Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

possible virus persists even after clean install of win7


  • This topic is locked This topic is locked
34 replies to this topic

#1 surelynot

surelynot

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 26 October 2014 - 05:52 PM

I keep geting virus like symptomps and I cant get rid of them even after clean installing win7.

 

The symptoms of the virus became evident when I ran The Trend micro ATTK with clean boot tool. It picked 12 possible infections but the scan kept running for 2 days and eventually stoped and reported "error running javascripts". I also tried the scan with the cleanboot option.

 

The same problem has occurred on 3 laptops in the house. It seems to be able jump through the network.

 

I tried running the scan by isolating my laptop without connecting to the lan and modem but this still didn't work either.

 

I then tried a clean install of win7 but to no avail.

 

The main symtom is a memory leak, after gaming for 2 hours a message pops up saying not enough memory and the graphics quality diminishes the longer I play. Before I ran the attck scan I never had this problem so severely.

 

Another symtom is seen while playing youtube videos, there is fussy picture as if the graphics card is having trouble buffering the video to normal quality. 

 

Another symptom occurs after running some scans, the desktop background picture is removed and a black background appears.

 

I know that I have been infected by the Trovi Virus. I followed some removal guides on your site and seem to have removed it from  search defaults in internet explorer.

 

There was another virus picked up and removed recently after I ran a few more virus scanners but I cant remember the name of it.

 

Expert help is needed to resolve this problem because I am not sure what is causing these symptoms to occur. I have already performed a clean install of win 7, all drivers are from acer support webpage, ran memtest, and a few more hardware checking tools.   

 

Thanks in advance.

Attached Files



BC AdBot (Login to Remove)

 


#2 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 27 October 2014 - 03:18 AM

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17344
Run by has at 6:34:16 on 2014-10-27
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.61.1033.18.4028.2537 [GMT 8:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Users\has\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\perfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
StartupFolder: C:\Users\has\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MYOBAD~1.LNK - C:\Users\has\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{68B5060C-5790-4BAF-AFE6-EA20A7C9A24F} : DHCPNameServer = 10.0.0.138
SSODL: WebCheck - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-10-26 203264]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2014-8-31 75304]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-8 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-8 123856]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-10-26 111616]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-10-26 59392]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-10-26 1255736]
.
=============== Created Last 30 ================
.
2014-10-26 15:27:32 -------- d-----w- C:\Users\has\AppData\Local\ATI
2014-10-26 15:27:11 0 ----a-w- C:\Windows\ativpsrm.bin
2014-10-26 15:11:39 190464 ----a-w- C:\Windows\PAExec.exe
2014-10-26 10:08:07 -------- d-----w- C:\Users\has\AppData\Local\MYOB_Technology_Pty_Ltd
2014-10-26 10:07:41 -------- d-----w- C:\Users\has\AppData\Local\IsolatedStorage
2014-10-26 10:07:29 -------- d-----w- C:\Users\has\AppData\Roaming\MYOB
2014-10-26 10:07:18 -------- d-----w- C:\Users\has\AppData\Local\MYOB
2014-10-26 10:07:16 -------- d-----w- C:\Users\has\AppData\Local\Programs
2014-10-26 10:07:04 -------- d-----w- C:\Program Files\Microsoft Synchronization Services
2014-10-26 10:07:04 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2014-10-26 10:07:00 -------- d-----w- C:\Program Files (x86)\Microsoft Synchronization Services
2014-10-26 10:07:00 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-10-26 10:06:56 -------- d-----w- C:\Users\has\AppData\Local\Package Cache
2014-10-26 08:42:22 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-10-26 08:42:21 3928064 ----a-w- C:\Windows\System32\d2d1.dll
2014-10-26 08:42:21 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll
2014-10-26 08:42:21 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll
2014-10-26 08:42:21 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
2014-10-26 08:38:16 -------- d-----w- C:\Users\has\AppData\Local\WindowsUpdate
2014-10-26 08:36:24 -------- d-----w- C:\Windows\SysWow64\Wat
2014-10-26 08:36:24 -------- d-----w- C:\Windows\System32\Wat
2014-10-26 08:35:01 -------- d-----w- C:\Users\has\AppData\Local\Secunia PSI
2014-10-26 08:34:57 -------- d-----w- C:\Program Files (x86)\Secunia
2014-10-26 04:41:19 -------- d-----w- C:\Windows\Panther
2014-10-26 04:36:59 508264 ----a-w- C:\Windows\System32\d3dx10_36.dll
2014-10-26 01:47:21 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2014-10-26 01:47:20 -------- d-----w- C:\Program Files (x86)\Steam
2014-10-26 01:28:44 -------- d-----w- C:\Windows\pss
2014-10-26 01:13:22 -------- d-----w- C:\Windows\SysWow64\AGEIA
2014-10-26 01:13:10 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2014-10-26 00:43:23 -------- d-sh--w- C:\Users\has\AppData\Local\EmieUserList
2014-10-26 00:43:23 -------- d-sh--w- C:\Users\has\AppData\Local\EmieSiteList
2014-10-26 00:19:30 878080 ----a-w- C:\Windows\System32\advapi32.dll
2014-10-26 00:19:30 859648 ----a-w- C:\Windows\System32\tdh.dll
2014-10-26 00:19:30 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2014-10-26 00:19:30 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2014-10-26 00:19:30 1732032 ----a-w- C:\Windows\System32\ntdll.dll
2014-10-26 00:19:30 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll
2014-10-26 00:18:41 327168 ----a-w- C:\Windows\System32\mswsock.dll
2014-10-26 00:18:41 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2014-10-26 00:12:31 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2014-10-26 00:12:31 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2014-10-25 23:35:05 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-10-25 23:35:05 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-10-25 23:35:05 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-10-25 23:31:02 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll
2014-10-25 23:31:02 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe
2014-10-25 23:31:02 171160 ----a-w- C:\Windows\System32\infocardapi.dll
2014-10-25 23:31:02 1389208 ----a-w- C:\Windows\System32\icardagt.exe
2014-10-25 23:31:01 8856 ----a-w- C:\Windows\SysWow64\icardres.dll
2014-10-25 23:31:01 8856 ----a-w- C:\Windows\System32\icardres.dll
2014-10-25 23:30:57 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
2014-10-25 23:30:57 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
2014-10-25 23:28:58 801280 ----a-w- C:\Windows\System32\usp10.dll
2014-10-25 23:23:52 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2014-10-25 23:18:28 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-10-25 23:18:28 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-10-25 23:18:28 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-10-25 23:13:51 2620928 ----a-w- C:\Windows\System32\wucltux.dll
2014-10-25 23:13:47 33792 ----a-w- C:\Windows\SysWow64\wuapp.exe
2014-10-25 23:13:47 179656 ----a-w- C:\Windows\SysWow64\wuwebv.dll
2014-10-25 23:13:46 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-10-25 23:13:46 198600 ----a-w- C:\Windows\System32\wuwebv.dll
2014-10-25 22:56:27 -------- d-----w- C:\Windows\System32\SPReview
2014-10-25 22:56:24 -------- d-----w- C:\Windows\System32\EventProviders
2014-10-25 22:54:59 99328 ----a-w- C:\Windows\SysWow64\QSVRMGMT.DLL
2014-10-25 22:42:06 -------- d-----w- C:\Windows\System32\MRT
2014-10-25 22:38:58 -------- d-----w- C:\ProgramData\AMD
2014-10-25 22:36:00 -------- d-----w- C:\ProgramData\Package Cache
2014-10-25 22:04:05 -------- d-----w- C:\Program Files (x86)\Cisco
2014-10-25 22:03:38 95544 ----a-w- C:\Windows\System32\bcmwlcoi.dll
2014-10-25 22:03:38 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll
2014-10-25 22:03:38 4572224 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS
2014-10-25 22:03:38 3906360 ----a-w- C:\Windows\System32\bcmihvsrv64.dll
2014-10-25 22:03:38 3572024 ----a-w- C:\Windows\System32\bcmihvui64.dll
2014-10-25 22:03:38 -------- d-----w- C:\Program Files\Broadcom
2014-10-25 22:03:30 142336 ----a-w- C:\Windows\System32\poqexec.exe
2014-10-25 22:03:30 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2014-10-25 22:03:26 278152 ------w- C:\Windows\System32\MpSigStub.exe
2014-10-25 22:03:26 11627712 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63619B56-5A0A-409B-8114-8BC16F5E4AAE}\mpengine.dll
2014-10-25 21:59:13 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-10-25 21:56:49 -------- d-----w- C:\Windows\SysWow64\Atheros_L1e
2014-10-25 13:17:58 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2014-10-25 13:17:56 -------- d-sh--w- C:\Windows\Installer
.
==================== Find3M  ====================
.
2014-10-26 00:13:50 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-25 22:59:02 175616 ----a-w- C:\Windows\System32\msclmd.dll
2014-10-25 22:59:02 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2014-09-29 00:58:48 3198976 ----a-w- C:\Windows\System32\win32k.sys
2014-09-13 01:58:18 77312 ----a-w- C:\Windows\System32\packager.dll
2014-09-13 01:40:05 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-09-04 05:23:20 424448 ----a-w- C:\Windows\System32\rastls.dll
2014-09-04 05:04:15 372736 ----a-w- C:\Windows\SysWow64\rastls.dll
2014-08-23 02:07:00 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
.
============= FINISH:  6:34:33.78 ===============

 

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 25/10/2014 9:09:45 PM
System Uptime: 27/10/2014 5:41:55 AM (1 hours ago)
.
Motherboard: Acer             |  | SM83-CP        
Processor: Intel® Core™ i7 CPU       Q 720  @ 1.60GHz | CPU 1 | 1600/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 233 GiB total, 188.06 GiB free.
D: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description:
Device ID: ACPI\WEC1023\4&2CDF0C4&0
Manufacturer:
Name:
PNP Device ID: ACPI\WEC1023\4&2CDF0C4&0
Service:
.
Class GUID:
Description: Mass Storage Controller
Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Manufacturer:
Name: Mass Storage Controller
PNP Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Service:
.
Class GUID:
Description: FingerPrinter Reader
Device ID: USB\VID_1C7A&PID_0801\00000000000006
Manufacturer:
Name: FingerPrinter Reader
PNP Device ID: USB\VID_1C7A&PID_0801\00000000000006
Service:
.
Class GUID:
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_8086&DEV_3B64&SUBSYS_038B1025&REV_06\3&11583659&0&B0
Manufacturer:
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_8086&DEV_3B64&SUBSYS_038B1025&REV_06\3&11583659&0&B0
Service:
.
==== System Restore Points ===================
.
RP1: 26/10/2014 5:56:40 AM - Installed Atheros Communications Inc.® AR81Family Gigabit/Fastö·/X
RP2: 26/10/2014 5:59:06 AM - Windows Update
RP3: 26/10/2014 6:03:16 AM - Windows Update
RP4: 26/10/2014 6:35:55 AM - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
RP5: 26/10/2014 6:36:31 AM - Windows Update
RP6: 26/10/2014 6:37:30 AM - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
RP7: 26/10/2014 6:41:52 AM - Windows Update
RP8: 26/10/2014 6:56:15 AM - Windows Update
RP9: 26/10/2014 7:13:39 AM - Windows Update
RP10: 26/10/2014 7:30:45 AM - Windows Update
RP11: 26/10/2014 8:52:36 AM - Installed NVIDIA PhysX
RP12: 26/10/2014 8:55:45 AM - Installed NVIDIA PhysX
RP13: 26/10/2014 9:10:26 AM - Removed NVIDIA PhysX
RP14: 26/10/2014 9:13:13 AM - Installed NVIDIA PhysX
RP15: 26/10/2014 12:36:33 PM - Installed DirectX
RP16: 26/10/2014 4:36:09 PM - Windows Update
RP17: 26/10/2014 4:42:53 PM - Windows Update
RP18: 26/10/2014 6:06:50 PM - MYOB AccountRight 2014.4
RP19: 26/10/2014 11:07:55 PM - DDU System Restored Point
.
==== Installed Programs ======================
.
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
ATI Catalyst Install Manager
Broadcom 802.11 Network Adapter
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Vista
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-core-static
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Dota 2
Microsoft .NET Framework 4.5
Microsoft SQL Server Compact 3.5 SP2 ENU
Microsoft SQL Server Compact 3.5 SP2 x64 ENU
Microsoft SQL Server Compact 4.0 SP1 x64 ENU
Microsoft Sync Framework 2.1 Core Components (x86) ENU
Microsoft Sync Framework 2.1 Database Providers (x86) ENU
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
MYOB AccountRight 2014.4
MYOB Add-On Connector (API)
PX Profile Update
Security Update for Microsoft .NET Framework 4.5 (KB2737083)
Security Update for Microsoft .NET Framework 4.5 (KB2742613)
Security Update for Microsoft .NET Framework 4.5 (KB2789648)
Security Update for Microsoft .NET Framework 4.5 (KB2840642v2)
Security Update for Microsoft .NET Framework 4.5 (KB2861208)
Security Update for Microsoft .NET Framework 4.5 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5 (KB2898864)
Security Update for Microsoft .NET Framework 4.5 (KB2901118)
Security Update for Microsoft .NET Framework 4.5 (KB2931368)
Security Update for Microsoft .NET Framework 4.5 (KB2972107)
Security Update for Microsoft .NET Framework 4.5 (KB2972216)
Security Update for Microsoft .NET Framework 4.5 (KB2979578v2)
Steam
.
==== Event Viewer Messages From Past Week ========
.
26/10/2014 9:48:51 AM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
26/10/2014 9:48:51 AM, Error: Service Control Manager [7000]  - The Steam Client Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
26/10/2014 9:24:34 AM, Error: Service Control Manager [7023]  - The Superfetch service terminated with the following error:  The service has not been started.
26/10/2014 8:43:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20]  - Installation Failure: Windows failed to install the following update with error 0x800f0902: Windows Update Aux.
26/10/2014 8:40:40 AM, Error: Service Control Manager [7031]  - The Microsoft .NET Framework NGEN v4.0.30319_X86 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
26/10/2014 6:47:58 AM, Error: Service Control Manager [7023]  -
26/10/2014 6:03:32 PM, Error: Disk [11]  - The driver detected a controller error on \Device\Harddisk1\DR1.
26/10/2014 11:11:51 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
26/10/2014 11:11:45 PM, Error: Service Control Manager [7001]  - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:44 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
26/10/2014 11:11:44 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
26/10/2014 11:11:44 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
26/10/2014 11:11:43 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
26/10/2014 11:11:39 PM, Error: Service Control Manager [7030]  - The PAExec service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.
26/10/2014 11:11:38 PM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
26/10/2014 11:11:34 PM, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AFD DfsC discache NetBIOS NetBT nsiproxy Psched rdbss spldr tdx vwififlt Wanarpv6 WfpLwf
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error:  A device attached to the system is not functioning.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error:  A device attached to the system is not functioning.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error:  A device attached to the system is not functioning.
26/10/2014 11:11:34 PM, Error: Service Control Manager [7001]  - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
26/10/2014 1:14:28 PM, Error: Schannel [36888]  - The following fatal alert was generated: 43. The internal error state is 252.
.
==== End Of File ===========================
 

 

 

 



#3 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 29 October 2014 - 05:48 PM

I just did a reformat and re-install of my laptop, here are the new dds logs.

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 30/10/2014 2:59:03 AM
System Uptime: 30/10/2014 6:09:37 AM (0 hours ago)
.
Motherboard: Acer             |  | SM83-CP        
Processor: Intel® Core™ i7 CPU       Q 720  @ 1.60GHz | CPU 1 | 1600/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 233 GiB total, 193.302 GiB free.
D: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: Mass Storage Controller
Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Manufacturer:
Name: Mass Storage Controller
PNP Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Service:
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Broadcom 802.11n Network Adapter
Device ID: PCI\VEN_14E4&DEV_4357&SUBSYS_E021105B&REV_01\4&6267444&0&00E5
Manufacturer: Broadcom
Name: Broadcom 802.11n Network Adapter
PNP Device ID: PCI\VEN_14E4&DEV_4357&SUBSYS_E021105B&REV_01\4&6267444&0&00E5
Service: BCM43XX
.
Class GUID:
Description: FingerPrinter Reader
Device ID: USB\VID_1C7A&PID_0801\00000000000006
Manufacturer:
Name: FingerPrinter Reader
PNP Device ID: USB\VID_1C7A&PID_0801\00000000000006
Service:
.
Class GUID:
Description: PCI Simple Communications Controller
Device ID: PCI\VEN_8086&DEV_3B64&SUBSYS_038B1025&REV_06\3&11583659&0&B0
Manufacturer:
Name: PCI Simple Communications Controller
PNP Device ID: PCI\VEN_8086&DEV_3B64&SUBSYS_038B1025&REV_06\3&11583659&0&B0
Service:
.
==== System Restore Points ===================
.
RP1: 30/10/2014 3:22:24 AM - Installed O2Micro 1394 OHCI Compliant Host Controller Driver
RP2: 30/10/2014 3:23:55 AM - Installed Nuvoton CIR Device Drivers
RP3: 30/10/2014 3:24:33 AM - Installed Atheros Communications Inc.® AR81Family Gigabit/Fast¥à
RP4: 30/10/2014 3:24:59 AM - Installed TT1281 Driver
RP5: 30/10/2014 3:25:26 AM - Windows Update
RP6: 30/10/2014 4:35:35 AM - Windows Update
RP7: 30/10/2014 5:30:36 AM - Windows Update
RP8: 30/10/2014 6:20:21 AM - Windows Update
RP9: 30/10/2014 6:33:14 AM - Windows Update
.
==== Installed Programs ======================
.
Acer ePower Management
AMD APP SDK Runtime
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
ATI Catalyst Install Manager
Broadcom 802.11 Network Adapter
Catalyst Control Center
Catalyst Control Center - Branding
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
Catalyst Control Center Profiles Mobile
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Dota 2
Intel® Control Center
Intel® Rapid Storage Technology
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
Nuvoton CIR Device Drivers
O2Micro 1394 OHCI Compliant Host Controller Driver
PX Profile Update
Realtek High Definition Audio Driver
Steam
Synaptics Pointing Device Driver
TT1281 Driver
.
==== Event Viewer Messages From Past Week ========
.
30/10/2014 6:09:19 AM, Error: Service Control Manager [7034]  - The Intel® Rapid Storage Technology service terminated unexpectedly.  It has done this 1 time(s).
30/10/2014 5:05:19 AM, Error: Service Control Manager [7023]  -
30/10/2014 4:39:28 AM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
30/10/2014 4:39:28 AM, Error: Service Control Manager [7000]  - The Steam Client Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
.
==== End Of File ===========================
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 8.0.7601.17514
Run by has at 6:45:51 on 2014-10-30
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.61.1033.18.4028.642 [GMT 8:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Steam\bin\steamservice.exe
C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\_CommonRedist\DirectX\Jun2010\DXSETUP.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{1A54BF3C-1A47-4CA3-9F78-3C50DA66CBAA} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75} : DHCPNameServer = 10.0.0.138
SSODL: WebCheck - <orphaned>
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-4-7 203264]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2014-10-30 865824]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-10-30 13336]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2014-4-7 114704]
R3 hidshim;Service for HID-KMDF Shim layer;C:\Windows\System32\drivers\hidshim.sys [2009-8-31 6656]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2014-8-31 75304]
R3 nuvotonhidcir;Nuvoton HID CIR Receiver;C:\Windows\System32\drivers\nuvotonhidcir.sys [2009-8-31 26624]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-10-30 59392]
.
=============== Created Last 30 ================
.
2014-10-30 11:54:00 -------- d-----w- C:\Windows\Panther
2014-10-29 22:20:30 2620928 ----a-w- C:\Windows\System32\wucltux.dll
2014-10-29 22:20:26 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-10-29 22:20:26 33792 ----a-w- C:\Windows\SysWow64\wuapp.exe
2014-10-29 22:20:26 198600 ----a-w- C:\Windows\System32\wuwebv.dll
2014-10-29 22:20:26 179656 ----a-w- C:\Windows\SysWow64\wuwebv.dll
2014-10-29 21:30:49 -------- d-----w- C:\Windows\System32\SPReview
2014-10-29 21:30:44 -------- d-----w- C:\Windows\System32\EventProviders
2014-10-29 21:30:06 48976 ----a-w- C:\Windows\System32\netfxperf.dll
2014-10-29 21:30:06 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2014-10-29 21:30:01 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
2014-10-29 21:28:57 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2014-10-29 20:36:29 278152 ------w- C:\Windows\System32\MpSigStub.exe
2014-10-29 20:36:29 11627712 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B9F53071-BE86-4F01-B08C-4B83F5F962DE}\mpengine.dll
2014-10-29 20:35:48 -------- d-----w- C:\Windows\System32\MRT
2014-10-29 20:35:16 5562240 ----a-w- C:\Windows\System32\ntoskrnl.exe
2014-10-29 20:35:16 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2014-10-29 20:35:15 -------- d-----w- C:\Program Files (x86)\Steam
2014-10-29 20:35:14 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2014-10-29 20:35:14 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2014-10-29 20:35:13 142336 ----a-w- C:\Windows\System32\poqexec.exe
2014-10-29 20:35:13 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2014-10-29 20:33:41 -------- d-----w- C:\Users\has\AppData\Roaming\Intel Corporation
2014-10-29 20:33:13 0 ----a-w- C:\Windows\ativpsrm.bin
2014-10-29 20:27:08 -------- d-----w- C:\Program Files (x86)\AMD APP
2014-10-29 20:26:22 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2014-10-29 19:26:01 -------- d-----w- C:\Program Files\ATI Technologies
2014-10-29 19:26:00 -------- d-----w- C:\Program Files\ATI
2014-10-29 19:25:52 -------- d-----w- C:\Program Files (x86)\Cisco
2014-10-29 19:25:36 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-10-29 19:25:20 95544 ----a-w- C:\Windows\System32\bcmwlcoi.dll
2014-10-29 19:25:20 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll
2014-10-29 19:25:20 4572224 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS
2014-10-29 19:25:20 3906360 ----a-w- C:\Windows\System32\bcmihvsrv64.dll
2014-10-29 19:25:20 3572024 ----a-w- C:\Windows\System32\bcmihvui64.dll
2014-10-29 19:25:20 -------- d-----w- C:\Program Files\Broadcom
2014-10-29 19:24:53 -------- d-----w- C:\Program Files\Synaptics
2014-10-29 19:24:42 -------- d-----w- C:\Windows\SysWow64\Atheros_L1e
2014-10-29 19:24:22 -------- d-----w- C:\ProgramData\OEM
2014-10-29 19:24:14 -------- d-----w- C:\Program Files\Acer
2014-10-29 19:24:01 -------- d-----w- C:\Program Files (x86)\Nuvoton Technology Corporation
2014-10-29 19:22:49 -------- d-----w- C:\Intel
2014-10-29 19:22:48 540696 ----a-w- C:\Windows\System32\drivers\iaStor.sys
2014-10-29 19:22:32 -------- d-----w- C:\Program Files (x86)\O2Micro
2014-10-29 19:22:19 -------- d-sh--w- C:\Windows\Installer
.
==================== Find3M  ====================
.
2014-10-29 21:33:12 175616 ----a-w- C:\Windows\System32\msclmd.dll
2014-10-29 21:33:12 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
.
============= FINISH:  6:46:09.13 ===============
 



#4 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,600 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:07 AM

Posted 31 October 2014 - 05:55 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/553448 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#5 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 01 November 2014 - 04:21 PM

I do have an original windows 7 cd.

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17344
Run by has at 5:19:15 on 2014-11-02
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.61.1033.18.4028.2751 [GMT 8:00]
.
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\Macromed\Flash\FlashUtil64_15_0_0_189_ActiveX.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\System32\MsSpellCheckingFacility.exe
\\?\C:\Windows\system32\wbem\WMIADAP.EXE
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} - hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.24.0.cab
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{1A54BF3C-1A47-4CA3-9F78-3C50DA66CBAA} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75}\77C616E6D21607D223E24376 : DHCPNameServer = 192.168.1.254
SSODL: WebCheck - <orphaned>
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-4-7 203264]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2014-10-30 865824]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-10-30 13336]
R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\System32\drivers\TurboB.sys [2009-11-2 13784]
R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2014-10-30 2320920]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2014-4-7 114704]
R3 FPSensor;EgisTec-Corp Fingerprint Reader Driver (FPSensor.sys);C:\Windows\System32\drivers\FPSensor.sys [2011-9-15 36656]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2014-10-30 56344]
R3 hidshim;Service for HID-KMDF Shim layer;C:\Windows\System32\drivers\hidshim.sys [2009-8-31 6656]
R3 nuvotonhidcir;Nuvoton HID CIR Receiver;C:\Windows\System32\drivers\nuvotonhidcir.sys [2009-8-31 26624]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-10-30 111616]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2014-8-31 75304]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-10-30 59392]
S3 TurboBoost;TurboBoost;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-11-2 126352]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-10-30 1255736]
.
=============== Created Last 30 ================
.
2014-11-01 02:57:40 11627712 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2014-11-01 02:57:38 11627712 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{21027D57-9F23-4DA4-B1DA-929661212800}\mpengine.dll
2014-10-31 00:42:17 -------- d-----w- C:\Hustla
2014-10-30 21:29:49 701104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-10-30 21:29:48 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-10-30 21:29:25 -------- d-----w- C:\Users\has\AppData\Local\Adobe
2014-10-30 11:54:00 -------- d-----w- C:\Windows\Panther
2014-10-30 04:33:11 -------- d-----w- C:\Users\has\AppData\Local\Diagnostics
2014-10-30 00:28:29 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent
2014-10-30 00:28:17 56344 ----a-w- C:\Windows\System32\drivers\HECIx64.sys
2014-10-30 00:04:07 -------- d-----w- C:\Program Files (x86)\SystemRequirementsLab
2014-10-29 23:59:11 -------- d-sh--w- C:\Users\has\AppData\Local\EmieUserList
2014-10-29 23:59:11 -------- d-sh--w- C:\Users\has\AppData\Local\EmieSiteList
2014-10-29 23:52:03 -------- d-----w- C:\Windows\SysWow64\Wat
2014-10-29 23:52:03 -------- d-----w- C:\Windows\System32\Wat
2014-10-29 23:50:37 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-10-29 23:50:37 3928064 ----a-w- C:\Windows\System32\d2d1.dll
2014-10-29 23:50:37 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll
2014-10-29 23:50:37 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
2014-10-29 23:50:36 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll
2014-10-29 23:21:40 878080 ----a-w- C:\Windows\System32\advapi32.dll
2014-10-29 23:21:40 859648 ----a-w- C:\Windows\System32\tdh.dll
2014-10-29 23:21:40 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2014-10-29 23:21:40 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2014-10-29 23:21:40 1732032 ----a-w- C:\Windows\System32\ntdll.dll
2014-10-29 23:21:40 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll
2014-10-29 23:20:25 327168 ----a-w- C:\Windows\System32\mswsock.dll
2014-10-29 23:20:25 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2014-10-29 23:12:53 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2014-10-29 23:12:53 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2014-10-29 22:45:59 529424 ----a-w- C:\Windows\System32\d3dx10_37.dll
2014-10-29 22:35:53 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-10-29 22:35:53 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-10-29 22:35:53 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-10-29 22:33:31 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll
2014-10-29 22:33:31 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe
2014-10-29 22:33:31 171160 ----a-w- C:\Windows\System32\infocardapi.dll
2014-10-29 22:33:31 1389208 ----a-w- C:\Windows\System32\icardagt.exe
2014-10-29 22:33:30 8856 ----a-w- C:\Windows\SysWow64\icardres.dll
2014-10-29 22:33:30 8856 ----a-w- C:\Windows\System32\icardres.dll
2014-10-29 22:33:26 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
2014-10-29 22:33:26 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
2014-10-29 22:31:56 224256 ----a-w- C:\Windows\System32\wintrust.dll
2014-10-29 22:30:57 985536 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-10-29 22:30:57 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2014-10-29 22:30:57 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2014-10-29 22:30:57 331776 ----a-w- C:\Windows\System32\oleacc.dll
2014-10-29 22:30:57 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-10-29 22:30:57 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2014-10-29 22:30:57 144384 ----a-w- C:\Windows\System32\cdd.dll
2014-10-29 22:30:57 124112 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2014-10-29 22:30:57 102608 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2014-10-29 21:30:49 -------- d-----w- C:\Windows\System32\SPReview
2014-10-29 21:30:44 -------- d-----w- C:\Windows\System32\EventProviders
2014-10-29 21:30:06 48976 ----a-w- C:\Windows\System32\netfxperf.dll
2014-10-29 21:28:57 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2014-10-29 20:36:29 275080 ------w- C:\Windows\System32\MpSigStub.exe
2014-10-29 20:35:48 -------- d-----w- C:\Windows\System32\MRT
2014-10-29 20:35:16 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2014-10-29 20:35:15 -------- d-----w- C:\Program Files (x86)\Steam
2014-10-29 20:35:13 142336 ----a-w- C:\Windows\System32\poqexec.exe
2014-10-29 20:35:13 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2014-10-29 20:33:41 -------- d-----w- C:\Users\has\AppData\Roaming\Intel Corporation
2014-10-29 20:33:13 0 ----a-w- C:\Windows\ativpsrm.bin
2014-10-29 20:27:08 -------- d-----w- C:\Program Files (x86)\AMD APP
2014-10-29 20:26:22 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2014-10-29 19:26:01 -------- d-----w- C:\Program Files\ATI Technologies
2014-10-29 19:26:00 -------- d-----w- C:\Program Files\ATI
2014-10-29 19:25:52 -------- d-----w- C:\Program Files (x86)\Cisco
2014-10-29 19:25:20 95544 ----a-w- C:\Windows\System32\bcmwlcoi.dll
2014-10-29 19:25:20 6656 ----a-w- C:\Windows\System32\bcmwlrc.dll
2014-10-29 19:25:20 4572224 ----a-w- C:\Windows\System32\drivers\BCMWL664.SYS
2014-10-29 19:25:20 3906360 ----a-w- C:\Windows\System32\bcmihvsrv64.dll
2014-10-29 19:25:20 3572024 ----a-w- C:\Windows\System32\bcmihvui64.dll
2014-10-29 19:25:20 -------- d-----w- C:\Program Files\Broadcom
2014-10-29 19:24:53 -------- d-----w- C:\Program Files\Synaptics
2014-10-29 19:24:42 -------- d-----w- C:\Windows\SysWow64\Atheros_L1e
2014-10-29 19:24:22 -------- d-----w- C:\ProgramData\OEM
2014-10-29 19:24:14 -------- d-----w- C:\Program Files\Acer
2014-10-29 19:24:01 -------- d-----w- C:\Program Files (x86)\Nuvoton Technology Corporation
2014-10-29 19:22:49 -------- d-----w- C:\Intel
2014-10-29 19:22:48 540696 ----a-w- C:\Windows\System32\drivers\iaStor.sys
2014-10-29 19:22:32 -------- d-----w- C:\Program Files (x86)\O2Micro
2014-10-29 19:22:19 -------- d-sh--w- C:\Windows\Installer
.
==================== Find3M  ====================
.
2014-10-29 23:14:14 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-29 21:33:12 175616 ----a-w- C:\Windows\System32\msclmd.dll
2014-10-29 21:33:12 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2014-09-29 00:58:48 3198976 ----a-w- C:\Windows\System32\win32k.sys
2014-09-13 01:58:18 77312 ----a-w- C:\Windows\System32\packager.dll
2014-09-13 01:40:05 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-09-04 05:23:20 424448 ----a-w- C:\Windows\System32\rastls.dll
2014-09-04 05:04:15 372736 ----a-w- C:\Windows\SysWow64\rastls.dll
2014-08-23 02:07:00 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
.
============= FINISH:  5:19:33.05 ===============

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 30/10/2014 2:59:03 AM
System Uptime: 2/11/2014 5:14:57 AM (0 hours ago)
.
Motherboard: Acer             |  | SM83-CP        
Processor: Intel® Core™ i7 CPU       Q 720  @ 1.60GHz | CPU 1 | 1600/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 233 GiB total, 123.719 GiB free.
D: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: Mass Storage Controller
Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Manufacturer:
Name: Mass Storage Controller
PNP Device ID: PCI\VEN_1217&DEV_8130&SUBSYS_038B1025&REV_01\4&3229DDEB&0&02E4
Service:
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Atheros AR8151 PCI-E Gigabit Ethernet Controller
Device ID: PCI\VEN_1969&DEV_1073&SUBSYS_038B1025&REV_C0\4&4A9ABD1&0&00E0
Manufacturer: Atheros
Name: Atheros AR8151 PCI-E Gigabit Ethernet Controller
PNP Device ID: PCI\VEN_1969&DEV_1073&SUBSYS_038B1025&REV_C0\4&4A9ABD1&0&00E0
Service: L1C
.
==== System Restore Points ===================
.
RP7: 30/10/2014 5:30:36 AM - Windows Update
RP8: 30/10/2014 6:20:21 AM - Windows Update
RP9: 30/10/2014 6:33:14 AM - Windows Update
RP10: 30/10/2014 7:51:11 AM - Windows Update
RP11: 30/10/2014 8:27:12 AM - Installed Intel® Turbo Boost Technology Monitor
RP12: 30/10/2014 8:27:27 AM - Installed Intel® Turbo Boost Technology Monitor.
RP13: 30/10/2014 10:22:18 AM - Installed O2Micro 1394 OHCI Compliant Host Controller Driver
.
==== Installed Programs ======================
.
Acer ePower Management
Adobe Flash Player 15 ActiveX
AMD APP SDK Runtime
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver
ATI Catalyst Install Manager
Broadcom 802.11 Network Adapter
Catalyst Control Center
Catalyst Control Center - Branding
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
Catalyst Control Center Profiles Mobile
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Dota 2
Intel® Control Center
Intel® Management Engine Components
Intel® Rapid Storage Technology
Intel® Turbo Boost Technology Monitor
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
Nuvoton CIR Device Drivers
O2Micro 1394 OHCI Compliant Host Controller Driver
PX Profile Update
Realtek High Definition Audio Driver
Steam
Synaptics Pointing Device Driver
System Requirements Lab for Intel
TT1281 Driver
.
==== Event Viewer Messages From Past Week ========
.
30/10/2014 7:46:35 AM, Error: Service Control Manager [7034]  - The Intel® Rapid Storage Technology service terminated unexpectedly.  It has done this 1 time(s).
30/10/2014 5:05:19 AM, Error: Service Control Manager [7023]  -
30/10/2014 4:39:28 AM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
30/10/2014 4:39:28 AM, Error: Service Control Manager [7000]  - The Steam Client Service service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
1/11/2014 10:59:37 AM, Error: Schannel [36888]  - The following fatal alert was generated: 43. The internal error state is 252.
.
==== End Of File ===========================

 



#6 nasdaq

nasdaq

  • Malware Response Team
  • 38,753 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:07 AM

Posted 02 November 2014 - 08:50 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Nothing suspicious was found on your last DDS log.

Download the version of this tool for your operating system.
Farbar Recovery Scan Tool (64 bit)
Farbar Recovery Scan Tool (32 bit)
and save it to a folder on your computer's Desktop.
Double-click to run it. When the tool opens click Yes to disclaimer.
Press Scan button.
It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
===

Please paste the logs in your next reply DO NOT ATTACH THEM unless specified.
To attach a file select the "More Reply Option" and follow the instructions.
===

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
p.s.
If the SecurityCheck program fails to run for any reason, run it as an Administrator.

If the site is busy or not available use this mirror site:
http://www.bleepingcomputer.com/download/securitycheck/


Wait for further instructions.

#7 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 03 November 2014 - 02:35 AM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-11-2014
Ran by has at 2014-11-03 15:25:22
Running from C:\Users\has\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3002 - Acer Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Atheros Communications Inc.® AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.24 - Atheros Communications Inc.)
ATI Catalyst Install Manager (HKLM\...\{0B674B1E-1905-4830-ABD1-F6892F1C4394}) (Version: 3.0.820.0 - ATI Technologies, Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.100.57.8 - Broadcom Corporation)
Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - Valve)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
Intel® Turbo Boost Technology Monitor (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.186.6 - Intel)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Nuvoton CIR Device Drivers (HKLM-x32\...\{FBC79D04-051E-4367-8051-1DB0C893FBE0}) (Version: 8.60.2002 - Nuvoton Technology Corporation)
O2Micro 1394 OHCI Compliant Host Controller Driver (HKLM-x32\...\InstallShield_{4A1D333E-557E-46A6-A4A7-5F8FBC862D49}) (Version: 1.0.00 - O2Micro International LTD.)
O2Micro 1394 OHCI Compliant Host Controller Driver (HKLM-x32\...\InstallShield_{AFC44A23-E6A8-4625-B6B1-23D438525D59}) (Version: 1.0.00 - O2Micro International LTD.)
O2Micro 1394 OHCI Compliant Host Controller Driver (Version: 1.0.00 - O2Micro International LTD.) Hidden
O2Micro 1394 OHCI Compliant Host Controller Driver (x32 Version: 1.0.00 - O2Micro International LTD.) Hidden
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6072 - Realtek Semiconductor Corp.)
Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.104 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.12.2 - Synaptics Incorporated)
System Requirements Lab for Intel (HKLM-x32\...\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}) (Version: 4.5.24.0 - Husdawg, LLC)
TT1281 Driver (HKLM-x32\...\{99B364F5-8051-4118-BFAA-FF466F151748}) (Version: 1.0.0.16 - LITEON)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

==================== Restore Points  =========================

29-10-2014 21:30:36 Windows Update
29-10-2014 22:20:21 Windows Update
29-10-2014 22:33:14 Windows Update
29-10-2014 23:51:11 Windows Update
30-10-2014 00:27:12 Installed Intel® Turbo Boost Technology Monitor
30-10-2014 00:27:27 Installed Intel® Turbo Boost Technology Monitor.
30-10-2014 02:22:18 Installed O2Micro 1394 OHCI Compliant Host Controller Driver

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 10:34 - 2009-06-11 05:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

==================== Loaded Modules (whitelisted) =============

2014-10-30 04:39 - 2014-08-22 02:15 - 01171456 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-10-30 04:39 - 2014-08-22 02:15 - 00442368 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-10-30 04:39 - 2014-08-22 02:15 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-10-30 04:39 - 2014-10-02 07:16 - 00774656 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2014-10-30 04:39 - 2014-10-22 03:22 - 02226880 _____ () C:\Program Files (x86)\Steam\video.dll
2014-10-30 04:39 - 2014-08-22 02:15 - 00403968 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-10-30 04:39 - 2014-08-22 02:15 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2014-10-30 04:39 - 2014-10-22 03:22 - 00682176 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2014-10-30 04:39 - 2014-09-05 07:29 - 34589376 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2014-10-30 08:36 - 2014-10-30 08:36 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll
2014-10-30 03:22 - 2010-03-03 19:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

========================= Accounts: ==========================

Administrator (S-1-5-21-1290420604-3877820055-1189906582-500 - Administrator - Disabled)
Guest (S-1-5-21-1290420604-3877820055-1189906582-501 - Limited - Disabled)
has (S-1-5-21-1290420604-3877820055-1189906582-1000 - Administrator - Enabled) => C:\Users\has

==================== Faulty Device Manager Devices =============

Name: Mass Storage Controller
Description: Mass Storage Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Atheros AR8151 PCI-E Gigabit Ethernet Controller
Description: Atheros AR8151 PCI-E Gigabit Ethernet Controller
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

==================== Event log errors: =========================

Application errors:
==================
Error: (10/30/2014 11:01:32 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: Acquisition of genuine ticket failed (hr=0x80072EE7) for template Id 66c92734-d682-4d71-983e-d6ec3f16059f

Error: (10/30/2014 11:01:32 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EE7

Error: (10/30/2014 07:46:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 9.6.0.1014, time stamp: 0x4b8f244b
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x755e71fc
Faulting process id: 0x890
Faulting application start time: 0xIAStorDataMgrSvc.exe0
Faulting application path: IAStorDataMgrSvc.exe1
Faulting module path: IAStorDataMgrSvc.exe2
Report Id: IAStorDataMgrSvc.exe3

Error: (10/30/2014 06:09:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 9.6.0.1014, time stamp: 0x4b8f244b
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x747d6cc4
Faulting process id: 0xfc0
Faulting application start time: 0xIAStorDataMgrSvc.exe0
Faulting application path: IAStorDataMgrSvc.exe1
Faulting module path: IAStorDataMgrSvc.exe2
Report Id: IAStorDataMgrSvc.exe3

Error: (10/30/2014 00:57:49 AM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Installation of the Proof of Purchase failed. 0xC004F050
Partial Pkey=F9VTC
ACID=?
Detailed Error[?]

System errors:
=============
Error: (11/03/2014 09:15:22 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/02/2014 10:54:20 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/02/2014 09:06:07 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/02/2014 04:55:12 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (11/02/2014 02:21:22 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/02/2014 09:30:43 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/02/2014 05:22:40 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/01/2014 11:30:38 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/01/2014 07:38:10 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (11/01/2014 01:34:11 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Microsoft Office Sessions:
=========================
Error: (10/30/2014 11:01:32 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: hr=0x80072EE766c92734-d682-4d71-983e-d6ec3f16059f

Error: (10/30/2014 11:01:32 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0x80072EE700010001(0x00000000, 11:01:32:634 - http://go.microsoft.com/fwlink/?LinkId=151642)
00020001(0x00000000, 11:01:32:634)
00030001(0x00000000, 11:01:32:634 - http://go.microsoft.com)
00030002(0x00000000, 11:01:32:634 - 0)
00040001(0x00000000, 11:01:32:634 - http://go.microsoft.com)
00040002(0x00000000, 11:01:32:634 - 1, <NULL>, <NULL>, <NULL>)
00040004(0x80072F94, 11:01:32:634 - <NULL>)
00040006(0x00000000, 11:01:32:634 - 1, http://go.microsoft.com, <NULL>, <local>)
00020005(0x00000000, 11:01:32:634 - 0)
00020007(0x80072EE7, 11:01:32:634)
00010002(0x80072EE7, 11:01:32:634 - <NULL>)
00010003(0x80072EE7, 11:01:32:634)

Error: (10/30/2014 07:46:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: IAStorDataMgrSvc.exe9.6.0.10144b8f244bunknown0.0.0.000000000c0000005755e71fc89001cff3c559ebdd23C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeunknownd094b7ce-5fc5-11e4-a119-c80aa9907fde

Error: (10/30/2014 06:09:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: IAStorDataMgrSvc.exe9.6.0.10144b8f244bunknown0.0.0.000000000c0000005747d6cc4fc001cff3bc5310c29eC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeunknown39b5d850-5fb8-11e4-a7b1-c80aa9907fde

Error: (10/30/2014 00:57:49 AM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: 0xC004F050F9VTC??

CodeIntegrity Errors:
===================================
  Date: 2014-11-03 14:45:08.466
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-03 08:41:55.973
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-03 07:24:45.735
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 22:09:24.468
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 19:54:13.785
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 19:47:35.968
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 18:51:40.545
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 17:03:36.299
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 15:01:53.838
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-02 14:59:26.930
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.



#8 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 03 November 2014 - 02:38 AM

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-11-2014
Ran by has (administrator) on HAS-PC on 03-11-2014 15:24:49
Running from C:\Users\has\Desktop
Loaded Profile: has (Available profiles: has)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Intel® Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_15_0_0_189_ActiveX.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10134560 2010-03-19] (Realtek Semiconductor)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [860192 2010-02-05] (Acer Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2107688 2010-04-14] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-03] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-06-13] (Advanced Micro Devices, Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-10-30] (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/en-au/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x2A0937FAFDF6CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AU
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.24.0.cab
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File

Chrome:
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 hidshim; C:\Windows\System32\DRIVERS\hidshim.sys [6656 2009-08-31] (Windows ® Win 7 DDK provider)
R3 nuvotonhidcir; C:\Windows\System32\DRIVERS\nuvotonhidcir.sys [26624 2009-08-31] (Nuvoton Technology Corporation)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13784 2009-11-02] ()

========================== Drivers MD5 =======================

C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit
C:\Windows\system32\drivers\afd.sys FA886682CFC5D36718D3E436AACF10B9
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\atikmdag.sys 046E2912A515A16DD6832371E573FF0C
C:\Windows\System32\DRIVERS\atikmpag.sys B618489ABAE5F112BAFFAF6B077ADC54
C:\Windows\system32\DRIVERS\amdppm.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdsata.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\drivers\amdxata.sys ==> MD5 is legit
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\System32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\System32\drivers\AtihdW76.sys CBD14F698DEF12EE3557604B726CB8EB
C:\Windows\system32\DRIVERS\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bcmwl664.sys A8AA5B6543955BA68CD3EAA2D0112F00
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\cdrom.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys EBF28856F69CF094A902F884CF989706
C:\Windows\System32\DRIVERS\compbatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\disk.sys ==> MD5 is legit
C:\Windows\system32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\drivers\dxgkrnl.sys 87CE5C8965E101CCCED1F4675557E868
C:\Windows\system32\DRIVERS\evbda.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\Drivers\FPSensor.sys D0DB8215A1508D367481783CBE196D5B
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\system32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\HECIx64.sys B6AC71AAA2B10848F57FC49D55A651AF
C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidshim.sys F44381F466CFCEE8E850DE6BBFA43FE2
C:\Windows\system32\drivers\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\system32\drivers\i8042prt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\iaStor.sys ABBF174CB394F5C437410A788B7E404A
C:\Windows\system32\drivers\iaStorV.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit
C:\Windows\System32\drivers\RTKVHD64.sys A73CC9BD3A7236E686BE6667F0106C16
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\kbdclass.sys ==> MD5 is legit
C:\Windows\system32\drivers\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\ksecdd.sys 353009DEDF918B2A51414F330CF72DEC
C:\Windows\System32\Drivers\ksecpkg.sys 1C2D8E18AA8FD50CD04C15CC27F7F5AB
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\L1C62x64.sys 6E0698CEA0901FD1A2B9CE0859E2D8FE
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\system32\drivers\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mrxdav.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\System32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\Windows\System32\drivers\ndis.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Npfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys B98F8C6E31CD07B2E6F71F7F648E38C0
C:\Windows\System32\Drivers\Null.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nuvotonhidcir.sys 05416052F584E7488DCE7F6BCE4E75A1
C:\Windows\system32\drivers\nvraid.sys ==> MD5 is legit
C:\Windows\system32\drivers\nvstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RDPWD.sys FE571E088C2D83619D2D48D4E961BF41
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\system32\drivers\sdbus.sys 111E0EBC0AD79CB0FA014B907B231CF0
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serenum.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\serial.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit
C:\Windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\SynTP.sys 9504FAC3BB8A14861BB2D6C741AAF9C8
C:\Windows\System32\drivers\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\DRIVERS\tcpip.sys 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E
C:\Windows\System32\drivers\tcpipreg.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys E232A3B43A894BB327FC161529BD9ED1
C:\Windows\System32\drivers\tsusbflt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\TurboB.sys 825E7A1F48FB8BCFBA27C178AAB4E275
C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\system32\drivers\umbus.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbccgp.sys DCA68B0943D6FA415F0C56C92158A83A
C:\Windows\system32\drivers\usbcir.sys 80B0F7D5CCF86CEB5D402EAAF61FEC31
C:\Windows\system32\drivers\usbehci.sys 18A85013A3E0F7E1755365D287443965
C:\Windows\System32\DRIVERS\usbhub.sys 8D1196CFBB223621F2C67D45710F25BA
C:\Windows\system32\drivers\usbohci.sys 765A92D428A8DB88B960DA5A8D6089DC
C:\Windows\system32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\Windows\system32\drivers\USBSTOR.SYS ==> MD5 is legit
C:\Windows\system32\drivers\usbuhci.sys DD253AFC3BC6CBA412342DE60C3647F3
C:\Windows\System32\Drivers\usbvideo.sys 1F775DA4CF1A3A1834207E975A72E9D7
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwifibus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vwififlt.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\DRIVERS\wd.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys E2C933EDBC389386EBE6D2BA953F43D8
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWOW64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\drivers\WudfPf.sys ==> MD5 is legit

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-03 15:24 - 2014-11-03 15:24 - 00854448 _____ () C:\Users\has\Downloads\SecurityCheck.exe
2014-11-03 15:24 - 2014-11-03 15:24 - 00019726 _____ () C:\Users\has\Desktop\FRST.txt
2014-11-03 15:23 - 2014-11-03 15:23 - 00000000 ____D () C:\Users\has\Desktop\FRST-OlderVersion
2014-11-02 22:07 - 2014-11-03 15:24 - 00000000 ____D () C:\FRST
2014-11-02 22:07 - 2014-11-03 15:23 - 02114560 _____ (Farbar) C:\Users\has\Desktop\FRST64.exe
2014-11-02 19:47 - 2014-11-02 21:06 - 00000000 ____D () C:\Users\has\AppData\Roaming\Skype
2014-11-02 19:47 - 2014-11-02 19:47 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-11-02 19:47 - 2014-11-02 19:47 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-11-02 19:47 - 2014-11-02 19:47 - 00000000 ____D () C:\Users\has\AppData\Local\Skype
2014-11-02 19:47 - 2014-11-02 19:47 - 00000000 ____D () C:\ProgramData\Skype
2014-11-02 19:47 - 2014-11-02 19:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-02 08:09 - 2014-11-02 20:17 - 00000228 _____ () C:\Users\has\Desktop\t.txt
2014-11-02 05:18 - 2014-11-02 05:19 - 00688992 ____R (Swearware) C:\Users\has\Downloads\dds (1).com
2014-10-31 08:42 - 2014-10-31 09:24 - 00000000 ____D () C:\Hustla
2014-10-31 05:29 - 2014-10-31 05:29 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-31 05:29 - 2014-10-31 05:29 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-31 05:29 - 2014-10-31 05:29 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-10-31 05:29 - 2014-10-31 05:29 - 00000000 ____D () C:\Windows\system32\Macromed
2014-10-31 05:29 - 2014-10-31 05:29 - 00000000 ____D () C:\Users\has\AppData\Roaming\Macromedia
2014-10-31 05:29 - 2014-10-31 05:29 - 00000000 ____D () C:\Users\has\AppData\Local\Adobe
2014-10-30 19:54 - 2014-10-30 02:59 - 00000000 ____D () C:\Windows\Panther
2014-10-30 08:28 - 2009-09-17 12:54 - 00056344 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys
2014-10-30 08:27 - 2014-10-30 08:27 - 00003230 _____ () C:\Windows\System32\Tasks\SidebarExecute
2014-10-30 08:27 - 2014-10-30 08:27 - 00000000 ____D () C:\Program Files\Intel
2014-10-30 08:11 - 2014-10-30 08:11 - 54011058 _____ () C:\Users\has\Downloads\MEI_allOS_1.5M_8.1.40.1416.zip
2014-10-30 08:04 - 2014-10-30 08:04 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-10-30 07:59 - 2014-10-30 07:59 - 00000000 __SHD () C:\Users\has\AppData\Local\EmieUserList
2014-10-30 07:59 - 2014-10-30 07:59 - 00000000 __SHD () C:\Users\has\AppData\Local\EmieSiteList
2014-10-30 07:50 - 2014-09-19 09:18 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-30 07:50 - 2013-12-25 07:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-10-30 07:50 - 2013-12-25 06:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-10-30 07:50 - 2013-11-26 16:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-10-30 07:50 - 2013-11-23 06:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-10-30 07:47 - 2014-10-30 07:47 - 00000000 ____D () C:\Users\has\AppData\Roaming\Adobe
2014-10-30 07:28 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-10-30 07:23 - 2014-10-30 07:23 - 23631360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 13619200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 05829632 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 02796032 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-10-30 07:23 - 2014-10-30 07:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-10-30 07:23 - 2014-10-30 07:23 - 02309632 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 02108416 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-10-30 07:23 - 2014-10-30 07:23 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-10-30 07:23 - 2014-10-30 07:23 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00731136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-10-30 07:23 - 2014-10-30 07:23 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-10-30 07:23 - 2014-10-30 07:23 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-10-30 07:23 - 2014-10-30 07:23 - 00378552 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-10-30 07:23 - 2014-10-30 07:23 - 00331448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-10-30 07:23 - 2014-10-30 07:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-10-30 07:23 - 2014-10-30 07:23 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-10-30 07:23 - 2014-10-30 07:23 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-10-30 07:23 - 2014-10-30 07:23 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-10-30 07:21 - 2014-10-30 07:21 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-10-30 07:20 - 2014-10-30 07:20 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-10-30 07:20 - 2014-10-30 07:20 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-30 07:14 - 2014-10-30 07:14 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-10-30 07:12 - 2014-10-30 07:28 - 00013754 _____ () C:\Windows\IE11_main.log
2014-10-30 07:12 - 2014-10-30 07:12 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-10-30 07:12 - 2014-10-30 07:12 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-10-30 06:46 - 2014-11-02 05:19 - 00012950 _____ () C:\Users\has\Desktop\dds.txt
2014-10-30 06:46 - 2014-11-02 05:19 - 00003960 _____ () C:\Users\has\Desktop\attach.txt
2014-10-30 06:46 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-10-30 06:46 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-10-30 06:46 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-10-30 06:46 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-10-30 06:46 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-10-30 06:46 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-10-30 06:46 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-10-30 06:46 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-10-30 06:46 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-10-30 06:46 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-10-30 06:46 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-10-30 06:46 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-10-30 06:46 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-10-30 06:46 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-10-30 06:46 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-10-30 06:46 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-10-30 06:46 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-10-30 06:46 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-10-30 06:46 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-10-30 06:46 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-10-30 06:46 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-10-30 06:46 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-10-30 06:46 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-10-30 06:46 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-10-30 06:46 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-10-30 06:46 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-10-30 06:46 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-10-30 06:46 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-10-30 06:46 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-10-30 06:46 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-10-30 06:46 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-10-30 06:46 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-10-30 06:46 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-10-30 06:46 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-10-30 06:46 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-10-30 06:46 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-10-30 06:46 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-10-30 06:46 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-10-30 06:45 - 2014-10-30 06:45 - 00688992 ____R (Swearware) C:\Users\has\Downloads\dds.com
2014-10-30 06:45 - 2014-10-30 06:45 - 00009895 _____ () C:\Windows\DirectX.log
2014-10-30 06:45 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-10-30 06:45 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-10-30 06:45 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-10-30 06:45 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-10-30 06:45 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-10-30 06:45 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-10-30 06:45 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-10-30 06:45 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-10-30 06:45 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-10-30 06:45 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-10-30 06:45 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-10-30 06:45 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-10-30 06:45 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-10-30 06:45 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-10-30 06:45 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-10-30 06:45 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-10-30 06:45 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-10-30 06:45 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-10-30 06:45 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-10-30 06:45 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-10-30 06:45 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-10-30 06:45 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-10-30 06:45 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-10-30 06:45 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-10-30 06:45 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-10-30 06:45 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-10-30 06:45 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-10-30 06:45 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-10-30 06:45 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-10-30 06:45 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-10-30 06:45 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-10-30 06:45 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-10-30 06:45 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-10-30 06:45 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-10-30 06:45 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-10-30 06:45 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-10-30 06:45 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-10-30 06:45 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-10-30 06:45 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-10-30 06:45 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-10-30 06:45 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-10-30 06:45 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-10-30 06:45 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-10-30 06:45 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-10-30 06:45 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-10-30 06:45 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-10-30 06:45 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-10-30 06:45 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-10-30 06:45 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-10-30 06:45 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-10-30 06:45 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-10-30 06:45 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-10-30 06:45 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-10-30 06:45 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-10-30 06:45 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-10-30 06:45 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-10-30 06:45 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-10-30 06:45 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-10-30 06:45 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-10-30 06:45 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-10-30 06:45 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-10-30 06:45 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-10-30 06:45 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-10-30 06:45 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-10-30 06:45 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-10-30 06:45 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-10-30 06:45 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-10-30 06:45 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-10-30 06:45 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-10-30 06:45 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-10-30 06:45 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-10-30 06:45 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-10-30 06:45 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-10-30 06:45 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-10-30 06:45 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-10-30 06:45 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-10-30 06:45 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-10-30 06:45 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-10-30 06:45 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-10-30 06:45 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-10-30 06:45 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-10-30 06:45 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-10-30 06:35 - 2012-03-01 14:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-10-30 06:35 - 2012-03-01 14:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-10-30 06:35 - 2012-03-01 13:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-10-30 06:33 - 2014-07-01 06:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-10-30 06:33 - 2014-07-01 06:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-10-30 06:33 - 2014-06-06 14:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-10-30 06:33 - 2014-06-06 14:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-10-30 06:33 - 2014-03-10 05:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-10-30 06:33 - 2014-03-10 05:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-10-30 06:33 - 2014-03-10 05:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-10-30 06:33 - 2014-03-10 05:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-10-30 06:32 - 2014-06-18 10:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-10-30 06:32 - 2014-06-18 09:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-10-30 06:32 - 2014-04-25 10:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-10-30 06:32 - 2014-04-25 10:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-10-30 06:32 - 2014-04-05 10:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-10-30 06:32 - 2014-04-05 10:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-10-30 06:32 - 2014-03-26 22:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-10-30 06:32 - 2014-03-26 22:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-10-30 06:32 - 2014-03-26 22:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-10-30 06:32 - 2014-03-26 22:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-10-30 06:32 - 2014-03-26 22:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-10-30 06:32 - 2014-03-26 22:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-10-30 06:32 - 2014-03-26 22:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-10-30 06:32 - 2014-03-26 22:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-10-30 06:32 - 2014-03-25 10:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-10-30 06:32 - 2014-03-25 10:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-10-30 06:32 - 2014-03-04 17:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-10-30 06:32 - 2014-03-04 17:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-10-30 06:32 - 2014-03-04 17:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-10-30 06:32 - 2014-03-04 17:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-10-30 06:32 - 2014-03-04 17:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-10-30 06:32 - 2014-03-04 17:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-10-30 06:32 - 2014-03-04 17:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-10-30 06:32 - 2014-03-04 17:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-10-30 06:32 - 2014-03-04 17:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-10-30 06:32 - 2014-03-04 17:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-10-30 06:32 - 2014-03-04 17:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-10-30 06:32 - 2014-03-04 17:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-10-30 06:32 - 2014-03-04 17:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-10-30 06:32 - 2014-03-04 17:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-10-30 06:32 - 2014-01-29 10:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-10-30 06:32 - 2014-01-29 10:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-10-30 06:32 - 2013-11-26 19:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-10-30 06:32 - 2013-10-19 10:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-10-30 06:32 - 2013-10-19 09:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-10-30 06:32 - 2013-10-06 04:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-10-30 06:32 - 2013-10-06 03:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-10-30 06:32 - 2013-10-04 10:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-10-30 06:32 - 2013-10-04 09:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-10-30 06:32 - 2013-08-02 10:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-10-30 06:32 - 2013-08-02 10:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-10-30 06:32 - 2013-08-02 09:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-10-30 06:32 - 2013-08-02 08:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-10-30 06:32 - 2013-07-25 17:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-10-30 06:32 - 2013-07-25 16:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-10-30 06:32 - 2013-07-12 18:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2014-10-30 06:32 - 2013-07-12 18:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-10-30 06:32 - 2013-07-09 13:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-10-30 06:32 - 2013-07-09 13:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-10-30 06:32 - 2013-07-09 12:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-10-30 06:32 - 2013-07-09 12:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-10-30 06:32 - 2013-07-04 20:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-10-30 06:32 - 2013-07-04 19:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-10-30 06:32 - 2013-07-03 12:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-10-30 06:32 - 2013-07-03 12:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-10-30 06:32 - 2013-06-06 13:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-10-30 06:32 - 2013-06-06 13:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-10-30 06:32 - 2013-06-06 13:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-10-30 06:32 - 2013-06-06 13:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-10-30 06:32 - 2013-06-06 12:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-10-30 06:32 - 2013-06-06 12:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-10-30 06:32 - 2013-06-06 12:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-10-30 06:32 - 2013-06-06 11:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-10-30 06:32 - 2013-06-06 11:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-10-30 06:32 - 2013-06-06 11:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-10-30 06:32 - 2013-04-12 22:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-10-30 06:32 - 2013-02-12 12:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-10-30 06:32 - 2012-11-02 13:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-10-30 06:32 - 2012-11-02 13:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2014-10-30 06:32 - 2011-11-17 14:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-10-30 06:32 - 2011-11-17 13:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-10-30 06:32 - 2011-10-26 13:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-10-30 06:32 - 2011-10-26 13:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-30 06:32 - 2011-10-26 12:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-10-30 06:32 - 2011-10-26 12:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-30 06:32 - 2011-06-15 18:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-10-30 06:32 - 2011-06-15 18:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-10-30 06:32 - 2011-06-15 18:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-10-30 06:32 - 2011-06-15 18:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-10-30 06:32 - 2011-06-15 16:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-10-30 06:32 - 2011-06-15 16:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-10-30 06:32 - 2011-06-15 16:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-10-30 06:32 - 2011-06-15 16:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-10-30 06:32 - 2011-06-15 16:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-10-30 06:32 - 2011-03-11 14:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-10-30 06:32 - 2011-03-11 14:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-10-30 06:32 - 2011-03-11 13:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2014-10-30 06:32 - 2011-03-11 13:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2014-10-30 06:32 - 2011-03-03 14:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-10-30 06:32 - 2011-03-03 14:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-10-30 06:32 - 2011-03-03 14:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-10-30 06:32 - 2011-03-03 13:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-10-30 06:32 - 2011-03-03 13:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2014-10-30 06:32 - 2010-12-23 18:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-10-30 06:32 - 2010-12-23 18:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-10-30 06:32 - 2010-12-23 18:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-10-30 06:32 - 2010-12-23 13:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-10-30 06:32 - 2010-12-23 13:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-10-30 06:32 - 2010-12-23 13:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-10-30 06:31 - 2014-09-29 08:58 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-30 06:31 - 2014-07-17 10:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-30 06:31 - 2014-07-17 10:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-10-30 06:31 - 2014-07-17 10:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-10-30 06:31 - 2014-07-17 10:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-30 06:31 - 2014-07-17 10:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-30 06:31 - 2014-07-17 10:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-30 06:31 - 2014-07-17 10:07 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-10-30 06:31 - 2014-07-17 10:07 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-10-30 06:31 - 2014-07-17 09:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-30 06:31 - 2014-07-17 09:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-30 06:31 - 2014-07-17 09:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-10-30 06:31 - 2014-07-17 09:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-10-30 06:31 - 2014-07-17 09:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-10-30 06:31 - 2014-07-17 09:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-10-30 06:31 - 2014-07-17 09:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-30 06:31 - 2014-07-17 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-30 06:31 - 2014-07-07 10:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-10-30 06:31 - 2014-07-07 10:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-10-30 06:31 - 2014-07-07 09:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-10-30 06:31 - 2014-07-07 09:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-10-30 06:31 - 2014-07-07 09:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-30 06:31 - 2014-06-19 06:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-30 06:31 - 2014-06-06 18:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-10-30 06:31 - 2014-06-06 17:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-10-30 06:31 - 2014-06-03 18:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-10-30 06:31 - 2014-06-03 18:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-10-30 06:31 - 2014-06-03 18:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-10-30 06:31 - 2014-06-03 18:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-10-30 06:31 - 2014-06-03 17:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-10-30 06:31 - 2014-06-03 17:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-10-30 06:31 - 2014-06-03 17:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-10-30 06:31 - 2014-05-30 16:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-10-30 06:31 - 2014-05-30 16:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-10-30 06:31 - 2014-05-30 16:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-10-30 06:31 - 2014-05-30 16:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-10-30 06:31 - 2014-05-30 15:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-10-30 06:31 - 2014-05-30 15:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-10-30 06:31 - 2014-05-30 15:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-10-30 06:31 - 2014-05-30 15:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-10-30 06:31 - 2014-05-30 14:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-10-30 06:31 - 2014-04-12 10:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-10-30 06:31 - 2014-04-12 10:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-10-30 06:31 - 2014-04-12 10:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-10-30 06:31 - 2014-04-12 10:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-10-30 06:31 - 2014-04-12 10:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-10-30 06:31 - 2014-04-12 10:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-10-30 06:31 - 2013-11-27 09:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-10-30 06:31 - 2013-11-27 09:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-10-30 06:31 - 2013-07-26 10:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-10-30 06:31 - 2013-07-26 09:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-10-30 06:31 - 2013-07-09 13:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-10-30 06:31 - 2013-07-09 12:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-10-30 06:31 - 2013-07-04 20:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-10-30 06:31 - 2013-06-26 06:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-10-30 06:31 - 2013-05-13 13:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-10-30 06:31 - 2013-05-13 11:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-10-30 06:31 - 2013-05-13 11:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-10-30 06:31 - 2013-05-13 11:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-10-30 06:31 - 2013-02-27 13:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-10-30 06:31 - 2013-02-15 14:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-10-30 06:31 - 2013-02-15 14:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-10-30 06:31 - 2013-02-15 11:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-10-30 06:31 - 2012-11-29 06:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-10-30 06:31 - 2012-11-29 06:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-10-30 06:31 - 2012-11-29 06:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-10-30 06:31 - 2012-04-26 13:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-10-30 06:31 - 2012-04-26 13:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-10-30 06:31 - 2012-03-17 15:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-10-30 06:31 - 2011-10-15 14:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-10-30 06:31 - 2011-10-15 13:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2014-10-30 06:31 - 2011-08-17 13:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-10-30 06:31 - 2011-08-17 13:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-10-30 06:31 - 2011-08-17 12:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2014-10-30 06:31 - 2011-08-17 12:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2014-10-30 06:31 - 2011-07-09 10:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-10-30 06:31 - 2011-04-29 11:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-10-30 06:31 - 2011-04-29 11:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-10-30 06:31 - 2011-04-29 11:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-10-30 06:31 - 2011-04-27 10:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-10-30 06:31 - 2011-04-27 10:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-10-30 06:30 - 2014-06-16 10:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-10-30 06:30 - 2013-07-20 18:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-30 06:30 - 2013-07-20 18:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-30 06:30 - 2013-04-10 14:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-10-30 06:30 - 2011-08-27 13:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-10-30 06:30 - 2011-08-27 13:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-10-30 06:30 - 2011-08-27 12:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-10-30 06:30 - 2011-08-27 12:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2014-10-30 06:30 - 2011-02-03 19:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-10-30 06:28 - 2012-06-06 14:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-10-30 06:28 - 2012-06-06 13:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2014-10-30 06:27 - 2014-09-13 09:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-10-30 06:27 - 2014-09-13 09:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-10-30 06:27 - 2014-09-04 13:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-30 06:27 - 2014-09-04 13:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-30 06:27 - 2014-08-23 10:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-10-30 06:27 - 2014-08-23 09:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-10-30 06:27 - 2014-07-14 10:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-10-30 06:27 - 2014-07-14 09:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-10-30 06:27 - 2014-03-04 17:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-10-30 06:27 - 2014-03-04 17:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-10-30 06:27 - 2014-03-04 17:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-10-30 06:27 - 2014-03-04 17:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-10-30 06:27 - 2014-03-04 17:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-10-30 06:27 - 2014-03-04 17:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-10-30 06:27 - 2014-03-04 17:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-10-30 06:27 - 2014-03-04 17:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-10-30 06:27 - 2014-03-04 17:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-10-30 06:27 - 2014-03-04 16:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-10-30 06:27 - 2014-03-04 16:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-10-30 06:27 - 2013-10-12 10:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-10-30 06:27 - 2013-10-12 10:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-10-30 06:27 - 2013-10-12 10:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-10-30 06:27 - 2013-10-12 10:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-10-30 06:27 - 2013-10-12 10:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-10-30 06:27 - 2013-10-12 10:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-10-30 06:27 - 2013-10-12 10:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-10-30 06:27 - 2013-10-12 10:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-10-30 06:27 - 2013-10-12 10:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-10-30 06:27 - 2013-10-12 09:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-10-30 06:27 - 2013-10-12 09:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-10-30 06:27 - 2013-10-12 09:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-10-30 06:27 - 2013-10-12 09:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-10-30 06:27 - 2013-08-02 10:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 10:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 09:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-10-30 06:27 - 2013-08-02 08:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 08:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 08:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-10-30 06:27 - 2013-08-02 08:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-10-30 06:27 - 2013-04-26 13:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-10-30 06:27 - 2013-04-26 12:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-10-30 06:27 - 2012-11-23 11:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-10-30 06:27 - 2012-09-26 06:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2014-10-30 06:27 - 2012-09-26 06:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-10-30 06:27 - 2012-07-05 06:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-10-30 06:27 - 2012-07-05 06:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-10-30 06:27 - 2012-07-05 06:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-10-30 06:27 - 2012-07-05 05:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2014-10-30 06:27 - 2012-07-05 05:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2014-10-30 06:27 - 2012-05-14 13:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-10-30 06:27 - 2012-02-17 14:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-10-30 06:27 - 2012-02-17 13:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-10-30 06:27 - 2012-02-17 12:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-10-30 06:27 - 2011-12-16 16:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-10-30 06:27 - 2011-12-16 15:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2014-10-30 06:27 - 2011-05-24 19:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-10-30 06:27 - 2011-05-24 18:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2014-10-30 06:27 - 2011-05-24 18:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2014-10-30 06:27 - 2011-05-24 18:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2014-10-30 06:27 - 2011-05-24 18:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2014-10-30 06:27 - 2011-05-03 13:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-10-30 06:27 - 2011-05-03 12:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-10-30 06:27 - 2011-02-23 12:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-10-30 06:27 - 2011-02-12 19:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-10-30 06:27 - 2011-02-06 01:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-10-30 06:27 - 2011-02-06 01:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2014-10-30 06:27 - 2011-02-06 01:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2014-10-30 06:27 - 2011-02-06 01:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll
2014-10-30 06:27 - 2011-02-06 01:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-10-30 06:27 - 2011-02-06 01:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-10-30 06:27 - 2011-02-06 01:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-10-30 06:20 - 2014-05-15 00:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-10-30 06:20 - 2014-05-15 00:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-10-30 06:20 - 2014-05-15 00:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-10-30 06:20 - 2014-05-15 00:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-10-30 06:20 - 2014-05-15 00:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-10-30 06:20 - 2014-05-15 00:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-10-30 06:20 - 2014-05-15 00:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-10-30 06:20 - 2014-05-15 00:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-10-30 06:20 - 2014-05-15 00:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-10-30 06:20 - 2014-05-15 00:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-10-30 06:20 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-10-30 06:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-10-30 06:20 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-10-30 06:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-10-30 05:30 - 2014-10-30 05:30 - 00000000 ____D () C:\Windows\system32\SPReview
2014-10-30 05:30 - 2014-10-30 05:30 - 00000000 ____D () C:\Windows\system32\EventProviders
2014-10-30 05:30 - 2010-11-05 09:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-10-30 05:29 - 2010-11-20 21:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2014-10-30 05:29 - 2010-11-20 21:44 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2014-10-30 05:29 - 2010-11-20 21:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2014-10-30 05:29 - 2010-11-20 21:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2014-10-30 05:29 - 2010-11-20 21:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2014-10-30 05:29 - 2010-11-20 21:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2014-10-30 05:29 - 2010-11-20 21:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2014-10-30 05:29 - 2010-11-20 21:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-10-30 05:29 - 2010-11-20 21:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2014-10-30 05:29 - 2010-11-20 21:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-10-30 05:29 - 2010-11-20 21:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2014-10-30 05:29 - 2010-11-20 21:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2014-10-30 05:29 - 2010-11-20 21:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2014-10-30 05:29 - 2010-11-20 21:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2014-10-30 05:29 - 2010-11-20 21:32 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-10-30 05:29 - 2010-11-20 21:32 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-10-30 05:29 - 2010-11-20 21:32 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-10-30 05:29 - 2010-11-20 21:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2014-10-30 05:29 - 2010-11-20 21:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2014-10-30 05:29 - 2010-11-20 21:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2014-10-30 05:29 - 2010-11-20 21:28 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-10-30 05:29 - 2010-11-20 21:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 14633472 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2014-10-30 05:29 - 2010-11-20 21:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02314752 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02146816 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 02018304 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01911808 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01672704 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2014-10-30 05:29 - 2010-11-20 21:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2014-10-30 05:29 - 2010-11-20 21:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2014-10-30 05:29 - 2010-11-20 21:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00898560 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2014-10-30 05:29 - 2010-11-20 21:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll

 Results of screen317's Security Check version 0.99.89 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
````````Process Check: objlist.exe by Laurent```````` 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````
 

 Results of screen317's Security Check version 0.99.89 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
````````Process Check: objlist.exe by Laurent```````` 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````
 



#9 nasdaq

nasdaq

  • Malware Response Team
  • 38,753 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:07 AM

Posted 03 November 2014 - 10:47 AM

The logs are clean.

Reset your router. It may be infected.

How to Reset a Router Back to the Factory Default Settings
http://www.ehow.com/how_2110924_reset-back-factory-default-settings.html

Then, please reconfigure it back to your preferred setting.. Below is the list of default username and password, should you don't know it ;)

http://www.routerpasswords.com/
http://www.phenoelit-us.org/dpl/dpl.html
===

Reset for Linksys, Netgear, D-Link and Belkin Routers
http://www.techsupportforum.com/2763-reset-for-linksys-netgear-d-link-and-belkin-routers/

How to Secure Your Wireless Router
http://www.ehow.com/how_2253625_secure-wireless-router.html

#10 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 03 November 2014 - 07:50 PM

I reset the router but problem still persists.

 

I ran the Trend ATTCK Toolkit 2 times afterward, the first scan showed 5 possible infections and said "error running java scripts" "do you want to continue running", clicked yes, went to click virus you want to remove which listed none, then there was no option but to close "x". The second scan closed after 20min and saying 2 "supportcustomizepackage stoped working".

 

I then ran Rogue Killer below is the report.

 

RogueKiller V10.0.4.0 [Oct 29 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : has [Administrator]
Mode : Scan -- Date : 11/04/2014  08:39:23

¤¤¤ Processes : 1 ¤¤¤
[Suspicious.Path] MYOB.AccountRight.API.AddOnConnector.exe -- C:\Users\has\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe[-] -> Killed [TermProc]

¤¤¤ Registry : 13 ¤¤¤
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1A54BF3C-1A47-4CA3-9F78-3C50DA66CBAA} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{1A54BF3C-1A47-4CA3-9F78-3C50DA66CBAA} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{1A54BF3C-1A47-4CA3-9F78-3C50DA66CBAA} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{A54B9387-8383-4A6A-916F-B5550DFAFE75} | DhcpNameServer : 10.0.0.138 [(Private Address) (XX)]  -> Found
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Found
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Found

¤¤¤ Tasks : 0 ¤¤¤

¤¤¤ Files : 1 ¤¤¤
[Suspicious.Path][File] MYOB Add-On Connector.lnk -- C:\Users\has\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MYOB Add-On Connector.lnk [LNK@] C:\Users\has\AppData\Local\Programs\MYOB\ADDONC~1\202014~1.4\MYOBAC~1.EXE /startup -> Found

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Not loaded [0xc000036b]) ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: Samsung SSD 840 Series +++++
--- User ---
[MBR] c457f8357a57990aff80f7f05b01784f
[BSP] e74a96f478110a195c75bd15ddb95afc : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 238373 MB
User = LL1 ... OK
User = LL2 ... OK

 

-----------------------------

 

Please note these registry key entries are the same as what the Trend toolkit detects in its possible infections.

 

I will be running the dds, frst and security check on my brothers laptop to check whether its his computer that is effecting the modem.



#11 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 04 November 2014 - 05:07 AM

On my brothers laptop which is connected to the network I ran dds but it crashed midway through.

 

Here is the Farbar report.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-11-2014
Ran by Dulana (administrator) on DULANA-PC on 04-11-2014 17:31:49
Running from E:\Aspire drivers\av bleep
Loaded Profile: Dulana (Available profiles: Dulana)
Platform: Microsoft Windows 7 Home Premium  Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
() C:\Program Files\Canon\IJPLM\ijplmsvc.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\Servers\Huxley.Library.WindowsService.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.25.5\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Dropbox, Inc.) C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\2012.10\AU\Huxley.Server.WindowsService.exe
(MYOB Technology Pty. Ltd.) C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\2013.1\AU\Huxley.Server.WindowsService.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\2013.3\AU\Huxley.Server.WindowsService.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\2013.4\AU\Huxley.Server.WindowsService.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\2013.5\AU\Huxley.Server.WindowsService.exe
(MYOB Technology Pty Ltd) C:\Program Files\MYOB\AccountRight\Servers\Huxley.ServerLocator.WindowsService.exe
(Skype Technologies) C:\Program Files\Skype\Updater\Updater.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Farbar) E:\Aspire drivers\av bleep\FRST32.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Windows Mobile Device Center] => C:\windows\WindowsMobile\wmdc.exe [648072 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [TWebCamera] => C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-02-24] (TOSHIBA CORPORATION.)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [480608 2009-11-06] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [30040 2010-03-04] (TOSHIBA Corporation)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [467816 2010-03-20] (TOSHIBA Corporation)
HKLM\...\Run: [ToshibaServiceStation] => C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1294136 2009-10-07] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [460088 2009-07-29] (TOSHIBA Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [421736 2011-12-08] (Apple Inc.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [496184 2010-03-23] (Conexant Systems, Inc.)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1848648 2009-07-07] (CANON INC.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [742712 2010-03-04] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2422512 2013-08-22] (Synaptics Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-22] (Adobe Systems Incorporated)
HKU\S-1-5-21-2567842643-4237732637-164592030-1001\...\MountPoints2: {0e94e00b-8ddb-11e2-93bc-00266cafa308} - E:\AutoRun.exe
HKU\S-1-5-21-2567842643-4237732637-164592030-1001\...\MountPoints2: {910b399e-7e42-11e3-a66a-00266cafa308} - E:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-2567842643-4237732637-164592030-1001\...\MountPoints2: {be700902-f3cd-11e1-98ad-00266cafa308} - E:\StartMobile.exe
HKU\S-1-5-21-2567842643-4237732637-164592030-1001\...\MountPoints2: {be700907-f3cd-11e1-98ad-00266cafa308} - E:\StartMobile.exe
Startup: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MYOB Add-On Connector.lnk
ShortcutTarget: MYOB Add-On Connector.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe (MYOB Technology Pty. Ltd.)
BootExecute: autocheck autochk * bootdelete
AlternateShell: 
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.toshibadirect.com/dpdstart
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = 
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
Toolbar: HKCU - No Name - {88C7F2AA-F93F-432C-8F0E-B7D85967A527} -  No File
Toolbar: HKCU - No Name - {656461EF-40F6-4115-9FF1-BCED9812CCBB} -  No File
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL No File [ ]
Winsock: Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
 
FireFox:
========
FF ProfilePath: C:\Users\Dulana\AppData\Roaming\Mozilla\Firefox\Profiles\tu0q5h05.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\3.0.40818.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-01-03]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
 
Chrome: 
=======
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Dulana\AppData\Local\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Dulana\AppData\Local\Google\Chrome\Application\36.0.1985.125\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Users\Dulana\AppData\Local\Google\Chrome\Application\36.0.1985.125\gcswf32.dll No File
CHR Plugin: (Trend Micro Titanium) - C:\Users\Dulana\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.2.0.1035_0\npToolbarChrome.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.170.4) - C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll No File
CHR Plugin: (Java™ Platform SE 6 U17) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll No File
CHR Plugin: (QuickTime Plug-in 7.2) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\3.0.40818.0\npctrl.dll ( Microsoft Corporation)
CHR Profile: C:\Users\Dulana\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM\...\Chrome\Extension: [mhfdcmehmjcclgopdodkjdicohagipid] - C:\Users\Dulana\AppData\Local\Temp\crx9E02.tmp []
CHR HKLM\...\Chrome\Extension: [ngmmcbedgcbfghamlghhpbpifnbhhpik] - C:\Users\Dulana\AppData\Local\CRE\ngmmcbedgcbfghamlghhpbpifnbhhpik.crx []
CHR HKCU\...\Chrome\Extension: [ngmmcbedgcbfghamlghhpbpifnbhhpik] - C:\Users\Dulana\AppData\Local\CRE\ngmmcbedgcbfghamlghhpbpifnbhhpik.crx []
CHR StartMenuInternet: Google Chrome - C:\Users\Dulana\AppData\Local\Google\Chrome\Application\chrome.exe
 
========================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 cfWiMAXService; C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe [185712 2010-01-29] (TOSHIBA CORPORATION)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1669296 2014-09-25] (Microsoft Corporation)
S4 ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [46448 2009-03-11] (TOSHIBA CORPORATION)
R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [107912 2008-10-09] ()
R2 MYOB AccountRight Library; C:\Program Files\MYOB\AccountRight\Servers\Huxley.Library.WindowsService.exe [17752 2013-12-10] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server 2012.10; C:\Program Files\MYOB\AccountRight\2012.10\AU\Huxley.Server.WindowsService.exe [14752 2012-12-04] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server 2013.1; C:\Program Files\MYOB\AccountRight\2013.1\AU\Huxley.Server.WindowsService.exe [15192 2013-05-27] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server 2013.3; C:\Program Files\MYOB\AccountRight\2013.3\AU\Huxley.Server.WindowsService.exe [15192 2013-08-07] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server 2013.4; C:\Program Files\MYOB\AccountRight\2013.4\AU\Huxley.Server.WindowsService.exe [15192 2013-11-06] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server 2013.5; C:\Program Files\MYOB\AccountRight\2013.5\AU\Huxley.Server.WindowsService.exe [15192 2013-12-10] (MYOB Technology Pty Ltd)
R2 MYOB AccountRight Server Locator; C:\Program Files\MYOB\AccountRight\Servers\Huxley.ServerLocator.WindowsService.exe [16216 2013-12-10] (MYOB Technology Pty Ltd)
S4 sequansd; C:\Program Files\vividwireless\sequansd.exe [2150400 2014-05-27] (Sequans communications) [File not signed]
S4 TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [51512 2009-10-07] (TOSHIBA Corporation)
S4 TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [111960 2010-02-06] (TOSHIBA Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 athr; C:\windows\System32\DRIVERS\athr.sys [3236864 2013-09-24] (Qualcomm Atheros Communications, Inc.)
R1 avgtp; C:\windows\system32\drivers\avgtpx86.sys [42784 2014-07-23] (AVG Technologies)
S3 ETDSMBus; C:\windows\System32\DRIVERS\ETDSMBus.sys [21832 2013-08-07] (ELAN Microelectronic Corp.)
S3 HuaweiWiMAXUSB; C:\windows\System32\DRIVERS\HuaweiWiMAXUSB.sys [64512 2010-11-10] (HUAWEI Communication)
R0 iaStorA; C:\windows\System32\DRIVERS\iaStorA.sys [527344 2013-03-06] (Intel Corporation)
R0 iaStorF; C:\windows\System32\DRIVERS\iaStorF.sys [26096 2013-03-06] (Intel Corporation)
R0 iusb3hcs; C:\windows\System32\DRIVERS\iusb3hcs.sys [16880 2013-07-18] (Intel Corporation)
S3 L1C; C:\windows\System32\DRIVERS\L1C62x86.sys [110280 2013-07-18] (Qualcomm Atheros Co., Ltd.)
S3 NuidFltr; C:\windows\System32\DRIVERS\NuidFltr.sys [25712 2013-05-13] (Microsoft Corporation)
R3 PGEffect; C:\windows\System32\DRIVERS\pgeffect.sys [24064 2009-06-23] (TOSHIBA Corporation)
R3 SmbDrvI; C:\windows\System32\DRIVERS\Smb_driver_Intel.sys [27888 2013-08-22] (Synaptics Incorporated)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [29160 2014-07-31] ()
U5 AppMgmt; C:\windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\Users\Dulana\AppData\Local\Temp\catchme.sys [X]
S3 cleanhlp; \??\C:\Program Files\Emsisoft Anti-Malware\cleanhlp32.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]
S3 rootrepeal; \??\C:\windows\system32\drivers\rootrepeal.sys [X]
U2 TMAgent; No ImagePath
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
 
========================== Drivers MD5 =======================
 
C:\windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit
C:\windows\system32\drivers\afd.sys D0B388DA1D111A34366E04EB4A5DD156
C:\windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\djsvs.sys ==> MD5 is legit
C:\windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\windows\system32\drivers\amdagp.sys ==> MD5 is legit
C:\windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\amdppm.sys ==> MD5 is legit
C:\windows\system32\drivers\amdsata.sys D320BF87125326F996D4904FE24300FC
C:\windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit
C:\windows\System32\drivers\amdxata.sys 46387FB17B086D16DEA267D5BE23A2F2
C:\windows\system32\drivers\appid.sys E499E422412EF37576092A52648DB2B4
C:\windows\system32\DRIVERS\arc.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\windows\System32\drivers\atapi.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\athr.sys CC407D8606B95F5386D0CDB5B63B3A84
C:\windows\system32\drivers\avgtpx86.sys 9D9B2624C7E8365FC699561111A46A99
C:\windows\system32\DRIVERS\bxvbdx.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\b57nd60x.sys ==> MD5 is legit
C:\windows\system32\Drivers\Beep.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\bridge.sys 77361D72A04F18809D0EFB6CCEB74D4B
C:\windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\circlass.sys ==> MD5 is legit
C:\windows\System32\CLFS.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\CmBatt.sys ==> MD5 is legit
C:\windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\windows\System32\Drivers\cng.sys 85449EEBE8F8EBD6481EFBF0F352B4EB
C:\windows\System32\drivers\CHDRT32.sys AE7CBA20F1D124BAD293740F6839805E
C:\windows\System32\DRIVERS\compbatt.sys ==> MD5 is legit
C:\windows\system32\drivers\CompositeBus.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\dc3d.sys BFA04E060F1F26C92F62958757C47BDB
C:\windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\windows\System32\drivers\discache.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\disk.sys ==> MD5 is legit
C:\windows\system32\drivers\drmkaud.sys ==> MD5 is legit
C:\windows\System32\drivers\dxgkrnl.sys 3583A5A8CC2E682BFFBD4630D0FEC08B
C:\windows\system32\DRIVERS\evbdx.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit
C:\windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\ETDSMBus.sys 2D5025CA1FCBB544082F89B015C87CB3
C:\windows\system32\Drivers\exfat.sys ==> MD5 is legit
C:\windows\system32\Drivers\fastfat.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\fdc.sys ==> MD5 is legit
C:\windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legitB
C:\windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\windows\system32\Drivers\Fs_Rec.sys 7DAE5EBCC80E45D3253F4923DC424D05
C:\windows\System32\DRIVERS\fvevol.sys E306A24D9694C724FA2491278BF50FDB
C:\windows\System32\DRIVERS\FwLnk.sys 0F76E205BDC60364F08A5949082771CA
C:\windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\GEARAspiWDM.sys ==> MD5 is legit
C:\windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\windows\system32\drivers\HdAudio.sys A5EF29D5315111C80A5C1ABAD14C8972
C:\windows\system32\drivers\HDAudBus.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\hidir.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\HuaweiWiMAXUSB.sys 970FC04FD7F8F0A41B4AC4C15D56AF7D
C:\windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\i8042prt.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\iaStor.sys 01446278D4563B3013C92830AE6CBB26
C:\windows\System32\DRIVERS\iaStorA.sys AC743CCD25C258D3275971D7B4C9B447
C:\windows\System32\DRIVERS\iaStorF.sys C84FBAD42CD903BA737F06A2238F528A
C:\windows\system32\drivers\iaStorV.sys 5CD5F9A5444E6CDCB0AC89BD62D8B76E
C:\windows\System32\DRIVERS\igdkmd32.sys B3A313080B0F73F4C8292290606FC15D
C:\windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit
C:\windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\windows\system32\drivers\msiscsi.sys EB34CE31FABD4DC4343FD2AD16D2CAF9
C:\windows\System32\DRIVERS\iusb3hcs.sys 0E85E57DAA2095C9FF9D2D9EEA4CF01A
C:\windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\windows\System32\Drivers\ksecdd.sys 4120DA10AA42A9996F4575DB9E3E6E6E
C:\windows\System32\Drivers\ksecpkg.sys D3964885F0A11ACF51DA3AAA776973B2
C:\windows\System32\DRIVERS\L1C62x86.sys EB8B99107FE7160DC44E72C3B436B52A
C:\windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit
C:\windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\megasas.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit
C:\windows\System32\drivers\modem.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\windows\system32\drivers\mrxdav.sys 21F4B24ACFC79A483515BD986DD9043F
C:\windows\System32\DRIVERS\mrxsmb.sys 5D16C921E3671636C0EBA3BBAAC5FD25
C:\windows\System32\DRIVERS\mrxsmb10.sys 6D17A4791ACA19328C685D256349FEFC
C:\windows\System32\DRIVERS\mrxsmb20.sys B81F204D146000BE76651A50670A5E9E
C:\windows\System32\drivers\msahci.sys ==> MD5 is legit
C:\windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\windows\system32\Drivers\Msfs.sys ==> MD5 is legit
C:\windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\windows\system32\Drivers\MsRPC.sys ==> MD5 is legit
C:\windows\system32\drivers\mssmbios.sys ==> MD5 is legit
C:\windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit
C:\windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\windows\System32\drivers\ndis.sys 8C9C922D71F1CD4DEF73F186416B7896
C:\windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\windows\system32\Drivers\NDProxy.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\netaapl.sys 1352E1648213551923A0A822E441553C
C:\windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit
C:\windows\system32\Drivers\Npfs.sys ==> MD5 is legit
C:\windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\windows\system32\Drivers\Ntfs.sys C8DFF8D07755A66C7A4A738930F0FEAC
C:\windows\System32\DRIVERS\NuidFltr.sys A82BB9014BEF0E4986C3DA610B3A25FE
C:\windows\system32\Drivers\Null.sys ==> MD5 is legit
C:\windows\system32\drivers\nvraid.sys B3E25EE28883877076E0E1FF877D02E0
C:\windows\system32\drivers\nvstor.sys 4380E59A170D88C4F1022EFF6719A8A4
C:\windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\parport.sys ==> MD5 is legit
C:\windows\System32\drivers\partmgr.sys 3F34A1B4C5F6475F320C275E63AFCE9B
C:\windows\system32\DRIVERS\parvdm.sys ==> MD5 is legit
C:\windows\System32\drivers\pci.sys ==> MD5 is legit
C:\windows\System32\drivers\pciide.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit
C:\windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\windows\System32\drivers\peauth.sys 344D1FA0438A967F1A2BAA42C86D6E19
C:\windows\System32\DRIVERS\pgeffect.sys 1B5011DD8D57F53AED31FF0F7D635802
C:\windows\System32\DRIVERS\point32.sys 56E08C5366865A8DE8D106BFC27490A4
C:\windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\processr.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit
C:\windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\rdpbus.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\windows\system32\Drivers\RDPWD.sys CD9214A6AE17D188D17C3CF8CB9CC693
C:\windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\windows\System32\Drivers\RtsUStor.sys B87F999E05DD9C0312C83A8752E8E66B
C:\windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\windows\system32\Drivers\secdrv.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\serenum.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\serial.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit
C:\windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit
C:\windows\system32\drivers\sisagp.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\Smb_driver_Intel.sys 4E0463E336DA72FFD33085B4C38760B2
C:\windows\system32\Drivers\spldr.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\srv.sys E4C2764065D66EA1D2D3EBC28FE99C46
C:\windows\System32\DRIVERS\srv2.sys 03F0545BD8D4C77FA0AE1CEEDFCC71AB
C:\windows\System32\DRIVERS\srvnet.sys BE6BD660CAA6F291AE06A718A4FA8ABC
C:\windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit
C:\windows\system32\drivers\serscan.sys EDB05BD63148796F23EA78506404A538
C:\windows\system32\drivers\swenum.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\SynTP.sys 26618BC5F920E105632C077635A9C655
C:\windows\System32\drivers\tcpip.sys 5579DD18546999F5D0EC39D018726C6B
C:\windows\System32\DRIVERS\tcpip.sys 5579DD18546999F5D0EC39D018726C6B
C:\windows\System32\drivers\tcpipreg.sys 3EEBD3BD93DA46A26E89893C7AB2FF3B
C:\windows\System32\DRIVERS\tdcmdpst.sys 4084EA00D50C858D6F9038F86AE2E2D0
C:\windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\windows\System32\drivers\tdtcp.sys 2C2C5AFE7EE4F620D69C23C0617651A8
C:\windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\windows\system32\drivers\termdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\TrueSight.sys BD45CEB3EBB6832AE7997FA29468ACE1
C:\windows\System32\DRIVERS\tssecsrv.sys 6C5139E4283249518F7743D7043775B3
C:\windows\System32\drivers\tsusbflt.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\TVALZ_O.SYS FC24015B4052600C324C43E3A79C0664
C:\windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\umbus.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\umpass.sys ==> MD5 is legit
C:\windows\System32\Drivers\usbaapl.sys 83CAFCB53201BBAC04D822F32438E244
C:\windows\System32\DRIVERS\usbccgp.sys 0803FBA9FE829D61AE26EC0BCC910C46
C:\windows\System32\DRIVERS\usbcir.sys 2352AB5F9F8F097BF9D41D5A4718A041
C:\windows\System32\DRIVERS\usbehci.sys D40855F89B69305140BBD7E9A3BA2DA6
C:\windows\System32\DRIVERS\usbhub.sys EDF2DF71C4F1E13A6AC75F5224DE655A
C:\windows\system32\drivers\usbohci.sys 9828C8D14CC2676421778F0DE638CF97
C:\windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit
C:\windows\system32\drivers\usbscan.sys FC6B21DB4B5B398AB93DBE59CBF11036
C:\windows\System32\DRIVERS\USBSTOR.SYS F991AB9CC6B908DB552166768176896A
C:\windows\System32\DRIVERS\usbuhci.sys 800AABFD625EEFF899F7E5496BDE37AB
C:\windows\System32\Drivers\usbvideo.sys DE014425522610BEDCA3821BB8C0F1D5
C:\windows\System32\DRIVERS\usb8023x.sys AF77716205C97E902E6C5B78DECE2CCA
C:\windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\windows\System32\drivers\vga.sys ==> MD5 is legit
C:\windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\windows\system32\drivers\viaagp.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\viac7.sys ==> MD5 is legit
C:\windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\vwifibus.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\vwififlt.sys 7090D3436EEB4E7DA3373090A23448F7
C:\windows\System32\DRIVERS\vwifimp.sys A3F04CBEA6C2A10E6CB01F8B47611882
C:\windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\windows\system32\DRIVERS\wd.sys ==> MD5 is legit
C:\windows\System32\drivers\Wdf01000.sys 25944D2CC49E0A6C581D02A74B7D6645
C:\windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\WinUsb.sys A67E5F9A400F3BD1BE3D80613B45F708
C:\windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\windows\System32\DRIVERS\WSDPrint.sys 553F6CCD7C58EB98D4A8FBDAF283D7A9
C:\windows\System32\drivers\WudfPf.sys 06E6F32C8D0A3F66D956F57B43A2E070
C:\windows\System32\DRIVERS\WUDFRd.sys 867C301E8B790040AE9CF6486E8041DF
 
==================== NetSvcs (Whitelisted) ===================
 
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-03 14:04 - 2014-11-03 14:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-11-03 14:02 - 2014-11-03 14:02 - 01055920 _____ (Microsoft Corporation) C:\Users\Dulana\Downloads\Setup.X86.en-US_O365HomePremRetail_21f60a2d-dd9a-41bc-9ad7-9a4932cabc63_TX_SG_.exe
2014-11-03 14:02 - 2014-11-03 14:02 - 01055920 _____ (Microsoft Corporation) C:\Users\Dulana\Downloads\Setup.X86.en-US_O365HomePremRetail_21f60a2d-dd9a-41bc-9ad7-9a4932cabc63_TX_SG_ (1).exe
2014-11-03 07:57 - 2014-11-03 08:33 - 00000000 ____D () C:\Users\Dulana\Desktop\New folder
2014-11-01 19:20 - 2014-11-01 19:20 - 00027761 _____ () C:\Users\Dulana\Desktop\FA16 FA031  Ammonia in Aquatic Systems.htm
2014-11-01 19:20 - 2014-11-01 19:20 - 00000000 ____D () C:\Users\Dulana\Desktop\FA16 FA031  Ammonia in Aquatic Systems_files
2014-11-01 17:02 - 2014-11-01 17:13 - 00000000 ____D () C:\Users\Dulana\Desktop\PhD & Company Files
2014-10-29 18:28 - 2014-10-31 21:16 - 00093744 _____ () C:\Users\Dulana\Documents\DULANA2014.TAX
2014-10-29 18:28 - 2014-10-31 21:14 - 00092960 _____ () C:\Users\Dulana\Documents\DULANA2014.BAK
2014-10-29 14:18 - 2014-10-29 14:18 - 00000000 ____D () C:\Users\Dulana\AppData\Local\etax2014
2014-10-29 13:48 - 2014-10-29 13:48 - 00001926 _____ () C:\Users\Dulana\Desktop\e-tax 2014.lnk
2014-10-29 13:48 - 2014-10-29 13:48 - 00000000 ____D () C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014
2014-10-29 13:48 - 2014-10-29 13:48 - 00000000 ____D () C:\Program Files\etax2014
2014-10-29 13:45 - 2014-10-29 13:47 - 30572544 _____ () C:\Users\Dulana\Downloads\etax2014_1.msi
2014-10-23 11:42 - 2014-11-04 09:27 - 00000000 ____D () C:\Users\Dulana\Desktop\Rose Heritage Cafe
2014-10-22 11:40 - 2014-10-22 11:40 - 00183276 _____ () C:\Users\Dulana\Desktop\Best Perth Japanese Restaurants.htm
2014-10-22 11:40 - 2014-10-22 11:40 - 00000000 ____D () C:\Users\Dulana\Desktop\Best Perth Japanese Restaurants_files
2014-10-20 18:47 - 2014-10-20 19:00 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-10-20 18:32 - 2014-10-30 15:08 - 10284408 _____ (SurfRight B.V.) C:\Users\Dulana\Desktop\HitmanPro.exe
2014-10-20 10:52 - 2014-10-20 10:53 - 00000000 ____D () C:\Users\Dulana\Downloads\TrendMicro AntiThreat Toolkit
2014-10-20 09:59 - 2014-10-20 10:08 - 93768792 _____ (trend_company_name) C:\Users\Dulana\Downloads\supportcustomizedpackage.exe
2014-10-20 09:32 - 2014-10-20 09:32 - 00000000 ____D () C:\windows\ERUNT
2014-10-20 09:25 - 2014-10-20 09:26 - 10280824 _____ (SurfRight B.V.) C:\Users\Dulana\Downloads\HitmanPro.exe
2014-10-20 09:25 - 2014-10-20 09:24 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Dulana\Desktop\mbam-setup-2.0.3.1025.exe
2014-10-20 09:25 - 2014-10-20 09:23 - 01976320 _____ () C:\Users\Dulana\Desktop\adwcleaner_4.000.exe
2014-10-20 09:23 - 2014-10-20 09:24 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Dulana\Downloads\mbam-setup-2.0.3.1025.exe
2014-10-20 09:23 - 2014-10-20 09:23 - 01976320 _____ () C:\Users\Dulana\Downloads\adwcleaner_4.000.exe
2014-10-20 09:22 - 2014-10-20 09:22 - 01705698 _____ (Thisisu) C:\Users\Dulana\Downloads\JRT.exe
2014-10-15 09:26 - 2014-10-10 09:44 - 00396288 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-15 09:26 - 2014-10-10 09:44 - 00230912 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-15 09:26 - 2014-10-10 09:39 - 00302592 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-15 09:26 - 2014-09-29 08:41 - 02379264 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-15 09:25 - 2014-10-07 10:04 - 00331448 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-15 09:25 - 2014-09-26 06:46 - 00365056 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-15 09:25 - 2014-09-26 06:46 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-15 09:25 - 2014-09-26 06:46 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-15 09:25 - 2014-09-26 06:43 - 11807232 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-15 09:25 - 2014-09-26 06:32 - 02017280 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-15 09:25 - 2014-09-19 09:44 - 17484800 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-15 09:25 - 2014-09-19 09:25 - 04201472 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-15 09:25 - 2014-09-19 09:14 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-15 09:25 - 2014-09-19 09:14 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-15 09:25 - 2014-09-19 09:02 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-15 09:25 - 2014-09-19 09:01 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-15 09:25 - 2014-09-19 09:01 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-15 09:25 - 2014-09-19 08:59 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-15 09:25 - 2014-09-19 08:55 - 02187264 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-15 09:25 - 2014-09-19 08:54 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-15 09:25 - 2014-09-19 08:53 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-15 09:25 - 2014-09-19 08:51 - 00440320 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-15 09:25 - 2014-09-19 08:50 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-15 09:25 - 2014-09-19 08:50 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-15 09:25 - 2014-09-19 08:49 - 00597504 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-15 09:25 - 2014-09-19 08:44 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-10-15 09:25 - 2014-09-19 08:36 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-15 09:25 - 2014-09-19 08:32 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-15 09:25 - 2014-09-19 08:20 - 00677888 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-15 09:25 - 2014-09-19 08:20 - 00607744 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-15 09:25 - 2014-09-19 08:18 - 01068032 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-15 09:25 - 2014-09-19 07:59 - 01810944 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-15 09:25 - 2014-09-19 07:53 - 01190400 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-15 09:25 - 2014-09-19 07:52 - 00678400 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-15 09:25 - 2014-09-18 09:32 - 02363904 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-15 09:25 - 2014-09-13 09:40 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-15 09:25 - 2014-09-04 13:04 - 00372736 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-15 09:25 - 2014-07-17 09:40 - 00157696 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 03221504 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2014-10-15 09:25 - 2014-07-17 09:39 - 00523264 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 00304128 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-15 09:25 - 2014-07-17 09:39 - 00131584 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 00130048 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-15 09:25 - 2014-07-17 09:39 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-15 09:25 - 2014-07-17 09:03 - 00184320 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-15 09:25 - 2014-07-17 09:02 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-15 09:25 - 2014-07-09 09:29 - 00006144 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-10-15 09:25 - 2014-07-09 09:29 - 00006144 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-10-15 09:25 - 2014-07-09 09:29 - 00006144 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-10-15 09:25 - 2014-07-09 09:29 - 00006144 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-10-15 09:25 - 2014-07-09 09:29 - 00005632 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-10-15 09:25 - 2014-07-09 06:30 - 00419992 _____ () C:\windows\system32\locale.nls
2014-10-15 09:25 - 2014-06-19 06:23 - 01131664 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-15 09:25 - 2014-06-19 06:23 - 00156824 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-15 09:25 - 2014-06-19 06:23 - 00081560 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-15 09:24 - 2014-08-19 10:41 - 00050688 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2014-10-15 09:24 - 2014-08-19 10:41 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2014-10-15 09:24 - 2014-08-19 10:41 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2014-10-15 09:24 - 2014-08-19 10:40 - 00096768 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2014-10-15 09:24 - 2014-08-19 10:40 - 00016896 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2014-10-15 09:24 - 2014-08-19 09:48 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2014-10-15 09:24 - 2014-07-07 09:40 - 11411456 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 03208704 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 01329664 _____ (Microsoft Corporation) C:\windows\system32\quartz.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 01174528 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 01005056 _____ (Microsoft Corporation) C:\windows\system32\cryptui.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00988160 _____ (Microsoft Corporation) C:\windows\system32\drmv2clt.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00744960 _____ (Microsoft Corporation) C:\windows\system32\blackbox.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00617984 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msscp.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00489984 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00473600 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00442880 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00406016 _____ (Microsoft Corporation) C:\windows\system32\drmmgrtn.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00354816 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00275968 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00265216 _____ (Microsoft Corporation) C:\windows\system32\msnetobj.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00179200 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00157184 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00143872 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00103424 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\cryptsp.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00008192 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2014-10-15 09:24 - 2014-07-07 09:40 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2014-10-15 09:24 - 2014-07-07 09:40 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2014-10-15 09:24 - 2014-07-07 09:39 - 12625408 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2014-10-15 09:24 - 2014-07-07 09:39 - 03970488 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2014-10-15 09:24 - 2014-07-07 09:39 - 03914680 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2014-10-15 09:24 - 2014-07-07 09:39 - 00100864 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2014-10-15 09:24 - 2014-07-07 09:39 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\rrinstaller.exe
2014-10-15 09:24 - 2014-07-07 09:39 - 00023040 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2014-10-15 09:24 - 2014-07-07 09:37 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\mferror.dll
2014-10-15 09:24 - 2014-07-07 09:28 - 00593920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\PEAuth.sys
2014-10-15 09:24 - 2014-06-28 08:21 - 00521384 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2014-10-15 09:24 - 2014-06-28 08:21 - 00455752 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2014-10-15 09:24 - 2014-06-28 08:21 - 00409272 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2014-10-12 17:21 - 2014-10-12 17:27 - 00000000 ____D () C:\Users\Dulana\Desktop\100CANON
2014-10-11 08:32 - 2014-10-11 08:38 - 06487535 _____ () C:\Users\Dulana\Downloads\03.wmv
2014-10-11 08:32 - 2014-10-11 08:33 - 04233871 _____ () C:\Users\Dulana\Downloads\clip1.wmv
2014-10-10 21:45 - 2014-11-04 17:29 - 00461824 ___SH () C:\Users\Dulana\Desktop\Thumbs.db
2014-10-08 22:08 - 2014-10-08 22:09 - 00000000 ____D () C:\Users\Dulana\Desktop\Yabby diseases
2014-10-08 21:52 - 2014-10-08 22:10 - 00000000 ____D () C:\Users\Dulana\Desktop\Fish Parasites
2014-10-08 21:24 - 2014-10-08 21:25 - 13135224 _____ () C:\Users\Dulana\Downloads\Yabbies.rar
2014-10-06 20:25 - 2014-10-06 20:33 - 15595235 _____ () C:\Users\Dulana\Downloads\Tanks.rar
2014-10-06 14:47 - 2014-10-06 14:47 - 00000000 ____D () C:\Users\Dulana\Desktop\SAMSUNG PHOTOS
2014-10-05 20:30 - 2014-10-05 20:40 - 00000000 ____D () C:\Users\Dulana\Downloads\New folder
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-04 17:31 - 2014-08-02 17:02 - 00000000 ____D () C:\FRST
2014-11-04 17:30 - 2013-08-10 18:30 - 00000000 ___RD () C:\Users\Dulana\Dropbox
2014-11-04 17:30 - 2013-08-10 18:28 - 00000000 ____D () C:\Users\Dulana\AppData\Roaming\Dropbox
2014-11-04 17:29 - 2014-09-07 20:42 - 00000882 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-04 17:29 - 2014-08-01 18:48 - 00658156 _____ () C:\windows\setupact.log
2014-11-04 17:29 - 2013-12-19 18:33 - 00065536 _____ () C:\windows\system32\Ikeext.etl
2014-11-04 17:29 - 2009-07-14 12:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-11-04 17:29 - 2009-07-14 12:33 - 00437976 _____ () C:\windows\system32\FNTCACHE.DAT
2014-11-04 16:46 - 2011-09-21 12:32 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2014-11-04 16:46 - 2009-07-14 10:37 - 00000000 ____D () C:\windows\tracing
2014-11-04 16:45 - 2014-08-02 09:23 - 00025902 _____ () C:\windows\PFRO.log
2014-11-04 16:40 - 2011-03-01 18:06 - 00801894 _____ () C:\windows\system32\PerfStringBackup.INI
2014-11-04 16:39 - 2011-08-15 10:12 - 00000000 ____D () C:\Users\Dulana\Documents\Outlook Files
2014-11-04 16:36 - 2011-07-31 20:15 - 00000000 ____D () C:\Users\Dulana\AppData\Roaming\Skype
2014-11-04 15:44 - 2014-09-07 20:42 - 00000886 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-04 14:53 - 2009-07-14 12:52 - 00000000 ____D () C:\windows\system32\FxsTmp
2014-11-04 09:38 - 2014-06-30 15:56 - 00000000 ____D () C:\Users\Dulana\Desktop\VISA STUFF
2014-11-04 08:42 - 2014-07-20 11:42 - 01596144 _____ () C:\windows\WindowsUpdate.log
2014-11-03 14:04 - 2013-04-15 20:46 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-11-02 09:29 - 2009-07-14 12:34 - 00019248 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-02 09:29 - 2009-07-14 12:34 - 00019248 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-01 08:45 - 2011-07-27 20:18 - 00000000 ____D () C:\ProgramData\CanonIJPLM
2014-10-30 15:00 - 2009-07-14 10:37 - 00000000 ____D () C:\windows\Microsoft.NET
2014-10-30 14:28 - 2014-08-01 10:25 - 00000000 ____D () C:\AdwCleaner
2014-10-30 14:20 - 2014-04-20 17:44 - 00000000 ____D () C:\Program Files\Warcraft III
2014-10-30 14:19 - 2014-07-31 12:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-10-26 20:18 - 2013-04-20 13:11 - 00000000 ___RD () C:\Program Files\Skype
2014-10-26 20:18 - 2011-03-01 18:08 - 00000000 ____D () C:\ProgramData\Skype
2014-10-19 20:22 - 2011-07-27 22:49 - 00000000 ____D () C:\Users\Dulana\AppData\Local\CrashDumps
2014-10-16 12:48 - 2009-07-14 10:37 - 00000000 ____D () C:\windows\rescache
2014-10-16 09:37 - 2014-05-06 17:27 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-10-16 09:27 - 2014-04-30 22:31 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-10-16 08:55 - 2013-07-29 08:20 - 00000000 ____D () C:\windows\system32\MRT
2014-10-16 08:40 - 2011-12-13 16:37 - 100290944 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-10-10 21:29 - 2014-09-23 22:17 - 00000000 ____D () C:\Users\Dulana\Desktop\PHOTOS
2014-10-06 13:11 - 2011-08-03 17:33 - 00000000 ____D () C:\ProgramData\CanonIJ
 
Some content of TEMP:
====================
C:\Users\Dulana\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpq0o1fb.dll
C:\Users\Dulana\AppData\Local\Temp\Quarantine.exe
C:\Users\Dulana\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Dulana\AppData\Local\Temp\sqlite3.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
 
==================== BCD ================================
 
Windows Boot Manager
--------------------
identifier              {bootmgr}
device                  partition=\Device\HarddiskVolume1
description             Windows Boot Manager
locale                  en-US
inherit                 {globalsettings}
default                 {current}
resumeobject            {aa5f6080-43f0-11e0-9e89-cf11424c4d8d}
displayorder            {current}
toolsdisplayorder       {memdiag}
timeout                 10
 
Windows Boot Loader
-------------------
identifier              {current}
device                  partition=C:
path                    \windows\system32\winload.exe
description             Windows 7
locale                  en-US
inherit                 {bootloadersettings}
recoverysequence        {aa5f6082-43f0-11e0-9e89-cf11424c4d8d}
recoveryenabled         Yes
osdevice                partition=C:
systemroot              \windows
resumeobject            {aa5f6080-43f0-11e0-9e89-cf11424c4d8d}
nx                      OptIn
numproc                 2
vga                     Yes
usefirmwarepcisettings  No
bootlog                 Yes
 
Windows Boot Loader
-------------------
identifier              {aa5f6082-43f0-11e0-9e89-cf11424c4d8d}
device                  ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{aa5f6083-43f0-11e0-9e89-cf11424c4d8d}
path                    \windows\system32\winload.exe
description             Windows Recovery Environment
inherit                 {bootloadersettings}
osdevice                ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{aa5f6083-43f0-11e0-9e89-cf11424c4d8d}
systemroot              \windows
nx                      OptIn
winpe                   Yes
 
Resume from Hibernate
---------------------
identifier              {aa5f6080-43f0-11e0-9e89-cf11424c4d8d}
device                  partition=C:
path                    \windows\system32\winresume.exe
description             Windows Resume Application
locale                  en-US
inherit                 {resumeloadersettings}
filedevice              partition=C:
filepath                \hiberfil.sys
pae                     Yes
debugoptionenabled      No
 
Windows Memory Tester
---------------------
identifier              {memdiag}
device                  partition=\Device\HarddiskVolume1
path                    \boot\memtest.exe
description             Windows Memory Diagnostic
locale                  en-US
inherit                 {globalsettings}
badmemoryaccess         Yes
 
EMS Settings
------------
identifier              {emssettings}
bootems                 Yes
 
Debugger Settings
-----------------
identifier              {dbgsettings}
debugtype               Serial
debugport               1
baudrate                115200
 
RAM Defects
-----------
identifier              {badmemory}
 
Global Settings
---------------
identifier              {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}
 
Boot Loader Settings
--------------------
identifier              {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}
 
Hypervisor Settings
-------------------
identifier              {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200
 
Resume Loader Settings
----------------------
identifier              {resumeloadersettings}
inherit                 {globalsettings}
 
Device options
--------------
identifier              {aa5f6083-43f0-11e0-9e89-cf11424c4d8d}
description             Ramdisk Options
ramdisksdidevice        partition=\Device\HarddiskVolume1
ramdisksdipath          \Recovery\WindowsRE\boot.sdi
 
 
 
LastRegBack: 2014-10-26 09:57
 
==================== End Of Log ============================

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-11-2014
Ran by Dulana at 2014-11-04 17:32:58
Running from E:\Aspire drivers\av bleep
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.3.0.3650 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.3 - Adobe Systems Incorporated)
Adobe Flash Player 12 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Apple Application Support (HKLM\...\{343666E2-A059-48AC-AD67-230BF74E2DB2}) (Version: 2.1.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8153ED9A-C94A-426E-9880-5E6775C08B62}) (Version: 4.0.0.97 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Driver Installation Program (HKLM\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 5.2 - Atheros)
AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 3.1.0.6 - AVG Technologies)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Canon IJ Network Scan Utility (HKLM\...\Canon_IJ_Network_Scan_UTILITY) (Version:  - )
Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version:  - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM\...\CANONIJPLM100) (Version:  - )
Canon MP Navigator EX 2.1 (HKLM\...\MP Navigator EX 2.1) (Version:  - )
Canon MX860 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series) (Version:  - )
Canon Utilities Easy-PhotoPrint EX (HKLM\...\Easy-PhotoPrint EX) (Version:  - )
Canon Utilities My Printer (HKLM\...\CanonMyPrinter) (Version:  - )
Canon Utilities Solution Menu (HKLM\...\CanonSolutionMenu) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.128.0.66 - Conexant)
Dropbox (HKCU\...\Dropbox) (Version: 2.10.30 - Dropbox, Inc.)
e-tax 2014 (HKLM\...\{42D5C0B2-A309-4F84-9BD7-5DDDFE6C09E1}) (Version: 2.10.788 - Australian Taxation Office)
eXPert PDF 6 (HKLM\...\{FC279721-37A6-4777-AFD8-7A56681EBA14}) (Version: 6.20.400.0 - Avanquest software)
Google Chrome (HKCU\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden
Grand Theft Auto IV (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Intel® Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2086 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
iTunes (HKLM\...\{B7DBF6E8-0D17-4BE4-853B-ACD6EFBD4A1F}) (Version: 10.5.2.11 - Apple Inc.)
Junk Mail filter update (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4659.1001 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 ENU (HKLM\...\{773AC1E4-5F27-4DF6-A932-7FDDE35C069D}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Sync Framework 2.1 Core Components (x86) ENU  (HKLM\...\{7AC8EF88-D996-4D47-B40C-4DD93E307481}) (Version: 2.1.1648.0 - Microsoft Corporation)
Microsoft Sync Framework 2.1 Database Providers (x86) ENU  (HKLM\...\{296E293F-C481-4DDE-9ED2-3F79FCF38731}) (Version: 3.1.1648.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MYOB AccountRight 2014.1 (HKCU\...\{38ab2cbe-8d55-445b-b462-a92fc3fc5b7d}) (Version: 2014.1.16.2450 - MYOB Technology Pty. Ltd.)
MYOB AccountRight 2014.1 (Version: 14.1.16.2450 - MYOB Technology Pty. Ltd.) Hidden
MYOB AccountRight 2014.2 (HKCU\...\{21a4ff4f-d84c-4a10-be7f-d5daae021b09}) (Version: 2014.2.16.3881 - MYOB Technology Pty. Ltd.)
MYOB AccountRight 2014.2 (Version: 14.2.16.3881 - MYOB Technology Pty. Ltd.) Hidden
MYOB AccountRight 2014.3 (HKCU\...\{a713593a-7acf-4a72-9cfe-3e22909eebe4}) (Version: 2014.3.16.5484 - MYOB Technology Pty. Ltd.)
MYOB AccountRight 2014.3 (Version: 14.3.16.5484 - MYOB Technology Pty. Ltd.) Hidden
MYOB AccountRight 2014.4 (HKCU\...\{d8371359-3b89-4e68-94e7-c9bcc7ac1e53}) (Version: 2014.4.16.7861 - MYOB Technology Pty. Ltd.)
MYOB AccountRight 2014.4 (Version: 14.4.16.7861 - MYOB Technology Pty. Ltd.) Hidden
MYOB AccountRight Basics 2012.10 AU (HKLM\...\InstallShield_{1CA49FDA-7532-4E14-BBCF-80D3B123151B}) (Version: 2012.10 - MYOB Technology Pty Ltd)
MYOB AccountRight Basics 2012.10 AU (Version: 2012.10 - MYOB Technology Pty Ltd) Hidden
MYOB AccountRight Plus 2013.1 AU (HKLM\...\InstallShield_{BE925921-A155-47FB-ACC2-D170956556B8}) (Version: 2013.1 - MYOB Technology Pty Ltd)
MYOB AccountRight Plus 2013.1 AU (Version: 2013.1 - MYOB Technology Pty Ltd) Hidden
MYOB AccountRight Standard 2013.3 AU (HKLM\...\InstallShield_{F1BF14BF-BBC1-4EA9-94FB-24BD7A9C52AF}) (Version: 2013.3 - MYOB Technology Pty Ltd)
MYOB AccountRight Standard 2013.3 AU (Version: 2013.3 - MYOB Technology Pty Ltd) Hidden
MYOB AccountRight Standard 2013.4 AU (HKLM\...\InstallShield_{D9AE4572-16BD-498A-B33F-4D416DABE7C7}) (Version: 2013.4 - MYOB Technology Pty Ltd)
MYOB AccountRight Standard 2013.4 AU (Version: 2013.4 - MYOB Technology Pty Ltd) Hidden
MYOB AccountRight Standard 2013.5 AU (HKLM\...\InstallShield_{BBDBA6AC-8BF8-4D47-9BD8-1E24F90310D9}) (Version: 2013.5 - MYOB Technology Pty Ltd)
MYOB AccountRight Standard 2013.5 AU (Version: 2013.5 - MYOB Technology Pty Ltd) Hidden
MYOB Add-On Connector (API) (Version: 2.16.7628 - MYOB Technology Pty Ltd) Hidden
Nikon Message Center (HKLM\...\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}) (Version: 0.92.000 - Nikon)
Nikon Transfer (HKLM\...\{E9757890-7EC5-46C8-99AB-B00F07B6525C}) (Version: 1.0.2 - Nikon)
Norton Internet Security (Version: 17.5.0.127 - Symantec Corporation) Hidden
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4659.1001 - Microsoft Corporation) Hidden
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Picture Control Utility (HKLM\...\{87441A59-5E64-4096-A170-14EFE67200C3}) (Version: 1.0.3 - Nikon)
Realtek USB 2.0 Card Reader (HKLM\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30111 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.21 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.10.1 - Synaptics Incorporated)
TOSHIBA Assist (HKLM\...\{12B3A009-A080-4619-9A2A-C6DB151D8D67}) (Version: 2.01.13 - TOSHIBA CORPORATION)
TOSHIBA Bulletin Board (HKLM\...\InstallShield_{B2FB7DBA-CEEC-41F1-BC23-3323D96290F6}) (Version: 1.6.07.32 - TOSHIBA Corporation)
TOSHIBA ConfigFree (HKLM\...\{607BE7BF-7C28-4ADB-A4A0-385962B901C3}) (Version: 8.0.28 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 - TOSHIBA Corporation)
TOSHIBA Face Recognition (HKLM\...\InstallShield_{C730E42C-935A-45BB-A0C5-37E5234D111B}) (Version: 3.1.3.32 - TOSHIBA Corporation)
TOSHIBA Hardware Setup (HKLM\...\{8E9CEA3B-EBD1-439C-A01D-830CB39613C6}) (Version: 2.00.06 - TOSHIBA Corporation)
TOSHIBA HDD/SSD Alert (HKLM\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.0.6 - TOSHIBA Corporation)
TOSHIBA Media Controller (HKLM\...\{C7A4F26F-F9B0-41B2-8659-99181108CDE3}) (Version: 1.0.80.3 - TOSHIBA CORPORATION)
TOSHIBA Media Controller Plug-in (HKLM\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.4.9 - TOSHIBA CORPORATION)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 - TOSHIBA Corporation)
TOSHIBA ReelTime (HKLM\...\InstallShield_{B894522E-C079-4DC8-A305-30BA6E2F4459}) (Version: 1.6.06.32 - TOSHIBA Corporation)
TOSHIBA Service Station (HKLM\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.40 - TOSHIBA)
TOSHIBA Speech System Applications (HKLM\...\{EE033C1F-443E-41EC-A0E2-559B539A4E4D}) (Version: 1.00.2518 - )
TOSHIBA Speech System SR Engine(U.S.) Version1.0 (HKLM\...\{008D69EB-70FF-46AB-9C75-924620DF191A}) (Version:  - )
TOSHIBA Speech System TTS Engine(U.S.) Version1.0 (HKLM\...\{3FBF6F99-8EC6-41B4-8527-0A32241B5496}) (Version:  - )
TOSHIBA Supervisor Password (HKLM\...\{073B89C3-BA88-41B5-965F-B35A88EAE838}) (Version: 2.00.03 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM\...\InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}) (Version: 1.3.3 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.15 - TOSHIBA Corporation)
ViewNX (HKLM\...\{F007CBCE-D714-4C0B-8CE9-9B0D78116468}) (Version: 1.0.3 - Nikon)
vividwireless (HKLM\...\vividwireless) (Version: 100.001.027.037 - Huawei Technologies Co.,Ltd)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live ID Sign-in Assistant (HKLM\...\{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live Upload Tool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Mobile Device Center (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{00B7E0AB-817A-44AD-A04B-D1148D524136}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Chrome\Application\36.0.1985.125\delegate_execute.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe No File
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{7C6E29BC-8B8B-4C3D-859E-AF6CD158BE0F}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C0-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C1-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C2-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C3-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C4-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C5-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C8-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969C9-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969CA-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{88D969D6-F192-11D4-A65F-0040963251E5}\InprocServer32 -> C:\windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe No File
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Google\Update\1.3.24.15\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\FileSyncApi.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2567842643-4237732637-164592030-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
 
==================== Restore Points  =========================
 
02-10-2014 00:10:11 Windows Update
09-10-2014 02:52:14 Scheduled Checkpoint
16-10-2014 00:33:28 Windows Update
23-10-2014 04:50:15 Scheduled Checkpoint
29-10-2014 05:47:27 Installed e-tax 2014
30-10-2014 06:21:12 Removed HiJackThis
 
==================== Scheduled Tasks (whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
 
Task: {1A0214A0-2692-429A-BD2E-59BEB3096645} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {1DE28076-91D7-44A6-8399-63EEB482E38B} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft)
Task: {42DB258B-95A6-4EFC-84E0-11CFA8BCC4D7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-09-07] (Google Inc.)
Task: {5CB4A75A-1E74-4F16-BB78-1C44309576A3} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {611F6259-9CB4-48AB-AE2E-A45193F7AEBF} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {ACD1AE25-01F3-4A16-9EF3-09202347DD23} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-09-25] (Microsoft Corporation)
Task: {AD1F276B-E058-4CEA-9BEC-1F15E6686F60} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2014-09-25] (Microsoft Corporation)
Task: {AE1305C0-8724-4DED-81AE-3C4218DE3C10} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-09-07] (Google Inc.)
Task: {B20EAF81-4B7F-427C-A7ED-D125B1727F27} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {B2B3C344-8E4B-4999-A25D-CC87FF9233C0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {F8A58B30-ED94-4C94-A828-3A45A4357A96} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {FE614E73-2BF0-4C5F-8A5E-83D72E5EF5D5} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (whitelisted) =============
 
2014-03-22 17:47 - 2014-05-20 03:11 - 00080040 _____ () C:\Program Files\Microsoft Office 15\ClientX86\ApiClient.dll
2011-07-27 20:18 - 2008-10-09 13:07 - 00107912 _____ () C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
2012-10-01 20:33 - 2012-10-01 20:33 - 06522480 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2010-01-09 20:18 - 2010-01-09 20:18 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-01-21 01:34 - 2010-01-21 01:34 - 08793952 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2014-11-04 17:30 - 2014-11-04 17:30 - 00043008 _____ () c:\users\dulana\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpq0o1fb.dll
2013-08-24 03:01 - 2013-08-24 03:01 - 25100288 _____ () C:\Users\Dulana\AppData\Roaming\Dropbox\bin\libcef.dll
2014-03-16 10:51 - 2014-07-10 15:08 - 00122024 _____ () C:\Program Files\Microsoft Office 15\root\Office15\JitV.dll
2014-09-20 09:00 - 2014-09-20 09:00 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\Office15\AppVIsvStream32.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
AlternateDataStreams: C:\Users\Dulana\Downloads\noname.eml:OECustomProperty
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot => "AlternateShell"=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\24156397.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\24156397.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
 
==================== EXE Association (whitelisted) =============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== MSCONFIG/TASK MANAGER disabled items =========
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\Services: PEVSystemStart => 2
 
========================= Accounts: ==========================
 
Administrator (S-1-5-21-2567842643-4237732637-164592030-500 - Administrator - Disabled)
Dulana (S-1-5-21-2567842643-4237732637-164592030-1001 - Administrator - Enabled) => C:\Users\Dulana
Guest (S-1-5-21-2567842643-4237732637-164592030-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2567842643-4237732637-164592030-1004 - Limited - Enabled)
 
==================== Faulty Device Manager Devices =============
 
Name: Microsoft Virtual WiFi Miniport Adapter
Description: Microsoft Virtual WiFi Miniport Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: vwifimp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
Name: Qualcomm Atheros AR8152/8158 PCI-E Fast Ethernet Controller (NDIS 6.20)
Description: Qualcomm Atheros AR8152/8158 PCI-E Fast Ethernet Controller (NDIS 6.20)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/04/2014 05:31:35 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (11/04/2014 04:36:42 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (11/02/2014 11:52:55 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (10/31/2014 08:16:32 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (10/30/2014 03:47:17 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
 
System errors:
=============
Error: (11/04/2014 05:30:40 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:30:40 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:30:16 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:30:15 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:30:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)
 
Error: (11/04/2014 05:29:18 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:29:11 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:29:11 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
Error: (11/04/2014 05:29:08 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 4:49:35 PM on ‎4/‎11/‎2014 was unexpected.
 
Error: (11/04/2014 04:47:28 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
 
 
Microsoft Office Sessions:
=========================
Error: (11/04/2014 05:31:35 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"E:\Aspire drivers\HitmanPro_x64.exe
 
Error: (11/04/2014 04:36:42 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"E:\Aspire drivers\HitmanPro_x64.exe
 
Error: (11/02/2014 11:52:55 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files\TOSHIBA\flashcards\Hotkey\TCrdKBB.exe
 
Error: (10/31/2014 08:16:32 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files\TOSHIBA\flashcards\Hotkey\TCrdKBB.exe
 
Error: (10/30/2014 03:47:17 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files\TOSHIBA\flashcards\Hotkey\TCrdKBB.exe
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-11-02 11:53:30.784
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.694
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.601
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.502
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.409
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.316
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:53:30.207
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.3\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:52:51.070
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.1\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:52:50.976
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.1\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-11-02 11:52:50.881
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\MYOB\AccountRight\2013.1\AU\BASlink\bcrypt.dll because the set of per-page image hashes could not be found on the system.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™2 Duo CPU T6670 @ 2.20GHz
Percentage of memory in use: 40%
Total physical RAM: 2939.97 MB
Available physical RAM: 1759.2 MB
Total Pagefile: 5878.23 MB
Available Pagefile: 4608.93 MB
Total Virtual: 2047.88 MB
Available Virtual: 1902.09 MB
 
==================== Drives ================================
 
Drive c: (S3A8943D004) (Fixed) (Total:454.95 GB) (Free:341.42 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (Elements) (Fixed) (Total:1862.98 GB) (Free:1748.84 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F970151B)
Partition 1: (Active) - (Size=1.5 GB) - (Type=27)
Partition 2: (Not Active) - (Size=454.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=9.3 GB) - (Type=17)
 
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 8C1D599D)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
==================== End Of Log ============================


#12 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 04 November 2014 - 05:10 AM

Users shortcut scan result (x86) Version: 02-11-2014
Ran by Dulana at 2014-11-04 17:34:54
Running from E:\Aspire drivers\av bleep
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\UserGuide.lnk -> C:\TOSHIBA\Docs\UserGuide.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk -> C:\Program Files\Adobe Download Assistant\Adobe Download Assistant.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk -> C:\Program Files\Adobe\Adobe Help\Adobe Help.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Widget Browser.lnk -> C:\Program Files\Adobe\Adobe Widget Browser\Adobe Widget Browser.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Media Creator Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Recovery Media Creator\TrdcHelp.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Media Creator.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Recovery Media Creator\TRMCLcher.exe (Toshiba Information Equipment(Hangzhou)Co.,LTD)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk -> C:\Program Files\Common Files\microsoft shared\Windows Live\SIGNINOPTIONS.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Call.lnk -> C:\Program Files\Windows Live\Messenger\wlcstart.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mail.lnk -> C:\Program Files\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Messenger .lnk -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Movie Maker.lnk -> C:\Program Files\Windows Live\Photo Gallery\MovieMaker.Exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Photo Gallery.lnk -> C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk -> C:\Program Files\Windows Live\Writer\WindowsLiveWriter.exe (Microsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III - The Frozen Throne Readme.lnk -> C:\Program Files\Warcraft III\support\Layout\(PC)Index.html (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III - The Frozen Throne.lnk -> C:\Program Files\Warcraft III\Frozen Throne.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III and The Frozen Thone Uninstall.lnk -> C:\Windows\War3Unin.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III Readme.lnk -> C:\Program Files\Warcraft III\support\Layout\Index.html (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III Uninstall.lnk -> C:\Windows\War3Unin.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III World Editor.lnk -> C:\Program Files\Warcraft III\World Editor.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III.lnk -> C:\Program Files\Warcraft III\Warcraft III.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\Uninstall.lnk -> C:\Program Files\vividwireless\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\User Manual.lnk -> C:\Program Files\vividwireless\usermanual\usermanual_en-us.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\vividwireless.lnk -> C:\Program Files\vividwireless\vividwireless.exe (HUAWEI)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Batch Creator.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vsbatch2pdf.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Creator.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\PDFEditor.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Help.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\expertpdf.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Home.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\Home.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF to Word converter.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vspdf2word.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\PDF Settings Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\settingseditor.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\Watermarks Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\WatermarkEd.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Help.lnk -> C:\Program Files\Nikon\ViewNX\ViewNX.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Readme.lnk -> C:\Program Files\Nikon\ViewNX\Readme.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX.lnk -> C:\Program Files\Nikon\ViewNX\ViewNX.exe (Nikon Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Applications and Drivers.lnk -> C:\Program Files\TOSHIBA\TOSAPINS\COMPS1 ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Bulletin Board.lnk -> C:\Program Files\TOSHIBA\BulletinBoard\TosBulletinBoard.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA ReelTime.lnk -> C:\Program Files\TOSHIBA\ReelTime\TosReelTime.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Accessibility.lnk -> C:\Program Files\TOSHIBA\Utilities\TACSPROP.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Face Recognition Help.lnk -> C:\Program Files\TOSHIBA\SmartFaceV\Help\1033\index.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Face Recognition.lnk -> C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVSetting.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HDD SSD Alert Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\SSDAlert1.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HDD SSD Alert.lnk -> C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSSDAlert.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HWSetup.lnk -> C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\PC Diagnostic Tool.lnk -> C:\Program Files\TOSHIBA\PCDiag\PCDiag.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Restart Flash Cards.lnk -> C:\Program Files\TOSHIBA\FlashCards\TfcRst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Service Station.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Settings for Flash Cards.lnk -> C:\Program Files\TOSHIBA\FlashCards\TfcConf\TfcConf.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\TOSHIBA Assist.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Assist\TInTouch.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Web Camera Application Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\Web Camera Application Help.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Web Camera Application.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Zooming Utility Help.lnk -> C:\Program Files\TOSHIBA\SmoothView\SmoothView.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Zooming Utility.lnk -> C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller Help.lnk -> C:\Program Files\TOSHIBA\Media Controller\Help\ToshibaMediaController.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller Plug-in Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Media Controller Plug-in\Help\index.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller.lnk -> C:\Program Files\TOSHIBA\Media Controller\MediaController.exe (Toshiba Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Configure Microphone.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\TosSrWsN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Read me.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\ReadmeUS.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\TOSHIBA Speech System Help.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\Tossps.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Voice Commands.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\TosvceN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Web Speak.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\ToswbrN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\1.lnk -> C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\2.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfAddGadgets.exe (TOSHIBA CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\4.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\Disc Creator Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\Disc Creator.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\DVD-RAM Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\TosRamUtil.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio V5\LogoMaker.lnk -> C:\Program Files\Studio V5\LogoMaker\LogoMaker.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Help.lnk -> C:\Program Files\Nikon\Nikon Transfer\NikonTransfer.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Readme.lnk -> C:\Program Files\Nikon\Nikon Transfer\Readme.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\MYOB AccountRight Standard 2013.5 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.5\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.5\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\MYOB AccountRight Standard 2013.4 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.4\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.4\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\MYOB AccountRight Standard 2013.3 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.3\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.3\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\MYOB AccountRight Plus 2013.1 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.1\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.1\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\MYOB AccountRight Basics 2012.10 AU.lnk -> C:\Program Files\MYOB\AccountRight\2012.10\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2012.10\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\msaccess.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\excel.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenote.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\powerpnt.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\mspub.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Send to OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\winword.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Language Preferences.lnk -> C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Upload Center.lnk -> C:\Program Files\Microsoft Office 15\root\office15\msouc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Digital Certificate for VBA Projects.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Clip Organizer.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\cagicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Language Preferences.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Upload Center.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\oisicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center\Microsoft Mouse and Keyboard Center.lnk -> c:\Windows\Installer\{9FE75E68-96A2-48F3-90AB-34E6B8C9989D}\DeviceCenter.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk -> C:\Program Files\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager\Intel® Matrix Storage Console.lnk -> C:\Program Files\Intel\Intel Matrix Storage Manager\Shell.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Casual Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Family Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Kids Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All MMO Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk -> C:\Program Files\CCleaner\uninst.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu Readme.lnk -> C:\Program Files\Canon\SolutionMenu\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu.lnk -> C:\Program Files\Canon\SolutionMenu\CNSLMAIN.EXE (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer Readme.lnk -> C:\Program Files\Canon\MyPrinter\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX 2.1.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\mpnex21.exe (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX Readme.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX Readme.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\CNEZMAIN.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series Manual\Uninstall.lnk -> C:\Program Files\Canon\IJ Manual\CANON MX860 SERIES\uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series\Readme.lnk -> C:\Program Files\CanonBJ\IJPrinter\Canon MX860 series\readme_English.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Canon IJ Network Tool ReadMe.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Canon IJ Network Tool.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\CNMNPUT.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Uninstaller.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\CNMNUU.exe (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Canon IJ Network Scan Utility ReadMe.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Canon IJ Network Scan Utility.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Uninstaller.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSU.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\Links\SkyDrive.lnk -> C:\Program Files\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk -> C:\Program Files\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Working Stock Sheet2011-2 - Shortcut.lnk -> S:\SEEDS\Stock\Working Stock Sheet2011-2.xlsx (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Seed Stock\Shortcut to Seed In Stock2_oct_06.lnk -> S:\TRADING\SEED DEPT\Seed Info\Inventory\rollback 23rd July 2007\Inventory\Seed In Stock2_oct_06.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Consignment Stock\Shortcut to Moolyella Consignment stock 03-11-09.lnk -> S:\SEEDS\Pickers & Suppliers\Seed suppliers\Seton Johns\S & T Johns\Moolyella Consignment stock 03-11-09.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Pilbara Seedlist March2009.lnk -> S:\SEEDS\Pilbara\Pilbara North WA Seedlists\Pilbara list in use 2008\Pilbara Seedlist March2009.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Shortcut to SEEDS.lnk -> S:\SEEDS (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Working Stock Sheet2011-2 - Shortcut.lnk -> S:\SEEDS\Stock\Working Stock Sheet2011-2.xlsx (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Seed Stock\Shortcut to Seed In Stock2_oct_06.lnk -> S:\TRADING\SEED DEPT\Seed Info\Inventory\rollback 23rd July 2007\Inventory\Seed In Stock2_oct_06.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Consignment Stock\Shortcut to Moolyella Consignment stock 03-11-09.lnk -> S:\SEEDS\Pickers & Suppliers\Seed suppliers\Seton Johns\S & T Johns\Moolyella Consignment stock 03-11-09.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Pilbara Seedlist March2009.lnk -> S:\SEEDS\Pilbara\Pilbara North WA Seedlists\Pilbara list in use 2008\Pilbara Seedlist March2009.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Shortcut to SEEDS.lnk -> S:\SEEDS (No File)
Shortcut: C:\Users\Dulana\Links\100NCD60.lnk -> C:\Users\Dulana\Desktop\100NCD60 (No File)
Shortcut: C:\Users\Dulana\Links\Desktop.lnk -> C:\Users\Dulana\Desktop ()
Shortcut: C:\Users\Dulana\Links\Downloads.lnk -> C:\Users\Dulana\Downloads ()
Shortcut: C:\Users\Dulana\Links\Dropbox.lnk -> C:\Users\Dulana\Dropbox ()
Shortcut: C:\Users\Dulana\Links\OneDrive.lnk -> C:\Users\Dulana\SkyDrive ()
Shortcut: C:\Users\Dulana\Documents\Documents - Shortcut.lnk -> C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms ()
Shortcut: C:\Users\Dulana\Desktop\AccountRight 2014.4.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\Desktop\e-tax 2014.lnk -> C:\Program Files\etax2014\etax2014.exe ()
Shortcut: C:\Users\Dulana\Desktop\Google Chrome.lnk -> C:\Users\Dulana\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Dulana\Desktop\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\Desktop\Microsoft SkyDrive.lnk -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (No File)
Shortcut: C:\Users\Dulana\Desktop\Nikon Transfer.lnk -> C:\Program Files\Nikon\Nikon Transfer\NktTransfer.exe (Nikon Corporation)
Shortcut: C:\Users\Dulana\Desktop\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\Desktop\PASES - Shortcut.lnk -> C:\MY BUSINESSES\PASES ()
Shortcut: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\FAUNA ID PHOTOS\Threatened Birds\Little Lorikeet1.lnk -> C:\Users\Dulana\Desktop\DARKHEART\FAUNA ID PHOTOS\Local fauna to know\Threatened Birds\Little Lorikeet1.jpg (No File)
Shortcut: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\FAUNA ID PHOTOS\Threatened Birds\littlelorikeet1.lnk -> C:\Users\Dulana\Desktop\DARKHEART\FAUNA ID PHOTOS\Local fauna to know\Threatened Birds\littlelorikeet1.jpg (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivitizeVPN\PrivitizeVPN.lnk -> C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivitizeVPN\Uninstall PrivitizeVPN.lnk -> C:\Program Files\PrivitizeVPN\uninstall.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\MYOB AccountRight 2014.4.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\MYOB AccountRight 2014.3.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\MYOB AccountRight 2014.2.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\MYOB AccountRight 2014.1.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\Add-Ons\MYOB Add-On Connector.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2013\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\e-tax 2014.lnk -> C:\Program Files\etax2014\etax2014.exe ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\e-tax help.lnk -> C:\Program Files\etax2014\etaxHelp.exe ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\e-tax 2012.lnk -> C:\Program Files\etax2012\etax2012.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\e-tax help.lnk -> C:\Program Files\etax2012\etaxHelp.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\e-tax 2011.lnk -> C:\Program Files\etax2011\etax2011.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\e-tax help.lnk -> C:\Program Files\etax2011\etaxHelp.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe (Dropbox, Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Dropbox.lnk -> C:\Users\Dulana\Dropbox ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Google Chrome.lnk -> C:\Users\Dulana\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Excel\Swimming%20Pond%20Quotation%20worksheet303423292424913823\Swimming%20Pond%20Quotation%20worksheet.xlsx.lnk -> C:\Users\Dulana\Desktop\MY BUSINESSES\PASES\AQUATIC\SWIMMING PONDS\Swimming Pond Quotation\Swimming Pond Quotation worksheet.xlsx (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0001.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_03\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0002.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0003.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0004.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0005.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0006.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0007.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_17\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0008.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0009.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0010.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0011.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0012.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0013.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0014.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0015.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0016.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_10\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0017.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0018.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0019.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0020.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0021.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0022.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0023.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0024.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0025.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0026.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0027.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0028.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0029.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0030.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0013.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0031.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0014.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0032.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0015.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0033.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0034.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0035.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0036.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0037.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0038.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0039.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0040.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0041.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0042.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0043.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0044.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_12_01\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0045.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0046.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0047.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0048.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0049.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_03_09\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0050.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_03_09\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0051.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_06\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0052.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_09\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0053.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_09\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0054.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0055.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0056.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0057.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0058.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0059.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0060.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0061.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0062.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0063.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0064.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0065.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0066.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0067.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0068.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0069.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0070.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0071.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_20\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0072.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0073.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0074.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_21\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0075.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_21\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0076.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0077.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0078.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0079.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0080.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0081.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0001.jpg (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0082.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0002.pdf (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0083.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0084.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0001.pdf (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0085.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0086.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0087.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_19\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0088.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0089.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0090.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0091.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0092.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0093.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0094.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0095.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_10_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0096.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_10_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0097.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_02_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0098.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_02_28\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0099.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0100.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0101.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0102.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0103.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0104.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0105.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0106.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0107.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0108.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0109.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0110.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0111.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0112.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0113.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0114.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0115.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0116.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0117.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0118.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0119.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_04\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0120.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0121.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0122.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0123.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0124.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0125.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0126.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0127.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0128.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0129.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0130.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0131.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0132.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0133.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0134.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0135.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0136.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0137.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0138.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0139.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0140.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0141.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0142.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0143.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_02\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0144.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_02\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0145.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0146.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0147.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_01\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0148.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_01\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0149.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_03\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0150.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_16\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0151.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0152.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0153.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_08_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0154.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_09_11\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0155.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0156.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0157.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0158.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0159.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_05\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0160.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0161.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0162.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0163.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0164.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0165.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_07\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0166.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0167.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0168.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0169.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0170.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0171.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0172.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0173.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0174.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0175.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0176.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0177.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0178.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0179.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0180.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0011.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0181.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0182.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0013.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0183.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0014.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0184.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0185.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_31\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0186.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_04\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0187.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0188.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_05\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0189.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0190.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0191.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0192.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0193.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0194.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0195.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0196.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0007.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0197.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0198.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0199.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0200.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0201.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_16\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0202.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_16\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0203.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0204.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0205.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0206.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0207.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0208.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0209.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0210.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0211.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0212.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0213.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0214.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0215.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0216.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0217.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0218.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0219.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0220.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0221.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0222.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0223.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0224.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0225.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0226.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0227.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0228.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0229.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0230.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0231.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0232.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0233.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0234.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0235.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0236.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0237.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0238.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0239.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0240.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0241.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0242.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0243.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0244.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0245.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0246.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0247.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0248.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0249.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0250.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0251.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0252.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0253.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0254.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0255.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0256.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_05_08\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0257.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_05_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0258.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0259.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0260.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0261.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0262.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0263.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0264.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0265.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0266.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0267.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0268.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0269.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0270.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0271.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0272.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0273.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0274.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0275.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0276.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0277.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0278.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0279.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0280.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_20\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0281.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0282.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0283.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0284.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0285.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0286.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0287.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0288.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0289.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0290.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0009.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0291.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0010.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0292.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0293.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0294.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0295.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0296.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0297.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0298.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0299.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0300.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0301.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0302.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0303.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0304.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0305.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0306.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0307.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0308.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0309.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_09\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0310.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0311.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0312.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0313.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0314.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0315.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0316.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0317.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0318.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0319.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_03\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0320.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_03\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0321.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_05\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0322.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0323.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0324.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0325.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\ml\hstr_0001.lnk -> C:\Users\Dulana\Desktop\Mail_20140909\kumi.pdf (No File)
Shortcut: C:\Users\Public\Desktop\Adobe Reader XI.lnk -> C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Public\Desktop\Google Earth.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google)
Shortcut: C:\Users\Public\Desktop\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
 
 
 
 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Mobile Device Center.lnk -> C:\Windows\Installer\{904CCF62-818D-4675-BC76-D37EB399F917}\wmdc.exe (Microsoft Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Uninstall.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {F007CBCE-D714-4C0B-8CE9-9B0D78116468}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Flash Cards Help.lnk -> C:\Windows\hh.exe (Microsoft Corporation) -> "C:\Program Files\TOSHIBA\FlashCards\Help\TFC.chm"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\3.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /wps
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\5.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /profile
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\6.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /radar
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\7.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /help
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Uninstall.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {E9757890-7EC5-46C8-99AB-B00F07B6525C}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Start Google Earth in DirectX mode.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google) -> -setDX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Start Google Earth in OpenGL mode.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google) -> -setOGL
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Uninstall Google Earth .lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu Uninstall.lnk -> C:\Program Files\Canon\SolutionMenu\uninst.exe (CANON INC.) -> C:\Program Files\Canon\SolutionMenu\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer Uninstall.lnk -> C:\Program Files\Canon\MyPrinter\uninst.exe (CANON INC.) -> C:\Program Files\Canon\MyPrinter\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer.lnk -> C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (CANON INC.) -> /mn
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX Uninstall.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\Maint.exe (CANON INC.) -> /UninstallRemove C:\Program Files\Canon\MP Navigator EX 2.1\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX Uninstall.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe (CANON INC.) -> C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series Manual\Canon MX860 series On-screen Manual.lnk -> C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe (CANON INC.) -> "C:\PROGRAM FILES\Canon\IJ Manual\CANON MX860 SERIES\English\Info.egv"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series\MP Drivers Uninstaller.lnk -> C:\Windows\System32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series\DelDrv.exe (CANON INC.) -> /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series /L0x0009
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Audio).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:AD
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Data).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:DD
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Image).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:ITD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /systemstartup
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MYOB Add-On Connector.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe (MYOB Technology Pty. Ltd.) -> /startup
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\Uninstall e-tax 2014.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {42D5C0B2-A309-4F84-9BD7-5DDDFE6C09E1}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\Uninstall e-tax 2012.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {B0F1B02F-47A6-411D-A38B-E44CC7F53CCC}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\Uninstall e-tax 2011.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {C078C299-C2C2-4110-A6EF-8D5E66C228DA}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /home
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Audio).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:AD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Data).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:DD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Image).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:ITD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation) -> /recycle
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Public\Desktop\Canon MX860 series On-screen Manual.lnk -> C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe (CANON INC.) -> "C:\PROGRAM FILES\Canon\IJ Manual\CANON MX860 SERIES\English\Info.egv"
 
 
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Camera Control Pro download - 30 days free trial.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=CCPTRI
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Capture NX download - 30 days free trial.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=NCAPTURE
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Customer support page.url -> hxxp://www.nikon-asia.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Nikon Imaging home page.url -> hxxp://nikonimaging.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Nikon RAW Codec download.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=WINRCODE
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Default\Favorites\TOSHIBA Recommended Sites\Norton - Your Security Resource.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA Recommended Sites\WildTangent ORB Games.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA\TOSHIBA Extended Warranty.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA\TOSHIBA Services & Support.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\Links\1. WildTangent ORB.url -> hxxp://toshiba.wildgames.com/?mc=iefav&DP=toshibaapj
InternetURL: C:\Users\Default\Favorites\Links\2. Norton Security Center.url -> hxxp://www.symantec.com/content/en/aa/home_homeoffice/theme/anz_nsc/index.html
InternetURL: C:\Users\Dulana\Favorites\Macdonald Hotels Careers - Job Listing.url -> hxxp://www.macdonald-careers.co.uk/Jobs/Jobs.aspx
InternetURL: C:\Users\Dulana\Favorites\UK Hotels - Macdonald Hotels UK.url -> hxxp://www.macdonaldhotels.co.uk/
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Get Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=69172
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Mail.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Spaces.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68927
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA Recommended Sites\Norton - Your Security Resource.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA Recommended Sites\WildTangent ORB Games.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA\TOSHIBA Extended Warranty.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA\TOSHIBA Services & Support.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Autos.url -> hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Entertainment.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Money.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Sports.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN.url -> hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSNBC News.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\IE Add-on site.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://go.microsoft.com/fwlink/?linkid=55424
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://go.microsoft.com/fwlink/?linkid=68920
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\Dulana\Favorites\Links\Bored Aussie  View topic - COMMON ERROR SOLUTIONS and FAQ's - READ BEFORE POSTING.url -> hxxp://forums.boredaussie.com/viewtopic.php?p=493645
InternetURL: C:\Users\Dulana\Favorites\Links\iiTalk VOIP Service - Naked DSL Plan - iiNet Australia.url -> hxxp://www.iinet.net.au/naked-dsl/iitalk.html
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (2).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (3).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (4).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (5).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites.url -> 0
InternetURL: C:\Users\Dulana\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\CURRENT REPORTS\INSTALL\Mail-Washer\FireTrust MailWasher Pro 6.5\ForumW.org  Index.url -> hxxp://www.forumw.org/index.php
InternetURL: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox Website.URL -> hxxp://www.dropbox.com
 
==================== End of log =============================
Users shortcut scan result (x86) Version: 02-11-2014
Ran by Dulana at 2014-11-04 17:34:54
Running from E:\Aspire drivers\av bleep
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\UserGuide.lnk -> C:\TOSHIBA\Docs\UserGuide.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk -> C:\Program Files\Adobe Download Assistant\Adobe Download Assistant.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk -> C:\Program Files\Adobe\Adobe Help\Adobe Help.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Widget Browser.lnk -> C:\Program Files\Adobe\Adobe Widget Browser\Adobe Widget Browser.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Media Creator Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Recovery Media Creator\TrdcHelp.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Media Creator.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Recovery Media Creator\TRMCLcher.exe (Toshiba Information Equipment(Hangzhou)Co.,LTD)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk -> C:\Program Files\Common Files\microsoft shared\Windows Live\SIGNINOPTIONS.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Call.lnk -> C:\Program Files\Windows Live\Messenger\wlcstart.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mail.lnk -> C:\Program Files\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Messenger .lnk -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Movie Maker.lnk -> C:\Program Files\Windows Live\Photo Gallery\MovieMaker.Exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Photo Gallery.lnk -> C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk -> C:\Program Files\Windows Live\Writer\WindowsLiveWriter.exe (Microsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III - The Frozen Throne Readme.lnk -> C:\Program Files\Warcraft III\support\Layout\(PC)Index.html (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III - The Frozen Throne.lnk -> C:\Program Files\Warcraft III\Frozen Throne.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III and The Frozen Thone Uninstall.lnk -> C:\Windows\War3Unin.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III Readme.lnk -> C:\Program Files\Warcraft III\support\Layout\Index.html (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III Uninstall.lnk -> C:\Windows\War3Unin.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III World Editor.lnk -> C:\Program Files\Warcraft III\World Editor.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III\Warcraft III.lnk -> C:\Program Files\Warcraft III\Warcraft III.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\Uninstall.lnk -> C:\Program Files\vividwireless\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\User Manual.lnk -> C:\Program Files\vividwireless\usermanual\usermanual_en-us.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vividwireless\vividwireless.lnk -> C:\Program Files\vividwireless\vividwireless.exe (HUAWEI)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Batch Creator.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vsbatch2pdf.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Creator.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vspdfprsrv.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\PDFEditor.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Help.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\expertpdf.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF Home.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\Home.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\eXPert PDF to Word converter.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\vspdf2word.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\PDF Settings Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\settingseditor.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft\eXPert PDF 6\Watermarks Editor.lnk -> C:\Program Files\Visagesoft\eXPert PDF 6\WatermarkEd.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Help.lnk -> C:\Program Files\Nikon\ViewNX\ViewNX.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Readme.lnk -> C:\Program Files\Nikon\ViewNX\Readme.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX.lnk -> C:\Program Files\Nikon\ViewNX\ViewNX.exe (Nikon Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Applications and Drivers.lnk -> C:\Program Files\TOSHIBA\TOSAPINS\COMPS1 ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Bulletin Board.lnk -> C:\Program Files\TOSHIBA\BulletinBoard\TosBulletinBoard.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA ReelTime.lnk -> C:\Program Files\TOSHIBA\ReelTime\TosReelTime.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Accessibility.lnk -> C:\Program Files\TOSHIBA\Utilities\TACSPROP.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Face Recognition Help.lnk -> C:\Program Files\TOSHIBA\SmartFaceV\Help\1033\index.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Face Recognition.lnk -> C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVSetting.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HDD SSD Alert Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\SSDAlert1.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HDD SSD Alert.lnk -> C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSSDAlert.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\HWSetup.lnk -> C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\PC Diagnostic Tool.lnk -> C:\Program Files\TOSHIBA\PCDiag\PCDiag.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Restart Flash Cards.lnk -> C:\Program Files\TOSHIBA\FlashCards\TfcRst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Service Station.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Settings for Flash Cards.lnk -> C:\Program Files\TOSHIBA\FlashCards\TfcConf\TfcConf.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\TOSHIBA Assist.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Assist\TInTouch.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Web Camera Application Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\Web Camera Application Help.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Web Camera Application.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (TOSHIBA CORPORATION.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Zooming Utility Help.lnk -> C:\Program Files\TOSHIBA\SmoothView\SmoothView.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Zooming Utility.lnk -> C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller Help.lnk -> C:\Program Files\TOSHIBA\Media Controller\Help\ToshibaMediaController.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller Plug-in Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Media Controller Plug-in\Help\index.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\TOSHIBA Media Controller\TOSHIBA Media Controller.lnk -> C:\Program Files\TOSHIBA\Media Controller\MediaController.exe (Toshiba Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Configure Microphone.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\TosSrWsN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Read me.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\ReadmeUS.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\TOSHIBA Speech System Help.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\Tossps.chm ()
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Voice Commands.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\TosvceN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Speech System\Web Speak.lnk -> C:\Program Files\TOSHIBA\Speech System NLS\ToswbrN.exe (TOSHIBA Corporation.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\1.lnk -> C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\2.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfAddGadgets.exe (TOSHIBA CORPORATION)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\4.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\Disc Creator Help.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\Disc Creator.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\CD&DVD Applications\DVD-RAM Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\TosRamUtil.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio V5\LogoMaker.lnk -> C:\Program Files\Studio V5\LogoMaker\LogoMaker.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Help.lnk -> C:\Program Files\Nikon\Nikon Transfer\NikonTransfer.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Readme.lnk -> C:\Program Files\Nikon\Nikon Transfer\Readme.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\MYOB AccountRight Standard 2013.5 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.5\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.5\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.5 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\MYOB AccountRight Standard 2013.4 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.4\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.4\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.4 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\MYOB AccountRight Standard 2013.3 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.3\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.3\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Standard 2013.3 AU\Tools\Install AccountRight API.lnk -> C:\Program Files\MYOB\AccountRight\API_Installer\MYOB.AccountRight.API.Bootstrapper.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\MYOB AccountRight Plus 2013.1 AU.lnk -> C:\Program Files\MYOB\AccountRight\2013.1\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2013.1\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Plus 2013.1 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Check for MYOB Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\agent.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\MYOB AccountRight Basics 2012.10 AU.lnk -> C:\Program Files\MYOB\AccountRight\2012.10\AU\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Register for Updates.lnk -> C:\Program Files\MYOB\AccountRight\2012.10\AU\MYOBRegUpdate.exe (MYOB Australia Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight Basics 2012.10 AU\Set Library Location.lnk -> C:\Program Files\MYOB\AccountRight\Servers\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\msaccess.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\excel.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenote.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\powerpnt.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\mspub.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Send to OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\winword.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Language Preferences.lnk -> C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Upload Center.lnk -> C:\Program Files\Microsoft Office 15\root\office15\msouc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Digital Certificate for VBA Projects.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Clip Organizer.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\cagicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Language Preferences.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office 2010 Upload Center.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2010 Tools\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\oisicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center\Microsoft Mouse and Keyboard Center.lnk -> c:\Windows\Installer\{9FE75E68-96A2-48F3-90AB-34E6B8C9989D}\DeviceCenter.ico ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk -> C:\Program Files\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager\Intel® Matrix Storage Console.lnk -> C:\Program Files\Intel\Intel Matrix Storage Manager\Shell.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Casual Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Family Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Kids Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All MMO Games.lnk -> C:\Program Files\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk -> C:\Program Files\CCleaner\uninst.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu Readme.lnk -> C:\Program Files\Canon\SolutionMenu\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu.lnk -> C:\Program Files\Canon\SolutionMenu\CNSLMAIN.EXE (No File)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer Readme.lnk -> C:\Program Files\Canon\MyPrinter\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX 2.1.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\mpnex21.exe (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX Readme.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX Readme.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\Readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\CNEZMAIN.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series Manual\Uninstall.lnk -> C:\Program Files\Canon\IJ Manual\CANON MX860 SERIES\uninstall.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series\Readme.lnk -> C:\Program Files\CanonBJ\IJPrinter\Canon MX860 series\readme_English.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Canon IJ Network Tool ReadMe.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Canon IJ Network Tool.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\CNMNPUT.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Tool\Uninstaller.lnk -> C:\Program Files\Canon\Canon IJ Network Tool\CNMNUU.exe (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Canon IJ Network Scan Utility ReadMe.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\readme.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Canon IJ Network Scan Utility.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities\Canon IJ Network Scan Utility\Uninstaller.lnk -> C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSU.EXE (CANON INC.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\Links\SkyDrive.lnk -> C:\Program Files\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk -> C:\Program Files\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Working Stock Sheet2011-2 - Shortcut.lnk -> S:\SEEDS\Stock\Working Stock Sheet2011-2.xlsx (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Seed Stock\Shortcut to Seed In Stock2_oct_06.lnk -> S:\TRADING\SEED DEPT\Seed Info\Inventory\rollback 23rd July 2007\Inventory\Seed In Stock2_oct_06.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\Stock\Consignment Stock\Shortcut to Moolyella Consignment stock 03-11-09.lnk -> S:\SEEDS\Pickers & Suppliers\Seed suppliers\Seton Johns\S & T Johns\Moolyella Consignment stock 03-11-09.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Pilbara Seedlist March2009.lnk -> S:\SEEDS\Pilbara\Pilbara North WA Seedlists\Pilbara list in use 2008\Pilbara Seedlist March2009.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES Aug\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Shortcut to SEEDS.lnk -> S:\SEEDS (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Working Stock Sheet2011-2 - Shortcut.lnk -> S:\SEEDS\Stock\Working Stock Sheet2011-2.xlsx (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Seed Stock\Shortcut to Seed In Stock2_oct_06.lnk -> S:\TRADING\SEED DEPT\Seed Info\Inventory\rollback 23rd July 2007\Inventory\Seed In Stock2_oct_06.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\Stock\Consignment Stock\Shortcut to Moolyella Consignment stock 03-11-09.lnk -> S:\SEEDS\Pickers & Suppliers\Seed suppliers\Seton Johns\S & T Johns\Moolyella Consignment stock 03-11-09.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Pilbara Seedlist March2009.lnk -> S:\SEEDS\Pilbara\Pilbara North WA Seedlists\Pilbara list in use 2008\Pilbara Seedlist March2009.xls (No File)
Shortcut: C:\Users\Dulana\SkyDrive\PASES\SEED\KIMSEED\SEED\Pilbara\PILBARA SEED COLLECTION\Shortcut to SEEDS.lnk -> S:\SEEDS (No File)
Shortcut: C:\Users\Dulana\Links\100NCD60.lnk -> C:\Users\Dulana\Desktop\100NCD60 (No File)
Shortcut: C:\Users\Dulana\Links\Desktop.lnk -> C:\Users\Dulana\Desktop ()
Shortcut: C:\Users\Dulana\Links\Downloads.lnk -> C:\Users\Dulana\Downloads ()
Shortcut: C:\Users\Dulana\Links\Dropbox.lnk -> C:\Users\Dulana\Dropbox ()
Shortcut: C:\Users\Dulana\Links\OneDrive.lnk -> C:\Users\Dulana\SkyDrive ()
Shortcut: C:\Users\Dulana\Documents\Documents - Shortcut.lnk -> C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms ()
Shortcut: C:\Users\Dulana\Desktop\AccountRight 2014.4.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\Desktop\e-tax 2014.lnk -> C:\Program Files\etax2014\etax2014.exe ()
Shortcut: C:\Users\Dulana\Desktop\Google Chrome.lnk -> C:\Users\Dulana\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Dulana\Desktop\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\Desktop\Microsoft SkyDrive.lnk -> C:\Users\Dulana\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (No File)
Shortcut: C:\Users\Dulana\Desktop\Nikon Transfer.lnk -> C:\Program Files\Nikon\Nikon Transfer\NktTransfer.exe (Nikon Corporation)
Shortcut: C:\Users\Dulana\Desktop\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\Desktop\PASES - Shortcut.lnk -> C:\MY BUSINESSES\PASES ()
Shortcut: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\FAUNA ID PHOTOS\Threatened Birds\Little Lorikeet1.lnk -> C:\Users\Dulana\Desktop\DARKHEART\FAUNA ID PHOTOS\Local fauna to know\Threatened Birds\Little Lorikeet1.jpg (No File)
Shortcut: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\FAUNA ID PHOTOS\Threatened Birds\littlelorikeet1.lnk -> C:\Users\Dulana\Desktop\DARKHEART\FAUNA ID PHOTOS\Local fauna to know\Threatened Birds\littlelorikeet1.jpg (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Console RAR manual.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR help.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivitizeVPN\PrivitizeVPN.lnk -> C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivitizeVPN\Uninstall PrivitizeVPN.lnk -> C:\Program Files\PrivitizeVPN\uninstall.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\MYOB AccountRight 2014.4.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.4\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.4\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\MYOB AccountRight 2014.3.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.3\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.3\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\MYOB AccountRight 2014.2.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.2\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.2\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\AccountRight User Guide (AU).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Help\AccountRight_UserGuide_AU.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\AccountRight User Guide (NZ).lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Help\AccountRight_UserGuide_NZ.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\MYOB AccountRight 2014.1.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Huxley.Application.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\MYOB AccountRight 2014.1\Tools\Set Library Location.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\MYOB AccountRight 2014.1\Huxley.LibraryConfig.exe (MYOB Technology Pty Ltd)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MYOB\Add-Ons\MYOB Add-On Connector.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe (MYOB Technology Pty. Ltd.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office 2013\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\e-tax 2014.lnk -> C:\Program Files\etax2014\etax2014.exe ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\e-tax help.lnk -> C:\Program Files\etax2014\etaxHelp.exe ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\e-tax 2012.lnk -> C:\Program Files\etax2012\etax2012.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\e-tax help.lnk -> C:\Program Files\etax2012\etaxHelp.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\e-tax 2011.lnk -> C:\Program Files\etax2011\etax2011.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\e-tax help.lnk -> C:\Program Files\etax2011\etaxHelp.exe (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe (Dropbox, Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Dropbox.lnk -> C:\Users\Dulana\Dropbox ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Google Chrome.lnk -> C:\Users\Dulana\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Dulana\AppData\Roaming\Microsoft\Excel\Swimming%20Pond%20Quotation%20worksheet303423292424913823\Swimming%20Pond%20Quotation%20worksheet.xlsx.lnk -> C:\Users\Dulana\Desktop\MY BUSINESSES\PASES\AQUATIC\SWIMMING PONDS\Swimming Pond Quotation\Swimming Pond Quotation worksheet.xlsx (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0001.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_03\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0002.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0003.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0004.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0005.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_15\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0006.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0007.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_17\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0008.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0009.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_08_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0010.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0011.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0012.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0013.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_12\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0014.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0015.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_09_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0016.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_10\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0017.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0018.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0019.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0020.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0021.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0022.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0023.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0024.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0025.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0026.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0027.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0028.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0029.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0030.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0013.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0031.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0014.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0032.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_13\IMG_0015.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0033.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0034.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0035.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0036.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_18\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0037.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0038.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_10_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0039.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0040.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0041.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0042.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_15\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0043.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_11_18\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0044.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2011_12_01\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0045.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0046.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0047.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0048.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_01_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0049.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_03_09\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0050.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_03_09\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0051.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_06\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0052.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_09\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0053.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_04_09\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0054.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0055.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0056.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0057.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0058.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0059.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0060.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0061.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0062.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0063.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0064.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0065.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_15\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0066.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0067.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_05_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0068.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0069.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0070.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_10\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0071.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_20\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0072.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0073.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_06_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0074.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_21\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0075.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_21\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0076.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0077.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0078.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0079.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_23\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0080.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0081.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0001.jpg (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0082.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0002.pdf (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0083.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0084.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG_0001.pdf (No File)
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0085.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_08_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0086.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0087.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_19\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0088.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0089.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0090.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0091.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0092.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0093.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0094.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_09_27\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0095.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_10_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0096.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2012_10_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0097.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_02_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0098.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_02_28\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0099.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0100.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0101.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0102.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0103.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0104.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0105.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0106.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0107.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0108.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0109.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0110.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0111.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_04_27\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0112.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0113.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0114.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0115.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0116.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0117.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0118.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_02\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0119.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_04\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0120.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0121.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0122.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0123.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0124.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0125.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0126.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_09\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0127.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0128.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0129.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0130.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0131.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0132.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0133.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0134.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0135.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0136.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0137.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0138.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0139.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0140.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_28\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0141.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0142.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_05_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0143.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_02\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0144.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_02\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0145.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0146.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_06_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0147.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_01\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0148.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_01\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0149.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_03\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0150.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_16\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0151.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0152.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_07_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0153.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_08_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0154.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_09_11\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0155.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0156.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0157.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_10_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0158.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0159.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_05\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0160.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0161.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0162.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0163.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_11_13\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0164.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0165.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_07\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0166.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2013_12_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0167.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0168.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_27\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0169.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0170.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0171.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0172.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0173.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0174.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0175.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0176.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0177.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0178.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0179.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0180.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0011.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0181.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0182.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0013.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0183.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_30\IMG_0014.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0184.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0185.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_01_31\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0186.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_04\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0187.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_05\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0188.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_05\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0189.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0190.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0191.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0192.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0193.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0194.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0195.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0196.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0007.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0197.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0198.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0199.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0010.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0200.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_11\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0201.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_16\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0202.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_16\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0203.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0204.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0205.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0206.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0207.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_19\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0208.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0209.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0210.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0211.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0212.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_22\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0213.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0214.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0215.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0216.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0217.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_28\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0218.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_02_28\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0219.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0220.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0221.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0222.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0223.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_22\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0224.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0225.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0226.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0227.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0228.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0229.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0230.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0231.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0232.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0233.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_29\IMG_0009.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0234.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0235.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0236.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0237.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0238.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0239.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0005.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0240.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_30\IMG_0006.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0241.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0242.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0243.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0244.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0245.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0246.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0247.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0248.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0249.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_03_31\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0250.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0251.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0252.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0253.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_01\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0254.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_24\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0255.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_04_30\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0256.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_05_08\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0257.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_05_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0258.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0259.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0260.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0261.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0262.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_12\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0263.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0264.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0265.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_13\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0266.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0267.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0268.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0269.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0003.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0270.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0271.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0272.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_23\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0273.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0274.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0275.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0276.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0277.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_06_26\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0278.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_07\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0279.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_07\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0280.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_20\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0281.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0282.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0283.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0284.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0285.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0004.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0286.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0287.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0288.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0289.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0008.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0290.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0009.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0291.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0010.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0292.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0011.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0293.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_07_25\IMG_0012.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0294.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_13\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0295.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_13\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0296.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0297.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0298.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0299.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_26\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0300.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0301.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0302.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0303.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0304.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0305.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0306.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0006.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0307.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_27\IMG_0007.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0308.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_08_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0309.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_09\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0310.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0311.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0312.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0002.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0313.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0003.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0314.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0004.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0315.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_10\IMG_0005.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0316.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_15\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0317.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_15\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0318.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_09_17\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0319.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_03\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0320.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_03\IMG_0001.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0321.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_05\IMG.jpg ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0322.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_26\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0323.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0324.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG_0001.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\sc\hstr_0325.lnk -> C:\Users\Dulana\Pictures\MP Navigator EX\2014_10_31\IMG_0002.pdf ()
Shortcut: C:\Users\Dulana\AppData\Roaming\Canon\MP Navigator EX V21\history\ml\hstr_0001.lnk -> C:\Users\Dulana\Desktop\Mail_20140909\kumi.pdf (No File)
Shortcut: C:\Users\Public\Desktop\Adobe Reader XI.lnk -> C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Public\Desktop\Google Earth.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google)
Shortcut: C:\Users\Public\Desktop\iTunes.lnk -> C:\Program Files\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
 
 
 
 
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Mobile Device Center.lnk -> C:\Windows\Installer\{904CCF62-818D-4675-BC76-D37EB399F917}\wmdc.exe (Microsoft Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX\ViewNX Uninstall.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {F007CBCE-D714-4C0B-8CE9-9B0D78116468}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Flash Cards Help.lnk -> C:\Windows\hh.exe (Microsoft Corporation) -> "C:\Program Files\TOSHIBA\FlashCards\Help\TFC.chm"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\3.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /wps
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\5.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /profile
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\6.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /radar
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\ConfigFree\7.lnk -> C:\Program Files\TOSHIBA\ConfigFree\cfmain.exe (TOSHIBA Corporation) -> /help
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Transfer\Nikon Transfer Uninstall.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {E9757890-7EC5-46C8-99AB-B00F07B6525C}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Start Google Earth in DirectX mode.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google) -> -setDX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Start Google Earth in OpenGL mode.lnk -> C:\Program Files\Google\Google Earth\client\googleearth.exe (Google) -> -setOGL
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Uninstall Google Earth .lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Solution Menu\Solution Menu Uninstall.lnk -> C:\Program Files\Canon\SolutionMenu\uninst.exe (CANON INC.) -> C:\Program Files\Canon\SolutionMenu\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer Uninstall.lnk -> C:\Program Files\Canon\MyPrinter\uninst.exe (CANON INC.) -> C:\Program Files\Canon\MyPrinter\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\My Printer\My Printer.lnk -> C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE (CANON INC.) -> /mn
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\MP Navigator EX 2.1\MP Navigator EX Uninstall.lnk -> C:\Program Files\Canon\MP Navigator EX 2.1\Maint.exe (CANON INC.) -> /UninstallRemove C:\Program Files\Canon\MP Navigator EX 2.1\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities\Easy-PhotoPrint EX\Easy-PhotoPrint EX Uninstall.lnk -> C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe (CANON INC.) -> C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.ini
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series Manual\Canon MX860 series On-screen Manual.lnk -> C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe (CANON INC.) -> "C:\PROGRAM FILES\Canon\IJ Manual\CANON MX860 SERIES\English\Info.egv"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX860 series\MP Drivers Uninstaller.lnk -> C:\Windows\System32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series\DelDrv.exe (CANON INC.) -> /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX860_series /L0x0009
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Audio).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:AD
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Data).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:DD
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Image).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:ITD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /systemstartup
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MYOB Add-On Connector.lnk -> C:\Users\Dulana\AppData\Local\Programs\MYOB\AddOnConnector\2.0.2014.4\MYOB.AccountRight.API.AddOnConnector.exe (MYOB Technology Pty. Ltd.) -> /startup
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2014\Uninstall e-tax 2014.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {42D5C0B2-A309-4F84-9BD7-5DDDFE6C09E1}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2012\Uninstall e-tax 2012.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {B0F1B02F-47A6-411D-A38B-E44CC7F53CCC}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-tax 2011\Uninstall e-tax 2011.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {C078C299-C2C2-4110-A6EF-8D5E66C228DA}
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk -> C:\Users\Dulana\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) -> /home
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Audio).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:AD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Data).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:DD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\SendTo\TOSHIBA Disc Creator(Image).lnk -> C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe (TOSHIBA Corporation) -> /SendTo:ITD
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk -> C:\Program Files\Microsoft Office 15\root\office15\outlook.exe (Microsoft Corporation) -> /recycle
ShortcutWithArgument: C:\Users\Dulana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\Public\Desktop\Canon MX860 series On-screen Manual.lnk -> C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe (CANON INC.) -> "C:\PROGRAM FILES\Canon\IJ Manual\CANON MX860 SERIES\English\Info.egv"
 
 
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Camera Control Pro download - 30 days free trial.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=CCPTRI
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Capture NX download - 30 days free trial.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=NCAPTURE
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Customer support page.url -> hxxp://www.nikon-asia.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Nikon Imaging home page.url -> hxxp://nikonimaging.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon\Nikon RAW Codec download.url -> hxxp://9k3x1jrq3kwx.nikonimaging.com/crosspoint/jump.cgi?R=int&L=en&O=w&P=WINRCODE
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Default\Favorites\TOSHIBA Recommended Sites\Norton - Your Security Resource.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA Recommended Sites\WildTangent ORB Games.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA\TOSHIBA Extended Warranty.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\TOSHIBA\TOSHIBA Services & Support.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Default\Favorites\Links\1. WildTangent ORB.url -> hxxp://toshiba.wildgames.com/?mc=iefav&DP=toshibaapj
InternetURL: C:\Users\Default\Favorites\Links\2. Norton Security Center.url -> hxxp://www.symantec.com/content/en/aa/home_homeoffice/theme/anz_nsc/index.html
InternetURL: C:\Users\Dulana\Favorites\Macdonald Hotels Careers - Job Listing.url -> hxxp://www.macdonald-careers.co.uk/Jobs/Jobs.aspx
InternetURL: C:\Users\Dulana\Favorites\UK Hotels - Macdonald Hotels UK.url -> hxxp://www.macdonaldhotels.co.uk/
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Get Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=69172
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=70742
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Mail.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68925
InternetURL: C:\Users\Dulana\Favorites\Windows Live\Windows Live Spaces.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68927
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA Recommended Sites\Norton - Your Security Resource.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA Recommended Sites\WildTangent ORB Games.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA\TOSHIBA Extended Warranty.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\TOSHIBA\TOSHIBA Services & Support.url -> https://partners.microsoft.com/PartnerProgram/PartnerMembershipCenter.aspx
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Autos.url -> hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Entertainment.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Money.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN Sports.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSN.url -> hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\Dulana\Favorites\MSN Websites\MSNBC News.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\IE Add-on site.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\IE site on Microsoft.com.url -> hxxp://go.microsoft.com/fwlink/?linkid=44661
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft At Home.url -> hxxp://go.microsoft.com/fwlink/?linkid=55424
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft At Work.url -> hxxp://go.microsoft.com/fwlink/?linkid=68920
InternetURL: C:\Users\Dulana\Favorites\Microsoft Websites\Microsoft Store.url -> hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\Dulana\Favorites\Links\Bored Aussie  View topic - COMMON ERROR SOLUTIONS and FAQ's - READ BEFORE POSTING.url -> hxxp://forums.boredaussie.com/viewtopic.php?p=493645
InternetURL: C:\Users\Dulana\Favorites\Links\iiTalk VOIP Service - Naked DSL Plan - iiNet Australia.url -> hxxp://www.iinet.net.au/naked-dsl/iitalk.html
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (2).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (3).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (4).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites (5).url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Dulana\Favorites\Links\Suggested Sites.url -> 0
InternetURL: C:\Users\Dulana\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Dulana\Desktop\PhD & Company Files\DARKHEART\CURRENT REPORTS\INSTALL\Mail-Washer\FireTrust MailWasher Pro 6.5\ForumW.org  Index.url -> hxxp://www.forumw.org/index.php
InternetURL: C:\Users\Dulana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox Website.URL -> hxxp://www.dropbox.com
 
==================== End of log =============================
 
 Results of screen317's Security Check version 0.99.89  
 Windows 7 Service Pack 1 x86 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 AVG Web TuneUp   
 CCleaner     
  Adobe Flash Player 12.0.0.70 Flash Player out of Date!  
 Adobe Reader XI  
 Google Chrome 35.0.1916.153  
 Google Chrome 36.0.1985.125  
````````Process Check: objlist.exe by Laurent````````  
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C: 0% 
````````````````````End of Log`````````````````````` 


#13 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 04 November 2014 - 05:12 AM

Could you please recommend a av scanner for my dads email account, he uses an apple desktop. I can run that scan also on all email accounts within the house.



#14 nasdaq

nasdaq

  • Malware Response Team
  • 38,753 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:07 AM

Posted 04 November 2014 - 08:11 AM


If this is the only defender installed

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

I suggest you install Microsoft Security Essentials.

Go to this page.
http://windows.microsoft.com/en-CA/windows/security-essentials-download

p.s.
This is the latest Microsoft Security softeare.
When installed it will disable Windows Defender.
Just leave it disable.

===

You can also run this ESET on all the computers

Please downloadesetlogo.pngOnline Scanner and save it to your Desktop.
  • Disable the realtime-protection of your antivirus and anti-malware programs because they might interfere with the scan.
  • Start installer.pngwith administartor privileges.
  • Select the option Yes, I accept the Terms of Use and click on Start.
  • Choose the following settings:
settings.png
  • Click on Start. The virus signature database will begin to download. This may take some time.
  • When completed the Online Scan will begin automatically.
    Note: This scan might take a long time! Please be patient.
  • When completed select Uninstall application on close if you so wish, but make sure you copy the logfile first!
  • Now click on Finish
  • A log filelog.pngis created at logpath.png
    Copy and paste the content of this log file in your next reply.
Note: Do not forget to re-enable your antivirus application after running the above scan!
eset.gif

lesestoff.png

#15 surelynot

surelynot
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:06:07 PM

Posted 05 November 2014 - 01:40 AM

This is the scan from my laptop. I will be running the scan on my bros laptop and dads comp soon, will post shortly.

 

The scan seemed to have picked up a trogan, I recently downloaded and android software to recover some information on my phone. This must have been where it came from.

 

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=9dd94d137070f044bc701b95fb13378f
# engine=20936
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2014-11-05 06:37:00
# local_time=2014-11-05 02:37:00 (+0800, W. Australia Standard Time)
# country="Australia"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='Microsoft Security Essentials'
# compatibility_mode=5895 16777213 100 100 0 38175014 0 0
# scanned=202616
# found=1
# cleaned=0
# scan_time=1716
sh=B6D66623DC977D21A2306B48426A32B5C1144B5F ft=1 fh=e74827f5a804e4b4 vn="Android/Exploit.Lotoor.EF trojan" ac=I fn="C:\Users\has\Downloads\android-recovery.exe"
 






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users