Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Russian popups and browser redirect


  • This topic is locked This topic is locked
13 replies to this topic

#1 razor9912

razor9912

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 22 March 2015 - 12:29 PM

Dell laptop, Windows 7 64bit,  Kaspersky antivirus was installed . Something snuck in that results in random popups in Russian and browser redirects(both google and IE). Redirects do not happen on every link click.  I ran numerous scan tools to no avail. TDSSkiller, ADWCleaner, Malwarebytes and a few others. None identified anything.

Finally gave up and reloaded from Dell factory image. Assume wrongly that it was gone. Still there. I have only reloaded a few programs like Office and recopied my documents folder.  Here are the FRST logs:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Dad (administrator) on MININT-J8E39LF on 22-03-2015 20:54:52
Running from C:\Users\Dad\Downloads
Loaded Profiles: Dad (Available profiles: Dad)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopiaService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Intel Corporation) C:\WINDOWS\System32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\System32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\WINDOWS\System32\rundll32.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopia.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\Roxio Burn.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [608112 2011-03-29] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6561384 2010-12-14] (Realtek Semiconductor)
HKLM\...\Run: [NVHotkey] => rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [4479648 2011-01-26] (Dell Inc.)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-25] (Creative Technology Ltd)
HKLM-x32\...\Run: [RemoteControl9] => C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2010-10-02] (CyberLink Corp.)
HKLM-x32\...\Run: [PDVD9LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe [50472 2010-09-18] (CyberLink Corp.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions)
HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] ()
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2011-01-30] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3723728 2015-03-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [WiTopia] => C:\Program Files\WiTopia\WiTopia.exe [814368 2014-06-06] (SparkLabs)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [HP Officejet Pro 8500 A910 (NET)] => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\MountPoints2: {442a9bc6-cfdb-11e4-b628-806e6f6e6963} - D:\SETUP.EXE
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2010-11-30] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [192616 2010-11-30] (NVIDIA Corporation)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.dell.com
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-03-09] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-01-30] (Adobe Systems Incorporated)
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-03-09] (Microsoft Corporation)
BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-23] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/thinkorswim -> C:\Program Files\thinkorswim\npthinkorswim.dll [2015-03-21] (TD Ameritrade)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/tossc -> C:\Program Files\thinkorswim\nptossc.dll [2015-03-21] (TD Ameritrade)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR Profile: C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-21]
CHR Extension: (Google Docs) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-21]
CHR Extension: (Google Drive) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-21]
CHR Extension: (YouTube) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-21]
CHR Extension: (Google Search) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-21]
CHR Extension: (Google Sheets) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-21]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
CHR Extension: (Google Wallet) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-21]
CHR Extension: (Gmail) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-21]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3416016 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [309232 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [901184 2010-12-14] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-12-14] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [974912 2010-12-14] (Intel Corporation) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WiTopiaService; C:\Program Files\WiTopia\WiTopiaService.exe [70432 2014-06-06] (SparkLabs)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [280544 2015-02-24] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [341472 2015-02-03] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [133088 2015-02-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [284128 2015-02-25] (AVG Technologies CZ, s.r.o.)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [67136 2011-07-06] (Fresco Logic)
S3 visctap0901; C:\Windows\System32\DRIVERS\visctap0901.sys [39048 2014-06-06] (The OpenVPN Project)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-22 20:54 - 2015-03-22 20:55 - 00014598 _____ () C:\Users\Dad\Downloads\FRST.txt
2015-03-22 20:54 - 2015-03-22 20:54 - 00000000 ____D () C:\FRST
2015-03-22 20:53 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Downloads\FRST64.exe
2015-03-22 09:14 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Local\Adobe
2015-03-22 09:12 - 2015-03-22 09:16 - 00109568 ___SH () C:\Users\Dad\Documents\Thumbs.db
2015-03-22 09:04 - 2015-03-22 09:04 - 00002266 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00001193 _____ () C:\Users\Public\Desktop\Shop for Supplies - HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-03-22 09:04 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5312.dll
2015-03-22 09:03 - 2015-03-22 09:03 - 00000057 _____ () C:\ProgramData\Ament.ini
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\ProgramData\HP
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files\HP
2015-03-22 09:02 - 2015-03-22 09:06 - 00000000 ____D () C:\Users\Dad\AppData\Local\HP
2015-03-22 08:26 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files (x86)\Hp
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Users\Dad\AppData\Local\Hewlett-Packard
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2015-03-22 08:23 - 2015-03-22 08:25 - 05197824 _____ () C:\Users\Dad\Downloads\HPSupportSolutionsFramework-en-11.51.0048.msi
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-22 03:34 - 2015-01-09 03:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-22 03:34 - 2015-01-09 03:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-22 03:23 - 2015-03-22 03:23 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-03-22 03:21 - 2015-03-22 03:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-03-22 03:19 - 2014-06-27 06:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-03-22 03:19 - 2014-06-27 05:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-03-21 22:29 - 2015-03-21 22:29 - 00002434 _____ () C:\Windows\System32\Tasks\0215piUpdateInfo
2015-03-21 20:27 - 2015-03-21 21:08 - 00000000 ____D () C:\Bovada
2015-03-21 20:27 - 2015-03-21 20:27 - 00000439 _____ () C:\Users\Public\Desktop\BovadaPoker.lnk
2015-03-21 20:27 - 2015-03-21 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BovadaPoker
2015-03-21 20:24 - 2015-03-21 20:26 - 13724448 _____ ( ) C:\Users\Dad\Downloads\BovadaPoker.exe
2015-03-21 20:23 - 2015-03-21 20:23 - 00001051 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000989 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2015-03-21 20:22 - 2015-03-21 20:22 - 05555792 _____ (Martin Prikryl ) C:\Users\Dad\Downloads\winscp570setup.exe
2015-03-21 20:20 - 2015-03-21 20:20 - 00000000 ____D () C:\Program Files\Common Files\WiTopia
2015-03-21 20:19 - 2015-03-21 20:20 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000802 _____ () C:\Users\Public\Desktop\WiTopia.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\WiTopia
2015-03-21 20:19 - 2014-06-06 02:17 - 00039048 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\visctap0901.sys
2015-03-21 20:16 - 2015-03-21 20:18 - 07556344 _____ (WiTopia, Inc ) C:\Users\Dad\Downloads\personalVPNPro-install.exe
2015-03-21 19:12 - 2015-03-21 19:55 - 00000000 ____D () C:\Users\Dad\.thinkorswim
2015-03-21 19:12 - 2015-03-21 19:55 - 00000000 ____D () C:\Program Files\thinkorswim
2015-03-21 19:12 - 2015-03-21 19:12 - 00001901 _____ () C:\Users\Public\Desktop\thinkorswim.lnk
2015-03-21 19:12 - 2015-03-21 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\thinkorswim
2015-03-21 19:06 - 2015-03-21 19:06 - 00000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-21 19:01 - 2015-03-21 19:11 - 38119936 _____ (thinkorswim, Inc) C:\Users\Dad\Downloads\thinkorswim_x64_installer.exe
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieUserList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieSiteList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieBrowserModeList
2015-03-21 18:47 - 2015-03-22 13:25 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-03-21 18:47 - 2015-03-22 07:18 - 00000000 ____D () C:\Program Files (x86)\TradeStation Archives
2015-03-21 18:46 - 2015-03-21 19:10 - 00000000 ____D () C:\Program Files (x86)\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00002033 _____ () C:\Users\Public\Desktop\TradeStation 9.5.lnk
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-21 18:36 - 2015-03-21 18:36 - 00772430 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-03-21 18:36 - 2015-03-21 18:36 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TradeStation Technologies
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-21 18:19 - 2014-06-24 07:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-21 18:19 - 2014-06-24 06:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-21 18:19 - 2013-11-26 12:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-03-21 18:19 - 2013-11-23 02:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-03-21 18:18 - 2012-02-11 10:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-21 18:18 - 2012-02-11 10:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-03-21 18:17 - 2015-02-20 06:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-21 18:00 - 2015-03-21 18:30 - 175516032 _____ (TradeStation Technologies, tradestation.com) C:\Users\Dad\Downloads\TradeStation 9.5 Setup.exe
2015-03-21 17:54 - 2015-03-21 17:54 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Macrovision
2015-03-21 17:49 - 2015-03-21 18:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-21 17:49 - 2015-03-21 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-21 17:47 - 2015-03-21 17:47 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-21 17:45 - 2015-03-22 03:30 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 __RHD () C:\MSOCache
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-21 17:42 - 2015-03-21 17:42 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio Burn
2015-03-21 17:38 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Adobe
2015-03-21 17:34 - 2015-02-04 07:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-21 17:34 - 2015-02-04 06:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-21 17:34 - 2015-02-03 07:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-21 17:34 - 2015-02-03 07:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00002265 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-03-21 17:01 - 2015-03-21 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-21 16:59 - 2015-03-22 20:04 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-21 16:59 - 2015-03-22 17:04 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Users\Dad\AppData\Local\Google
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-21 16:59 - 2015-03-21 16:59 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-21 16:59 - 2015-03-21 16:59 - 00003636 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-21 16:58 - 2015-03-22 08:26 - 00127264 _____ () C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-21 16:58 - 2015-03-21 16:59 - 00000000 ____D () C:\Users\Dad\AppData\Local\Deployment
2015-03-21 16:58 - 2015-03-21 16:58 - 00000000 ____D () C:\Users\Dad\AppData\Local\Apps\2.0
2015-03-21 16:41 - 2015-03-21 16:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-21 16:38 - 2015-03-22 09:24 - 00000000 ____D () C:\Users\Dad\Documents\Taxes
2015-03-21 16:38 - 2015-03-22 09:22 - 00000000 ____D () C:\Users\Dad\Documents\Scans
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Work
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Travel
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Personal
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Oman
2015-03-21 16:38 - 2015-02-21 18:42 - 00010957 _____ () C:\Users\Dad\Documents\Book2 - Copy.xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved).xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved) - Copy.xlsx
2015-03-21 16:36 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\OldComputer
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ___SD () C:\Users\Dad\Documents\My Data Sources
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Mortgae
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Medical
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Lockheed
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Insurance
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Home
2015-03-21 16:30 - 2014-04-19 19:00 - 00000000 ____D () C:\Users\Dad\Documents\Misc
2015-03-21 16:15 - 2015-03-21 16:15 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:10 - 2015-03-21 16:13 - 00000000 ____D () C:\Users\Dad\Documents\Finance
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\CyberLink
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\Computer
2015-03-21 16:05 - 2015-03-21 17:03 - 00024892 _____ () C:\Windows\IE11_main.log
2015-03-21 14:41 - 2015-03-22 03:30 - 00297662 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2015-03-21 14:12 - 2015-03-22 03:23 - 00297080 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2015-03-21 13:07 - 2012-07-26 07:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-21 13:07 - 2012-07-26 07:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-03-21 13:07 - 2012-07-26 06:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-21 13:07 - 2012-07-26 06:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-21 13:07 - 2012-06-02 18:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-03-21 12:46 - 2015-03-21 12:49 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-21 12:46 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-21 12:31 - 2012-03-01 10:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-03-21 12:31 - 2012-03-01 10:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-03-21 12:31 - 2012-03-01 09:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2015-03-21 12:04 - 2014-07-01 02:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-03-21 12:04 - 2014-07-01 02:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-03-21 12:04 - 2014-03-10 01:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-03-21 12:04 - 2014-03-10 01:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-03-21 12:03 - 2014-06-06 10:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-21 12:03 - 2014-06-06 10:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-21 12:02 - 2015-02-04 07:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-21 12:02 - 2015-02-04 07:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-21 12:02 - 2015-01-28 03:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-03-21 12:02 - 2015-01-09 07:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-03-21 12:02 - 2015-01-09 06:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-21 12:00 - 2015-02-03 07:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-21 12:00 - 2015-02-03 07:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-21 12:00 - 2015-02-03 07:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-21 12:00 - 2015-02-03 07:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-21 12:00 - 2015-02-03 07:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-21 12:00 - 2015-02-03 07:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-21 12:00 - 2015-02-03 07:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 06:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-21 12:00 - 2014-11-01 02:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-21 11:58 - 2014-10-14 06:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-21 11:55 - 2014-08-01 15:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-03-21 11:55 - 2014-08-01 15:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-03-21 11:54 - 2014-04-05 06:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-21 11:54 - 2014-04-05 06:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-21 11:54 - 2014-03-26 18:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-03-21 11:54 - 2014-03-26 18:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-03-21 11:54 - 2013-11-26 15:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-21 11:53 - 2015-02-20 08:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-21 11:53 - 2015-02-20 07:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-21 11:53 - 2015-02-20 07:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-21 11:53 - 2014-12-06 08:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-21 11:53 - 2014-04-25 06:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-03-21 11:53 - 2014-04-25 06:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-03-21 11:53 - 2014-01-29 06:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-21 11:53 - 2014-01-29 06:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-21 11:52 - 2014-01-28 06:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-03-21 11:52 - 2013-10-30 06:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-03-21 11:52 - 2013-10-30 06:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-03-21 11:52 - 2013-10-19 06:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-03-21 11:52 - 2013-10-19 05:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-03-21 11:52 - 2013-07-04 16:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-03-21 11:52 - 2013-07-04 15:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-03-21 11:52 - 2013-03-19 09:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-03-21 11:51 - 2014-12-19 07:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-21 11:51 - 2014-12-11 21:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-21 11:49 - 2013-12-04 06:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-03-21 11:49 - 2013-12-04 06:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-03-21 11:49 - 2013-12-04 06:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-03-21 11:49 - 2013-12-04 05:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-03-21 11:47 - 2014-07-17 06:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-03-21 11:47 - 2014-07-17 05:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-03-21 11:47 - 2014-07-17 05:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-03-21 11:47 - 2014-07-17 05:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-03-21 11:47 - 2014-07-17 05:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-03-21 11:47 - 2013-02-15 10:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-21 11:47 - 2013-02-15 10:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-03-21 11:47 - 2013-02-15 07:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-21 11:47 - 2012-04-26 09:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-03-21 11:47 - 2012-04-26 09:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-03-21 11:45 - 2014-03-04 13:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-21 11:44 - 2015-03-06 09:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-21 11:44 - 2015-03-06 09:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-21 11:44 - 2015-03-06 09:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-21 11:44 - 2015-03-06 09:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-21 11:44 - 2015-01-31 03:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-21 11:44 - 2013-04-26 03:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-21 11:44 - 2013-04-01 02:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-03-21 11:41 - 2013-08-29 06:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-03-21 11:41 - 2013-08-29 05:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-03-21 11:39 - 2014-11-11 07:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-21 11:39 - 2014-11-11 06:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-21 11:39 - 2013-09-08 06:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-03-21 11:39 - 2013-09-08 06:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-03-21 11:39 - 2012-12-07 17:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-21 11:39 - 2012-12-07 17:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-03-21 11:39 - 2012-12-07 16:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-21 11:39 - 2012-12-07 16:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-03-21 11:39 - 2012-12-07 15:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-03-21 11:37 - 2013-10-04 06:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 06:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-03-21 11:37 - 2013-10-04 05:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 05:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-03-21 11:34 - 2014-06-18 06:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-21 11:34 - 2014-06-18 05:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-21 11:34 - 2011-04-09 10:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-21 11:34 - 2011-04-09 09:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-21 11:33 - 2015-02-13 09:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-21 11:33 - 2015-02-13 09:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-21 11:33 - 2013-05-13 09:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-03-21 11:33 - 2013-05-13 07:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-03-21 11:27 - 2013-05-10 09:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-03-21 11:27 - 2013-05-10 07:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-03-21 11:25 - 2012-10-03 21:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-03-21 11:25 - 2012-10-03 20:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-21 11:23 - 2014-12-19 05:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-21 11:23 - 2014-10-14 06:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-21 11:23 - 2014-10-14 05:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-21 11:23 - 2014-08-21 10:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-03-21 11:23 - 2014-08-21 10:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-03-21 11:23 - 2014-06-16 06:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-21 11:23 - 2014-06-03 14:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-21 11:23 - 2014-06-03 13:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-21 11:23 - 2014-06-03 13:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-21 11:23 - 2013-04-10 10:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-21 11:23 - 2013-02-27 09:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-21 11:23 - 2011-02-03 15:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-21 11:22 - 2014-10-04 06:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-03-21 11:22 - 2013-06-26 02:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-03-21 11:22 - 2012-11-29 02:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-03-21 11:21 - 2012-08-22 01:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-03-21 11:20 - 2014-11-08 07:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-03-21 11:20 - 2014-11-08 06:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-03-21 11:20 - 2013-07-26 06:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-03-21 11:20 - 2013-07-26 05:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-03-21 11:20 - 2013-07-25 13:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-21 11:20 - 2013-07-25 12:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-21 11:19 - 2014-05-30 10:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-21 11:19 - 2013-07-04 16:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 16:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-21 11:19 - 2013-07-04 15:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 15:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-21 11:18 - 2015-02-03 07:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-21 11:18 - 2015-02-03 07:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-21 11:18 - 2015-01-17 06:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-21 11:18 - 2015-01-17 06:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-21 11:18 - 2014-11-26 07:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-21 11:18 - 2014-11-26 07:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-21 11:18 - 2014-02-04 06:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-03-21 11:18 - 2014-02-04 06:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-03-21 11:18 - 2014-02-04 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-03-21 11:18 - 2012-08-22 22:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-21 11:18 - 2012-07-05 00:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-03-21 11:17 - 2014-11-11 05:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-03-21 11:17 - 2014-10-03 06:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-03-21 11:17 - 2014-10-03 06:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-10-03 05:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 05:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-08-12 06:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-03-21 11:17 - 2014-08-12 05:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-03-21 11:17 - 2014-06-06 14:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-21 11:17 - 2014-06-06 13:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-21 11:17 - 2013-11-27 05:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-21 11:17 - 2013-10-04 06:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-03-21 11:17 - 2013-10-04 05:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-03-21 11:17 - 2013-08-05 06:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-03-21 11:17 - 2013-02-12 08:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-03-21 11:17 - 2012-11-02 09:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-03-21 11:17 - 2012-11-02 09:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-03-21 11:16 - 2015-02-26 07:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-21 11:16 - 2014-10-30 06:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-03-21 11:16 - 2014-10-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-03-21 11:16 - 2014-10-03 05:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-21 11:16 - 2014-03-04 13:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-21 11:16 - 2014-03-04 13:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-21 11:16 - 2014-03-04 12:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-21 11:16 - 2014-03-04 12:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-21 11:16 - 2014-01-24 06:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-21 11:16 - 2013-10-12 06:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-03-21 11:16 - 2013-10-12 06:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-03-21 11:16 - 2013-10-12 05:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-03-21 11:16 - 2013-08-02 06:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-21 11:16 - 2013-08-02 04:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-04-26 09:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-21 11:16 - 2013-04-26 08:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2015-03-21 11:16 - 2012-03-17 11:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-03-21 11:15 - 2013-07-20 14:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2013-07-20 14:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2012-09-26 02:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-03-21 11:15 - 2012-09-26 02:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-03-21 11:15 - 2012-07-07 00:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-21 11:15 - 2012-07-05 02:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-03-21 11:15 - 2012-07-05 01:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-03-21 11:15 - 2012-07-05 01:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-03-21 11:14 - 2014-12-08 07:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-21 11:14 - 2014-12-08 06:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-21 11:14 - 2014-10-25 05:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-21 11:14 - 2014-10-25 05:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-21 11:14 - 2014-09-04 09:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-21 11:14 - 2014-09-04 09:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-21 11:14 - 2013-01-24 10:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-21 11:14 - 2012-11-23 07:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-03-21 11:03 - 2014-08-23 06:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-21 11:03 - 2014-08-23 05:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-21 11:02 - 2015-03-21 11:04 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Games
2015-03-21 11:02 - 2012-05-14 09:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-21 10:33 - 2014-07-14 06:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-21 10:33 - 2014-07-14 05:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-21 10:33 - 2013-10-12 06:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-21 10:33 - 2013-10-12 06:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-10-12 06:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-08-28 05:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-03-21 10:33 - 2012-06-06 10:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-03-21 10:33 - 2012-06-06 09:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-03-21 10:29 - 2012-02-17 10:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 09:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 08:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-03-21 10:26 - 2015-03-21 10:26 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\AVG2015
2015-03-21 10:25 - 2015-03-21 10:26 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-21 10:25 - 2015-03-21 10:25 - 00000971 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ___HD () C:\$AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TuneUp Software
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Program Files (x86)\AVG
2015-03-21 10:23 - 2015-03-22 10:29 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-21 10:23 - 2015-03-21 10:28 - 00000000 ____D () C:\Users\Dad\AppData\Local\Avg2015
2015-03-21 10:23 - 2015-03-21 10:23 - 04816784 _____ (AVG Technologies) C:\Users\Dad\Downloads\avg_free_stb_all_5856p1_177.exe
2015-03-21 10:23 - 2015-03-21 10:23 - 00000000 ____D () C:\Users\Dad\AppData\Local\MFAData
2015-03-21 10:11 - 2015-03-21 10:11 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio
2015-03-21 10:08 - 2015-03-21 17:38 - 00001423 _____ () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-21 10:07 - 2015-03-21 10:07 - 00000020 ___SH () C:\Users\Dad\ntuser.ini
2015-03-21 10:07 - 2015-03-21 10:07 - 00000000 ____D () C:\Users\Dad\AppData\Local\VirtualStore
2015-03-21 10:07 - 2014-05-14 20:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-21 10:07 - 2014-05-14 20:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-21 10:07 - 2014-05-14 20:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-21 10:07 - 2014-05-14 20:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-21 10:07 - 2014-05-14 20:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-21 10:07 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-21 10:07 - 2009-07-14 08:54 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-21 10:07 - 2009-07-14 08:49 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-21 10:06 - 2015-03-21 19:12 - 00000000 ____D () C:\Users\Dad
2015-03-21 09:59 - 2015-03-21 10:07 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2015-03-21 09:59 - 2015-03-21 09:59 - 00000000 ____D () C:\ProgramData\SoftThinks
2015-03-21 09:36 - 2015-03-21 09:36 - 00000000 ____D () C:\Windows\SMINST
2015-02-25 17:37 - 2015-02-25 17:37 - 00284128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2015-02-24 16:46 - 2015-02-24 16:46 - 00280544 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-22 20:39 - 2012-04-18 19:59 - 01653295 _____ () C:\Windows\WindowsUpdate.log
2015-03-22 15:27 - 2009-07-14 09:13 - 00778150 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-22 15:24 - 2009-07-14 08:51 - 00046059 _____ () C:\Windows\setupact.log
2015-03-22 07:13 - 2012-04-18 20:24 - 00000000 ____D () C:\ProgramData\Sonic
2015-03-22 05:57 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-22 05:57 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-22 04:17 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\rescache
2015-03-22 03:51 - 2009-07-14 09:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-22 03:51 - 2009-07-14 08:45 - 00461752 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-22 03:50 - 2010-11-21 07:47 - 00030696 _____ () C:\Windows\PFRO.log
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\tracing
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\AppCompat
2015-03-22 03:28 - 2009-07-14 06:34 - 00000510 _____ () C:\Windows\win.ini
2015-03-22 03:21 - 2009-07-14 07:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-03-21 18:46 - 2012-04-18 20:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-21 18:46 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\Cursors
2015-03-21 17:48 - 2012-04-18 20:12 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-21 17:48 - 2010-11-21 11:16 - 00000000 ____D () C:\Windows\ShellNew
2015-03-21 17:48 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-21 17:19 - 2012-04-18 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-21 17:13 - 2010-11-21 11:17 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-21 10:12 - 2009-07-14 07:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-03-21 09:59 - 2012-04-18 20:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-24 04:17 - 2010-11-21 07:27 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
 
==================== Files in the root of some directories =======
 
2015-03-21 19:06 - 2015-03-21 19:06 - 0000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-22 09:03 - 2015-03-22 09:03 - 0000057 _____ () C:\ProgramData\Ament.ini
 
Some content of TEMP:
====================
C:\Users\Dad\AppData\Local\Temp\clean20.dll
C:\Users\Dad\AppData\Local\Temp\GACInstaller.dll
C:\Users\Dad\AppData\Local\Temp\i4jdel0.exe
C:\Users\Dad\AppData\Local\Temp\instutil.dll
C:\Users\Dad\AppData\Local\Temp\ose00000.exe
C:\Users\Dad\AppData\Local\Temp\RegistASM.exe
C:\Users\Dad\AppData\Local\Temp\TSInst10.exe
C:\Users\Dad\AppData\Local\Temp\TSInstallCAUtils.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-03-21 12:35
 

==================== End Of Log ============================ 

 

 

Attached Files



BC AdBot (Login to Remove)

 


m

#2 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 25 March 2015 - 09:53 AM

Hey, :)

Step 1: Adwarecleaner

Please download AdwCleaner (by Xplode) from the link below and save it to your Desktop:

Download Mirror #1
  • Right-click on AdwCleaner.exe and select Run as administrator. (If you have Windows XP the just run it)
  • Click Scan and let the scan run.
  • When it finishes, click Clean, following the on screen prompts
  • After your computer reboots, a log will open. Please Copy (Ctrl+C) and Paste (Ctrl+V) this into your next post.
  • Note: The log can also be found in here: C:\AdwCleaner\

    Step 2: Malwarebytes

    Iconic_normal.png Please download Malwarebytes Anti-Malware to your desktop
    • Double-click mbam-setup-version.exe and follow the prompts to install the program.
    • At the end, be sure a check-mark is placed next to the following:
      • Enable free trial of Malwarebytes Anti-Malware Premium
      • Launch Malwarebytes Anti-Malware
    • Then click Finish.
    • If an update is found, you will be prompted to download and install the latest version.
    • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
    • When the scan is complete , make sure that everything is set to "Quarantine", and click Apply Actions.
    • Reboot your computer if prompted.
    Extra Note:

    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediatly.

    The log is available throughout History ->Application logs. Please post it contents in your next reply.

    Step 3: Junkware Removal Tool

    thisisujrt.gif  Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.
    Step 4: FRST Scan
    • Run FRST. (if you have Windows Vista / Windows 7 / Windows 8: Please do a Right click on the FRST icon and select Run as Administrator)
    • Click Scan to start FRST.
    • When FRST finishes scanning, a log, FRST.txt, will open.
    • Copy (Ctrl+C) and Paste (Ctrl+V) the contents of this log into your next post please.

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#3 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 25 March 2015 - 11:07 AM

Reply to above directions:

ADWCleaner log:

# AdwCleaner v4.113 - Logfile created 25/03/2015 at 19:09:17
# Updated 22/03/2015 by Xplode
# Database : 2015-03-23.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Dad - MININT-J8E39LF
# Running from : C:\Users\Dad\Downloads\AdwCleaner.exe
# Option : Cleaning
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
 
***** [ Scheduled tasks ] *****
 
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{065C1A21-97F8-45FB-A9F0-861B60FACEC8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3204358F-5904-46A6-841F-D6B5BE3EF4E3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3AE67737-0E3E-44AA-AA5E-46A68BF017FF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3EE5B726-044A-48D2-AA7B-049BD9A0F62A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{60FBBE03-57FF-49D8-B38E-053D3F489825}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6A5182F1-C0B8-42B8-96CC-7F329CD46913}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6C153418-8E4D-4FAF-AF27-5201E38463A7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A26A2F05-AC4D-4A1E-9531-9125F7309B78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CC5D6240-7DF0-435D-9B9B-F8586A99DE86}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F343045E-E20A-46E1-82D8-9962C43EFC9E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FBB360DC-CB6C-4D6A-808A-2C773151BFFF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFD7DDAC-EC28-42A5-8D39-917B9078604B}
 
***** [ Web browsers ] *****
 
-\\ Internet Explorer v11.0.9600.17689
 
 
-\\ Google Chrome v41.0.2272.101
 
 
*************************
 
AdwCleaner[R0].txt - [3033 bytes] - [25/03/2015 18:58:13]
AdwCleaner[R1].txt - [1769 bytes] - [25/03/2015 19:06:58]
AdwCleaner[S0].txt - [1720 bytes] - [25/03/2015 19:09:17]
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1779  bytes] ##########
Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 3/25/2015
Scan Time: 7:18:32 PM
Logfile: Malware_ThreatScan.txt
Administrator: Yes
 
Version: 2.01.4.1018
Malware Database: v2015.03.25.04
Rootkit Database: v2015.02.25.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dad
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 352353
Time Elapsed: 12 min, 48 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 0
(No malicious items detected)
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)
 
ion: 6.4.6 (03.22.2015:1)
OS: Windows 7 Home Premium x64
Ran by Dad on Wed 03/25/2015 at 19:39:41.08
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Wed 03/25/2015 at 19:43:09.75
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Dad (administrator) on MININT-J8E39LF on 25-03-2015 19:45:02
Running from C:\Users\Dad\Downloads
Loaded Profiles: Dad (Available profiles: Dad)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Intel Corporation) C:\WINDOWS\System32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\System32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopia.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Program Files\Microsoft Games\Solitaire\Solitaire.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [608112 2011-03-29] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6561384 2010-12-14] (Realtek Semiconductor)
HKLM\...\Run: [NVHotkey] => rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [4479648 2011-01-26] (Dell Inc.)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-25] (Creative Technology Ltd)
HKLM-x32\...\Run: [RemoteControl9] => C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2010-10-02] (CyberLink Corp.)
HKLM-x32\...\Run: [PDVD9LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe [50472 2010-09-18] (CyberLink Corp.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions)
HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3723728 2015-03-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [WiTopia] => C:\Program Files\WiTopia\WiTopia.exe [814368 2014-06-06] (SparkLabs)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [HP Officejet Pro 8500 A910 (NET)] => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2010-11-30] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [192616 2010-11-30] (NVIDIA Corporation)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.dell.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-23] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 82.178.158.182 82.178.158.172 192.168.1.1
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/thinkorswim -> C:\Program Files\thinkorswim\npthinkorswim.dll [2015-03-25] (TD Ameritrade)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/tossc -> C:\Program Files\thinkorswim\nptossc.dll [2015-03-25] (TD Ameritrade)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR Profile: C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-21]
CHR Extension: (Google Docs) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-21]
CHR Extension: (Google Drive) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-21]
CHR Extension: (YouTube) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-21]
CHR Extension: (Google Search) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-21]
CHR Extension: (Google Sheets) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-21]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
CHR Extension: (Google Wallet) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-21]
CHR Extension: (Gmail) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-21]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3416016 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [309232 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [901184 2010-12-14] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-12-14] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [974912 2010-12-14] (Intel Corporation) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 WiTopiaService; C:\Program Files\WiTopia\WiTopiaService.exe [70432 2014-06-06] (SparkLabs)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [280544 2015-02-24] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [341472 2015-02-03] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [133088 2015-02-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [284128 2015-02-25] (AVG Technologies CZ, s.r.o.)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [67136 2011-07-06] (Fresco Logic)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-03-25] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-03-17] (Malwarebytes Corporation)
S3 visctap0901; C:\Windows\System32\DRIVERS\visctap0901.sys [39048 2014-06-06] (The OpenVPN Project)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-25 19:45 - 2015-03-25 19:45 - 00014488 _____ () C:\Users\Dad\Downloads\FRST.txt
2015-03-25 19:43 - 2015-03-25 19:43 - 00001223 _____ () C:\Users\Dad\Downloads\JRT.txt
2015-03-25 19:43 - 2015-03-25 19:43 - 00001223 _____ () C:\Users\Dad\Desktop\JRT.txt
2015-03-25 19:37 - 2015-03-25 19:37 - 01388782 _____ (Thisisu) C:\Users\Dad\Downloads\JRT.exe
2015-03-25 19:34 - 2015-03-25 19:34 - 00001068 _____ () C:\Users\Dad\Downloads\Malware_ThreatScan.txt
2015-03-25 19:16 - 2015-03-25 19:17 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-25 19:16 - 2015-03-25 19:16 - 00001112 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-17 06:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-25 19:13 - 2015-03-25 19:15 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Dad\Downloads\mbam-setup-2.1.4.1018 (1).exe
2015-03-25 18:58 - 2015-03-25 19:09 - 00000000 ____D () C:\AdwCleaner
2015-03-25 18:55 - 2015-03-25 18:55 - 02168320 _____ () C:\Users\Dad\Downloads\AdwCleaner.exe
2015-03-25 15:04 - 2015-03-25 15:05 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00002025 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-23 19:39 - 2015-03-23 20:02 - 105866339 _____ () C:\Users\Dad\Downloads\UPDATA_M15R0197.zip
2015-03-23 18:54 - 2015-03-23 20:10 - 00000000 ____D () C:\Users\Dad\Downloads\SonyBluRay
2015-03-23 14:39 - 2015-03-23 14:39 - 00007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-23 12:37 - 2015-03-23 12:37 - 00000000 ____D () C:\Users\Dad\AppData\Local\TradeStation_Technologies
2015-03-22 21:13 - 2015-03-22 21:13 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Dad\Downloads\tdsskiller.exe
2015-03-22 20:58 - 2015-03-22 20:58 - 03295113 _____ () C:\Users\Dad\Downloads\TJS Elite Trade Station.xlsb
2015-03-22 20:58 - 2015-03-22 20:58 - 03272521 _____ () C:\Users\Dad\Downloads\TJS Elite TOS.XLSB
2015-03-22 20:58 - 2015-03-22 20:58 - 03244603 _____ () C:\Users\Dad\Downloads\TJS Elite v7.6_AiO.XLSB
2015-03-22 20:55 - 2015-03-22 20:56 - 00026632 _____ () C:\Users\Dad\Downloads\Addition.txt
2015-03-22 20:54 - 2015-03-25 19:45 - 00000000 ____D () C:\FRST
2015-03-22 20:53 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Downloads\FRST64.exe
2015-03-22 09:14 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Local\Adobe
2015-03-22 09:12 - 2015-03-22 09:16 - 00109568 ___SH () C:\Users\Dad\Documents\Thumbs.db
2015-03-22 09:04 - 2015-03-22 09:04 - 00002266 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00001193 _____ () C:\Users\Public\Desktop\Shop for Supplies - HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-03-22 09:04 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5312.dll
2015-03-22 09:03 - 2015-03-22 09:03 - 00000057 _____ () C:\ProgramData\Ament.ini
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\ProgramData\HP
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files\HP
2015-03-22 09:02 - 2015-03-22 09:06 - 00000000 ____D () C:\Users\Dad\AppData\Local\HP
2015-03-22 08:26 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files (x86)\Hp
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Users\Dad\AppData\Local\Hewlett-Packard
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2015-03-22 08:23 - 2015-03-22 08:25 - 05197824 _____ () C:\Users\Dad\Downloads\HPSupportSolutionsFramework-en-11.51.0048.msi
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-22 03:34 - 2015-01-09 03:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-22 03:34 - 2015-01-09 03:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-22 03:23 - 2015-03-22 03:23 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-03-22 03:21 - 2015-03-22 03:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-03-22 03:19 - 2014-06-27 06:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-03-22 03:19 - 2014-06-27 05:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-03-21 22:29 - 2015-03-21 22:29 - 00002434 _____ () C:\Windows\System32\Tasks\0215piUpdateInfo
2015-03-21 20:27 - 2015-03-21 21:08 - 00000000 ____D () C:\Bovada
2015-03-21 20:27 - 2015-03-21 20:27 - 00000439 _____ () C:\Users\Public\Desktop\BovadaPoker.lnk
2015-03-21 20:27 - 2015-03-21 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BovadaPoker
2015-03-21 20:24 - 2015-03-21 20:26 - 13724448 _____ ( ) C:\Users\Dad\Downloads\BovadaPoker.exe
2015-03-21 20:23 - 2015-03-21 20:23 - 00001051 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000989 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2015-03-21 20:22 - 2015-03-21 20:22 - 05555792 _____ (Martin Prikryl ) C:\Users\Dad\Downloads\winscp570setup.exe
2015-03-21 20:20 - 2015-03-21 20:20 - 00000000 ____D () C:\Program Files\Common Files\WiTopia
2015-03-21 20:19 - 2015-03-21 20:20 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000802 _____ () C:\Users\Public\Desktop\WiTopia.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\WiTopia
2015-03-21 20:19 - 2014-06-06 02:17 - 00039048 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\visctap0901.sys
2015-03-21 20:16 - 2015-03-21 20:18 - 07556344 _____ (WiTopia, Inc ) C:\Users\Dad\Downloads\personalVPNPro-install.exe
2015-03-21 19:12 - 2015-03-25 09:34 - 00000000 ____D () C:\Users\Dad\.thinkorswim
2015-03-21 19:12 - 2015-03-25 09:34 - 00000000 ____D () C:\Program Files\thinkorswim
2015-03-21 19:12 - 2015-03-21 19:12 - 00001901 _____ () C:\Users\Public\Desktop\thinkorswim.lnk
2015-03-21 19:12 - 2015-03-21 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\thinkorswim
2015-03-21 19:06 - 2015-03-21 19:06 - 00000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-21 19:01 - 2015-03-21 19:11 - 38119936 _____ (thinkorswim, Inc) C:\Users\Dad\Downloads\thinkorswim_x64_installer.exe
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieUserList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieSiteList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieBrowserModeList
2015-03-21 18:47 - 2015-03-25 18:57 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-03-21 18:47 - 2015-03-22 07:18 - 00000000 ____D () C:\Program Files (x86)\TradeStation Archives
2015-03-21 18:46 - 2015-03-21 19:10 - 00000000 ____D () C:\Program Files (x86)\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00002033 _____ () C:\Users\Public\Desktop\TradeStation 9.5.lnk
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-21 18:36 - 2015-03-22 23:21 - 00772682 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-03-21 18:36 - 2015-03-21 18:36 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TradeStation Technologies
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-21 18:19 - 2014-06-24 07:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-21 18:19 - 2014-06-24 06:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-21 18:19 - 2013-11-26 12:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-03-21 18:19 - 2013-11-23 02:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-03-21 18:18 - 2012-02-11 10:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-21 18:18 - 2012-02-11 10:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-03-21 18:17 - 2015-02-20 06:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-21 18:00 - 2015-03-21 18:30 - 175516032 _____ (TradeStation Technologies, tradestation.com) C:\Users\Dad\Downloads\TradeStation 9.5 Setup.exe
2015-03-21 17:54 - 2015-03-21 17:54 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Macrovision
2015-03-21 17:49 - 2015-03-21 18:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-21 17:49 - 2015-03-21 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-21 17:47 - 2015-03-21 17:47 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-21 17:45 - 2015-03-22 23:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 __RHD () C:\MSOCache
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-21 17:42 - 2015-03-23 20:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio Burn
2015-03-21 17:38 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Adobe
2015-03-21 17:34 - 2015-02-04 07:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-21 17:34 - 2015-02-04 06:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-21 17:34 - 2015-02-03 07:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-21 17:34 - 2015-02-03 07:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00002265 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-03-21 17:01 - 2015-03-21 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-21 16:59 - 2015-03-25 19:10 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-21 16:59 - 2015-03-25 19:04 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Users\Dad\AppData\Local\Google
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-21 16:59 - 2015-03-21 16:59 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-21 16:59 - 2015-03-21 16:59 - 00003636 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-21 16:58 - 2015-03-23 07:32 - 00127264 _____ () C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-21 16:58 - 2015-03-21 16:59 - 00000000 ____D () C:\Users\Dad\AppData\Local\Deployment
2015-03-21 16:58 - 2015-03-21 16:58 - 00000000 ____D () C:\Users\Dad\AppData\Local\Apps\2.0
2015-03-21 16:41 - 2015-03-21 16:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-21 16:38 - 2015-03-22 09:24 - 00000000 ____D () C:\Users\Dad\Documents\Taxes
2015-03-21 16:38 - 2015-03-22 09:22 - 00000000 ____D () C:\Users\Dad\Documents\Scans
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Work
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Travel
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Personal
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Oman
2015-03-21 16:38 - 2015-02-21 18:42 - 00010957 _____ () C:\Users\Dad\Documents\Book2 - Copy.xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved).xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved) - Copy.xlsx
2015-03-21 16:36 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\OldComputer
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ___SD () C:\Users\Dad\Documents\My Data Sources
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Mortgae
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Medical
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Lockheed
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Insurance
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Home
2015-03-21 16:30 - 2014-04-19 19:00 - 00000000 ____D () C:\Users\Dad\Documents\Misc
2015-03-21 16:15 - 2015-03-21 16:15 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:10 - 2015-03-23 13:00 - 00000000 ____D () C:\Users\Dad\Documents\Finance
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\CyberLink
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\Computer
2015-03-21 16:05 - 2015-03-21 17:03 - 00024892 _____ () C:\Windows\IE11_main.log
2015-03-21 14:41 - 2015-03-22 03:30 - 00297662 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2015-03-21 14:12 - 2015-03-22 03:23 - 00297080 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2015-03-21 13:07 - 2012-07-26 07:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-21 13:07 - 2012-07-26 07:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-03-21 13:07 - 2012-07-26 06:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-21 13:07 - 2012-07-26 06:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-21 13:07 - 2012-06-02 18:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-03-21 12:46 - 2015-03-21 12:49 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-21 12:46 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-21 12:31 - 2012-03-01 10:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-03-21 12:31 - 2012-03-01 10:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-03-21 12:31 - 2012-03-01 09:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2015-03-21 12:04 - 2014-07-01 02:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-03-21 12:04 - 2014-07-01 02:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-03-21 12:04 - 2014-03-10 01:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-03-21 12:04 - 2014-03-10 01:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-03-21 12:03 - 2014-06-06 10:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-21 12:03 - 2014-06-06 10:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-21 12:02 - 2015-02-04 07:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-21 12:02 - 2015-02-04 07:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-21 12:02 - 2015-01-28 03:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-03-21 12:02 - 2015-01-09 07:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-03-21 12:02 - 2015-01-09 06:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-21 12:00 - 2015-02-03 07:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-21 12:00 - 2015-02-03 07:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-21 12:00 - 2015-02-03 07:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-21 12:00 - 2015-02-03 07:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-21 12:00 - 2015-02-03 07:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-21 12:00 - 2015-02-03 07:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-21 12:00 - 2015-02-03 07:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 06:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-21 12:00 - 2014-11-01 02:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-21 11:58 - 2014-10-14 06:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-21 11:55 - 2014-08-01 15:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-03-21 11:55 - 2014-08-01 15:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-03-21 11:54 - 2014-04-05 06:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-21 11:54 - 2014-04-05 06:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-21 11:54 - 2014-03-26 18:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-03-21 11:54 - 2014-03-26 18:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-03-21 11:54 - 2013-11-26 15:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-21 11:53 - 2015-02-20 08:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-21 11:53 - 2015-02-20 07:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-21 11:53 - 2015-02-20 07:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-21 11:53 - 2014-12-06 08:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-21 11:53 - 2014-04-25 06:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-03-21 11:53 - 2014-04-25 06:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-03-21 11:53 - 2014-01-29 06:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-21 11:53 - 2014-01-29 06:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-21 11:52 - 2014-01-28 06:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-03-21 11:52 - 2013-10-30 06:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-03-21 11:52 - 2013-10-30 06:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-03-21 11:52 - 2013-10-19 06:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-03-21 11:52 - 2013-10-19 05:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-03-21 11:52 - 2013-07-04 16:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-03-21 11:52 - 2013-07-04 15:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-03-21 11:52 - 2013-03-19 09:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-03-21 11:51 - 2014-12-19 07:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-21 11:51 - 2014-12-11 21:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-21 11:49 - 2013-12-04 06:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-03-21 11:49 - 2013-12-04 06:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-03-21 11:49 - 2013-12-04 06:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-03-21 11:49 - 2013-12-04 05:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-03-21 11:47 - 2014-07-17 06:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-03-21 11:47 - 2014-07-17 05:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-03-21 11:47 - 2014-07-17 05:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-03-21 11:47 - 2014-07-17 05:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-03-21 11:47 - 2014-07-17 05:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-03-21 11:47 - 2013-02-15 10:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-21 11:47 - 2013-02-15 10:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-03-21 11:47 - 2013-02-15 07:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-21 11:47 - 2012-04-26 09:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-03-21 11:47 - 2012-04-26 09:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-03-21 11:45 - 2014-03-04 13:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-21 11:44 - 2015-03-06 09:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-21 11:44 - 2015-03-06 09:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-21 11:44 - 2015-03-06 09:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-21 11:44 - 2015-03-06 09:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-21 11:44 - 2015-01-31 03:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-21 11:44 - 2013-04-26 03:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-21 11:44 - 2013-04-01 02:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-03-21 11:41 - 2013-08-29 06:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-03-21 11:41 - 2013-08-29 05:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-03-21 11:39 - 2014-11-11 07:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-21 11:39 - 2014-11-11 06:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-21 11:39 - 2013-09-08 06:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-03-21 11:39 - 2013-09-08 06:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-03-21 11:39 - 2012-12-07 17:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-21 11:39 - 2012-12-07 17:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-03-21 11:39 - 2012-12-07 16:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-21 11:39 - 2012-12-07 16:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-03-21 11:39 - 2012-12-07 15:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-03-21 11:37 - 2013-10-04 06:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 06:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-03-21 11:37 - 2013-10-04 05:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 05:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-03-21 11:34 - 2014-06-18 06:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-21 11:34 - 2014-06-18 05:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-21 11:34 - 2011-04-09 10:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-21 11:34 - 2011-04-09 09:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-21 11:33 - 2015-02-13 09:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-21 11:33 - 2015-02-13 09:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-21 11:33 - 2013-05-13 09:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-03-21 11:33 - 2013-05-13 07:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-03-21 11:27 - 2013-05-10 09:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-03-21 11:27 - 2013-05-10 07:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-03-21 11:25 - 2012-10-03 21:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-03-21 11:25 - 2012-10-03 20:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-21 11:23 - 2014-12-19 05:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-21 11:23 - 2014-10-14 06:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-21 11:23 - 2014-10-14 05:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-21 11:23 - 2014-08-21 10:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-03-21 11:23 - 2014-08-21 10:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-03-21 11:23 - 2014-06-16 06:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-21 11:23 - 2014-06-03 14:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-21 11:23 - 2014-06-03 13:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-21 11:23 - 2014-06-03 13:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-21 11:23 - 2013-04-10 10:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-21 11:23 - 2013-02-27 09:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-21 11:23 - 2011-02-03 15:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-21 11:22 - 2014-10-04 06:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-03-21 11:22 - 2013-06-26 02:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-03-21 11:22 - 2012-11-29 02:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-03-21 11:21 - 2012-08-22 01:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-03-21 11:20 - 2014-11-08 07:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-03-21 11:20 - 2014-11-08 06:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-03-21 11:20 - 2013-07-26 06:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-03-21 11:20 - 2013-07-26 05:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-03-21 11:20 - 2013-07-25 13:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-21 11:20 - 2013-07-25 12:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-21 11:19 - 2014-05-30 10:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-21 11:19 - 2013-07-04 16:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 16:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-21 11:19 - 2013-07-04 15:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 15:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-21 11:18 - 2015-02-03 07:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-21 11:18 - 2015-02-03 07:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-21 11:18 - 2015-01-17 06:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-21 11:18 - 2015-01-17 06:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-21 11:18 - 2014-11-26 07:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-21 11:18 - 2014-11-26 07:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-21 11:18 - 2014-02-04 06:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-03-21 11:18 - 2014-02-04 06:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-03-21 11:18 - 2014-02-04 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-03-21 11:18 - 2012-08-22 22:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-21 11:18 - 2012-07-05 00:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-03-21 11:17 - 2014-11-11 05:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-03-21 11:17 - 2014-10-03 06:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-03-21 11:17 - 2014-10-03 06:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-10-03 05:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 05:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-08-12 06:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-03-21 11:17 - 2014-08-12 05:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-03-21 11:17 - 2014-06-06 14:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-21 11:17 - 2014-06-06 13:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-21 11:17 - 2013-11-27 05:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-21 11:17 - 2013-10-04 06:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-03-21 11:17 - 2013-10-04 05:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-03-21 11:17 - 2013-08-05 06:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-03-21 11:17 - 2013-02-12 08:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-03-21 11:17 - 2012-11-02 09:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-03-21 11:17 - 2012-11-02 09:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-03-21 11:16 - 2015-02-26 07:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-21 11:16 - 2014-10-30 06:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-03-21 11:16 - 2014-10-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-03-21 11:16 - 2014-10-03 05:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-21 11:16 - 2014-03-04 13:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-21 11:16 - 2014-03-04 13:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-21 11:16 - 2014-03-04 12:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-21 11:16 - 2014-03-04 12:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-21 11:16 - 2014-01-24 06:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-21 11:16 - 2013-10-12 06:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-03-21 11:16 - 2013-10-12 06:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-03-21 11:16 - 2013-10-12 05:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-03-21 11:16 - 2013-08-02 06:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-21 11:16 - 2013-08-02 04:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-04-26 09:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-21 11:16 - 2013-04-26 08:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2015-03-21 11:16 - 2012-03-17 11:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-03-21 11:15 - 2013-07-20 14:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2013-07-20 14:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2012-09-26 02:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-03-21 11:15 - 2012-09-26 02:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-03-21 11:15 - 2012-07-07 00:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-21 11:15 - 2012-07-05 02:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-03-21 11:15 - 2012-07-05 01:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-03-21 11:15 - 2012-07-05 01:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-03-21 11:14 - 2014-12-08 07:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-21 11:14 - 2014-12-08 06:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-21 11:14 - 2014-10-25 05:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-21 11:14 - 2014-10-25 05:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-21 11:14 - 2014-09-04 09:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-21 11:14 - 2014-09-04 09:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-21 11:14 - 2013-01-24 10:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-21 11:14 - 2012-11-23 07:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-03-21 11:03 - 2014-08-23 06:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-21 11:03 - 2014-08-23 05:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-21 11:02 - 2015-03-21 11:04 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Games
2015-03-21 11:02 - 2012-05-14 09:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-21 10:33 - 2014-07-14 06:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-21 10:33 - 2014-07-14 05:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-21 10:33 - 2013-10-12 06:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-21 10:33 - 2013-10-12 06:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-10-12 06:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-08-28 05:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-03-21 10:33 - 2012-06-06 10:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-03-21 10:33 - 2012-06-06 09:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-03-21 10:29 - 2012-02-17 10:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 09:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 08:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-03-21 10:26 - 2015-03-21 10:26 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\AVG2015
2015-03-21 10:25 - 2015-03-21 10:26 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-21 10:25 - 2015-03-21 10:25 - 00000971 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ___HD () C:\$AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TuneUp Software
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Program Files (x86)\AVG
2015-03-21 10:23 - 2015-03-25 10:29 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-21 10:23 - 2015-03-21 10:28 - 00000000 ____D () C:\Users\Dad\AppData\Local\Avg2015
2015-03-21 10:23 - 2015-03-21 10:23 - 04816784 _____ (AVG Technologies) C:\Users\Dad\Downloads\avg_free_stb_all_5856p1_177.exe
2015-03-21 10:23 - 2015-03-21 10:23 - 00000000 ____D () C:\Users\Dad\AppData\Local\MFAData
2015-03-21 10:11 - 2015-03-21 10:11 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio
2015-03-21 10:08 - 2015-03-21 17:38 - 00001423 _____ () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-21 10:07 - 2015-03-21 10:07 - 00000020 ___SH () C:\Users\Dad\ntuser.ini
2015-03-21 10:07 - 2015-03-21 10:07 - 00000000 ____D () C:\Users\Dad\AppData\Local\VirtualStore
2015-03-21 10:07 - 2014-05-14 20:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-21 10:07 - 2014-05-14 20:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-21 10:07 - 2014-05-14 20:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-21 10:07 - 2014-05-14 20:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-21 10:07 - 2014-05-14 20:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-21 10:07 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-21 10:07 - 2009-07-14 08:54 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-21 10:07 - 2009-07-14 08:49 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-21 10:06 - 2015-03-21 19:12 - 00000000 ____D () C:\Users\Dad
2015-03-21 09:59 - 2015-03-21 10:07 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2015-03-21 09:59 - 2015-03-21 09:59 - 00000000 ____D () C:\ProgramData\SoftThinks
2015-03-21 09:36 - 2015-03-21 09:36 - 00000000 ____D () C:\Windows\SMINST
2015-03-21 09:06 - 2015-03-21 19:09 - 29441132 _____ () C:\Users\Dad\Downloads\Monthly (9.05.00.2428 - 2015-03-21 0906).tsa
2015-03-20 15:48 - 2015-03-20 16:05 - 160828136 _____ () C:\Users\Dad\Downloads\Dell_Backup_and_Recovery_1.7.5.64.exe
2015-02-25 17:37 - 2015-02-25 17:37 - 00284128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2015-02-24 16:46 - 2015-02-24 16:46 - 00280544 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-25 19:18 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-25 19:18 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-25 19:17 - 2012-04-18 19:59 - 01739854 _____ () C:\Windows\WindowsUpdate.log
2015-03-25 19:15 - 2009-07-14 09:13 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-25 19:10 - 2010-11-21 07:47 - 00039204 _____ () C:\Windows\PFRO.log
2015-03-25 19:10 - 2009-07-14 09:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-25 19:10 - 2009-07-14 08:51 - 00046563 _____ () C:\Windows\setupact.log
2015-03-25 15:04 - 2012-04-18 20:27 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-23 07:32 - 2012-04-18 20:24 - 00000000 ____D () C:\ProgramData\Sonic
2015-03-23 07:05 - 2009-07-14 08:45 - 00466904 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-22 23:22 - 2009-07-14 06:34 - 00000510 _____ () C:\Windows\win.ini
2015-03-22 04:17 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\rescache
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\tracing
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\AppCompat
2015-03-22 03:21 - 2009-07-14 07:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-03-21 18:46 - 2012-04-18 20:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-21 18:46 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\Cursors
2015-03-21 17:48 - 2012-04-18 20:12 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-21 17:48 - 2010-11-21 11:16 - 00000000 ____D () C:\Windows\ShellNew
2015-03-21 17:48 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-21 17:19 - 2012-04-18 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-21 17:13 - 2010-11-21 11:17 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-21 10:12 - 2009-07-14 07:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-03-21 09:59 - 2012-04-18 20:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-24 04:17 - 2010-11-21 07:27 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
 
==================== Files in the root of some directories =======
 
2015-03-21 19:06 - 2015-03-21 19:06 - 0000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-23 14:39 - 2015-03-23 14:39 - 0007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-22 09:03 - 2015-03-22 09:03 - 0000057 _____ () C:\ProgramData\Ament.ini
 
Some content of TEMP:
====================
C:\Users\Dad\AppData\Local\Temp\clean20.dll
C:\Users\Dad\AppData\Local\Temp\GACInstaller.dll
C:\Users\Dad\AppData\Local\Temp\i4jdel0.exe
C:\Users\Dad\AppData\Local\Temp\instutil.dll
C:\Users\Dad\AppData\Local\Temp\ose00000.exe
C:\Users\Dad\AppData\Local\Temp\Quarantine.exe
C:\Users\Dad\AppData\Local\Temp\RegistASM.exe
C:\Users\Dad\AppData\Local\Temp\sqlite3.dll
C:\Users\Dad\AppData\Local\Temp\TSInst10.exe
C:\Users\Dad\AppData\Local\Temp\TSInstallCAUtils.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-03-25 00:24
 
==================== End Of Log ============================
 


#4 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 25 March 2015 - 11:17 AM

Well done. :)

Step 1: FRST Fix
  • Please open Notepad.exe. Make sure that you don't use any other software than Notepad.exe!
  • Copy and Paste the content of the codebox below into the empty textfile:

    HKLM-x32\...\Run: [] => [X]
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    EmptyTemp:
    
  • Then click on File >> Save as
    • File Name: Fixlist.txt
    • From the Save as type drop down list, choose All Files
  • It is very important that you save this textfile on your Desktop!
Note: It's important that both files, FRST.exe/FRST64.exe and fixlist.txt are in the same location or the fix will not work
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
  • Run FRST.exe/FRST64.exe (Note: If FRST advises there is a new updated version to be downloaded, allow this.)and press the Fix button just once and wait
  • If for some reason the tool needs a restart, please make sure you let the system restart normally, then let the tool complete its run
  • When finished, FRST will generate a log (Fixlog.txt) in the same location the tool was run, please post it to your reply
Step 2: FRST Scan
  • Run FRST. (if you have Windows Vista / Windows 7 / Windows 8: Please do a Right click on the FRST icon and select Run as Administrator)
  • Click Scan to start FRST.
  • When FRST finishes scanning, a log, FRST.txt, will open.
  • Copy (Ctrl+C) and Paste (Ctrl+V) the contents of this log into your next post please.
Step 3: ESET

Please run a free online scan with the ESET Online Scanner:

IMPORTANT: You MUST use Internet Explorer for this step!
  • Visit the ESET Online Scanner Web Page
  • Select the blue Run ESET Online Scanner button:
    ESET1_zps23a5e840.png
  • Tick the box next to YES, I accept the Terms of Use and click Start
    ESET_EULA2_zps9451f1c3.png
  • When asked, allow the ActiveX control to install.
  • Select Enable detection of potentially unwanted applications and select Advanced Settings:
    ESET2_zpsc701c045.png
  • Make sure to check the options Remove found threats and Enable Anti-Stealth technology are checked:
    ESET4_zps0afafd0d.png
  • Click Start. (This scan can take several hours, so please be patient):
    ESET3_zpsccd1657d.png
  • Once the scan is completed, select List of found threats:
    ESET5_zpsd27be299.png
  • Select Export to text file... and save the file as ESETlog.txt on your Desktop:
    ESET6_zpsc17d154e.png
  • Click the Back button.
  • Click the Finish button:
    ESET9_zps51587217.png
  • Use Notepad to open the saved log file (on your Desktop- ESET.txt)[/b]
  • Copy and paste that log as a reply to this topic.
Step 4: Question

How is your PC running?

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#5 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 25 March 2015 - 01:27 PM

Ran FRST- No Fixlog generated, I assume thus was because nothing was found. Attaching FRST text . ESET also found no threats and did not generate a List of Threats option.

Computer is the same. many popups in Russian and redirects. If I close the redirect page  and click again the link usually works. I am GMT +4 so I'll be off line for the next 8 hours or so.  Thanks for the effort

 

greggo

 

FRST text-

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Dad (administrator) on MININT-J8E39LF on 25-03-2015 21:13:50
Running from C:\Users\Dad\Desktop
Loaded Profiles: Dad (Available profiles: Dad)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Intel Corporation) C:\WINDOWS\System32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\System32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\WINDOWS\System32\rundll32.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopia.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopiaService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [608112 2011-03-29] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6561384 2010-12-14] (Realtek Semiconductor)
HKLM\...\Run: [NVHotkey] => rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [4479648 2011-01-26] (Dell Inc.)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-25] (Creative Technology Ltd)
HKLM-x32\...\Run: [RemoteControl9] => C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2010-10-02] (CyberLink Corp.)
HKLM-x32\...\Run: [PDVD9LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe [50472 2010-09-18] (CyberLink Corp.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions)
HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3723728 2015-03-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [WiTopia] => C:\Program Files\WiTopia\WiTopia.exe [814368 2014-06-06] (SparkLabs)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [HP Officejet Pro 8500 A910 (NET)] => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\RunOnce: [Adobe Speed Launcher] => 1427299140
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2010-11-30] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [192616 2010-11-30] (NVIDIA Corporation)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.dell.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-23] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 82.178.158.182 82.178.158.172 192.168.1.1
 
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/thinkorswim -> C:\Program Files\thinkorswim\npthinkorswim.dll [2015-03-25] (TD Ameritrade)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/tossc -> C:\Program Files\thinkorswim\nptossc.dll [2015-03-25] (TD Ameritrade)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR Profile: C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-21]
CHR Extension: (Google Docs) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-21]
CHR Extension: (Google Drive) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-21]
CHR Extension: (YouTube) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-21]
CHR Extension: (Google Search) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-21]
CHR Extension: (Google Sheets) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-21]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
CHR Extension: (Google Wallet) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-21]
CHR Extension: (Gmail) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-21]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3416016 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [309232 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [901184 2010-12-14] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-12-14] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [974912 2010-12-14] (Intel Corporation) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WiTopiaService; C:\Program Files\WiTopia\WiTopiaService.exe [70432 2014-06-06] (SparkLabs)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [280544 2015-02-24] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [341472 2015-02-03] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [133088 2015-02-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [284128 2015-02-25] (AVG Technologies CZ, s.r.o.)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [67136 2011-07-06] (Fresco Logic)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-03-25] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-03-17] (Malwarebytes Corporation)
S3 visctap0901; C:\Windows\System32\DRIVERS\visctap0901.sys [39048 2014-06-06] (The OpenVPN Project)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-25 21:10 - 2015-03-25 21:13 - 00014871 _____ () C:\Users\Dad\Desktop\FRST.txt
2015-03-25 21:10 - 2015-03-25 21:10 - 00014002 _____ () C:\Users\Dad\Desktop\Addition.txt
2015-03-25 21:07 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Desktop\FRST64.exe
2015-03-25 21:06 - 2015-03-25 21:06 - 00000423 _____ () C:\Users\Dad\Desktop\Fixlist.txt
2015-03-25 19:45 - 2015-03-25 19:45 - 00115255 _____ () C:\Users\Dad\Downloads\FRST.txt
2015-03-25 19:43 - 2015-03-25 19:43 - 00001223 _____ () C:\Users\Dad\Downloads\JRT.txt
2015-03-25 19:37 - 2015-03-25 19:37 - 01388782 _____ (Thisisu) C:\Users\Dad\Downloads\JRT.exe
2015-03-25 19:34 - 2015-03-25 19:34 - 00001068 _____ () C:\Users\Dad\Downloads\Malware_ThreatScan.txt
2015-03-25 19:16 - 2015-03-25 19:59 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-25 19:16 - 2015-03-25 19:16 - 00001112 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-17 06:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-25 19:13 - 2015-03-25 19:15 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Dad\Downloads\mbam-setup-2.1.4.1018 (1).exe
2015-03-25 18:58 - 2015-03-25 19:57 - 00000000 ____D () C:\AdwCleaner
2015-03-25 18:55 - 2015-03-25 18:55 - 02168320 _____ () C:\Users\Dad\Downloads\AdwCleaner.exe
2015-03-25 15:04 - 2015-03-25 15:05 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00002025 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-23 19:39 - 2015-03-23 20:02 - 105866339 _____ () C:\Users\Dad\Downloads\UPDATA_M15R0197.zip
2015-03-23 18:54 - 2015-03-23 20:10 - 00000000 ____D () C:\Users\Dad\Downloads\SonyBluRay
2015-03-23 14:39 - 2015-03-23 14:39 - 00007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-23 12:37 - 2015-03-23 12:37 - 00000000 ____D () C:\Users\Dad\AppData\Local\TradeStation_Technologies
2015-03-22 21:13 - 2015-03-22 21:13 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Dad\Downloads\tdsskiller.exe
2015-03-22 20:58 - 2015-03-22 20:58 - 03295113 _____ () C:\Users\Dad\Downloads\TJS Elite Trade Station.xlsb
2015-03-22 20:58 - 2015-03-22 20:58 - 03272521 _____ () C:\Users\Dad\Downloads\TJS Elite TOS.XLSB
2015-03-22 20:58 - 2015-03-22 20:58 - 03244603 _____ () C:\Users\Dad\Downloads\TJS Elite v7.6_AiO.XLSB
2015-03-22 20:55 - 2015-03-22 20:56 - 00026632 _____ () C:\Users\Dad\Downloads\Addition.txt
2015-03-22 20:54 - 2015-03-25 21:13 - 00000000 ____D () C:\FRST
2015-03-22 20:53 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Downloads\FRST64.exe
2015-03-22 09:14 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Local\Adobe
2015-03-22 09:12 - 2015-03-22 09:16 - 00109568 ___SH () C:\Users\Dad\Documents\Thumbs.db
2015-03-22 09:04 - 2015-03-22 09:04 - 00002266 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00001193 _____ () C:\Users\Public\Desktop\Shop for Supplies - HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-03-22 09:04 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5312.dll
2015-03-22 09:03 - 2015-03-22 09:03 - 00000057 _____ () C:\ProgramData\Ament.ini
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\ProgramData\HP
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files\HP
2015-03-22 09:02 - 2015-03-22 09:06 - 00000000 ____D () C:\Users\Dad\AppData\Local\HP
2015-03-22 08:26 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files (x86)\Hp
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Users\Dad\AppData\Local\Hewlett-Packard
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2015-03-22 08:23 - 2015-03-22 08:25 - 05197824 _____ () C:\Users\Dad\Downloads\HPSupportSolutionsFramework-en-11.51.0048.msi
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-22 03:49 - 2015-03-22 03:49 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-22 03:34 - 2015-01-09 03:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-22 03:34 - 2015-01-09 03:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-22 03:23 - 2015-03-22 03:23 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-03-22 03:21 - 2015-03-22 03:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-03-22 03:19 - 2014-06-27 06:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-03-22 03:19 - 2014-06-27 05:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-03-21 22:29 - 2015-03-21 22:29 - 00002434 _____ () C:\Windows\System32\Tasks\0215piUpdateInfo
2015-03-21 20:27 - 2015-03-21 21:08 - 00000000 ____D () C:\Bovada
2015-03-21 20:27 - 2015-03-21 20:27 - 00000439 _____ () C:\Users\Public\Desktop\BovadaPoker.lnk
2015-03-21 20:27 - 2015-03-21 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BovadaPoker
2015-03-21 20:24 - 2015-03-21 20:26 - 13724448 _____ ( ) C:\Users\Dad\Downloads\BovadaPoker.exe
2015-03-21 20:23 - 2015-03-21 20:23 - 00001051 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000989 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2015-03-21 20:22 - 2015-03-21 20:22 - 05555792 _____ (Martin Prikryl ) C:\Users\Dad\Downloads\winscp570setup.exe
2015-03-21 20:20 - 2015-03-21 20:20 - 00000000 ____D () C:\Program Files\Common Files\WiTopia
2015-03-21 20:19 - 2015-03-21 20:20 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000802 _____ () C:\Users\Public\Desktop\WiTopia.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\WiTopia
2015-03-21 20:19 - 2014-06-06 02:17 - 00039048 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\visctap0901.sys
2015-03-21 20:16 - 2015-03-21 20:18 - 07556344 _____ (WiTopia, Inc ) C:\Users\Dad\Downloads\personalVPNPro-install.exe
2015-03-21 19:12 - 2015-03-25 09:34 - 00000000 ____D () C:\Users\Dad\.thinkorswim
2015-03-21 19:12 - 2015-03-25 09:34 - 00000000 ____D () C:\Program Files\thinkorswim
2015-03-21 19:12 - 2015-03-21 19:12 - 00001901 _____ () C:\Users\Public\Desktop\thinkorswim.lnk
2015-03-21 19:12 - 2015-03-21 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\thinkorswim
2015-03-21 19:06 - 2015-03-21 19:06 - 00000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-21 19:01 - 2015-03-21 19:11 - 38119936 _____ (thinkorswim, Inc) C:\Users\Dad\Downloads\thinkorswim_x64_installer.exe
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieUserList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieSiteList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieBrowserModeList
2015-03-21 18:47 - 2015-03-25 18:57 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-03-21 18:47 - 2015-03-22 07:18 - 00000000 ____D () C:\Program Files (x86)\TradeStation Archives
2015-03-21 18:46 - 2015-03-21 19:10 - 00000000 ____D () C:\Program Files (x86)\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00002033 _____ () C:\Users\Public\Desktop\TradeStation 9.5.lnk
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-21 18:36 - 2015-03-22 23:21 - 00772682 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-03-21 18:36 - 2015-03-21 18:36 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TradeStation Technologies
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-21 18:19 - 2014-06-24 07:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-21 18:19 - 2014-06-24 06:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-21 18:19 - 2013-11-26 12:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-03-21 18:19 - 2013-11-23 02:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-03-21 18:18 - 2012-02-11 10:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-21 18:18 - 2012-02-11 10:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-03-21 18:17 - 2015-02-20 06:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-21 18:00 - 2015-03-21 18:30 - 175516032 _____ (TradeStation Technologies, tradestation.com) C:\Users\Dad\Downloads\TradeStation 9.5 Setup.exe
2015-03-21 17:54 - 2015-03-21 17:54 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Macrovision
2015-03-21 17:49 - 2015-03-21 18:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-21 17:49 - 2015-03-21 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-21 17:47 - 2015-03-21 17:47 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-21 17:45 - 2015-03-22 23:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 __RHD () C:\MSOCache
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-21 17:42 - 2015-03-23 20:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio Burn
2015-03-21 17:38 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Adobe
2015-03-21 17:34 - 2015-02-04 07:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-21 17:34 - 2015-02-04 06:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-21 17:34 - 2015-02-03 07:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-21 17:34 - 2015-02-03 07:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00002265 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-03-21 17:01 - 2015-03-21 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-21 16:59 - 2015-03-25 21:04 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-21 16:59 - 2015-03-25 19:58 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Users\Dad\AppData\Local\Google
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-21 16:59 - 2015-03-21 16:59 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-21 16:59 - 2015-03-21 16:59 - 00003636 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-21 16:58 - 2015-03-23 07:32 - 00127264 _____ () C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-21 16:58 - 2015-03-21 16:59 - 00000000 ____D () C:\Users\Dad\AppData\Local\Deployment
2015-03-21 16:58 - 2015-03-21 16:58 - 00000000 ____D () C:\Users\Dad\AppData\Local\Apps\2.0
2015-03-21 16:41 - 2015-03-21 16:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-21 16:38 - 2015-03-22 09:24 - 00000000 ____D () C:\Users\Dad\Documents\Taxes
2015-03-21 16:38 - 2015-03-22 09:22 - 00000000 ____D () C:\Users\Dad\Documents\Scans
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Work
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Travel
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Personal
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Oman
2015-03-21 16:38 - 2015-02-21 18:42 - 00010957 _____ () C:\Users\Dad\Documents\Book2 - Copy.xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved).xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved) - Copy.xlsx
2015-03-21 16:36 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\OldComputer
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ___SD () C:\Users\Dad\Documents\My Data Sources
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Mortgae
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Medical
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Lockheed
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Insurance
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Home
2015-03-21 16:30 - 2014-04-19 19:00 - 00000000 ____D () C:\Users\Dad\Documents\Misc
2015-03-21 16:15 - 2015-03-21 16:15 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:10 - 2015-03-23 13:00 - 00000000 ____D () C:\Users\Dad\Documents\Finance
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\CyberLink
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\Computer
2015-03-21 16:05 - 2015-03-21 17:03 - 00024892 _____ () C:\Windows\IE11_main.log
2015-03-21 14:41 - 2015-03-22 03:30 - 00297662 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2015-03-21 14:12 - 2015-03-22 03:23 - 00297080 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2015-03-21 13:07 - 2012-07-26 07:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-21 13:07 - 2012-07-26 07:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-03-21 13:07 - 2012-07-26 06:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-21 13:07 - 2012-07-26 06:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-21 13:07 - 2012-06-02 18:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-03-21 12:46 - 2015-03-21 12:49 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-21 12:46 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-21 12:31 - 2012-03-01 10:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-03-21 12:31 - 2012-03-01 10:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-03-21 12:31 - 2012-03-01 09:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2015-03-21 12:04 - 2014-07-01 02:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-03-21 12:04 - 2014-07-01 02:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-03-21 12:04 - 2014-03-10 01:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-03-21 12:04 - 2014-03-10 01:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-03-21 12:03 - 2014-06-06 10:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-21 12:03 - 2014-06-06 10:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-21 12:02 - 2015-02-04 07:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-21 12:02 - 2015-02-04 07:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-21 12:02 - 2015-02-04 07:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-21 12:02 - 2015-01-28 03:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-03-21 12:02 - 2015-01-09 07:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-03-21 12:02 - 2015-01-09 06:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-21 12:00 - 2015-02-03 07:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-21 12:00 - 2015-02-03 07:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-21 12:00 - 2015-02-03 07:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-21 12:00 - 2015-02-03 07:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-21 12:00 - 2015-02-03 07:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-21 12:00 - 2015-02-03 07:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-21 12:00 - 2015-02-03 07:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 06:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-21 12:00 - 2014-11-01 02:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-21 11:58 - 2014-10-14 06:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-21 11:55 - 2014-08-01 15:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-03-21 11:55 - 2014-08-01 15:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-03-21 11:54 - 2014-04-05 06:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-21 11:54 - 2014-04-05 06:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-21 11:54 - 2014-03-26 18:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-03-21 11:54 - 2014-03-26 18:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-03-21 11:54 - 2013-11-26 15:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-21 11:53 - 2015-02-20 08:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-21 11:53 - 2015-02-20 07:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-21 11:53 - 2015-02-20 07:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-21 11:53 - 2014-12-06 08:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-21 11:53 - 2014-04-25 06:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-03-21 11:53 - 2014-04-25 06:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-03-21 11:53 - 2014-01-29 06:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-21 11:53 - 2014-01-29 06:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-21 11:52 - 2014-01-28 06:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-03-21 11:52 - 2013-10-30 06:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-03-21 11:52 - 2013-10-30 06:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-03-21 11:52 - 2013-10-19 06:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-03-21 11:52 - 2013-10-19 05:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-03-21 11:52 - 2013-07-04 16:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-03-21 11:52 - 2013-07-04 15:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-03-21 11:52 - 2013-03-19 09:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-03-21 11:51 - 2014-12-19 07:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-21 11:51 - 2014-12-11 21:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-21 11:49 - 2013-12-04 06:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-03-21 11:49 - 2013-12-04 06:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-03-21 11:49 - 2013-12-04 06:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-03-21 11:49 - 2013-12-04 05:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-03-21 11:47 - 2014-07-17 06:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-03-21 11:47 - 2014-07-17 05:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-03-21 11:47 - 2014-07-17 05:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-03-21 11:47 - 2014-07-17 05:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-03-21 11:47 - 2014-07-17 05:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-03-21 11:47 - 2013-02-15 10:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-21 11:47 - 2013-02-15 10:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-03-21 11:47 - 2013-02-15 07:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-21 11:47 - 2012-04-26 09:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-03-21 11:47 - 2012-04-26 09:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-03-21 11:45 - 2014-03-04 13:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-21 11:44 - 2015-03-06 09:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-21 11:44 - 2015-03-06 09:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-21 11:44 - 2015-03-06 09:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-21 11:44 - 2015-03-06 09:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-21 11:44 - 2015-01-31 03:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-21 11:44 - 2013-04-26 03:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-21 11:44 - 2013-04-01 02:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-03-21 11:41 - 2013-08-29 06:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-03-21 11:41 - 2013-08-29 05:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-03-21 11:39 - 2014-11-11 07:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-21 11:39 - 2014-11-11 06:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-21 11:39 - 2013-09-08 06:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-03-21 11:39 - 2013-09-08 06:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-03-21 11:39 - 2012-12-07 17:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-21 11:39 - 2012-12-07 17:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-03-21 11:39 - 2012-12-07 16:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-21 11:39 - 2012-12-07 16:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-03-21 11:39 - 2012-12-07 15:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-03-21 11:37 - 2013-10-04 06:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 06:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-03-21 11:37 - 2013-10-04 05:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 05:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-03-21 11:34 - 2014-06-18 06:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-21 11:34 - 2014-06-18 05:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-21 11:34 - 2011-04-09 10:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-21 11:34 - 2011-04-09 09:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-21 11:33 - 2015-02-13 09:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-21 11:33 - 2015-02-13 09:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-21 11:33 - 2013-05-13 09:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-03-21 11:33 - 2013-05-13 07:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-03-21 11:27 - 2013-05-10 09:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-03-21 11:27 - 2013-05-10 07:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-03-21 11:25 - 2012-10-03 21:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-03-21 11:25 - 2012-10-03 20:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-21 11:23 - 2014-12-19 05:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-21 11:23 - 2014-10-14 06:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-21 11:23 - 2014-10-14 05:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-21 11:23 - 2014-08-21 10:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-03-21 11:23 - 2014-08-21 10:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-03-21 11:23 - 2014-06-16 06:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-21 11:23 - 2014-06-03 14:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-21 11:23 - 2014-06-03 13:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-21 11:23 - 2014-06-03 13:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-21 11:23 - 2013-04-10 10:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-21 11:23 - 2013-02-27 09:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-21 11:23 - 2011-02-03 15:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-21 11:22 - 2014-10-04 06:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-03-21 11:22 - 2013-06-26 02:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-03-21 11:22 - 2012-11-29 02:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-03-21 11:21 - 2012-08-22 01:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-03-21 11:20 - 2014-11-08 07:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-03-21 11:20 - 2014-11-08 06:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-03-21 11:20 - 2013-07-26 06:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-03-21 11:20 - 2013-07-26 05:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-03-21 11:20 - 2013-07-25 13:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-21 11:20 - 2013-07-25 12:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-21 11:19 - 2014-05-30 10:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-21 11:19 - 2013-07-04 16:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 16:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-21 11:19 - 2013-07-04 15:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 15:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-21 11:18 - 2015-02-03 07:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-21 11:18 - 2015-02-03 07:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-21 11:18 - 2015-01-17 06:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-21 11:18 - 2015-01-17 06:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-21 11:18 - 2014-11-26 07:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-21 11:18 - 2014-11-26 07:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-21 11:18 - 2014-02-04 06:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-03-21 11:18 - 2014-02-04 06:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-03-21 11:18 - 2014-02-04 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-03-21 11:18 - 2012-08-22 22:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-21 11:18 - 2012-07-05 00:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-03-21 11:17 - 2014-11-11 05:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-03-21 11:17 - 2014-10-03 06:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-03-21 11:17 - 2014-10-03 06:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-10-03 05:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 05:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-08-12 06:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-03-21 11:17 - 2014-08-12 05:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-03-21 11:17 - 2014-06-06 14:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-21 11:17 - 2014-06-06 13:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-21 11:17 - 2013-11-27 05:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-21 11:17 - 2013-10-04 06:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-03-21 11:17 - 2013-10-04 05:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-03-21 11:17 - 2013-08-05 06:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-03-21 11:17 - 2013-02-12 08:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-03-21 11:17 - 2012-11-02 09:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-03-21 11:17 - 2012-11-02 09:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-03-21 11:16 - 2015-02-26 07:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-21 11:16 - 2014-10-30 06:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-03-21 11:16 - 2014-10-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-03-21 11:16 - 2014-10-03 05:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-21 11:16 - 2014-03-04 13:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-21 11:16 - 2014-03-04 13:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-21 11:16 - 2014-03-04 12:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-21 11:16 - 2014-03-04 12:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-21 11:16 - 2014-01-24 06:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-21 11:16 - 2013-10-12 06:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-03-21 11:16 - 2013-10-12 06:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-03-21 11:16 - 2013-10-12 05:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-03-21 11:16 - 2013-08-02 06:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-21 11:16 - 2013-08-02 04:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-04-26 09:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-21 11:16 - 2013-04-26 08:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2015-03-21 11:16 - 2012-03-17 11:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-03-21 11:15 - 2013-07-20 14:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2013-07-20 14:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2012-09-26 02:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-03-21 11:15 - 2012-09-26 02:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-03-21 11:15 - 2012-07-07 00:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-21 11:15 - 2012-07-05 02:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-03-21 11:15 - 2012-07-05 01:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-03-21 11:15 - 2012-07-05 01:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-03-21 11:14 - 2014-12-08 07:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-21 11:14 - 2014-12-08 06:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-21 11:14 - 2014-10-25 05:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-21 11:14 - 2014-10-25 05:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-21 11:14 - 2014-09-04 09:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-21 11:14 - 2014-09-04 09:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-21 11:14 - 2013-01-24 10:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-21 11:14 - 2012-11-23 07:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-03-21 11:03 - 2014-08-23 06:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-21 11:03 - 2014-08-23 05:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-21 11:02 - 2015-03-21 11:04 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Games
2015-03-21 11:02 - 2012-05-14 09:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-21 10:33 - 2014-07-14 06:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-21 10:33 - 2014-07-14 05:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-21 10:33 - 2013-10-12 06:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-21 10:33 - 2013-10-12 06:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-10-12 06:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-08-28 05:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-03-21 10:33 - 2012-06-06 10:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-03-21 10:33 - 2012-06-06 09:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-03-21 10:29 - 2012-02-17 10:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 09:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 08:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-03-21 10:26 - 2015-03-21 10:26 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\AVG2015
2015-03-21 10:25 - 2015-03-21 10:26 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-21 10:25 - 2015-03-21 10:25 - 00000971 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ___HD () C:\$AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TuneUp Software
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Program Files (x86)\AVG
2015-03-21 10:23 - 2015-03-25 10:29 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-21 10:23 - 2015-03-21 10:28 - 00000000 ____D () C:\Users\Dad\AppData\Local\Avg2015
2015-03-21 10:23 - 2015-03-21 10:23 - 04816784 _____ (AVG Technologies) C:\Users\Dad\Downloads\avg_free_stb_all_5856p1_177.exe
2015-03-21 10:23 - 2015-03-21 10:23 - 00000000 ____D () C:\Users\Dad\AppData\Local\MFAData
2015-03-21 10:11 - 2015-03-21 10:11 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio
2015-03-21 10:08 - 2015-03-21 17:38 - 00001423 _____ () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-21 10:07 - 2015-03-21 10:07 - 00000020 ___SH () C:\Users\Dad\ntuser.ini
2015-03-21 10:07 - 2015-03-21 10:07 - 00000000 ____D () C:\Users\Dad\AppData\Local\VirtualStore
2015-03-21 10:07 - 2014-05-14 20:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-21 10:07 - 2014-05-14 20:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-21 10:07 - 2014-05-14 20:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-21 10:07 - 2014-05-14 20:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-21 10:07 - 2014-05-14 20:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-21 10:07 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-21 10:07 - 2009-07-14 08:54 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-21 10:07 - 2009-07-14 08:49 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-21 10:06 - 2015-03-21 19:12 - 00000000 ____D () C:\Users\Dad
2015-03-21 09:59 - 2015-03-21 10:07 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2015-03-21 09:59 - 2015-03-21 09:59 - 00000000 ____D () C:\ProgramData\SoftThinks
2015-03-21 09:36 - 2015-03-21 09:36 - 00000000 ____D () C:\Windows\SMINST
2015-03-21 09:06 - 2015-03-21 19:09 - 29441132 _____ () C:\Users\Dad\Downloads\Monthly (9.05.00.2428 - 2015-03-21 0906).tsa
2015-03-20 15:48 - 2015-03-20 16:05 - 160828136 _____ () C:\Users\Dad\Downloads\Dell_Backup_and_Recovery_1.7.5.64.exe
2015-02-25 17:37 - 2015-02-25 17:37 - 00284128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2015-02-24 16:46 - 2015-02-24 16:46 - 00280544 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-25 20:07 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-25 20:07 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-25 20:04 - 2012-04-18 19:59 - 01803937 _____ () C:\Windows\WindowsUpdate.log
2015-03-25 20:04 - 2009-07-14 09:13 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-25 19:58 - 2010-11-21 07:47 - 00039580 _____ () C:\Windows\PFRO.log
2015-03-25 19:58 - 2009-07-14 09:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-25 19:58 - 2009-07-14 08:51 - 00046619 _____ () C:\Windows\setupact.log
2015-03-25 15:04 - 2012-04-18 20:27 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-23 07:32 - 2012-04-18 20:24 - 00000000 ____D () C:\ProgramData\Sonic
2015-03-23 07:05 - 2009-07-14 08:45 - 00466904 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-22 23:22 - 2009-07-14 06:34 - 00000510 _____ () C:\Windows\win.ini
2015-03-22 04:17 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\rescache
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\tracing
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\AppCompat
2015-03-22 03:21 - 2009-07-14 07:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-03-21 18:46 - 2012-04-18 20:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-21 18:46 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\Cursors
2015-03-21 17:48 - 2012-04-18 20:12 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-21 17:48 - 2010-11-21 11:16 - 00000000 ____D () C:\Windows\ShellNew
2015-03-21 17:48 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-21 17:19 - 2012-04-18 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-21 17:13 - 2010-11-21 11:17 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-21 10:12 - 2009-07-14 07:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-03-21 09:59 - 2012-04-18 20:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-24 04:17 - 2010-11-21 07:27 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
 
==================== Files in the root of some directories =======
 
2015-03-21 19:06 - 2015-03-21 19:06 - 0000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-23 14:39 - 2015-03-23 14:39 - 0007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-22 09:03 - 2015-03-22 09:03 - 0000057 _____ () C:\ProgramData\Ament.ini
 
Some content of TEMP:
====================
C:\Users\Dad\AppData\Local\Temp\clean20.dll
C:\Users\Dad\AppData\Local\Temp\GACInstaller.dll
C:\Users\Dad\AppData\Local\Temp\i4jdel0.exe
C:\Users\Dad\AppData\Local\Temp\instutil.dll
C:\Users\Dad\AppData\Local\Temp\ose00000.exe
C:\Users\Dad\AppData\Local\Temp\Quarantine.exe
C:\Users\Dad\AppData\Local\Temp\RegistASM.exe
C:\Users\Dad\AppData\Local\Temp\sqlite3.dll
C:\Users\Dad\AppData\Local\Temp\TSInst10.exe
C:\Users\Dad\AppData\Local\Temp\TSInstallCAUtils.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-03-25 00:24
 
==================== End Of Log ============================


#6 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 25 March 2015 - 03:31 PM

You haven't run the fix. Redo it again please. :)

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#7 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 26 March 2015 - 12:19 AM

OK , missed the click "FIX" ! Here's a redo: Fixlog, and FRST, the ESET didnt find anything so no log.  Also, the popups now (so far) are just blank (black boxes). Still getting redirects. Malwarebytes is still running from when I installed it in the first session. It keeps giving me a warning about blocking "OWPAWUK.RU" 

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Dad at 2015-03-26 07:23:36 Run:1
Running from C:\Users\Dad\Desktop
Loaded Profiles: Dad (Available profiles: Dad)
Boot Mode: Normal
==============================================
 
Content of fixlist:
*****************
HKLM-x32\...\Run: [] => [X]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
EmptyTemp:
*****************
 
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
EmptyTemp: => Removed 3.1 GB temporary data.
 
 
The system needed a reboot. 
 
==== End of Fixlog 07:23:41 ====
 
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Dad (administrator) on MININT-J8E39LF on 26-03-2015 07:27:23
Running from C:\Users\Dad\Desktop
Loaded Profiles: Dad (Available profiles: Dad)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopiaService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Intel Corporation) C:\WINDOWS\System32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\System32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\WINDOWS\System32\rundll32.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(SparkLabs) C:\Program Files\WiTopia\WiTopia.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [608112 2011-03-29] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6561384 2010-12-14] (Realtek Semiconductor)
HKLM\...\Run: [NVHotkey] => rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [4479648 2011-01-26] (Dell Inc.)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-25] (Creative Technology Ltd)
HKLM-x32\...\Run: [RemoteControl9] => C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe [87336 2010-10-02] (CyberLink Corp.)
HKLM-x32\...\Run: [PDVD9LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe [50472 2010-09-18] (CyberLink Corp.)
HKLM-x32\...\Run: [RoxWatchTray] => C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions)
HKLM-x32\...\Run: [Desktop Disc Tool] => C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3723728 2015-03-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [WiTopia] => C:\Program Files\WiTopia\WiTopia.exe [814368 2014-06-06] (SparkLabs)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\Run: [HP Officejet Pro 8500 A910 (NET)] => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\...\RunOnce: [Adobe Speed Launcher] => 1427340379
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2010-11-30] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [192616 2010-11-30] (NVIDIA Corporation)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-2088855792-1800194223-1642033146-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.dell.com
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-23] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-27] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 91.194.254.105 8.8.8.8
 
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/thinkorswim -> C:\Program Files\thinkorswim\npthinkorswim.dll [2015-03-26] (TD Ameritrade)
FF Plugin HKU\S-1-5-21-2088855792-1800194223-1642033146-1003: tdameritrade.com/tossc -> C:\Program Files\thinkorswim\nptossc.dll [2015-03-26] (TD Ameritrade)
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR Profile: C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-21]
CHR Extension: (Google Docs) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-21]
CHR Extension: (Google Drive) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-21]
CHR Extension: (YouTube) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-21]
CHR Extension: (Google Search) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-21]
CHR Extension: (Google Sheets) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-21]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-21]
CHR Extension: (Google Wallet) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-21]
CHR Extension: (Gmail) - C:\Users\Dad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-21]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3416016 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [309232 2015-03-06] (AVG Technologies CZ, s.r.o.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [901184 2010-12-14] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-12-14] (Intel Corporation) [File not signed]
R2 Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [974912 2010-12-14] (Intel Corporation) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WiTopiaService; C:\Program Files\WiTopia\WiTopiaService.exe [70432 2014-06-06] (SparkLabs)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [280544 2015-02-24] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [341472 2015-02-03] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [133088 2015-02-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [284128 2015-02-25] (AVG Technologies CZ, s.r.o.)
S3 FLxHCIh; C:\Windows\system32\drivers\FLxHCIh.sys [67136 2011-07-06] (Fresco Logic)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-03-26] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-03-17] (Malwarebytes Corporation)
S3 visctap0901; C:\Windows\System32\DRIVERS\visctap0901.sys [39048 2014-06-06] (The OpenVPN Project)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-26 07:27 - 2015-03-26 07:29 - 00014230 _____ () C:\Users\Dad\Desktop\FRST.txt
2015-03-25 21:19 - 2015-03-25 21:19 - 00000000 ____D () C:\Program Files (x86)\ESET
2015-03-25 21:07 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Desktop\FRST64.exe
2015-03-25 19:37 - 2015-03-25 19:37 - 01388782 _____ (Thisisu) C:\Users\Dad\Downloads\JRT.exe
2015-03-25 19:16 - 2015-03-26 07:26 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-25 19:16 - 2015-03-25 19:16 - 00001112 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-25 19:16 - 2015-03-25 19:16 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-03-25 19:16 - 2015-03-17 06:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-25 19:16 - 2015-03-17 06:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-25 19:13 - 2015-03-25 19:15 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Dad\Downloads\mbam-setup-2.1.4.1018 (1).exe
2015-03-25 18:58 - 2015-03-25 19:57 - 00000000 ____D () C:\AdwCleaner
2015-03-25 18:55 - 2015-03-25 18:55 - 02168320 _____ () C:\Users\Dad\Downloads\AdwCleaner.exe
2015-03-25 15:04 - 2015-03-25 15:05 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00002025 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2015-03-25 15:04 - 2015-03-25 15:04 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-25 04:14 - 2015-03-11 08:06 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-25 04:14 - 2015-03-11 08:06 - 00760832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-25 04:14 - 2015-03-11 08:06 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-25 04:14 - 2015-03-11 08:06 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-25 04:14 - 2015-03-11 08:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-25 04:14 - 2015-03-11 08:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-25 04:14 - 2015-03-11 08:05 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-25 04:14 - 2015-03-11 08:02 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-23 19:39 - 2015-03-23 20:02 - 105866339 _____ () C:\Users\Dad\Downloads\UPDATA_M15R0197.zip
2015-03-23 18:54 - 2015-03-23 20:10 - 00000000 ____D () C:\Users\Dad\Downloads\SonyBluRay
2015-03-23 14:39 - 2015-03-23 14:39 - 00007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-23 12:37 - 2015-03-23 12:37 - 00000000 ____D () C:\Users\Dad\AppData\Local\TradeStation_Technologies
2015-03-22 21:13 - 2015-03-22 21:13 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Dad\Downloads\tdsskiller.exe
2015-03-22 20:58 - 2015-03-22 20:58 - 03295113 _____ () C:\Users\Dad\Downloads\TJS Elite Trade Station.xlsb
2015-03-22 20:58 - 2015-03-22 20:58 - 03272521 _____ () C:\Users\Dad\Downloads\TJS Elite TOS.XLSB
2015-03-22 20:58 - 2015-03-22 20:58 - 03244603 _____ () C:\Users\Dad\Downloads\TJS Elite v7.6_AiO.XLSB
2015-03-22 20:55 - 2015-03-22 20:56 - 00026632 _____ () C:\Users\Dad\Downloads\Addition.txt
2015-03-22 20:54 - 2015-03-26 07:27 - 00000000 ____D () C:\FRST
2015-03-22 20:53 - 2015-03-22 20:53 - 02095616 _____ (Farbar) C:\Users\Dad\Downloads\FRST64.exe
2015-03-22 09:14 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Local\Adobe
2015-03-22 09:12 - 2015-03-22 09:16 - 00109568 ___SH () C:\Users\Dad\Documents\Thumbs.db
2015-03-22 09:04 - 2015-03-22 09:04 - 00002266 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00001193 _____ () C:\Users\Public\Desktop\Shop for Supplies - HP Officejet Pro 8500 A910.lnk
2015-03-22 09:04 - 2015-03-22 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-03-22 09:04 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5312.dll
2015-03-22 09:03 - 2015-03-22 09:03 - 00000057 _____ () C:\ProgramData\Ament.ini
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\ProgramData\HP
2015-03-22 09:03 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files\HP
2015-03-22 09:02 - 2015-03-22 09:06 - 00000000 ____D () C:\Users\Dad\AppData\Local\HP
2015-03-22 08:26 - 2015-03-22 09:03 - 00000000 ____D () C:\Program Files (x86)\Hp
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Users\Dad\AppData\Local\Hewlett-Packard
2015-03-22 08:26 - 2015-03-22 08:26 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2015-03-22 08:23 - 2015-03-22 08:25 - 05197824 _____ () C:\Users\Dad\Downloads\HPSupportSolutionsFramework-en-11.51.0048.msi
2015-03-22 03:49 - 2015-03-25 22:30 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-22 03:49 - 2015-03-25 22:30 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-22 03:34 - 2015-01-09 03:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-22 03:34 - 2015-01-09 03:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-22 03:26 - 2015-03-22 03:26 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-22 03:23 - 2015-03-22 03:23 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-03-22 03:21 - 2015-03-22 03:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-03-22 03:20 - 2015-03-22 03:20 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-03-22 03:19 - 2014-06-27 06:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-03-22 03:19 - 2014-06-27 05:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-03-21 22:29 - 2015-03-21 22:29 - 00002434 _____ () C:\Windows\System32\Tasks\0215piUpdateInfo
2015-03-21 20:27 - 2015-03-21 21:08 - 00000000 ____D () C:\Bovada
2015-03-21 20:27 - 2015-03-21 20:27 - 00000439 _____ () C:\Users\Public\Desktop\BovadaPoker.lnk
2015-03-21 20:27 - 2015-03-21 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BovadaPoker
2015-03-21 20:24 - 2015-03-21 20:26 - 13724448 _____ ( ) C:\Users\Dad\Downloads\BovadaPoker.exe
2015-03-21 20:23 - 2015-03-21 20:23 - 00001051 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000989 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2015-03-21 20:23 - 2015-03-21 20:23 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2015-03-21 20:22 - 2015-03-21 20:22 - 05555792 _____ (Martin Prikryl ) C:\Users\Dad\Downloads\winscp570setup.exe
2015-03-21 20:20 - 2015-03-21 20:20 - 00000000 ____D () C:\Program Files\Common Files\WiTopia
2015-03-21 20:19 - 2015-03-21 20:20 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000802 _____ () C:\Users\Public\Desktop\WiTopia.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiTopia
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\WiTopia
2015-03-21 20:19 - 2014-06-06 02:17 - 00039048 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\visctap0901.sys
2015-03-21 20:16 - 2015-03-21 20:18 - 07556344 _____ (WiTopia, Inc ) C:\Users\Dad\Downloads\personalVPNPro-install.exe
2015-03-21 19:12 - 2015-03-26 07:15 - 00000000 ____D () C:\Users\Dad\.thinkorswim
2015-03-21 19:12 - 2015-03-26 07:15 - 00000000 ____D () C:\Program Files\thinkorswim
2015-03-21 19:12 - 2015-03-21 19:12 - 00001901 _____ () C:\Users\Public\Desktop\thinkorswim.lnk
2015-03-21 19:12 - 2015-03-21 19:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\thinkorswim
2015-03-21 19:06 - 2015-03-21 19:06 - 00000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-21 19:01 - 2015-03-21 19:11 - 38119936 _____ (thinkorswim, Inc) C:\Users\Dad\Downloads\thinkorswim_x64_installer.exe
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieUserList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieSiteList
2015-03-21 19:00 - 2015-03-21 19:00 - 00000000 __SHD () C:\Users\Dad\AppData\Local\EmieBrowserModeList
2015-03-21 18:47 - 2015-03-25 18:57 - 00000000 ____D () C:\ProgramData\boost_interprocess
2015-03-21 18:47 - 2015-03-22 07:18 - 00000000 ____D () C:\Program Files (x86)\TradeStation Archives
2015-03-21 18:46 - 2015-03-21 19:10 - 00000000 ____D () C:\Program Files (x86)\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00002033 _____ () C:\Users\Public\Desktop\TradeStation 9.5.lnk
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TradeStation 9.5
2015-03-21 18:46 - 2015-03-21 18:46 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-21 18:36 - 2015-03-22 23:21 - 00772682 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-03-21 18:36 - 2015-03-21 18:36 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TradeStation Technologies
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-21 18:19 - 2014-07-09 06:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-21 18:19 - 2014-07-09 05:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-21 18:19 - 2014-06-24 07:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-21 18:19 - 2014-06-24 06:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-21 18:19 - 2013-11-26 12:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-03-21 18:19 - 2013-11-23 02:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-03-21 18:18 - 2012-02-11 10:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-21 18:18 - 2012-02-11 10:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-03-21 18:17 - 2015-02-20 06:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-21 18:00 - 2015-03-21 18:30 - 175516032 _____ (TradeStation Technologies, tradestation.com) C:\Users\Dad\Downloads\TradeStation 9.5 Setup.exe
2015-03-21 17:54 - 2015-03-21 17:54 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Macrovision
2015-03-21 17:49 - 2015-03-21 18:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-21 17:49 - 2015-03-21 17:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-21 17:48 - 2015-03-21 17:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-21 17:47 - 2015-03-21 17:47 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-21 17:46 - 2015-03-21 17:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-21 17:45 - 2015-03-22 23:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 __RHD () C:\MSOCache
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Help
2015-03-21 17:45 - 2015-03-21 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-21 17:42 - 2015-03-23 20:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio Burn
2015-03-21 17:38 - 2015-03-22 09:14 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Adobe
2015-03-21 17:34 - 2015-02-04 07:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-21 17:34 - 2015-02-04 06:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-21 17:34 - 2015-02-03 07:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-21 17:34 - 2015-02-03 07:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-21 17:01 - 2015-03-21 17:01 - 00002265 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-03-21 17:01 - 2015-03-21 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-21 16:59 - 2015-03-26 07:26 - 00000888 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-21 16:59 - 2015-03-26 07:07 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Users\Dad\AppData\Local\Google
2015-03-21 16:59 - 2015-03-21 17:01 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-21 16:59 - 2015-03-21 16:59 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-21 16:59 - 2015-03-21 16:59 - 00003636 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-21 16:58 - 2015-03-23 07:32 - 00127264 _____ () C:\Users\Dad\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-21 16:58 - 2015-03-21 16:59 - 00000000 ____D () C:\Users\Dad\AppData\Local\Deployment
2015-03-21 16:58 - 2015-03-21 16:58 - 00000000 ____D () C:\Users\Dad\AppData\Local\Apps\2.0
2015-03-21 16:41 - 2015-03-21 16:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-21 16:40 - 2015-03-21 16:40 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-21 16:40 - 2015-03-21 16:40 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-03-21 16:40 - 2015-03-21 16:40 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-21 16:40 - 2015-03-21 16:40 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-21 16:40 - 2015-03-21 16:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-21 16:40 - 2015-03-21 16:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-21 16:38 - 2015-03-22 09:24 - 00000000 ____D () C:\Users\Dad\Documents\Taxes
2015-03-21 16:38 - 2015-03-22 09:22 - 00000000 ____D () C:\Users\Dad\Documents\Scans
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Work
2015-03-21 16:38 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\Travel
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Personal
2015-03-21 16:38 - 2015-03-21 16:38 - 00000000 ____D () C:\Users\Dad\Documents\Oman
2015-03-21 16:38 - 2015-02-21 18:42 - 00010957 _____ () C:\Users\Dad\Documents\Book2 - Copy.xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved).xlsx
2015-03-21 16:38 - 2014-09-13 19:55 - 00010912 _____ () C:\Users\Dad\Documents\Book1 (Autosaved) - Copy.xlsx
2015-03-21 16:36 - 2015-03-22 09:18 - 00000000 ____D () C:\Users\Dad\Documents\OldComputer
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ___SD () C:\Users\Dad\Documents\My Data Sources
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Mortgae
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Medical
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Lockheed
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Insurance
2015-03-21 16:30 - 2015-03-21 16:30 - 00000000 ____D () C:\Users\Dad\Documents\Home
2015-03-21 16:30 - 2014-04-19 19:00 - 00000000 ____D () C:\Users\Dad\Documents\Misc
2015-03-21 16:15 - 2015-03-21 16:15 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:15 - 2015-03-21 16:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-03-21 16:10 - 2015-03-23 13:00 - 00000000 ____D () C:\Users\Dad\Documents\Finance
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\CyberLink
2015-03-21 16:10 - 2015-03-21 16:10 - 00000000 ____D () C:\Users\Dad\Documents\Computer
2015-03-21 16:05 - 2015-03-21 17:03 - 00024892 _____ () C:\Windows\IE11_main.log
2015-03-21 14:41 - 2015-03-22 03:30 - 00297662 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2015-03-21 14:12 - 2015-03-22 03:23 - 00297080 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2015-03-21 13:07 - 2012-07-26 07:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-21 13:07 - 2012-07-26 07:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-21 13:07 - 2012-07-26 07:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-03-21 13:07 - 2012-07-26 06:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-21 13:07 - 2012-07-26 06:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-21 13:07 - 2012-06-02 18:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-03-21 12:46 - 2015-03-21 12:49 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-21 12:46 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-21 12:31 - 2012-03-01 10:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-03-21 12:31 - 2012-03-01 10:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-03-21 12:31 - 2012-03-01 09:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2015-03-21 12:04 - 2014-07-01 02:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-03-21 12:04 - 2014-07-01 02:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-03-21 12:04 - 2014-03-10 01:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-03-21 12:04 - 2014-03-10 01:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-03-21 12:04 - 2014-03-10 01:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-03-21 12:03 - 2014-06-06 10:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-21 12:03 - 2014-06-06 10:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-21 12:02 - 2015-01-28 03:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-03-21 12:02 - 2015-01-09 07:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-03-21 12:02 - 2015-01-09 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-03-21 12:02 - 2015-01-09 06:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-21 12:01 - 2015-02-03 07:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-21 12:00 - 2015-02-03 07:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-21 12:00 - 2015-02-03 07:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-21 12:00 - 2015-02-03 07:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-21 12:00 - 2015-02-03 07:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-21 12:00 - 2015-02-03 07:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-21 12:00 - 2015-02-03 07:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-21 12:00 - 2015-02-03 07:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 07:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-21 12:00 - 2015-02-03 07:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-21 12:00 - 2015-02-03 07:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-21 12:00 - 2015-02-03 07:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-21 12:00 - 2015-02-03 07:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-21 12:00 - 2015-02-03 07:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-21 12:00 - 2015-02-03 07:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-21 12:00 - 2015-02-03 07:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-21 12:00 - 2015-02-03 07:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-21 12:00 - 2015-02-03 07:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-21 12:00 - 2015-02-03 06:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-21 12:00 - 2014-11-01 02:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-21 12:00 - 2014-06-28 04:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-21 11:58 - 2014-10-14 06:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-21 11:55 - 2014-08-01 15:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-03-21 11:55 - 2014-08-01 15:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-03-21 11:54 - 2014-06-19 02:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-03-21 11:54 - 2014-04-05 06:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-21 11:54 - 2014-04-05 06:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-21 11:54 - 2014-03-26 18:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-03-21 11:54 - 2014-03-26 18:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-21 11:54 - 2014-03-26 18:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-03-21 11:54 - 2013-11-26 15:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-21 11:53 - 2015-02-20 08:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-21 11:53 - 2015-02-20 08:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-21 11:53 - 2015-02-20 08:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-21 11:53 - 2015-02-20 07:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-21 11:53 - 2015-02-20 07:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-21 11:53 - 2014-12-06 08:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-03-21 11:53 - 2014-12-06 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-21 11:53 - 2014-04-25 06:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-03-21 11:53 - 2014-04-25 06:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-03-21 11:53 - 2014-01-29 06:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-21 11:53 - 2014-01-29 06:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 22:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-21 11:53 - 2012-10-09 21:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-21 11:52 - 2014-01-28 06:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-03-21 11:52 - 2013-10-30 06:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-03-21 11:52 - 2013-10-30 06:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-03-21 11:52 - 2013-10-19 06:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-03-21 11:52 - 2013-10-19 05:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-03-21 11:52 - 2013-07-04 16:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-03-21 11:52 - 2013-07-04 15:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-03-21 11:52 - 2013-03-19 09:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-03-21 11:51 - 2014-12-19 07:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-21 11:51 - 2014-12-11 21:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-21 11:49 - 2013-12-04 06:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-03-21 11:49 - 2013-12-04 06:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 06:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-03-21 11:49 - 2013-12-04 06:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-03-21 11:49 - 2013-12-04 06:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-03-21 11:49 - 2013-12-04 06:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-03-21 11:49 - 2013-12-04 05:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-03-21 11:49 - 2013-12-04 05:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-03-21 11:47 - 2014-07-17 06:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-03-21 11:47 - 2014-07-17 06:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-03-21 11:47 - 2014-07-17 05:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-03-21 11:47 - 2014-07-17 05:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-03-21 11:47 - 2014-07-17 05:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-03-21 11:47 - 2014-07-17 05:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-03-21 11:47 - 2013-02-15 10:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-21 11:47 - 2013-02-15 10:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-03-21 11:47 - 2013-02-15 07:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-21 11:47 - 2012-04-26 09:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-03-21 11:47 - 2012-04-26 09:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-03-21 11:45 - 2014-03-04 13:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-21 11:45 - 2014-03-04 13:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-03-21 11:45 - 2014-03-04 13:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-03-21 11:45 - 2014-03-04 13:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-21 11:44 - 2015-03-06 09:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-21 11:44 - 2015-03-06 09:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-21 11:44 - 2015-03-06 09:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-21 11:44 - 2015-03-06 09:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-21 11:44 - 2015-03-06 09:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-21 11:44 - 2015-03-06 09:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-21 11:44 - 2015-03-06 09:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-21 11:44 - 2015-03-06 09:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-21 11:44 - 2015-03-06 09:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-21 11:44 - 2015-01-31 03:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-21 11:44 - 2013-04-26 03:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-21 11:44 - 2013-04-01 02:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-21 11:41 - 2013-08-29 06:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-03-21 11:41 - 2013-08-29 06:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-21 11:41 - 2013-08-29 05:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-03-21 11:41 - 2013-08-29 05:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-03-21 11:39 - 2014-11-11 07:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-21 11:39 - 2014-11-11 06:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-21 11:39 - 2013-09-08 06:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-03-21 11:39 - 2013-09-08 06:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-03-21 11:39 - 2012-12-07 17:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-21 11:39 - 2012-12-07 17:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-03-21 11:39 - 2012-12-07 16:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-21 11:39 - 2012-12-07 16:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-03-21 11:39 - 2012-12-07 15:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 15:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-03-21 11:39 - 2012-12-07 15:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2015-03-21 11:39 - 2012-12-07 14:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2015-03-21 11:37 - 2013-10-04 06:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 06:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-03-21 11:37 - 2013-10-04 05:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-03-21 11:37 - 2013-10-04 05:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-03-21 11:34 - 2014-06-18 06:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-21 11:34 - 2014-06-18 05:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-21 11:34 - 2011-04-09 10:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-21 11:34 - 2011-04-09 09:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-21 11:33 - 2015-02-13 09:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-21 11:33 - 2015-02-13 09:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-21 11:33 - 2013-05-13 09:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-03-21 11:33 - 2013-05-13 07:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-03-21 11:33 - 2013-05-13 07:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-03-21 11:27 - 2013-05-10 09:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-03-21 11:27 - 2013-05-10 07:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-21 11:25 - 2012-10-03 21:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-03-21 11:25 - 2012-10-03 21:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-03-21 11:25 - 2012-10-03 20:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
2015-03-21 11:25 - 2012-10-03 20:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-21 11:23 - 2014-12-19 05:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-21 11:23 - 2014-10-14 06:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-21 11:23 - 2014-10-14 05:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-21 11:23 - 2014-08-21 10:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-03-21 11:23 - 2014-08-21 10:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-21 11:23 - 2014-08-21 10:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-03-21 11:23 - 2014-06-16 06:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-21 11:23 - 2014-06-03 14:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-21 11:23 - 2014-06-03 14:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-21 11:23 - 2014-06-03 13:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-21 11:23 - 2014-06-03 13:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-21 11:23 - 2013-04-10 10:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-21 11:23 - 2013-02-27 09:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-21 11:23 - 2011-02-03 15:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-21 11:22 - 2014-10-04 06:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-21 11:22 - 2014-10-04 05:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-03-21 11:22 - 2013-06-26 02:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-03-21 11:22 - 2012-11-29 02:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-03-21 11:22 - 2012-11-29 02:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-03-21 11:21 - 2012-08-22 01:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-03-21 11:20 - 2014-11-08 07:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-03-21 11:20 - 2014-11-08 06:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-03-21 11:20 - 2013-07-26 06:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-03-21 11:20 - 2013-07-26 05:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-03-21 11:20 - 2013-07-25 13:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-21 11:20 - 2013-07-25 12:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-21 11:19 - 2014-05-30 10:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-21 11:19 - 2013-07-04 16:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 16:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-21 11:19 - 2013-07-04 15:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-21 11:19 - 2013-07-04 15:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-21 11:18 - 2015-02-03 07:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-21 11:18 - 2015-02-03 07:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-21 11:18 - 2015-01-17 06:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-21 11:18 - 2015-01-17 06:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-21 11:18 - 2014-11-26 07:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-21 11:18 - 2014-11-26 07:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-21 11:18 - 2014-02-04 06:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-21 11:18 - 2014-02-04 06:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-03-21 11:18 - 2014-02-04 06:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-03-21 11:18 - 2014-02-04 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2015-03-21 11:18 - 2012-08-22 22:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-21 11:18 - 2012-07-05 00:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-03-21 11:17 - 2014-11-11 05:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-03-21 11:17 - 2014-10-03 06:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 06:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-03-21 11:17 - 2014-10-03 06:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-10-03 05:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-03-21 11:17 - 2014-10-03 05:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-03-21 11:17 - 2014-10-03 05:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-03-21 11:17 - 2014-08-12 06:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-03-21 11:17 - 2014-08-12 05:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-03-21 11:17 - 2014-06-06 14:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-21 11:17 - 2014-06-06 13:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-21 11:17 - 2013-11-27 05:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-21 11:17 - 2013-11-27 05:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-21 11:17 - 2013-10-04 06:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-03-21 11:17 - 2013-10-04 05:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-03-21 11:17 - 2013-08-05 06:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-03-21 11:17 - 2013-07-12 14:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-21 11:17 - 2013-07-03 08:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-03-21 11:17 - 2013-02-12 08:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-03-21 11:17 - 2012-11-02 09:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-03-21 11:17 - 2012-11-02 09:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-03-21 11:16 - 2015-02-26 07:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-21 11:16 - 2014-10-30 06:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-03-21 11:16 - 2014-10-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-03-21 11:16 - 2014-10-03 05:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-21 11:16 - 2014-03-04 13:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-21 11:16 - 2014-03-04 13:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-21 11:16 - 2014-03-04 13:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-21 11:16 - 2014-03-04 12:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-21 11:16 - 2014-03-04 12:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-21 11:16 - 2014-01-24 06:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-21 11:16 - 2013-10-12 06:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-03-21 11:16 - 2013-10-12 06:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-03-21 11:16 - 2013-10-12 06:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-03-21 11:16 - 2013-10-12 05:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-03-21 11:16 - 2013-10-12 05:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-03-21 11:16 - 2013-08-02 06:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 06:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 05:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-21 11:16 - 2013-08-02 04:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-03-21 11:16 - 2013-08-02 04:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-03-21 11:16 - 2013-04-26 09:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-21 11:16 - 2013-04-26 08:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2015-03-21 11:16 - 2012-03-17 11:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-03-21 11:15 - 2013-07-20 14:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2013-07-20 14:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-03-21 11:15 - 2012-09-26 02:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-03-21 11:15 - 2012-09-26 02:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-03-21 11:15 - 2012-07-07 00:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-21 11:15 - 2012-07-05 02:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-21 11:15 - 2012-07-05 02:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-03-21 11:15 - 2012-07-05 01:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-03-21 11:15 - 2012-07-05 01:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-03-21 11:14 - 2014-12-08 07:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-21 11:14 - 2014-12-08 06:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-21 11:14 - 2014-10-25 05:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-21 11:14 - 2014-10-25 05:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-21 11:14 - 2014-09-04 09:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-21 11:14 - 2014-09-04 09:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-21 11:14 - 2013-01-24 10:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-21 11:14 - 2012-11-23 07:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-03-21 11:03 - 2014-08-23 06:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-21 11:03 - 2014-08-23 05:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-21 11:02 - 2015-03-21 11:04 - 00000000 ____D () C:\Users\Dad\AppData\Local\Microsoft Games
2015-03-21 11:02 - 2012-05-14 09:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-21 10:33 - 2014-07-14 06:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-21 10:33 - 2014-07-14 05:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-21 10:33 - 2013-10-12 06:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-21 10:33 - 2013-10-12 06:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-10-12 06:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-21 10:33 - 2013-10-12 06:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-21 10:33 - 2013-08-28 05:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-03-21 10:33 - 2012-06-06 10:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-03-21 10:33 - 2012-06-06 09:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-03-21 10:29 - 2012-02-17 10:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 09:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-03-21 10:29 - 2012-02-17 08:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-03-21 10:26 - 2015-03-21 10:26 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\AVG2015
2015-03-21 10:25 - 2015-03-21 10:26 - 00000000 ____D () C:\ProgramData\AVG2015
2015-03-21 10:25 - 2015-03-21 10:25 - 00000971 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ___HD () C:\$AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\TuneUp Software
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ____D () C:\Program Files (x86)\AVG
2015-03-21 10:23 - 2015-03-25 22:33 - 00000000 ____D () C:\ProgramData\MFAData
2015-03-21 10:23 - 2015-03-21 10:28 - 00000000 ____D () C:\Users\Dad\AppData\Local\Avg2015
2015-03-21 10:23 - 2015-03-21 10:23 - 04816784 _____ (AVG Technologies) C:\Users\Dad\Downloads\avg_free_stb_all_5856p1_177.exe
2015-03-21 10:23 - 2015-03-21 10:23 - 00000000 ____D () C:\Users\Dad\AppData\Local\MFAData
2015-03-21 10:11 - 2015-03-21 10:11 - 00000000 ____D () C:\Users\Dad\AppData\Roaming\Roxio
2015-03-21 10:08 - 2015-03-21 17:38 - 00001423 _____ () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-21 10:07 - 2015-03-21 10:07 - 00000020 ___SH () C:\Users\Dad\ntuser.ini
2015-03-21 10:07 - 2015-03-21 10:07 - 00000000 ____D () C:\Users\Dad\AppData\Local\VirtualStore
2015-03-21 10:07 - 2014-05-14 20:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-21 10:07 - 2014-05-14 20:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-21 10:07 - 2014-05-14 20:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-21 10:07 - 2014-05-14 20:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-21 10:07 - 2014-05-14 20:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-21 10:07 - 2014-05-14 20:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-21 10:07 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-21 10:07 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-21 10:07 - 2009-07-14 08:54 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-21 10:07 - 2009-07-14 08:49 - 00000000 ___RD () C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-21 10:06 - 2015-03-21 19:12 - 00000000 ____D () C:\Users\Dad
2015-03-21 09:59 - 2015-03-21 10:07 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2015-03-21 09:59 - 2015-03-21 09:59 - 00000000 ____D () C:\ProgramData\SoftThinks
2015-03-21 09:36 - 2015-03-21 09:36 - 00000000 ____D () C:\Windows\SMINST
2015-03-21 09:06 - 2015-03-21 19:09 - 29441132 _____ () C:\Users\Dad\Downloads\Monthly (9.05.00.2428 - 2015-03-21 0906).tsa
2015-03-20 15:48 - 2015-03-20 16:05 - 160828136 _____ () C:\Users\Dad\Downloads\Dell_Backup_and_Recovery_1.7.5.64.exe
2015-02-25 17:37 - 2015-02-25 17:37 - 00284128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2015-02-24 16:46 - 2015-02-24 16:46 - 00280544 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2015-03-26 07:25 - 2009-07-14 09:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-26 07:25 - 2009-07-14 08:51 - 00046787 _____ () C:\Windows\setupact.log
2015-03-26 07:24 - 2012-04-18 19:59 - 02002202 _____ () C:\Windows\WindowsUpdate.log
2015-03-26 07:10 - 2009-07-14 09:13 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-26 00:46 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-26 00:46 - 2009-07-14 08:45 - 00020880 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-25 19:58 - 2010-11-21 07:47 - 00039580 _____ () C:\Windows\PFRO.log
2015-03-25 15:04 - 2012-04-18 20:27 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-23 07:32 - 2012-04-18 20:24 - 00000000 ____D () C:\ProgramData\Sonic
2015-03-23 07:05 - 2009-07-14 08:45 - 00466904 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-22 23:22 - 2009-07-14 06:34 - 00000510 _____ () C:\Windows\win.ini
2015-03-22 04:17 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\rescache
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\tracing
2015-03-22 03:49 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\AppCompat
2015-03-22 03:21 - 2009-07-14 07:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-03-21 18:46 - 2012-04-18 20:37 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-21 18:46 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\Cursors
2015-03-21 17:48 - 2012-04-18 20:12 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-21 17:48 - 2010-11-21 11:16 - 00000000 ____D () C:\Windows\ShellNew
2015-03-21 17:48 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-21 17:19 - 2012-04-18 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-21 17:13 - 2010-11-21 11:17 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-21 17:13 - 2009-07-14 07:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-21 17:12 - 2009-07-14 09:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-21 10:12 - 2009-07-14 07:20 - 00000000 __RHD () C:\Users\Public\Libraries
2015-03-21 09:59 - 2012-04-18 20:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-24 04:17 - 2010-11-21 07:27 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
 
==================== Files in the root of some directories =======
 
2015-03-21 19:06 - 2015-03-21 19:06 - 0000320 _____ () C:\Users\Dad\AppData\Roaming\SEC505354.trad
2015-03-23 14:39 - 2015-03-23 14:39 - 0007605 _____ () C:\Users\Dad\AppData\Local\Resmon.ResmonCfg
2015-03-22 09:03 - 2015-03-22 09:03 - 0000057 _____ () C:\ProgramData\Ament.ini
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-03-25 00:24
 
==================== End Of Log ============================
 
 


#8 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 26 March 2015 - 12:53 PM

Reset your router please. :)

Then:

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#9 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 26 March 2015 - 10:18 PM

Early yet, but I have not seen a popup or redirect since I ran Toolbox flush after an hour of browsing. Never went more than 5 minutes before an issue before. Here's the log below.

 

Thanks

 

Greggo

 

 MiniToolBox by Farbar  Version: 09-03-2015

Ran by Dad (administrator) on 27-03-2015 at 07:02:06
Running from "C:\Users\Dad\Desktop"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: Dell System Inspiron N7110 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
 
 
 
========================= IP Configuration: ================================
 
Intel® Centrino® Wireless-N 1030 = Wireless Network Connection (Connected)
Viscosity Virtual Adapter V9.1 = WiTopia (Hardware not present)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
set global icmpredirects=enabled
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : MININT-J8E39LF
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
 
Ethernet adapter Bluetooth Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 4C-80-93-1C-44-76
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
   Physical Address. . . . . . . . . : 84-8F-69-B7-39-65
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Intel® Centrino® Wireless-N 1030
   Physical Address. . . . . . . . . : 4C-80-93-1C-44-72
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : fd4c:8bef:668b:d900:bc77:ce79:5d2e:91d1(Preferred) 
   Temporary IPv6 Address. . . . . . : fd4c:8bef:668b:d900:edf1:f81c:d4e9:c07d(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::bc77:ce79:5d2e:91d1%11(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.1.7(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Friday, March 27, 2015 6:58:37 AM
   Lease Expires . . . . . . . . . . : Saturday, March 28, 2015 6:58:37 AM
   Default Gateway . . . . . . . . . : 192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DNS Servers . . . . . . . . . . . : 192.168.1.1
                                       0.0.0.0
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Tunnel adapter isatap.{6DD72366-1CD3-4BE8-AC3C-22F88508C511}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Teredo Tunneling Pseudo-Interface:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:3809:3eec:aa65:90d7(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::3809:3eec:aa65:90d7%15(Preferred) 
   Default Gateway . . . . . . . . . : 
   NetBIOS over Tcpip. . . . . . . . : Disabled
 
Tunnel adapter isatap.{B108740A-CA83-4AA0-9C4A-3740FEAF411A}:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  UnKnown
Address:  192.168.1.1
 
Name:    google.com
Addresses:  2a00:1450:4002:804::1002
 173.194.116.6
 173.194.116.5
 173.194.116.7
 173.194.116.9
 173.194.116.1
 173.194.116.0
 173.194.116.2
 173.194.116.3
 173.194.116.14
 173.194.116.8
 173.194.116.4
 
 
Pinging google.com [173.194.116.6] with 32 bytes of data:
Reply from 173.194.116.6: bytes=32 time=141ms TTL=55
Reply from 173.194.116.6: bytes=32 time=140ms TTL=55
 
Ping statistics for 173.194.116.6:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 140ms, Maximum = 141ms, Average = 140ms
Server:  UnKnown
Address:  192.168.1.1
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.139.183.24
 98.138.253.109
 
 
Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=325ms TTL=47
Reply from 206.190.36.45: bytes=32 time=326ms TTL=47
 
Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 325ms, Maximum = 326ms, Average = 325ms
 
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 13...4c 80 93 1c 44 76 ......Bluetooth Device (Personal Area Network)
 12...84 8f 69 b7 39 65 ......Realtek PCIe FE Family Controller
 11...4c 80 93 1c 44 72 ......Intel® Centrino® Wireless-N 1030
  1...........................Software Loopback Interface 1
 17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 15...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1      192.168.1.7     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link       192.168.1.7    281
      192.168.1.7  255.255.255.255         On-link       192.168.1.7    281
    192.168.1.255  255.255.255.255         On-link       192.168.1.7    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link       192.168.1.7    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link       192.168.1.7    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 15     58 2001::/32                On-link
 15    306 2001:0:9d38:6ab8:3809:3eec:aa65:90d7/128
                                    On-link
 11     33 fd4c:8bef:668b:d900::/64 On-link
 11    281 fd4c:8bef:668b:d900:bc77:ce79:5d2e:91d1/128
                                    On-link
 11    281 fd4c:8bef:668b:d900:edf1:f81c:d4e9:c07d/128
                                    On-link
 11    281 fe80::/64                On-link
 15    306 fe80::/64                On-link
 15    306 fe80::3809:3eec:aa65:90d7/128
                                    On-link
 11    281 fe80::bc77:ce79:5d2e:91d1/128
                                    On-link
  1    306 ff00::/8                 On-link
 15    306 ff00::/8                 On-link
 11    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (03/27/2015 00:57:45 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error: (03/27/2015 00:57:11 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1".Error in manifest or policy file "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" on line WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Component identity found in manifest does not match the identity of the component requested.
Reference is WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition is WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (03/26/2015 09:22:56 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/26/2015 07:26:19 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/26/2015 00:42:45 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1".Error in manifest or policy file "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" on line WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Component identity found in manifest does not match the identity of the component requested.
Reference is WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition is WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Please use sxstrace.exe for detailed diagnosis.
 
Error: (03/25/2015 10:30:52 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/25/2015 07:59:42 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (03/26/2015 07:30:37 AM) (Source: Service Control Manager) (User: )
Description: The Windows Modules Installer service failed to start due to the following error: 
%%1053
 
Error: (03/26/2015 07:30:37 AM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Modules Installer service to connect.
 
Error: (03/26/2015 07:30:37 AM) (Source: DCOM) (User: )
Description: 1053TrustedInstaller{752073A1-23F2-4396-85F0-8FDB879ED0ED}
 
Error: (03/26/2015 07:06:50 AM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the MBAMScheduler service.
 
 
Microsoft Office Sessions:
=========================
Error: (03/27/2015 00:57:45 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe
 
Error: (03/27/2015 00:57:11 AM) (Source: SideBySide)(User: )
Description: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1"C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.ExeC:\Program Files (x86)\Windows Live\Photo Gallery\WLMFDS.DLL8
 
Error: (03/26/2015 09:22:56 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/26/2015 07:26:19 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/26/2015 00:42:45 AM) (Source: SideBySide)(User: )
Description: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1"C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.ExeC:\Program Files (x86)\Windows Live\Photo Gallery\WLMFDS.DLL8
 
Error: (03/25/2015 10:30:52 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/25/2015 07:59:42 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
 
=========================== Installed Programs ============================
Adobe Reader X (10.1.13) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5856 - AVG Technologies)
AVG 2015 (Version: 15.0.4315 - AVG Technologies) Hidden
AVG 2015 (Version: 15.0.5856 - AVG Technologies) Hidden
BovadaPoker (HKLM-x32\...\{D7CA2DF8-95CE-4C80-9296-98E21219A1E5}}_is1) (Version:   - )
CyberLink PowerDVD 9.5 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.5.1.3426 - CyberLink Corp.)
CyberLink PowerDVD 9.5 (x32 Version: 9.5.1.3426 - CyberLink Corp.) Hidden
Definition Update for Microsoft Office 2010 (KB2956207) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{0E5D2277-B9CB-4FD2-92B7-7D145B0CE418}) (Version:  - Microsoft)
Definition Update for Microsoft Office 2010 (KB2956207) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{0E5D2277-B9CB-4FD2-92B7-7D145B0CE418}) (Version:  - Microsoft)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.7.5.64 - Dell Inc.)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1207.101.225 - ALPS ELECTRIC CO., LTD.)
Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 1.40.05 - Creative Technology Ltd)
DirectX 9 Runtime (x32 Version: 1.00.0000 - Sonic Solutions) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
HP Officejet Pro 8500 A910 Basic Device Software (HKLM\...\{13BE337F-9557-416D-A696-F91A6807B170}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Support Solutions Framework (HKLM-x32\...\{E35601C0-BA8E-4F32-919A-C7EF4CA81F67}) (Version: 11.51.0048 - Hewlett-Packard Company)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2253 - Intel Corporation)
Intel® PROSet/Wireless Software for Bluetooth® Technology (HKLM\...\{5A80B0BA-79AF-4B11-B851-CCB9F7977AC0}) (Version: 1.0.1.0489 - Intel Corporation)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Live! Cam Avatar Creator (HKLM-x32\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.3009.1 - Creative Technology Ltd)
Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50908 - Microsoft Corporation) Hidden
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NVIDIA Display Control Panel (HKLM\...\{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 6.14.12.6594 - NVIDIA Corporation)
PhotoShowExpress (x32 Version: 2.0.063 - Sonic Solutions) Hidden
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.0.10 - Dell Inc.)
RBVirtualFolder64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6267 - Realtek Semiconductor Corp.)
Roxio Activation Module (x32 Version: 1.0 - Roxio) Hidden
Roxio BackOnTrack (x32 Version: 1.3.3 - Roxio) Hidden
Roxio Burn (x32 Version: 1.8 - Roxio) Hidden
Roxio Creator Starter (HKLM-x32\...\{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}) (Version: 12.1.77.0 - Roxio)
Roxio Creator Starter (x32 Version: 1.0.439 - Roxio) Hidden
Roxio Creator Starter (x32 Version: 5.0.0 - Roxio) Hidden
Roxio Express Labeler 3 (x32 Version: 3.2.2 - Roxio) Hidden
Roxio File Backup (Version: 1.3.2 - Roxio) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
Sonic CinePlayer Decoder Pack (x32 Version: 4.3.0 - Sonic Solutions) Hidden
thinkorswim (HKLM\...\9968-4488-2169-7623) (Version: desktop - thinkorswim, Inc)
TradeStation 9.5 (HKLM-x32\...\{E02A3EE0-1193-454C-8E59-BDFCE6EC7B22}) (Version: 9.05.00.2428 - TradeStation Technologies)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft Access 2010 (KB2837601) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{53FAC141-5C6B-4F97-ABC4-E635ABBC59E5}) (Version:  - Microsoft)
Update for Microsoft Access 2010 (KB2837601) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{53FAC141-5C6B-4F97-ABC4-E635ABBC59E5}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0409-0000-0000000FF1CE}_Office14.SingleImage_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0409-0000-0000000FF1CE}_Office14.SingleImage_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0409-0000-0000000FF1CE}_Office14.SingleImage_{A7C2902F-C60B-428F-BDD7-ECE4DC0A2CA1}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0409-0000-0000000FF1CE}_Office14.SingleImage_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{8BEEA2FC-D416-428A-B52A-A3ED45921151}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{A4F91D60-654C-4892-BFD3-0D41ADA649B6}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{A4F91D60-654C-4892-BFD3-0D41ADA649B6}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{0B7744D2-1FDD-4843-9987-7CE11B79F370}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{0B7744D2-1FDD-4843-9987-7CE11B79F370}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{D1C4AD0B-CC79-41D2-8D6A-571E7B30658C}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{D1C4AD0B-CC79-41D2-8D6A-571E7B30658C}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2920813) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{74BC74BD-9032-4646-B248-F9F45E6D1326}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2920813) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{74BC74BD-9032-4646-B248-F9F45E6D1326}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2956141) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{53FDC948-3ABA-4BDE-BCEB-F1465C93D91C}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2956141) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{53FDC948-3ABA-4BDE-BCEB-F1465C93D91C}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{673FF853-6C60-4666-8E2F-CE9E2EB991AA}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{673FF853-6C60-4666-8E2F-CE9E2EB991AA}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{673FF853-6C60-4666-8E2F-CE9E2EB991AA}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{82148027-13B5-4920-97F3-6A44A29B83D0}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0409-0000-0000000FF1CE}_Office14.SingleImage_{82148027-13B5-4920-97F3-6A44A29B83D0}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2956205) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{673FF853-6C60-4666-8E2F-CE9E2EB991AA}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2956203) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{4C42857F-202A-4CB2-8FF7-74624CE22318}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2956203) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0409-0000-0000000FF1CE}_Office14.SingleImage_{4C42857F-202A-4CB2-8FF7-74624CE22318}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2956203) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{FC666DD5-8A58-401B-9B1E-2CBB451932E8}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2956203) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{FC666DD5-8A58-401B-9B1E-2CBB451932E8}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2878283) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{174382ED-333C-4C27-81BB-27288080CA16}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2878283) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{174382ED-333C-4C27-81BB-27288080CA16}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Windows Live Call (x32 Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 14.0.8091.0730 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Sign-in Assistant (HKLM-x32\...\{45338B07-A236-4270-9A77-EBB4115517B5}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Upload Tool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
WinSCP 5.7 (HKLM-x32\...\winscp3_is1) (Version: 5.7 - Martin Prikryl)
WiTopia (HKLM\...\{9F59FA4D-E431-45FA-889F-EC68D998C7D2}_is1) (Version: 2.1.9.178 - WiTopia)
 
========================= Devices: ================================
 
Name: Viscosity Virtual Adapter V9.1
Description: Viscosity Virtual Adapter V9.1
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SparkLabs VPN
Service: visctap0901
Device ID: ROOT\NET\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 31%
Total physical RAM: 8086.17 MB
Available physical RAM: 5515.95 MB
Total Pagefile: 16170.52 MB
Available Pagefile: 12848.51 MB
Total Virtual: 4095.88 MB
Available Virtual: 3973.85 MB
 
========================= Partitions: =====================================
 
1 Drive c: (OSDisk) (Fixed) (Total:688.29 GB) (Free:593.7 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\MININT-J8E39LF
 
Administrator            Dad                      Guest                    
 
========================= Minidump Files ==================================
 
No minidump file found
 
 
**** End of log ****


#10 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 27 March 2015 - 08:17 AM

Hello,
in my opinion your PC is clean. :) If you would like to donate some money to me that I can buy some beer, then click on the button paypal.gif. I'd really appreciate it, my friend. :)


We need to remove the tools we've used during cleaning your machine.
  • Download Delfix from here and run it (If you have Windows Vista / Windows 7 / Windows 8 please do a Right click on the Delfix icon and select Run as Administrator).
  • Ensure Remove disinfection tools is ticked
    Also tick:
    • Create registry backup
    • Purge system restore
    delfix.jpg
  • Click Run
The program will run for a few moments and then notepad will open with a log. Please paste the log in your next reply

 

Exercise common sense

Having security programs installed is very helpful to you, but none of them have the gift of human thought. The best way to make sure you don't get infected is to look before you leap. Be careful of what websites you visit - if a site looks suspicious, trust your instincts and get out of there. Be careful of what attachments you open in emails and files you download from websites - check them over carefully and look at the file extensions to make sure that you know what you're getting. Using peer-to-peer file sharing programs or downloading cracks and keygens is something else to avoid - the files you will be downloading are infected in the vast majority of cases, and the benefits simply aren't worth the risk to your computer.

Keep up on Windows updates

Along with keeping all of the security programs that you choose to use updated, it is also important to keep up on system updates from Microsoft, as these patch critical security vulnerabilities and help to keep you safe. Typically the windows update icon will appear in your taskbar when new updates are available, whenever you see it you should open the menu up and install the updates that are available. Although it may be an annoyance, that little bit of extra time it takes to stay updated is very well worth it instead of getting infected from an exploit and having to clean your PC again.

Slow computer?

If your computer begins to slow down again in the future for no particular reason, your first step should not be to come back to the malware forum. As your computer ages and is used, its parts wear, files and programs accumulate, and its performance speed can decrease. To restore your computer's performance to its best possible level, follow the steps in this guide written by tech expert Artellos.

Keep Safe! :thumbsup:

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#11 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 28 March 2015 - 07:22 AM

Okay my wife gave me my allowance so I can donate. You should get 25 from Sandra Goodwin but with the weak Euro might not buy to many beers! Just out of curiosity what/where was the malware/virus hiding and why couldn't the main malware tools find it?  Where in Germany are you? We go to Germany every Christmas festival season to a different market each time. Last year went to Cologne/Dusseldorf.

 

Cheers  Here's the Delfix log:

 

# DelFix v10.9 - Logfile created 28/03/2015 at 16:13:12
# Updated 27/02/2015 by Xplode
# Username : Dad - MININT-J8E39LF
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
 
~ Removing disinfection tools ...
 
Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Dad\Desktop\MiniToolBox.exe
Deleted : C:\Users\Dad\Downloads\Addition.txt
Deleted : C:\Users\Dad\Downloads\AdwCleaner.exe
Deleted : C:\Users\Dad\Downloads\FRST64.exe
Deleted : C:\Users\Dad\Downloads\JRT.exe
Deleted : C:\Users\Dad\Downloads\MiniToolBox.exe
Deleted : C:\Users\Dad\Downloads\tdsskiller.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
 
 
~ Creating registry backup ... OK
 
~ Cleaning system restore ...
 
 
New restore point created !
 
########## - EOF - ##########


#12 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 28 March 2015 - 07:53 AM

Thanks for the donation. :)

AdwCleaner and JRT found some Adware.

I think this was the issue: Tcpip\Parameters: [DhcpNameServer] 82.178.158.182 82.178.158.172 192.168.1.1

A bad IP set on DNS. To solve this we had to reset the router and your IP Cache etc. with MiniToolBox.

I live near Munich in Bavaria. ;)

Any further questions before I close this topic as solved?

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 


#13 razor9912

razor9912
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:02:02 AM

Posted 28 March 2015 - 12:31 PM

Thanks.All good here. Close her out.

 

Thanks again



#14 Machiavelli

Machiavelli

    Agent 007


  • Malware Response Instructor
  • 3,875 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:05:02 PM

Posted 28 March 2015 - 08:15 PM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.

~Machiavelli

If I don't reply within 24 hours please PM me!

  • Every topic with no replies within 5 days will be closed.
  • If you like my help here please give me feedback.

unite_blue.png
 
 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users