 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-07-15 01:52 - 2017-07-15 01:53 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-07-15 01:52 - 2017-07-15 01:53 - 00000000 ____D C:\WINDOWS\system32\WCN
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\winrm
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\slmgr
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\0409
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\DigitalLocker
2017-07-15 01:52 - 2017-07-15 01:52 - 00000000 ____D C:\Users\boden\Downloads\IO Drivers_Intel_1.1.253.0_W10x64_A
2017-07-15 01:51 - 2017-07-15 01:51 - 00000000 ____D C:\ProgramData\DriverSetupUtility
2017-07-15 01:51 - 2017-07-15 01:51 - 00000000 ____D C:\Program Files\DriverSetupUtility
2017-07-15 01:51 - 2017-07-01 00:46 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-07-15 01:51 - 2017-07-01 00:46 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-07-15 01:50 - 2017-07-30 00:25 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2017-07-15 01:50 - 2017-07-29 23:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-07-15 01:50 - 2017-07-29 23:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-07-15 01:50 - 2017-07-27 16:53 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-07-15 01:50 - 2017-07-27 16:53 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-07-15 01:50 - 2017-07-27 09:07 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-07-15 01:50 - 2017-07-24 12:08 - 00000000 ____D C:\WINDOWS\system32\config\RegBack
2017-07-15 01:50 - 2017-07-17 09:00 - 00000000 ____D C:\WINDOWS\rescache
2017-07-15 01:50 - 2017-07-16 15:34 - 00000000 ____D C:\WINDOWS\Registration
2017-07-15 01:50 - 2017-07-16 15:33 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2017-07-15 01:50 - 2017-07-15 06:59 - 00000000 ____D C:\WINDOWS\system32\config\TxR
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___SD C:\WINDOWS\system32\dsc
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___RD C:\WINDOWS\PrintDialog
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\setup
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\Dism
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\Provisioning
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\bcastdvr
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\Program Files\Windows Defender
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-07-15 01:50 - 2017-07-15 06:58 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-07-15 01:50 - 2017-07-15 06:57 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-07-15 01:50 - 2017-07-15 03:43 - 00000000 ____D C:\WINDOWS\appcompat
2017-07-15 01:50 - 2017-07-15 01:57 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-07-15 01:50 - 2017-07-15 01:53 - 00000000 ____D C:\WINDOWS\SystemApps
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\MUI
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\system32\Com
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\IME
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\WINDOWS\Help
2017-07-15 01:50 - 2017-07-15 01:52 - 00000000 ____D C:\Program Files\Common Files\System
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 __SHD C:\Program Files\Windows Sidebar
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 __RSD C:\WINDOWS\Media
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___SD C:\WINDOWS\system32\Nui
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Web
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Vss
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\tracing
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\TAPI
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SystemResources
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\winevt
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\spool
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\ras
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\IME
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\icsxml
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\downlevel
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\DDFs
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\config\systemprofile
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\System
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SKB
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\security
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\schemas
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\SchCache
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Resources
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\PLA
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Performance
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\ModemLogs
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\L2Schemas
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\InputMethod
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Globalization
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Cursors
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\Branding
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\addins
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A (2)
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\ProgramData\Comms
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files\Windows Portable Devices
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files\Windows NT
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files\Common Files\Services
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files (x86)\Windows NT
2017-07-15 01:50 - 2017-07-15 01:50 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-07-15 01:50 - 2017-07-15 01:49 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-07-15 01:50 - 2017-07-15 01:49 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-07-15 01:50 - 2017-07-15 01:49 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2017-07-15 01:50 - 2017-07-15 01:49 - 00004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-07-15 01:50 - 2017-07-15 01:49 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-07-15 01:50 - 2017-07-15 01:49 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2017-07-15 01:50 - 2017-07-15 01:49 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-07-15 01:50 - 2017-07-15 01:49 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2017-07-15 01:50 - 2017-07-15 01:48 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-07-15 01:50 - 2017-07-15 01:48 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2017-07-15 01:50 - 2017-07-15 01:48 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-07-15 01:50 - 2017-07-15 01:48 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-07-15 01:50 - 2017-07-15 01:48 - 00000219 _____ C:\WINDOWS\system.ini
2017-07-15 01:50 - 2017-07-15 01:48 - 00000092 _____ C:\WINDOWS\win.ini
2017-07-15 01:50 - 2017-07-15 00:46 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-07-15 01:50 - 2017-07-14 14:03 - 00000000 ____D C:\WINDOWS\system32\ias
2017-07-15 01:50 - 2017-07-14 08:05 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-07-15 01:50 - 2017-07-14 08:04 - 00000000 __RHD C:\Users\Public\Libraries
2017-07-15 01:50 - 2017-07-14 08:01 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2017-07-15 01:50 - 2017-07-14 07:59 - 00000000 ___RD C:\WINDOWS\MiracastView
2017-07-15 01:50 - 2017-07-14 07:59 - 00000000 ____D C:\ProgramData\USOPrivate
2017-07-15 01:49 - 2017-07-30 00:23 - 00000000 ____D C:\WINDOWS\INF
2017-07-15 01:49 - 2017-07-15 01:49 - 00000000 ____D C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A (1)
2017-07-15 01:47 - 2017-07-15 01:47 - 00000000 ____D C:\Users\boden\Downloads\Turbo Boost_Intel_11.0.0.1146_W10x64_A
2017-07-15 01:45 - 2017-07-29 23:48 - 00000000 ___RD C:\Program Files (x86)
2017-07-15 01:45 - 2017-07-29 22:59 - 15990784 _____ C:\WINDOWS\system32\config\SYSTEM
2017-07-15 01:45 - 2017-07-29 22:59 - 115867648 _____ C:\WINDOWS\system32\config\SOFTWARE
2017-07-15 01:45 - 2017-07-29 22:59 - 01835008 _____ C:\WINDOWS\system32\config\DEFAULT
2017-07-15 01:45 - 2017-07-29 22:59 - 01048576 _____ C:\WINDOWS\system32\config\BBI
2017-07-15 01:45 - 2017-07-29 22:59 - 00065536 _____ C:\WINDOWS\system32\config\SECURITY
2017-07-15 01:45 - 2017-07-15 15:34 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-07-15 01:45 - 2017-07-15 06:58 - 00000000 ____D C:\WINDOWS\servicing
2017-07-15 01:45 - 2017-07-15 01:57 - 00065536 _____ C:\WINDOWS\system32\config\SAM
2017-07-15 01:45 - 2017-07-15 01:50 - 00000000 ____D C:\WINDOWS\system32\SMI
2017-07-15 01:45 - 2017-07-14 07:58 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-07-15 01:27 - 2017-07-15 01:27 - 00000000 ____D C:\Users\boden\Downloads\Bluetooth_Atheros_10.0.1.0_W10x64_A
2017-07-15 01:20 - 2017-07-15 01:20 - 00000000 ____D C:\Users\boden\Downloads\Bluetooth_Intel_17.1.1527.1534_W10x64_A (1)
2017-07-15 01:19 - 2017-07-15 01:19 - 00000000 ____D C:\Users\boden\Downloads\CardReader_Genesys_4.5.0.6.1001_W10x64_A
2017-07-15 01:13 - 2017-07-15 01:13 - 00000000 ____D C:\Users\boden\Downloads\CardReader_Genesys_4.5.0.6_W10x64_A
2017-07-15 01:09 - 2017-07-15 06:46 - 00000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
2017-07-15 01:09 - 2017-07-15 06:46 - 00000000 ____D C:\Program Files (x86)\Qualcomm Atheros
2017-07-15 01:08 - 2017-07-15 01:09 - 00000000 ____D C:\ProgramData\Qualcomm Atheros
2017-07-15 01:07 - 2017-07-15 01:07 - 00000000 ____D C:\Users\boden\Downloads\Bluetooth_Atheros_10.0.1.0_W10x64_A (1)
2017-07-15 00:59 - 2017-07-15 01:01 - 00000000 ____D C:\Users\boden\Downloads\Bluetooth_Intel_17.1.1527.1534_W10x64_A
2017-07-15 00:56 - 2017-07-15 00:56 - 00001333 _____ C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio Manager.lnk
2017-07-14 18:46 - 2017-07-14 18:46 - 00003342 _____ C:\WINDOWS\System32\Tasks\DolbySelectorTask
2017-07-14 18:46 - 2017-07-14 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
2017-07-14 18:46 - 2017-07-14 18:46 - 00000000 ____D C:\Program Files\Dolby Digital Plus
2017-07-14 18:45 - 2017-07-14 18:39 - 72121872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2017-07-14 18:45 - 2017-07-14 18:39 - 07174440 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2017-07-14 18:45 - 2017-07-14 18:39 - 04603136 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2017-07-14 18:45 - 2017-07-14 18:39 - 03749277 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2017-07-14 18:45 - 2017-07-14 18:39 - 03271912 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 02999024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 02955744 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 02712816 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2017-07-14 18:45 - 2017-07-14 18:39 - 02051704 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 01842432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 01353512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00965032 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00679712 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00677672 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00646984 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00447720 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00359048 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00345232 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00332088 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00323240 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00233440 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00221968 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00216352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00195184 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00151792 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00135720 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00112512 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00092440 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00088320 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00085152 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00084616 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2017-07-14 18:45 - 2017-07-14 18:39 - 00023696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 07097712 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 06266160 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 03278408 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 02531696 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 01967336 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 01959608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 01782144 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 01591064 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 01510456 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00954504 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00743968 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00727440 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00708312 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00576280 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00445400 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00441272 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00362056 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00328976 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00310424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00274240 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00255392 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00254400 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00253904 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00123840 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2017-07-14 18:44 - 2017-07-14 18:39 - 00120120 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2017-07-14 18:44 - 2017-07-14 18:38 - 02825944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2017-07-14 18:40 - 2017-07-15 00:45 - 00000000 ___HD C:\Program Files (x86)\Temp
2017-07-14 18:40 - 2017-07-14 18:40 - 00000000 ____D C:\Program Files (x86)\Realtek
2017-07-14 18:38 - 2017-07-14 18:38 - 00000000 ____D C:\Users\boden\Downloads\Audio_Realtek_6.0.1.7614_W10x64_A
2017-07-14 18:34 - 2017-07-14 18:34 - 00000000 ____D C:\Users\boden\Downloads\Wireless LAN_Intel_18.11.1.2_W10x64_A
2017-07-14 18:26 - 2017-07-14 18:26 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles
2017-07-14 18:26 - 2017-07-14 18:26 - 00000000 ____D C:\Users\boden\AppData\Roaming\Intel
2017-07-14 18:25 - 2017-07-14 18:25 - 00000000 ____D C:\Users\boden\Intel.sav
2017-07-14 18:25 - 2017-07-14 18:25 - 00000000 ____D C:\ProgramData\Intel.sav
2017-07-14 18:22 - 2017-07-15 01:03 - 00000241 _____ C:\Users\boden\BullseyeCoverageError.txt
2017-07-14 18:19 - 2017-07-29 15:38 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-07-14 18:16 - 2017-07-16 15:34 - 00000000 ____D C:\ProgramData\Intel
2017-07-14 18:16 - 2017-07-16 14:04 - 00000000 ____D C:\Program Files (x86)\Intel
2017-07-14 18:12 - 2017-07-14 18:12 - 04912772 _____ C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A (2).zip
2017-07-14 18:12 - 2017-07-14 18:12 - 03026579 _____ C:\Users\boden\Downloads\IO Drivers_Intel_1.1.253.0_W10x64_A.zip
2017-07-14 18:12 - 2017-07-14 18:12 - 03021189 _____ C:\Users\boden\Downloads\IO Drivers_Intel_1.1.253.0_W10x64_A (1).zip
2017-07-14 18:12 - 2017-07-14 18:12 - 02839750 _____ C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A (1).zip
2017-07-14 18:10 - 2017-07-14 18:10 - 00000000 ____D C:\Users\boden\Intel
2017-07-14 18:10 - 2017-07-14 18:10 - 00000000 ____D C:\Users\boden\Downloads\IRST_Intel_14.5.0.1081_W10x64_A
2017-07-14 18:10 - 2017-07-14 18:10 - 00000000 ____D C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A
2017-07-14 18:09 - 2017-07-14 18:14 - 63652837 _____ C:\Users\boden\Downloads\Turbo Boost_Intel_11.0.0.1146_W10x64_A.zip
2017-07-14 18:09 - 2017-07-14 18:10 - 11965418 _____ C:\Users\boden\Downloads\IRST_Intel_14.5.0.1081_W10x64_A.zip
2017-07-14 18:09 - 2017-07-14 18:10 - 02839750 _____ C:\Users\boden\Downloads\Chipset_Intel_10.1.1.7_W10x64_A.zip
2017-07-14 18:09 - 2017-07-14 18:09 - 01075931 _____ C:\Users\boden\Downloads\Virtual Buttons_Intel_1.1.0.21_W10x64_A.zip
2017-07-14 18:09 - 2017-07-14 18:09 - 01064826 _____ C:\Users\boden\Downloads\Virtual Buttons_Intel_1.1.0.21_W10x64_A (1).zip
2017-07-14 18:09 - 2017-07-14 18:09 - 00631469 _____ C:\Users\boden\Downloads\Touchpad_Synaptics_19.0.7.31_W10x64_A.zip
2017-07-14 18:08 - 2017-07-14 18:11 - 51634174 _____ C:\Users\boden\Downloads\Wireless LAN_Atheros_10.0.0.318_W10x64_A.zip
2017-07-14 17:05 - 2017-07-14 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2017-07-14 15:46 - 2017-07-30 00:23 - 00000000 ____D C:\Users\MSSQL$ADK
2017-07-14 15:46 - 2017-07-14 15:46 - 00000020 ___SH C:\Users\MSSQL$ADK\ntuser.ini
2017-07-14 15:46 - 2012-02-11 10:08 - 00147032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hadrres.dll
2017-07-14 15:46 - 2012-02-11 10:08 - 00069208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fssres.dll
2017-07-14 15:46 - 2012-02-11 10:03 - 00082520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQL$ADK-sqlctr11.0.2100.60.dll
2017-07-14 15:46 - 2012-02-11 10:02 - 00045656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQL11.ADK-sqlagtctr.dll
2017-07-14 15:45 - 2017-07-14 15:45 - 00000000 ____D C:\WINDOWS\SysWOW64\1033
2017-07-14 15:45 - 2017-07-14 15:45 - 00000000 ____D C:\WINDOWS\system32\1033
2017-07-14 15:45 - 2017-07-14 15:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
2017-07-14 15:45 - 2017-07-14 15:45 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2017-07-14 15:45 - 2017-07-14 15:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2017-07-14 15:44 - 2017-07-14 15:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2012
2017-07-14 15:44 - 2017-07-14 15:46 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2017-07-14 15:40 - 2017-07-14 15:40 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2017-07-14 15:15 - 2017-07-14 16:55 - 01794616 _____ (Microsoft Corporation) C:\Users\boden\Downloads\adksetup (1).exe
2017-07-14 15:02 - 2017-07-14 15:02 - 00399986 _____ C:\Users\boden\Downloads\Windows build 15063 ADK Driver Update.zip
2017-07-14 15:02 - 2017-07-14 15:02 - 00000000 ____D C:\Users\boden\Downloads\Windows build 15063 ADK Driver Update
2017-07-14 14:53 - 2017-07-17 06:14 - 00000000 ____D C:\ProgramData\Package Cache
2017-07-14 14:53 - 2017-07-14 14:53 - 01735400 _____ (Microsoft Corporation) C:\Users\boden\Downloads\adksetup.exe
2017-07-14 14:52 - 2017-07-14 14:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_UsbDr_01_09_00.Wdf
2017-07-14 10:38 - 2017-07-14 10:38 - 00057592 _____ C:\Users\boden\Downloads\GatewaySettings.bin
2017-07-14 10:10 - 2017-07-16 16:40 - 00000000 ____D C:\Users\boden\AppData\Local\Mozilla
2017-07-14 10:10 - 2017-07-15 13:14 - 00000000 ____D C:\Users\boden\AppData\Local\Dropbox
2017-07-14 10:10 - 2017-07-14 10:10 - 00000000 ____D C:\Users\boden\AppData\Local\Spotify
2017-07-14 10:10 - 2017-07-14 10:10 - 00000000 ____D C:\Users\boden\AppData\Local\CareCenter
2017-07-14 10:10 - 2017-07-14 10:10 - 00000000 ____D C:\Users\boden\AppData\Local\AUSkey
2017-07-14 10:09 - 2017-07-25 14:29 - 00000000 ____D C:\Users\boden\AppData\Local\google
2017-07-14 10:09 - 2017-07-21 00:43 - 00000000 ____D C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Screaming Frog SEO Spider
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Spotify
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Skype
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Mozilla
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AUSkey
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AdWords Editor
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Macromedia
2017-07-14 10:09 - 2017-07-14 10:09 - 00000000 ____D C:\Users\boden\AppData\Roaming\Dropbox
2017-07-14 10:09 - 2017-07-06 07:46 - 00001840 _____ C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2017-07-14 10:09 - 2017-07-06 07:42 - 00001303 _____ C:\Users\boden\Desktop\Dropbox.lnk
2017-07-14 10:09 - 2017-04-10 12:21 - 00003085 _____ C:\Users\boden\Desktop\PDF Signer.lnk
2017-07-14 10:07 - 2017-07-29 23:31 - 00004152 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FDE33B67-5CCD-4460-878E-199C1C9FC5BA}
2017-07-14 10:06 - 2017-07-14 10:06 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-07-14 08:35 - 2017-07-15 04:09 - 01259244 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-07-14 08:35 - 2017-07-14 08:35 - 00000020 ___SH C:\Users\Classic .NET AppPool\ntuser.ini
2017-07-14 08:35 - 2017-07-14 08:35 - 00000020 ___SH C:\Users\.NET v4.5\ntuser.ini
2017-07-14 08:35 - 2017-07-14 08:35 - 00000020 ___SH C:\Users\.NET v4.5 Classic\ntuser.ini
2017-07-14 08:35 - 2017-07-14 08:35 - 00000020 ___SH C:\Users\.NET v2.0\ntuser.ini
2017-07-14 08:35 - 2017-07-14 08:35 - 00000020 ___SH C:\Users\.NET v2.0 Classic\ntuser.ini
2017-07-14 08:34 - 2017-07-29 15:45 - 00000000 ____D C:\inetpub
2017-07-14 08:34 - 2017-07-14 08:34 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2017-07-14 08:34 - 2017-07-14 08:34 - 00000000 ____D C:\WINDOWS\system32\msmq
2017-07-14 08:34 - 2017-07-14 08:34 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2017-07-14 08:25 - 2017-07-14 10:34 - 00000000 ____D C:\Users\boden\AppData\Local\MicrosoftEdge
2017-07-14 08:20 - 2017-07-29 23:04 - 00000000 ____D C:\Users\boden\AppData\Local\ElevatedDiagnostics
2017-07-14 08:08 - 2017-07-27 16:29 - 00002367 _____ C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-07-14 08:08 - 2017-07-18 13:23 - 00000000 ____D C:\Users\boden\AppData\Local\Comms
2017-07-14 08:08 - 2017-07-14 08:08 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2017-07-14 08:07 - 2017-07-30 00:28 - 01616154 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-14 08:06 - 2017-07-30 00:00 - 00000000 ____D C:\Users\boden\AppData\Local\Packages
2017-07-14 08:06 - 2017-07-14 08:07 - 00000000 ____D C:\Users\boden\AppData\Local\ConnectedDevicesPlatform
2017-07-14 08:06 - 2017-07-14 08:06 - 00000020 ___SH C:\Users\boden\ntuser.ini
2017-07-14 08:06 - 2017-07-14 08:06 - 00000000 ____D C:\Users\boden\AppData\Roaming\Adobe
2017-07-14 08:06 - 2017-07-14 08:06 - 00000000 ____D C:\Users\boden\AppData\Local\VirtualStore
2017-07-14 08:06 - 2017-07-14 08:06 - 00000000 ____D C:\Users\boden\AppData\Local\TileDataLayer
2017-07-14 08:06 - 2017-07-14 08:06 - 00000000 ____D C:\Users\boden\AppData\Local\Publishers
2017-07-14 08:05 - 2017-07-14 08:05 - 00000000 _SHDL C:\Users\Default User
2017-07-14 08:05 - 2017-07-14 08:05 - 00000000 _SHDL C:\Users\All Users
2017-07-14 08:00 - 2017-07-30 00:23 - 00000000 ____D C:\Users\boden
2017-07-14 08:00 - 2017-07-27 02:01 - 00000000 ____D C:\Users\DefaultAppPool
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\defaultuser0
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\Classic .NET AppPool
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\.NET v4.5 Classic
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\.NET v4.5
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\.NET v2.0 Classic
2017-07-14 08:00 - 2017-07-14 18:26 - 00000000 ____D C:\Users\.NET v2.0
2017-07-14 08:00 - 2017-04-28 11:01 - 02717184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-07-14 07:59 - 2017-07-30 00:24 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-07-14 07:59 - 2017-07-16 14:03 - 00000000 ____D C:\Program Files\Intel
2017-07-14 07:59 - 2017-07-14 18:46 - 01145235 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2017-07-14 07:59 - 2017-07-14 18:46 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2017-07-14 07:59 - 2017-07-14 18:46 - 00000000 ____D C:\WINDOWS\system32\DAX2
2017-07-14 07:59 - 2017-07-14 07:59 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-07-14 07:59 - 2017-07-14 07:59 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2017-07-14 07:59 - 2017-07-14 07:59 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2017-07-14 07:59 - 2017-07-14 07:59 - 00000000 ____D C:\ProgramData\USOShared
2017-07-14 07:59 - 2017-07-14 07:59 - 00000000 ____D C:\Program Files\Realtek
2017-07-14 07:59 - 2015-09-21 16:19 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2017-07-14 07:59 - 2015-09-21 16:19 - 00091136 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-07-14 07:58 - 2017-07-30 00:23 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-14 07:57 - 2017-07-30 00:38 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-07-14 07:57 - 2017-07-19 15:53 - 00353632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-07-13 09:02 - 2017-07-07 17:49 - 00340824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-07-13 09:02 - 2017-07-07 17:46 - 00781152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-07-13 09:02 - 2017-07-07 17:45 - 02263832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-07-13 09:02 - 2017-07-07 17:44 - 00108896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2017-07-13 09:02 - 2017-07-07 17:40 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-07-13 09:02 - 2017-07-07 17:37 - 00468320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2017-07-13 09:02 - 2017-07-07 17:37 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2017-07-13 09:02 - 2017-07-07 17:29 - 05686272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-07-13 09:02 - 2017-07-07 17:29 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-07-13 09:02 - 2017-07-07 17:24 - 22220856 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-07-13 09:02 - 2017-07-07 17:20 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
2017-07-13 09:02 - 2017-07-07 17:19 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll
2017-07-13 09:02 - 2017-07-07 17:18 - 02532192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-07-13 09:02 - 2017-07-07 17:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2017-07-13 09:02 - 2017-07-07 17:18 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\onex.dll
2017-07-13 09:02 - 2017-07-07 17:18 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2017-07-13 09:02 - 2017-07-07 17:17 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2017-07-13 09:02 - 2017-07-07 17:13 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2017-07-13 09:02 - 2017-07-07 17:13 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2017-07-13 09:02 - 2017-07-07 17:10 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-07-13 09:02 - 2017-07-07 17:09 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2017-07-13 09:02 - 2017-07-07 17:09 - 00506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-07-13 09:02 - 2017-07-07 17:06 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-07-13 09:02 - 2017-07-07 17:03 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2017-07-13 09:02 - 2017-07-07 17:02 - 01313280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2017-07-13 09:02 - 2017-07-07 17:00 - 00476160 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\SysWOW64\wvc.dll
2017-07-13 09:02 - 2017-07-07 16:55 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-07-13 09:02 - 2017-07-07 16:55 - 01571840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-07-13 09:02 - 2017-07-07 16:54 - 02997248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-07-13 09:02 - 2017-07-07 16:53 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-07-13 09:02 - 2017-07-07 16:52 - 04561408 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll
2017-07-13 09:02 - 2017-07-07 16:52 - 01599488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-07-13 09:02 - 2017-07-07 16:52 - 01413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2017-07-13 09:02 - 2017-07-07 16:51 - 22569984 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-07-13 09:02 - 2017-07-07 16:48 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2017-07-13 09:02 - 2017-07-07 16:48 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2017-07-13 09:02 - 2017-07-07 16:47 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2017-07-13 09:02 - 2017-07-07 16:44 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2017-07-13 09:02 - 2017-07-07 16:44 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\onex.dll
2017-07-13 09:02 - 2017-07-07 16:44 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2017-07-13 09:02 - 2017-07-07 16:39 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-07-13 09:02 - 2017-07-07 16:35 - 01397760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2017-07-13 09:02 - 2017-07-07 16:33 - 00576000 _____ (Microsoft® Windows® Operating System) C:\WINDOWS\system32\wvc.dll
2017-07-13 09:02 - 2017-07-07 16:31 - 23676416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-07-13 09:02 - 2017-06-21 17:53 - 00794928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-07-13 09:02 - 2017-06-21 17:52 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-07-13 09:02 - 2017-06-21 17:52 - 00774224 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2017-07-13 09:02 - 2017-06-21 17:52 - 00088416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2017-07-13 09:02 - 2017-06-21 17:52 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2017-07-13 09:02 - 2017-06-21 17:42 - 01573280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2017-07-13 09:02 - 2017-06-21 17:42 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2017-07-13 09:02 - 2017-06-21 17:41 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-07-13 09:02 - 2017-06-21 17:39 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-07-13 09:02 - 2017-06-21 17:38 - 07220192 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-07-13 09:02 - 2017-06-21 17:38 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-07-13 09:02 - 2017-06-21 17:38 - 00790752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2017-07-13 09:02 - 2017-06-21 17:36 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-07-13 09:02 - 2017-06-21 17:36 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2017-07-13 09:02 - 2017-06-21 17:33 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2017-07-13 09:02 - 2017-06-21 17:33 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-07-13 09:02 - 2017-06-21 17:32 - 08169024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-07-13 09:02 - 2017-06-21 17:32 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-07-13 09:02 - 2017-06-21 17:32 - 01983408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-07-13 09:02 - 2017-06-21 17:32 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-07-13 09:02 - 2017-06-21 17:32 - 01072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2017-07-13 09:02 - 2017-06-21 17:30 - 00869848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2017-07-13 09:02 - 2017-06-21 17:30 - 00196960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2017-07-13 09:02 - 2017-06-21 17:29 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-07-13 09:02 - 2017-06-21 17:28 - 02277288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-07-13 09:02 - 2017-06-21 17:28 - 01504056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2017-07-13 09:02 - 2017-06-21 17:28 - 00524776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-07-13 09:02 - 2017-06-21 17:28 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 01122344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 00549088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2017-07-13 09:02 - 2017-06-21 17:27 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-07-13 09:02 - 2017-06-21 17:26 - 00387864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2017-07-13 09:02 - 2017-06-21 17:25 - 02168288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2017-07-13 09:02 - 2017-06-21 17:25 - 01980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-07-13 09:02 - 2017-06-21 17:24 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2017-07-13 09:02 - 2017-06-21 17:24 - 00154432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2017-07-13 09:02 - 2017-06-21 17:22 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 06665440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 04023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 01845512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-07-13 09:02 - 2017-06-21 17:21 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2017-07-13 09:02 - 2017-06-21 17:20 - 01360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2017-07-13 09:02 - 2017-06-21 17:20 - 00981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2017-07-13 09:02 - 2017-06-21 17:20 - 00962768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2017-07-13 09:02 - 2017-06-21 17:20 - 00312472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2017-07-13 09:02 - 2017-06-21 17:19 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-07-13 09:02 - 2017-06-21 17:06 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2017-07-13 09:02 - 2017-06-21 17:04 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-07-13 09:02 - 2017-06-21 17:04 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-07-13 09:02 - 2017-06-21 17:03 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2017-07-13 09:02 - 2017-06-21 17:02 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-07-13 09:02 - 2017-06-21 17:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmdisk0101.sys
2017-07-13 09:02 - 2017-06-21 17:02 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-07-13 09:02 - 2017-06-21 17:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2017-07-13 09:02 - 2017-06-21 17:01 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2017-07-13 09:02 - 2017-06-21 17:00 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvisioningHandlers.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uudf.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-07-13 09:02 - 2017-06-21 17:00 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2017-07-13 09:02 - 2017-06-21 16:59 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2017-07-13 09:02 - 2017-06-21 16:59 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2017-07-13 09:02 - 2017-06-21 16:59 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2017-07-13 09:02 - 2017-06-21 16:58 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-07-13 09:02 - 2017-06-21 16:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll
2017-07-13 09:02 - 2017-06-21 16:57 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2017-07-13 09:02 - 2017-06-21 16:57 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2017-07-13 09:02 - 2017-06-21 16:57 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2017-07-13 09:02 - 2017-06-21 16:57 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-07-13 09:02 - 2017-06-21 16:56 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-07-13 09:02 - 2017-06-21 16:56 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2017-07-13 09:02 - 2017-06-21 16:56 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2017-07-13 09:02 - 2017-06-21 16:56 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2017-07-13 09:02 - 2017-06-21 16:55 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2017-07-13 09:02 - 2017-06-21 16:55 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regsvr32.exe
2017-07-13 09:02 - 2017-06-21 16:54 - 01159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-07-13 09:02 - 2017-06-21 16:54 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2017-07-13 09:02 - 2017-06-21 16:54 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2017-07-13 09:02 - 2017-06-21 16:53 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 17198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 06288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2017-07-13 09:02 - 2017-06-21 16:52 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
2017-07-13 09:02 - 2017-06-21 16:51 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2017-07-13 09:02 - 2017-06-21 16:51 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2017-07-13 09:02 - 2017-06-21 16:51 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2017-07-13 09:02 - 2017-06-21 16:51 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2017-07-13 09:02 - 2017-06-21 16:51 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2017-07-13 09:02 - 2017-06-21 16:50 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2017-07-13 09:02 - 2017-06-21 16:50 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2017-07-13 09:02 - 2017-06-21 16:50 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2017-07-13 09:02 - 2017-06-21 16:50 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2017-07-13 09:02 - 2017-06-21 16:50 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 03778048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2017-07-13 09:02 - 2017-06-21 16:49 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-07-13 09:02 - 2017-06-21 16:48 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2017-07-13 09:02 - 2017-06-21 16:48 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2017-07-13 09:02 - 2017-06-21 16:48 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2017-07-13 09:02 - 2017-06-21 16:47 - 13873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-07-13 09:02 - 2017-06-21 16:47 - 07655424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 04615168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 01137152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2017-07-13 09:02 - 2017-06-21 16:46 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2017-07-13 09:02 - 2017-06-21 16:45 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2017-07-13 09:02 - 2017-06-21 16:45 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-07-13 09:02 - 2017-06-21 16:45 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2017-07-13 09:02 - 2017-06-21 16:45 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uexfat.dll
2017-07-13 09:02 - 2017-06-21 16:44 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2017-07-13 09:02 - 2017-06-21 16:44 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2017-07-13 09:02 - 2017-06-21 16:44 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2017-07-13 09:02 - 2017-06-21 16:44 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ufat.dll
2017-07-13 09:02 - 2017-06-21 16:44 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdProxy.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2017-07-13 09:02 - 2017-06-21 16:43 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cnvfat.dll
2017-07-13 09:02 - 2017-06-21 16:42 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-07-13 09:02 - 2017-06-21 16:42 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-07-13 09:02 - 2017-06-21 16:42 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
2017-07-13 09:02 - 2017-06-21 16:42 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2017-07-13 09:02 - 2017-06-21 16:42 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-07-13 09:02 - 2017-06-21 16:42 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFSv1.dll
2017-07-13 09:02 - 2017-06-21 16:41 - 03400704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-07-13 09:02 - 2017-06-21 16:41 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-07-13 09:02 - 2017-06-21 16:41 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2017-07-13 09:02 - 2017-06-21 16:41 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2017-07-13 09:02 - 2017-06-21 16:41 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 02154496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2017-07-13 09:02 - 2017-06-21 16:40 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2017-07-13 09:02 - 2017-06-21 16:39 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2017-07-13 09:02 - 2017-06-21 16:39 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
2017-07-13 09:02 - 2017-06-21 16:39 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-07-13 09:02 - 2017-06-21 16:39 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2017-07-13 09:02 - 2017-06-21 16:39 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2017-07-13 09:02 - 2017-06-21 16:39 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2017-07-13 09:02 - 2017-06-21 16:38 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 00877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2017-07-13 09:02 - 2017-06-21 16:38 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 00753152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
2017-07-13 09:02 - 2017-06-21 16:38 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2017-07-13 09:02 - 2017-06-21 16:37 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2017-07-13 09:02 - 2017-06-21 16:37 - 06109696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2017-07-13 09:02 - 2017-06-21 16:37 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2017-07-13 09:02 - 2017-06-21 16:37 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2017-07-13 09:02 - 2017-06-21 16:37 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2017-07-13 09:02 - 2017-06-21 16:36 - 02648576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2017-07-13 09:02 - 2017-06-21 16:36 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-07-13 09:02 - 2017-06-21 16:36 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-07-13 09:02 - 2017-06-21 16:36 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2017-07-13 09:02 - 2017-06-21 16:36 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-07-13 09:02 - 2017-06-21 16:35 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 00732160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2017-07-13 09:02 - 2017-06-21 16:35 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2017-07-13 09:02 - 2017-06-21 16:34 - 01886720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-07-13 09:02 - 2017-06-21 16:34 - 00711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2017-07-13 09:02 - 2017-06-21 16:34 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2017-07-13 09:02 - 2017-06-21 16:33 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-07-13 09:02 - 2017-06-21 16:33 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2017-07-13 09:02 - 2017-06-21 16:33 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-07-13 09:02 - 2017-06-21 16:33 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2017-07-13 09:02 - 2017-06-21 16:33 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2017-07-13 09:02 - 2017-06-21 16:33 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2017-07-13 09:02 - 2017-06-21 16:32 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-07-13 09:02 - 2017-06-21 16:32 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2017-07-13 09:02 - 2017-06-21 16:31 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2017-07-13 09:02 - 2017-06-21 16:30 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2017-07-13 09:02 - 2017-06-21 16:10 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-07-13 09:02 - 2017-05-23 14:58 - 00448576 _____ C:\WINDOWS\system32\ApnDatabase.xml
2017-07-13 09:02 - 2017-03-04 17:10 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-07-13 09:02 - 2017-03-04 16:56 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2017-07-13 09:02 - 2017-03-04 16:26 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2017-07-13 09:02 - 2017-03-04 16:23 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2017-07-13 09:02 - 2017-03-04 16:23 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2017-07-13 09:02 - 2017-03-04 16:21 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-07-13 09:02 - 2017-03-04 16:21 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2017-07-13 09:02 - 2017-03-04 16:20 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2017-07-13 09:02 - 2017-03-04 16:20 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-07-13 09:02 - 2017-03-04 16:20 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2017-07-13 09:02 - 2017-03-04 16:19 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2017-07-13 09:02 - 2017-03-04 16:18 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2017-07-13 09:02 - 2017-03-04 16:17 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2017-07-13 09:02 - 2017-03-04 16:16 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2017-07-13 09:02 - 2017-03-04 16:15 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-07-13 09:02 - 2017-03-04 16:12 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2017-07-13 09:02 - 2017-03-04 16:02 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2017-07-13 09:02 - 2016-10-05 19:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2017-07-13 09:02 - 2016-09-16 02:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-07-13 09:02 - 2016-09-16 02:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2017-07-13 09:02 - 2016-08-27 15:12 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2017-07-13 09:01 - 2017-07-07 17:42 - 07781720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-07-13 09:01 - 2017-07-07 17:40 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-07-13 09:01 - 2017-07-07 17:32 - 00404824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-07-13 09:01 - 2017-07-07 17:29 - 02759712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-07-13 09:01 - 2017-07-07 17:28 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-07-13 09:01 - 2017-07-07 17:23 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-07-13 09:01 - 2017-07-07 17:23 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-07-13 09:01 - 2017-07-07 17:19 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2017-07-13 09:01 - 2017-07-07 17:18 - 01100120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2017-07-13 09:01 - 2017-07-07 17:14 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2017-07-13 09:01 - 2017-07-07 17:14 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2017-07-13 09:01 - 2017-07-07 17:11 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2017-07-13 09:01 - 2017-07-07 17:06 - 18364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-07-13 09:01 - 2017-07-07 17:05 - 19414528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-07-13 09:01 - 2017-07-07 17:00 - 12187136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-07-13 09:01 - 2017-07-07 16:58 - 07217152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-07-13 09:01 - 2017-07-07 16:57 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2017-07-13 09:01 - 2017-07-07 16:56 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-07-13 09:01 - 2017-07-07 16:55 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-07-13 09:01 - 2017-07-07 16:54 - 02027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2017-07-13 09:01 - 2017-07-07 16:49 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2017-07-13 09:01 - 2017-07-07 16:47 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2017-07-13 09:01 - 2017-07-07 16:46 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2017-07-13 09:01 - 2017-07-07 16:46 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
2017-07-13 09:01 - 2017-07-07 16:45 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2017-07-13 09:01 - 2017-07-07 16:45 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-07-13 09:01 - 2017-07-07 16:45 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2017-07-13 09:01 - 2017-07-07 16:45 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-07-13 09:01 - 2017-07-07 16:44 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2017-07-13 09:01 - 2017-07-07 16:44 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-07-13 09:01 - 2017-07-07 16:44 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2017-07-13 09:01 - 2017-07-07 16:43 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-07-13 09:01 - 2017-07-07 16:43 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-07-13 09:01 - 2017-07-07 16:43 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2017-07-13 09:01 - 2017-07-07 16:43 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2017-07-13 09:01 - 2017-07-07 16:42 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-07-13 09:01 - 2017-07-07 16:42 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2017-07-13 09:01 - 2017-07-07 16:36 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2017-07-13 09:01 - 2017-07-07 16:34 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-07-13 09:01 - 2017-07-07 16:30 - 13090816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-07-13 09:01 - 2017-07-07 16:29 - 04749824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-07-13 09:01 - 2017-07-07 16:29 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-07-13 09:01 - 2017-07-07 16:28 - 02096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2017-07-13 09:01 - 2017-07-07 16:28 - 00927744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2017-07-13 09:01 - 2017-07-07 16:28 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-07-13 09:01 - 2017-07-07 16:28 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-07-13 09:01 - 2017-07-07 16:27 - 08120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-07-13 09:01 - 2017-07-07 16:25 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 05388800 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 04744704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 03615744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-07-13 09:01 - 2017-07-07 16:24 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 02217472 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 01783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-07-13 09:01 - 2017-07-07 16:24 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-07-13 09:01 - 2017-07-07 16:22 - 01826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-07-13 09:01 - 2017-06-21 17:54 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-07-13 09:01 - 2017-06-21 17:52 - 01886344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2017-07-13 09:01 - 2017-06-21 17:51 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-07-13 09:01 - 2017-06-21 17:51 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2017-07-13 09:01 - 2017-06-21 17:50 - 00126304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2017-07-13 09:01 - 2017-06-21 17:48 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-13 09:01 - 2017-06-21 17:47 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-07-13 09:01 - 2017-06-21 17:40 - 01069720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2017-07-13 09:01 - 2017-06-21 17:40 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-07-13 09:01 - 2017-06-21 17:40 - 00224096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2017-07-13 09:01 - 2017-06-21 17:38 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2017-07-13 09:01 - 2017-06-21 17:37 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-07-13 09:01 - 2017-06-21 17:37 - 01369240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2017-07-13 09:01 - 2017-06-21 17:37 - 01157008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-07-13 09:01 - 2017-06-21 17:37 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-07-13 09:01 - 2017-06-21 17:36 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-07-13 09:01 - 2017-06-21 17:35 - 02915704 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2017-07-13 09:01 - 2017-06-21 17:35 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2017-07-13 09:01 - 2017-06-21 17:31 - 04674360 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-07-13 09:01 - 2017-06-21 17:31 - 01277824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2017-07-13 09:01 - 2017-06-21 17:31 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-07-13 09:01 - 2017-06-21 17:04 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-07-13 09:01 - 2017-06-21 17:03 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\uudf.dll
2017-07-13 09:01 - 2017-06-21 17:02 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-07-13 09:01 - 2017-06-21 17:02 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-07-13 09:01 - 2017-06-21 17:01 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2017-07-13 09:01 - 2017-06-21 17:01 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2017-07-13 09:01 - 2017-06-21 17:01 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2017-07-13 09:01 - 2017-06-21 17:01 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2017-07-13 09:01 - 2017-06-21 17:00 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2017-07-13 09:01 - 2017-06-21 17:00 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2017-07-13 09:01 - 2017-06-21 17:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-07-13 09:01 - 2017-06-21 17:00 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-07-13 09:01 - 2017-06-21 17:00 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2017-07-13 09:01 - 2017-06-21 17:00 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2017-07-13 09:01 - 2017-06-21 16:59 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2017-07-13 09:01 - 2017-06-21 16:58 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-07-13 09:01 - 2017-06-21 16:58 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2017-07-13 09:01 - 2017-06-21 16:58 - 00224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpd_ci.dll
2017-07-13 09:01 - 2017-06-21 16:58 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-07-13 09:01 - 2017-06-21 16:58 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2017-07-13 09:01 - 2017-06-21 16:57 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2017-07-13 09:01 - 2017-06-21 16:57 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2017-07-13 09:01 - 2017-06-21 16:56 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2017-07-13 09:01 - 2017-06-21 16:55 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-07-13 09:01 - 2017-06-21 16:55 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2017-07-13 09:01 - 2017-06-21 16:55 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2017-07-13 09:01 - 2017-06-21 16:54 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-07-13 09:01 - 2017-06-21 16:54 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-07-13 09:01 - 2017-06-21 16:54 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-07-13 09:01 - 2017-06-21 16:54 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-07-13 09:01 - 2017-06-21 16:54 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2017-07-13 09:01 - 2017-06-21 16:53 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2017-07-13 09:01 - 2017-06-21 16:53 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2017-07-13 09:01 - 2017-06-21 16:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-07-13 09:01 - 2017-06-21 16:53 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2017-07-13 09:01 - 2017-06-21 16:53 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2017-07-13 09:01 - 2017-06-21 16:53 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2017-07-13 09:01 - 2017-06-21 16:52 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-07-13 09:01 - 2017-06-21 16:52 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-07-13 09:01 - 2017-06-21 16:52 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2017-07-13 09:01 - 2017-06-21 16:52 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2017-07-13 09:01 - 2017-06-21 16:52 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2017-07-13 09:01 - 2017-06-21 16:51 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2017-07-13 09:01 - 2017-06-21 16:51 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-07-13 09:01 - 2017-06-21 16:50 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2017-07-13 09:01 - 2017-06-21 16:50 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-07-13 09:01 - 2017-06-21 16:49 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2017-07-13 09:01 - 2017-06-21 16:49 - 01913856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2017-07-13 09:01 - 2017-06-21 16:49 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2017-07-13 09:01 - 2017-06-21 16:49 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2017-07-13 09:01 - 2017-06-21 16:48 - 00968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2017-07-13 09:01 - 2017-06-21 16:48 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\uexfat.dll
2017-07-13 09:01 - 2017-06-21 16:47 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2017-07-13 09:01 - 2017-06-21 16:47 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2017-07-13 09:01 - 2017-06-21 16:47 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2017-07-13 09:01 - 2017-06-21 16:47 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ufat.dll
2017-07-13 09:01 - 2017-06-21 16:47 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2017-07-13 09:01 - 2017-06-21 16:46 - 03290112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-07-13 09:01 - 2017-06-21 16:46 - 00925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
2017-07-13 09:01 - 2017-06-21 16:46 - 00516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFSv1.dll
2017-07-13 09:01 - 2017-06-21 16:46 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2017-07-13 09:01 - 2017-06-21 16:46 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cnvfat.dll
2017-07-13 09:01 - 2017-06-21 16:45 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-07-13 09:01 - 2017-06-21 16:44 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2017-07-13 09:01 - 2017-06-21 16:44 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2017-07-13 09:01 - 2017-06-21 16:43 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2017-07-13 09:01 - 2017-06-21 16:43 - 00953344 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2017-07-13 09:01 - 2017-06-21 16:43 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2017-07-13 09:01 - 2017-06-21 16:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2017-07-13 09:01 - 2017-06-21 16:42 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2017-07-13 09:01 - 2017-06-21 16:42 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2017-07-13 09:01 - 2017-06-21 16:42 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2017-07-13 09:01 - 2017-06-21 16:42 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2017-07-13 09:01 - 2017-06-21 16:42 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 05850624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2017-07-13 09:01 - 2017-06-21 16:41 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 01359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-07-13 09:01 - 2017-06-21 16:41 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-07-13 09:01 - 2017-06-21 16:40 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2017-07-13 09:01 - 2017-06-21 16:40 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2017-07-13 09:01 - 2017-06-21 16:40 - 01421824 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2017-07-13 09:01 - 2017-06-21 16:40 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2017-07-13 09:01 - 2017-06-21 16:40 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 02916864 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2017-07-13 09:01 - 2017-06-21 16:39 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2017-07-13 09:01 - 2017-06-21 16:38 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2017-07-13 09:01 - 2017-06-21 16:38 - 02695680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-07-13 09:01 - 2017-06-21 16:38 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-07-13 09:01 - 2017-06-21 16:38 - 00908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2017-07-13 09:01 - 2017-06-21 16:37 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2017-07-13 09:01 - 2017-06-21 16:37 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2017-07-13 09:01 - 2017-06-21 16:37 - 00735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-07-13 09:01 - 2017-06-21 16:37 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2017-07-13 09:01 - 2017-06-21 16:36 - 02318848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-07-13 09:01 - 2017-06-21 16:36 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2017-07-13 09:01 - 2017-06-21 16:36 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2017-07-13 09:01 - 2017-06-21 16:36 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2017-07-13 09:01 - 2017-06-21 16:35 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-07-13 09:01 - 2017-06-21 16:35 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2017-07-13 09:01 - 2017-06-21 16:35 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-07-13 09:01 - 2017-06-21 16:34 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-07-13 09:01 - 2017-06-21 16:34 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2017-07-13 09:01 - 2017-03-04 16:28 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-07-13 09:01 - 2017-03-04 16:27 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2017-07-13 09:01 - 2017-03-04 16:20 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-07-13 09:01 - 2017-03-04 16:19 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2017-07-13 09:01 - 2017-03-04 16:14 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2017-07-13 09:01 - 2016-10-15 13:45 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2017-07-13 09:01 - 2016-10-05 19:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2017-07-11 16:54 - 2017-07-29 11:25 - 00000000 ___HD C:\$WINDOWS.~BT
2017-07-11 15:03 - 2017-07-11 15:03 - 00021286 _____ C:\Users\boden\Documents\zzzBeauregard First Aid+original.csv
2017-07-11 15:02 - 2017-07-11 16:25 - 00015965 _____ C:\Users\boden\Documents\zzzBeauregard First Aid+Current_view+2017-07-11.csv.xlsx
2017-07-11 14:48 - 2017-07-11 15:00 - 00007206 _____ C:\Users\boden\Documents\zzzBeauregard First Aid+Current_view+2017-07-11.csv
2017-07-11 12:26 - 2017-07-11 15:00 - 01016270 _____ C:\Users\boden\Documents\zzzBeauregard First Aid+2017-07-11.csv
2017-07-11 11:20 - 2017-07-11 15:00 - 00003032 _____ C:\Users\boden\Downloads\Ad group report.csv
2017-07-11 10:21 - 2017-07-11 10:21 - 00027618 _____ C:\Users\boden\Downloads\whitecard dashboard.pdf
2017-07-06 07:59 - 2017-04-22 07:53 - 00029376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2017-07-06 07:59 - 2017-04-22 07:53 - 00018600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2017-07-06 07:59 - 2017-04-22 07:50 - 00030912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2017-07-06 07:59 - 2017-04-22 07:50 - 00018592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll
2017-07-06 07:59 - 2017-04-12 04:27 - 00993632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2017-07-06 07:59 - 2017-04-12 04:27 - 00690008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll
2017-07-06 07:59 - 2017-03-16 04:15 - 00987840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2017-07-06 07:59 - 2017-03-16 04:15 - 00485576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll
2017-07-06 07:54 - 2017-07-06 07:54 - 00000000 ____D C:\Users\boden\Downloads\AcerCareCenter_Win10
2017-07-06 07:46 - 2017-07-06 07:46 - 00001854 _____ C:\Users\boden\Desktop\Spotify.lnk
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\DefaultAppPool\Desktop\Removed Apps.html
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\Classic .NET AppPool\Desktop\Removed Apps.html
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\.NET v4.5\Desktop\Removed Apps.html
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\.NET v4.5 Classic\Desktop\Removed Apps.html
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\.NET v2.0\Desktop\Removed Apps.html
2017-07-06 02:49 - 2017-07-14 08:05 - 00006270 _____ C:\Users\.NET v2.0 Classic\Desktop\Removed Apps.html
2017-07-06 02:43 - 2017-07-16 16:29 - 00000000 ____D C:\Intel
2017-07-06 02:24 - 2017-07-06 02:24 - 00376528 _____ (Microsoft Corporation) C:\Users\boden\Downloads\RefreshWindowsTool.exe
2017-07-06 02:24 - 2017-07-06 02:24 - 00376528 _____ (Microsoft Corporation) C:\Users\boden\Downloads\RefreshWindowsTool (1).exe
2017-07-06 01:54 - 2017-07-06 01:55 - 00008911 _____ C:\Users\boden\Documents\covernsopns.xlsx
2017-07-05 22:01 - 2017-07-05 22:19 - 287917400 _____ (Seagate) C:\Users\boden\Downloads\DiscWizardSetup-1806036.en (1).exe
2017-07-05 21:33 - 2017-07-05 21:57 - 11645800 _____ (Paragon Software ) C:\Users\boden\Downloads\HFS4WIN.exe
2017-07-05 20:46 - 2017-07-05 21:33 - 156794456 _____ (Seagate) C:\Users\boden\Downloads\Seagate_Dashboard_Installer (1).exe
2017-07-05 20:45 - 2017-07-05 21:15 - 164092172 _____ (Seagate) C:\Users\boden\Downloads\DiscWizardSetup-1806036.en.exe.lwhsqhj.partial
2017-07-05 20:44 - 2017-07-05 20:48 - 26157600 _____ C:\Users\boden\Downloads\SeaToolsforWindowsSetup.exe
2017-07-05 14:45 - 2017-07-05 14:45 - 00738368 _____ (Oracle Corporation) C:\Users\boden\Downloads\JavaSetup8u131 (1).exe
2017-07-05 13:30 - 2017-07-05 13:30 - 02633931 _____ (Australian Taxation Office) C:\Users\boden\Downloads\AUSkeyInstaller (1).exe
2017-07-05 11:31 - 2017-07-05 11:31 - 00088387 _____ C:\Users\boden\Downloads\4645034773357.pdf
2017-07-05 11:30 - 2017-07-05 11:31 - 65659968 _____ (Oracle Corporation) C:\Users\boden\Downloads\jre-8u131-windows-x64.exe
2017-07-05 11:28 - 2017-07-05 11:28 - 00066508 _____ C:\Users\boden\Downloads\7105109592129.pdf
2017-07-05 11:20 - 2017-07-05 11:21 - 01027968 _____ (Symantec Corporation) C:\Users\boden\Downloads\NortonNSBUDownloader.exe
2017-07-05 00:20 - 2017-07-05 00:20 - 00453170 _____ C:\Users\boden\Downloads\SEMrush-PDF-report-f9b506040da7786adb915a036a85156cb99108ec02f078b3d7ab9bf205723627.pdf
2017-07-05 00:05 - 2017-07-05 00:05 - 00738368 _____ (Oracle Corporation) C:\Users\boden\Downloads\JavaSetup8u131.exe
2017-07-05 00:00 - 2017-07-05 00:00 - 00384211 _____ C:\Users\boden\Downloads\NEIS Mentoring Report Bodene.pdf
2017-07-04 23:43 - 2017-07-04 23:43 - 00266772 _____ C:\Users\boden\Downloads\NEIS Income Statement Form_Signed.pdf
2017-07-04 23:34 - 2017-07-04 23:34 - 00228236 _____ C:\Users\boden\Downloads\NEIS Income Statement Form.pdf
2017-07-04 22:05 - 2017-07-04 22:05 - 00738880 _____ (Oracle Corporation) C:\Users\boden\Downloads\jre-8u131-windows-i586-iftw (2).exe
2017-07-04 22:05 - 2017-07-04 22:05 - 00738880 _____ (Oracle Corporation) C:\Users\boden\Downloads\jre-8u131-windows-i586-iftw (1).exe
2017-07-04 22:02 - 2017-07-04 22:02 - 02633931 _____ (Australian Taxation Office) C:\Users\boden\Downloads\AUSkeyInstaller.exe
2017-07-04 21:49 - 2017-07-04 21:49 - 00738880 _____ (Oracle Corporation) C:\Users\boden\Downloads\jre-8u131-windows-i586-iftw.exe
2017-07-04 21:38 - 2017-07-04 21:38 - 00049225 _____ C:\Users\boden\Downloads\Bobo's 4 U Pty Ltd - Chart of Accounts.pdf
2017-07-04 21:09 - 2017-07-04 21:09 - 00072008 _____ C:\Users\boden\Downloads\Activity Statement for Beauregard First Aid 03Apr2017-05Jul2017.pdf
2017-07-04 21:04 - 2017-07-04 21:04 - 00070753 _____ C:\Users\boden\Downloads\Statement for Beauregard First Aid  As At 05Jul2017.pdf
2017-07-04 21:02 - 2017-07-04 21:02 - 00071474 _____ C:\Users\boden\Downloads\Activity Statement for Beauregard First Aid 01Apr2017-05Jul2017.pdf
2017-07-04 19:57 - 2017-07-04 19:57 - 00115630 _____ C:\Users\boden\Downloads\00354259-A1D3-40D5-A08E-237FD25927B7.pdf
2017-07-04 19:56 - 2017-07-04 19:56 - 00103095 _____ C:\Users\boden\Downloads\00352922-1957-4292-955E-563A2E6A9B31 (2).pdf
2017-07-04 19:56 - 2017-07-04 19:56 - 00103095 _____ C:\Users\boden\Downloads\00352922-1957-4292-955E-563A2E6A9B31 (1).pdf
2017-07-04 19:55 - 2017-07-04 19:55 - 00199011 _____ C:\Users\boden\Downloads\00351292-C0C5-4367-BFB1-348936E9B444 (2).pdf
2017-07-04 19:53 - 2017-07-04 19:53 - 00136413 _____ C:\Users\boden\Downloads\0034FAEA-6B45-4762-9929-3F008C50CA48 (2).pdf
2017-07-04 19:51 - 2017-07-04 19:51 - 00199011 _____ C:\Users\boden\Downloads\00351292-C0C5-4367-BFB1-348936E9B444 (1).pdf
2017-07-04 19:49 - 2017-07-04 19:49 - 00103095 _____ C:\Users\boden\Downloads\00352922-1957-4292-955E-563A2E6A9B31.pdf
2017-07-04 19:48 - 2017-07-04 19:48 - 00199011 _____ C:\Users\boden\Downloads\00351292-C0C5-4367-BFB1-348936E9B444.pdf
2017-07-04 19:47 - 2017-07-04 19:47 - 00136413 _____ C:\Users\boden\Downloads\0034FAEA-6B45-4762-9929-3F008C50CA48 (1).pdf
2017-07-04 19:46 - 2017-07-04 19:46 - 00117775 _____ C:\Users\boden\Downloads\0034CACC-D05E-4657-A526-C6085FA1CE87 (3).pdf
2017-07-04 19:46 - 2017-07-04 19:46 - 00105756 _____ C:\Users\boden\Downloads\0034E0CE-D1BE-4AE1-BC78-8A639C94DA0E (2).pdf
2017-07-04 19:45 - 2017-07-04 19:45 - 00117775 _____ C:\Users\boden\Downloads\0034CACC-D05E-4657-A526-C6085FA1CE87 (2).pdf
2017-07-04 15:05 - 2017-07-04 15:05 - 00005058 _____ C:\Users\boden\Downloads\Analytics All Web Site Data Queries 20170625-20170701 20170618-20170624.xlsx
2017-07-04 15:01 - 2017-07-04 15:01 - 00005505 _____ C:\Users\boden\Downloads\Analytics All Web Site Data Queries 20170601-20170630 20170502-20170531.xlsx
2017-07-04 12:08 - 2017-07-04 12:08 - 00021406 _____ C:\Users\boden\Documents\Jims Building Maintenance+Current_view+2017-07-043.csv
2017-07-04 11:50 - 2017-07-04 11:50 - 00051234 _____ C:\Users\boden\Documents\Jims Building Maintenance+Current_view+2017-07-041.csv
2017-07-04 11:23 - 2017-07-04 12:05 - 00015582 _____ C:\Users\boden\Documents\Jims Building Maintenance+Current_view+2017-07-04.csv
2017-07-03 10:05 - 2017-07-03 10:09 - 00041984 _____ C:\Users\boden\Documents\Beauregard First Aid kits 301s v2.0.xls
2017-07-03 06:13 - 2017-07-03 06:13 - 00047616 _____ C:\Users\boden\Documents\Beauregard First Aid kits 301s.xls
2017-07-02 19:19 - 2017-07-02 19:19 - 01164944 _____ C:\Users\boden\Downloads\drfone-for-ios_setup_full1291.exe
2017-07-01 15:14 - 2017-07-01 15:16 - 74520472 _____ (Logitech, Inc.) C:\Users\boden\Downloads\lws280.exe
2017-07-01 13:21 - 2017-07-01 13:21 - 00136236 _____ C:\Users\boden\Downloads\jims neg report .07.txt
2017-07-01 12:58 - 2017-07-01 12:58 - 00161448 _____ C:\Users\boden\Downloads\Search term report (8).csv
2017-07-01 12:40 - 2017-07-06 07:37 - 01130328 _____ (Google Inc.) C:\Users\boden\Downloads\GoogleAdWordsEditorSetup (1).exe
2017-07-01 12:34 - 2017-07-01 12:40 - 62513630 _____ C:\Users\boden\Downloads\Shadow Values.zip
2017-07-01 12:33 - 2017-07-01 12:38 - 57051289 _____ C:\Users\boden\Downloads\Unplug.zip
2017-07-01 12:33 - 2017-07-01 12:37 - 59439317 _____ C:\Users\boden\Downloads\Presenters Pro Formula.zip
2017-07-01 12:20 - 2017-07-01 12:20 - 00298670 _____ C:\Users\boden\Downloads\RAMMap.zip
2017-07-01 10:37 - 2017-07-01 10:37 - 00765244 _____ C:\Users\boden\Downloads\WY_Acer_DT_As_1Y_EMEA_DC.11411.02K_v2.pdf
2017-07-01 09:33 - 2017-07-15 12:35 - 00000000 ____D C:\OEM
2017-07-01 09:31 - 2017-07-01 09:31 - 00000000 ____D C:\Users\boden\Desktop\AcerCareCenter_Win10
2017-07-01 09:30 - 2017-07-01 09:30 - 31923924 _____ C:\Users\boden\Downloads\AcerCareCenter_Win10.zip

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-30 00:29 - 2017-05-06 22:00 - 00000000 ____D C:\Users\boden\AppData\LocalLow\Mozilla
2017-07-29 15:19 - 2017-03-28 02:07 - 00000000 ____D C:\Users\boden\.ScreamingFrogSEOSpider
2017-07-29 13:10 - 2017-04-09 23:14 - 00001024 _____ C:\Users\boden\.rnd
2017-07-28 02:02 - 2016-12-09 23:33 - 00000000 ___RD C:\Users\boden\Dropbox
2017-07-27 16:29 - 2016-12-09 19:17 - 00000000 ___RD C:\Users\boden\OneDrive
2017-07-27 14:10 - 2017-01-13 21:54 - 00000000 ____D C:\Users\boden\Downloads\HP Downloads
2017-07-18 09:51 - 2017-05-25 07:48 - 00000000 ____D C:\Users\Public\Documents\Wondershare
2017-07-15 07:00 - 2016-12-09 19:16 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-07-15 04:43 - 2014-08-28 03:44 - 00031280 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\VirtualButtons.sys
2017-07-15 04:36 - 2014-08-28 03:44 - 00051368 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynRMIHID.sys
2017-07-15 01:19 - 2014-11-12 14:07 - 00115704 _____ (GenesysLogic) C:\WINDOWS\system32\Drivers\GeneStor.sys
2017-07-14 08:34 - 2017-03-16 05:22 - 01414656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2017-07-14 08:34 - 2017-03-16 05:22 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2017-07-14 08:34 - 2016-10-30 00:09 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\snmp.exe
2017-07-14 08:34 - 2016-10-30 00:08 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmp.exe
2017-07-14 08:34 - 2016-10-14 13:00 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\snmpsnap.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntwin.exe
2017-07-14 08:34 - 2016-07-16 21:44 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evntwin.exe
2017-07-14 08:34 - 2016-07-16 21:44 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntagnt.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2017-07-14 08:34 - 2016-07-16 21:44 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2017-07-14 08:34 - 2016-07-16 21:44 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evntagnt.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2017-07-14 08:34 - 2016-07-16 21:44 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hostmib.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqise.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmmib2.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hostmib.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqise.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lmmib2.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2017-07-14 08:34 - 2016-07-16 21:44 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntcmd.exe
2017-07-14 08:34 - 2016-07-16 21:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evntcmd.exe
2017-07-14 08:34 - 2016-07-16 21:44 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64mib.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2017-07-14 08:34 - 2016-07-16 21:44 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpmib.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\snmpmib.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2017-07-14 08:34 - 2016-07-16 21:44 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2017-07-14 08:34 - 2016-07-16 21:43 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpsnap.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2017-07-14 08:34 - 2016-07-16 21:43 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00107882 _____ C:\WINDOWS\SysWOW64\mib_ii.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00107882 _____ C:\WINDOWS\system32\mib_ii.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2017-07-14 08:34 - 2016-07-16 21:43 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2017-07-14 08:34 - 2016-07-16 21:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2017-07-14 08:34 - 2016-07-16 21:43 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2017-07-14 08:34 - 2016-07-16 21:43 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpdsvc.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00048593 _____ C:\WINDOWS\SysWOW64\hostmib.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00048593 _____ C:\WINDOWS\system32\hostmib.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2017-07-14 08:34 - 2016-07-16 21:43 - 00034317 _____ C:\WINDOWS\SysWOW64\msiprip2.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00034317 _____ C:\WINDOWS\system32\msiprip2.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00030448 _____ C:\WINDOWS\SysWOW64\mcastmib.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00030448 _____ C:\WINDOWS\system32\mcastmib.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspperf.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2017-07-14 08:34 - 2016-07-16 21:43 - 00026236 _____ C:\WINDOWS\SysWOW64\wins.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00026236 _____ C:\WINDOWS\system32\wins.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2017-07-14 08:34 - 2016-07-16 21:43 - 00026100 _____ C:\WINDOWS\SysWOW64\lmmib2.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00026100 _____ C:\WINDOWS\system32\lmmib2.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspperf.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\simptcp.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2017-07-14 08:34 - 2016-07-16 21:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\infoadmn.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00022462 _____ C:\WINDOWS\SysWOW64\rfc2571.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00022462 _____ C:\WINDOWS\system32\rfc2571.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00021271 _____ C:\WINDOWS\SysWOW64\http.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00021271 _____ C:\WINDOWS\system32\http.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\infoadmn.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00015799 _____ C:\WINDOWS\SysWOW64\ipforwd.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00015799 _____ C:\WINDOWS\system32\ipforwd.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00015032 _____ C:\WINDOWS\SysWOW64\authserv.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00015032 _____ C:\WINDOWS\system32\authserv.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00014032 _____ C:\WINDOWS\SysWOW64\accserv.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00014032 _____ C:\WINDOWS\system32\accserv.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00013767 _____ C:\WINDOWS\SysWOW64\msipbtp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00013767 _____ C:\WINDOWS\system32\msipbtp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\infoctrs.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\infoctrs.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2017-07-14 08:34 - 2016-07-16 21:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00006179 _____ C:\WINDOWS\SysWOW64\ftp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00006179 _____ C:\WINDOWS\system32\ftp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2017-07-14 08:34 - 2016-07-16 21:43 - 00004597 _____ C:\WINDOWS\SysWOW64\dhcp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00004597 _____ C:\WINDOWS\system32\dhcp.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00004411 _____ C:\WINDOWS\SysWOW64\smi.mib
2017-07-14 08:34 - 2016-07-16 21:43 - 00004411 _____ C:\WINDOWS\system32\smi.mib
2017-07-14 08:05 - 2017-03-06 19:34 - 00007248 _____ C:\Users\boden\Desktop\Removed Apps.html
2017-07-14 08:05 - 2017-03-06 19:34 - 00006270 _____ C:\Users\defaultuser0\Desktop\Removed Apps.html
2017-07-06 20:33 - 2016-07-16 21:43 - 00157696 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2017-07-06 20:33 - 2016-07-16 16:04 - 00120320 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2017-07-06 20:32 - 2016-07-16 16:04 - 00142848 ____N (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2017-07-05 19:53 - 2017-03-16 19:22 - 14694000 _____ (Seagate) C:\Users\boden\Downloads\Seagate-Media.exe
2017-07-05 18:44 - 2017-01-15 01:52 - 00000000 ____D C:\Users\boden\Documents\Outlook Files
2017-07-05 14:36 - 2017-03-13 06:24 - 00000000 ____D C:\Users\boden\Downloads\passrecenc (1)
2017-07-05 14:31 - 2017-03-05 06:13 - 00000000 ____D C:\Users\boden\Downloads\Unlockers
2017-07-05 14:30 - 2017-03-05 07:01 - 00014408 _____ C:\Users\boden\Downloads\iepv.zip
2017-07-05 14:27 - 2017-03-05 05:23 - 00011473 _____ C:\Users\boden\Downloads\mspass.zip
2017-07-05 14:25 - 2017-03-13 06:22 - 00011972 _____ C:\Users\boden\Downloads\mailpv.zip
2017-07-05 11:35 - 2017-01-27 05:18 - 00001378 _____ C:\Users\boden\Desktop\Norton Installation Files.lnk
2017-07-05 11:21 - 2017-01-27 05:18 - 00000000 ____D C:\Users\Public\Downloads\Norton
2017-07-05 00:02 - 2017-02-23 13:09 - 00199958 _____ C:\Users\boden\Downloads\Confirmation of mentoring.pdf
2017-07-01 10:31 - 2017-03-16 10:41 - 00000000 ____D C:\Users\boden\Documents\New folder

==================== Files in the root of some directories =======

2017-07-27 23:20 - 2017-07-27 23:24 - 0000600 _____ () C:\Users\boden\AppData\Local\PUTTY.RND
2017-07-14 07:59 - 2017-07-14 07:59 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
2017-07-14 18:22 - 2017-07-14 18:22 - 0007224 _____ () C:\Users\boden\AppData\Local\Temp\BullseyeCoverage-2-x86.dll
2017-07-29 23:12 - 2017-07-29 23:12 - 0740416 _____ (Oracle Corporation) C:\Users\boden\AppData\Local\Temp\jre-8u144-windows-au.exe
2017-07-20 16:55 - 2017-07-20 16:56 - 79157227 _____ (Wondershare Software Co.,Ltd.                               ) C:\Users\boden\AppData\Local\Temp\PDFelement-ocr.exe
2017-07-27 16:34 - 2016-10-25 16:49 - 0032768 _____ () C:\Users\boden\AppData\Local\Temp\shutdown1501137244.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-07-24 12:08

==================== End of FRST.txt ============================

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-07-2017
Ran by bodene (30-07-2017 01:32:49)
Running from C:\Users\boden\Desktop
Windows 10 Home Version 1607 (X64) (2017-07-13 22:05:49)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

admin (S-1-5-21-997882171-2795867351-1868742580-1007 - Limited - Enabled)
Administrator (S-1-5-21-997882171-2795867351-1868742580-500 - Administrator - Disabled)
bodene (S-1-5-21-997882171-2795867351-1868742580-1001 - Administrator - Enabled) => C:\Users\boden
carol (S-1-5-21-997882171-2795867351-1868742580-1003 - Limited - Disabled)
DefaultAccount (S-1-5-21-997882171-2795867351-1868742580-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-997882171-2795867351-1868742580-1000 - Limited - Enabled) => C:\Users\defaultuser0
Guest (S-1-5-21-997882171-2795867351-1868742580-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-997882171-2795867351-1868742580-1005 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3029 - Acer Incorporated)
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.)
Assessments on Client (HKLM-x32\...\{A0255149-7406-2BAD-6C12-806FB0DBC387}) (Version: 10.0.26624 - Microsoft) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3011 - Acer Incorporated)
Dropbox (HKLM-x32\...\Dropbox) (Version: 31.3.23 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.65.1 - Dropbox, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
HP DeskJet 3630 series Basic Device Software (HKLM\...\{2125FB8B-5542-495A-B0F7-CD6DDBE99C2A}) (Version: 40.11.1107.1739 - HP Inc.)
HP DeskJet 3630 series Help (HKLM-x32\...\{5F074370-FEB0-4477-820F-A59DF28A933E}) (Version: 35.0.0 - Hewlett Packard)
HP Dropbox Plugin (HKLM-x32\...\{D12BC084-97D6-438A-AA7C-5962608D17A0}) (Version: 36.0.41.58587 - HP)
HP Google Drive Plugin (HKLM-x32\...\{BFA42100-DB54-467A-BB87-CF70732B4065}) (Version: 36.0.41.58587 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1153 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation)
Intel® Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.253.0 - Intel Corporation)
Intel® Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.1.0.21 - Intel Corporation)
Intel® Wireless Bluetooth® (HKLM-x32\...\{31C74FA2-2AB9-41C3-BFBE-693283E4C28B}) (Version: 17.1.1527.1534 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{03929cf1-3ae4-4765-b8b3-32b8e2e26a8d}) (Version: 19.60.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{aa2c2346-d0c0-4d3e-9ab1-11a48b4cb9f3}) (Version: 19.20.3 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
iTunes (HKLM\...\{02F95875-9527-49CC-B32F-970ADAEBD1EF}) (Version: 12.6.2.20 - Apple Inc.)
Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Kits Configuration Installer (HKLM-x32\...\{0275DC52-C83E-3142-D2EF-70877F885663}) (Version: 10.0.26624 - Microsoft) Hidden
Malwarebytes version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
Microsoft InfoPath 2013 (HKLM\...\Office15.InfoPathr) (Version: 15.0.4753.1001 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.8229.2103 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-997882171-2795867351-1868742580-1001\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation)
Microsoft SharePoint Designer 2013 (HKLM\...\Office15.SharePointDesigner) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM-x32\...\{D441BD04-E548-4F8E-97A4-1B66135BAAA8}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server 2012 (HKLM-x32\...\Microsoft SQL Server SQLServer2012) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Setup (English) (HKLM-x32\...\{CEA86648-87FA-4775-8F3B-A57F720BAE85}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom  (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Code (HKLM-x32\...\{F8A2A208-72B3-4D61-95FC-8A65D340689B}_is1) (Version: 1.14.2 - Microsoft Corporation)
Microsoft VSS Writer for SQL Server 2012 (HKLM\...\{3E0DD83F-BE4C-4478-86A0-AD0D79D1353E}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Web Platform Installer 5.0 (HKLM\...\{4D84C195-86F0-4B34-8FDE-4A17EB41306A}) (Version: 5.0.50430.0 - Microsoft Corporation)
Mozilla Firefox 54.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 en-US)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 54.0.1 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8229.2103 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8229.2103 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4753.1001 - Microsoft Corporation) Hidden
Product Improvement Study for HP DeskJet 3630 series (HKLM\...\{416B7D0C-0AEC-4FE6-AE40-4E12857CCA55}) (Version: 40.11.1107.1739 - HP Inc.)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 10.0.1.0 - Qualcomm Atheros)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.65 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7614 - Realtek Semiconductor Corp.)
Screaming Frog SEO Spider (HKLM-x32\...\Screaming Frog SEO Spider) (Version: 8.0 - Screaming Frog Ltd)
SeoTools for Excel (HKLM-x32\...\{4D84A65F-37DE-49AE-BFA4-42701EE9E818}) (Version: 7.0.13.0 - Bosma Interactive AB)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0000-1000-0000000FF1CE}_Office15.SharePointDesigner_{67A083C6-0A9E-48E8-BC90-C1EDA8028ED4}) (Version:  - Microsoft)
SQL Server 2012 Common Files (HKLM-x32\...\{124D51A1-F3C2-45AE-B812-D3CA71247093}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server 2012 Common Files (HKLM-x32\...\{7D29ED63-84F9-4EC7-B49F-994A3A3195B2}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Services (HKLM-x32\...\{87D50333-E534-493A-8E98-0A49BC28F64B}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Services (HKLM-x32\...\{C22613C2-C7A4-4761-A906-116ECD4E7477}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Shared (HKLM-x32\...\{54F84805-0116-467F-8713-899DFC472235}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Shared (HKLM-x32\...\{D0F44C37-A22B-4733-BBA7-86C9F4988725}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
SQL Server Browser for SQL Server 2012 (HKLM-x32\...\{4B9E6EB0-0EED-4E74-9479-F982C3254F71}) (Version: 11.0.2100.60 - Microsoft Corporation)
Sql Server Customer Experience Improvement Program (HKLM-x32\...\{30CA21F2-901A-44DB-A43F-FC31CD0F2493}) (Version: 11.0.2100.60 - Microsoft Corporation) Hidden
Toolkit Documentation (HKLM-x32\...\{A23DA031-0609-72AD-44BB-4FD8F5DDF32E}) (Version: 10.0.26624 - Microsoft) Hidden
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.InfoPathr_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.SharePointDesigner_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version:  - Microsoft)
Volume Activation Management Tool (HKLM-x32\...\{274D1254-0E5E-9951-3EEE-315D4DA9C1C5}) (Version: 10.0.26624 - Microsoft) Hidden
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Windows Assessment and Deployment Kit - Windows 10 (HKLM-x32\...\{c09c49ab-d6a5-4543-bb31-639821977b42}) (Version: 10.0.26624 - Microsoft Corporation)
Wondershare Helper Compact 2.5.2 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare)
Wondershare PDFelement 6 Pro(Build 6.1.3) (HKLM-x32\...\{B026557A-EF19-4812-8A79-B30F94AA0A78}_is1) (Version: 6.1.3.2390 - Wondershare Software Co.,Ltd.)
WPT Redistributables (HKLM-x32\...\{C0AF2889-B34A-E9E1-2A96-1A9AF05AEFA9}) (Version: 10.0.26624 - Microsoft) Hidden
WPTx64 (HKLM-x32\...\{D7AFB282-B339-7B41-8763-B7A77B1F4BE2}) (Version: 10.0.26624 - Microsoft) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-20] (Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-09-21] (Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0CBFF045-D4F1-4ACD-85D2-9241F30312FB} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-07-18] (Microsoft Corporation)
Task: {12998005-E5E9-496F-B47B-8A32AE00DA29} - System32\Tasks\HPCustParticipation HP DeskJet 3630 series => C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPCustPartic.exe [2017-02-08] (HP Inc.)
Task: {145E2D8F-E4FA-4816-A343-EF017DDE06D4} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2017-05-24] ()
Task: {1A6439AB-198E-4563-81DA-8B2A46D4686B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2015-08-19] (Microsoft Corporation)
Task: {1A9251D0-1486-4EED-93F4-033EAC9158CC} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-07-18] ()
Task: {1D324115-1227-4A78-9855-C3EDE2319EAE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.)
Task: {1F644C84-506F-4621-907F-8ED7181A55A2} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2017-05-24] (Acer Incorporated)
Task: {344D36A5-6315-49C1-AD6F-413C2F38717C} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2017-05-24] ()
Task: {3E9F3AF6-6761-4133-83BB-BBFEF23DB976} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-25] (Google Inc.)
Task: {5303B1A7-2DD9-425E-A381-4DE263DDA0E9} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.)
Task: {80FE52B0-5384-4A30-BDB3-2165848CB446} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-07-28] (Microsoft Corporation)
Task: {8F37CB84-980E-48AD-B0A6-86735498D5C0} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-07-15] (Dropbox, Inc.)
Task: {9C2516DD-A3B5-44E1-9FA8-FC432ADA38EF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-07-18] (Microsoft Corporation)
Task: {B8B3EE36-94B8-4511-B880-9B3CC1A81F26} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2015-08-19] (Microsoft Corporation)
Task: {B9B1117C-757E-4E93-B3CC-D9C1DF14A829} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-07-28] (Microsoft Corporation)
Task: {C19C587B-A543-4E2C-AA3E-2A4D7A02BF60} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2015-08-19] (Microsoft Corporation)
Task: {D642AAA8-2619-4220-8E04-2BD8F3531922} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-25] (Google Inc.)
Task: {DB7AF270-D942-4933-A053-C22D0C01248F} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [2017-05-24] ()
Task: {F8DF6D86-06C3-4382-94C7-99DC2D7CBAA0} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-07-18] ()
Task: {FB1CF051-C40A-4441-8F38-54CE400744A7} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-07-15] (Dropbox, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Chrome Apps & Extensions Developer Tool.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=ohmmkhmmmpcnpikjeljgnaoabkaalbgc
ShortcutWithArgument: C:\Users\boden\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\WASP.crawler_ Analytics Solution Profiler.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=fdogdfpioiggoomoobmfkgckbkheckik

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 21:42 - 2016-07-16 21:42 - 00231424 ____N () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-07-13 09:01 - 2017-06-21 17:48 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-16 17:06 - 2017-07-16 17:10 - 02260432 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-07-15 12:57 - 2017-07-18 09:35 - 08932040 _____ () C:\Program Files\Microsoft Office\root\Office16\1033\GrooveIntlResource.dll
2015-09-21 16:19 - 2015-09-21 16:19 - 00405424 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-10-14 12:59 - 2016-10-14 12:59 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-16 05:20 - 2017-03-04 16:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-16 05:21 - 2017-03-04 16:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-16 05:21 - 2017-03-04 16:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-16 05:21 - 2017-03-04 16:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-07-13 09:01 - 2017-06-21 16:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-07-13 09:01 - 2017-06-21 16:35 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-07-13 09:01 - 2017-06-21 16:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-07-18 14:02 - 2017-07-18 14:02 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-07-18 14:02 - 2017-07-18 14:02 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-07-18 14:02 - 2017-07-18 14:02 - 43573248 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-07-18 14:02 - 2017-07-18 14:02 - 02435584 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\skypert.dll
2017-05-24 20:11 - 2017-05-24 20:11 - 04645168 _____ () C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
2017-07-14 16:31 - 2017-07-14 16:33 - 13207232 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8241.41275.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Core.dll
2017-07-14 16:31 - 2017-07-14 16:33 - 01199816 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8241.41275.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll
2017-07-14 16:26 - 2017-07-14 16:26 - 03139496 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11706.1001.26.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-07-26 12:56 - 2017-07-26 12:57 - 10631168 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11706.1001.26.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll
2017-07-26 12:56 - 2017-07-26 12:57 - 02640896 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11706.1001.26.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll
2017-07-21 02:09 - 2017-07-20 18:30 - 00746816 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll
2017-07-21 02:09 - 2017-07-20 18:30 - 01787200 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_crashpad.dll
2017-07-19 15:57 - 2017-07-20 18:30 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2017-07-21 02:09 - 2017-07-20 18:31 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00125904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2017-07-21 02:09 - 2017-07-20 18:31 - 01862992 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2017-07-21 02:09 - 2017-07-20 18:31 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00020432 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2017-07-19 15:57 - 2017-07-20 18:30 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00062784 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00040248 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00392656 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2017-07-19 15:57 - 2017-07-20 18:33 - 00392512 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2017-07-21 02:09 - 2017-07-20 18:31 - 00022336 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00082264 _____ () C:\Program Files (x86)\Dropbox\Client\winenumhandles.compiled._WinEnumHandles.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00025432 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 03928896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 01826104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 01972024 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00171336 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00042816 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00531264 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00133432 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00224064 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00207680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00054608 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00069968 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.pyd
2017-07-21 02:09 - 2017-07-20 18:31 - 00027488 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2017-07-19 15:57 - 2017-07-20 18:30 - 00349128 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00103232 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWinExtras.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00023896 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00025936 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2017-07-21 02:09 - 2017-07-20 18:32 - 00033112 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2017-07-21 02:09 - 2017-07-20 18:30 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2017-07-21 02:09 - 2017-07-20 18:31 - 00181056 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2017-07-19 15:57 - 2017-07-20 18:33 - 00030536 _____ () C:\Program Files (x86)\Dropbox\Client\wind3d11.compiled._wind3d11.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00024368 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2017-07-21 02:09 - 2017-07-20 18:32 - 01637688 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2017-07-19 15:57 - 2017-07-20 18:33 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00023368 _____ () C:\Program Files (x86)\Dropbox\Client\wincrashpad.compiled._Crashpad.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00546104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2017-07-21 02:09 - 2017-07-20 18:32 - 00357688 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2017-07-19 15:57 - 2017-07-20 18:33 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.shcore.compiled._winffi_shcore.pyd
2017-07-17 06:15 - 2016-10-08 16:48 - 01506304 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2017-07-17 06:15 - 2016-07-21 10:54 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2015-06-24 01:07 - 2015-06-24 01:07 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2ce.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-07-15 01:50 - 2017-07-15 01:49 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-997882171-2795867351-1868742580-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\boden\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg
HKU\S-1-5-80-4287524181-3401991209-718407576-1481970793-3068686015\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 61.9.133.193 - 61.9.134.49
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe
FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe
FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe
FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe
FirewallRules: [TCP Query User{52EAFF84-2309-41BD-943D-5512FD3D4D5F}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{A51B9CBA-70B6-4C2B-9486-D73208F3F6E7}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{527CF4B7-CC2C-4DBE-9695-1CB0BCAD8502}C:\program files (x86)\dropbox\client\dropbox.exe] => (Allow) C:\program files (x86)\dropbox\client\dropbox.exe
FirewallRules: [UDP Query User{DD07C0E9-47E0-4D89-93E4-DEBA9EBE2795}C:\program files (x86)\dropbox\client\dropbox.exe] => (Allow) C:\program files (x86)\dropbox\client\dropbox.exe
FirewallRules: [TCP Query User{FF92710D-8C33-42B6-B1B9-36BD068E158D}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{369B8DE1-0F32-48B3-9D18-F6A100431484}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
FirewallRules: [TCP Query User{183F4815-B4FA-4C7E-81E7-C0A4C4FF3A3B}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{6C8E6A77-F05C-4850-8A6C-072D4B8A9C9C}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{2F358F6D-0625-448F-83BF-ABBF968BF006}C:\program files\java\jre1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_131\bin\java.exe
FirewallRules: [UDP Query User{FD8B4CED-EC3A-48F7-AA6A-6AEB834EBFA0}C:\program files\java\jre1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_131\bin\java.exe
FirewallRules: [TCP Query User{0237FD95-CFC4-440F-BBED-67DD85EBC80D}C:\bita\apache2\bin\httpd.exe] => (Allow) C:\bita\apache2\bin\httpd.exe
FirewallRules: [UDP Query User{DD8781E9-9C7F-49C4-A71D-02BEFF346007}C:\bita\apache2\bin\httpd.exe] => (Allow) C:\bita\apache2\bin\httpd.exe
FirewallRules: [{BA92BD28-65A3-42FB-BD0F-843174984CC0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{FFD4DE3F-A860-430A-AB60-2968F719D82E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{2C5A7EFE-46F3-41A1-A779-D056784CB829}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{B498DE4C-BF92-4DDE-B6DD-A3452783948E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{BE7DEB9F-F348-4E83-BE8C-105174F2333A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{FDAF17A6-D4D5-47EA-83A6-95F58F7D4CBB}] => (Allow) C:\xampp\FileZillaFTP\FileZilla Server Interface.exe
FirewallRules: [{8C767DD6-87EF-439F-A739-78E4C3613A40}] => (Allow) C:\xampp\FileZillaFTP\FileZilla Server Interface.exe
FirewallRules: [{4A4EF915-8A3A-4F32-B15C-87062A17C91E}] => (Allow) C:\xampp\FileZillaFTP\FileZilla Server Interface.exe
FirewallRules: [{87C8E257-51E6-44EC-A895-B1A0F9F056A5}] => (Allow) C:\xampp\FileZillaFTP\FileZilla Server Interface.exe
FirewallRules: [{801901F3-AA4A-44F6-BB55-935B353CE73E}] => (Allow) C:\xampp\FileZillaFTP\FileZilla server.exe
FirewallRules: [{A9D0DB35-4CAE-4C1B-BCDD-3BA80B4D3997}] => (Allow) C:\xampp\FileZillaFTP\FileZilla server.exe
FirewallRules: [{F91E0302-9ACA-4A06-8FF4-0EDD02E91F1A}] => (Allow) C:\xampp\FileZillaFTP\FileZilla server.exe
FirewallRules: [{B4E02F2E-88DB-4F1C-A3F6-7BB1C56ACA32}] => (Allow) C:\xampp\FileZillaFTP\FileZilla server.exe
FirewallRules: [{3980882E-3EBE-4D17-9241-CEB9B2F4472F}] => (Allow) C:\Bita\FileZilla Server\FileZilla Server.exe
FirewallRules: [{DF693053-2040-42FB-A715-8C56384A6306}] => (Allow) C:\Bita\FileZilla Server\FileZilla Server.exe
FirewallRules: [{B2067A52-C265-4740-85C8-02B2BD591AB7}] => (Allow) C:\Bita\FileZilla Server\FileZilla Server.exe
FirewallRules: [{208B7F9A-EED5-4169-8A11-5F3A8E244AB9}] => (Allow) C:\Bita\FileZilla Server\FileZilla Server.exe
FirewallRules: [TCP Query User{D4333E4C-3FD8-4BE5-9E36-52650CB497DD}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{0B516784-0660-4646-9243-5720BBDB8E20}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{FD682F7C-747E-42DF-82BC-011D661AF63C}C:\program files (x86)\microsoft vs code\code.exe] => (Allow) C:\program files (x86)\microsoft vs code\code.exe
FirewallRules: [UDP Query User{03D90AD9-E607-4279-B840-1C8A0E02D8A3}C:\program files (x86)\microsoft vs code\code.exe] => (Allow) C:\program files (x86)\microsoft vs code\code.exe
FirewallRules: [TCP Query User{EAC6E81A-E323-4C4D-9CA4-ECCDA401D3A2}C:\program files\hp\hp deskjet 3630 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp deskjet 3630 series\bin\hpnetworkcommunicatorcom.exe
FirewallRules: [UDP Query User{E49D8088-1F6E-4FF2-BE45-39A35EF24AD0}C:\program files\hp\hp deskjet 3630 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp deskjet 3630 series\bin\hpnetworkcommunicatorcom.exe
FirewallRules: [TCP Query User{6CB187DB-047D-4060-8F20-4FC01994EB03}C:\program files (x86)\dropbox\client\dropbox.exe] => (Allow) C:\program files (x86)\dropbox\client\dropbox.exe
FirewallRules: [UDP Query User{B2ACB510-780F-4CC0-9E01-83C55E9E4E54}C:\program files (x86)\dropbox\client\dropbox.exe] => (Allow) C:\program files (x86)\dropbox\client\dropbox.exe
FirewallRules: [TCP Query User{E22D0715-BD1C-4354-B211-39CBAC487B6E}C:\bita\wordpress-4.8-0\apache2\bin\httpd.exe] => (Allow) C:\bita\wordpress-4.8-0\apache2\bin\httpd.exe
FirewallRules: [UDP Query User{47554FA6-0BC9-478C-B8F2-1AF682E262BC}C:\bita\wordpress-4.8-0\apache2\bin\httpd.exe] => (Allow) C:\bita\wordpress-4.8-0\apache2\bin\httpd.exe
FirewallRules: [TCP Query User{FB4EE18C-8E4C-457A-B282-0CF5E992A5AC}C:\bita\fz client\filezilla ftp client\filezilla.exe] => (Allow) C:\bita\fz client\filezilla ftp client\filezilla.exe
FirewallRules: [UDP Query User{6097FDF9-A558-4438-863B-4D6105B89D62}C:\bita\fz client\filezilla ftp client\filezilla.exe] => (Allow) C:\bita\fz client\filezilla ftp client\filezilla.exe
FirewallRules: [{7D8010E9-A4CD-43AE-A6EE-11756F03660C}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS14E5\HPDiagnosticCoreUI.exe
FirewallRules: [{FBD7F235-14F5-4D00-B43D-F3C53F8C87FF}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS14E5\HPDiagnosticCoreUI.exe
FirewallRules: [{503D8505-7C86-42B0-9A1A-B9B0D18338AD}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS15D0\HPDiagnosticCoreUI.exe
FirewallRules: [{060A400A-5727-4380-84F8-3C6C645F6C96}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS15D0\HPDiagnosticCoreUI.exe
FirewallRules: [{50722432-5FF5-4F4D-9572-FD5AA6CAE80F}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\DeviceSetup.exe
FirewallRules: [{17497196-955C-46C3-80A7-C57246E2BF63}] => (Allow) LPort=5357
FirewallRules: [{82657CC6-5D09-4034-BD3E-0BEC4D85C4C1}] => (Allow) C:\Program Files\HP\HP DeskJet 3630 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{80839ADB-5106-4BA0-A666-B655F805C433}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS53A5\HPDiagnosticCoreUI.exe
FirewallRules: [{284B5F4B-FDE4-43F5-AC87-AE2B7D20416F}] => (Allow) C:\Users\boden\AppData\Local\Temp\7zS53A5\HPDiagnosticCoreUI.exe
FirewallRules: [TCP Query User{5B28EFB8-7F44-4026-B62C-F7E044985102}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{5BE13701-6A35-414D-8A78-7A246D52656E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe

==================== Restore Points =========================

27-07-2017 00:23:09 Installed AirPort
29-07-2017 15:36:04 Removed AirPort

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/30/2017 12:23:55 AM) (Source: SQLAgent$ADK) (EventID: 103) (User: )
Description: SQLServerAgent could not be started (reason: This installation of SQL Server Agent is disabled.  The edition of SQL Server that installed this service does not support SQL Server Agent.).

Error: (07/30/2017 12:23:54 AM) (Source: SQLAgent$ADK) (EventID: 324) (User: )
Description: OpenSQLServerInstanceRegKey:GetRegKeyAccessMask failed (reason: 2).

Error: (07/30/2017 12:23:54 AM) (Source: SQLAgent$ADK) (EventID: 324) (User: )
Description: OpenSQLServerInstanceRegKey:GetRegKeyAccessMask failed (reason: 2).

Error: (07/29/2017 11:40:59 PM) (Source: MsiInstaller) (EventID: 11500) (User: ACERLAPTOP)
Description: Product: Apple Mobile Device Support -- Error 1500. Another installation is in progress. You must complete that installation before continuing this one.

Error: (07/29/2017 11:34:12 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: ACERLAPTOP)
Description: Application or service 'Apple Mobile Device Service' could not be restarted.

Error: (07/29/2017 11:08:00 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Windows Assessment Toolkit\Memory Assessments\arm\memoryfp.exe".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/29/2017 11:07:59 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Windows Assessment Toolkit\Memory Assessments\arm64\memoryfp.exe".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/29/2017 11:07:55 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Windows Assessment Toolkit\Fundamental Assessments\arm\fas.exe".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/29/2017 11:07:55 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Windows Assessment Toolkit\Fundamental Assessments\arm64\fas.exe".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/29/2017 11:07:54 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Windows Assessment Toolkit\Energy\arm\energy.exe".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="arm",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.


System errors:
=============
Error: (07/30/2017 12:24:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The HomeGroup Provider service failed to start due to the following error:
The account specified for this service is different from the account specified for other services running in the same process.

Error: (07/30/2017 12:24:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The HomeGroup Provider service failed to start due to the following error:
The account specified for this service is different from the account specified for other services running in the same process.

Error: (07/30/2017 12:24:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (07/30/2017 12:24:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (07/30/2017 12:24:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (07/30/2017 12:24:00 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (07/30/2017 12:23:59 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (07/30/2017 12:23:56 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: The Routing and Remote Access service terminated with the following service-specific error:
The requested name is valid, but no data of the requested type was found.

Error: (07/30/2017 12:23:53 AM) (Source: RemoteAccess) (EventID: 20152) (User: )
Description: The currently configured authentication provider failed to load and initialize successfully. The requested name is valid, but no data of the requested type was found.

Error: (07/30/2017 12:23:52 AM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: The HomeGroupListener service terminated with the following service-specific error:
%%2147943479 = The account specified for this service is different from the account specified for other services running in the same process.


CodeIntegrity:
===================================
  Date: 2017-07-29 15:58:24.512
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-07-28 10:29:00.927
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-07-28 02:06:00.942
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-07-28 02:06:00.939
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2017-07-22 12:34:48.074
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel® Core™ i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 47%
Total physical RAM: 8107.33 MB
Available physical RAM: 4259.79 MB
Total Virtual: 16811.33 MB
Available Virtual: 12679.43 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:223.87 GB) (Free:70.61 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 050A220A)

Partition: GPT.

==================== End of Addition.txt ============================


  • 0

Advertisements


#2
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,216 posts
Hi bodene,

Welcome to Geeks to Go. My name is dbreeze and I'll be helping you with this problem. Before I get into the removal of malware / correction of your problem, I need you to be aware of the following:
  • Please read all of my response through at least once before attempting to follow the procedures described. I would recommend printing them out, if you can, as you can check off each step as you complete it. Also, as some of the cleaning may be done in Safe Mode and there will be no internet connection then, you will find that having the steps printed for reference speeds the cleaning process along. If there's anything you don't understand or isn't totally clear to you, please come back to me for clarification before you start those steps.
  • All of the assistants and staff at Geeks to Go are here on a volunteer basis; please respect our time given to the cause of helping others. If you are going to be away for more than 4 days, please let me know here. (I will do the same for you.) We do realize that 'life happens' and situations arise unexpectedly; we just ask that you keep us up to date. That being said, please notice the following Geeks to Go rule:
  • Posts that are not replied to in four (4) days will result in the topic being closed. We have not forgotten you; this is just an effort to keep the boards organized and flowing. To continue on your closed topic, please PM me or any Moderator to have the topic reactivated. If, at any time during our working together, I have not responded to you in 2 days (48 hours), then please PM me.
  • Malware removal is a complex, multiple step process; please stay with me on this thread (don't start another thread) until I declare that your logs are clean and you are good to go. The absence of apparent issues does not mean your system is clean; I will tell you when everything looks good for you to go and help you remove the tools we have used.
  • If any of the security programs on your system should give any warnings about the software tools I ask you to download and use, please do not be alarmed. All of the tools I will have you use are safe to use (as instructed) and malware free.
  • While we strive to disrupt your system as little as possible, things happen. If you can, it would be best to back up your personal files now (if you do not already have a backup). You can store these on a CD/DVD, USB drive or stick, anywhere but on your same system. This will save you from possible anguish later if something unforeseen happens.
  • Please do not run any other tools or scanners than what I ask you to. Some of the openly available software made for malware removal can make changes to your system that interfere with the cleaning of the malware, or even destroy your system. I will use only what the situation calls for and direct you in the proper use of that software.
  • Please do not attach any log files to your replies unless I specifically ask you. Instead please copy and paste so as to include the log in your reply. You can do this in separate posts if it's easier for you.


- Save ALL Tools to your Desktop-


All the tools that I will have you download should be placed on the desktop unless otherwise stated. If you are familiar with how to save files to the desktop then you can skip this step.

Since you are continuing with this step then I assume you are unfamiliar with saving files to your desktop. As a result it's easiest if you configure your browser(s) to download any tools to the desktop by default. Please use the appropriate instructions below depending on the browser you are using.
Chrome.JPGGoogle Chrome - Click the "Customize and control Google Chrome" button in the upper right-corner of the browser.Settings.JPG Choose Settings. at the bottom of the screen click the
"Show advanced settings..." link. Scroll down to find the Downloads section and click the Change... button. Select your desktop and click OK.
Firefox.JPGMozilla Firefox - Click the "Open Menu" button in the upper right-corner of the browser. Settings.JPG Choose Options. In the downloads section, click the Browse button, click on the Desktop folder
and the click the "Select Folder" button. Click OK to get out of the Options menu.
IE.jpgInternet Explorer - Click the Tools menu in the upper right-corner of the browser. Tools.JPG Select View downloads. Select the Options link in the lower left of the window. Click Browse and
select the Desktop and then choose the Select Folder button. Click OK to get out of the download options screen and then click Close to get out of the View Downloads screen.
NOTE: IE8 Does not support changing download locations in this manner. You will need to download the tool(s) to the default folder, usually Downloads, then copy them to the desktop.
 

Quoted from and used by permission of BrianDrab. Thank you.


Let's get started....


Let's see if we can get your network straightened out to begin with. The fastest and best way to do this is to Reset your Windows Firewall.

Start by clicking on START and typing Windows Firewall (followed by pressing ENTER key).
The following console should open:
Win_Firewall_with_Adv_Security.png
In the right hand column (Actions), please select Restore Default Policy. Follow the prompts and when the action is done, reboot your system.

How is your network now?
  • 0

#3
bodene

bodene

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts

Hi thanks for your response.

I have completed the reset and although the unknown phone not being there, everything is performing slow, jittery, the network adapter keeps stuffing up everytime I switch network, my printer printer one thing and then that's it.

 

Look forward to your response

Cheers


  • 0

#4
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,216 posts

.... the network adapter keeps stuffing up everytime I switch network.....

 
What do you mean by this? What networks are you switching to and from?
  • 0

#5
bodene

bodene

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts
Just between hotspot, an extender, the 5g and the 2.4.
  • 0

#6
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,216 posts

Please download NetAdapter Repair All in One from here to your desktop.  Right click on the file and select "Run as Administrator..." 

Once the utility loads and scans your network adapters, select the following items:

 

Flush DNS cache

Clear ARP/Route table

Internet Options - Clear SSL State

Enable LAN Adapters

Enable Wireless Adapters

Set Network Windows Services Default

 

After that, click on Run All Selected.  Allow the utility to complete its' work and then it will ask for a restart (reboot) of your system.  Do that and then Reboot the system a second time.

 

Tell me how your network is working now.


  • 0

#7
dbreeze

dbreeze

    Trusted Helper

  • Malware Removal
  • 2,216 posts

Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.


  • 0






Similar Topics


Also tagged with one or more of these keywords: malware, hacked, strange homegroup active

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP