Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

REMOVAL OF ADVANCED SYSTEM PROTECTOR


  • This topic is locked This topic is locked
6 replies to this topic

#1 MightyRambo

MightyRambo

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:42 AM

Posted 19 May 2014 - 05:19 PM

HI names kyle been getting tired of this ASP running in the background and taking up my time also know that it is a virus and not to be trusted. i have what u guys need while reading a few posts and have downloaded FRS and have the pages required if u dont mind taking a look at them and giving the fixlist.exe.


FRST
 
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-05-2014
Ran by Kdawg19956 (administrator) on MIGHTYRAMBO on 19-05-2014 16:55:07
Running from C:\Users\Kdawg19956\Downloads
Platform: Windows 8.1 (Update 1) (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
 
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ 
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ 
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(PCRx.com, LLC) C:\Program Files (x86)\24x7Help\App24x7Svc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Program Files\RrFilter\RrFilterService64.exe
(Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel® Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
() C:\Program Files\002\fpvoixdaog64.exe
() C:\Program Files (x86)\SerialTrunc\bin\utilSerialTrunc.exe
() C:\Program Files (x86)\SerialTrunc\bin\SerialTrunc.PurBrowse64.exe
() C:\Program Files (x86)\SerialTrunc\updateSerialTrunc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Visicom Media Inc.) C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filtering.exe
() C:\Program Files (x86)\SerialTrunc\bin\SerialTrunc.BrowserAdapter.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Systweak) C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe
(Microsoft Corporation) C:\Windows\System32\InputMethod\JPN\JpnIME.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DBRUpd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6846096 2012-11-19] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1253520 2012-11-19] (Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [5762408 2013-03-05] (Dell Inc.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11577216 2012-08-27] (Motorola Solutions, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-06-13] (Adobe Systems Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3010952 2012-12-21] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [102928 2012-10-23] (CyberLink Corp.)
HKLM-x32\...\Run: [Panda Security URL Filtering] => C:\ProgramData\Panda Security URL Filtering\Panda_URL_Filtering.exe [235072 2013-09-26] (Visicom Media Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2236816 2013-08-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PCFixSpeed] => C:\Program Files (x86)\PCFixSpeed\PCFixTray.exe [380504 2013-08-07] (Crawler.com)
HKLM-x32\...\Run: [24x7HELP] => C:\Program Files (x86)\24x7Help\App24x7Help.exe [1774160 2013-05-28] (Crawler, LLC)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-08-21] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-28] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe [32736 2013-10-19] (Panda Security, S.L.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [442712 2013-11-17] (Razer Inc.)
HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [uTorrent] => C:\Users\Kdawg19956\AppData\Roaming\uTorrent\uTorrent.exe [1266520 2014-05-06] (BitTorrent Inc.)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [SearchProtection] => C:\Users\Kdawg19956\AppData\Roaming\Search Protection\SearchProtection.EXE [832360 2013-09-03] (Spigot, Inc.)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [4287536 2013-07-31] ()
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [PC Health Kit] => C:\Program Files (x86)\PC Health Kit\PCHKLauncher.exe [199480 2013-03-08] (PC Health Labs)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [Tiny download manager] => C:\Users\Kdawg19956\AppData\Local\DM\TinyDM.exe [288728 2013-09-14] (http://www.tinydm.com/)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [iLivid] => C:\Users\Kdawg19956\AppData\Local\iLivid\iLivid.exe [6827008 2013-09-08] (Bandoo Media Inc.)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [General Downloader] => C:\Program Files (x86)\General Downloader\GD.exe [6500352 2013-08-08] ()
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [Xvid] => C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Kdawg19956\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\S-1-5-21-64267856-2629281669-3490879048-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DesktopWeatherAlerts.lnk
ShortcutTarget: DesktopWeatherAlerts.lnk -> C:\Users\Kdawg19956\AppData\Local\WeatherAlerts\DesktopWeatherAlertsApp.exe ()
Startup: C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
Startup: C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk
ShortcutTarget: Weather Alerts.lnk -> C:\Users\Kdawg19956\AppData\Local\WeatherAlerts\WeatherAlerts.exe (Local Weather LLC)
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - DefaultScope {254ABDF2-2FB6-4B76-85CF-41116487F4EB} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MDDCJS
SearchScopes: HKLM - {254ABDF2-2FB6-4B76-85CF-41116487F4EB} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MDDCJS
SearchScopes: HKLM-x32 - DefaultScope {4371A093-1834-496C-88AB-F45EB7734EFE} URL = 
SearchScopes: HKLM-x32 - {254ABDF2-2FB6-4B76-85CF-41116487F4EB} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MDDCJS
SearchScopes: HKCU - DefaultScope B805E4F73EA54D529A0EC9769559517F URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=293224&p={searchTerms}
SearchScopes: HKCU - B805E4F73EA54D529A0EC9769559517F URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=293224&p={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=C834681729278FDB&affID=122786&tsp=5037
SearchScopes: HKCU - {254ABDF2-2FB6-4B76-85CF-41116487F4EB} URL = 
SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://pandasecurityr.mystart.com/?source=5b97eeb3&v=4_0&tbp=rbox&toolbarid=pandasecuritytb&u=9A4D56470BF3AB5AE1810551D5FC8461&q={searchTerms}
SearchScopes: HKCU - {4371A093-1834-496C-88AB-F45EB7734EFE} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3310511&CUI=UN21399074492877622&UM=2
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://mysearch.sweetpacks.com?src=6&q={searchTerms}&barid=&
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Plugin for GeneralDownloader - {AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2} - C:\Users\Kdawg19956\AppData\Roaming\General Downloader\Extensions\IEPlugin64.dll (General World)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: RrSavings - {10AD2C61-0898-4348-8600-14A342F22AC3} - C:\Program Files (x86)\Rr Savings\RrSavings.dll ()
BHO-x32: PETN - {55524A30-83FF-49CF-AB33-E72A651BBE13} - C:\Users\Kdawg19956\AppData\Local\TidyNetwork\petn.dll ()
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: TidyNetwork.com - {7736C7FA-512D-11E2-B871-DEC36088709B} - C:\Users\Kdawg19956\AppData\Local\TidyNetwork.com\tidy2ie.dll ()
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: WordOv - {B78F92C8-DEB3-11E2-9A0A-FB64281D6ADE} - C:\Users\Kdawg19956\AppData\Local\WordOv\temp.dat ()
BHO-x32: Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll ()
BHO-x32: Help the General-Search Project - {CA4520F3-AE13-4FB1-A513-58E23991C86D} - C:\Users\Kdawg19956\AppData\Roaming\General Downloader\Extensions\GenCrawl.dll ()
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Panda Security Toolbar - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll ()
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 127.0.0.1 d3oxij66pru1i3.cloudfront.net
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
 
FireFox:
========
FF ProfilePath: C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Firefox\Profiles\qswai4l3.default
FF user.js: detected! => C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Firefox\Profiles\qswai4l3.default\user.js
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @vizzed.com/VizzedRGR - C:\Program Files (x86)\Vizzed\Vizzed Retro Game Room\NpVizzedRgr.dll (Vizzed.com)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin HKCU: @eximion.com/KalydoPlayer - C:\Users\Kdawg19956\AppData\Roaming\Kalydo\KalydoPlayer\bin2\npkalydo.dll (Eximion B.V.)
FF Plugin HKCU: @fancyguo.com/FancyGame,version=1.0.0.1 - C:\Users\Kdawg19956\AppData\Local\Fancy\npfancygame.dll (Beijing FancyGuo Tech Ltd)
FF Plugin HKCU: @g2.com/iggweb3dupdater - C:\Users\Kdawg19956\AppData\Roaming\IGG\Web3D\1.0.0.38\NPIGGWeb3DUpdater.dll (IGG)
FF Plugin HKCU: @g2.com/joyconnectshell - C:\Users\Kdawg19956\AppData\Roaming\IGG\Web3D\1.0.0.38\NPJoyConnectShell.dll (IGG)
FF Plugin HKCU: @leeuu.com/npgboxruner;version= - C:\Users\Kdawg19956\AppData\Roaming\gbox\npgboxruner.dll (leeuu.com )
FF Plugin HKCU: @lightspark.github.com/Lightspark;version=1 - C:\Program Files (x86)\Lightspark 0.5.3-git\nplightsparkplugin.dll ( )
FF Plugin HKCU: @TrianglePlayer - C:\Users\Kdawg19956\AppData\Roaming\TrianglePlayer\NPTrianglePlayer.dll ()
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Kdawg19956\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKCU: thehappycloud.com/HappyCloudPlugin - C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll (The Happy Cloud)
FF Extension: General Downloader plugin - C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\@generaldownloader.com [2013-09-04]
FF Extension: General Crawler - C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\gencrawler@some.com [2013-09-04]
FF Extension: No Name - C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Firefox\profiles\extensions\defaults [2013-10-11]
FF Extension: No Name - C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2013-10-11]
FF Extension: FT Downloader - C:\Users\Kdawg19956\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ftd@ftd.com.xpi [2013-06-26]
FF Extension: WordOv - C:\Program Files (x86)\Mozilla Firefox\extensions\ljsmnupof@oesolvpidw.net [2013-10-11]
FF Extension: Define Ext - C:\Program Files (x86)\Mozilla Firefox\extensions\umylsm@sqhjcpzmeselzlp.org [2013-08-17]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-04-11]
FF HKCU\...\Firefox\Extensions: [lyrics@bobylyrics.co] - C:\Program Files (x86)\BobyLyrics\130.xpi
FF Extension: No Name - C:\Program Files (x86)\BobyLyrics\130.xpi [2013-08-24]
 
Chrome: 
=======
CHR HomePage: 
CHR StartupUrls: ""
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (Java™ Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Plugin: (McAfee SecurityCenter) - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File
CHR Extension: (Google Docs) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-07-04]
CHR Extension: (Google Drive) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-07-04]
CHR Extension: (SweetPacks) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\banjjklfojcdbofbhbgiedekefohoaff [2013-09-04]
CHR Extension: (YouTube) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-07-04]
CHR Extension: (Reddit Link Opener) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpjdjkonibhggbbjchphchlbonaijjme [2014-04-21]
CHR Extension: (Adblock Plus) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-10-25]
CHR Extension: (Google Search) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-07-04]
CHR Extension: (Tampermonkey) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2013-12-09]
CHR Extension: (ICE Quick Stream) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpioikmjnfipgphjldakcaocbbpnfabl [2013-10-11]
CHR Extension: (Reddit Imager) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\fccfbppkihgcoagmgoakhidhpmjbgpdo [2014-04-21]
CHR Extension: (Panda Security New Tab) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\fknfdieimobmimhdkfkheeejenmdjhoe [2014-01-06]
CHR Extension: (WordOv) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjkpcnacdgdlpfejlgflolpaigoicibh [2013-10-11]
CHR Extension: (General Downloader plugin) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkcbebbklfkjeocpmoamnopdllfekind [2013-09-04]
CHR Extension: (RrSavings) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\kofjjfgnmnjmoihhmjpafcllkhinmboe [2014-04-30]
CHR Extension: (Skype Click to Call) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-03-16]
CHR Extension: (InternetHelper3.1) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\nemfjadlboooiffmcelkafilagddogim [2013-08-22]
CHR Extension: (Google Wallet) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Reddit Hover Text) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\phhpajlkjeoakfmckfnogpnfeidgbhil [2014-04-21]
CHR Extension: (Gmail) - C:\Users\Kdawg19956\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-07-04]
CHR HKCU\...\Chrome\Extension: [banjjklfojcdbofbhbgiedekefohoaff] - C:\Users\Kdawg19956\AppData\Local\CRE\banjjklfojcdbofbhbgiedekefohoaff.crx [2013-08-30]
CHR HKCU\...\Chrome\Extension: [iigplimlmgilpobjilfbfeilnpiigpgl] - C:\Users\Kdawg19956\AppData\Local\CRE\iigplimlmgilpobjilfbfeilnpiigpgl.crx [2013-08-30]
CHR HKCU\...\Chrome\Extension: [mfchmfgdaabgdjbcaophikcobddojjoe] - C:\Users\Kdawg19956\AppData\Local\CRE\mfchmfgdaabgdjbcaophikcobddojjoe.crx [2013-08-30]
CHR HKCU\...\Chrome\Extension: [nemfjadlboooiffmcelkafilagddogim] - C:\Users\Kdawg19956\AppData\Local\CRE\nemfjadlboooiffmcelkafilagddogim.crx [2013-08-08]
CHR HKLM-x32\...\Chrome\Extension: [banjjklfojcdbofbhbgiedekefohoaff] - C:\Users\Kdawg19956\AppData\Local\CRE\banjjklfojcdbofbhbgiedekefohoaff.crx [2013-08-30]
CHR HKLM-x32\...\Chrome\Extension: [feehhilecblfddelccfipjokflgjpmad] - C:\Program Files (x86)\BobyLyrics\130.crx [2013-08-22]
CHR HKLM-x32\...\Chrome\Extension: [fknfdieimobmimhdkfkheeejenmdjhoe] - C:\Program Files (x86)\pandasecuritytb\chrome-newtab-search.crx [2013-08-22]
CHR HKLM-x32\...\Chrome\Extension: [gkcbebbklfkjeocpmoamnopdllfekind] - C:\Users\Kdawg19956\AppData\Roaming\General Downloader\Extensions\gdchrome.crx [2013-09-04]
CHR HKLM-x32\...\Chrome\Extension: [iigplimlmgilpobjilfbfeilnpiigpgl] - C:\Users\Kdawg19956\AppData\Local\CRE\iigplimlmgilpobjilfbfeilnpiigpgl.crx [2013-09-04]
CHR HKLM-x32\...\Chrome\Extension: [kdidombaedgpfiiedeimiebkmbilgmlc] - C:\Program Files (x86)\DefaultTab\DefaultTab.crx [2013-05-30]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]
CHR HKLM-x32\...\Chrome\Extension: [mfchmfgdaabgdjbcaophikcobddojjoe] - C:\Users\Kdawg19956\AppData\Local\CRE\mfchmfgdaabgdjbcaophikcobddojjoe.crx [2014-04-11]
CHR HKLM-x32\...\Chrome\Extension: [nemfjadlboooiffmcelkafilagddogim] - C:\Users\Kdawg19956\AppData\Local\CRE\nemfjadlboooiffmcelkafilagddogim.crx [2013-08-08]
CHR HKLM-x32\...\Chrome\Extension: [pcidejejpblipcjpnkfkddlkmgndblch] - C:\Users\Kdawg19956\AppData\Roaming\General Downloader\Extensions\GenCrawler.crx [2013-09-04]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
 
==================== Services (Whitelisted) =================
 
R2 24x7HelpSvc; C:\Program Files (x86)\24x7Help\App24x7Svc.exe [342608 2013-05-28] (PCRx.com, LLC)
S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88424 2013-05-20] (Perfect World Entertainment Inc)
S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [38440 2013-09-19] (Just Develop It)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2211000 2014-03-30] (Microsoft Corporation)
R2 fpvoixdaog64; C:\Program Files\002\fpvoixdaog64.exe [706560 2014-04-30] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-15] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] ()
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe [140768 2013-10-03] (Panda Security, S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe [37344 2013-10-19] (Panda Security, S.L.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R2 RrFilterService64; c:\Program Files\RrFilter\RrFilterService64.exe [171008 2014-03-06] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-11-23] (Realtek Semiconductor)
R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2013-12-10] (Razer, Inc.)
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1914728 2012-11-26] (SoftThinks SAS)
R2 Update SerialTrunc; C:\Program Files (x86)\SerialTrunc\updateSerialTrunc.exe [317728 2014-05-18] ()
R2 Util SerialTrunc; C:\Program Files (x86)\SerialTrunc\bin\utilSerialTrunc.exe [317728 2014-05-18] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation)
 
==================== Drivers (Whitelisted) ====================
 
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-12] (Windows ® Win 7 DDK provider)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [857472 2012-08-29] (Motorola Solutions, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows ® Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows ® Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-03-02] (Disc Soft Ltd)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-09] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-03-17] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
R1 netfilter64; C:\Windows\System32\drivers\netfilter64.sys [46376 2014-02-28] (NetFilterSDK.com)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation)
R1 NNSALPC; C:\Windows\system32\DRIVERS\NNSALPC.sys [91368 2013-05-28] (Panda Security, S.L.)
R1 NNSHTTP; C:\Windows\system32\DRIVERS\NNSHTTP.sys [122088 2013-05-28] (Panda Security, S.L.)
R1 NNSHTTPS; C:\Windows\system32\DRIVERS\NNSHTTPS.sys [109288 2013-05-28] (Panda Security, S.L.)
R1 NNSIDS; C:\Windows\system32\DRIVERS\NNSIDS.sys [114920 2013-05-28] (Panda Security, S.L.)
R1 NNSPICC; C:\Windows\system32\DRIVERS\NNSPICC.sys [95464 2013-05-28] (Panda Security, S.L.)
S4 NNSPIHSW; C:\Windows\system32\DRIVERS\NNSPIHSW.sys [69864 2013-05-28] (Panda Security, S.L.)
R1 NNSPOP3; C:\Windows\system32\DRIVERS\NNSPOP3.sys [119016 2013-05-28] (Panda Security, S.L.)
R1 NNSPROT; C:\Windows\system32\DRIVERS\NNSPROT.sys [305896 2013-05-28] (Panda Security, S.L.)
R1 NNSPRV; C:\Windows\system32\DRIVERS\NNSPRV.sys [118504 2013-05-28] (Panda Security, S.L.)
R1 NNSSMTP; C:\Windows\system32\DRIVERS\NNSSMTP.sys [114920 2013-05-28] (Panda Security, S.L.)
R1 NNSSTRM; C:\Windows\system32\DRIVERS\NNSSTRM.sys [246504 2013-05-28] (Panda Security, S.L.)
R1 NNSTLSC; C:\Windows\system32\DRIVERS\NNSTLSC.sys [106216 2013-05-28] (Panda Security, S.L.)
R2 PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [169192 2013-10-17] (Panda Security, S.L.)
R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [122600 2013-10-11] (Panda Security, S.L.)
R1 PSINKNC; C:\Windows\system32\DRIVERS\PSINKNC.sys [206056 2013-10-11] (Panda Security, S.L.)
R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124648 2013-10-11] (Panda Security, S.L.)
R2 PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [137960 2013-10-11] (Panda Security, S.L.)
S3 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [105704 2013-10-11] (Panda Security, S.L.)
S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [58808 2013-04-29] (Panda Security, S.L.)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)
R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2013-12-10] (Razer, Inc.)
R3 RzFilter; C:\Windows\system32\drivers\RzFilter.sys [74432 2013-12-10] (Razer, Inc.)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-03-17] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28040 2012-12-21] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [32136 2012-12-21] (Synaptics Incorporated)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-10-09] (Windows ® Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation)
R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)
R3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-09] (Windows ® Win 7 DDK provider)
S2 {09BB444F-B2E2-4009-BAF2-7B727681223E}; C:\Program Files (x86)\VMLaunch\BuddyVM.sys [15872 2004-12-03] (Interlex Inc.)
R1 {47351c22-0d6c-4658-a617-795d251145e2}w64; C:\Windows\System32\drivers\{47351c22-0d6c-4658-a617-795d251145e2}w64.sys [61120 2014-04-24] (StdLib)
S3 X6va017; \??\C:\WINDOWS\SysWOW64\Drivers\X6va017 [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-05-19 16:55 - 2014-05-19 16:55 - 00036434 _____ () C:\Users\Kdawg19956\Downloads\FRST.txt
2014-05-19 16:54 - 2014-05-19 16:55 - 00000000 ____D () C:\FRST
2014-05-19 16:53 - 2014-05-19 16:53 - 02067456 _____ (Farbar) C:\Users\Kdawg19956\Downloads\FRST64.exe
2014-05-18 02:41 - 2014-05-18 02:41 - 00001678 _____ () C:\Users\Kdawg19956\Desktop\Game - Shortcut.lnk
2014-05-18 02:39 - 2014-05-18 02:45 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\Elysium 0.12.2
2014-05-18 02:39 - 2014-05-18 02:39 - 129889603 _____ () C:\Users\Kdawg19956\Downloads\Elysium 0.12.2.exe
2014-05-18 02:29 - 2014-05-18 02:38 - 162725450 _____ () C:\Users\Kdawg19956\Downloads\0.6b.8.rar
2014-05-18 01:30 - 2014-05-19 16:41 - 00067825 _____ () C:\WINDOWS\WindowsUpdate.log
2014-05-18 01:30 - 2014-05-18 01:30 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-05-18 01:30 - 2014-05-18 01:30 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-05-16 17:16 - 2014-05-16 17:16 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\ElderScrolls
2014-05-16 17:16 - 2014-05-16 17:16 - 00000000 ____D () C:\Program Files (x86)\directx
2014-05-16 17:07 - 2014-05-16 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks
2014-05-16 17:07 - 2014-05-16 17:07 - 00000000 ____D () C:\Program Files (x86)\Bethesda Softworks
2014-05-16 02:35 - 2014-05-16 02:36 - 00035622 _____ () C:\Users\Kdawg19956\Downloads\download.htm
2014-05-15 03:25 - 2014-05-15 03:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
2014-05-15 03:25 - 2014-05-15 03:25 - 00000000 ____D () C:\Program Files\Axantum
2014-05-15 03:24 - 2014-05-15 03:24 - 03495040 _____ (Axantum Software AB) C:\Users\Kdawg19956\Downloads\AxCrypt-1.7.3156.0-Setup.exe
2014-05-15 03:15 - 2014-05-15 03:16 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\online games
2014-05-14 19:45 - 2014-05-05 23:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-14 19:45 - 2014-05-05 22:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-14 19:45 - 2014-05-05 22:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-14 19:45 - 2014-05-05 21:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-14 19:44 - 2014-03-13 02:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2014-05-14 19:44 - 2014-03-13 01:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2014-05-14 19:29 - 2014-03-23 21:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-05-14 19:29 - 2014-03-23 21:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-05-14 19:29 - 2014-03-23 21:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-05-14 19:28 - 2014-04-11 05:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-05-14 19:28 - 2014-04-11 05:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-05-14 19:28 - 2014-04-11 03:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2014-05-14 19:28 - 2014-04-11 01:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-05-14 19:28 - 2014-04-11 00:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-05-14 19:28 - 2014-04-11 00:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-05-14 19:28 - 2014-04-10 22:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-05-14 19:28 - 2014-04-10 22:36 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-05-14 19:28 - 2014-04-10 22:24 - 13288960 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-05-14 19:28 - 2014-04-10 22:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-05-14 19:28 - 2014-04-10 22:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 19:28 - 2014-04-10 22:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-05-14 19:28 - 2014-04-10 22:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 19:28 - 2014-04-10 22:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-05-14 19:28 - 2014-04-10 22:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-05-14 19:28 - 2014-04-10 22:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-05-14 19:28 - 2014-04-10 21:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-05-14 19:28 - 2014-04-10 21:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2014-05-14 19:28 - 2014-04-10 21:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-05-14 19:28 - 2014-04-10 21:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-05-14 19:28 - 2014-04-10 21:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-05-14 19:28 - 2014-04-10 21:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-05-14 19:28 - 2014-04-10 21:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-05-14 19:28 - 2014-04-10 21:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-05-14 19:28 - 2014-04-10 21:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-05-14 19:28 - 2014-04-10 21:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-05-14 19:28 - 2014-04-10 21:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-05-14 19:20 - 2014-04-08 17:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
2014-05-14 19:20 - 2014-04-08 17:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
2014-05-14 19:20 - 2014-04-08 13:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
2014-05-14 19:20 - 2014-04-08 13:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
2014-05-14 19:20 - 2014-03-27 04:12 - 21225584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-05-14 19:20 - 2014-03-27 02:48 - 18679728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-05-13 12:55 - 2014-05-13 12:55 - 36797892 _____ () C:\Users\Kdawg19956\Downloads\vx_rtp102e.zip
2014-05-13 12:52 - 2014-05-19 16:44 - 00003112 _____ () C:\WINDOWS\System32\Tasks\RDReminder
2014-05-13 12:52 - 2014-05-15 16:21 - 00000326 _____ () C:\WINDOWS\Tasks\DLL-Files.Com Fixer_Updates.job
2014-05-13 12:52 - 2014-05-15 16:21 - 00000310 _____ () C:\WINDOWS\Tasks\DLL-Files.Com Fixer_MONTHLY.job
2014-05-13 12:52 - 2014-05-15 14:52 - 00000318 _____ () C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job
2014-05-13 12:52 - 2014-05-13 12:52 - 00805376 _____ () C:\WINDOWS\SysWOW64\RGSS200J.dll
2014-05-13 12:52 - 2014-05-13 12:52 - 00003062 _____ () C:\WINDOWS\System32\Tasks\DLL-Files.Com Fixer_Updates
2014-05-13 12:52 - 2014-05-13 12:52 - 00003048 _____ () C:\WINDOWS\System32\Tasks\DLL-Files.Com Fixer_MONTHLY
2014-05-13 12:52 - 2014-05-13 12:52 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\dll-files.com
2014-05-13 12:51 - 2014-05-13 12:51 - 05359680 _____ (Dll-Files.com ) C:\Users\Kdawg19956\Downloads\dffsetup-rgss200j.exe
2014-05-13 12:51 - 2014-05-13 12:51 - 00001102 _____ () C:\Users\Public\Desktop\Dll-Files Fixer.lnk
2014-05-13 12:51 - 2014-05-13 12:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer
2014-05-13 12:51 - 2014-05-13 12:51 - 00000000 ____D () C:\Program Files (x86)\Dll-Files.com Fixer
2014-05-13 12:43 - 2014-05-13 13:43 - 389445177 ____R () C:\Users\Kdawg19956\Downloads\RJ126905(Ver.140428).rar
2014-05-13 12:42 - 2014-05-13 12:43 - 78810463 ____R () C:\Users\Kdawg19956\Downloads\RJ099327_ver1.01.zip
2014-05-13 12:42 - 2014-05-13 12:42 - 00030289 _____ () C:\Users\Kdawg19956\Downloads\RJ126905(Ver.140428).rar.torrent
2014-05-13 12:42 - 2014-05-13 12:42 - 00024462 _____ () C:\Users\Kdawg19956\Downloads\RJ099327_ver1.01.zip.torrent
2014-05-11 02:33 - 2014-05-11 02:33 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Essentials Codec Pack
2014-05-11 02:33 - 2014-05-11 02:33 - 00000000 ____D () C:\Program Files (x86)\Essentials Codec Pack
2014-05-11 02:32 - 2014-05-11 02:32 - 00929416 _____ (CNET Download.com) C:\Users\Kdawg19956\Downloads\cbsidlm-cbsi188-Windows_Essentials_Media_Codec_Pack-ORG-10662709.exe
2014-05-11 01:49 - 2014-05-11 01:49 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\128GRJ396-ver1.03
2014-05-11 01:48 - 2014-05-11 01:48 - 00024921 _____ () C:\Users\Kdawg19956\Downloads\128GRJ396-ver1.03.torrent
2014-05-11 01:38 - 2014-05-11 01:38 - 00076474 _____ () C:\Users\Kdawg19956\Downloads\132GRJ800_Ver1.03.torrent
2014-05-11 01:38 - 2014-05-11 01:38 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\132GRJ800_Ver1.03
2014-05-11 01:21 - 2014-05-11 01:21 - 00060294 _____ () C:\Users\Kdawg19956\Downloads\DQ女戦士陵辱無限回廊.torrent
2014-05-11 01:19 - 2014-05-11 01:19 - 14042011 _____ () C:\Users\Kdawg19956\Downloads\RJ054713_trial.zip
2014-05-06 13:59 - 2014-05-06 13:59 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\A.Madea.Christmas.2013.CAM.v2.NEW.SOURCE.XviD-UNiTY
2014-05-01 17:31 - 2014-05-01 17:31 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-05-01 17:31 - 2014-05-01 17:31 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-04-30 20:48 - 2014-05-12 19:07 - 00000000 ____D () C:\Users\Kdawg19956\Documents\Diablo III
2014-04-30 19:41 - 2014-04-30 19:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2014-04-30 19:40 - 2014-04-30 20:47 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2014-04-30 19:25 - 2014-04-30 19:25 - 07583696 _____ (Blizzard Entertainment) C:\Users\Kdawg19956\Downloads\Diablo-III-Setup-enUS (1).exe
2014-04-30 19:19 - 2014-05-19 16:48 - 00000000 ____D () C:\Program Files\RrFilter
2014-04-30 19:17 - 2014-04-30 19:17 - 00000000 ____D () C:\Program Files (x86)\Rr Savings
2014-04-30 19:16 - 2014-04-30 19:16 - 00000000 ____D () C:\Program Files\rrsavings
2014-04-30 19:12 - 2014-04-30 19:12 - 07583696 _____ (Blizzard Entertainment) C:\Users\Kdawg19956\Downloads\Diablo-III-Setup-enUS.exe
2014-04-30 19:09 - 2014-04-30 19:16 - 00000000 ____D () C:\Program Files\002
2014-04-30 19:08 - 2014-04-30 19:08 - 00340480 _____ () C:\Users\Kdawg19956\Downloads\diablo 3 stuck on installer__3515_i618359445_il10511290.exe
2014-04-30 18:29 - 2014-05-12 18:55 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Battle.net
2014-04-30 18:29 - 2014-04-30 18:30 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Battle.net
2014-04-30 18:29 - 2014-04-30 18:29 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Blizzard Entertainment
2014-04-30 18:28 - 2014-05-02 15:12 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-04-30 18:28 - 2014-04-30 18:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2014-04-30 18:28 - 2014-04-30 18:28 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-04-30 17:58 - 2014-04-30 17:59 - 00000000 ____D () C:\ProgramData\Battle.net
2014-04-30 10:05 - 2014-04-30 10:05 - 00000000 __SHD () C:\Users\Kdawg19956\AppData\Local\EmieUserList
2014-04-30 10:05 - 2014-04-30 10:05 - 00000000 __SHD () C:\Users\Kdawg19956\AppData\Local\EmieSiteList
2014-04-29 22:26 - 2014-05-01 15:30 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-04-29 22:26 - 2014-05-01 15:30 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-26 00:52 - 2014-04-26 00:52 - 00046939 _____ () C:\Users\Kdawg19956\Downloads\3d-teen-natural-slave-escape-monsters-bleep-1846812.html
2014-04-26 00:38 - 2014-04-26 00:38 - 00046263 _____ () C:\Users\Kdawg19956\Downloads\3d-teen-monsters-bleep-priestess-of-the-forest-1624662.html
2014-04-25 07:01 - 2014-02-22 10:44 - 00311640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-04-25 07:01 - 2014-02-22 07:15 - 04192768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-04-25 07:01 - 2014-02-22 06:44 - 02767360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-04-25 07:01 - 2014-02-22 06:30 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-04-25 07:01 - 2014-02-22 06:00 - 05784064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-04-25 07:01 - 2014-02-22 05:44 - 02178048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-04-25 07:01 - 2014-02-22 05:36 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-04-25 07:01 - 2014-02-22 05:00 - 02043904 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-04-25 07:01 - 2014-02-22 04:39 - 13551104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-04-25 07:01 - 2014-02-22 04:33 - 11745792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-04-25 07:01 - 2014-02-22 04:33 - 01967104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-04-25 07:01 - 2014-02-22 03:49 - 01400832 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-04-25 07:01 - 2014-02-22 03:27 - 01143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-04-25 07:01 - 2014-02-07 20:08 - 00139600 _____ () C:\WINDOWS\system32\systemsf.ebd
2014-04-25 07:00 - 2014-02-22 10:55 - 01435304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2014-04-25 07:00 - 2014-02-22 10:53 - 03394384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2014-04-25 07:00 - 2014-02-22 10:46 - 01927600 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2014-04-25 07:00 - 2014-02-22 10:41 - 02142976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-04-25 07:00 - 2014-02-22 09:38 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2014-04-25 07:00 - 2014-02-22 09:04 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-04-25 07:00 - 2014-02-22 07:08 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OobeFldr.dll
2014-04-25 07:00 - 2014-02-22 06:17 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-04-25 07:00 - 2014-02-22 06:17 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OobeFldr.dll
2014-04-25 07:00 - 2014-02-22 06:01 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-04-25 07:00 - 2014-02-22 05:34 - 11742720 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2014-04-25 07:00 - 2014-02-22 05:33 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-04-25 07:00 - 2014-02-22 05:18 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-04-25 07:00 - 2014-02-22 05:02 - 08946688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2014-04-25 07:00 - 2014-02-22 04:23 - 03494912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2014-04-25 07:00 - 2014-02-22 04:16 - 11776000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2014-04-25 07:00 - 2014-02-22 04:11 - 02262016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-04-25 07:00 - 2014-02-22 04:01 - 13933568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2014-04-25 07:00 - 2014-02-22 03:53 - 12027904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-04-25 07:00 - 2014-02-22 03:49 - 08874496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-04-25 06:59 - 2014-02-22 11:59 - 01290688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2014-04-25 06:59 - 2014-02-22 11:59 - 00461176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2014-04-25 06:59 - 2014-02-22 11:59 - 00407536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2014-04-25 06:59 - 2014-02-22 10:50 - 02588168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-04-25 06:59 - 2014-02-22 10:48 - 02574240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2014-04-25 06:59 - 2014-02-22 10:46 - 01445616 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2014-04-25 06:59 - 2014-02-22 10:46 - 01000424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2014-04-25 06:59 - 2014-02-22 10:43 - 01727760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-04-25 06:59 - 2014-02-22 10:41 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-04-25 06:59 - 2014-02-22 10:41 - 01215832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2014-04-25 06:59 - 2014-02-22 10:41 - 00800552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2014-04-25 06:59 - 2014-02-22 10:40 - 01118552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2014-04-25 06:59 - 2014-02-22 09:42 - 00410568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2014-04-25 06:59 - 2014-02-22 09:42 - 00369288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2014-04-25 06:59 - 2014-02-22 09:38 - 01077944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2014-04-25 06:59 - 2014-02-22 09:08 - 01474104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-04-25 06:59 - 2014-02-22 09:04 - 01206000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-04-25 06:59 - 2014-02-22 06:25 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2014-04-25 06:59 - 2014-02-22 05:40 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2014-04-25 06:59 - 2014-02-22 05:09 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-04-25 06:59 - 2014-02-22 05:08 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-04-25 06:59 - 2014-02-22 05:06 - 02943488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-04-25 06:59 - 2014-02-22 05:01 - 02648064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-04-25 06:59 - 2014-02-22 04:53 - 00825344 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2014-04-25 06:59 - 2014-02-22 04:52 - 01132032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2014-04-25 06:59 - 2014-02-22 04:47 - 01192448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2014-04-25 06:59 - 2014-02-22 04:40 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-04-25 06:59 - 2014-02-22 04:28 - 02643456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2014-04-25 06:59 - 2014-02-22 04:26 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2014-04-25 06:59 - 2014-02-22 04:23 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-04-25 06:59 - 2014-02-22 04:23 - 01576960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2014-04-25 06:59 - 2014-02-22 04:23 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2014-04-25 06:59 - 2014-02-22 04:21 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-04-25 06:59 - 2014-02-22 04:13 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2014-04-25 06:59 - 2014-02-22 04:11 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2014-04-25 06:59 - 2014-02-22 04:07 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-04-25 06:59 - 2014-02-22 04:04 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-04-25 06:59 - 2014-02-22 04:00 - 01341440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2014-04-25 06:59 - 2014-02-22 03:54 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2014-04-25 06:59 - 2014-02-22 03:40 - 02368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2014-04-25 06:59 - 2014-02-22 03:38 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-04-25 06:59 - 2014-02-22 03:37 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2014-04-25 06:59 - 2014-02-22 03:35 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-04-25 06:59 - 2014-02-22 03:34 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-04-25 06:59 - 2014-02-22 03:32 - 01789440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-04-25 06:59 - 2014-02-22 03:22 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2014-04-25 06:59 - 2014-02-22 03:06 - 01640960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2014-04-25 06:59 - 2014-02-22 03:04 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-04-25 06:59 - 2014-02-22 03:03 - 01496576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2014-04-25 06:58 - 2014-02-22 11:59 - 01519520 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-04-25 06:58 - 2014-02-22 11:59 - 00526304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2014-04-25 06:58 - 2014-02-22 11:15 - 01929608 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2014-04-25 06:58 - 2014-02-22 11:15 - 01206000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2014-04-25 06:58 - 2014-02-22 11:00 - 00590168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-04-25 06:58 - 2014-02-22 11:00 - 00249688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2014-04-25 06:58 - 2014-02-22 10:50 - 00645104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2014-04-25 06:58 - 2014-02-22 10:44 - 00539992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2014-04-25 06:58 - 2014-02-22 10:44 - 00424280 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-04-25 06:58 - 2014-02-22 10:43 - 01659056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2014-04-25 06:58 - 2014-02-22 10:43 - 01519592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2014-04-25 06:58 - 2014-02-22 10:43 - 01487520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2014-04-25 06:58 - 2014-02-22 10:43 - 01356360 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2014-04-25 06:58 - 2014-02-22 10:41 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-04-25 06:58 - 2014-02-22 10:41 - 00609456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-04-25 06:58 - 2014-02-22 10:41 - 00391008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2014-04-25 06:58 - 2014-02-22 09:52 - 01767440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2014-04-25 06:58 - 2014-02-22 09:42 - 01017936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2014-04-25 06:58 - 2014-02-22 09:42 - 00422968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2014-04-25 06:58 - 2014-02-22 09:25 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2014-04-25 06:58 - 2014-02-22 09:18 - 00477744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2014-04-25 06:58 - 2014-02-22 09:04 - 01011280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2014-04-25 06:58 - 2014-02-22 09:04 - 00650736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2014-04-25 06:58 - 2014-02-22 09:04 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-04-25 06:58 - 2014-02-22 07:24 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2014-04-25 06:58 - 2014-02-22 07:22 - 01163264 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2014-04-25 06:58 - 2014-02-22 07:07 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2014-04-25 06:58 - 2014-02-22 07:07 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
2014-04-25 06:58 - 2014-02-22 06:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2014-04-25 06:58 - 2014-02-22 06:28 - 02428928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2014-04-25 06:58 - 2014-02-22 06:16 - 00617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2014-04-25 06:58 - 2014-02-22 05:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2014-04-25 06:58 - 2014-02-22 05:38 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2014-04-25 06:58 - 2014-02-22 05:22 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2014-04-25 06:58 - 2014-02-22 05:05 - 01757184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2014-04-25 06:58 - 2014-02-22 04:48 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-04-25 06:58 - 2014-02-22 04:38 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2014-04-25 06:58 - 2014-02-22 04:37 - 02220032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-04-25 06:58 - 2014-02-22 04:36 - 01392640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2014-04-25 06:58 - 2014-02-22 04:35 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofTasks.dll
2014-04-25 06:58 - 2014-02-22 04:26 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2014-04-25 06:58 - 2014-02-22 04:25 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-04-25 06:58 - 2014-02-22 04:24 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2014-04-25 06:58 - 2014-02-22 04:14 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2014-04-25 06:58 - 2014-02-22 04:11 - 02395136 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2014-04-25 06:58 - 2014-02-22 04:10 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2014-04-25 06:58 - 2014-02-22 04:00 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2014-04-25 06:58 - 2014-02-22 03:59 - 01621504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2014-04-25 06:58 - 2014-02-22 03:59 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-04-25 06:58 - 2014-02-22 03:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2014-04-25 06:58 - 2014-02-22 03:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2014-04-25 06:58 - 2014-02-22 03:45 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2014-04-25 06:58 - 2014-02-22 03:44 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2014-04-25 06:58 - 2014-02-22 03:39 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2014-04-25 06:58 - 2014-02-22 03:24 - 02760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2014-04-25 06:58 - 2014-02-22 03:21 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2014-04-25 06:58 - 2014-02-22 03:18 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2014-04-25 06:58 - 2014-02-22 03:17 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2014-04-25 06:58 - 2014-02-22 03:01 - 00978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-04-25 06:58 - 2014-02-22 03:01 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2014-04-25 06:58 - 2014-02-22 03:00 - 00514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2014-04-25 06:58 - 2014-01-29 03:53 - 01653352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2014-04-25 06:58 - 2014-01-29 02:44 - 01369736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-04-25 06:58 - 2013-12-10 02:35 - 00530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2014-04-25 06:57 - 2014-02-22 11:15 - 00531128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2014-04-25 06:57 - 2014-02-22 10:55 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2014-04-25 06:57 - 2014-02-22 10:55 - 00244848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2014-04-25 06:57 - 2014-02-22 10:50 - 00761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2014-04-25 06:57 - 2014-02-22 10:49 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-04-25 06:57 - 2014-02-22 10:49 - 00280920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2014-04-25 06:57 - 2014-02-22 10:49 - 00148824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-04-25 06:57 - 2014-02-22 10:48 - 01791752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2014-04-25 06:57 - 2014-02-22 10:46 - 00669896 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2014-04-25 06:57 - 2014-02-22 10:44 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-04-25 06:57 - 2014-02-22 10:41 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-04-25 06:57 - 2014-02-22 10:41 - 00372360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2014-04-25 06:57 - 2014-02-22 09:51 - 01063976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2014-04-25 06:57 - 2014-02-22 09:38 - 00336232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2014-04-25 06:57 - 2014-02-22 09:11 - 00490136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2014-04-25 06:57 - 2014-02-22 09:04 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-04-25 06:57 - 2014-02-22 09:04 - 00317584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2014-04-25 06:57 - 2014-02-22 09:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2014-04-25 06:57 - 2014-02-22 07:14 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-04-25 06:57 - 2014-02-22 07:11 - 00272896 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2014-04-25 06:57 - 2014-02-22 07:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\aelupsvc.dll
2014-04-25 06:57 - 2014-02-22 06:57 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2014-04-25 06:57 - 2014-02-22 06:46 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-04-25 06:57 - 2014-02-22 06:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\recimg.exe
2014-04-25 06:57 - 2014-02-22 06:06 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2014-04-25 06:57 - 2014-02-22 05:58 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-04-25 06:57 - 2014-02-22 05:54 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-04-25 06:57 - 2014-02-22 05:47 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
2014-04-25 06:57 - 2014-02-22 05:41 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2014-04-25 06:57 - 2014-02-22 05:41 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2014-04-25 06:57 - 2014-02-22 05:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2014-04-25 06:57 - 2014-02-22 05:36 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2014-04-25 06:57 - 2014-02-22 05:25 - 01428480 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2014-04-25 06:57 - 2014-02-22 05:18 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2014-04-25 06:57 - 2014-02-22 05:09 - 01224192 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2014-04-25 06:57 - 2014-02-22 05:01 - 01227776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2014-04-25 06:57 - 2014-02-22 05:01 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2014-04-25 06:57 - 2014-02-22 05:01 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2014-04-25 06:57 - 2014-02-22 04:57 - 00710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2014-04-25 06:57 - 2014-02-22 04:48 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2014-04-25 06:57 - 2014-02-22 04:46 - 00528896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2014-04-25 06:57 - 2014-02-22 04:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2014-04-25 06:57 - 2014-02-22 04:44 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2014-04-25 06:57 - 2014-02-22 04:36 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dism.exe
2014-04-25 06:57 - 2014-02-22 04:35 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2014-04-25 06:57 - 2014-02-22 04:34 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2014-04-25 06:57 - 2014-02-22 04:33 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DismApi.dll
2014-04-25 06:57 - 2014-02-22 04:32 - 01162752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2014-04-25 06:57 - 2014-02-22 04:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-04-25 06:57 - 2014-02-22 04:23 - 00344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-04-25 06:57 - 2014-02-22 04:14 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2014-04-25 06:57 - 2014-02-22 04:10 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2014-04-25 06:57 - 2014-02-22 04:07 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2014-04-25 06:57 - 2014-02-22 04:04 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
2014-04-25 06:57 - 2014-02-22 03:59 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2014-04-25 06:57 - 2014-02-22 03:53 - 00876544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2014-04-25 06:57 - 2014-02-22 03:52 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-04-25 06:57 - 2014-02-22 03:51 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
2014-04-25 06:57 - 2014-02-22 03:51 - 00716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2014-04-25 06:57 - 2014-02-22 03:51 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2014-04-25 06:57 - 2014-02-22 03:49 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2014-04-25 06:57 - 2014-02-22 03:45 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-04-25 06:57 - 2014-02-22 03:43 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2014-04-25 06:57 - 2014-02-22 03:42 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2014-04-25 06:57 - 2014-02-22 03:40 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2014-04-25 06:57 - 2014-02-22 03:37 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2014-04-25 06:57 - 2014-02-22 03:33 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2014-04-25 06:57 - 2014-02-22 03:24 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2014-04-25 06:57 - 2014-02-21 23:33 - 00262335 _____ () C:\WINDOWS\system32\dfpinc.dat
2014-04-25 06:57 - 2014-02-02 09:48 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-04-25 06:57 - 2014-02-02 08:33 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-04-25 06:57 - 2014-01-31 03:18 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2014-04-25 06:57 - 2014-01-28 19:17 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2014-04-25 06:57 - 2014-01-27 10:38 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-04-25 06:57 - 2014-01-07 20:30 - 00745328 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-04-25 06:57 - 2014-01-07 19:33 - 00552632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-04-25 06:57 - 2013-12-04 10:16 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2014-04-25 06:57 - 2013-11-10 18:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2014-04-25 06:56 - 2014-02-22 11:59 - 00289752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2014-04-25 06:56 - 2014-02-22 11:59 - 00123448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-04-25 06:56 - 2014-02-22 11:02 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
2014-04-25 06:56 - 2014-02-22 11:00 - 00236888 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2014-04-25 06:56 - 2014-02-22 10:59 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-04-25 06:56 - 2014-02-22 10:55 - 00152848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2014-04-25 06:56 - 2014-02-22 10:55 - 00105864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-04-25 06:56 - 2014-02-22 10:50 - 00258784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-04-25 06:56 - 2014-02-22 10:49 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-04-25 06:56 - 2014-02-22 10:49 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2014-04-25 06:56 - 2014-02-22 10:48 - 00210736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2014-04-25 06:56 - 2014-02-22 10:41 - 00324896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-04-25 06:56 - 2014-02-22 09:42 - 00098072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-04-25 06:56 - 2014-02-22 09:38 - 00506120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2014-04-25 06:56 - 2014-02-22 09:38 - 00089848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-04-25 06:56 - 2014-02-22 09:25 - 00180240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2014-04-25 06:56 - 2014-02-22 09:04 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-04-25 06:56 - 2014-02-22 07:20 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2014-04-25 06:56 - 2014-02-22 07:14 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2014-04-25 06:56 - 2014-02-22 07:09 - 00663040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2014-04-25 06:56 - 2014-02-22 07:07 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\clrhost.dll
2014-04-25 06:56 - 2014-02-22 06:54 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2014-04-25 06:56 - 2014-02-22 06:41 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2014-04-25 06:56 - 2014-02-22 06:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
2014-04-25 06:56 - 2014-02-22 06:05 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2014-04-25 06:56 - 2014-02-22 06:00 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-04-25 06:56 - 2014-02-22 05:56 - 02862592 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2014-04-25 06:56 - 2014-02-22 05:52 - 02288640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2014-04-25 06:56 - 2014-02-22 05:39 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-04-25 06:56 - 2014-02-22 05:18 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2014-04-25 06:56 - 2014-02-22 05:17 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2014-04-25 06:56 - 2014-02-22 05:15 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2014-04-25 06:56 - 2014-02-22 05:14 - 02811392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2014-04-25 06:56 - 2014-02-22 05:14 - 02165760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2014-04-25 06:56 - 2014-02-22 05:12 - 00797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2014-04-25 06:56 - 2014-02-22 05:09 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2014-04-25 06:56 - 2014-02-22 05:04 - 00935424 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2014-04-25 06:56 - 2014-02-22 05:04 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2014-04-25 06:56 - 2014-02-22 05:03 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-04-25 06:56 - 2014-02-22 05:02 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2014-04-25 06:56 - 2014-02-22 05:00 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
2014-04-25 06:56 - 2014-02-22 04:59 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2014-04-25 06:56 - 2014-02-22 04:54 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2014-04-25 06:56 - 2014-02-22 04:45 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2014-04-25 06:56 - 2014-02-22 04:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2014-04-25 06:56 - 2014-02-22 04:45 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2014-04-25 06:56 - 2014-02-22 04:44 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2014-04-25 06:56 - 2014-02-22 04:43 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2014-04-25 06:56 - 2014-02-22 04:34 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2014-04-25 06:56 - 2014-02-22 04:28 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2014-04-25 06:56 - 2014-02-22 04:25 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-04-25 06:56 - 2014-02-22 04:25 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2014-04-25 06:56 - 2014-02-22 04:25 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2014-04-25 06:56 - 2014-02-22 04:15 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Dism.exe
2014-04-25 06:56 - 2014-02-22 04:12 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DismApi.dll
2014-04-25 06:56 - 2014-02-22 04:09 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2014-04-25 06:56 - 2014-02-22 04:06 - 01035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-04-25 06:56 - 2014-02-22 03:54 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2014-04-25 06:56 - 2014-02-22 03:54 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2014-04-25 06:56 - 2014-02-22 03:52 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-04-25 06:56 - 2014-02-22 03:48 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2014-04-25 06:56 - 2014-02-22 03:47 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2014-04-25 06:56 - 2014-02-22 03:47 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2014-04-25 06:56 - 2014-02-22 03:43 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2014-04-25 06:56 - 2014-02-22 03:43 - 00469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2014-04-25 06:56 - 2014-02-22 03:43 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-04-25 06:56 - 2014-02-22 03:42 - 00943104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2014-04-25 06:56 - 2014-02-22 03:42 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2014-04-25 06:56 - 2014-02-22 03:38 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-04-25 06:56 - 2014-02-22 03:36 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2014-04-25 06:56 - 2014-02-22 03:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2014-04-25 06:56 - 2014-02-22 03:29 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2014-04-25 06:56 - 2014-02-22 03:22 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-04-25 06:56 - 2014-02-22 03:21 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2014-04-25 06:56 - 2014-01-31 04:55 - 03596800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2014-04-25 06:56 - 2014-01-31 04:10 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2014-04-25 06:56 - 2014-01-29 03:52 - 00551256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2014-04-25 06:56 - 2014-01-28 19:36 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2014-04-25 06:56 - 2014-01-27 12:04 - 01311744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-04-25 06:56 - 2014-01-17 12:24 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2014-04-25 06:56 - 2013-12-04 08:53 - 00473600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2014-04-25 06:55 - 2014-02-22 11:59 - 00209160 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2014-04-25 06:55 - 2014-02-22 11:59 - 00139464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2014-04-25 06:55 - 2014-02-22 11:15 - 00275312 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2014-04-25 06:55 - 2014-02-22 11:15 - 00188464 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2014-04-25 06:55 - 2014-02-22 11:02 - 00170952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2014-04-25 06:55 - 2014-02-22 11:02 - 00080048 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
2014-04-25 06:55 - 2014-02-22 11:00 - 00151384 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2014-04-25 06:55 - 2014-02-22 11:00 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
2014-04-25 06:55 - 2014-02-22 10:50 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2014-04-25 06:55 - 2014-02-22 10:50 - 00043408 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2014-04-25 06:55 - 2014-02-22 10:50 - 00032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2014-04-25 06:55 - 2014-02-22 10:49 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-04-25 06:55 - 2014-02-22 10:49 - 00079192 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2014-04-25 06:55 - 2014-02-22 10:44 - 00924504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2014-04-25 06:55 - 2014-02-22 10:43 - 00142576 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2014-04-25 06:55 - 2014-02-22 10:43 - 00094560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2014-04-25 06:55 - 2014-02-22 09:52 - 00251504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2014-04-25 06:55 - 2014-02-22 09:51 - 00140456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2014-04-25 06:55 - 2014-02-22 09:42 - 00232896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2014-04-25 06:55 - 2014-02-22 09:42 - 00137344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2014-04-25 06:55 - 2014-02-22 09:18 - 00089848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
2014-04-25 06:55 - 2014-02-22 09:18 - 00041320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2014-04-25 06:55 - 2014-02-22 07:20 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-power-events.dll
2014-04-25 06:55 - 2014-02-22 07:14 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2014-04-25 06:55 - 2014-02-22 07:06 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-04-25 06:55 - 2014-02-22 06:50 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2014-04-25 06:55 - 2014-02-22 06:47 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2014-04-25 06:55 - 2014-02-22 06:22 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2014-04-25 06:55 - 2014-02-22 06:16 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2014-04-25 06:55 - 2014-02-22 06:16 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clrhost.dll
2014-04-25 06:55 - 2014-02-22 06:15 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2014-04-25 06:55 - 2014-02-22 06:05 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll
2014-04-25 06:55 - 2014-02-22 06:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
2014-04-25 06:55 - 2014-02-22 06:01 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fsutil.exe
2014-04-25 06:55 - 2014-02-22 05:59 - 01283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2014-04-25 06:55 - 2014-02-22 05:56 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
2014-04-25 06:55 - 2014-02-22 05:56 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2014-04-25 06:55 - 2014-02-22 05:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2014-04-25 06:55 - 2014-02-22 05:51 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2014-04-25 06:55 - 2014-02-22 05:41 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netid.dll
2014-04-25 06:55 - 2014-02-22 05:31 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-04-25 06:55 - 2014-02-22 05:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2014-04-25 06:55 - 2014-02-22 05:17 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-04-25 06:55 - 2014-02-22 05:14 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2014-04-25 06:55 - 2014-02-22 05:13 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2014-04-25 06:55 - 2014-02-22 04:55 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-04-25 06:55 - 2014-02-22 04:49 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2014-04-25 06:55 - 2014-02-22 04:40 - 02537472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2014-04-25 06:55 - 2014-02-22 04:36 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2014-04-25 06:55 - 2014-02-22 04:36 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2014-04-25 06:55 - 2014-02-22 04:31 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2014-04-25 06:55 - 2014-02-22 04:25 - 00399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2014-04-25 06:55 - 2014-02-22 04:22 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2014-04-25 06:55 - 2014-02-22 04:18 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2014-04-25 06:55 - 2014-02-22 04:08 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2014-04-25 06:55 - 2014-02-22 04:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2014-04-25 06:55 - 2014-02-22 04:02 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2014-04-25 06:55 - 2014-02-22 03:55 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2014-04-25 06:55 - 2014-02-22 03:54 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2014-04-25 06:55 - 2014-02-22 03:54 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2014-04-25 06:55 - 2014-02-22 03:48 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
2014-04-25 06:55 - 2014-02-22 03:47 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AltTab.dll
2014-04-25 06:55 - 2014-02-22 03:44 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2014-04-25 06:55 - 2014-02-22 03:44 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2014-04-25 06:55 - 2014-02-22 03:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2014-04-25 06:55 - 2014-02-22 03:38 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2014-04-25 06:55 - 2014-02-22 03:31 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2014-04-25 06:55 - 2014-02-22 02:54 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2014-04-25 06:55 - 2014-01-31 07:08 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-04-25 06:55 - 2014-01-31 04:35 - 03085824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2014-04-25 06:55 - 2014-01-31 04:15 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2014-04-25 06:55 - 2014-01-31 04:08 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2014-04-25 06:55 - 2014-01-31 04:04 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2014-04-25 06:55 - 2014-01-27 14:53 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2014-04-25 06:55 - 2014-01-27 14:48 - 00167424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2014-04-25 06:55 - 2014-01-17 12:04 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2014-04-25 06:55 - 2013-12-04 13:41 - 00226304 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2014-04-25 06:55 - 2013-12-04 10:54 - 00660480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2014-04-25 06:55 - 2013-11-07 23:04 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-04-25 06:54 - 2014-02-22 11:58 - 00036200 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2014-04-25 06:54 - 2014-02-22 11:15 - 00071888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2014-04-25 06:54 - 2014-02-22 10:55 - 00162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2014-04-25 06:54 - 2014-02-22 10:55 - 00131168 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2014-04-25 06:54 - 2014-02-22 10:50 - 00054816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2014-04-25 06:54 - 2014-02-22 10:49 - 00189784 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
2014-04-25 06:54 - 2014-02-22 09:41 - 00033056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2014-04-25 06:54 - 2014-02-22 09:18 - 00029912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2014-04-25 06:54 - 2014-02-22 09:08 - 00079496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2014-04-25 06:54 - 2014-02-22 07:17 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2014-04-25 06:54 - 2014-02-22 07:17 - 00874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe
2014-04-25 06:54 - 2014-02-22 07:03 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2014-04-25 06:54 - 2014-02-22 06:45 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2014-04-25 06:54 - 2014-02-22 06:42 - 00038680 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2014-04-25 06:54 - 2014-02-22 06:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
2014-04-25 06:54 - 2014-02-22 06:22 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2014-04-25 06:54 - 2014-02-22 06:17 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
2014-04-25 06:54 - 2014-02-22 06:14 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cleanmgr.exe
2014-04-25 06:54 - 2014-02-22 06:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-04-25 06:54 - 2014-02-22 06:02 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2014-04-25 06:54 - 2014-02-22 05:58 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2014-04-25 06:54 - 2014-02-22 05:56 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-04-25 06:54 - 2014-02-22 05:47 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskmgr.dll
2014-04-25 06:54 - 2014-02-22 05:47 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-04-25 06:54 - 2014-02-22 05:46 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2014-04-25 06:54 - 2014-02-22 05:33 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2014-04-25 06:54 - 2014-02-22 05:30 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cleanmgr.exe
2014-04-25 06:54 - 2014-02-22 05:28 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-04-25 06:54 - 2014-02-22 05:21 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-04-25 06:54 - 2014-02-22 05:21 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2014-04-25 06:54 - 2014-02-22 05:20 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2014-04-25 06:54 - 2014-02-22 05:16 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srchadmin.dll
2014-04-25 06:54 - 2014-02-22 05:16 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2014-04-25 06:54 - 2014-02-22 05:13 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2014-04-25 06:54 - 2014-02-22 05:13 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2014-04-25 06:54 - 2014-02-22 05:04 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netid.dll
2014-04-25 06:54 - 2014-02-22 04:56 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2014-04-25 06:54 - 2014-02-22 04:54 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-04-25 06:54 - 2014-02-22 04:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2014-04-25 06:54 - 2014-02-22 04:44 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\korwbrkr.dll
2014-04-25 06:54 - 2014-02-22 04:43 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2014-04-25 06:54 - 2014-02-22 04:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2014-04-25 06:54 - 2014-02-22 04:29 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2014-04-25 06:54 - 2014-02-22 04:23 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2014-04-25 06:54 - 2014-02-22 04:19 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2014-04-25 06:54 - 2014-02-22 04:07 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2014-04-25 06:54 - 2014-02-22 04:06 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2014-04-25 06:54 - 2014-02-22 04:04 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\slpts.dll
2014-04-25 06:54 - 2014-02-22 03:59 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-04-25 06:54 - 2014-02-22 03:51 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2014-04-25 06:54 - 2014-02-22 03:46 - 03312128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2014-04-25 06:54 - 2014-02-22 03:45 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2014-04-25 06:54 - 2014-02-22 03:44 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2014-04-25 06:54 - 2014-02-22 03:44 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2014-04-25 06:54 - 2014-02-22 03:43 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BioCredProv.dll
2014-04-25 06:54 - 2014-02-22 03:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2014-04-25 06:54 - 2014-02-22 03:30 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2014-04-25 06:54 - 2014-02-22 03:20 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2014-04-25 06:54 - 2014-02-22 03:17 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2014-04-25 06:54 - 2014-01-31 06:59 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-04-25 06:54 - 2014-01-31 06:11 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-04-25 06:54 - 2014-01-29 03:40 - 00994136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2014-04-25 06:54 - 2014-01-28 19:18 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2014-04-25 06:54 - 2014-01-22 01:21 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2014-04-25 06:54 - 2014-01-22 00:50 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2014-04-25 06:54 - 2013-11-27 04:10 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
2014-04-25 06:54 - 2013-11-27 03:56 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiohlp.dll
2014-04-25 06:53 - 2014-02-22 10:59 - 00027480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2014-04-25 06:53 - 2014-02-22 10:41 - 00028416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-04-25 06:53 - 2014-02-22 07:17 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2014-04-25 06:53 - 2014-02-22 07:14 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\watchdog.sys
2014-04-25 06:53 - 2014-02-22 07:07 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2014-04-25 06:53 - 2014-02-22 07:04 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2014-04-25 06:53 - 2014-02-22 07:03 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2014-04-25 06:53 - 2014-02-22 07:01 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2014-04-25 06:53 - 2014-02-22 07:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2014-04-25 06:53 - 2014-02-22 06:59 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe
2014-04-25 06:53 - 2014-02-22 06:57 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-04-25 06:53 - 2014-02-22 06:50 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2014-04-25 06:53 - 2014-02-22 06:47 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2014-04-25 06:53 - 2014-02-22 06:45 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhevents.dll
2014-04-25 06:53 - 2014-02-22 06:37 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
2014-04-25 06:53 - 2014-02-22 06:32 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2014-04-25 06:53 - 2014-02-22 06:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2014-04-25 06:53 - 2014-02-22 06:25 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2014-04-25 06:53 - 2014-02-22 06:24 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2014-04-25 06:53 - 2014-02-22 06:24 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2014-04-25 06:53 - 2014-02-22 06:24 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe
2014-04-25 06:53 - 2014-02-22 06:16 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2014-04-25 06:53 - 2014-02-22 06:13 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2014-04-25 06:53 - 2014-02-22 06:11 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2014-04-25 06:53 - 2014-02-22 06:05 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2014-04-25 06:53 - 2014-02-22 05:59 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2014-04-25 06:53 - 2014-02-22 05:58 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAConn.dll
2014-04-25 06:53 - 2014-02-22 05:57 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2014-04-25 06:53 - 2014-02-22 05:55 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2014-04-25 06:53 - 2014-02-22 05:53 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PkgMgr.exe
2014-04-25 06:53 - 2014-02-22 05:47 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2014-04-25 06:53 - 2014-02-22 05:36 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-04-25 06:53 - 2014-02-22 05:34 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgradeResults.exe
2014-04-25 06:53 - 2014-02-22 05:29 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-04-25 06:53 - 2014-02-22 05:25 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2014-04-25 06:53 - 2014-02-22 05:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2014-04-25 06:53 - 2014-02-22 05:12 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2014-04-25 06:53 - 2014-02-22 05:09 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-25 06:53 - 2014-02-22 04:54 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2014-04-25 06:53 - 2014-02-22 04:53 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-04-25 06:53 - 2014-02-22 04:52 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2014-04-25 06:53 - 2014-02-22 04:48 - 01136128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2014-04-25 06:53 - 2014-02-22 04:45 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2014-04-25 06:53 - 2014-02-22 04:39 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2014-04-25 06:53 - 2014-02-22 04:29 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-04-25 06:53 - 2014-02-22 04:27 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-04-25 06:53 - 2014-02-22 04:26 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2014-04-25 06:53 - 2014-02-22 04:25 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2014-04-25 06:53 - 2014-02-22 04:19 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2014-04-25 06:53 - 2014-02-22 03:58 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2014-04-25 06:53 - 2014-02-22 03:55 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
2014-04-25 06:53 - 2014-02-22 03:55 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slpts.dll
2014-04-25 06:53 - 2014-02-22 03:48 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2014-04-25 06:53 - 2014-02-22 03:47 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll
2014-04-25 06:53 - 2014-02-22 03:45 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2014-04-25 06:53 - 2014-02-22 03:43 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Renewal.dll
2014-04-25 06:53 - 2014-02-22 03:39 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2014-04-25 06:53 - 2014-02-22 03:35 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2014-04-25 06:53 - 2014-02-22 03:33 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingMonitor.dll
2014-04-25 06:53 - 2014-02-22 03:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2014-04-25 06:53 - 2014-02-22 03:19 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2014-04-25 06:53 - 2014-02-01 01:00 - 00002255 _____ () C:\WINDOWS\SysWOW64\WimBootCompress.ini
2014-04-25 06:53 - 2014-02-01 01:00 - 00002255 _____ () C:\WINDOWS\system32\WimBootCompress.ini
2014-04-25 06:53 - 2014-01-31 07:09 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2014-04-25 06:53 - 2014-01-31 04:19 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2014-04-25 06:53 - 2014-01-31 03:24 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2014-04-25 06:53 - 2013-12-04 09:19 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2014-04-25 06:53 - 2013-11-07 22:47 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-04-25 06:52 - 2014-02-22 07:17 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\f3ahvoas.dll
2014-04-25 06:52 - 2014-02-22 07:08 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
2014-04-25 06:52 - 2014-02-22 07:08 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2014-04-25 06:52 - 2014-02-22 06:48 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ocsetapi.dll
2014-04-25 06:52 - 2014-02-22 06:47 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsdyn.dll
2014-04-25 06:52 - 2014-02-22 06:24 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SSShim.dll
2014-04-25 06:52 - 2014-02-22 06:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll
2014-04-25 06:52 - 2014-02-22 06:17 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2014-04-25 06:52 - 2014-02-22 06:16 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2014-04-25 06:52 - 2014-02-22 06:09 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2014-04-25 06:52 - 2014-02-22 06:08 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2014-04-25 06:52 - 2014-02-22 06:07 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\scavengeui.dll
2014-04-25 06:52 - 2014-02-22 06:07 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-04-25 06:52 - 2014-02-22 06:05 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentHost.dll
2014-04-25 06:52 - 2014-02-22 06:04 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2014-04-25 06:52 - 2014-02-22 05:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-04-25 06:52 - 2014-02-22 05:55 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2014-04-25 06:52 - 2014-02-22 05:50 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskpart.exe
2014-04-25 06:52 - 2014-02-22 05:47 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2014-04-25 06:52 - 2014-02-22 05:41 - 02566656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2014-04-25 06:52 - 2014-02-22 05:38 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2014-04-25 06:52 - 2014-02-22 05:35 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2014-04-25 06:52 - 2014-02-22 05:32 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2014-04-25 06:52 - 2014-02-22 05:21 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dfrgui.exe
2014-04-25 06:52 - 2014-02-22 05:17 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2014-04-25 06:52 - 2014-02-22 05:09 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2014-04-25 06:52 - 2014-02-22 05:03 - 02544128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2014-04-25 06:52 - 2014-02-22 04:59 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2014-04-25 06:52 - 2014-02-22 04:54 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2014-04-25 06:52 - 2014-02-22 04:48 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2014-04-25 06:52 - 2014-02-22 04:46 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2014-04-25 06:52 - 2014-02-22 04:41 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2014-04-25 06:52 - 2014-02-22 04:37 - 00183808 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2014-04-25 06:52 - 2014-02-22 04:28 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2014-04-25 06:52 - 2014-02-22 04:26 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe
2014-04-25 06:52 - 2014-02-22 04:23 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2014-04-25 06:52 - 2014-02-22 04:22 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2014-04-25 06:52 - 2014-02-22 04:16 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxshared.dll
2014-04-25 06:52 - 2014-02-22 04:09 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2014-04-25 06:52 - 2014-02-22 04:02 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2014-04-25 06:52 - 2014-02-22 03:55 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2014-04-25 06:52 - 2014-02-22 03:55 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msshooks.dll
2014-04-25 06:52 - 2014-02-22 03:54 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AepRoam.dll
2014-04-25 06:52 - 2014-02-22 03:49 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2014-04-25 06:52 - 2014-02-22 03:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2014-04-25 06:52 - 2014-02-22 03:48 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msshooks.dll
2014-04-25 06:52 - 2014-02-22 03:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2014-04-25 06:52 - 2014-02-22 03:24 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2014-04-25 06:52 - 2014-02-22 03:22 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2014-04-25 06:52 - 2014-02-22 03:20 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2014-04-25 06:52 - 2014-02-22 03:17 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2014-04-25 06:52 - 2014-02-21 23:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-04-25 06:52 - 2014-02-21 23:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-04-25 06:52 - 2014-02-21 23:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-04-25 06:52 - 2014-02-21 23:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-04-25 06:52 - 2014-02-07 20:08 - 00100197 _____ () C:\WINDOWS\SysWOW64\RacRules.xml
2014-04-25 06:52 - 2014-02-07 20:08 - 00100197 _____ () C:\WINDOWS\system32\RacRules.xml
2014-04-25 06:52 - 2014-01-27 12:54 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-04-25 06:52 - 2013-11-27 04:20 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\finger.exe
2014-04-25 06:51 - 2014-02-22 07:17 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-1.dll
2014-04-25 06:51 - 2014-02-22 07:17 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-session-winsta-l1-1-0.dll
2014-04-25 06:51 - 2014-02-22 07:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-private-l1-1-0.dll
2014-04-25 06:51 - 2014-02-22 07:17 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-kernel32-package-l1-1-1.dll
2014-04-25 06:51 - 2014-02-22 07:08 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2014-04-25 06:51 - 2014-02-22 07:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2014-04-25 06:51 - 2014-02-22 07:08 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2014-04-25 06:51 - 2014-02-22 07:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2014-04-25 06:51 - 2014-02-22 06:39 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
2014-04-25 06:51 - 2014-02-22 06:25 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\f3ahvoas.dll
2014-04-25 06:51 - 2014-02-22 06:25 - 00008192 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
2014-04-25 06:51 - 2014-02-22 06:25 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
2014-04-25 06:51 - 2014-02-22 06:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
2014-04-25 06:51 - 2014-02-22 06:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
2014-04-25 06:51 - 2014-02-22 06:16 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-04-25 06:51 - 2014-02-22 06:08 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2014-04-25 06:51 - 2014-02-22 06:07 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2014-04-25 06:51 - 2014-02-22 05:59 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ocsetapi.dll
2014-04-25 06:51 - 2014-02-22 05:35 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitagent.exe
2014-04-25 06:51 - 2014-02-22 05:27 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-04-25 06:51 - 2014-02-22 04:53 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-04-25 06:51 - 2014-02-22 04:51 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2014-04-25 06:51 - 2014-02-22 04:27 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2014-04-25 06:51 - 2014-02-22 04:19 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\korwbrkr.dll
2014-04-25 06:51 - 2014-02-22 03:57 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-04-25 06:51 - 2014-02-22 03:55 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2014-04-25 06:51 - 2014-02-22 03:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2014-04-25 06:51 - 2014-02-22 03:39 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2014-04-25 06:51 - 2014-02-21 23:43 - 00002440 ___RS () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk
2014-04-25 06:51 - 2014-02-01 01:00 - 00011109 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms
2014-04-25 06:51 - 2014-02-01 01:00 - 00011109 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms
2014-04-25 06:51 - 2014-02-01 01:00 - 00007762 _____ () C:\WINDOWS\SysWOW64\connectedsearch-suggestions.searchconnector-ms
2014-04-25 06:51 - 2014-02-01 01:00 - 00007762 _____ () C:\WINDOWS\system32\connectedsearch-suggestions.searchconnector-ms
2014-04-25 06:51 - 2014-02-01 01:00 - 00007130 _____ () C:\WINDOWS\SysWOW64\connectedsearch-zeroinput.searchconnector-ms
2014-04-25 06:51 - 2014-02-01 01:00 - 00007130 _____ () C:\WINDOWS\system32\connectedsearch-zeroinput.searchconnector-ms
2014-04-25 06:51 - 2014-01-27 06:45 - 00050053 _____ () C:\WINDOWS\system32\srms.dat
2014-04-25 06:51 - 2013-11-27 04:47 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
2014-04-25 06:00 - 2014-03-19 23:19 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2014-04-25 06:00 - 2014-03-19 22:41 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2014-04-25 06:00 - 2014-03-19 22:41 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2014-04-25 06:00 - 2014-03-19 22:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-04-25 06:00 - 2014-03-19 18:55 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2014-04-25 06:00 - 2014-03-19 02:13 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-04-25 06:00 - 2014-03-06 07:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-04-25 06:00 - 2014-03-06 04:19 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2014-04-25 06:00 - 2014-03-06 02:22 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-04-25 06:00 - 2014-03-06 01:59 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-04-25 06:00 - 2014-03-06 00:28 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-04-25 06:00 - 2014-03-06 00:20 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-04-25 05:59 - 2014-03-19 20:29 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-04-25 05:59 - 2014-03-19 19:53 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-04-25 05:59 - 2014-03-19 18:39 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-04-25 05:59 - 2014-03-11 08:21 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-04-25 05:59 - 2014-03-11 08:02 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-04-25 05:59 - 2014-03-11 07:42 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-04-25 05:59 - 2014-03-11 07:35 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-04-25 05:59 - 2014-03-08 15:38 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2014-04-25 05:59 - 2014-03-08 10:29 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-04-25 05:59 - 2014-03-08 10:29 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2014-04-25 05:59 - 2014-03-08 06:34 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2014-04-25 05:59 - 2014-03-08 02:09 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-04-25 05:59 - 2014-03-08 02:03 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-04-25 05:59 - 2014-03-08 01:46 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-04-25 05:59 - 2014-03-08 01:37 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-04-25 05:59 - 2014-03-08 01:09 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-04-25 05:59 - 2014-03-08 01:02 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-04-25 05:59 - 2014-03-08 00:41 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-04-25 05:59 - 2014-03-06 09:35 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-04-25 05:59 - 2014-03-06 09:34 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2014-04-25 05:59 - 2014-03-06 07:53 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2014-04-25 05:59 - 2014-03-06 07:53 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2014-04-25 05:59 - 2014-03-06 07:51 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-04-25 05:59 - 2014-03-06 07:51 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-04-25 05:59 - 2014-03-06 07:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-04-25 05:59 - 2014-03-06 07:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-04-25 05:59 - 2014-03-06 07:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-04-25 05:59 - 2014-03-06 06:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2014-04-25 05:59 - 2014-03-06 05:46 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2014-04-25 05:59 - 2014-03-06 05:35 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-04-25 05:59 - 2014-03-06 04:22 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-04-25 05:59 - 2014-03-06 04:20 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-04-25 05:59 - 2014-03-06 03:20 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2014-04-25 05:59 - 2014-03-06 02:02 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2014-04-25 05:59 - 2014-03-06 01:51 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2014-04-25 05:59 - 2014-03-06 01:39 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2014-04-25 05:59 - 2014-03-06 01:23 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2014-04-25 05:59 - 2014-03-06 01:16 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-04-25 05:59 - 2014-03-06 01:16 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-04-25 05:59 - 2014-03-06 01:09 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2014-04-25 05:59 - 2014-03-06 01:05 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-04-25 05:59 - 2014-03-06 00:54 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-04-25 05:59 - 2014-03-06 00:54 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-04-25 05:59 - 2014-03-06 00:42 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-04-25 05:59 - 2014-03-06 00:33 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-04-25 05:59 - 2014-03-06 00:27 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-04-25 05:59 - 2014-03-06 00:21 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-04-25 05:59 - 2014-03-04 07:25 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-04-25 05:59 - 2014-03-04 07:15 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-04-25 05:59 - 2014-03-04 06:16 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-04-25 05:59 - 2014-03-04 02:16 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2014-04-25 05:59 - 2014-03-04 02:00 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2014-04-25 05:59 - 2014-03-04 01:42 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2014-04-25 05:59 - 2014-03-04 01:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2014-04-25 05:59 - 2014-03-04 01:03 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2014-04-25 05:58 - 2014-03-19 19:48 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2014-04-25 05:58 - 2014-03-19 00:57 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-04-25 05:58 - 2014-03-19 00:50 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2014-04-25 05:58 - 2014-03-19 00:31 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2014-04-25 05:58 - 2014-03-19 00:08 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-04-25 05:58 - 2014-03-18 23:41 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-04-25 05:58 - 2014-03-18 23:17 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-04-25 05:58 - 2014-03-13 07:35 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2014-04-25 05:58 - 2014-03-11 10:18 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2014-04-25 05:58 - 2014-03-11 09:03 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2014-04-25 05:58 - 2014-03-11 09:00 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2014-04-25 05:58 - 2014-03-08 15:47 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-04-25 05:58 - 2014-03-08 15:47 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-04-25 05:58 - 2014-03-08 15:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2014-04-25 05:58 - 2014-03-08 15:35 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-04-25 05:58 - 2014-03-08 15:35 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-04-25 05:58 - 2014-03-08 04:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-04-25 05:58 - 2014-03-08 03:44 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-04-25 05:58 - 2014-03-08 03:33 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2014-04-25 05:58 - 2014-03-08 02:53 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2014-04-25 05:58 - 2014-03-08 02:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-04-25 05:58 - 2014-03-08 02:47 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
2014-04-25 05:58 - 2014-03-08 02:12 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2014-04-25 05:58 - 2014-03-08 02:04 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2014-04-25 05:58 - 2014-03-08 02:01 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-04-25 05:58 - 2014-03-08 01:50 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-04-25 05:58 - 2014-03-08 01:48 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2014-04-25 05:58 - 2014-03-08 01:41 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2014-04-25 05:58 - 2014-03-08 01:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2014-04-25 05:58 - 2014-03-08 01:31 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2014-04-25 05:58 - 2014-03-08 01:30 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2014-04-25 05:58 - 2014-03-08 00:11 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-04-25 05:58 - 2014-03-06 09:34 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2014-04-25 05:58 - 2014-03-06 07:51 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2014-04-25 05:58 - 2014-03-06 07:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-04-25 05:58 - 2014-03-06 07:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-04-25 05:58 - 2014-03-06 07:39 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2014-04-25 05:58 - 2014-03-06 06:20 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-04-25 05:58 - 2014-03-06 06:19 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2014-04-25 05:58 - 2014-03-06 06:19 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2014-04-25 05:58 - 2014-03-06 06:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2014-04-25 05:58 - 2014-03-06 05:35 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-04-25 05:58 - 2014-03-06 05:35 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-04-25 05:58 - 2014-03-06 05:35 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-04-25 05:58 - 2014-03-06 04:24 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2014-04-25 05:58 - 2014-03-06 04:22 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2014-04-25 05:58 - 2014-03-06 04:20 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-04-25 05:58 - 2014-03-06 04:20 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-04-25 05:58 - 2014-03-06 04:19 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2014-04-25 05:58 - 2014-03-06 04:08 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-04-25 05:58 - 2014-03-06 03:38 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2014-04-25 05:58 - 2014-03-06 03:00 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2014-04-25 05:58 - 2014-03-06 02:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2014-04-25 05:58 - 2014-03-06 02:16 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2014-04-25 05:58 - 2014-03-06 01:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-04-25 05:58 - 2014-03-06 01:32 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-04-25 05:58 - 2014-03-06 01:31 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-04-25 05:58 - 2014-03-06 01:29 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2014-04-25 05:58 - 2014-03-06 01:24 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2014-04-25 05:58 - 2014-03-06 01:23 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2014-04-25 05:58 - 2014-03-06 01:21 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-04-25 05:58 - 2014-03-06 01:21 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2014-04-25 05:58 - 2014-03-06 01:13 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2014-04-25 05:58 - 2014-03-06 01:13 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-04-25 05:58 - 2014-03-06 01:11 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-04-25 05:58 - 2014-03-06 01:04 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-04-25 05:58 - 2014-03-06 01:04 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2014-04-25 05:58 - 2014-03-06 00:47 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2014-04-25 05:58 - 2014-03-06 00:42 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2014-04-25 05:58 - 2014-03-04 07:15 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-04-25 05:58 - 2014-03-04 07:14 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2014-04-25 05:58 - 2014-03-04 06:10 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-04-25 05:58 - 2014-03-04 02:13 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2014-04-25 05:58 - 2014-03-04 02:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2014-04-25 05:58 - 2014-03-04 01:50 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2014-04-25 05:58 - 2014-03-04 01:39 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2014-04-25 05:58 - 2014-03-04 01:15 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2014-04-25 05:58 - 2014-03-04 00:52 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2014-04-25 05:58 - 2014-02-06 17:59 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-04-25 05:57 - 2014-03-19 18:36 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2014-04-25 05:57 - 2014-03-19 00:20 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2014-04-25 05:57 - 2014-03-12 08:45 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-04-25 05:57 - 2014-03-11 10:45 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2014-04-25 05:57 - 2014-03-11 10:02 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2014-04-25 05:57 - 2014-03-11 09:28 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2014-04-25 05:57 - 2014-03-11 09:25 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2014-04-25 05:57 - 2014-03-11 09:05 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2014-04-25 05:57 - 2014-03-08 04:02 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2014-04-25 05:57 - 2014-03-08 03:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2014-04-25 05:57 - 2014-03-08 03:12 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll
2014-04-25 05:57 - 2014-03-08 01:25 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-04-25 05:57 - 2014-03-08 01:04 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2014-04-25 05:57 - 2014-03-08 00:58 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2014-04-25 05:57 - 2014-03-06 04:29 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-04-25 05:57 - 2014-03-06 04:24 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2014-04-25 05:57 - 2014-03-06 04:24 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2014-04-25 05:57 - 2014-03-06 04:22 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2014-04-25 05:57 - 2014-03-06 04:19 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2014-04-25 05:57 - 2014-03-06 04:19 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-04-25 05:57 - 2014-03-06 04:19 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
2014-04-25 05:57 - 2014-03-06 04:08 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2014-04-25 05:57 - 2014-03-06 03:41 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
2014-04-25 05:57 - 2014-03-06 03:37 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-04-25 05:57 - 2014-03-06 03:28 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-04-25 05:57 - 2014-03-06 03:10 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
2014-04-25 05:57 - 2014-03-06 03:09 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-04-25 05:57 - 2014-03-06 02:47 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-04-25 05:57 - 2014-03-06 02:44 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-04-25 05:57 - 2014-03-06 02:08 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-04-25 05:57 - 2014-03-06 01:57 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-04-25 05:57 - 2014-03-06 01:27 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2014-04-25 05:57 - 2014-03-06 01:06 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2014-04-25 05:57 - 2014-03-06 01:01 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2014-04-25 05:57 - 2014-03-06 00:51 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2014-04-25 05:57 - 2014-03-04 01:56 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2014-04-25 05:57 - 2014-03-04 01:05 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2014-04-25 05:57 - 2014-03-04 01:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2014-04-25 05:57 - 2014-03-04 00:54 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2014-04-25 05:57 - 2014-02-06 16:26 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-04-25 05:57 - 2013-12-23 18:28 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2014-04-25 05:57 - 2013-12-23 18:26 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2014-04-25 05:30 - 2014-02-26 01:29 - 02678784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-04-25 05:10 - 2014-04-25 05:10 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-04-25 05:10 - 2014-04-25 05:10 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-04-25 04:52 - 2014-04-25 04:52 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-04-25 04:52 - 2014-04-25 04:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-04-25 02:16 - 2014-04-25 02:17 - 79946135 _____ () C:\Users\Kdawg19956\Downloads\pokemon.zip
2014-04-25 01:07 - 2014-04-24 12:22 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{47351c22-0d6c-4658-a617-795d251145e2}w64.sys
2014-04-22 13:09 - 2014-05-15 03:13 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\Files 2 save
2014-04-22 12:56 - 2014-04-22 13:09 - 00004298 _____ () C:\Users\Kdawg19956\AppData\Localtransition_8b7a2ab114270296ec86fd61fd5633e3.ini
2014-04-22 12:55 - 2014-04-22 12:55 - 09171064 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\DofusInstaller.exe
2014-04-21 22:03 - 2014-04-21 22:03 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wakfu
2014-04-21 22:02 - 2014-04-21 22:03 - 00000000 ____D () C:\Program Files (x86)\Wakfu
2014-04-21 22:02 - 2014-04-21 22:02 - 05373208 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\wakfu-setup (1).exe
2014-04-21 21:52 - 2014-04-21 21:52 - 05373208 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\wakfu-setup.exe
2014-04-21 20:38 - 2014-04-22 12:56 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Ankama
2014-04-21 20:38 - 2014-04-21 22:21 - 00005136 _____ () C:\Users\Kdawg19956\AppData\Localtransition_569b2c4b9bcb90cf036714add3a312f6.ini
2014-04-19 00:37 - 2014-04-19 00:37 - 00286124 _____ () C:\Users\Kdawg19956\Downloads\Translation Aggregator 0.4.3_min.zip
2014-04-19 00:25 - 2014-04-19 00:25 - 00303798 _____ () C:\Users\Kdawg19956\Downloads\chiitrans2.16.4505.2364.zip
2014-04-19 00:23 - 2014-04-19 00:23 - 00889416 _____ (Microsoft Corporation) C:\Users\Kdawg19956\Downloads\dotNetFx40_Full_setup.exe
2014-04-19 00:06 - 2014-05-15 03:16 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\MMC
 
==================== One Month Modified Files and Folders =======
 
2014-05-19 16:55 - 2014-05-19 16:55 - 00036434 _____ () C:\Users\Kdawg19956\Downloads\FRST.txt
2014-05-19 16:55 - 2014-05-19 16:54 - 00000000 ____D () C:\FRST
2014-05-19 16:53 - 2014-05-19 16:53 - 02067456 _____ (Farbar) C:\Users\Kdawg19956\Downloads\FRST64.exe
2014-05-19 16:49 - 2013-10-15 23:14 - 00003120 _____ () C:\WINDOWS\System32\Tasks\Advanced System Protector_startup
2014-05-19 16:48 - 2014-04-30 19:19 - 00000000 ____D () C:\Program Files\RrFilter
2014-05-19 16:47 - 2014-03-13 04:20 - 00003594 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-64267856-2629281669-3490879048-1001
2014-05-19 16:47 - 2013-06-25 14:35 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2014-05-19 16:46 - 2014-03-17 11:18 - 00003958 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5EE3A886-0879-494A-92B5-3550F2A43A37}
2014-05-19 16:44 - 2014-05-13 12:52 - 00003112 _____ () C:\WINDOWS\System32\Tasks\RDReminder
2014-05-19 16:42 - 2013-10-13 12:43 - 00000926 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-19 16:42 - 2013-07-04 20:38 - 00002205 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-19 16:42 - 2012-07-26 00:26 - 00000226 _____ () C:\WINDOWS\win.ini
2014-05-19 16:41 - 2014-05-18 01:30 - 00067825 _____ () C:\WINDOWS\WindowsUpdate.log
2014-05-19 16:28 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-05-19 07:14 - 2013-10-13 12:43 - 00000930 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-19 07:14 - 2013-08-22 22:43 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-05-18 02:45 - 2014-05-18 02:39 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\Elysium 0.12.2
2014-05-18 02:41 - 2014-05-18 02:41 - 00001678 _____ () C:\Users\Kdawg19956\Desktop\Game - Shortcut.lnk
2014-05-18 02:39 - 2014-05-18 02:39 - 129889603 _____ () C:\Users\Kdawg19956\Downloads\Elysium 0.12.2.exe
2014-05-18 02:38 - 2014-05-18 02:29 - 162725450 _____ () C:\Users\Kdawg19956\Downloads\0.6b.8.rar
2014-05-18 01:30 - 2014-05-18 01:30 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-05-18 01:30 - 2014-05-18 01:30 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-05-18 01:30 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-05-16 17:16 - 2014-05-16 17:16 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\ElderScrolls
2014-05-16 17:16 - 2014-05-16 17:16 - 00000000 ____D () C:\Program Files (x86)\directx
2014-05-16 17:13 - 2014-05-16 17:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks
2014-05-16 17:07 - 2014-05-16 17:07 - 00000000 ____D () C:\Program Files (x86)\Bethesda Softworks
2014-05-16 02:36 - 2014-05-16 02:35 - 00035622 _____ () C:\Users\Kdawg19956\Downloads\download.htm
2014-05-15 17:22 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-05-15 16:26 - 2013-11-14 02:28 - 00865408 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-05-15 16:21 - 2014-05-13 12:52 - 00000326 _____ () C:\WINDOWS\Tasks\DLL-Files.Com Fixer_Updates.job
2014-05-15 16:21 - 2014-05-13 12:52 - 00000310 _____ () C:\WINDOWS\Tasks\DLL-Files.Com Fixer_MONTHLY.job
2014-05-15 16:21 - 2013-08-22 09:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-05-15 16:20 - 2013-08-22 08:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-05-15 16:19 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-05-15 14:52 - 2014-05-13 12:52 - 00000318 _____ () C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job
2014-05-15 14:04 - 2013-09-04 19:16 - 00000000 ___RD () C:\Users\Kdawg19956\Desktop\GAMES
2014-05-15 03:25 - 2014-05-15 03:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
2014-05-15 03:25 - 2014-05-15 03:25 - 00000000 ____D () C:\Program Files\Axantum
2014-05-15 03:24 - 2014-05-15 03:24 - 03495040 _____ (Axantum Software AB) C:\Users\Kdawg19956\Downloads\AxCrypt-1.7.3156.0-Setup.exe
2014-05-15 03:16 - 2014-05-15 03:15 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\online games
2014-05-15 03:16 - 2014-04-19 00:06 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\MMC
2014-05-15 03:16 - 2013-10-04 13:06 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\DivX
2014-05-15 03:13 - 2014-04-22 13:09 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\Files 2 save
2014-05-15 03:12 - 2013-07-30 03:30 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\uTorrent
2014-05-14 22:52 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2014-05-14 22:51 - 2013-08-14 02:42 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-05-14 22:48 - 2013-08-22 08:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-05-14 22:48 - 2013-07-04 05:11 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-05-13 17:31 - 2013-07-03 11:39 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Packages
2014-05-13 13:43 - 2014-05-13 12:43 - 389445177 ____R () C:\Users\Kdawg19956\Downloads\RJ126905(Ver.140428).rar
2014-05-13 13:14 - 2013-11-27 00:32 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-05-13 12:55 - 2014-05-13 12:55 - 36797892 _____ () C:\Users\Kdawg19956\Downloads\vx_rtp102e.zip
2014-05-13 12:52 - 2014-05-13 12:52 - 00805376 _____ () C:\WINDOWS\SysWOW64\RGSS200J.dll
2014-05-13 12:52 - 2014-05-13 12:52 - 00003062 _____ () C:\WINDOWS\System32\Tasks\DLL-Files.Com Fixer_Updates
2014-05-13 12:52 - 2014-05-13 12:52 - 00003048 _____ () C:\WINDOWS\System32\Tasks\DLL-Files.Com Fixer_MONTHLY
2014-05-13 12:52 - 2014-05-13 12:52 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\dll-files.com
2014-05-13 12:51 - 2014-05-13 12:51 - 05359680 _____ (Dll-Files.com ) C:\Users\Kdawg19956\Downloads\dffsetup-rgss200j.exe
2014-05-13 12:51 - 2014-05-13 12:51 - 00001102 _____ () C:\Users\Public\Desktop\Dll-Files Fixer.lnk
2014-05-13 12:51 - 2014-05-13 12:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer
2014-05-13 12:51 - 2014-05-13 12:51 - 00000000 ____D () C:\Program Files (x86)\Dll-Files.com Fixer
2014-05-13 12:43 - 2014-05-13 12:42 - 78810463 ____R () C:\Users\Kdawg19956\Downloads\RJ099327_ver1.01.zip
2014-05-13 12:42 - 2014-05-13 12:42 - 00030289 _____ () C:\Users\Kdawg19956\Downloads\RJ126905(Ver.140428).rar.torrent
2014-05-13 12:42 - 2014-05-13 12:42 - 00024462 _____ () C:\Users\Kdawg19956\Downloads\RJ099327_ver1.01.zip.torrent
2014-05-12 19:07 - 2014-04-30 20:48 - 00000000 ____D () C:\Users\Kdawg19956\Documents\Diablo III
2014-05-12 18:55 - 2014-04-30 18:29 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Battle.net
2014-05-11 02:33 - 2014-05-11 02:33 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Essentials Codec Pack
2014-05-11 02:33 - 2014-05-11 02:33 - 00000000 ____D () C:\Program Files (x86)\Essentials Codec Pack
2014-05-11 02:32 - 2014-05-11 02:32 - 00929416 _____ (CNET Download.com) C:\Users\Kdawg19956\Downloads\cbsidlm-cbsi188-Windows_Essentials_Media_Codec_Pack-ORG-10662709.exe
2014-05-11 01:49 - 2014-05-11 01:49 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\128GRJ396-ver1.03
2014-05-11 01:48 - 2014-05-11 01:48 - 00024921 _____ () C:\Users\Kdawg19956\Downloads\128GRJ396-ver1.03.torrent
2014-05-11 01:38 - 2014-05-11 01:38 - 00076474 _____ () C:\Users\Kdawg19956\Downloads\132GRJ800_Ver1.03.torrent
2014-05-11 01:38 - 2014-05-11 01:38 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\132GRJ800_Ver1.03
2014-05-11 01:21 - 2014-05-11 01:21 - 00060294 _____ () C:\Users\Kdawg19956\Downloads\DQ女戦士陵辱無限回廊.torrent
2014-05-11 01:19 - 2014-05-11 01:19 - 14042011 _____ () C:\Users\Kdawg19956\Downloads\RJ054713_trial.zip
2014-05-09 00:09 - 2014-04-01 12:04 - 00003902 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-09 00:09 - 2014-04-01 12:04 - 00003666 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-08 23:45 - 2013-07-20 14:49 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\Back-up Files
2014-05-08 23:44 - 2014-01-16 21:20 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-05-06 16:01 - 2013-12-20 17:39 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\vlc
2014-05-06 13:59 - 2014-05-06 13:59 - 00000000 ____D () C:\Users\Kdawg19956\Downloads\A.Madea.Christmas.2013.CAM.v2.NEW.SOURCE.XviD-UNiTY
2014-05-05 23:40 - 2014-05-14 19:45 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-05 22:25 - 2014-05-14 19:45 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-05 22:00 - 2014-05-14 19:45 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-05 21:18 - 2013-06-25 14:39 - 00000000 ____D () C:\ProgramData\McAfee
2014-05-05 21:10 - 2014-05-14 19:45 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-02 15:12 - 2014-04-30 18:28 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-05-01 17:31 - 2014-05-01 17:31 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-05-01 17:31 - 2014-05-01 17:31 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-05-01 15:30 - 2014-04-29 22:26 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-05-01 15:30 - 2014-04-29 22:26 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-30 21:07 - 2012-07-26 03:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
2014-04-30 21:05 - 2012-07-26 00:37 - 00000000 ____D () C:\Users\Default.migrated
2014-04-30 20:47 - 2014-04-30 19:40 - 00000000 ____D () C:\Program Files (x86)\Diablo III
2014-04-30 19:41 - 2014-04-30 19:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2014-04-30 19:25 - 2014-04-30 19:25 - 07583696 _____ (Blizzard Entertainment) C:\Users\Kdawg19956\Downloads\Diablo-III-Setup-enUS (1).exe
2014-04-30 19:17 - 2014-04-30 19:17 - 00000000 ____D () C:\Program Files (x86)\Rr Savings
2014-04-30 19:16 - 2014-04-30 19:16 - 00000000 ____D () C:\Program Files\rrsavings
2014-04-30 19:16 - 2014-04-30 19:09 - 00000000 ____D () C:\Program Files\002
2014-04-30 19:12 - 2014-04-30 19:12 - 07583696 _____ (Blizzard Entertainment) C:\Users\Kdawg19956\Downloads\Diablo-III-Setup-enUS.exe
2014-04-30 19:08 - 2014-04-30 19:08 - 00340480 _____ () C:\Users\Kdawg19956\Downloads\diablo 3 stuck on installer__3515_i618359445_il10511290.exe
2014-04-30 18:30 - 2014-04-30 18:29 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Battle.net
2014-04-30 18:29 - 2014-04-30 18:29 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Blizzard Entertainment
2014-04-30 18:28 - 2014-04-30 18:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2014-04-30 18:28 - 2014-04-30 18:28 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-04-30 17:59 - 2014-04-30 17:58 - 00000000 ____D () C:\ProgramData\Battle.net
2014-04-30 10:05 - 2014-04-30 10:05 - 00000000 __SHD () C:\Users\Kdawg19956\AppData\Local\EmieUserList
2014-04-30 10:05 - 2014-04-30 10:05 - 00000000 __SHD () C:\Users\Kdawg19956\AppData\Local\EmieSiteList
2014-04-29 22:18 - 2013-08-22 09:44 - 00556024 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\zh-HK
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\uk-UA
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\tr-TR
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\th-TH
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\sl-SI
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\sk-SK
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\setup
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\ro-RO
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\lv-LV
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\lt-LT
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\hr-HR
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\he-IL
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\et-EE
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\en-GB
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\bg-BG
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\system32\ar-SA
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2014-04-29 14:42 - 2013-08-22 10:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\system32\Dism
2014-04-29 14:42 - 2013-08-22 08:36 - 00000000 ____D () C:\WINDOWS\servicing
2014-04-26 01:01 - 2014-03-21 23:41 - 00000000 ____D () C:\WINDOWS\Minidump
2014-04-26 01:01 - 2014-03-02 18:39 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\DAEMON Tools Lite
2014-04-26 00:52 - 2014-04-26 00:52 - 00046939 _____ () C:\Users\Kdawg19956\Downloads\3d-teen-natural-slave-escape-monsters-bleep-1846812.html
2014-04-26 00:38 - 2014-04-26 00:38 - 00046263 _____ () C:\Users\Kdawg19956\Downloads\3d-teen-monsters-bleep-priestess-of-the-forest-1624662.html
2014-04-25 05:10 - 2014-04-25 05:10 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-04-25 05:10 - 2014-04-25 05:10 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-04-25 04:52 - 2014-04-25 04:52 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-04-25 04:52 - 2014-04-25 04:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-04-25 04:51 - 2014-04-25 04:51 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-04-25 04:51 - 2014-04-25 04:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-04-25 02:17 - 2014-04-25 02:16 - 79946135 _____ () C:\Users\Kdawg19956\Downloads\pokemon.zip
2014-04-25 02:08 - 2014-03-17 00:45 - 00000000 ____D () C:\Users\Kdawg19956
2014-04-24 12:22 - 2014-04-25 01:07 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{47351c22-0d6c-4658-a617-795d251145e2}w64.sys
2014-04-22 13:43 - 2013-07-24 01:35 - 00000008 _____ () C:\Users\Kdawg19956\AppData\Roaming\DofusAppId0_1
2014-04-22 13:43 - 2013-07-24 01:35 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Dofus2
2014-04-22 13:36 - 2013-07-24 01:35 - 00000121 _____ () C:\Users\Kdawg19956\AppData\Roaming\D2Info0
2014-04-22 13:18 - 2014-04-15 10:19 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-04-22 13:16 - 2014-04-07 16:00 - 00000000 ____D () C:\Program Files (x86)\FTL
2014-04-22 13:15 - 2014-02-23 02:08 - 00000000 ____D () C:\Program Files (x86)\League of Angels
2014-04-22 13:09 - 2014-04-22 12:56 - 00004298 _____ () C:\Users\Kdawg19956\AppData\Localtransition_8b7a2ab114270296ec86fd61fd5633e3.ini
2014-04-22 12:56 - 2014-04-21 20:38 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\Ankama
2014-04-22 12:56 - 2013-07-23 22:29 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2
2014-04-22 12:55 - 2014-04-22 12:55 - 09171064 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\DofusInstaller.exe
2014-04-21 22:21 - 2014-04-21 20:38 - 00005136 _____ () C:\Users\Kdawg19956\AppData\Localtransition_569b2c4b9bcb90cf036714add3a312f6.ini
2014-04-21 22:03 - 2014-04-21 22:03 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wakfu
2014-04-21 22:03 - 2014-04-21 22:02 - 00000000 ____D () C:\Program Files (x86)\Wakfu
2014-04-21 22:02 - 2014-04-21 22:02 - 05373208 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\wakfu-setup (1).exe
2014-04-21 21:52 - 2014-04-21 21:52 - 05373208 _____ (Ankama Games) C:\Users\Kdawg19956\Downloads\wakfu-setup.exe
2014-04-21 21:05 - 2013-09-04 00:00 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Mozilla
2014-04-21 14:28 - 2014-04-13 21:36 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\New folder
2014-04-21 14:18 - 2014-01-16 22:08 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-04-21 10:32 - 2013-07-31 01:22 - 00000000 ____D () C:\Users\Kdawg19956\AppData\Local\PMB Files
2014-04-21 10:32 - 2013-07-31 01:22 - 00000000 ____D () C:\ProgramData\PMB Files
2014-04-19 00:37 - 2014-04-19 00:37 - 00286124 _____ () C:\Users\Kdawg19956\Downloads\Translation Aggregator 0.4.3_min.zip
2014-04-19 00:37 - 2014-04-18 23:51 - 00000000 ____D () C:\Users\Kdawg19956\Desktop\translator
2014-04-19 00:25 - 2014-04-19 00:25 - 00303798 _____ () C:\Users\Kdawg19956\Downloads\chiitrans2.16.4505.2364.zip
2014-04-19 00:23 - 2014-04-19 00:23 - 00889416 _____ (Microsoft Corporation) C:\Users\Kdawg19956\Downloads\dotNetFx40_Full_setup.exe
 
Files to move or delete:
====================
C:\Users\Kdawg19956\jagex_cl_runescape_LIVE.dat
C:\Users\Kdawg19956\jagex_cl_runescape_LIVE1.dat
C:\Users\Kdawg19956\random.dat
 
 
==================== Bamital & volsnap Check =================
 
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
 
 
LastRegBack: 2014-05-15 16:32
 
==================== End Of Log ============================


ADDITION
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-05-2014
Ran by Kdawg19956 at 2014-05-19 16:57:40
Running from C:\Users\Kdawg19956\Downloads
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
AV: Panda Cloud Antivirus (Enabled - Up to date) {5FD6C936-849B-5CE2-14BA-709E1D6FD1DA}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Panda Cloud Antivirus (Enabled - Up to date) {E4B728D2-A2A1-536C-2E0A-4BEC66E89B67}
FW: Cloud Antivirus Firewall (Disabled) {67ED4813-CEF4-5DBA-3FE5-D9ABE3BC96A1}
 
==================== Installed Programs ======================
 
µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.30888 - BitTorrent Inc.)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.7.0.2090 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.7.0.2090 - Adobe Systems Incorporated) Hidden
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.1.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Professional CC (HKLM-x32\...\{B56B95BF-7161-4166-8288-DB1BA9F6C9B8}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Scout CC (HKLM\...\{24CFD7EF-32B7-4FFD-B5A8-B0F129C92D0A}) (Version: 1.1.1.354079 - Adobe Systems Incorporated)
Advanced System Protector (HKLM-x32\...\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1) (Version: 2.1.1000.10905 - Systweak Software) <==== ATTENTION
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden
Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version:  - Hidden Path Entertainment, Ensemble Studios)
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Amazon Browser App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.0 - Amazon)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.5510 - Perfect World Entertainment)
Archeblade (HKLM-x32\...\Steam App 207230) (Version:  - CodeBrush Games)
AxCrypt 1.7.3156.0 (HKLM\...\{8B49CDB9-824C-44D6-A5D3-D0235D3030B8}) (Version: 1.7.3156.0 - Axantum Software AB)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Boby Lyrics (HKLM-x32\...\lyrics@bobylyrics.co) (Version:  - BobyLyrics) <==== ATTENTION
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.10 - Piriform)
Chrono Tales (HKLM-x32\...\Chrono Tales_is1) (Version:  - leeuu.com)
City of Steam: Arkadia (HKLM-x32\...\Steam App 266070) (Version:  - Mechanist Games)
CyberLink LabelPrint 2.5 (x32 Version: 2.5.5415 - CyberLink Corp.) Hidden
CyberLink Media Suite 10 (x32 Version: 10.0.1.2417 - CyberLink Corp.) Hidden
CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.)
CyberLink Power2Go 8 (x32 Version: 8.0.0.2126 - CyberLink Corp.) Hidden
CyberLink PowerDirector 10 (x32 Version: 10.0.1.2413 - CyberLink Corp.) Hidden
CyberLink PowerDVD 10 (x32 Version: 10.0.4828.52 - CyberLink Corp.) Hidden
D.C.Ⅲ RX (HKLM-x32\...\DC3RX) (Version:  - CIRCUS)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
DefaultTab (HKLM-x32\...\DefaultTab) (Version: 2.2.16.0 - Search Results, LLC) <==== ATTENTION
Define Ext (HKCU\...\Define Ext) (Version: 8 - DefineExt.com)
Delete Virtual-Mate Launcher (HKLM-x32\...\{56C64E81-FC93-4cb9-9EBF-953662950D3B}_is1) (Version: 1.0.1 - Interlex Inc.)
Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.0.0.6 - Dell Inc.)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.0.0.6 - Dell Inc.)
Dell Product Registration (HKLM-x32\...\{2A0F2CC5-3065-492C-8380-B03AA7106B1A}) (Version: 1.16.1 - Dell Inc.)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 16.3.7.0 - Synaptics Incorporated)
DesktopWeatherAlerts (HKCU\...\DesktopWeatherAlerts) (Version: 1.0.13.0 - Local Weather LLC)
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.84 - DivX, LLC)
Dll-Files Fixer (HKLM-x32\...\Dll-Files Fixer_is1) (Version: 3.1.81 - Dll-Files.com)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - Valve)
Dragon Nest (HKLM-x32\...\Steam App 11610) (Version:  - Eyedentity Games Inc.)
Dragon Nest Europe (HKLM-x32\...\Dragon Nest Europe) (Version:  - )
Dragon's Prophet (HKLM-x32\...\Steam App 229100) (Version:  - Sony Online Entertainment)
Duel of Champions (HKLM-x32\...\MMDoC-PDCLive) (Version:  - Ubisoft)
Elsword version v4.0319.4.3 (HKLM-x32\...\{E655DDFC-24DB-4FC3-8474-271E911309B4}_is1) (Version: v4.0319.4.3 - Kill3rCombo)
EverQuest II (HKCU\...\SOE-EverQuest II) (Version:  - Sony Online Entertainment)
Express Zip (HKLM-x32\...\ExpressZip) (Version: 2.17 - NCH Software)
ExpressFiles (HKCU\...\ExpressFiles) (Version: 1.8.1 - http://www.express-files.com/) <==== ATTENTION
ExpressZIP v4.0 (HKLM-x32\...\ExpressZIP_is1) (Version:  - AVANTRIX Inc.)
Ezvid (HKLM-x32\...\{F96D619D-99D6-4C9C-A393-0CD22DE1CA66}_is1) (Version: 0978 - Ezvid, inc.)
Fast Browser (HKCU\...\Chromium) (Version: 29.0.1531.0 - Fast Browser)
Feature Update Service (YFD) (HKCU\...\YourFileDownloaderUpdater) (Version: 1.4.1 - ) <==== ATTENTION
Flash Player Pro V5.4 (HKLM-x32\...\Flash Player Pro_is1) (Version:  - FlashPlayerPro.com)
Forged By Chaos (HKLM-x32\...\ForgedByChaos) (Version:  - )
FTDownloader (HKLM-x32\...\1ClickDownload) (Version: 2.1 Build 26473 - FTDownloader.com) <==== ATTENTION
FTdownloader V4.0 (HKLM-x32\...\FTdownloader V4.0) (Version: 1.27.153.8 - installdaddy) <==== ATTENTION
Game Translator 2.0 (HKLM-x32\...\Game Translator) (Version: 2.0 - WATTO Studios)
General Downloader 2.0.10.263 (HKLM-x32\...\{414C790F-E24E-461B-983A-2AD84474DE4A}_is1) (Version: 2.0.10.263 - )
GoforFiles (HKCU\...\GoforFiles) (Version: 1.9.1 - http://www.goforfiles.com/) <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
Guild Wars (HKCU\...\Guild Wars) (Version:  - )
Guild Wars (HKLM-x32\...\Steam App 29720) (Version:  - ArenaNet)
Happy Cloud Client (HKCU\...\HappyCloud) (Version: 3.41 - Happy Cloud, Inc.)
Higurashi When They Cry (HKLM-x32\...\Higurashi When They Cry_is1) (Version:  - )
IGG Web3D Player version 1.0.0.38 (HKCU\...\IGG Web3D Player_is1) (Version: 1.0.0.38 - IGG, Inc.)
iLivid (HKLM-x32\...\iLivid) (Version: 5.0.0.4002 - Bandoo Media Inc) <==== ATTENTION
ILLUSION BattleRaper2 (HKLM-x32\...\{32470264-B8B8-408E-A404-73A9DF16B8FE}) (Version: 1.00.0000 - ILLUSION)
Infinity Wars - Animated Trading Card Game (HKLM-x32\...\Steam App 257730) (Version:  - Lightmare Studios)
Installer VISE 3.7 (HKLM-x32\...\Installer VISE 3.7) (Version:  - )
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel® PRO/Wireless Driver (Version: 16.01.5000.0577 - Intel Corporation) Hidden
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Intel® PROSet/Wireless for Bluetooth® + High Speed (HKLM\...\{F13921D6-AE6D-41BF-807A-17BD99C0A4FD}) (Version: 15.5.5.0480 - Intel Corporation)
Intel® PROSet/Wireless Software for Bluetooth® Technology (HKLM\...\{0728A184-F899-4356-B93D-8228674F0DEB}) (Version: 2.6.1209.0268 - Motorola Solutions, Inc.)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.7.0.1013 - Intel Corporation)
Intel® Turbo Boost Technology Monitor 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel)
Intel® WiDi (HKLM\...\{6097158B-0184-4140-BEC3-7885794D2571}) (Version: 3.5.40.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (Version: 16.01.5000.0269 - Intel Corporation) Hidden
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden
iTunes (HKLM\...\{F73A118B-8271-47E2-8790-0C636B2539C5}) (Version: 11.1.0.126 - Apple Inc.)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Kalydo Player 6.00.00 (HKCU\...\KalydoPlayer) (Version: 6.00.00 - Eximion B.V.)
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
League of Legends (x32 Version: 3.0.0 - Riot Games) Hidden
Lightning Warrior Raidy (HKLM-x32\...\Lightning Warrior Raidy) (Version:  - )
Lightspark 0.5.3-git (HKLM-x32\...\Lightspark) (Version: 0.5.3-git - Lightspark Team)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.141.11 - McAfee, Inc.)
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4605.1003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden
Morrowind (HKLM-x32\...\{C325F588-D6B1-4A7F-B6A2-914C75DDA348}) (Version:  - )
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 26.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 26.0 (x86 en-US)) (Version: 26.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.3.6280.92 - PC-Doctor, Inc.)
MyPC Backup  (HKLM\...\MyPC Backup) (Version:  - MyPC Backup) <==== ATTENTION
Nagai_Yamiji (HKCU\...\Nagai_Yamiji) (Version:  - )
Need for Speed Most Wanted (HKLM-x32\...\Need for Speed Most Wanted_is1) (Version:  - )
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden
Panda Cloud Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 2.2.0 - Panda Security)
Panda Cloud Antivirus (Version: 6.06.00.0000 - Panda Security) Hidden
Panda Security Toolbar (HKLM-x32\...\pandasecuritytb) (Version: 4.1.0.5 - Panda Security and Visicom Media Inc.)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.9 - Pando Networks Inc.)
Panzar (HKLM-x32\...\{4FF82163-423A-43CE-898D-3B60D19A5E8F}_is1) (Version: 1.0 - Panzar)
Path of Exile (HKLM-x32\...\Steam App 238960) (Version:  - Grinding Gear Games)
PC Fix Speed with 24x7 Help 1.2.0.24 (HKLM-x32\...\{F7B34B38-02A6-44D5-B8CC-06EB3B8ACFC9}_is1) (Version: 1.2.0.24 - Crawler, LLC.)
PC Health Kit v3.2 (HKLM-x32\...\PC Health Kit_is1) (Version: 3.2 - PC Health Labs)
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Prime World version 9.8.6 (HKLM-x32\...\{F6F3C462-2729-4555-8A95-CC317A90F8FF}_is1) (Version: 9.8.6 - Nival)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 10.15.018 - Dell Inc.)
Razer Core (HKLM-x32\...\Razer Core) (Version: 1.0.1.56 - Razer Inc)
Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.16.6 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6788 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
RegClean Pro (HKLM-x32\...\RegClean Pro_is1) (Version: 6.21 - Systweak Inc) <==== ATTENTION
RequiemFacebook (HKCU\...\Kalydo App RequiemFacebook) (Version: 0.00.01.168 - )
requiem-fb (HKCU\...\Kalydo App requiem-fb) (Version: 0.00.01.168 - )
RGSS-RTP Standard (HKLM-x32\...\RGSS-RTP Standard_is1) (Version: 1.04 - Enterbrain)
RIFT (HKCU\...\RIFT) (Version:  - Trion Worlds, Inc.)
RPG MAKER VX Ace RTP (HKLM-x32\...\RPGVXAce_RTP_is1) (Version: 1.00 - Enterbrain)
RPG Maker VX RTP (HKLM-x32\...\RPG Maker VX RTP_is1) (Version: 1.02 - Enterbrain)
RrFilter (Version: 1.0.0.0 - RrFilter) Hidden
rrsavings (HKLM\...\rrsavings) (Version: 2.0.1 - rrsavings) <==== ATTENTION
RrSavings (x32 Version: 1.0.0.0 - RrSavings) Hidden <==== ATTENTION
Rusty Hearts (HKLM-x32\...\Steam App 36630) (Version:  - Stairway Games)
ScarletBlade (HKLM-x32\...\ScarletBlade) (Version:  - )
Search Protection (HKCU\...\Search Protection) (Version: 7.5.0.1 - Spigot, Inc.) <==== ATTENTION
SerialTrunc (HKLM\...\SerialTrunc) (Version: 2014.03.28.233834 - SerialTrunc)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Shin Megami Tensei Imagine (HKLM-x32\...\5257AC64-44EB-4D0A-9421-BADA0C4054A5_is1) (Version: 1.0 - Marvelous USA, Inc.)
Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.2.15747.10003 - Microsoft Corporation)
Skype 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
Software Informer 1.2 (HKLM\...\Software Informer_is1) (Version:  - Informer Technologies, Inc.)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
TERA (HKLM-x32\...\{0FCDA0F8-F3E5-402E-B9B6-13CB2B01182B}) (Version: 1.6 - En Masse Entertainment)
TES Construction Set (HKLM-x32\...\{DB3C800B-081B-4146-B4E3-EFB5B77AA913}) (Version:  - )
The Lord of the Rings Online (HKCU\...\LOTROen) (Version:  - )
TidyNetwork (HKCU\...\TidyNetwork) (Version:  - TidyNetwork)
TidyNetwork.com (HKCU\...\TidyNetwork.com) (Version:  - TidyNetwork.com)
Tiny Download Manager (remove only) (HKLM-x32\...\TinyDM) (Version: 2 - TinyDM LTD)
Tokimeki Check in! (HKLM-x32\...\Tokimeki Check in!) (Version:  - )
Uninstall TrianglePlayer (HKLM-x32\...\TrianglePlayer_is1) (Version: 2012 - Fuzhou Zhuo Yue Wu Xian Software Development Company Limited)
Unity (HKLM-x32\...\Unity) (Version:  - Unity Technologies ApS)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for Japanese Microsoft IME Postal Code Dictionary (HKLM-x32\...\{121C874E-5797-40B2-86CE-CE6624F2711A}) (Version: 15.0.1376 - Microsoft Corporation)
Update for Japanese Microsoft IME Standard Dictionary (HKLM-x32\...\{7DB71278-9AD7-4480-AB08-8649C5010B17}) (Version: 15.0.1215 - Microsoft Corporation)
Update for Japanese Microsoft IME Standard Extended Dictionary (HKLM-x32\...\{78CE66A9-85AF-4BD8-8FB7-35B5F3846C00}) (Version: 15.0.1215 - Microsoft Corporation)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VIO Player version 1.0.1 (HKLM-x32\...\{C8A17598-7F89-41EA-9876-0F89DA0B24F1}_is1) (Version: 1.0.1 - VIO)
Vizzed Retro Game Room (HKLM-x32\...\{6D9F35D2-1D6F-4E17-A79F-991A7BD24AAD}) (Version: 2.0.0 - Vizzed)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Wakfu (HKCU\...\wakfu) (Version:  - Ankama Games)
Warframe (HKLM-x32\...\Steam App 230410) (Version:  - Digital Extremes)
Windows Essentials Media Codec Pack 4.7 [64-Bit] (HKLM-x32\...\Windows Essentials Media Codec Pack) (Version: 4.7 - Media Codec)
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
WinZip 17.5 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240DD}) (Version: 17.5.10562 - WinZip Computing, S.L. )
Wizardry Online (HKLM-x32\...\Steam App 221360) (Version:  - Gamepot Inc)
Wolfteam (HKLM-x32\...\Wolfteam) (Version:  - )
WordOv (HKCU\...\WordOv) (Version: 3 - wordoverview.com)
World of Warplanes (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C813NA}_is1) (Version:  - Wargaming.net)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)
Yahoo Browser Settings (HKLM-x32\...\Yahoo Browser Settings) (Version:  - Yahoo! Inc.)
YourFileDownloader (HKCU\...\YourFileDownloader) (Version: 1.4.1 - http://www.yourfiledownloader.com/) <==== ATTENTION
るいは智を呼ぶ (HKLM-x32\...\{78DBA0F5-56C4-4EF9-BBF2-CC69C0A1A738}) (Version:  - )
妻とママとボイン (HKLM-x32\...\TsumaBoin) (Version:  - )
 
==================== Restore Points  =========================
 
06-05-2014 19:04:40 Windows Update
13-05-2014 17:57:42 DLL-Files Fixer Tue, May 13, 14  12:57
15-05-2014 08:24:55 Installed AxCrypt 1.7.3156.0
16-05-2014 22:07:09 Installed Morrowind
 
==================== Hosts content: ==========================
 
2013-08-22 08:25 - 2014-05-11 02:33 - 00000867 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 d3oxij66pru1i3.cloudfront.net
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: {01BFEC2D-3292-4731-AE74-64B7D67BE475} - System32\Tasks\Dell\Dell System Registration => C:\Program Files (x86)\System Registration\prodreg.exe [2012-07-09] (Dell, Inc.)
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {06048347-8550-420E-BF8E-7ACF9B208194} - \TidyNetwork Update No Task File <==== ATTENTION
Task: {069D1F3E-E661-45E4-938A-BA12B2A9B0DC} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-04-13] (Microsoft Corporation)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0FD39F1D-08D0-419C-A66E-0A3C862F845D} - \EPUpdater No Task File <==== ATTENTION
Task: {19B65C04-C74B-4CD3-83CC-58D0E52B999B} - \TidyNetwork Metro No Task File <==== ATTENTION
Task: {1BC8C7DF-BE6A-4C3C-AB6A-7CB80C1C891F} - \CCleanerSkipUAC No Task File <==== ATTENTION
Task: {1C8E3E98-1D16-4802-A265-71B0E4291F3B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-04] (Google Inc.)
Task: {1DFB0D2A-132F-400F-AE5B-51AEBF7AAB02} - \CLMLSvc_P2G8 No Task File <==== ATTENTION
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {31CF3922-BB61-4D1C-804B-5555B66A338C} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
Task: {33133EBC-4836-4164-A580-0A049875A958} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-05-14] (Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {48415E0F-FC20-40FB-9E65-2933B0C988B1} - \SoftwareInformerService No Task File <==== ATTENTION
Task: {488EC9D1-C720-4FCD-81C8-36EED82A433C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-03-30] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {55C6A73D-39D8-4296-98B4-CD1F4E31464D} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {590E3DBF-76BF-4428-9AD3-5B8CBF9D97F1} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {609CB727-B654-4B87-8D8F-C003FD3FE162} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com)
Task: {63CF703D-94B6-4EE8-A6A7-35566BB73C9F} - \AdobeAAMUpdater-1.0-MightyRambo-Kdawg19956 No Task File <==== ATTENTION
Task: {676AC727-589F-4FFC-8BCA-09EBB2F7CD4C} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {67DC55E7-5847-419C-B318-2B6343ADC83A} - \PCDEventLauncherTask No Task File <==== ATTENTION
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {7405D1F1-9723-4757-A094-3536C271FDCE} - \GoforFilesUpdate No Task File <==== ATTENTION
Task: {74A30D66-79B0-4A81-B571-673AD6587C98} - System32\Tasks\Advanced System Protector_startup => C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe [2013-05-24] (Systweak) <==== ATTENTION
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {79ACF49A-B548-4A55-9890-1B6CE2A97A7D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated)
Task: {7B73D540-9205-46A7-9A3E-50E2F6AE4B25} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com)
Task: {7EBB6D72-C405-4978-A935-A878F0F411C8} - System32\Tasks\RDReminder => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {98A9F9CE-F044-4FCB-8775-7F2FBFC53788} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {9EB43317-D6BF-49C0-8897-ED1431C9B768} - System32\Tasks\DLL-Files FixerASKUSER => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-02-13] (Dll-FIles.Com)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A511B950-421F-43FB-9351-59B5C9FCE77E} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
Task: {AB479518-DDFE-400F-A565-1CC99EC5A16D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-04] (Google Inc.)
Task: {C06A692D-5144-40AD-A904-DC44C641D7E7} - \RegClean Pro No Task File <==== ATTENTION
Task: {CDB6EB37-13B1-48A5-AB0F-2B687EFAA81C} - \CLVDLauncher No Task File <==== ATTENTION
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D4A89578-B82A-4E7E-9383-3C1B3B2FCA2F} - \SystemToolsDailyTest No Task File <==== ATTENTION
Task: {D6D91AF0-77A9-44EF-8346-43A9C7DADCB4} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E4D77678-E8F6-40BB-9648-5F1D7544B7AF} - \Synaptics TouchPad Enhancements No Task File <==== ATTENTION
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EFD4FB13-129E-49DE-9A8F-52BFD217A390} - \PCDoctorBackgroundMonitorTask No Task File <==== ATTENTION
Task: {F5AE69A9-6E80-4FE4-9A2F-96EA7F0F4286} - \Express FilesUpdate No Task File <==== ATTENTION
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: C:\WINDOWS\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: C:\WINDOWS\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
 
==================== Loaded Modules (whitelisted) =============
 
2013-06-25 14:32 - 2012-04-24 21:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2014-03-06 15:52 - 2014-03-06 15:52 - 00171008 _____ () c:\Program Files\RrFilter\RrFilterService64.exe
2014-03-04 13:25 - 2014-03-04 13:25 - 00110080 _____ () c:\Program Files\RrFilter\nfapi.dll
2014-03-04 13:25 - 2014-03-04 13:25 - 00317952 _____ () c:\Program Files\RrFilter\ProtocolFilters.dll
2014-04-30 19:16 - 2014-04-30 19:16 - 00706560 _____ () C:\Program Files\002\fpvoixdaog64.exe
2014-04-01 02:58 - 2014-05-18 20:12 - 00317728 _____ () C:\Program Files (x86)\SerialTrunc\bin\utilSerialTrunc.exe
2014-04-25 01:07 - 2014-04-24 12:22 - 00287008 _____ () C:\Program Files (x86)\SerialTrunc\bin\SerialTrunc.PurBrowse64.exe
2014-03-28 18:38 - 2014-05-18 20:45 - 00317728 _____ () C:\Program Files (x86)\SerialTrunc\updateSerialTrunc.exe
2013-07-31 22:36 - 2013-07-31 22:36 - 03359088 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll
2014-04-13 21:28 - 2014-04-13 21:28 - 08884904 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-01-25 02:22 - 2014-01-25 02:22 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-04-10 01:11 - 2014-05-16 19:23 - 00096544 _____ () C:\Program Files (x86)\SerialTrunc\bin\SerialTrunc.BrowserAdapter.exe
2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-04-12 12:23 - 2013-04-12 12:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\SQLite3.dll
2014-04-30 06:24 - 2014-04-30 06:24 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\7a891719ed7b38bb959d812adc580f5c\PSIClient.ni.dll
2013-06-25 14:21 - 2012-06-25 13:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
2013-10-15 23:14 - 2012-07-25 12:03 - 00886272 _____ () C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll
2013-10-15 23:14 - 2013-05-24 13:13 - 01730928 _____ () C:\Program Files (x86)\Advanced System Protector\aspsys.dll
2013-10-15 23:14 - 2012-07-25 12:03 - 00168448 _____ () C:\Program Files (x86)\Advanced System Protector\UNRAR.DLL
2014-05-14 19:50 - 2014-05-07 18:29 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\chrome_elf.dll
2014-04-10 01:11 - 2014-05-16 19:23 - 00183584 _____ () C:\Program Files (x86)\SerialTrunc\bin\SerialTruncBAApp.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libglesv2.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libegl.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ffmpegsumo.dll
2014-05-14 19:50 - 2014-05-07 18:29 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
AlternateDataStreams: C:\WINDOWS\system32\Drivers\btmhsf.sys:Microsoft_Appcompat_ReinstallUpgrade
 
==================== Safe Mode (whitelisted) ===================
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
 
==================== EXE Association (whitelisted) =============
 
 
==================== Disabled items from MSCONFIG ==============
 
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31949907
 
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31949907
 
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15953
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15953
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14469
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 14469
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 12985
 
 
System errors:
=============
Error: (05/19/2014 04:43:05 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the SftService service.
 
Error: (05/19/2014 04:40:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Computer Backup (MyPC Backup) service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (05/18/2014 05:36:47 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The fpvoixdaog64 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 300000 milliseconds: Restart the service.
 
Error: (05/16/2014 07:13:04 PM) (Source: DCOM) (EventID: 10010) (User: MightyRambo)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
 
Error: (05/16/2014 07:12:34 PM) (Source: DCOM) (EventID: 10010) (User: MightyRambo)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
 
Error: (05/16/2014 05:13:01 PM) (Source: cdrom) (EventID: 7) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
Error: (05/16/2014 05:12:46 PM) (Source: cdrom) (EventID: 7) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
Error: (05/16/2014 05:06:15 PM) (Source: cdrom) (EventID: 7) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
Error: (05/16/2014 05:05:32 PM) (Source: cdrom) (EventID: 7) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
Error: (05/16/2014 05:04:50 PM) (Source: cdrom) (EventID: 7) (User: )
Description: The device, \Device\CdRom0, has a bad block.
 
 
Microsoft Office Sessions:
=========================
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31949907
 
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31949907
 
Error: (05/19/2014 04:28:00 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15953
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15953
 
Error: (05/19/2014 07:35:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14469
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 14469
 
Error: (05/19/2014 07:35:45 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/19/2014 07:35:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 12985
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-05-15 16:23:04.294
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-05-04 02:00:25.732
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-30 21:16:39.703
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-29 22:20:26.017
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-25 02:08:26.605
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-22 13:06:03.344
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-21 20:23:38.422
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-21 14:30:47.550
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-17 23:00:12.749
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2014-04-16 14:09:14.618
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\VMLaunch\BuddyVM.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
 
==================== Memory info =========================== 
 
Percentage of memory in use: 31%
Total physical RAM: 8061.27 MB
Available physical RAM: 5514.01 MB
Total Pagefile: 16253.27 MB
Available Pagefile: 13375.26 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:913.31 GB) (Free:501.09 GB) NTFS
Drive e: (NEW) (CDROM) (Total:0.55 GB) (Free:0 GB) CDFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 96BD4C12)
 
Partition: GPT Partition Type.
 
==================== End Of Log ============================

Edited by boopme, 19 May 2014 - 06:15 PM.


BC AdBot (Login to Remove)

 


#2 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:42 AM

Posted 20 May 2014 - 03:05 AM

Hi there,
my name is Marius and I will assist you with your malware related problems.

Before we move on, please read the following points carefully.

  • First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while following my instructions, Stop there and tell me the exact nature of your problem.
  • Do not run any other scans without instruction or add/remove software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
  • Post all logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.
  • Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
  • My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.

 

 

Add-/remove programms

Click on start-->control panel.

Vista/7: Open Programs and Features
XP: Open add/remove programs

Search for and remove the following programs

Advanced System Protector
Boby Lyrics
DefaultTab
ExpressFiles
Feature Update Service
FTDownloader
FTdownloader V4.0
GoforFiles
iLivid
MyPC Backup
RegClean Pro
rrsavings
RrSavings
Search Protection
YourFileDownloader


Close the window.

 

 

 

Scan with Gmer rootkit scanner

Please download Gmer from here by clicking on the "Download EXE" Button.

  • Double click on the randomly named GMER.exe. If asked to allow gmer.sys driver to load, please consent.
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO.
  • In the right panel, you will see several boxes that have been checked. Uncheck the following ...
    • Sections
    • IAT/EAT
    • Show All ( should be unchecked by default )
  • Leave everything else as it is.
  • Close all other running programs as well as your Browser.
  • Click the Scan button & wait for it to finish.
  • Once done click on the Save.. button, and in the File name area, type in "ark.txt" or it will save as a .log file which cannot be uploaded to your post.
  • Save it where you can easily find it, such as your desktop.
  • Please post the content of the ark.txt here.

**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries

 

 

 

When finished, create and post new logs with FRST.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#3 MightyRambo

MightyRambo
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:42 AM

Posted 21 May 2014 - 12:36 AM

this is what u asked of me not sure what most of it means but hope i did everything right!

Attached Files

  • Attached File  FRST.txt   161.3KB   0 downloads
  • Attached File  ark.txt   1.04KB   2 downloads


#4 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:42 AM

Posted 21 May 2014 - 04:32 AM

Scan with TDSS-Killer

Please read and follow these instructions carefully. We do not want it to fix anything yet (if found), we need to see a report first.

Download TDSSKiller.zip and extract to your desktop

  • Execute TDSSKiller.exe by doubleclicking on it.
  • Press Start Scan
  • If Malicious objects are found, do NOT select Copy to quarantine. Change the action to Skip, and save the log.
  • Once complete, a log will be produced at the root drive which is typically C:\ ,for example, C:\TDSSKiller.<version_date_time>log.txt


Please attach this file to your next reply.

 

 

When finished, start FRST, place a checkmark next to "Addition.txt" and hit scan. Post the addition.txt as well.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#5 MightyRambo

MightyRambo
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:05:42 AM

Posted 22 May 2014 - 01:10 PM

12:57:56.0252 0x2a7c  TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
12:57:56.0252 0x2a7c  UEFI system
12:58:06.0302 0x2a7c  ============================================================
12:58:06.0302 0x2a7c  Current date / time: 2014/05/22 12:58:06.0302
12:58:06.0302 0x2a7c  SystemInfo:
12:58:06.0302 0x2a7c  
12:58:06.0302 0x2a7c  OS Version: 6.3.9600 ServicePack: 0.0
12:58:06.0302 0x2a7c  Product type: Workstation
12:58:06.0302 0x2a7c  ComputerName: MIGHTYRAMBO
12:58:06.0303 0x2a7c  UserName: Kdawg19956
12:58:06.0303 0x2a7c  Windows directory: C:\WINDOWS
12:58:06.0303 0x2a7c  System windows directory: C:\WINDOWS
12:58:06.0303 0x2a7c  Running under WOW64
12:58:06.0303 0x2a7c  Processor architecture: Intel x64
12:58:06.0303 0x2a7c  Number of processors: 4
12:58:06.0303 0x2a7c  Page size: 0x1000
12:58:06.0303 0x2a7c  Boot type: Normal boot
12:58:06.0303 0x2a7c  ============================================================
12:58:06.0782 0x2a7c  KLMD registered as C:\WINDOWS\system32\drivers\99507371.sys
12:58:07.0044 0x2a7c  System UUID: {D3EFDB3A-5065-55AC-8BBA-E48EC3887014}
12:58:08.0009 0x2a7c  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
12:58:08.0017 0x2a7c  ============================================================
12:58:08.0017 0x2a7c  \Device\Harddisk0\DR0:
12:58:08.0017 0x2a7c  GPT partitions:
12:58:08.0018 0x2a7c  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {969064F3-74DA-4DB3-B65F-60F383621D48}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0xFA000
12:58:08.0018 0x2a7c  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {796BADD3-6BBF-4D9F-B631-466EB71A4965}, UniqueGUID: {BAF12AC9-ECE4-4F66-B9BE-295E278B640B}, Name: Basic data partition, StartLBA 0xFA800, BlocksNum 0x14000
12:58:08.0018 0x2a7c  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {7FB4956E-2C86-495B-9B41-53F7CC101A75}, Name: Microsoft reserved partition, StartLBA 0x10E800, BlocksNum 0x40000
12:58:08.0019 0x2a7c  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {15009355-C360-423E-AF08-BAEBE8329A58}, Name: Basic data partition, StartLBA 0x14E800, BlocksNum 0xF5000
12:58:08.0019 0x2a7c  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {E400E09C-26C1-4151-B07F-DB36C1FF991F}, Name: Basic data partition, StartLBA 0x243800, BlocksNum 0x7229C800
12:58:08.0019 0x2a7c  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {432CD14A-7ABA-4DB9-AF2B-315B86EF102A}, Name: , StartLBA 0x724E0000, BlocksNum 0xE1000
12:58:08.0019 0x2a7c  \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {6638C934-12B8-4351-A806-837341ADB5A1}, Name: Microsoft recovery partition, StartLBA 0x725C1000, BlocksNum 0x21455B0
12:58:08.0019 0x2a7c  MBR partitions:
12:58:08.0019 0x2a7c  ============================================================
12:58:08.0061 0x2a7c  C: <-> \Device\Harddisk0\DR0\Partition5
12:58:08.0061 0x2a7c  ============================================================
12:58:08.0061 0x2a7c  Initialize success
12:58:08.0061 0x2a7c  ============================================================
12:58:10.0702 0x184c  ============================================================
12:58:10.0702 0x184c  Scan started
12:58:10.0702 0x184c  Mode: Manual; 
12:58:10.0702 0x184c  ============================================================
12:58:10.0702 0x184c  KSN ping started
12:58:13.0069 0x184c  KSN ping finished: true
12:58:13.0862 0x184c  ================ Scan system memory ========================
12:58:13.0862 0x184c  System memory - ok
12:58:13.0864 0x184c  ================ Scan services =============================
12:58:14.0140 0x184c  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
12:58:14.0158 0x184c  1394ohci - ok
12:58:14.0289 0x184c  [ 7041E9C7DEAD7072AFDD9E25FBD6056C, 19E3506827746FF299F34AC443638624520BBBCDE744D2D7AF6F86EAB8C3E26F ] 24x7HelpSvc     C:\Program Files (x86)\24x7Help\App24x7Svc.exe
12:58:14.0310 0x184c  24x7HelpSvc - ok
12:58:14.0346 0x184c  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
12:58:14.0354 0x184c  3ware - ok
12:58:14.0443 0x184c  [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
12:58:14.0483 0x184c  ACPI - ok
12:58:14.0517 0x184c  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
12:58:14.0523 0x184c  acpiex - ok
12:58:14.0545 0x184c  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
12:58:14.0548 0x184c  acpipagr - ok
12:58:14.0600 0x184c  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
12:58:14.0603 0x184c  AcpiPmi - ok
12:58:14.0622 0x184c  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
12:58:14.0625 0x184c  acpitime - ok
12:58:14.0814 0x184c  [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
12:58:14.0828 0x184c  AdobeFlashPlayerUpdateSvc - ok
12:58:14.0899 0x184c  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
12:58:14.0943 0x184c  ADP80XX - ok
12:58:15.0010 0x184c  [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc     C:\WINDOWS\System32\aelupsvc.dll
12:58:15.0024 0x184c  AeLookupSvc - ok
12:58:15.0116 0x184c  [ D1E343BC00136CE03C4D403194D06A80, 94F2543164A2CEA179EDE53E1294EE24391A59CAEFF83BA5CE9385E8E686E89C ] AERTFilters     C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
12:58:15.0123 0x184c  AERTFilters - ok
12:58:15.0184 0x184c  [ 239268BAB58EAE9A3FF4E08334C00451, 13F927730DF9BAEDB3A7AB6F7238270A20E4CDEB3D5324A1C471DF2209F3D239 ] AFD             C:\WINDOWS\system32\drivers\afd.sys
12:58:15.0215 0x184c  AFD - ok
12:58:15.0259 0x184c  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
12:58:15.0265 0x184c  agp440 - ok
12:58:15.0288 0x184c  [ 8E8E34B7BA059050EED827410D0697A2, 85B6684709F24729A6497563812A90A54068AC2DD9EEA03037CB1EEF5C85AAA9 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
12:58:15.0294 0x184c  ahcache - ok
12:58:15.0343 0x184c  [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG             C:\WINDOWS\System32\alg.exe
12:58:15.0350 0x184c  ALG - ok
12:58:15.0376 0x184c  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
12:58:15.0384 0x184c  AmdK8 - ok
12:58:15.0410 0x184c  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
12:58:15.0418 0x184c  AmdPPM - ok
12:58:15.0449 0x184c  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
12:58:15.0455 0x184c  amdsata - ok
12:58:15.0490 0x184c  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
12:58:15.0506 0x184c  amdsbs - ok
12:58:15.0539 0x184c  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
12:58:15.0542 0x184c  amdxata - ok
12:58:15.0586 0x184c  [ 444459C4A5530343E786AA71B0047B7C, 5213103CBF608B58D508E297A61C92836D30E321F1810137BB5C1A1C0C9309F7 ] AMPPAL          C:\WINDOWS\System32\drivers\AMPPAL.sys
12:58:15.0596 0x184c  AMPPAL - ok
12:58:15.0715 0x184c  [ AA6FC5C35650A953DFDB2C4444A79823, 841B700601D73B8B1125597EA17B81D36642A26F0E609CBB4DB1FA9268F1122B ] AMPPALR3        C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
12:58:15.0757 0x184c  AMPPALR3 - ok
12:58:15.0790 0x184c  [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID           C:\WINDOWS\system32\drivers\appid.sys
12:58:15.0797 0x184c  AppID - ok
12:58:15.0836 0x184c  [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
12:58:15.0840 0x184c  AppIDSvc - ok
12:58:15.0879 0x184c  [ 8D6F535461F6CFF75A8ADDF83024C904, F2A97EC4A6284F28B685A3CE2D450F61E75EE8692D718A6AA352D5734BBBAD7B ] Appinfo         C:\WINDOWS\System32\appinfo.dll
12:58:15.0888 0x184c  Appinfo - ok
12:58:15.0995 0x184c  [ 30E3850F303EAE5C364782EA78579CC9, 8C94E5A9052F6E794685194EEACB31A174A947D60246908B6A0DEFA081A747A3 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
12:58:16.0001 0x184c  Apple Mobile Device - ok
12:58:16.0069 0x184c  [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
12:58:16.0101 0x184c  AppReadiness - ok
12:58:16.0228 0x184c  [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
12:58:16.0300 0x184c  AppXSvc - ok
12:58:16.0351 0x184c  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
12:58:16.0359 0x184c  arcsas - ok
12:58:16.0430 0x184c  [ DE11932565E24360132817B110035F6E, F13D9481CC3F25448492FF5084ABC0172D466C158AF42CE2F2D8DF4012983B59 ] ArcService      C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe
12:58:16.0436 0x184c  ArcService - ok
12:58:16.0466 0x184c  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
12:58:16.0469 0x184c  atapi - ok
12:58:16.0520 0x184c  [ F83D49F4B10E813A1F9AC8B92F16592D, E7B2F508D33861A9826F2C7B2087F14F6937C9B8F660D6363F737BAC60BD4578 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
12:58:16.0533 0x184c  AudioEndpointBuilder - ok
12:58:16.0606 0x184c  [ 9A71BD2E4B8EB550D0022AFDF8616014, 34D595684624114F23265CE8031ADC9E03AD374A5AFEEBB794AC57796A3CDA2F ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
12:58:16.0653 0x184c  Audiosrv - ok
12:58:16.0704 0x184c  [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
12:58:16.0712 0x184c  AxInstSV - ok
12:58:16.0771 0x184c  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
12:58:16.0801 0x184c  b06bdrv - ok
12:58:16.0832 0x184c  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
12:58:16.0837 0x184c  BasicDisplay - ok
12:58:16.0894 0x184c  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
12:58:16.0898 0x184c  BasicRender - ok
12:58:16.0929 0x184c  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
12:58:16.0932 0x184c  bcmfn2 - ok
12:58:16.0971 0x184c  [ 5BD3A2351BEFCAC8757626271F8EFA89, 6508673210129CF7EFCA93EC7874208FAD361E37814EB4FE9E0EC034E73D5F16 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
12:58:16.0995 0x184c  BDESVC - ok
12:58:17.0033 0x184c  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
12:58:17.0035 0x184c  Beep - ok
12:58:17.0109 0x184c  [ BBE15881FE11BE37112F8320C41DAFB9, 5CE92563628812FF6E00556D8E2DAD6ADCAAF0F4C3B90123F1D98ED6E3BB6DAD ] BFE             C:\WINDOWS\System32\bfe.dll
12:58:17.0155 0x184c  BFE - ok
12:58:17.0253 0x184c  [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS            C:\WINDOWS\System32\qmgr.dll
12:58:17.0314 0x184c  BITS - ok
12:58:17.0456 0x184c  [ 13C358D27CBFAF537FA7CA48B9052CF3, BC6AD061DA6B348774E9B65750C986F43148B78E8F97CCBE9AA99EA7D8759620 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
12:58:17.0518 0x184c  Bluetooth Device Monitor - ok
12:58:17.0632 0x184c  [ 7525C93645FDA8E9D8F677FEA833798A, 9878B88C57119580EF1F5D1DF93C62A3CFFFD0AC4E764D9AC05C727D0D1B2EED ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
12:58:17.0690 0x184c  Bluetooth OBEX Service - ok
12:58:17.0760 0x184c  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
12:58:17.0784 0x184c  Bonjour Service - ok
12:58:17.0829 0x184c  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
12:58:17.0836 0x184c  bowser - ok
12:58:17.0892 0x184c  [ F2559A492AF8D653D1F47ADABA4C3E97, 77347915FB433023769699DFC9511F54E69C7FC7AB75F57FDC1A58E64A7126DE ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
12:58:17.0909 0x184c  BrokerInfrastructure - ok
12:58:17.0946 0x184c  [ D528D6A92D187777691993DD757AF19A, 2C79978310193431E5FC462368424A172858D5351C92D4815C2A7E35B5DDE50C ] Browser         C:\WINDOWS\System32\browser.dll
12:58:17.0956 0x184c  Browser - ok
12:58:18.0001 0x184c  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
12:58:18.0005 0x184c  BthAvrcpTg - ok
12:58:18.0044 0x184c  [ 131F1C8573E7BFB41C54FBF5309CCD94, DAFE51E3BADBD82A33B580F212B2D6520A120877C23F6D675521FEA2F4BA5A1F ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
12:58:18.0049 0x184c  BthEnum - ok
12:58:18.0090 0x184c  [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
12:58:18.0096 0x184c  BthHFEnum - ok
12:58:18.0122 0x184c  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
12:58:18.0126 0x184c  bthhfhid - ok
12:58:18.0178 0x184c  [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum       C:\WINDOWS\System32\drivers\BthLEEnum.sys
12:58:18.0197 0x184c  BthLEEnum - ok
12:58:18.0221 0x184c  [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
12:58:18.0226 0x184c  BTHMODEM - ok
12:58:18.0259 0x184c  [ 3AFE71D80EDF5D4DE0C5731352905669, 3E370169B8C5D301954D1F1DA302F7A0DB2A034990E10B3D64458C48E5693205 ] BthPan          C:\WINDOWS\system32\DRIVERS\bthpan.sys
12:58:18.0269 0x184c  BthPan - ok
12:58:18.0398 0x184c  [ AB8CD3914AD779C15B27DDD9F53F7434, 6E9911C146A038192B95916387FA9D94D952BEFE158E6CBA44F1500A304221A3 ] BTHPORT         C:\WINDOWS\System32\Drivers\BTHport.sys
12:58:18.0483 0x184c  BTHPORT - ok
12:58:18.0518 0x184c  [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv         C:\WINDOWS\system32\bthserv.dll
12:58:18.0526 0x184c  bthserv - ok
12:58:18.0553 0x184c  [ F5F860CD0C1AC84F299295277E436701, 94A38146DE2C1354E4EA3B1C8CF8670C56C06F6147387D8A88E11F6BC0912A2F ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
12:58:18.0562 0x184c  BTHSSecurityMgr - ok
12:58:18.0605 0x184c  [ 23E75BED9076F856B36F5F934BBD5795, CCEB72B788522B7D52A6C07646005EBC68F9599D3714ECACF3A194CA47A1BE85 ] BTHUSB          C:\WINDOWS\System32\Drivers\BTHUSB.sys
12:58:18.0611 0x184c  BTHUSB - ok
12:58:18.0707 0x184c  [ 76D0DDD58A773CA1BFB4D30AAE03517A, E631CAAEEA5D1F632FF0A60F4466664A6FD9DA19F4A28A379294D8E6690ADAD9 ] btmhsf          C:\WINDOWS\system32\DRIVERS\btmhsf.sys
12:58:18.0755 0x184c  btmhsf - ok
12:58:18.0933 0x184c  [ 72551A9AE5F68905DFC3CBA0D5242566, 15C273519C3AD1B2AF68F669125AFE607A86A60D680E299631D5E893C3CAA7E7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
12:58:19.0011 0x184c  c2cautoupdatesvc - ok
12:58:19.0130 0x184c  [ 6B669A00A431FF6CDCE67458933F5F0F, 81419EB18BB4EB96E48C99A1D45B0267E779E135427B3AEC872A1A5DD810B23F ] c2cpnrsvc       C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
12:58:19.0227 0x184c  c2cpnrsvc - ok
12:58:19.0263 0x184c  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
12:58:19.0269 0x184c  cdfs - ok
12:58:19.0307 0x184c  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
12:58:19.0320 0x184c  cdrom - ok
12:58:19.0379 0x184c  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
12:58:19.0390 0x184c  CertPropSvc - ok
12:58:19.0437 0x184c  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
12:58:19.0442 0x184c  circlass - ok
12:58:19.0520 0x184c  [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
12:58:19.0543 0x184c  CLFS - ok
12:58:19.0781 0x184c  [ 3982DB7C5C4D72EFCFCAE268FD592790, 844B2F9A3FCB30A3FC46C8B303C87A6D053E6AF4CE18A00188D6FFC9442A8C34 ] ClickToRunSvc   C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
12:58:19.0904 0x184c  ClickToRunSvc - ok
12:58:19.0981 0x184c  [ 075CCE75090786F124573A788C8656E6, AA188CFF2F8EE2D9F50701AB2315D24E15D7715FD84F5054D3FC175D4BD35734 ] CLVirtualDrive  C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys
12:58:19.0988 0x184c  CLVirtualDrive - ok
12:58:20.0035 0x184c  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
12:58:20.0039 0x184c  CmBatt - ok
12:58:20.0114 0x184c  [ 4627C1FBF2802425A408A2D2AF28CF85, 8B91C1BE1104BE93C0D689A20315FD106D89A076267493319B104EE73A90CDCB ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
12:58:20.0146 0x184c  CNG - ok
12:58:20.0183 0x184c  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\WINDOWS\System32\drivers\CompositeBus.sys
12:58:20.0187 0x184c  CompositeBus - ok
12:58:20.0198 0x184c  COMSysApp - ok
12:58:20.0225 0x184c  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
12:58:20.0229 0x184c  condrv - ok
12:58:20.0364 0x184c  [ 6DB7264A95FE984FFA072BA79FA087C8, CF180663B24B1660CD04CB26D8663FB7F357C9CF5731B315635D63B7DB76BCEC ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
12:58:20.0383 0x184c  cphs - ok
12:58:20.0444 0x184c  [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
12:58:20.0454 0x184c  CryptSvc - ok
12:58:20.0481 0x184c  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\WINDOWS\system32\drivers\dam.sys
12:58:20.0486 0x184c  dam - ok
12:58:20.0640 0x184c  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
12:58:20.0695 0x184c  DcomLaunch - ok
12:58:20.0764 0x184c  [ 78089FCDE082FD4FA471C30A7C2DC736, C4816D7125C39290C3B0B1F580CEE8BB7FFC004F727EA9E9767671D3EDB946AE ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
12:58:20.0795 0x184c  defragsvc - ok
12:58:20.0871 0x184c  [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\WINDOWS\system32\das.dll
12:58:20.0900 0x184c  DeviceAssociationService - ok
12:58:20.0961 0x184c  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
12:58:20.0979 0x184c  DeviceInstall - ok
12:58:21.0007 0x184c  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
12:58:21.0016 0x184c  Dfsc - ok
12:58:21.0073 0x184c  [ 8B107F55FD61654A6C9F1B819AEC5FC4, 773B1B9D3583F17B7C89BDE1EC4487ABB0AE039DF4583F8746460425443DA291 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
12:58:21.0098 0x184c  Dhcp - ok
12:58:21.0151 0x184c  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\WINDOWS\system32\drivers\disk.sys
12:58:21.0159 0x184c  disk - ok
12:58:21.0215 0x184c  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
12:58:21.0220 0x184c  dmvsc - ok
12:58:21.0258 0x184c  [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
12:58:21.0275 0x184c  Dnscache - ok
12:58:21.0315 0x184c  [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
12:58:21.0449 0x184c  dot3svc - ok
12:58:21.0499 0x184c  [ 27069CFFF29B7F04F4B1BB10154BE52B, 6869626F9A1D3F64224883C5E661638CEE893A3E29651C7B9302A03E52180415 ] dot4            C:\WINDOWS\system32\DRIVERS\Dot4.sys
12:58:21.0510 0x184c  dot4 - ok
12:58:21.0541 0x184c  [ 0BD906A79F9CE3013F7D9D0AC45F9F9D, 2F7D5082E7E226D5EBEA164A8ACEE0A447C96EB1829224A6EFA3E7B4EFEE1D14 ] Dot4Print       C:\WINDOWS\System32\drivers\Dot4Prt.sys
12:58:21.0544 0x184c  Dot4Print - ok
12:58:21.0569 0x184c  [ B7D595F2F464F7B628AD53F06547792C, F5D06A91EF54FBF56305FCC882B854350B266B2A005D80CC77AEBC2929440729 ] dot4usb         C:\WINDOWS\system32\DRIVERS\dot4usb.sys
12:58:21.0575 0x184c  dot4usb - ok
12:58:21.0627 0x184c  [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS             C:\WINDOWS\system32\dps.dll
12:58:21.0639 0x184c  DPS - ok
12:58:21.0689 0x184c  [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
12:58:21.0692 0x184c  drmkaud - ok
12:58:21.0726 0x184c  [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
12:58:21.0739 0x184c  DsmSvc - ok
12:58:21.0795 0x184c  [ 6A0E850DDCB136AA3D2FB7234382DF12, C01863E95F45E1B74AC65C9CD12C8DC769299218255B3C94E3EBF58C4D79FEF3 ] dtsoftbus01     C:\WINDOWS\System32\drivers\dtsoftbus01.sys
12:58:21.0812 0x184c  dtsoftbus01 - ok
12:58:21.0944 0x184c  [ C7D252742946DD395670649742FBD73D, 333CC984CF318D36EA8C5867077A1732A214445EB6B7CF7AC2E8F1C8259CD9C7 ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
12:58:22.0032 0x184c  DXGKrnl - ok
12:58:22.0075 0x184c  [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
12:58:22.0084 0x184c  Eaphost - ok
12:58:22.0325 0x184c  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
12:58:22.0516 0x184c  ebdrv - ok
12:58:22.0570 0x184c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS             C:\WINDOWS\System32\lsass.exe
12:58:22.0594 0x184c  EFS - ok
12:58:22.0622 0x184c  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
12:58:22.0628 0x184c  EhStorClass - ok
12:58:22.0661 0x184c  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
12:58:22.0671 0x184c  EhStorTcgDrv - ok
12:58:22.0694 0x184c  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
12:58:22.0696 0x184c  ErrDev - ok
12:58:22.0778 0x184c  [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem     C:\WINDOWS\system32\es.dll
12:58:22.0806 0x184c  EventSystem - ok
12:58:22.0987 0x184c  [ 21FFB87A70019E9B39C5A8469695ACBA, B41BEDB737CFD33707181DA0B69FC47C01C897AF8B42211A46B54A9FDB2B9004 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
12:58:23.0023 0x184c  EvtEng - ok
12:58:23.0058 0x184c  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
12:58:23.0071 0x184c  exfat - ok
12:58:23.0118 0x184c  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
12:58:23.0132 0x184c  fastfat - ok
12:58:23.0219 0x184c  [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax             C:\WINDOWS\system32\fxssvc.exe
12:58:23.0258 0x184c  Fax - ok
12:58:23.0282 0x184c  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
12:58:23.0286 0x184c  fdc - ok
12:58:23.0341 0x184c  [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
12:58:23.0345 0x184c  fdPHost - ok
12:58:23.0368 0x184c  [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
12:58:23.0373 0x184c  FDResPub - ok
12:58:23.0407 0x184c  [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
12:58:23.0417 0x184c  fhsvc - ok
12:58:23.0465 0x184c  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
12:58:23.0470 0x184c  FileInfo - ok
12:58:23.0503 0x184c  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
12:58:23.0507 0x184c  Filetrace - ok
12:58:23.0531 0x184c  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
12:58:23.0535 0x184c  flpydisk - ok
12:58:23.0607 0x184c  [ 46D1DF775FFF14585218BBE16E5B2C9A, F39EF615B18CEC7BA3F68C7639B636C06812AD9DBEDE90EB7B2C04C64396FC9E ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
12:58:23.0628 0x184c  FltMgr - ok
12:58:23.0730 0x184c  [ 183CA7699474FDE235853967D1DA4D9B, 8FBD5997F1E39AFFD8C4322520DF4D2227279B5149017D825C188D7411BA99AF ] FontCache       C:\WINDOWS\system32\FntCache.dll
12:58:23.0807 0x184c  FontCache - ok
12:58:23.0943 0x184c  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
12:58:23.0947 0x184c  FontCache3.0.0.0 - ok
12:58:23.0966 0x184c  fpvoixdaog64 - ok
12:58:23.0987 0x184c  [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
12:58:23.0993 0x184c  FsDepends - ok
12:58:24.0020 0x184c  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
12:58:24.0024 0x184c  Fs_Rec - ok
12:58:24.0098 0x184c  [ B2BD017231836DA9F63F41E3A075D73E, 31B1DD677FE8B4F90B8AB5A131DA0105439AC2D91BC0CEDC972D2D87E595A686 ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
12:58:24.0132 0x184c  fvevol - ok
12:58:24.0185 0x184c  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\WINDOWS\System32\drivers\fxppm.sys
12:58:24.0188 0x184c  FxPPM - ok
12:58:24.0220 0x184c  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
12:58:24.0225 0x184c  gagp30kx - ok
12:58:24.0270 0x184c  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys
12:58:24.0274 0x184c  GEARAspiWDM - ok
12:58:24.0321 0x184c  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
12:58:24.0324 0x184c  gencounter - ok
12:58:24.0355 0x184c  [ EF3AE7773394DF49CE74AF78A1C8D23D, CB12FF004C460A89F12AFF2467512B479A07CA10D4280CD4E624A5A9CDAB9C1B ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
12:58:24.0365 0x184c  GPIOClx0101 - ok
12:58:24.0478 0x184c  [ 58C11DCCC6241CC13861A559E31A69F0, 78B38BBC362C9209B06849CC79301EC595AFCE3E2BDE402A0B1F2725D3EDEFA3 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
12:58:24.0555 0x184c  gpsvc - ok
12:58:24.0661 0x184c  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:58:24.0669 0x184c  gupdate - ok
12:58:24.0686 0x184c  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
12:58:24.0694 0x184c  gupdatem - ok
12:58:24.0721 0x184c  [ 03909BDBFF0DCACCABF2B2D4ADEE44DC, 42E631B23BB004F5C2128BAD334C21AB20FAD08AFED9E8191AE9373531BC73DD ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
12:58:24.0727 0x184c  HDAudBus - ok
12:58:24.0749 0x184c  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
12:58:24.0752 0x184c  HidBatt - ok
12:58:24.0807 0x184c  [ 1EA1B4FABB8CC348E73CA90DBA22E104, 5C18C6BD499272F216DD4626B5E8D38181AEAC9AD917FBEB614A75B70467B258 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
12:58:24.0815 0x184c  HidBth - ok
12:58:24.0845 0x184c  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
12:58:24.0850 0x184c  hidi2c - ok
12:58:24.0872 0x184c  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
12:58:24.0876 0x184c  HidIr - ok
12:58:24.0917 0x184c  [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv         C:\WINDOWS\system32\hidserv.dll
12:58:24.0923 0x184c  hidserv - ok
12:58:24.0965 0x184c  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
12:58:24.0969 0x184c  HidUsb - ok
12:58:25.0027 0x184c  [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc          C:\WINDOWS\system32\kmsvc.dll
12:58:25.0036 0x184c  hkmsvc - ok
12:58:25.0070 0x184c  [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
12:58:25.0088 0x184c  HomeGroupListener - ok
12:58:25.0147 0x184c  [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
12:58:25.0173 0x184c  HomeGroupProvider - ok
12:58:25.0224 0x184c  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
12:58:25.0229 0x184c  HpSAMD - ok
12:58:25.0331 0x184c  [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
12:58:25.0387 0x184c  HTTP - ok
12:58:25.0427 0x184c  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
12:58:25.0431 0x184c  hwpolicy - ok
12:58:25.0462 0x184c  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
12:58:25.0465 0x184c  hyperkbd - ok
12:58:25.0487 0x184c  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
12:58:25.0490 0x184c  HyperVideo - ok
12:58:25.0535 0x184c  [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
12:58:25.0545 0x184c  i8042prt - ok
12:58:25.0574 0x184c  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
12:58:25.0577 0x184c  iaLPSSi_GPIO - ok
12:58:25.0603 0x184c  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
12:58:25.0610 0x184c  iaLPSSi_I2C - ok
12:58:25.0687 0x184c  [ AE0C5DF7E7DA3E7AC29B64CFA8C4F044, 0486DDD6EC60A9695BC8D030158503E02BB0561EEA4B9F4A7FB19F89B3622C90 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
12:58:25.0722 0x184c  iaStorA - ok
12:58:25.0798 0x184c  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
12:58:25.0835 0x184c  iaStorAV - ok
12:58:25.0919 0x184c  [ 777788D9B63CCEEEF2DB353BA4EDD454, 36A3099C252F1F18D09A8B03A4F103E5E8AF09C80AB4F08133CCD4D3BB71EE25 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
12:58:25.0922 0x184c  IAStorDataMgrSvc - ok
12:58:25.0966 0x184c  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
12:58:25.0990 0x184c  iaStorV - ok
12:58:26.0039 0x184c  [ C430482AC892D52CED021EDDD4D368A2, C54C12EAC14F40BE3E7D7159F8876A664D00CA928000E25306071D28B52EA33A ] iBtFltCoex      C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys
12:58:26.0044 0x184c  iBtFltCoex - ok
12:58:26.0054 0x184c  IEEtwCollectorService - ok
12:58:26.0353 0x184c  [ 0AECABC08F9AB4E504935B7662123B6E, 79D1C801A8FB0920469D6088158C518481485A065E8AF2E580FE4FCC1DE8F39B ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
12:58:26.0583 0x184c  igfx - ok
12:58:26.0710 0x184c  [ CFE7F0267B0C3077042FF291949B5546, 7B8C432632D0210119BFF57D4994F2B8F75307A9D6867353AF93BBA3F561595B ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
12:58:26.0771 0x184c  IKEEXT - ok
12:58:27.0058 0x184c  [ 5C0BBE779BA3D6F84EB5AE3CB8793E11, EA729B622F30E847E2700787E6747A33769B405DD08D36175AACF42BE7A8600F ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
12:58:27.0289 0x184c  IntcAzAudAddService - ok
12:58:27.0381 0x184c  [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
12:58:27.0401 0x184c  IntcDAud - ok
12:58:27.0491 0x184c  [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel® Capability Licensing Service Interface c:\Program Files\Intel\iCLS Client\HeciServer.exe
12:58:27.0524 0x184c  Intel® Capability Licensing Service Interface - ok
12:58:27.0570 0x184c  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
12:58:27.0574 0x184c  intelide - ok
12:58:27.0636 0x184c  [ 139CFCDCD36B1B1782FD8C0014AC9B0E, E0D7E0E9B46A8CECE138D689820023BFA650FB689E4FD62855BED37E04F2D9FF ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
12:58:27.0640 0x184c  intelpep - ok
12:58:27.0674 0x184c  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
12:58:27.0682 0x184c  intelppm - ok
12:58:27.0717 0x184c  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
12:58:27.0723 0x184c  IpFilterDriver - ok
12:58:27.0819 0x184c  [ DFC4050D58565ADBEE793A8D4AEBDAE6, 89B900408F030CD45753A11D6AE6CBAB87E8B0E3F8401402D2D8713C045BF488 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
12:58:27.0871 0x184c  iphlpsvc - ok
12:58:27.0918 0x184c  [ FD9C9E9E3F0ED51502C7E8C066BE26B9, 290E74380F1543DD22C9F3821513B3E2FB42E995724238D8779CBBCB4FC386C8 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
12:58:27.0924 0x184c  IPMIDRV - ok
12:58:27.0971 0x184c  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
12:58:27.0981 0x184c  IPNAT - ok
12:58:28.0059 0x184c  [ 71F993192EB04B2C4C80F2DEE9119229, 881B7042724364C9D667DF6109E15DE78D9431DF5708CB16736AD723F4A38578 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
12:58:28.0099 0x184c  iPod Service - ok
12:58:28.0142 0x184c  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
12:58:28.0145 0x184c  IRENUM - ok
12:58:28.0183 0x184c  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
12:58:28.0187 0x184c  isapnp - ok
12:58:28.0227 0x184c  [ 034D4BD9DC67C64F3A4C8A049B5173BF, C68AF5A5AD4092AA1C871BD38473AEF84EC3ECF4D06FBEB5F6C09972EF1B8A81 ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
12:58:28.0248 0x184c  iScsiPrt - ok
12:58:28.0288 0x184c  [ C2BC9AC9C6514230A481BDCA6A24BEFD, 84E41675D11EF2EEECED23C8469503C8D12810A2C6B6743D7AA322EB6DF7E68D ] iwdbus          C:\WINDOWS\System32\drivers\iwdbus.sys
12:58:28.0292 0x184c  iwdbus - ok
12:58:28.0373 0x184c  [ 3C4002D339491AF73D663FFC7F6E5ECB, 0B53047989BDB781572253BC3AA757912FE54366870C1955E687972CE210C285 ] jhi_service     C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
12:58:28.0384 0x184c  jhi_service - ok
12:58:28.0412 0x184c  [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
12:58:28.0418 0x184c  kbdclass - ok
12:58:28.0440 0x184c  [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
12:58:28.0444 0x184c  kbdhid - ok
12:58:28.0463 0x184c  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\WINDOWS\system32\DRIVERS\kdnic.sys
12:58:28.0466 0x184c  kdnic - ok
12:58:28.0494 0x184c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso          C:\WINDOWS\system32\lsass.exe
12:58:28.0499 0x184c  KeyIso - ok
12:58:28.0526 0x184c  [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
12:58:28.0533 0x184c  KSecDD - ok
12:58:28.0580 0x184c  [ F88CC88F4A6D8476F1664E805CA18CC2, 2C61EE5EEA4FD45AA3FA927CC16E34EF90BD44324EAB14198AF65C3A27617991 ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
12:58:28.0592 0x184c  KSecPkg - ok
12:58:28.0613 0x184c  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
12:58:28.0616 0x184c  ksthunk - ok
12:58:28.0674 0x184c  [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
12:58:28.0699 0x184c  KtmRm - ok
12:58:28.0760 0x184c  [ 27B58E16CF895AC1F1A97C04814C2239, D4336155331DDBF91952CDC6C446C68FF524F979099BA8D9B3A578758F97B2BE ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
12:58:28.0782 0x184c  LanmanServer - ok
12:58:28.0836 0x184c  [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
12:58:28.0857 0x184c  LanmanWorkstation - ok
12:58:28.0937 0x184c  [ EE289BD147FDFF95EF1B9BD65D3B974A, EFD9D0F6C73E7D2D52DBE2E2A8D3009BFB6AB24776A100CA528A8365002C6105 ] lfsvc           C:\WINDOWS\System32\GeofenceMonitorService.dll
12:58:28.0967 0x184c  lfsvc - ok
12:58:28.0992 0x184c  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\WINDOWS\system32\DRIVERS\lltdio.sys
12:58:28.0997 0x184c  lltdio - ok
12:58:29.0054 0x184c  [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
12:58:29.0073 0x184c  lltdsvc - ok
12:58:29.0120 0x184c  [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
12:58:29.0125 0x184c  lmhosts - ok
12:58:29.0167 0x184c  [ 4269D44BB47A6DA5D80B11F4C8536458, 7A8FFC8F851DD9E5C43986BE0888831CB71D188138DF3CF7F787DADDA70915B0 ] LMS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
12:58:29.0183 0x184c  LMS - ok
12:58:29.0224 0x184c  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
12:58:29.0232 0x184c  LSI_SAS - ok
12:58:29.0264 0x184c  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\WINDOWS\system32\drivers\lsi_sas2.sys
12:58:29.0271 0x184c  LSI_SAS2 - ok
12:58:29.0299 0x184c  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\WINDOWS\system32\drivers\lsi_sas3.sys
12:58:29.0306 0x184c  LSI_SAS3 - ok
12:58:29.0331 0x184c  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
12:58:29.0337 0x184c  LSI_SSS - ok
12:58:29.0420 0x184c  [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM             C:\WINDOWS\System32\lsm.dll
12:58:29.0462 0x184c  LSM - ok
12:58:29.0513 0x184c  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
12:58:29.0521 0x184c  luafv - ok
12:58:29.0595 0x184c  [ 49F5B235EDC9C6AC0ABA44737B190317, 096D8D583ED024F1B3AD30DD5EBA38B1FEE518166E157C0E3890D80687181F60 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe
12:58:29.0613 0x184c  McComponentHostService - ok
12:58:29.0641 0x184c  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
12:58:29.0646 0x184c  megasas - ok
12:58:29.0721 0x184c  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
12:58:29.0754 0x184c  megasr - ok
12:58:29.0791 0x184c  [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64          C:\WINDOWS\System32\drivers\HECIx64.sys
12:58:29.0796 0x184c  MEIx64 - ok
12:58:29.0848 0x184c  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS           C:\WINDOWS\system32\mmcss.dll
12:58:29.0856 0x184c  MMCSS - ok
12:58:29.0891 0x184c  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\WINDOWS\system32\drivers\modem.sys
12:58:29.0895 0x184c  Modem - ok
12:58:29.0923 0x184c  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
12:58:29.0926 0x184c  monitor - ok
12:58:29.0953 0x184c  [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
12:58:29.0958 0x184c  mouclass - ok
12:58:29.0983 0x184c  [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
12:58:29.0987 0x184c  mouhid - ok
12:58:30.0022 0x184c  [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
12:58:30.0029 0x184c  mountmgr - ok
12:58:30.0082 0x184c  [ 3B9398E0146855B1DC0E3D9769C80F01, DF69DB5CA30A5577648635C27DD468AF98515D07DF379B3FFDCC6B40744EDE66 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
12:58:30.0090 0x184c  MozillaMaintenance - ok
12:58:30.0117 0x184c  [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
12:58:30.0123 0x184c  mpsdrv - ok
12:58:30.0223 0x184c  [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
12:58:30.0274 0x184c  MpsSvc - ok
12:58:30.0320 0x184c  [ 1D55DADC22D21883A2F80297F5A5AE48, B79DF4AFC2A9CBC54E74233596544D6E41C8CAA0516BD57CA695D051EC780265 ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
12:58:30.0329 0x184c  MRxDAV - ok
12:58:30.0377 0x184c  [ C997E6A37BA8915224B3FB5024A34F69, 43E1B83072DF9E878151D276DDB6EB7B3801D72494C43E9B9ABECA4B2DCFD606 ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
12:58:30.0400 0x184c  mrxsmb - ok
12:58:30.0436 0x184c  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
12:58:30.0453 0x184c  mrxsmb10 - ok
12:58:30.0492 0x184c  [ AAF56E4E84D35411B4E446C445732DFE, 7AC41CAA0842AE4DA4EEF976202C58D7923DAA367F0D7E800D432323D5E7DE1A ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
12:58:30.0504 0x184c  mrxsmb20 - ok
12:58:30.0531 0x184c  [ 4E888019078AC363076A5433E89AA4F8, 3DEBDA290230B3E83F956C902C960E39463B7EFE86439199521356762769FD91 ] MsBridge        C:\WINDOWS\system32\DRIVERS\bridge.sys
12:58:30.0539 0x184c  MsBridge - ok
12:58:30.0585 0x184c  [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
12:58:30.0599 0x184c  MSDTC - ok
12:58:30.0668 0x184c  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
12:58:30.0671 0x184c  Msfs - ok
12:58:30.0720 0x184c  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
12:58:30.0725 0x184c  msgpiowin32 - ok
12:58:30.0745 0x184c  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
12:58:30.0748 0x184c  mshidkmdf - ok
12:58:30.0772 0x184c  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
12:58:30.0775 0x184c  mshidumdf - ok
12:58:30.0812 0x184c  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
12:58:30.0814 0x184c  msisadrv - ok
12:58:30.0866 0x184c  [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
12:58:30.0878 0x184c  MSiSCSI - ok
12:58:30.0889 0x184c  msiserver - ok
12:58:30.0910 0x184c  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
12:58:30.0913 0x184c  MSKSSRV - ok
12:58:30.0940 0x184c  [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp          C:\WINDOWS\system32\DRIVERS\mslldp.sys
12:58:30.0945 0x184c  MsLldp - ok
12:58:30.0964 0x184c  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
12:58:30.0967 0x184c  MSPCLOCK - ok
12:58:30.0990 0x184c  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
12:58:30.0992 0x184c  MSPQM - ok
12:58:31.0042 0x184c  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
12:58:31.0064 0x184c  MsRPC - ok
12:58:31.0099 0x184c  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
12:58:31.0103 0x184c  mssmbios - ok
12:58:31.0129 0x184c  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
12:58:31.0132 0x184c  MSTEE - ok
12:58:31.0158 0x184c  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
12:58:31.0162 0x184c  MTConfig - ok
12:58:31.0195 0x184c  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
12:58:31.0201 0x184c  Mup - ok
12:58:31.0234 0x184c  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
12:58:31.0239 0x184c  mvumis - ok
12:58:31.0288 0x184c  [ 53EE034F83E9A7A8E421572E385F67CD, 29F718B95B9D6CBDA49D5DE14FEC46DA64D7977131D585C975B3D703559D0988 ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
12:58:31.0304 0x184c  MyWiFiDHCPDNS - ok
12:58:31.0385 0x184c  [ D2CB4581FFDFE8BE3EEE16649753F4EE, 8EBE734DCEDAB699C0A19E87EFEB3BBDABB534088B0FE3EC71044C7FAEEDF0B0 ] NanoServiceMain C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe
12:58:31.0394 0x184c  NanoServiceMain - ok
12:58:31.0468 0x184c  [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent        C:\WINDOWS\system32\qagentRT.dll
12:58:31.0497 0x184c  napagent - ok
12:58:31.0571 0x184c  [ 647C7652FA19F98CADF2BFDA2164BFEC, 711A4A06309393922A70D7FBE5684938CD634F5DED158D847BFADDD5ACF9E44C ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
12:58:31.0596 0x184c  NativeWifiP - ok
12:58:31.0654 0x184c  [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
12:58:31.0667 0x184c  NcaSvc - ok
12:58:31.0694 0x184c  [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService      C:\WINDOWS\System32\ncbservice.dll
12:58:31.0707 0x184c  NcbService - ok
12:58:31.0733 0x184c  [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
12:58:31.0741 0x184c  NcdAutoSetup - ok
12:58:31.0835 0x184c  [ F21B77B4D74092A543807D3CEB711A88, 5C3C17A10E990070FAB317C0C5333DE768E408CAF43EC4FA9D18116C6EE3B3DC ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
12:58:31.0896 0x184c  NDIS - ok
12:58:31.0943 0x184c  [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap         C:\WINDOWS\system32\DRIVERS\ndiscap.sys
12:58:31.0947 0x184c  NdisCap - ok
12:58:31.0977 0x184c  [ 9F1DA20E943BE7AA4ED5F3E1EBA78B37, CCD99962917BBE256F64AE14CCC9FD12433C72B5DB98E0E57CA8F212A11B3C8F ] NdisImPlatform  C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
12:58:31.0985 0x184c  NdisImPlatform - ok
12:58:32.0030 0x184c  [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
12:58:32.0034 0x184c  NdisTapi - ok
12:58:32.0057 0x184c  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
12:58:32.0062 0x184c  Ndisuio - ok
12:58:32.0084 0x184c  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
12:58:32.0086 0x184c  NdisVirtualBus - ok
12:58:32.0123 0x184c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
12:58:32.0137 0x184c  NdisWan - ok
12:58:32.0158 0x184c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
12:58:32.0170 0x184c  NdisWanLegacy - ok
12:58:32.0197 0x184c  [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
12:58:32.0203 0x184c  NDProxy - ok
12:58:32.0236 0x184c  [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
12:58:32.0243 0x184c  Ndu - ok
12:58:32.0297 0x184c  [ EE00C544C025958AF50C7B199F3C8595, D774DB020D9C46D1AA0B2DB9FA2C36C4A9C38D904CC6929695321D32ACA0D4D1 ] Netaapl         C:\WINDOWS\system32\DRIVERS\netaapl64.sys
12:58:32.0300 0x184c  Netaapl - ok
12:58:32.0324 0x184c  [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
12:58:32.0328 0x184c  NetBIOS - ok
12:58:32.0367 0x184c  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
12:58:32.0385 0x184c  NetBT - ok
12:58:32.0410 0x184c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon        C:\WINDOWS\system32\lsass.exe
12:58:32.0416 0x184c  Netlogon - ok
12:58:32.0470 0x184c  [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman          C:\WINDOWS\System32\netman.dll
12:58:32.0488 0x184c  Netman - ok
12:58:32.0562 0x184c  [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
12:58:32.0595 0x184c  netprofm - ok
12:58:32.0657 0x184c  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
12:58:32.0684 0x184c  NetTcpPortSharing - ok
12:58:32.0707 0x184c  [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc          C:\WINDOWS\system32\DRIVERS\netvsc63.sys
12:58:32.0714 0x184c  netvsc - ok
12:58:32.0949 0x184c  [ 75B9B86878CC159FBC40C4F9202ADBE3, 80D9176112BAFB42E6568E723781E5C03BD5472AB382496C1BD784DB9B2FB6E6 ] NETwNe64        C:\WINDOWS\system32\DRIVERS\Netwew00.sys
12:58:33.0133 0x184c  NETwNe64 - ok
12:58:33.0225 0x184c  [ 3A280F3B3C7A46E29C404ACD46ECBF5E, 81C3367A2A212DBCC65B8A0166FD092E3205AB31A146B4B737061335CEC51F9D ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
12:58:33.0250 0x184c  NlaSvc - ok
12:58:33.0313 0x184c  [ 37B93643A2A003EE25308DDF4EAF8C54, 0643867FE36B5F9691A9FC11C066584CE75C437C53CF17456AA3EEE1998E37D7 ] NNSALPC         C:\WINDOWS\system32\DRIVERS\NNSALPC.sys
12:58:33.0319 0x184c  NNSALPC - ok
12:58:33.0359 0x184c  [ B0FA8C7F0451145C1BDB79484FEC3586, D2D3CACE03259CC5FA85A08F776EB2694393C047740156F1979B5F576E4AA211 ] NNSHTTP         C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys
12:58:33.0368 0x184c  NNSHTTP - ok
12:58:33.0393 0x184c  [ 1E599DA97D1A09F54969430AAA106BFA, C90D29DEACFC06D130FB0F4F4263EB9C7DDE939D29E57760816CD60896537F4A ] NNSHTTPS        C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys
12:58:33.0400 0x184c  NNSHTTPS - ok
12:58:33.0434 0x184c  [ 98BDEC322082187674F9764B6C3D3F37, AB02ED80BBA9F5632B09441689F6B806678D472D17F44FC816AC23B9C4E58E4A ] NNSIDS          C:\WINDOWS\system32\DRIVERS\NNSIDS.sys
12:58:33.0442 0x184c  NNSIDS - ok
12:58:33.0471 0x184c  [ 148616C45CC9AB911049CBC8E2B705E9, D99F2A2AF45BD64DAD503C70D4904309B3EA924ADAB21A2EEEDDA5F7CD60ED1B ] NNSPICC         C:\WINDOWS\system32\DRIVERS\NNSPICC.sys
12:58:33.0478 0x184c  NNSPICC - ok
12:58:33.0513 0x184c  [ 47E510F2699F745581184DBBA24D2148, C8A2DF7C7144FBE5DA8E8798BE9E355BD8C8AF0AAB7E6EDA6702BB24FC9E2A1F ] NNSPIHSW        C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys
12:58:33.0519 0x184c  NNSPIHSW - ok
12:58:33.0553 0x184c  [ 6CD7D0B3F8F1C1B0CC8D5EA700C16DA5, A4CE2DB19049A8A1B89CFD127B819464D0816BC459E9A0A1F7C29AEF321281D8 ] NNSPOP3         C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys
12:58:33.0562 0x184c  NNSPOP3 - ok
12:58:33.0607 0x184c  [ 6D94915B8EB8FF01664C4170D3AAC994, 89F75C3E71EECF4CAA244DEAA618FB7C1D7FD81FA6DC9E7310868DDC638499FF ] NNSPROT         C:\WINDOWS\system32\DRIVERS\NNSPROT.sys
12:58:33.0625 0x184c  NNSPROT - ok
12:58:33.0665 0x184c  [ 8CDCAD81FB4C3CAA95A6D5F1F189AF4D, 3E55D03D9828CA6137AF1F9ABD563F63C7AEC531BB4DE8161517E6AB31E7E621 ] NNSPRV          C:\WINDOWS\system32\DRIVERS\NNSPRV.sys
12:58:33.0674 0x184c  NNSPRV - ok
12:58:33.0702 0x184c  [ 22F8E36B153CD61B5FB2A9FE63D0561A, 7CAF77D2FC526DA5FA78BA3B5B9D98FCEB55E9F4820F8DD6101B0BC7315E101F ] NNSSMTP         C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys
12:58:33.0710 0x184c  NNSSMTP - ok
12:58:33.0743 0x184c  [ 64734FB9136A009E15E01125D11A893A, 1AF5610CDEDE04DB519CB7F0F75DBB0EE7D85F9ACB3630236D58A7F514AD3845 ] NNSSTRM         C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys
12:58:33.0759 0x184c  NNSSTRM - ok
12:58:33.0787 0x184c  [ FA76C90C664963BE96E243E109415717, 61306FAEC6C346D83CECC3F0D50BB4FABBEFA185DAF4EB65E5087D01E008E994 ] NNSTLSC         C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys
12:58:33.0795 0x184c  NNSTLSC - ok
12:58:33.0823 0x184c  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
12:58:33.0827 0x184c  Npfs - ok
12:58:33.0865 0x184c  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
12:58:33.0869 0x184c  npsvctrig - ok
12:58:33.0918 0x184c  [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi             C:\WINDOWS\system32\nsisvc.dll
12:58:33.0924 0x184c  nsi - ok
12:58:33.0937 0x184c  [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
12:58:33.0941 0x184c  nsiproxy - ok
12:58:34.0110 0x184c  [ 1C80517BE6836A812F6A9B99B8321351, 7DBED4633820E201C9C242D961EF6F25BA2B1D5593BA60F707CC71A4014C2D4B ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
12:58:34.0220 0x184c  Ntfs - ok
12:58:34.0259 0x184c  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\WINDOWS\system32\drivers\Null.sys
12:58:34.0262 0x184c  Null - ok
12:58:34.0294 0x184c  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
12:58:34.0305 0x184c  nvraid - ok
12:58:34.0335 0x184c  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
12:58:34.0346 0x184c  nvstor - ok
12:58:34.0376 0x184c  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
12:58:34.0385 0x184c  nv_agp - ok
12:58:34.0462 0x184c  [ 30B5F9FB0C35AE6B4A0851D24CE2EE8B, 0340E77E8EC2ADC21B8DDD9C9CC95B3F4BCAFD54618A333C72D7D9587D593B83 ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
12:58:34.0471 0x184c  ose - ok
12:58:34.0532 0x184c  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
12:58:34.0559 0x184c  p2pimsvc - ok
12:58:34.0624 0x184c  [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
12:58:34.0651 0x184c  p2psvc - ok
12:58:34.0689 0x184c  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
12:58:34.0697 0x184c  Parport - ok
12:58:34.0737 0x184c  [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
12:58:34.0744 0x184c  partmgr - ok
12:58:34.0786 0x184c  [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
12:58:34.0819 0x184c  PcaSvc - ok
12:58:34.0877 0x184c  [ 275AFE3FA35E8D78BE97695DF49817C6, 447CEBB16285AE073B4251D2DA71399306EF2DCB7F56286ABE2F0BD6C83EB489 ] pci             C:\WINDOWS\system32\drivers\pci.sys
12:58:34.0897 0x184c  pci - ok
12:58:34.0921 0x184c  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
12:58:34.0926 0x184c  pciide - ok
12:58:34.0969 0x184c  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
12:58:34.0979 0x184c  pcmcia - ok
12:58:35.0000 0x184c  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
12:58:35.0004 0x184c  pcw - ok
12:58:35.0035 0x184c  [ B9D968D8E2B0F9C6301CEB39CFC9B9E4, 83F32831B0727F18B56DC3CAF37E45A3523D2BBCD54D1421F0DE5A0179D8A404 ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
12:58:35.0041 0x184c  pdc - ok
12:58:35.0120 0x184c  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
12:58:35.0160 0x184c  PEAUTH - ok
12:58:35.0283 0x184c  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
12:58:35.0289 0x184c  PerfHost - ok
12:58:35.0414 0x184c  [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla             C:\WINDOWS\system32\pla.dll
12:58:35.0515 0x184c  pla - ok
12:58:35.0560 0x184c  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
12:58:35.0576 0x184c  PlugPlay - ok
12:58:35.0620 0x184c  [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
12:58:35.0627 0x184c  PNRPAutoReg - ok
12:58:35.0687 0x184c  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
12:58:35.0713 0x184c  PNRPsvc - ok
12:58:35.0782 0x184c  [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
12:58:35.0810 0x184c  PolicyAgent - ok
12:58:35.0852 0x184c  [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power           C:\WINDOWS\system32\umpo.dll
12:58:35.0861 0x184c  Power - ok
12:58:36.0098 0x184c  [ B7DB57A000D46D4DE75BC0C563E58072, 8183EB09DC4D44DFF027CA0AAA8C09921A14F088C1BC427B6ACA42340AAF69E6 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
12:58:36.0266 0x184c  PrintNotify - ok
12:58:36.0332 0x184c  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\WINDOWS\System32\drivers\processr.sys
12:58:36.0340 0x184c  Processor - ok
12:58:36.0386 0x184c  [ B2A890D96C05E33FDD2BF3F3D4D0DF92, 3A29E17424429A5654D906E420D938148F09F57457356EFA72DA003B73F2D81E ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
12:58:36.0405 0x184c  ProfSvc - ok
12:58:36.0464 0x184c  [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched          C:\WINDOWS\system32\DRIVERS\pacer.sys
12:58:36.0474 0x184c  Psched - ok
12:58:36.0520 0x184c  [ D751845E6CAC4B564977B518DFF6DF23, 2521DEC82E6080DD4580CE94799E08EC18FC7B40A3E52DD5F8141E2D1296865D ] PSINAflt        C:\WINDOWS\system32\DRIVERS\PSINAflt.sys
12:58:36.0531 0x184c  PSINAflt - ok
12:58:36.0579 0x184c  [ 21EA387741A29F20CA9F9009D5AF6109, 0CABB89CFE5BA889B63FCAE6B63916AF7970ECDC3772D629BE5B45FE9797B60F ] PSINFile        C:\WINDOWS\system32\DRIVERS\PSINFile.sys
12:58:36.0589 0x184c  PSINFile - ok
12:58:36.0635 0x184c  [ 229B64294C3AE7A9E6BF27D11085B193, 4773E1731ED0C0BD5733DA006D70151714B8E792C5AC922A1FA6B10FD6E2F061 ] PSINKNC         C:\WINDOWS\system32\DRIVERS\PSINKNC.sys
12:58:36.0649 0x184c  PSINKNC - ok
12:58:36.0683 0x184c  [ 75C064F6AACFE6E2786C8128EC0A0B4F, 90A72A071E87EB8984BA23536F8C5435BAAA04196441F98148DF76225FC64AEA ] PSINProc        C:\WINDOWS\system32\DRIVERS\PSINProc.sys
12:58:36.0692 0x184c  PSINProc - ok
12:58:36.0727 0x184c  [ DA8A612152441DDA63DA9C1480731838, 82F2DF4BC692B24C80CDA62AD52DA12D884D50CD981CD90327E4EC1E99DF2E3F ] PSINProt        C:\WINDOWS\system32\DRIVERS\PSINProt.sys
12:58:36.0736 0x184c  PSINProt - ok
12:58:36.0771 0x184c  [ 0F9171CFB4D6A0179A13C951A9ACEA47, EB0663497555C9E32A2B4C5200D842068F7BF0FC0D325028BCB335141FEC7677 ] PSINReg         C:\WINDOWS\system32\DRIVERS\PSINReg.sys
12:58:36.0780 0x184c  PSINReg - ok
12:58:36.0814 0x184c  [ D6C6BAE38CFEDCF3F7E046A5A72528FD, B012699571ED38E2BE909CEC81674C563C2DAAA18701AC03AE96176BA57BCF47 ] PSKMAD          C:\WINDOWS\system32\DRIVERS\PSKMAD.sys
12:58:36.0818 0x184c  PSKMAD - ok
12:58:36.0884 0x184c  [ 06F5EFBE02C40E3BE7E916EBAB387F6D, 21741628F307387C42FAB8B37C8F9D58E02533AA4D96004B166455CBCDF117A1 ] PSUAService     C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe
12:58:36.0888 0x184c  PSUAService - ok
12:58:36.0947 0x184c  [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE           C:\WINDOWS\system32\qwave.dll
12:58:36.0969 0x184c  QWAVE - ok
12:58:36.0990 0x184c  [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
12:58:36.0994 0x184c  QWAVEdrv - ok
12:58:37.0039 0x184c  [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
12:58:37.0042 0x184c  RasAcd - ok
12:58:37.0081 0x184c  [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
12:58:37.0092 0x184c  RasAuto - ok
12:58:37.0166 0x184c  [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan          C:\WINDOWS\System32\rasmans.dll
12:58:37.0203 0x184c  RasMan - ok
12:58:37.0231 0x184c  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
12:58:37.0238 0x184c  RasPppoe - ok
12:58:37.0304 0x184c  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
12:58:37.0328 0x184c  rdbss - ok
12:58:37.0370 0x184c  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
12:58:37.0374 0x184c  rdpbus - ok
12:58:37.0428 0x184c  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
12:58:37.0441 0x184c  RDPDR - ok
12:58:37.0476 0x184c  [ 858776908AF838E3790F3261B799CDA6, 5BE4658540382D1B2F46E503CE175D74E3870FE492B8B8F37C3CFB34FF8E2DA8 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
12:58:37.0479 0x184c  RdpVideoMiniport - ok
12:58:37.0532 0x184c  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
12:58:37.0547 0x184c  rdyboost - ok
12:58:37.0649 0x184c  [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS            C:\WINDOWS\system32\drivers\ReFS.sys
12:58:37.0708 0x184c  ReFS - ok
12:58:37.0835 0x184c  [ 1791B1C8C72E13D193ADE659E7DB87C1, F0C1EA05283BB89ACBE721D0CDBB30FD8F1E75D5545158D29D6EC11E41B145BA ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
12:58:37.0844 0x184c  RegSrvc - ok
12:58:37.0912 0x184c  [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
12:58:37.0930 0x184c  RemoteAccess - ok
12:58:37.0979 0x184c  [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
12:58:37.0994 0x184c  RemoteRegistry - ok
12:58:38.0049 0x184c  [ 0527EF6E23B9FAB37DDCBC479C6CFA28, C004CE600074AC434F8B24A3383F8C0ACFA5476D9E3B1493B40911C78B028D64 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
12:58:38.0063 0x184c  RFCOMM - ok
12:58:38.0170 0x184c  [ 41DDCF1ADD1FB7DE23DCF671740DDBE6, 87ECB5C883CEFF76D126A5B4D92E069C9298FA5B62CC981870F9ECCA13C074F1 ] RichVideo       C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
12:58:38.0184 0x184c  RichVideo - ok
12:58:38.0229 0x184c  [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
12:58:38.0238 0x184c  RpcEptMapper - ok
12:58:38.0280 0x184c  [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator      C:\WINDOWS\system32\locator.exe
12:58:38.0285 0x184c  RpcLocator - ok
12:58:38.0362 0x184c  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
12:58:38.0405 0x184c  RpcSs - ok
12:58:38.0452 0x184c  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\WINDOWS\system32\DRIVERS\rspndr.sys
12:58:38.0458 0x184c  rspndr - ok
12:58:38.0515 0x184c  [ 8EB6DCEB7473C232D8BC9A886E3183AC, D81B089443306AD9D89F59DBC5F9C2F5B6A86112B4AB59316B97EE7D8B97D2FA ] RSUSBVSTOR      C:\WINDOWS\System32\Drivers\RtsUVStor.sys
12:58:38.0534 0x184c  RSUSBVSTOR - ok
12:58:38.0599 0x184c  [ A10CF010E1A2B4337230B4929E0FE4A1, AE9F6896029FE00F8642E1DDD705D4F35E77ECD4BC6CE59C96351BC21499150A ] RtkAudioService C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
12:58:38.0613 0x184c  RtkAudioService - ok
12:58:38.0679 0x184c  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
12:58:38.0717 0x184c  RTL8168 - ok
12:58:38.0768 0x184c  [ 2EFBEAAC418D8C28C0800C76814856ED, A633BF1C4E2ABBAF375B1840E3ABD8C3BFEBD73C49878A3F9CEE96FF1B7372F7 ] RzDxgk          C:\Windows\system32\drivers\RzDxgk.sys
12:58:38.0777 0x184c  RzDxgk - ok
12:58:38.0808 0x184c  [ C79B033548410568785CA35A2312FAA4, DBEBB664D47EFA24B0BF9A26830FD2D32B514ECDA61D59C5C4F05019D5978F3C ] RzFilter        C:\WINDOWS\system32\drivers\RzFilter.sys
12:58:38.0814 0x184c  RzFilter - ok
12:58:38.0916 0x184c  [ 95E6A3113FAFB30A38B02F3489844849, EC854EF3B46BA97F563270496ED4011AB8280C0A41E73D5459E21A245684D3E1 ] RzOvlMon        C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe
12:58:38.0920 0x184c  RzOvlMon - ok
12:58:38.0964 0x184c  [ 2ABDAE282DBC2D2FB11144184517F850, A68C3B0CCB0441C22BD27F69D22ADF2183613B8B3F9317B89279418A02E78384 ] rzudd           C:\WINDOWS\System32\drivers\rzudd.sys
12:58:38.0975 0x184c  rzudd - ok
12:58:38.0990 0x184c  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
12:58:38.0994 0x184c  s3cap - ok
12:58:39.0045 0x184c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs           C:\WINDOWS\system32\lsass.exe
12:58:39.0050 0x184c  SamSs - ok
12:58:39.0101 0x184c  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
12:58:39.0110 0x184c  sbp2port - ok
12:58:39.0166 0x184c  [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
12:58:39.0185 0x184c  SCardSvr - ok
12:58:39.0216 0x184c  [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
12:58:39.0228 0x184c  ScDeviceEnum - ok
12:58:39.0282 0x184c  [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
12:58:39.0287 0x184c  scfilter - ok
12:58:39.0400 0x184c  [ A95838FFFAEAA7500263D491575F7E0C, FEB79ECAE6D9AB0C29D9AFE12F60502A8357B3A382C0FACF4C6DA4852B6ECFA4 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
12:58:39.0472 0x184c  Schedule - ok
12:58:39.0526 0x184c  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
12:58:39.0536 0x184c  SCPolicySvc - ok
12:58:39.0594 0x184c  [ FDEC5799BA499D18AFA3A540538866E7, 551EE0945FE4EC213FFF623E524500B57531EFEA2D76FA7ED1D2D605E7E2168F ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
12:58:39.0612 0x184c  sdbus - ok
12:58:39.0660 0x184c  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
12:58:39.0667 0x184c  sdstor - ok
12:58:39.0689 0x184c  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\WINDOWS\system32\drivers\secdrv.sys
12:58:39.0692 0x184c  secdrv - ok
12:58:39.0713 0x184c  [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon        C:\WINDOWS\system32\seclogon.dll
12:58:39.0720 0x184c  seclogon - ok
12:58:39.0752 0x184c  [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS            C:\WINDOWS\System32\sens.dll
12:58:39.0761 0x184c  SENS - ok
12:58:39.0797 0x184c  [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
12:58:39.0814 0x184c  SensrSvc - ok
12:58:39.0859 0x184c  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
12:58:39.0865 0x184c  SerCx - ok
12:58:39.0919 0x184c  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
12:58:39.0929 0x184c  SerCx2 - ok
12:58:39.0956 0x184c  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
12:58:39.0960 0x184c  Serenum - ok
12:58:39.0989 0x184c  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\WINDOWS\System32\drivers\serial.sys
12:58:39.0997 0x184c  Serial - ok
12:58:40.0022 0x184c  [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
12:58:40.0026 0x184c  sermouse - ok
12:58:40.0095 0x184c  [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
12:58:40.0120 0x184c  SessionEnv - ok
12:58:40.0143 0x184c  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
12:58:40.0146 0x184c  sfloppy - ok
12:58:40.0327 0x184c  [ 820368BFF0E36FF72A7DE2C20833FFEE, B574BC04CBFF31EFAA6D8AEA735AB6039A1DEBE1F6E5A0007FBFDD9D4AD527F2 ] SftService      C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
12:58:40.0433 0x184c  SftService - ok
12:58:40.0504 0x184c  [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
12:58:40.0532 0x184c  SharedAccess - ok
12:58:40.0621 0x184c  [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
12:58:40.0661 0x184c  ShellHWDetection - ok
12:58:40.0693 0x184c  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
12:58:40.0697 0x184c  SiSRaid2 - ok
12:58:40.0726 0x184c  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
12:58:40.0733 0x184c  SiSRaid4 - ok
12:58:40.0799 0x184c  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
12:58:40.0810 0x184c  SkypeUpdate - ok
12:58:40.0843 0x184c  [ DC3DE448C5B5FA63B6CC58BBD08C96C0, B2FA665F913AF96E32D8364CE3C0229C69420536F1C416E8FF17D8EB94A94478 ] SmbDrv          C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys
12:58:40.0846 0x184c  SmbDrv - ok
12:58:40.0890 0x184c  [ 258257B32F90496B67ABC93E922086BC, 0CABCD08BDE5FF2698E68DF6142D53145E1BA833667692FCEE8103CA662BC688 ] SmbDrvI         C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys
12:58:40.0894 0x184c  SmbDrvI - ok
12:58:40.0943 0x184c  [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost         C:\WINDOWS\System32\smphost.dll
12:58:40.0949 0x184c  smphost - ok
12:58:41.0004 0x184c  [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
12:58:41.0010 0x184c  SNMPTRAP - ok
12:58:41.0092 0x184c  [ 87765EF43C33BE342F4ACB0E3FBF89A6, 3C1DDED7F96F796702F1BC73D5CEE5251DD16011AA349FE4EE1D9C002E0171C6 ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
12:58:41.0120 0x184c  spaceport - ok
12:58:41.0160 0x184c  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
12:58:41.0178 0x184c  SpbCx - ok
12:58:41.0301 0x184c  [ FE0CB40F36D3FCDD3A1B312EF72C38D5, 42EA50869752164764DFE8CE7E1C247BE8342A0C15F39158DC808E8A692C460F ] Spooler         C:\WINDOWS\System32\spoolsv.exe
12:58:41.0345 0x184c  Spooler - ok
12:58:41.0776 0x184c  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
12:58:42.0121 0x184c  sppsvc - ok
12:58:42.0199 0x184c  [ 2B78788A1485F9B99A578A299DF42C02, A87183A9B13585C9E850437A45237105D39D7F3212ADB079D6AB430B67A59643 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
12:58:42.0225 0x184c  srv - ok
12:58:42.0311 0x184c  [ E62EAEF0BAC9DD61BF22D4A7F2F18571, 910D85FDDBAF0E003A0CA0C23D27615F1B7D6145FB9E3A1661E93498196B303A ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
12:58:42.0348 0x184c  srv2 - ok
12:58:42.0389 0x184c  [ 466BDC0006103F2547D308DD3CD64398, 334E0729B369C7F7CBB9878F423B53E05476D1288A8ECEB18240318ABF2370C1 ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
12:58:42.0404 0x184c  srvnet - ok
12:58:42.0470 0x184c  [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
12:58:42.0488 0x184c  SSDPSRV - ok
12:58:42.0540 0x184c  [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
12:58:42.0553 0x184c  SstpSvc - ok
12:58:42.0632 0x184c  [ 706080AD43599D4AB04F1676A3A62CC1, BD9A645163501E2234CAB2B99DB297A634526786D2CDC55FE1C18F5019623E34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
12:58:42.0664 0x184c  Steam Client Service - ok
12:58:42.0703 0x184c  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
12:58:42.0731 0x184c  stexstor - ok
12:58:42.0819 0x184c  [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
12:58:42.0859 0x184c  stisvc - ok
12:58:42.0893 0x184c  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
12:58:42.0901 0x184c  storahci - ok
12:58:42.0926 0x184c  [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt         C:\WINDOWS\system32\DRIVERS\vmstorfl.sys
12:58:42.0931 0x184c  storflt - ok
12:58:42.0953 0x184c  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
12:58:42.0959 0x184c  stornvme - ok
12:58:42.0977 0x184c  [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc         C:\WINDOWS\system32\storsvc.dll
12:58:42.0984 0x184c  StorSvc - ok
12:58:43.0008 0x184c  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
12:58:43.0013 0x184c  storvsc - ok
12:58:43.0039 0x184c  [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc           C:\WINDOWS\system32\svsvc.dll
12:58:43.0047 0x184c  svsvc - ok
12:58:43.0066 0x184c  [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
12:58:43.0070 0x184c  swenum - ok
12:58:43.0157 0x184c  [ E3C92D60F6AD7763961D1E7628002844, A33EED7CB3EE0EF4890AAD095F989FCA7F44CA1055E03D3892AB543DEE74C9B6 ] swprv           C:\WINDOWS\System32\swprv.dll
12:58:43.0208 0x184c  swprv - ok
12:58:43.0286 0x184c  [ 35FB49002249D2D77EC0CDF28B2F204C, FC7CCE7567EEB7C32EF727D2157BC858D38ABBFC6E223AC21414488FC01D5557 ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
12:58:43.0314 0x184c  SynTP - ok
12:58:43.0414 0x184c  [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain         C:\WINDOWS\system32\sysmain.dll
12:58:43.0495 0x184c  SysMain - ok
12:58:43.0609 0x184c  [ D65B1C952AEB864C2BAC7A770B17ECCE, 3EFAAFFF73390D9CB660E0F42B305512396CF66ED06E4A20ED67E8722FB4355B ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
12:58:43.0630 0x184c  SystemEventsBroker - ok
12:58:43.0690 0x184c  [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
12:58:43.0704 0x184c  TabletInputService - ok
12:58:43.0749 0x184c  [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
12:58:43.0771 0x184c  TapiSrv - ok
12:58:43.0968 0x184c  [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
12:58:44.0106 0x184c  Tcpip - ok
12:58:44.0266 0x184c  [ FEEFE783D87C9063CDAC6DBDCF95F533, EBD00EEE90AC657823A88190BBBED6DA47AF597510C201F3392F4325069D2669 ] TCPIP6          C:\WINDOWS\system32\DRIVERS\tcpip.sys
12:58:44.0396 0x184c  TCPIP6 - ok
12:58:44.0455 0x184c  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
12:58:44.0459 0x184c  tcpipreg - ok
12:58:44.0511 0x184c  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
12:58:44.0521 0x184c  tdx - ok
12:58:44.0574 0x184c  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
12:58:44.0579 0x184c  terminpt - ok
12:58:44.0661 0x184c  [ 2C77831737491F4D684D315B95C62883, 90A2574A281F19646CFCDA5FDF40063220058290D2D5523AD91B7E709EC36D3D ] TermService     C:\WINDOWS\System32\termsrv.dll
12:58:44.0724 0x184c  TermService - ok
12:58:44.0746 0x184c  [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes          C:\WINDOWS\system32\themeservice.dll
12:58:44.0755 0x184c  Themes - ok
12:58:44.0803 0x184c  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER     C:\WINDOWS\system32\mmcss.dll
12:58:44.0810 0x184c  THREADORDER - ok
12:58:44.0849 0x184c  [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
12:58:44.0887 0x184c  TimeBroker - ok
12:58:44.0929 0x184c  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\WINDOWS\system32\drivers\tpm.sys
12:58:44.0942 0x184c  TPM - ok
12:58:44.0986 0x184c  [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks          C:\WINDOWS\System32\trkwks.dll
12:58:44.0998 0x184c  TrkWks - ok
12:58:45.0075 0x184c  [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
12:58:45.0082 0x184c  TrustedInstaller - ok
12:58:45.0111 0x184c  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\WINDOWS\system32\drivers\tsusbflt.sys
12:58:45.0116 0x184c  TsUsbFlt - ok
12:58:45.0145 0x184c  [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
12:58:45.0149 0x184c  TsUsbGD - ok
12:58:45.0179 0x184c  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\WINDOWS\system32\DRIVERS\tunnel.sys
12:58:45.0191 0x184c  tunnel - ok
12:58:45.0233 0x184c  [ 42350E49DA754D2D77362FDAE3491651, F29E8BA444ECB0484066B02C0A3DCE09B8417159EE37D7A2E05D4C06A98449C4 ] TurboB          C:\WINDOWS\system32\DRIVERS\TurboB.sys
12:58:45.0236 0x184c  TurboB - ok
12:58:45.0323 0x184c  [ 4F4B0AB2FB69C414CCBCEF7CF2E1C8D8, E1F197554369C97DBF61389346B4CB0233F40AAA2575F5D2FEC809AC9123FC69 ] TurboBoost      C:\Program Files\Intel\TurboBoost\TurboBoost.exe
12:58:45.0333 0x184c  TurboBoost - ok
12:58:45.0358 0x184c  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
12:58:45.0363 0x184c  uagp35 - ok
12:58:45.0390 0x184c  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
12:58:45.0397 0x184c  UASPStor - ok
12:58:45.0456 0x184c  [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000        C:\WINDOWS\System32\drivers\ucx01000.sys
12:58:45.0470 0x184c  UCX01000 - ok
12:58:45.0519 0x184c  [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
12:58:45.0538 0x184c  udfs - ok
12:58:45.0567 0x184c  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
12:58:45.0571 0x184c  UEFI - ok
12:58:45.0632 0x184c  [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
12:58:45.0640 0x184c  UI0Detect - ok
12:58:45.0669 0x184c  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
12:58:45.0675 0x184c  uliagpkx - ok
12:58:45.0704 0x184c  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
12:58:45.0709 0x184c  umbus - ok
12:58:45.0738 0x184c  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
12:58:45.0741 0x184c  UmPass - ok
12:58:45.0796 0x184c  [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
12:58:45.0818 0x184c  UmRdpService - ok
12:58:45.0946 0x184c  [ DBE2E6388379D5CC78099650541E9566, 1914BC929F109A49FB18ED31F239A9813A010B0A3914BC8CD0D6A94A67A072D7 ] UNS             C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
12:58:45.0965 0x184c  UNS - ok
12:58:46.0039 0x184c  [ 40EDD6AD05B4825E303440954BBD427F, 317CCB5BD1F4319240D3801F7F55AF5D52BC487376BFEB6B02F76DE9DD057919 ] Update SerialTrunc C:\Program Files (x86)\SerialTrunc\updateSerialTrunc.exe
12:58:46.0057 0x184c  Update SerialTrunc - ok
12:58:46.0113 0x184c  [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost        C:\WINDOWS\System32\upnphost.dll
12:58:46.0143 0x184c  upnphost - ok
12:58:46.0190 0x184c  [ 8047D8AFA070A4C3B9FCBDBF77A84C45, D8B47716EE57391E3B9CBE3B35FF1F933F08E40B1C8C12EB5BE2438D9E409FF0 ] usb3Hub         C:\WINDOWS\System32\drivers\usb3Hub.sys
12:58:46.0195 0x184c  usb3Hub - ok
12:58:46.0234 0x184c  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64       C:\WINDOWS\System32\Drivers\usbaapl64.sys
12:58:46.0239 0x184c  USBAAPL64 - ok
12:58:46.0295 0x184c  [ 433ECDE01A52691FA7ACA51C10C09B70, B896296A3F8EF2AF3AC5F0091B9848156608586F1E10A95D70700BAB51E8062A ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
12:58:46.0308 0x184c  usbccgp - ok
12:58:46.0339 0x184c  [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
12:58:46.0348 0x184c  usbcir - ok
12:58:46.0372 0x184c  [ 5477D6E27C7D266EF8C152B9A25ADE5E, FEE81677D284A78A0C0FB60F887A952CFC759AE78B01206D73F59FE33612C519 ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
12:58:46.0381 0x184c  usbehci - ok
12:58:46.0454 0x184c  [ DF56C2C04EFA328D7A66B69007130266, 719316EB25A8C7B82C7941D1C5B964CC4EDA4A997732F481526DE7356F6FC0D8 ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
12:58:46.0485 0x184c  usbhub - ok
12:58:46.0546 0x184c  [ CFC52C49BEFE4D70D87FFA900EAB9777, 09A2F5D8AB07C3AE3F2B092F4DD7AE5838736CDC263016F188B442B32EC928F8 ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
12:58:46.0582 0x184c  USBHUB3 - ok
12:58:46.0602 0x184c  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
12:58:46.0606 0x184c  usbohci - ok
12:58:46.0632 0x184c  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
12:58:46.0636 0x184c  usbprint - ok
12:58:46.0693 0x184c  [ EA23453240137F6773174E0D93F61A69, 579AD09FB428C2BB8B4055128620A7AADD1B606C1EA44B87A01D69A84232A5D9 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
12:58:46.0706 0x184c  USBSTOR - ok
12:58:46.0754 0x184c  [ BA4FA655E0FC577DB7436FC963932CE4, 3336FDECD4AEC6B316D4C0803E22A12719EBEDD1A9427C0DF5D3B263BE600EE6 ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
12:58:46.0759 0x184c  usbuhci - ok
12:58:46.0797 0x184c  [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo        C:\WINDOWS\System32\Drivers\usbvideo.sys
12:58:46.0813 0x184c  usbvideo - ok
12:58:46.0885 0x184c  [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
12:58:46.0909 0x184c  USBXHCI - ok
12:58:46.0990 0x184c  [ 40EDD6AD05B4825E303440954BBD427F, 317CCB5BD1F4319240D3801F7F55AF5D52BC487376BFEB6B02F76DE9DD057919 ] Util SerialTrunc C:\Program Files (x86)\SerialTrunc\bin\utilSerialTrunc.exe
12:58:47.0007 0x184c  Util SerialTrunc - ok
12:58:47.0032 0x184c  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
12:58:47.0039 0x184c  VaultSvc - ok
12:58:47.0065 0x184c  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
12:58:47.0070 0x184c  vdrvroot - ok
12:58:47.0182 0x184c  [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds             C:\WINDOWS\System32\vds.exe
12:58:47.0262 0x184c  vds - ok
12:58:47.0296 0x184c  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
12:58:47.0308 0x184c  VerifierExt - ok
12:58:47.0397 0x184c  [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
12:58:47.0437 0x184c  vhdmp - ok
12:58:47.0486 0x184c  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\WINDOWS\system32\drivers\viaide.sys
12:58:47.0490 0x184c  viaide - ok
12:58:47.0512 0x184c  [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
12:58:47.0520 0x184c  vmbus - ok
12:58:47.0545 0x184c  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
12:58:47.0549 0x184c  VMBusHID - ok
12:58:47.0615 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
12:58:47.0648 0x184c  vmicguestinterface - ok
12:58:47.0685 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
12:58:47.0715 0x184c  vmicheartbeat - ok
12:58:47.0753 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
12:58:47.0783 0x184c  vmickvpexchange - ok
12:58:47.0819 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
12:58:47.0849 0x184c  vmicrdv - ok
12:58:47.0886 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
12:58:47.0916 0x184c  vmicshutdown - ok
12:58:47.0954 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
12:58:47.0984 0x184c  vmictimesync - ok
12:58:48.0021 0x184c  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
12:58:48.0051 0x184c  vmicvss - ok
12:58:48.0076 0x184c  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
12:58:48.0082 0x184c  volmgr - ok
12:58:48.0135 0x184c  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
12:58:48.0157 0x184c  volmgrx - ok
12:58:48.0230 0x184c  [ 3595FBDF25F8BA6256072D103937D7D6, 547AA103804790E31F6E5658923627945948B48F36354EEA2FC0FE09098F9FD5 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
12:58:48.0254 0x184c  volsnap - ok
12:58:48.0307 0x184c  [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
12:58:48.0313 0x184c  vpci - ok
12:58:48.0352 0x184c  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
12:58:48.0363 0x184c  vsmraid - ok
12:58:48.0510 0x184c  [ 4957B27219515B93A508B91068B87BF5, 5B6B37A57FC8F4FC8B119C013338292550C63AB5295A596D382D8DCF26D751A2 ] VSS             C:\WINDOWS\system32\vssvc.exe
12:58:48.0593 0x184c  VSS - ok
12:58:48.0635 0x184c  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
12:58:48.0654 0x184c  VSTXRAID - ok
12:58:48.0680 0x184c  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
12:58:48.0684 0x184c  vwifibus - ok
12:58:48.0717 0x184c  [ 6B26AD573CCDD5209DF4397438B76354, 2C8AC314EC471F6D8B0B12D49D621360A10DCADA7C52E73596730C954FF89FCF ] vwififlt        C:\WINDOWS\system32\DRIVERS\vwififlt.sys
12:58:48.0724 0x184c  vwififlt - ok
12:58:48.0753 0x184c  [ 0B48E0DFB44EE475F4FD8A8EE599AF30, 28271D4CA0C642304CD8826A3D514F44E3391F9D6D07A1595BB30CE65E7E3494 ] vwifimp         C:\WINDOWS\system32\DRIVERS\vwifimp.sys
12:58:48.0758 0x184c  vwifimp - ok
12:58:48.0814 0x184c  [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time         C:\WINDOWS\system32\w32time.dll
12:58:48.0841 0x184c  W32Time - ok
12:58:48.0870 0x184c  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
12:58:48.0874 0x184c  WacomPen - ok
12:58:49.0014 0x184c  [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine        C:\WINDOWS\system32\wbengine.exe
12:58:49.0104 0x184c  wbengine - ok
12:58:49.0176 0x184c  [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
12:58:49.0206 0x184c  WbioSrvc - ok
12:58:49.0265 0x184c  [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
12:58:49.0291 0x184c  Wcmsvc - ok
12:58:49.0369 0x184c  [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
12:58:49.0400 0x184c  wcncsvc - ok
12:58:49.0420 0x184c  [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
12:58:49.0428 0x184c  WcsPlugInService - ok
12:58:49.0485 0x184c  [ F5D4FA3E1F4879C361FFF3855259D2C2, 48C60FE4AAB011E2250157506FF0624031BFA346F8F2F8C6DFDF6F3CAA4F3F42 ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
12:58:49.0489 0x184c  WdBoot - ok
12:58:49.0585 0x184c  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
12:58:49.0632 0x184c  Wdf01000 - ok
12:58:49.0679 0x184c  [ 019CC610AD95FF47EAD7C08B7A683B96, BB9D42F8ED90ECA2E7B8C906E06A1EA859FAD9BD1B3492BB1E28C0D00004812A ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
12:58:49.0696 0x184c  WdFilter - ok
12:58:49.0719 0x184c  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
12:58:49.0731 0x184c  WdiServiceHost - ok
12:58:49.0743 0x184c  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
12:58:49.0753 0x184c  WdiSystemHost - ok
12:58:49.0783 0x184c  [ 6CC1BB8F6851A262E2E824F0E92D5EEF, 45A88A984179BBA38C1F4434C4D6C2823C1FE6AFBE8CB0F656DAE0092D1D5611 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
12:58:49.0792 0x184c  WdNisDrv - ok
12:58:49.0841 0x184c  WdNisSvc - ok
12:58:49.0877 0x184c  [ 6588A957873326361AB1CAC4E76F8394, BE17880CEDCAE5ED3B983443E3777842646A3E48B661422A717656E11F6DBA94 ] WebClient       C:\WINDOWS\System32\webclnt.dll
12:58:49.0895 0x184c  WebClient - ok
12:58:49.0926 0x184c  [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
12:58:49.0944 0x184c  Wecsvc - ok
12:58:49.0970 0x184c  [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
12:58:49.0978 0x184c  WEPHOSTSVC - ok
12:58:50.0022 0x184c  [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
12:58:50.0032 0x184c  wercplsupport - ok
12:58:50.0079 0x184c  [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
12:58:50.0091 0x184c  WerSvc - ok
12:58:50.0139 0x184c  [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS         C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
12:58:50.0148 0x184c  WFPLWFS - ok
12:58:50.0193 0x184c  [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
12:58:50.0202 0x184c  WiaRpc - ok
12:58:50.0221 0x184c  [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
12:58:50.0226 0x184c  WIMMount - ok
12:58:50.0233 0x184c  WinDefend - ok
12:58:50.0343 0x184c  [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
12:58:50.0392 0x184c  WinHttpAutoProxySvc - ok
12:58:50.0464 0x184c  [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
12:58:50.0480 0x184c  Winmgmt - ok
12:58:50.0661 0x184c  [ C8D6344BDE2691A196E61C0D3372EAB7, FF8EB79D8A7E298343C22B83276FF68293D08A9DA438BB22600BEFC4CA93A91D ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
12:58:50.0819 0x184c  WinRM - ok
12:58:50.0881 0x184c  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb          C:\WINDOWS\system32\DRIVERS\WinUsb.sys
12:58:50.0888 0x184c  WinUsb - ok
12:58:51.0015 0x184c  [ 5A917027826D759CC3238C7D3CEC3438, A8FFA28B6D8A314692AA08788FC9E2E0F03D8AD1FCD662826ABA71DB39C3605A ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
12:58:51.0104 0x184c  WlanSvc - ok
12:58:51.0245 0x184c  [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
12:58:51.0333 0x184c  wlidsvc - ok
12:58:51.0374 0x184c  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
12:58:51.0376 0x184c  WmiAcpi - ok
12:58:51.0441 0x184c  [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
12:58:51.0454 0x184c  wmiApSrv - ok
12:58:51.0484 0x184c  WMPNetworkSvc - ok
12:58:51.0520 0x184c  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
12:58:51.0531 0x184c  Wof - ok
12:58:51.0666 0x184c  [ 65C65F3BD784158C456E721DDC9F0EA2, CBD3ADFD960456BD4B9557BF691E12D31153499549F5D3D08258BD62013952ED ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
12:58:51.0763 0x184c  workfolderssvc - ok
12:58:51.0809 0x184c  [ C1F564F324685C088ECAB1933576CF91, 022F0EC160352AB73AF7DA557D1A5798964231B82C556F22F4163E8B3E4088B2 ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
12:58:51.0814 0x184c  wpcfltr - ok
12:58:51.0857 0x184c  [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc          C:\WINDOWS\System32\wpcsvc.dll
12:58:51.0864 0x184c  WPCSvc - ok
12:58:51.0883 0x184c  [ D27491CFCE452C154CECFA155AD0EBC8, 1F3F74C253E3B07DE7EFE27C34DD9AF08617C7B03BB44C2902F69BA9DA3F21F2 ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
12:58:51.0894 0x184c  WPDBusEnum - ok
12:58:51.0944 0x184c  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
12:58:51.0948 0x184c  WpdUpFltr - ok
12:58:51.0973 0x184c  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
12:58:51.0976 0x184c  ws2ifsl - ok
12:58:52.0019 0x184c  [ 515583507D3828E827FF6352C9ACCEFA, D0C42020FA787804DA26FE07D67C8880FE027A230BD9EB6A706862D89181F2BE ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
12:58:52.0032 0x184c  wscsvc - ok
12:58:52.0066 0x184c  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\WINDOWS\System32\drivers\WSDPrint.sys
12:58:52.0069 0x184c  WSDPrintDevice - ok
12:58:52.0080 0x184c  WSearch - ok
12:58:52.0330 0x184c  [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService       C:\WINDOWS\System32\WSService.dll
12:58:52.0519 0x184c  WSService - ok
12:58:52.0783 0x184c  [ 7E609FBF50774CC5A239420FE34EBB9C, 69B643B11717D51BC5D3F1CDE47D4C9E198AB8D9160C852DBE9B940E40AD8A57 ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
12:58:52.0976 0x184c  wuauserv - ok
12:58:53.0031 0x184c  [ 2FEAE33E9B2B56104596E1BA444405A9, 0A142F50E06F6224B9CB36B3CE62BE0B36DE8B8DB9F9E05D287DFB884CC7826E ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
12:58:53.0039 0x184c  WudfPf - ok
12:58:53.0079 0x184c  [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
12:58:53.0094 0x184c  WUDFRd - ok
12:58:53.0119 0x184c  [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFSensorLP    C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
12:58:53.0132 0x184c  WUDFSensorLP - ok
12:58:53.0188 0x184c  [ BB73CBC65AABC4EA0A5C6A1474A0A743, D644B3C6A7202CADDADB3B68FE1B2A7C76B023FE58F667EED4D538C1F4A65D64 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
12:58:53.0200 0x184c  wudfsvc - ok
12:58:53.0224 0x184c  [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
12:58:53.0237 0x184c  WUDFWpdFs - ok
12:58:53.0262 0x184c  [ 19240C13F526125554B5370566F21A0A, 1DD88B092451CEC309A390319342BB4D36CE938BBE6D09127BBAA53960DD8E94 ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
12:58:53.0275 0x184c  WUDFWpdMtp - ok
12:58:53.0331 0x184c  [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
12:58:53.0365 0x184c  WwanSvc - ok
12:58:53.0486 0x184c  X6va017 - ok
12:58:53.0529 0x184c  [ 24E57041608ED6A9D7FDAD0D9EC214E2, 895A16072F5EFFF57A7DCA21917540726BF816A2746EC47A066AAD363F69E5D7 ] XHCIPort        C:\WINDOWS\System32\drivers\XHCIPort.sys
12:58:53.0541 0x184c  XHCIPort - ok
12:58:53.0884 0x184c  [ 2AC426C57AC3D6A226D66E5A03223C90, 45AD44153D280E4066BA62260CE7733AC3DC23D59951BBCC0F8D4F5226F97203 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
12:58:54.0056 0x184c  ZeroConfigService - ok
12:58:54.0173 0x184c  [ 110F1BC710AD99423114CAE79F83C0F7, 2532D129F6F9484D1F3B3A03CF395DFD2A8A9B5CEDF93FF68431D0AD256B5CF8 ] {09BB444F-B2E2-4009-BAF2-7B727681223E} C:\Program Files (x86)\VMLaunch\BuddyVM.sys
12:58:54.0175 0x184c  {09BB444F-B2E2-4009-BAF2-7B727681223E} - ok
12:58:54.0219 0x184c  [ 2166403DA75E8BFCC0477BE236D5275C, BEE3F1C246D9B57450766DA858AD04DBDB9DA9A4DA6F1D6F28ED3FAB377C7753 ] {47351c22-0d6c-4658-a617-795d251145e2}w64 C:\WINDOWS\system32\drivers\{47351c22-0d6c-4658-a617-795d251145e2}w64.sys
12:58:54.0225 0x184c  {47351c22-0d6c-4658-a617-795d251145e2}w64 - ok
12:58:54.0256 0x184c  ================ Scan global ===============================
12:58:54.0318 0x184c  [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\WINDOWS\system32\basesrv.dll
12:58:54.0382 0x184c  [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\WINDOWS\system32\winsrv.dll
12:58:54.0449 0x184c  [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\WINDOWS\system32\sxssrv.dll
12:58:54.0527 0x184c  [ B4B610BBCB002EC478C6FD80CF915697, CE22B87A7C7C0D325CE66FB97E7318B4A41EE0BD14D902A410126A1EBBEAA6FB ] C:\WINDOWS\system32\services.exe
12:58:54.0555 0x184c  [ Global ] - ok
12:58:54.0556 0x184c  ================ Scan MBR ==================================
12:58:54.0582 0x184c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
12:58:54.0595 0x184c  \Device\Harddisk0\DR0 - ok
12:58:54.0596 0x184c  ================ Scan VBR ==================================
12:58:54.0612 0x184c  [ 8366B51336979B4525E1BFBA7887AD25 ] \Device\Harddisk0\DR0\Partition1
12:58:54.0679 0x184c  \Device\Harddisk0\DR0\Partition1 - ok
12:58:54.0705 0x184c  [ 321FFB9CD8B232B73EF8067B068DA5ED ] \Device\Harddisk0\DR0\Partition2
12:58:54.0766 0x184c  \Device\Harddisk0\DR0\Partition2 - ok
12:58:54.0784 0x184c  [ CC4435F4B26A0DA5EE9A2BD5704E8ED7 ] \Device\Harddisk0\DR0\Partition3
12:58:54.0784 0x184c  \Device\Harddisk0\DR0\Partition3 - ok
12:58:54.0800 0x184c  [ 6A56E466B0137C36CC3136B0A83993DF ] \Device\Harddisk0\DR0\Partition4
12:58:54.0884 0x184c  \Device\Harddisk0\DR0\Partition4 - ok
12:58:54.0905 0x184c  [ 8D4B864CEFD67A48B5CFB1284545011B ] \Device\Harddisk0\DR0\Partition5
12:58:54.0969 0x184c  \Device\Harddisk0\DR0\Partition5 - ok
12:58:55.0006 0x184c  [ 84570FC17A87EA47FED979D1914EA473 ] \Device\Harddisk0\DR0\Partition6
12:58:55.0018 0x184c  \Device\Harddisk0\DR0\Partition6 - ok
12:58:55.0034 0x184c  [ 9D4FEAB6E10D0A785B9EC3BA4F3AC361 ] \Device\Harddisk0\DR0\Partition7
12:58:55.0046 0x184c  \Device\Harddisk0\DR0\Partition7 - ok
12:58:55.0047 0x184c  Waiting for KSN requests completion. In queue: 144
12:58:56.0048 0x184c  Waiting for KSN requests completion. In queue: 144
12:58:57.0049 0x184c  Waiting for KSN requests completion. In queue: 144
12:58:58.0076 0x184c  AV detected via SS2: Panda Cloud Antivirus,  (  ), 0x71000 ( enabled : updated )
12:58:58.0118 0x184c  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.5.218.0 ), 0x60100 ( disabled : updated )
12:58:58.0120 0x184c  FW detected via SS2: Cloud Antivirus Firewall,  (  ), 0x70010 ( disabled )
12:58:58.0126 0x184c  Win FW state via NFP2: enabled
12:59:00.0684 0x184c  ============================================================
12:59:00.0684 0x184c  Scan finished
12:59:00.0684 0x184c  ============================================================
12:59:00.0703 0x3b38  Detected object count: 0
12:59:00.0703 0x3b38  Actual detected object count: 0
 

Attached Files



#6 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:42 AM

Posted 23 May 2014 - 04:07 AM

Going over your logs I noticed that you have uTorrent installed.

  • Avoid gaming sites, pirated software, cracking tools, keygens, and peer-to-peer (P2P) file sharing programs.
  • They are a security risk which can make your computer susceptible to a wide variety of malware infections, remote attacks, exposure of personal information, and identity theft. Many malicious worms and Trojans spread across P2P file sharing networks, gaming and underground sites.
  • Users visiting such pages may see innocuous-looking banner ads containing code which can trigger pop-up ads and malicious Flash ads that install viruses, Trojans and spyware. Ads are a target for hackers because they offer a stealthy way to distribute malware to a wide range of Internet users.
  • The best way to reduce the risk of infection is to avoid these types of web sites and not use any P2P applications.

It is pretty much certain that if you continue to use P2P programs, you will get infected again.
I would recommend that you uninstall uTorrent, however that choice is up to you. If you choose to remove these programs, you can do so via Start > Control Panel > Add/Remove Programs.
If you wish to keep it, please do not use it until your computer is cleaned.

 

 

 

 

Add-/remove programms

Click on start-->control panel.

Vista/7: Open Programs and Features
XP: Open add/remove programs

Search for and remove the following programs
 

Flash Player Pro V5.4
FTdownloader V4.0
PC Fix Speed with 24x7 Help 1.2.0.24
PC Health Kit v3.2
SerialTrunc
TidyNetwork
TidyNetwork.com
Tiny Download Manager (remove only)
WordOv


Close the window.

 

 

 

 

Fix with FRST (normal mode)

WARNING: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
 

  • Download the attached fixlist.txt and save it to the location where FRST is saved to.
  • Run FRST.exe (on 64bit, run FRST64.exe) and press the Fix button just once and wait.
  • The tool will make a log (Fixlog.txt) which you find where you saved FRST. Please post it to your reply.

 

 

 

 

Full System Scan with Malwarebytes Antimalware
 

  • If not existing, please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mb3-setup-1878.1878-3.5.1.2522.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to the following:
    • Launch Malwarebytes Anti-Malware
    • A 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
  • Click Finish.

If the program is already installed:

  • Run Malwarebytes Antimalware
  • On the Dashboard, click the 'Update Now >>' link
  • After the update completes, click the 'Scan Now >>' button.
  • Or, on the Dashboard, click the Scan Now >> button.
  • If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
  • In most cases, a restart will be required.
  • Wait for the prompt to restart the computer to appear, then click on Yes.

  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click 'Copy to Clipboard'
  • Paste the contents of the clipboard into your reply.

 

Attached Files


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#7 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:11:42 AM

Posted 10 June 2014 - 06:28 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.
Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users