Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Computer keeps freezing on me


  • This topic is locked This topic is locked
5 replies to this topic

#1 alanbridges

alanbridges

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:42 PM

Posted 11 January 2016 - 11:22 AM

I get error message about cabinet.dll not there, but it is. And I have event view error logs like this:

 

The Computer Browser service depends on the Server service which failed to start because of the following error: 
The dependency service or group failed to start.
 
DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
 
I even have got the blue screen of death a few time.
 
Running in safe mode is better, but will still freeze on me.
 

 

 



BC AdBot (Login to Remove)

 


#2 alanbridges

alanbridges
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:42 PM

Posted 11 January 2016 - 11:59 AM

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-01-2015 01
Ran by Alan (administrator) on ALAN-PC (11-01-2016 09:48:11)
Running from C:\Users\Alan\Downloads
Loaded Profiles: Alan (Available Profiles: Alan & MSSQL$SQLEXPRESS)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11613288 2010-11-19] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1797064 2014-03-20] (NVIDIA Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [407816 2015-07-20] (Acronis)
HKLM\...\Run: [TrayMonitor.exe] => C:\Program Files (x86)\Acronis\TrayMonitor\TrayMonitor.exe [1516064 2015-07-20] (Acronis)
HKLM-x32\...\Run: [RunAIShell] => C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe [232064 2009-12-23] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [PulseSecure] => C:\Program Files (x86)\Common Files\Juniper Networks\JamUI\Pulse.exe [2826584 2015-07-06] (Pulse Secure, LLC)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1102184 2013-01-22] (Acronis)
HKLM-x32\...\Run: [BackupAndRecoveryMonitor.exe] => C:\Program Files (x86)\Acronis\BackupAndRecovery\BackupAndRecoveryMonitor.exe [1496544 2015-07-20] (Acronis)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1139112 2015-12-08] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [BingSvc] => C:\Users\Alan\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-13] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22790776 2015-11-04] (Google)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [TweakBit\FixMyPC\Start FixMyPC >n logon] => C:\Program Files (x86)\TweakBit\FixMyPC\FixMyPC.exe [2534344 2015-11-25] (TweakBit)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [TweakBit\PCCleaner\Start PCCleaner >n logon] => C:\Program Files (x86)\TweakBit\PCCleaner\PCCleaner.exe [2543560 2015-11-25] (TweakBit)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [1445648 2016-01-10] (Lavasoft)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\MountPoints2: {e6c97040-2cc8-11e4-a5c2-806e6f6e6963} - G:\vs_community.exe
HKU\S-1-5-21-198653192-873858985-810505055-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\WLXPGSS.SCR [301936 2010-11-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Winsock: Catalog9 01 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 02 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 03 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 04 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 15 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 01 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 02 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 03 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 04 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 15 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{62D71BE2-9D6B-4ED6-B6F2-EEADD29E9560}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{C8795CF6-B7C5-4816-ABFE-9EA50161E28D}: [NameServer] 10.80.8.240
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-198653192-873858985-810505055-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=D011016-A550D1D9DEB&form=CONMHP&conlogo=CT3334507
HKU\S-1-5-21-198653192-873858985-810505055-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com/
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP08&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP08&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> DefaultScope {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D011016-A550D1D9DEB&form=CONBDF&conlogo=CT3334507&q={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {07581F19-721E-46E7-AB12-F4A06E487779} URL = hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_ir_14_35_ch&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0SzyyCzztN1L2XzutAtFtDtFtCtDtFyEtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StB0D0Azz0AtCyC0FtG0CyCtCtCtGzzyB0C0AtG0EzzyEzztGtCyBtA0ByE0E0B0D0D0DyCyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CyByCtCtD0Azz0CtGyB0DtDyDtGyE0F0BtDtGzz0ByBzztGyB0FyCtDyD0Bzy0FtCyEtBzz2Q&cr=1631397202&ir=
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.bing.com/search?FORM=SL5CDF&PC=SL5C&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={8035A3DC-22FB-4E72-B859-92D586FF0C4C}&mid=8b33817e97d547cc8f68854de0832efb-07fe91a4e62770038e8cdbedcc9f36fdbbb95fed&lang=en&ds=AVG&coid=avgtbavg&cmpid=0615piz&pr=fr&d=2016-01-08 09:54:26&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2015-12-14] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2015-12-14] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2015-12-14] (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-16] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2015-12-14] (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2015-12-14] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2015-12-14] (Microsoft Corporation)
DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient64.cab
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll [2014-08-26] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll [2014-08-26] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-12-14] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2015-12-14] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-13] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-13] (Google Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-13]
CHR Extension: (Google Docs) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-13]
CHR Extension: (Google Drive) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-13]
CHR Extension: (Skype Calling) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2015-12-13]
CHR Extension: (YouTube) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-13]
CHR Extension: (Google Search) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-13]
CHR Extension: (Google Sheets) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-13]
CHR Extension: (Google Docs Offline) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-13]
CHR Extension: (360 Internet Protection) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2015-12-13]
CHR Extension: (Unsocialize: The Link Unsocializer) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdogcpghhdcocgdjogbglgejhdeedijn [2015-12-13]
CHR Extension: (HTTP Trace) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\idladlllljmbcnfninpljlkaoklggknp [2015-12-13]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-12-16]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-13]
CHR Extension: (Gmail) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-13]
CHR HKLM\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
S2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe [915584 2010-12-01] ()
S2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] ()
S2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1049000 2015-12-08] (AVG Technologies CZ, s.r.o.)
S2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-09-15] (AOMEI Tech Co., Ltd.)
S3 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S3 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2748600 2015-12-04] (Microsoft Corporation)
S2 JuniperAccessService; C:\Program Files (x86)\Common Files\Juniper Networks\JUNS\dsAccessService.exe [162136 2015-07-06] (Pulse Secure, LLC)
S2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2016-01-10] (Lavasoft Limited)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL12.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [370368 2015-06-10] (Microsoft Corporation)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
S4 NPEService; C:\Users\Alan\Downloads\NPE.exe [3088296 2016-01-10] (Symantec Corporation)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
S2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2016-01-10] ()
S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL12.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-06-10] (Microsoft Corporation)
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56040 2015-11-19] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-26] () [File not signed]
S2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-26] () [File not signed]
S2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-26] () [File not signed]
R0 asahci64; C:\Windows\System32\drivers\asahci64.sys [36448 2011-01-30] (Asmedia Technology)
S2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2008-01-04] ()
S1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
S1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 jnprns; C:\Windows\System32\DRIVERS\jnprns.sys [507192 2015-07-06] (Juniper Networks)
S4 jnprTdi_814_60057; C:\Windows\system32\Drivers\jnprTdi_814_60057.sys [108344 2015-07-06] (Pulse Secure, LLC)
S3 jnprva; C:\Windows\System32\DRIVERS\jnprva.sys [30072 2015-07-06] (Juniper Networks, Inc.)
R3 JnprVaMgr; C:\Windows\System32\DRIVERS\jnprvamgr.sys [45352 2015-07-06] (Juniper Networks, Inc.)
S4 RsFx0300; C:\Windows\System32\DRIVERS\RsFx0300.sys [247488 2014-02-21] (Microsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-08-25] (Duplex Secure Ltd.)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1119672 2016-01-10] (Acronis)
R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [183224 2016-01-10] (Acronis)
S1 BAPIDRV; system32\DRIVERS\BAPIDRV64.sys [X]
S1 ttnfd; system32\drivers\ttnfd.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 09:16 - 2016-01-11 09:17 - 00052107 _____ C:\Users\Alan\Downloads\Addition.txt
2016-01-11 09:15 - 2016-01-11 09:48 - 00000000 ____D C:\FRST
2016-01-11 09:15 - 2016-01-11 09:48 - 00000000 _____ C:\Users\Alan\Downloads\FRST.txt
2016-01-11 09:15 - 2016-01-11 09:15 - 02370560 _____ (Farbar) C:\Users\Alan\Downloads\FRST64.exe
2016-01-10 22:20 - 2016-01-10 22:21 - 181379072 _____ C:\Users\Alan\Downloads\avg_arl_cdi_all_120_150814a10442.iso
2016-01-10 22:04 - 2016-01-10 22:04 - 00003242 _____ C:\Windows\System32\Tasks\{317B9121-B8C8-46BD-A688-9A33423B2537}
2016-01-10 22:01 - 2016-01-10 22:01 - 00000000 ____D C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442
2016-01-10 21:57 - 2016-01-10 21:57 - 00003160 _____ C:\Windows\System32\Tasks\{87FFA2DA-3F16-4D86-BAF3-E987D50385DE}
2016-01-10 21:39 - 2016-01-10 21:39 - 222163916 _____ C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442.zip
2016-01-10 21:27 - 2016-01-10 21:27 - 00000000 __SHD C:\found.003
2016-01-10 20:57 - 2016-01-11 09:43 - 00447186 _____ C:\Windows\ntbtlog.txt
2016-01-10 20:55 - 2016-01-10 20:55 - 00000000 ____D C:\ProgramData\SMR501
2016-01-10 20:48 - 2016-01-10 21:16 - 00000000 ____D C:\Users\Alan\AppData\Local\NPE
2016-01-10 20:48 - 2016-01-10 20:48 - 03088296 _____ (Symantec Corporation) C:\Users\Alan\Downloads\NPE.exe
2016-01-10 20:48 - 2016-01-10 20:48 - 00000000 ____D C:\ProgramData\Norton
2016-01-10 20:29 - 2016-01-10 20:29 - 00388608 _____ (Trend Micro Inc.) C:\Users\Alan\Downloads\HijackThis.exe
2016-01-10 20:09 - 2016-01-10 20:34 - 00000862 _____ C:\Users\Public\Desktop\AVG.lnk
2016-01-10 20:09 - 2016-01-10 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-01-10 19:59 - 2016-01-10 19:59 - 702861038 _____ C:\Windows\MEMORY.DMP
2016-01-10 19:59 - 2016-01-10 19:59 - 00288608 _____ C:\Windows\Minidump\011016-24819-01.dmp
2016-01-10 19:16 - 2016-01-10 19:33 - 00002888 _____ C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
2016-01-10 19:16 - 2016-01-10 19:33 - 00002888 _____ C:\Windows\system32\LavasoftTcpServiceOff.ini
2016-01-10 19:12 - 2016-01-10 20:17 - 00205048 _____ C:\Windows\ntbtlog.txt.bak
2016-01-10 19:01 - 2016-01-10 19:01 - 06937888 _____ (TeamViewer) C:\Users\Alan\Downloads\TeamViewerQS_en-lne.exe
2016-01-10 18:53 - 2016-01-10 18:53 - 00000481 _____ C:\Prefs.js
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\Users\Alan\AppData\Local\Lavasoft
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\searchplugins
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2016-01-10 18:52 - 2016-01-10 18:52 - 00425744 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00345360 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Lavasoft
2016-01-10 18:52 - 2016-01-10 18:52 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2016-01-10 18:51 - 2016-01-10 18:51 - 00001150 _____ C:\Users\Alan\Desktop\TweakBit PCCleaner.lnk
2016-01-10 18:51 - 2016-01-10 18:51 - 00001122 _____ C:\Users\Alan\Desktop\TweakBit FixMyPC.lnk
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\TweakBit
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\Lavasoft
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\Program Files (x86)\TweakBit
2016-01-10 18:50 - 2016-01-10 18:50 - 00409856 _____ (TweakBit) C:\Users\Alan\Downloads\fix_cabinet.dll-setup.exe
2016-01-10 17:37 - 2016-01-10 17:37 - 04880712 _____ C:\Users\Alan\Downloads\rrsetup.exe
2016-01-10 17:37 - 2016-01-10 17:37 - 00001255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Repair.lnk
2016-01-10 17:37 - 2016-01-10 17:37 - 00001243 _____ C:\Users\Public\Desktop\Registry Repair.lnk
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\Users\Alan\AppData\Roaming\GlarySoft
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glarysoft
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\Program Files (x86)\Glarysoft
2016-01-10 17:35 - 2016-01-10 17:35 - 01428592 _____ (Tuneup System Software Pvt Ltd. ) C:\Users\Alan\Downloads\RegUtilities_Setup.exe
2016-01-10 17:35 - 2016-01-10 17:35 - 00002472 _____ C:\Windows\System32\Tasks\REGUtilities Task
2016-01-10 17:35 - 2016-01-10 17:35 - 00001055 _____ C:\Users\Public\Desktop\REGUtilities.lnk
2016-01-10 17:35 - 2016-01-10 17:35 - 00000396 _____ C:\Windows\Tasks\REGUtilities Task.job
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\ProgramData\REGUtilities
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REGUtilities
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\Program Files (x86)\REGUtilities
2016-01-10 16:36 - 2016-01-10 19:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper
2016-01-10 16:36 - 2016-01-10 16:36 - 00001061 _____ C:\Users\Public\Desktop\AOMEI Backupper Standard.lnk
2016-01-10 16:36 - 2016-01-10 16:36 - 00001024 ____H C:\SYSTAG.BIN
2016-01-10 16:36 - 2016-01-10 16:36 - 00000082 _____ C:\Windows\SysWOW64\winsevr.dat
2016-01-10 16:36 - 2016-01-10 16:36 - 00000000 ____D C:\ProgramData\AomeiBR
2016-01-10 16:36 - 2016-01-10 16:36 - 00000000 ____D C:\Program Files (x86)\AOMEI Backupper
2016-01-10 16:36 - 2015-02-26 00:00 - 00151480 _____ C:\Windows\system32\ammntdrv.sys
2016-01-10 16:36 - 2015-02-26 00:00 - 00030648 _____ C:\Windows\system32\ambakdrv.sys
2016-01-10 16:36 - 2015-02-26 00:00 - 00017848 _____ C:\Windows\system32\amwrtdrv.sys
2016-01-10 16:34 - 2016-01-10 16:35 - 81807912 _____ (AOMEI Technology Co., Ltd. ) C:\Users\Alan\Downloads\BackupperFull.exe
2016-01-10 15:52 - 2016-01-10 15:52 - 00000000 ____D C:\Intel
2016-01-10 15:00 - 2016-01-10 15:00 - 00001107 _____ C:\Users\Public\Desktop\DriveImage XML.lnk
2016-01-10 15:00 - 2016-01-10 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drive Image
2016-01-10 15:00 - 2016-01-10 15:00 - 00000000 ____D C:\Program Files (x86)\Runtime Software
2016-01-10 14:59 - 2016-01-10 14:59 - 02026456 _____ C:\Users\Alan\Downloads\dixmlsetup.exe
2016-01-10 14:57 - 2016-01-10 14:57 - 03545552 _____ (Paramount Software UK Ltd) C:\Users\Alan\Downloads\ReflectDL.exe
2016-01-10 14:48 - 2016-01-10 14:49 - 07784960 _____ (Thomas Tsai) C:\Users\Alan\Downloads\tuxboot-0.8.3.exe
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Wii Hacks
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\WebFiles
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio Projects
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Vacation Trips
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Updater
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Unemployment Claims
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Unemployment
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\TT Installer Logs
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\travel
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Tim Allen
2016-01-10 11:00 - 2012-01-13 12:16 - 00138289 _____ C:\Users\Alan\Documents\Directions to the Investor Center.mht
2016-01-10 11:00 - 2010-08-02 06:21 - 00113741 _____ C:\Users\Alan\Documents\spanish accent marks.xlsx
2016-01-10 11:00 - 2010-02-28 10:29 - 00000194 _____ C:\Users\Alan\Documents\OpenFile Filter Property Value.txt
2016-01-10 11:00 - 2009-11-03 12:11 - 00009171 _____ C:\Users\Alan\Documents\virusreportnov3.txt
2016-01-10 11:00 - 2009-08-07 09:10 - 00011774 _____ C:\Users\Alan\Documents\SANDRA.xlsx
2016-01-10 11:00 - 2009-02-15 17:37 - 00000256 _____ C:\Users\Alan\Documents\pool.bin
2016-01-10 11:00 - 2008-12-04 14:36 - 04031858 _____ C:\Users\Alan\Documents\350Z.ai
2016-01-10 11:00 - 2008-11-21 18:17 - 00000135 _____ C:\Users\Alan\Documents\OpenSports Remote Connection.txt
2016-01-10 11:00 - 2008-08-18 20:17 - 01496576 _____ C:\Users\Alan\Documents\MedSchedule-8-19 to 8-26.xls
2016-01-10 11:00 - 2008-07-19 21:27 - 01515520 _____ C:\Users\Alan\Documents\MedSchedule-June-July.xls
2016-01-10 11:00 - 2008-06-28 19:04 - 00213062 _____ C:\Users\Alan\Documents\Calendar2008.pdf
2016-01-10 11:00 - 2008-06-14 21:20 - 01524736 _____ C:\Users\Alan\Documents\MedSchedule.xls
2016-01-10 11:00 - 2008-03-23 13:14 - 00032788 _____ C:\Users\Alan\Documents\netgear.cfg
2016-01-10 11:00 - 2008-01-10 21:31 - 00051810 _____ C:\Users\Alan\Documents\diagnoss.pdf
2016-01-10 11:00 - 2008-01-10 21:16 - 00086251 _____ C:\Users\Alan\Documents\Bile Duct Cancer.pdf
2016-01-10 11:00 - 2007-12-15 18:07 - 00014336 _____ C:\Users\Alan\Documents\TV Providers Comparason.xls
2016-01-10 11:00 - 2007-12-01 20:22 - 00013785 _____ C:\Users\Alan\Documents\WeeklySchedulesByPersonnel.pdf
2016-01-10 11:00 - 2007-12-01 15:08 - 00026463 _____ C:\Users\Alan\Documents\Report=Weekly.pdf
2016-01-10 11:00 - 2007-11-30 17:37 - 00005996 _____ C:\Users\Alan\Documents\about_blank.pdf
2016-01-10 11:00 - 2007-10-01 00:26 - 00036864 _____ C:\Users\Alan\Documents\Presentation1.pps
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\THE_SECRET_NTSC
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\TestFlash
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Taxes Info
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Step Work with Rob
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\SQL Server Management Studio Express
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\South Beach Diet
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Small Claims, Mida
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Siluete web banner images
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Search Engine Help
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\School Work
2016-01-10 10:59 - 2012-03-21 19:01 - 00000000 ____D C:\Users\Alan\Documents\SightSpeed Recordings
2016-01-10 10:56 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\ScheduALL.NET
2016-01-10 10:56 - 2016-01-10 10:56 - 00000000 ____D C:\Users\Alan\Documents\ScanSoft Documents
2016-01-10 10:56 - 2016-01-10 10:56 - 00000000 ____D C:\Users\Alan\Documents\Savannah
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\ROBIN_WILLIAMS_LIVE_ON_BROADWAY
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Resume
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Research of the heart
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Recipes
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\RE Centification
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken Backup
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken 2005 Donwload Files
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Progressive
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Pop's Morgage
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Pop's Medical Numbers
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\PICTURES & MOVIES
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Physics
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Perscription_files
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\PcSetup
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Papi
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Optimizer Pro
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\OpiatesAndBaby
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Old My Documents
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Office Stuff
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Nursary Ideas
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\NEW HOME
2016-01-10 10:53 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Naranjo Art Studio
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Webs
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Received Files
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Favorites BOOKS & AudioBooks
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Downloads
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My albums
2016-01-10 10:53 - 2012-01-12 09:51 - 00000000 ____D C:\Users\Alan\Documents\My Meetings
2016-01-10 10:52 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\Movies
2016-01-10 10:52 - 2016-01-10 10:52 - 00000000 ____D C:\Users\Alan\Documents\Movie Conversion - mpg to iPod
2016-01-10 10:51 - 2016-01-10 10:52 - 00000000 ____D C:\Users\Alan\Documents\MLS Data
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\MGI
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Medical Claim
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Man of the Year
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Kitchen Design
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Kitchen
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Killer-motes
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\KESI
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ISC Emplyment Papers
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\iPod Stuff
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ipod
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Interactive Wold Brouchure
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Integration Services Script Task
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Integration Services Script Component
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\iEnthusiast
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Health Insurance Claims
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Haint Blue Realty
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\GTA Vice City User Files
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\GM Financial
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Flight Simulator X Files
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\FlashTest
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Flash_test
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Fidelity
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Family stuff
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Expression
2016-01-10 10:49 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ExamStrategy
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Eventos SA
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\digital locker Downloads
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Corel User Files
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\CookieSample
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Computer Knowledge
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Closet Design
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\classes
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Chloe
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Work info
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\celias work
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\celia's temp
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's School work
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Familly
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Documents
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Business
2016-01-10 10:48 - 2016-01-10 10:48 - 00000000 ____D C:\Users\Alan\Documents\Celia's Audio Tapes
2016-01-10 10:48 - 2016-01-10 10:48 - 00000000 ____D C:\Users\Alan\Documents\Celia's
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\CD Images
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Recipes & Shoppping List
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Health
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Finance
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\BareShare
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bankruptcy
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\baby room deco
2016-01-10 10:43 - 2016-01-10 11:08 - 00000000 ___RD C:\Users\Alan\Documents\My Documents
2016-01-10 10:43 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Auto Evolucion
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Austing Powers audio
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\AudioEvolucion.com
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Audible
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Appartment Application
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alcohol 52%
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alan's NA Work
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alan Job related work
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\AJ Stuff
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\A.J.'s Pre-paid Florida College Fund
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\200 Leslie direction
2016-01-10 10:43 - 2014-08-19 08:35 - 00002615 _____ C:\Users\Alan\Documents\GovermentSupport.pdf
2016-01-10 10:43 - 2012-07-01 01:38 - 00000712 _____ C:\Users\Alan\Documents\temp.txt
2016-01-10 10:43 - 2012-06-13 12:37 - 00004892 _____ C:\Users\Alan\Documents\chloe singing.wlmp
2016-01-10 10:43 - 2012-06-13 00:50 - 00005727 _____ C:\Users\Alan\Documents\rappp.wlmp
2016-01-10 10:43 - 2012-06-12 22:59 - 00002275 _____ C:\Users\Alan\Documents\u2.wlmp
2016-01-10 10:43 - 2012-06-12 12:54 - 00002265 _____ C:\Users\Alan\Documents\landslide.wlmp
2016-01-10 10:43 - 2012-06-12 04:17 - 00002285 _____ C:\Users\Alan\Documents\more to life.wlmp
2016-01-10 10:43 - 2012-06-12 03:52 - 00002254 _____ C:\Users\Alan\Documents\My Movie.wlmp
2016-01-10 10:43 - 2012-01-25 13:39 - 00082773 _____ C:\Users\Alan\Documents\Application for Employment gMed.pdf
2016-01-10 10:43 - 2012-01-19 09:04 - 00038497 _____ C:\Users\Alan\Documents\Old Parking Space Contract.pdf
2016-01-10 10:43 - 2012-01-19 08:45 - 00271233 _____ C:\Users\Alan\Documents\BoardingPass.xps
2016-01-10 10:43 - 2008-07-18 07:05 - 00055015 _____ C:\Users\Alan\Documents\Microsoft_Word_-_April_BF_Summary_of_Benefits_20080401.pdf
2016-01-10 10:43 - 2008-07-18 07:04 - 00222620 _____ C:\Users\Alan\Documents\2006_(2)_Application_for_Employment_062806.pdf
2016-01-10 10:43 - 2007-08-05 04:22 - 00000026 _____ C:\Users\Alan\Documents\WepKey.txt
2016-01-10 10:43 - 2007-07-22 22:15 - 00264537 _____ C:\Users\Alan\Documents\ViewPolicy.aspx
2016-01-10 10:43 - 2007-06-21 18:29 - 00209436 _____ C:\Users\Alan\Documents\NeroBurnRights_Eng.pdf
2016-01-10 10:43 - 2007-06-21 18:28 - 00062868 _____ C:\Users\Alan\Documents\NeroBurnRights_Eng.chm
2016-01-10 10:43 - 2007-06-16 09:34 - 00478012 _____ C:\Users\Alan\Documents\UtahMovies.dmsd
2016-01-10 10:43 - 2007-06-09 13:53 - 08417884 _____ C:\Users\Alan\Documents\Utah.dmss
2016-01-10 10:43 - 2007-06-09 13:53 - 01351680 _____ C:\Users\Alan\Documents\Utah.dat
2016-01-10 10:43 - 2007-04-22 11:03 - 00003148 _____ C:\Users\Alan\Documents\WebScheduler.sln
2016-01-10 10:43 - 2007-01-06 10:22 - 04299217 _____ C:\Users\Alan\Documents\Scarface - Condensed Version.wmv
2016-01-10 10:43 - 2007-01-06 10:22 - 01842108 _____ C:\Users\Alan\Documents\Christmas with Larry the Cable Guy.wmv
2016-01-10 10:43 - 2006-06-12 19:39 - 01007616 _____ C:\Users\Alan\Documents\ATLANTICDATA2.MDB
2016-01-10 10:43 - 2006-06-12 19:39 - 00013824 _____ C:\Users\Alan\Documents\Not In Query 2.xls
2016-01-10 10:43 - 2006-06-12 19:39 - 00002364 _____ C:\Users\Alan\Documents\Not In Query 2.zip
2016-01-10 10:43 - 2006-06-12 19:08 - 00003906 _____ C:\Users\Alan\Documents\Not In Query.zip
2016-01-10 10:43 - 2006-06-12 19:07 - 00018432 _____ C:\Users\Alan\Documents\Not In Query.xls
2016-01-10 10:43 - 2006-06-12 17:59 - 00239919 _____ C:\Users\Alan\Documents\ATLANTICDATA.zip
2016-01-10 10:43 - 2006-06-12 17:37 - 00872448 _____ C:\Users\Alan\Documents\ATLANTICDATA.MDB
2016-01-10 10:43 - 2006-01-22 11:49 - 00001397 _____ C:\Users\Alan\Documents\RecordCounts.rpt
2016-01-10 10:43 - 2005-11-18 15:30 - 00017408 _____ C:\Users\Alan\Documents\Kitchen Budget.xls
2016-01-10 10:43 - 2005-10-17 13:37 - 02062422 _____ C:\Users\Alan\Documents\Main Page.bmp
2016-01-10 10:43 - 2005-10-04 22:55 - 00630430 _____ C:\Users\Alan\Documents\voicmail.wav
2016-01-10 10:43 - 2005-09-13 11:38 - 02106773 _____ C:\Users\Alan\Documents\Attached File(s).zip
2016-01-10 10:43 - 2005-08-26 11:33 - 00000117 _____ C:\Users\Alan\Documents\Comcast paycenter.txt
2016-01-10 10:43 - 2005-08-21 18:03 - 00048640 _____ C:\Users\Alan\Documents\PROPCOMMON.xls
2016-01-10 10:43 - 2005-08-21 17:52 - 00013390 _____ C:\Users\Alan\Documents\PROPCOMMON.txt
2016-01-10 10:43 - 2005-08-20 11:29 - 00068464 _____ C:\Users\Alan\Documents\MLS.sql
2016-01-10 10:43 - 2005-08-11 22:54 - 00011944 _____ C:\Users\Alan\Documents\Kitchen.sdr
2016-01-10 10:43 - 2005-06-18 07:15 - 00960042 _____ C:\Users\Alan\Documents\Quarterly Graphics.pub
2016-01-10 10:43 - 2005-03-23 00:15 - 00647484 _____ C:\Users\Alan\Documents\Graphic3.cdr
2016-01-10 10:43 - 2005-03-22 23:25 - 00646140 _____ C:\Users\Alan\Documents\Backup_of_Graphic3.cdr
2016-01-10 10:43 - 2005-03-11 19:10 - 00099328 _____ C:\Users\Alan\Documents\2005 calendar 3 months.xls
2016-01-10 10:43 - 2005-03-11 19:09 - 00099328 _____ C:\Users\Alan\Documents\2005 calendar with room for notes1.xls
2016-01-10 10:43 - 2005-01-15 09:22 - 01635553 _____ C:\Users\Alan\Documents\BT 2005-01-06.zip
2016-01-10 10:43 - 2004-08-17 20:46 - 00000590 _____ C:\Users\Alan\Documents\Perscription.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00038078 _____ C:\Users\Alan\Documents\Test2.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00036006 _____ C:\Users\Alan\Documents\Test3.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00025951 _____ C:\Users\Alan\Documents\Test.htm
2016-01-10 10:43 - 2004-05-15 21:38 - 00009224 _____ C:\Users\Alan\Documents\LibraryQuery.htm
2016-01-10 10:43 - 2004-03-28 22:40 - 00021690 _____ C:\Users\Alan\Documents\CMS1500ClaimForm010402.pdf
2016-01-10 10:43 - 2003-05-15 10:45 - 00000434 _____ C:\Users\Alan\Documents\SchedLogins SyncRestore.sql
2016-01-10 10:43 - 2001-11-03 18:45 - 01337535 _____ C:\Users\Alan\Documents\ImageXPress.pdf
2016-01-10 10:36 - 2016-01-10 11:09 - 00000000 ____D C:\Users\Alan\Documents\AJ
2016-01-10 10:34 - 2016-01-10 10:34 - 00001464 _____ C:\Users\Public\Desktop\Acronis Backup 11.5.lnk
2016-01-10 10:29 - 2016-01-10 10:29 - 01119672 _____ (Acronis) C:\Windows\system32\Drivers\tib.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00314656 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00183224 _____ (Acronis) C:\Windows\system32\Drivers\tib_mounter.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00137504 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys
2016-01-10 10:28 - 2016-01-11 08:52 - 00000000 ____D C:\Users\Acronis Agent User
2016-01-10 10:28 - 2016-01-10 10:29 - 00000000 ____D C:\ProgramData\firebird
2016-01-10 10:28 - 2016-01-10 10:28 - 00000020 ___SH C:\Users\Acronis Agent User\ntuser.ini
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\My Documents
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Videos
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Pictures
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Music
2016-01-10 10:28 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Acronis Agent User\Documents\Visual Studio 2010
2016-01-10 10:28 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Acronis Agent User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-01-10 10:28 - 2010-11-21 02:16 - 00000000 ____D C:\Users\Acronis Agent User\AppData\Roaming\Media Center Programs
2016-01-10 10:27 - 2016-01-11 09:29 - 00000000 ____D C:\ProgramData\Acronis
2016-01-10 10:27 - 2016-01-11 09:29 - 00000000 ____D C:\Program Files (x86)\Acronis
2016-01-10 10:27 - 2016-01-10 10:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2016-01-10 10:22 - 2016-01-10 10:24 - 1075967648 _____ (Acronis) C:\Users\Alan\Downloads\AcronisBackup_11.5N_trial_en-US.exe
2016-01-10 10:17 - 2016-01-10 10:17 - 00000000 ____D C:\ProgramData\Macrium
2016-01-10 10:11 - 2016-01-10 10:11 - 00000000 __SHD C:\found.002
2016-01-09 22:03 - 2016-01-09 22:03 - 00059904 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\CABINET.DLL
2016-01-09 21:36 - 2016-01-11 09:38 - 00000492 _____ C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job
2016-01-09 21:36 - 2016-01-10 18:18 - 00000466 _____ C:\Windows\Tasks\ParetoLogic Registration3.job
2016-01-09 21:36 - 2016-01-10 00:05 - 00000440 _____ C:\Windows\Tasks\ParetoLogic Update Version3.job
2016-01-09 21:36 - 2016-01-09 21:39 - 00000000 ____D C:\ProgramData\ParetoLogic
2016-01-09 21:36 - 2016-01-09 21:36 - 00003252 _____ C:\Windows\System32\Tasks\ParetoLogic Update Version3
2016-01-09 21:36 - 2016-01-09 21:36 - 00003128 _____ C:\Windows\System32\Tasks\ParetoLogic Registration3
2016-01-09 21:36 - 2016-01-09 21:36 - 00002916 _____ C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task
2016-01-09 21:36 - 2016-01-09 21:36 - 00000000 ____D C:\Users\Alan\AppData\Roaming\ParetoLogic
2016-01-09 21:36 - 2016-01-09 21:36 - 00000000 ____D C:\Users\Alan\AppData\Roaming\DriverCure
2016-01-09 21:35 - 2016-01-09 21:35 - 05964208 _____ (ParetoLogic Inc.) C:\Users\Alan\Downloads\ParetoLogic PC Health Advisor.exe
2016-01-09 21:09 - 2016-01-10 19:59 - 00000000 ____D C:\Windows\Minidump
2016-01-09 17:44 - 2016-01-09 17:45 - 361334801 _____ C:\Users\Alan\Downloads\media.io.428735217.zip
2016-01-09 17:16 - 2016-01-09 17:17 - 00000000 ____D C:\Users\Alan\Downloads\m4a
2016-01-09 17:11 - 2016-01-09 17:11 - 01267984 _____ (Ellora Assets Corporation ) C:\Users\Alan\Downloads\FreemakeAudioConverterSetup.exe
2016-01-09 17:08 - 2016-01-09 17:08 - 03307008 _____ C:\Users\Alan\Downloads\AAC-to-MP3-Converter_1901.msi
2016-01-09 16:10 - 2016-01-09 16:11 - 00001250 _____ C:\Users\Public\Desktop\Virtual CloneDrive.lnk
2016-01-09 16:01 - 2016-01-09 16:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2016-01-09 16:01 - 2016-01-09 16:01 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2016-01-09 16:00 - 2016-01-09 16:00 - 01643512 _____ C:\Users\Alan\Downloads\SetupVirtualCloneDrive5490.exe
2016-01-09 15:55 - 2016-01-09 15:55 - 00003158 _____ C:\Windows\System32\Tasks\{2CDBD9D4-E65C-403C-9F84-D8C37C3C89C8}
2016-01-09 15:38 - 2016-01-09 15:57 - 00000000 ____D C:\Program Files (x86)\MagicDisc
2016-01-09 15:38 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\system32\Drivers\mcdbus.sys
2016-01-09 15:14 - 2016-01-09 15:14 - 07392176 _____ (Alcohol Soft Development Team) C:\Users\Alan\Downloads\Alcohol52_FE_2.0.3.8426_a1410fee73d496811c21ffd0302db70d.exe
2016-01-09 15:14 - 2016-01-09 15:14 - 00000000 ____D C:\Users\Alan\AppData\Local\{D07EE622-F4D6-8A9A-994E-AF72BD2653EA}
2016-01-09 14:21 - 2016-01-09 14:43 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Apple Computer
2016-01-09 14:21 - 2016-01-09 14:21 - 00000000 ____D C:\Users\Alan\AppData\Local\Apple Computer
2016-01-09 13:30 - 2016-01-09 21:43 - 00000000 ____D C:\Program Files\iTunes
2016-01-09 13:30 - 2016-01-09 13:30 - 00000000 ____D C:\ProgramData\Apple Computer
2016-01-09 13:29 - 2016-01-09 21:42 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-01-09 13:29 - 2016-01-09 13:29 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Users\Alan\AppData\Local\Apple
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files\Bonjour
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-01-09 13:28 - 2016-01-09 13:29 - 00000000 ____D C:\ProgramData\Apple
2016-01-09 13:27 - 2016-01-09 13:28 - 167583000 _____ (Apple Inc.) C:\Users\Alan\Downloads\iTunes6464Setup (1).exe
2016-01-09 13:27 - 2016-01-09 13:27 - 167583000 _____ (Apple Inc.) C:\Users\Alan\Downloads\iTunes6464Setup.exe
2016-01-09 12:27 - 2016-01-09 12:27 - 00017288 ____N C:\bootsqm.dat
2016-01-09 12:26 - 2016-01-09 12:26 - 00000000 __SHD C:\found.001
2016-01-08 09:54 - 2016-01-09 12:18 - 00000000 ____D C:\ProgramData\AVG Security Toolbar
2016-01-08 09:41 - 2016-01-08 09:41 - 02970984 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Alan\Downloads\AVG_Protection_Free_698.exe
2016-01-05 16:59 - 2016-01-05 16:59 - 00000000 ____D C:\Users\Alan\Documents\Projects - Copy
2015-12-29 14:14 - 2015-12-29 14:18 - 00000000 ____D C:\Users\Alan\Documents\Projects
2015-12-28 12:38 - 2015-12-28 12:38 - 00000000 ____D C:\Users\Alan\AppData\Local\TeamViewer
2015-12-22 17:56 - 2015-12-22 17:56 - 00000000 _____ C:\Users\Alan\Downloads\blank.csv
2015-12-19 18:04 - 2015-12-19 18:05 - 00000000 ____D C:\Users\Alan\AppData\Roaming\IcoFX2X
2015-12-19 18:04 - 2015-12-19 18:04 - 00001088 _____ C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk
2015-12-19 18:04 - 2015-12-19 18:04 - 00000000 ____D C:\ProgramData\IcoFX2X
2015-12-19 18:04 - 2015-12-19 18:04 - 00000000 ____D C:\Program Files (x86)\IcoFX 2
2015-12-19 18:03 - 2015-12-19 18:04 - 09283616 _____ ( ) C:\Users\Alan\Downloads\icofxsetup.exe
2015-12-18 15:14 - 2015-12-18 15:14 - 00001192 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
2015-12-18 15:14 - 2015-12-18 15:14 - 00001180 _____ C:\Users\Public\Desktop\paint.net.lnk
2015-12-18 15:13 - 2016-01-09 15:40 - 00000000 ____D C:\Users\Alan\AppData\Local\paint.net
2015-12-18 15:13 - 2015-12-18 15:14 - 00000000 ____D C:\Program Files\paint.net
2015-12-18 15:12 - 2015-12-18 15:12 - 06557455 _____ C:\Users\Alan\Downloads\paint.net.4.0.6.install.zip
2015-12-18 11:01 - 2015-12-18 11:01 - 00000000 ____D C:\Users\Alan\.nuget
2015-12-18 08:18 - 2015-12-18 08:18 - 00000000 ____D C:\ProgramData\Avg_Update_1215avz
2015-12-17 21:37 - 2015-12-18 11:32 - 00000000 ____D C:\Windows\Panther
2015-12-17 17:14 - 2015-12-17 17:14 - 00000000 ____D C:\Users\Alan\jQuery UI
2015-12-17 09:09 - 2015-12-17 09:09 - 00000000 ____D C:\Users\Alan\AppData\Local\TempOfficeC2R872786B1-952C-4B13-973A-E0A6EAB39028
2015-12-17 09:06 - 2015-07-16 14:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-12-17 09:06 - 2015-07-16 14:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-12-17 09:06 - 2015-07-16 14:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-12-17 09:06 - 2015-07-11 08:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-12-16 22:27 - 2015-12-16 22:27 - 00000000 ____D C:\Program Files\DNX
2015-12-16 09:06 - 2015-06-09 13:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-12-16 09:06 - 2015-06-09 13:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-12-16 09:06 - 2015-06-03 15:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-12-16 09:05 - 2014-12-11 12:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-12-16 08:55 - 2015-12-16 08:55 - 00000000 ____D C:\Users\Alan\Tracing
2015-12-16 08:54 - 2015-12-16 08:54 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-16 08:54 - 2015-12-16 08:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-15 22:27 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2010
2015-12-15 22:27 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2010
2015-12-15 22:24 - 2014-02-21 05:20 - 00248512 _____ (Microsoft Corporation) C:\Windows\system32\SQSRVRES.DLL
2015-12-15 11:42 - 2016-01-11 09:39 - 00000000 ___RD C:\Users\Alan\Google Drive
2015-12-15 11:42 - 2015-12-15 11:42 - 00001693 _____ C:\Users\Alan\Desktop\Google Drive.lnk
2015-12-15 11:28 - 2015-12-18 21:30 - 00000000 ____D C:\Users\Alan\Downloads\LITE Project Documents
2015-12-15 11:26 - 2015-12-15 11:26 - 00002046 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00002044 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00002034 _____ C:\Users\Public\Desktop\Google Docs.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-12-15 11:24 - 2015-12-15 11:24 - 00927824 _____ (Google Inc.) C:\Users\Alan\Downloads\googledrivesync.exe
2015-12-15 11:24 - 2015-12-15 11:24 - 00027551 _____ C:\Users\Alan\Downloads\DOC121415.pdf
2015-12-15 10:24 - 2015-12-15 10:26 - 45215744 _____ C:\Users\Alan\Downloads\SqlLocalDB.msi
2015-12-14 22:45 - 2015-12-14 22:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_dc3d_01011.Wdf
2015-12-14 22:45 - 2013-10-01 21:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2015-12-14 22:45 - 2013-10-01 21:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2015-12-14 22:45 - 2013-10-01 21:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-12-14 22:45 - 2013-10-01 20:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2015-12-14 22:45 - 2013-10-01 20:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2015-12-14 22:45 - 2013-10-01 20:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-12-14 22:45 - 2013-10-01 19:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2015-12-14 22:45 - 2013-10-01 19:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2015-12-14 22:45 - 2013-10-01 18:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-12-14 22:45 - 2013-10-01 17:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-12-14 22:44 - 2015-12-14 22:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-12-14 22:44 - 2012-08-23 09:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-12-14 22:44 - 2012-08-23 09:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2015-12-14 22:44 - 2012-08-23 06:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2015-12-14 22:44 - 2012-08-23 05:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2015-12-14 22:43 - 2015-02-03 19:00 - 00608072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-12-14 22:43 - 2015-02-03 11:18 - 04229086 _____ C:\Windows\system32\nvcoproc.bin
2015-12-14 22:13 - 2015-10-08 18:22 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL
2015-12-14 22:13 - 2015-10-08 18:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2015-12-14 22:13 - 2015-10-08 14:13 - 00419928 _____ C:\Windows\SysWOW64\locale.nls
2015-12-14 22:13 - 2015-10-08 13:52 - 00419928 _____ C:\Windows\system32\locale.nls
2015-12-14 22:13 - 2015-08-05 12:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-12-14 22:13 - 2015-08-05 12:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-12-14 21:20 - 2016-01-10 11:12 - 00000000 ____D C:\Users\Alan\Documents\SQL Server Management Studio
2015-12-14 21:20 - 2015-12-14 21:20 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-12-14 21:19 - 2015-12-14 21:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-12-14 21:18 - 2016-01-10 11:12 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio 2010
2015-12-14 21:17 - 2015-12-14 21:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2015-12-14 21:16 - 2015-12-14 21:16 - 00000000 ____D C:\Windows\symbols
2015-12-14 21:16 - 2015-12-14 21:16 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2015-12-14 21:13 - 2015-12-14 21:13 - 00000000 ____D C:\Users\Alan\Downloads\SQLManagementStudio_x64_ENU
2015-12-14 20:00 - 2015-12-14 21:03 - 717092824 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\SQLManagementStudio_x64_ENU.exe
2015-12-14 19:58 - 2015-12-14 19:58 - 00000000 ____D C:\Users\Alan\AppData\Local\Microsoft_Corporation
2015-12-14 19:42 - 2016-01-11 08:51 - 00000000 ____D C:\Users\MSSQL$SQLEXPRESS
2015-12-14 19:42 - 2015-12-14 19:42 - 00000020 ___SH C:\Users\MSSQL$SQLEXPRESS\ntuser.ini
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\My Documents
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Videos
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Pictures
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Music
2015-12-14 19:42 - 2015-12-14 17:14 - 00002100 _____ C:\Users\MSSQL$SQLEXPRESS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 19:42 - 2014-02-21 05:20 - 00056000 _____ (Microsoft Corporation) C:\Windows\system32\perf-MSSQL12.SQLEXPRESS-sqlagtctr.dll
2015-12-14 19:42 - 2014-02-21 05:20 - 00046784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL12.SQLEXPRESS-sqlagtctr.dll
2015-12-14 19:42 - 2010-11-21 02:16 - 00000000 ____D C:\Users\MSSQL$SQLEXPRESS\AppData\Roaming\Media Center Programs
2015-12-14 19:41 - 2014-02-21 05:27 - 00172224 _____ (Microsoft Corporation) C:\Windows\system32\hadrres.dll
2015-12-14 19:41 - 2014-02-21 05:27 - 00081088 _____ (Microsoft Corporation) C:\Windows\system32\fssres.dll
2015-12-14 19:41 - 2014-02-21 05:20 - 00103104 _____ (Microsoft Corporation) C:\Windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr12.0.2000.8.dll
2015-12-14 19:41 - 2014-02-21 05:20 - 00088768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL$SQLEXPRESS-sqlctr12.0.2000.8.dll
2015-12-14 19:40 - 2015-12-14 19:40 - 00000000 ____D C:\Windows\system32\RsFx
2015-12-14 19:40 - 2015-12-14 19:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 10.0
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
2015-12-14 19:38 - 2015-12-14 21:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014
2015-12-14 19:29 - 2015-12-14 19:29 - 00000000 ____D C:\Users\Alan\Downloads\SQLEXPR_x64_ENU
2015-12-14 19:26 - 2015-12-14 19:26 - 00000000 ____D C:\Users\Alan\AppData\LocalLow\Temp
2015-12-14 19:25 - 2015-12-14 19:25 - 00000000 ____D C:\Users\Alan\AppData\Roaming\NuGet
2015-12-14 19:21 - 2015-12-14 19:21 - 00000000 ____D C:\Users\Alan\Documents\IISExpress
2015-12-14 19:20 - 2015-12-14 19:20 - 00000000 ____D C:\Users\Alan\.dnx
2015-12-14 17:15 - 2016-01-11 08:51 - 00000000 ____D C:\Users\Alan\AppData\Local\TSVNCache
2015-12-14 17:15 - 2016-01-07 10:27 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio 2015
2015-12-14 17:14 - 2016-01-10 16:56 - 00000000 ____D C:\Users\Alan\AppData\Local\CrashDumps
2015-12-14 17:14 - 2015-12-14 17:14 - 00002152 _____ C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ___RD C:\Users\Alan\OneDrive
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2015-12-14 17:06 - 2015-12-14 17:06 - 00000000 ____D C:\Program Files (x86)\AppInsights
2015-12-14 17:05 - 2015-12-14 17:05 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2015-12-14 15:46 - 2015-12-14 15:46 - 00002461 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002370 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2015-12-14 15:38 - 2015-12-14 15:38 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0
2015-12-14 15:38 - 2015-12-14 15:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-12-14 15:09 - 2015-12-14 15:09 - 00000000 ____D C:\Program Files\IIS Express
2015-12-14 15:09 - 2015-12-14 15:09 - 00000000 ____D C:\Program Files (x86)\IIS Express
2015-12-14 15:02 - 2015-12-14 15:02 - 00000000 ____D C:\ProgramData\NuGet
2015-12-14 15:02 - 2015-12-14 15:02 - 00000000 ____D C:\Program Files (x86)\NuGet
2015-12-14 15:00 - 2015-12-14 15:00 - 00000000 ____D C:\Users\Alan\AppData\Local\VSIXInstaller
2015-12-14 15:00 - 2015-12-14 15:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2015-12-14 14:50 - 2015-12-14 14:50 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-12-14 14:47 - 2015-12-14 14:47 - 03187368 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\Setup.X86.en-US_O365SmallBusPremRetail_cc717f09-6ff2-4074-ba0a-e4b69c3eb655_TX_PR_.exe
2015-12-14 14:38 - 2015-12-14 15:34 - 206300720 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\SQLEXPR_x64_ENU.exe
2015-12-14 14:06 - 2015-12-14 14:06 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-12-14 14:04 - 2015-12-14 14:04 - 00000000 ____D C:\Program Files (x86)\ShellDir
2015-12-14 14:02 - 2015-12-14 16:04 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-12-14 14:01 - 2015-12-14 14:01 - 00000000 ____D C:\ProgramData\Microsoft DNX
2015-12-14 14:01 - 2015-12-14 14:01 - 00000000 ____D C:\Program Files\Microsoft DNX
2015-12-14 13:55 - 2015-12-16 22:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2015-12-14 13:51 - 2015-12-14 13:51 - 00000000 ____D C:\Program Files\IIS
2015-12-14 13:51 - 2015-12-14 13:51 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services
2015-12-14 13:50 - 2015-12-14 13:50 - 00000000 ____D C:\Program Files (x86)\IIS
2015-12-14 13:48 - 2015-12-14 14:50 - 00001538 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2015-12-14 13:48 - 2015-12-14 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
2015-12-14 13:45 - 2015-12-14 14:06 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2015-12-14 13:45 - 2015-12-14 13:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2015-12-14 13:45 - 2015-12-14 13:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2015-12-14 13:44 - 2015-12-15 22:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-12-14 13:44 - 2015-12-15 22:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-12-14 13:44 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\SysWOW64\1033
2015-12-14 13:44 - 2015-12-14 14:25 - 00001539 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2015-12-14 13:40 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\system32\1033
2015-12-14 13:40 - 2015-12-14 17:12 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-12-14 13:40 - 2015-12-14 17:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-12-14 13:23 - 2015-12-16 22:25 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-14 13:23 - 2015-12-14 17:13 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-14 13:22 - 2015-12-14 13:22 - 00000000 ____D C:\ProgramData\VsTelemetry
2015-12-14 13:19 - 2015-12-14 13:19 - 07398232 _____ (Alcohol Soft Development Team) C:\Users\Alan\Downloads\Alcohol52_FE_2.0.3.8314_76c0d89a0fea0189da90b525e59e2472.exe
2015-12-14 13:19 - 2015-12-14 13:19 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Wow_com
2015-12-14 13:18 - 2015-12-14 13:18 - 01035368 _____ (Installer Program ) C:\Users\Alan\Downloads\downloader_for_Alcohol52_FE_2.exe
2015-12-14 13:11 - 2015-12-14 13:11 - 00000000 ____D C:\Users\Alan\AppData\Local\TortoiseSVN
2015-12-14 13:05 - 2016-01-07 17:15 - 00002280 ____H C:\Users\Alan\Documents\Default.rdp
2015-12-14 13:04 - 2015-12-29 14:22 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TortoiseSVN
2015-12-14 13:02 - 2015-12-14 13:02 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Subversion
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\Program Files\TortoiseSVN
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Public\Juniper Networks
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Juniper Networks
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Alan\AppData\Local\Juniper Networks
2015-12-14 12:55 - 2015-07-06 04:05 - 00108344 _____ (Pulse Secure, LLC) C:\Windows\system32\Drivers\jnprTdi_814_60057.sys
2015-12-14 12:54 - 2015-12-14 12:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pulse Secure
2015-12-14 12:53 - 2015-12-14 12:53 - 00000000 ____D C:\Program Files (x86)\Juniper Networks
2015-12-14 12:53 - 2015-07-06 00:55 - 00507192 _____ (Juniper Networks) C:\Windows\system32\Drivers\jnprns.sys
2015-12-14 12:52 - 2015-12-14 12:56 - 19165184 _____ C:\Users\Alan\Downloads\TortoiseSVN-1.9.2.26806-x64-svn-1.9.2.msi
2015-12-14 12:51 - 2015-12-14 12:52 - 16745472 _____ C:\Users\Alan\Downloads\ps-pulse-win-5.1r4.0-b60057-64bitinstaller.msi
2015-12-14 12:49 - 2016-01-10 19:01 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TeamViewer
2015-12-14 11:14 - 2016-01-11 00:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-12-14 11:14 - 2015-12-17 18:12 - 00000975 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-12-14 11:14 - 2015-12-17 18:12 - 00000963 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2015-12-14 11:13 - 2015-12-14 11:14 - 09612112 _____ (TeamViewer GmbH) C:\Users\Alan\Downloads\TeamViewer_Setup_en-lne.exe
2015-12-14 09:12 - 2015-12-14 09:12 - 00000000 ____D C:\Users\Alan\AppData\Local\GWX
2015-12-14 08:43 - 2015-12-14 08:43 - 00002760 _____ C:\Windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance
2015-12-14 08:30 - 2015-12-14 12:07 - 3965825024 _____ C:\Users\Alan\Downloads\vs2015.com_enu (1).iso
2015-12-14 08:28 - 2015-12-14 08:28 - 00000000 ____D C:\Users\Alan\AppData\Local\ORPALIS
2015-12-14 08:26 - 2015-12-14 08:26 - 00000000 ____D C:\Users\Alan\AppData\Local\Downloaded Installations
2015-12-14 08:25 - 2015-12-14 08:26 - 23794934 _____ C:\Users\Alan\Downloads\paperscanfree.zip
2015-12-14 08:22 - 2015-12-14 08:23 - 00000000 ____D C:\Users\Alan\AppData\Roaming\NAPS2
2015-12-14 08:21 - 2015-12-14 08:21 - 01182014 _____ (Ben Olden-Cooligan ) C:\Users\Alan\Downloads\naps2-4.2.3-setup.exe
2015-12-14 07:08 - 2015-12-14 07:08 - 00000000 __SHD C:\found.000
2015-12-13 20:47 - 2015-12-13 20:47 - 00153230 _____ C:\Users\Alan\Downloads\Alan Bridges's Welcome Letter.pdf
2015-12-13 19:26 - 2015-12-17 22:36 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-13 19:26 - 2015-12-17 22:36 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-13 16:48 - 2015-12-16 14:48 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-13 16:48 - 2015-12-13 16:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-13 16:42 - 2016-01-11 09:39 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-13 16:42 - 2016-01-10 21:47 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-13 16:42 - 2015-12-13 16:42 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-13 16:42 - 2015-12-13 16:42 - 00003638 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-13 16:21 - 2015-10-12 23:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-12-13 15:56 - 2015-07-15 13:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-12-13 15:56 - 2015-07-15 13:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-12-13 15:56 - 2015-07-15 13:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-12-13 15:55 - 2015-11-11 16:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-13 15:55 - 2015-11-11 15:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-13 15:55 - 2015-11-11 11:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-13 15:55 - 2015-11-11 11:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-13 15:55 - 2015-11-11 10:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-12-13 15:55 - 2015-11-11 10:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-12-13 15:55 - 2015-11-11 10:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-13 15:55 - 2015-11-11 10:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-12-13 15:55 - 2015-11-11 09:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-12-13 15:55 - 2015-11-09 19:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-13 15:55 - 2015-11-09 19:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-13 15:55 - 2015-11-09 19:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-12-13 15:55 - 2015-11-09 19:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-12-13 15:55 - 2015-11-09 19:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-12-13 15:55 - 2015-11-09 19:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-12-13 15:55 - 2015-11-09 19:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-13 15:55 - 2015-11-09 19:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-13 15:55 - 2015-11-09 19:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-12-13 15:55 - 2015-11-09 19:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-12-13 15:55 - 2015-11-09 19:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-12-13 15:55 - 2015-11-09 19:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-13 15:55 - 2015-11-09 19:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-12-13 15:55 - 2015-11-09 18:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-12-13 15:55 - 2015-11-09 18:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-12-13 15:55 - 2015-11-09 18:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-12-13 15:55 - 2015-11-09 18:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-12-13 15:55 - 2015-11-09 18:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-12-13 15:55 - 2015-11-09 18:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-13 15:55 - 2015-11-09 18:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-13 15:55 - 2015-11-09 18:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-12-13 15:55 - 2015-11-09 18:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-13 15:55 - 2015-11-09 18:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-13 15:55 - 2015-11-09 18:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-12-13 15:55 - 2015-11-08 17:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-13 15:55 - 2015-11-08 17:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-12-13 15:55 - 2015-11-08 17:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-12-13 15:55 - 2015-11-08 17:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-12-13 15:55 - 2015-11-08 17:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-12-13 15:55 - 2015-11-08 17:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-13 15:55 - 2015-11-08 17:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-13 15:55 - 2015-11-08 17:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-12-13 15:55 - 2015-11-08 17:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-12-13 15:55 - 2015-11-08 17:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-12-13 15:55 - 2015-11-08 16:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-13 15:55 - 2015-11-08 16:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-12-13 15:55 - 2015-11-08 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-13 15:55 - 2015-11-08 16:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-12-13 15:55 - 2015-11-08 16:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-12-13 15:55 - 2015-11-08 16:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-12-13 15:55 - 2015-11-08 16:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-12-13 15:55 - 2015-11-08 16:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-13 15:55 - 2015-11-08 16:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-13 15:55 - 2015-11-08 16:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-13 15:55 - 2015-11-08 16:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-12-13 15:55 - 2015-11-08 16:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-13 15:55 - 2015-11-08 15:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-13 15:55 - 2015-11-08 15:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-13 15:55 - 2015-11-08 15:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-12-13 15:55 - 2015-09-18 14:22 - 00025432 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-12-13 15:55 - 2015-09-18 14:19 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-12-13 15:55 - 2015-09-18 14:09 - 01163776 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-12-13 15:55 - 2015-07-14 22:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-12-13 15:55 - 2015-06-03 15:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-12-13 15:55 - 2015-05-25 13:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-12-13 15:55 - 2015-05-25 13:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-12-13 15:55 - 2015-05-25 13:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-12-13 15:55 - 2015-05-25 13:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-12-13 15:53 - 2015-11-05 14:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-12-13 15:53 - 2015-11-05 14:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-12-13 15:53 - 2015-08-05 12:56 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-12-13 15:53 - 2015-06-01 19:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-12-13 15:53 - 2015-06-01 18:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-12-13 15:53 - 2015-04-29 13:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-12-13 15:53 - 2015-04-29 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-12-13 15:53 - 2015-04-29 13:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-12-13 15:53 - 2015-04-29 13:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-12-13 15:53 - 2015-04-29 13:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-12-13 15:53 - 2015-04-29 13:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-12-13 15:53 - 2015-04-29 13:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-12-13 15:53 - 2015-04-29 13:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-12-13 15:53 - 2015-04-29 13:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-12-13 15:53 - 2015-04-29 13:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-12-13 15:53 - 2015-04-17 22:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-12-13 15:53 - 2015-04-17 21:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-12-13 15:53 - 2015-04-12 22:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-12-13 15:50 - 2015-12-13 15:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-12-13 15:50 - 2015-11-03 14:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-12-13 15:50 - 2015-11-03 13:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-12-13 15:50 - 2015-08-06 13:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-12-13 15:50 - 2015-08-06 13:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-12-13 15:50 - 2015-08-06 12:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-12-13 15:50 - 2015-08-06 12:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-13 15:48 - 2015-11-20 13:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-12-13 15:48 - 2015-11-20 13:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-12-13 15:48 - 2015-11-20 13:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-12-13 15:48 - 2015-02-02 22:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-12-13 15:48 - 2015-02-02 22:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-12-13 15:48 - 2015-02-02 22:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-12-13 15:47 - 2015-07-09 12:58 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-12-13 15:47 - 2015-07-09 12:58 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-12-13 15:47 - 2015-07-09 12:42 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-12-13 15:47 - 2015-07-09 12:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-12-13 15:47 - 2015-02-02 22:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-12-13 15:47 - 2015-02-02 22:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-12-13 15:47 - 2015-02-02 22:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-12-13 15:47 - 2015-02-02 22:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-12-13 15:47 - 2015-02-02 22:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-12-13 15:47 - 2015-01-28 22:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-12-13 15:47 - 2015-01-28 22:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-12-13 15:45 - 2015-11-11 13:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-13 15:45 - 2015-11-11 13:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-13 15:45 - 2015-11-11 13:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-13 15:45 - 2015-11-11 13:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-13 15:45 - 2015-11-10 13:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-12-13 15:45 - 2015-11-10 13:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-13 15:45 - 2015-11-10 12:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-13 15:45 - 2015-11-05 14:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-13 15:45 - 2015-11-05 14:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2015-12-13 15:45 - 2015-11-05 04:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-13 15:45 - 2015-10-01 13:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-12-13 15:45 - 2015-10-01 13:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-12-13 15:45 - 2015-10-01 13:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-12-13 15:45 - 2015-10-01 13:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-12-13 15:45 - 2015-10-01 12:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-12-13 15:45 - 2015-10-01 12:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-12-13 15:45 - 2015-07-18 08:08 - 00984448 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00901264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-12-13 15:45 - 2015-07-04 13:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-12-13 15:45 - 2015-07-04 12:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-12-13 15:45 - 2015-07-01 15:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-12-13 15:45 - 2015-07-01 15:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-12-13 15:45 - 2015-07-01 15:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-12-13 15:45 - 2015-07-01 15:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-12-13 15:45 - 2015-06-17 12:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-12-13 15:45 - 2015-06-17 12:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-12-13 15:45 - 2015-06-03 15:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-12-13 15:45 - 2015-06-03 15:16 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-12-13 15:45 - 2015-06-03 15:16 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-12-13 15:45 - 2015-04-27 14:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-12-13 15:45 - 2015-04-27 14:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-12-13 15:45 - 2015-04-24 13:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-12-13 15:45 - 2015-04-24 12:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-12-13 15:44 - 2015-10-19 20:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-12-13 15:44 - 2015-10-19 20:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-12-13 15:44 - 2015-10-19 20:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-12-13 15:44 - 2015-10-19 20:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-12-13 15:44 - 2015-10-19 20:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-12-13 15:44 - 2015-10-19 20:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-12-13 15:44 - 2015-10-19 20:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-12-13 15:44 - 2015-10-19 20:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-12-13 15:44 - 2015-10-19 20:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-12-13 15:44 - 2015-10-19 20:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-12-13 15:44 - 2015-10-19 19:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-12-13 15:44 - 2015-10-19 19:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-12-13 15:44 - 2015-10-19 19:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-12-13 15:44 - 2015-10-19 19:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-12-13 15:44 - 2015-10-19 19:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-12-13 15:44 - 2015-10-19 19:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-12-13 15:44 - 2015-10-19 19:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-12-13 15:44 - 2015-10-19 18:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-12-13 15:44 - 2015-10-19 18:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-12-13 15:44 - 2015-10-19 18:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-12-13 15:44 - 2015-10-19 18:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-12-13 15:44 - 2015-10-19 18:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-12-13 15:44 - 2015-10-13 11:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-12-13 15:44 - 2015-10-13 11:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-12-13 15:44 - 2015-09-23 08:15 - 00460776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-12-13 15:44 - 2015-09-23 08:15 - 00299632 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-12-13 15:44 - 2015-09-23 08:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-12-13 15:30 - 2015-07-30 13:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-12-13 15:30 - 2015-07-30 12:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-12-13 15:30 - 2015-06-15 16:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-12-13 15:30 - 2015-06-15 16:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-12-13 15:30 - 2015-06-15 16:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-12-13 15:30 - 2015-06-15 16:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-12-13 15:30 - 2015-06-15 16:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-12-13 15:30 - 2015-06-15 16:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-12-13 15:30 - 2015-06-15 16:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-12-13 15:30 - 2015-06-15 16:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-12-13 15:29 - 2015-10-29 12:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-12-13 15:29 - 2015-10-29 12:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-12-13 15:29 - 2015-10-29 12:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-12-13 15:28 - 2015-07-22 19:02 - 01390592 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-12-13 15:28 - 2015-07-22 19:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-12-13 15:28 - 2015-07-22 19:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-12-13 15:28 - 2015-07-22 11:48 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-12-13 15:27 - 2015-07-22 12:53 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-12-13 15:27 - 2015-07-22 12:53 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-12-13 15:26 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-12-13 15:26 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-12-13 15:26 - 2015-07-09 12:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-12-13 15:26 - 2015-06-25 05:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-12-13 15:26 - 2015-06-25 05:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-12-13 15:26 - 2015-06-25 05:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-12-13 15:26 - 2015-06-25 04:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-12-13 15:26 - 2015-04-10 22:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-12-13 15:26 - 2015-02-18 02:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-12-13 15:26 - 2015-02-18 02:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-12-13 15:25 - 2015-08-27 13:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-12-13 15:25 - 2015-08-27 13:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-12-13 15:25 - 2015-08-27 13:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-12-13 15:25 - 2015-08-27 13:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-12-13 15:25 - 2015-08-27 12:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-12-13 15:25 - 2015-08-27 12:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-12-13 15:25 - 2015-08-27 12:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-12-13 15:25 - 2015-08-27 12:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-12-13 15:25 - 2015-02-24 22:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-12-13 15:25 - 2015-02-02 22:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-12-13 15:25 - 2015-02-02 22:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-12-13 15:25 - 2015-01-16 21:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-12-13 15:25 - 2015-01-16 21:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-12-13 15:05 - 2015-12-13 15:05 - 06420480 _____ C:\Program Files (x86)\GUT23D6.tmp
2015-12-13 15:05 - 2015-12-13 15:05 - 00000000 ____D C:\Program Files (x86)\GUM23D5.tmp
2015-12-13 14:57 - 2015-11-03 14:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2015-12-13 14:57 - 2015-11-03 13:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2015-12-13 14:57 - 2015-10-01 13:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-12-13 14:57 - 2015-10-01 13:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-12-13 14:57 - 2015-10-01 12:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-12-13 14:57 - 2015-09-01 21:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-12-13 14:57 - 2015-09-01 20:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-12-13 14:57 - 2015-09-01 20:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-12-13 14:57 - 2015-03-03 23:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-12-13 14:57 - 2015-03-03 23:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-12-13 14:57 - 2015-03-03 23:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-12-13 14:57 - 2015-02-03 22:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-12-13 14:57 - 2015-02-03 21:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-12-13 14:43 - 2015-12-13 14:43 - 209715200 _____ C:\Users\Alan\Documents\Data Safe.avgfv
2015-12-13 14:36 - 2015-12-13 15:24 - 00000000 ____D C:\Users\Alan\AppData\Roaming\AVG
2015-12-13 14:34 - 2015-12-13 14:34 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TuneUp Software
2015-12-13 14:24 - 2016-01-11 00:55 - 00000000 ____D C:\ProgramData\MFAData
2015-12-13 14:24 - 2015-12-13 14:24 - 00000000 ____D C:\Users\Alan\AppData\Local\MFAData
2015-12-13 14:18 - 2016-01-10 20:09 - 00000000 ____D C:\ProgramData\Avg
2015-12-13 14:18 - 2016-01-10 20:09 - 00000000 ____D C:\Program Files (x86)\AVG
2015-12-13 14:16 - 2016-01-11 00:54 - 00000000 ____D C:\Users\Alan\AppData\Local\AvgSetupLog
2015-12-13 14:16 - 2016-01-10 19:14 - 00000000 ____D C:\Users\Alan\AppData\Local\Avg
2015-12-13 14:08 - 2014-11-20 10:29 - 00023752 _____ (360安全中心) C:\Windows\SysWOW64\Drivers\efimon.sys
2015-12-13 11:33 - 2015-12-13 16:24 - 00000000 ____D C:\dea79e73663cf1fd091fd2b09565ea
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 09:43 - 2014-08-25 19:17 - 00000000 ____D C:\Users\Alan
2016-01-11 09:38 - 2014-08-26 03:00 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-11 09:38 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-11 09:29 - 2009-07-13 22:20 - 00000000 ____D C:\Windows
2016-01-11 09:06 - 2009-07-13 23:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-11 09:06 - 2009-07-13 23:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-11 08:56 - 2009-07-14 00:13 - 00940230 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-11 08:56 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\inf
2016-01-10 21:51 - 2014-07-16 11:02 - 00001523 _____ C:\Users\Alan\Downloads\README.txt
2016-01-10 20:56 - 2014-08-25 19:46 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Skype
2016-01-10 20:30 - 2014-08-25 19:18 - 00000000 ____D C:\Users\Alan\AppData\Local\VirtualStore
2016-01-09 15:15 - 2014-08-25 21:43 - 00000124 _____ C:\Users\Alan\Documents\ax_files.xml
2016-01-09 13:47 - 2009-07-14 00:08 - 00032616 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-01-09 01:10 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\NDF
2016-01-03 15:34 - 2014-08-25 19:45 - 00000000 ____D C:\ProgramData\Skype
2015-12-19 09:44 - 2014-08-26 10:03 - 00000000 ____D C:\Users\Alan\AppData\Roaming\SoftGrid Client
2015-12-18 11:28 - 2015-10-30 04:42 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-17 11:20 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
2015-12-16 08:54 - 2014-08-25 19:46 - 00000000 ____D C:\Users\Alan\AppData\Local\Skype
2015-12-16 08:54 - 2014-08-25 19:45 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-16 08:47 - 2014-08-28 02:21 - 00433240 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-15 11:26 - 2014-08-25 19:49 - 00000000 ____D C:\Users\Alan\AppData\Local\Google
2015-12-15 11:26 - 2014-08-25 19:49 - 00000000 ____D C:\Program Files (x86)\Google
2015-12-15 07:58 - 2011-05-06 17:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-12-15 03:15 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-12-14 22:44 - 2014-08-25 19:45 - 00000000 ____D C:\temp
2015-12-14 22:43 - 2014-08-26 03:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-12-14 22:42 - 2014-08-26 02:57 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-12-14 19:40 - 2009-07-13 22:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-12-14 17:15 - 2015-01-21 13:50 - 00110176 _____ C:\Users\Alan\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-14 14:40 - 2014-08-26 02:08 - 00790182 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-12-14 14:06 - 2011-05-06 17:36 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-12-14 13:45 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-14 12:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Downloaded Program Files
2015-12-14 08:45 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\sysprep
2015-12-14 08:30 - 2014-12-16 03:27 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieBrowserModeList
2015-12-14 08:30 - 2014-11-21 13:37 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieBrowserModeList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieUserList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieSiteList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieUserList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieSiteList
2015-12-14 08:03 - 2014-12-20 10:51 - 00000000 ____D C:\Users\Alan\AppData\Local\ElevatedDiagnostics
2015-12-14 07:13 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\AppCompat
2015-12-13 20:50 - 2014-08-26 00:46 - 00000000 ____D C:\Users\Alan\AppData\Local\Windows Live
2015-12-13 19:30 - 2014-08-26 02:56 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-13 19:30 - 2014-08-26 02:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-12-13 19:27 - 2014-12-15 08:45 - 00000000 ____D C:\Windows\system32\appraiser
2015-12-13 19:27 - 2014-08-26 01:17 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\Dism
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-12-13 19:26 - 2010-11-21 02:17 - 00000000 ____D C:\Program Files\Windows Journal
2015-12-13 18:36 - 2014-08-26 10:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client
2015-12-13 18:05 - 2014-08-26 01:41 - 00000000 ____D C:\Windows\system32\MRT
2015-12-13 17:07 - 2014-08-26 02:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-12-13 16:42 - 2014-08-25 19:49 - 00000000 ____D C:\Users\Alan\AppData\Local\Deployment
2015-12-13 16:24 - 2014-08-26 03:22 - 00000000 ____D C:\Windows\Tasks\360Disabled
2015-12-13 16:24 - 2014-08-26 00:13 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-12-13 16:24 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
2015-12-13 15:27 - 2014-08-25 21:33 - 00000000 ____D C:\Program Files (x86)\Smart File Advisor
2015-12-13 14:15 - 2014-08-26 02:55 - 00000000 ____D C:\Program Files (x86)\360
2015-12-13 14:12 - 2011-05-06 17:41 - 00000000 ____D C:\ProgramData\Trend Micro
 
==================== Files in the root of some directories =======
 
2015-12-13 15:05 - 2015-12-13 15:05 - 6420480 _____ () C:\Program Files (x86)\GUT23D6.tmp
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-01-09 12:58
 
==================== End of FRST.txt ============================


#3 alanbridges

alanbridges
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:42 PM

Posted 11 January 2016 - 11:59 AM

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-01-2015 01
Ran by Alan (administrator) on ALAN-PC (11-01-2016 09:48:11)
Running from C:\Users\Alan\Downloads
Loaded Profiles: Alan (Available Profiles: Alan & MSSQL$SQLEXPRESS)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11613288 2010-11-19] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1797064 2014-03-20] (NVIDIA Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [407816 2015-07-20] (Acronis)
HKLM\...\Run: [TrayMonitor.exe] => C:\Program Files (x86)\Acronis\TrayMonitor\TrayMonitor.exe [1516064 2015-07-20] (Acronis)
HKLM-x32\...\Run: [RunAIShell] => C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe [232064 2009-12-23] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [PulseSecure] => C:\Program Files (x86)\Common Files\Juniper Networks\JamUI\Pulse.exe [2826584 2015-07-06] (Pulse Secure, LLC)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1102184 2013-01-22] (Acronis)
HKLM-x32\...\Run: [BackupAndRecoveryMonitor.exe] => C:\Program Files (x86)\Acronis\BackupAndRecovery\BackupAndRecoveryMonitor.exe [1496544 2015-07-20] (Acronis)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1139112 2015-12-08] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [BingSvc] => C:\Users\Alan\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-13] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22790776 2015-11-04] (Google)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [TweakBit\FixMyPC\Start FixMyPC >n logon] => C:\Program Files (x86)\TweakBit\FixMyPC\FixMyPC.exe [2534344 2015-11-25] (TweakBit)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [TweakBit\PCCleaner\Start PCCleaner >n logon] => C:\Program Files (x86)\TweakBit\PCCleaner\PCCleaner.exe [2543560 2015-11-25] (TweakBit)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [1445648 2016-01-10] (Lavasoft)
HKU\S-1-5-21-198653192-873858985-810505055-1001\...\MountPoints2: {e6c97040-2cc8-11e4-a5c2-806e6f6e6963} - G:\vs_community.exe
HKU\S-1-5-21-198653192-873858985-810505055-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\WLXPGSS.SCR [301936 2010-11-10] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [  Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Winsock: Catalog9 01 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 02 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 03 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 04 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9 15 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 01 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 02 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 03 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 04 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Winsock: Catalog9-x64 15 C:\Windows\system32\LavasoftTcpService64.dll [425744 2016-01-10] (Lavasoft Limited)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{62D71BE2-9D6B-4ED6-B6F2-EEADD29E9560}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{C8795CF6-B7C5-4816-ABFE-9EA50161E28D}: [NameServer] 10.80.8.240
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-198653192-873858985-810505055-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=D011016-A550D1D9DEB&form=CONMHP&conlogo=CT3334507
HKU\S-1-5-21-198653192-873858985-810505055-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com/
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP08&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP08&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> DefaultScope {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D011016-A550D1D9DEB&form=CONBDF&conlogo=CT3334507&q={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {07581F19-721E-46E7-AB12-F4A06E487779} URL = hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_ir_14_35_ch&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0SzyyCzztN1L2XzutAtFtDtFtCtDtFyEtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StB0D0Azz0AtCyC0FtG0CyCtCtCtGzzyB0C0AtG0EzzyEzztGtCyBtA0ByE0E0B0D0D0DyCyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CyByCtCtD0Azz0CtGyB0DtDyDtGyE0F0BtDtGzz0ByBzztGyB0FyCtDyD0Bzy0FtCyEtBzz2Q&cr=1631397202&ir=
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL = hxxp://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_ir_16_01&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzztC0D0CzytD0Dzzzy0DtAtN0D0Tzu0StCyEyCzytN1L2XzutAtFtCtBtFyBtFtDtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyBtAyB0EtAtCyDtCtGyEtC0BtBtG0D0B0DzytGyD0EyB0AtGyCtCyDtCtCtCtByCyBtDzy0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDzz0F0F0BtAyBtGyD0A0DyEtGyEyByBtCtG0AyDtCyCtG0CtA0FyCyC0Ezz0B0F0AtCtA2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtBzyyC%26cr%3D2104692834%26a%3Dwbf_ir_16_01%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.bing.com/search?FORM=SL5CDF&PC=SL5C&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-198653192-873858985-810505055-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={8035A3DC-22FB-4E72-B859-92D586FF0C4C}&mid=8b33817e97d547cc8f68854de0832efb-07fe91a4e62770038e8cdbedcc9f36fdbbb95fed&lang=en&ds=AVG&coid=avgtbavg&cmpid=0615piz&pr=fr&d=2016-01-08 09:54:26&v=4.2.4.155&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2015-12-14] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2015-12-14] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2015-12-14] (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-16] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2015-12-14] (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2015-12-14] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2015-12-14] (Microsoft Corporation)
DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient64.cab
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll [2014-08-26] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll [2014-08-26] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-12-14] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2015-12-14] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-13] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-13] (Google Inc.)
 
Chrome: 
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-13]
CHR Extension: (Google Docs) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-13]
CHR Extension: (Google Drive) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-13]
CHR Extension: (Skype Calling) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2015-12-13]
CHR Extension: (YouTube) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-13]
CHR Extension: (Google Search) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-13]
CHR Extension: (Google Sheets) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-13]
CHR Extension: (Google Docs Offline) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-13]
CHR Extension: (360 Internet Protection) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2015-12-13]
CHR Extension: (Unsocialize: The Link Unsocializer) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdogcpghhdcocgdjogbglgejhdeedijn [2015-12-13]
CHR Extension: (HTTP Trace) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\idladlllljmbcnfninpljlkaoklggknp [2015-12-13]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-12-16]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-13]
CHR Extension: (Gmail) - C:\Users\Alan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-13]
CHR HKLM\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-198653192-873858985-810505055-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pfkfdlcdbajamklbneflfbcmfgddmpae] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
S2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe [915584 2010-12-01] ()
S2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] ()
S2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1049000 2015-12-08] (AVG Technologies CZ, s.r.o.)
S2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-09-15] (AOMEI Tech Co., Ltd.)
S3 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S3 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2748600 2015-12-04] (Microsoft Corporation)
S2 JuniperAccessService; C:\Program Files (x86)\Common Files\Juniper Networks\JUNS\dsAccessService.exe [162136 2015-07-06] (Pulse Secure, LLC)
S2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2016-01-10] (Lavasoft Limited)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL12.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [370368 2015-06-10] (Microsoft Corporation)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
S4 NPEService; C:\Users\Alan\Downloads\NPE.exe [3088296 2016-01-10] (Symantec Corporation)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
S2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2016-01-10] ()
S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL12.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [613056 2015-06-10] (Microsoft Corporation)
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56040 2015-11-19] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-26] () [File not signed]
S2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-26] () [File not signed]
S2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-26] () [File not signed]
R0 asahci64; C:\Windows\System32\drivers\asahci64.sys [36448 2011-01-30] (Asmedia Technology)
S2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2008-01-04] ()
S1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
S1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 jnprns; C:\Windows\System32\DRIVERS\jnprns.sys [507192 2015-07-06] (Juniper Networks)
S4 jnprTdi_814_60057; C:\Windows\system32\Drivers\jnprTdi_814_60057.sys [108344 2015-07-06] (Pulse Secure, LLC)
S3 jnprva; C:\Windows\System32\DRIVERS\jnprva.sys [30072 2015-07-06] (Juniper Networks, Inc.)
R3 JnprVaMgr; C:\Windows\System32\DRIVERS\jnprvamgr.sys [45352 2015-07-06] (Juniper Networks, Inc.)
S4 RsFx0300; C:\Windows\System32\DRIVERS\RsFx0300.sys [247488 2014-02-21] (Microsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-08-25] (Duplex Secure Ltd.)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1119672 2016-01-10] (Acronis)
R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [183224 2016-01-10] (Acronis)
S1 BAPIDRV; system32\DRIVERS\BAPIDRV64.sys [X]
S1 ttnfd; system32\drivers\ttnfd.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 09:16 - 2016-01-11 09:17 - 00052107 _____ C:\Users\Alan\Downloads\Addition.txt
2016-01-11 09:15 - 2016-01-11 09:48 - 00000000 ____D C:\FRST
2016-01-11 09:15 - 2016-01-11 09:48 - 00000000 _____ C:\Users\Alan\Downloads\FRST.txt
2016-01-11 09:15 - 2016-01-11 09:15 - 02370560 _____ (Farbar) C:\Users\Alan\Downloads\FRST64.exe
2016-01-10 22:20 - 2016-01-10 22:21 - 181379072 _____ C:\Users\Alan\Downloads\avg_arl_cdi_all_120_150814a10442.iso
2016-01-10 22:04 - 2016-01-10 22:04 - 00003242 _____ C:\Windows\System32\Tasks\{317B9121-B8C8-46BD-A688-9A33423B2537}
2016-01-10 22:01 - 2016-01-10 22:01 - 00000000 ____D C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442
2016-01-10 21:57 - 2016-01-10 21:57 - 00003160 _____ C:\Windows\System32\Tasks\{87FFA2DA-3F16-4D86-BAF3-E987D50385DE}
2016-01-10 21:39 - 2016-01-10 21:39 - 222163916 _____ C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442.zip
2016-01-10 21:27 - 2016-01-10 21:27 - 00000000 __SHD C:\found.003
2016-01-10 20:57 - 2016-01-11 09:43 - 00447186 _____ C:\Windows\ntbtlog.txt
2016-01-10 20:55 - 2016-01-10 20:55 - 00000000 ____D C:\ProgramData\SMR501
2016-01-10 20:48 - 2016-01-10 21:16 - 00000000 ____D C:\Users\Alan\AppData\Local\NPE
2016-01-10 20:48 - 2016-01-10 20:48 - 03088296 _____ (Symantec Corporation) C:\Users\Alan\Downloads\NPE.exe
2016-01-10 20:48 - 2016-01-10 20:48 - 00000000 ____D C:\ProgramData\Norton
2016-01-10 20:29 - 2016-01-10 20:29 - 00388608 _____ (Trend Micro Inc.) C:\Users\Alan\Downloads\HijackThis.exe
2016-01-10 20:09 - 2016-01-10 20:34 - 00000862 _____ C:\Users\Public\Desktop\AVG.lnk
2016-01-10 20:09 - 2016-01-10 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-01-10 19:59 - 2016-01-10 19:59 - 702861038 _____ C:\Windows\MEMORY.DMP
2016-01-10 19:59 - 2016-01-10 19:59 - 00288608 _____ C:\Windows\Minidump\011016-24819-01.dmp
2016-01-10 19:16 - 2016-01-10 19:33 - 00002888 _____ C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
2016-01-10 19:16 - 2016-01-10 19:33 - 00002888 _____ C:\Windows\system32\LavasoftTcpServiceOff.ini
2016-01-10 19:12 - 2016-01-10 20:17 - 00205048 _____ C:\Windows\ntbtlog.txt.bak
2016-01-10 19:01 - 2016-01-10 19:01 - 06937888 _____ (TeamViewer) C:\Users\Alan\Downloads\TeamViewerQS_en-lne.exe
2016-01-10 18:53 - 2016-01-10 18:53 - 00000481 _____ C:\Prefs.js
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\Users\Alan\AppData\Local\Lavasoft
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\searchplugins
2016-01-10 18:53 - 2016-01-10 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2016-01-10 18:52 - 2016-01-10 18:52 - 00425744 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00345360 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Lavasoft
2016-01-10 18:52 - 2016-01-10 18:52 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2016-01-10 18:51 - 2016-01-10 18:51 - 00001150 _____ C:\Users\Alan\Desktop\TweakBit PCCleaner.lnk
2016-01-10 18:51 - 2016-01-10 18:51 - 00001122 _____ C:\Users\Alan\Desktop\TweakBit FixMyPC.lnk
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\TweakBit
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\ProgramData\Lavasoft
2016-01-10 18:51 - 2016-01-10 18:51 - 00000000 ____D C:\Program Files (x86)\TweakBit
2016-01-10 18:50 - 2016-01-10 18:50 - 00409856 _____ (TweakBit) C:\Users\Alan\Downloads\fix_cabinet.dll-setup.exe
2016-01-10 17:37 - 2016-01-10 17:37 - 04880712 _____ C:\Users\Alan\Downloads\rrsetup.exe
2016-01-10 17:37 - 2016-01-10 17:37 - 00001255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Repair.lnk
2016-01-10 17:37 - 2016-01-10 17:37 - 00001243 _____ C:\Users\Public\Desktop\Registry Repair.lnk
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\Users\Alan\AppData\Roaming\GlarySoft
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glarysoft
2016-01-10 17:37 - 2016-01-10 17:37 - 00000000 ____D C:\Program Files (x86)\Glarysoft
2016-01-10 17:35 - 2016-01-10 17:35 - 01428592 _____ (Tuneup System Software Pvt Ltd. ) C:\Users\Alan\Downloads\RegUtilities_Setup.exe
2016-01-10 17:35 - 2016-01-10 17:35 - 00002472 _____ C:\Windows\System32\Tasks\REGUtilities Task
2016-01-10 17:35 - 2016-01-10 17:35 - 00001055 _____ C:\Users\Public\Desktop\REGUtilities.lnk
2016-01-10 17:35 - 2016-01-10 17:35 - 00000396 _____ C:\Windows\Tasks\REGUtilities Task.job
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\ProgramData\REGUtilities
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REGUtilities
2016-01-10 17:35 - 2016-01-10 17:35 - 00000000 ____D C:\Program Files (x86)\REGUtilities
2016-01-10 16:36 - 2016-01-10 19:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper
2016-01-10 16:36 - 2016-01-10 16:36 - 00001061 _____ C:\Users\Public\Desktop\AOMEI Backupper Standard.lnk
2016-01-10 16:36 - 2016-01-10 16:36 - 00001024 ____H C:\SYSTAG.BIN
2016-01-10 16:36 - 2016-01-10 16:36 - 00000082 _____ C:\Windows\SysWOW64\winsevr.dat
2016-01-10 16:36 - 2016-01-10 16:36 - 00000000 ____D C:\ProgramData\AomeiBR
2016-01-10 16:36 - 2016-01-10 16:36 - 00000000 ____D C:\Program Files (x86)\AOMEI Backupper
2016-01-10 16:36 - 2015-02-26 00:00 - 00151480 _____ C:\Windows\system32\ammntdrv.sys
2016-01-10 16:36 - 2015-02-26 00:00 - 00030648 _____ C:\Windows\system32\ambakdrv.sys
2016-01-10 16:36 - 2015-02-26 00:00 - 00017848 _____ C:\Windows\system32\amwrtdrv.sys
2016-01-10 16:34 - 2016-01-10 16:35 - 81807912 _____ (AOMEI Technology Co., Ltd. ) C:\Users\Alan\Downloads\BackupperFull.exe
2016-01-10 15:52 - 2016-01-10 15:52 - 00000000 ____D C:\Intel
2016-01-10 15:00 - 2016-01-10 15:00 - 00001107 _____ C:\Users\Public\Desktop\DriveImage XML.lnk
2016-01-10 15:00 - 2016-01-10 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drive Image
2016-01-10 15:00 - 2016-01-10 15:00 - 00000000 ____D C:\Program Files (x86)\Runtime Software
2016-01-10 14:59 - 2016-01-10 14:59 - 02026456 _____ C:\Users\Alan\Downloads\dixmlsetup.exe
2016-01-10 14:57 - 2016-01-10 14:57 - 03545552 _____ (Paramount Software UK Ltd) C:\Users\Alan\Downloads\ReflectDL.exe
2016-01-10 14:48 - 2016-01-10 14:49 - 07784960 _____ (Thomas Tsai) C:\Users\Alan\Downloads\tuxboot-0.8.3.exe
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Wii Hacks
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\WebFiles
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio Projects
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Vacation Trips
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Updater
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Unemployment Claims
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Unemployment
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\TT Installer Logs
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\travel
2016-01-10 11:00 - 2016-01-10 11:00 - 00000000 ____D C:\Users\Alan\Documents\Tim Allen
2016-01-10 11:00 - 2012-01-13 12:16 - 00138289 _____ C:\Users\Alan\Documents\Directions to the Investor Center.mht
2016-01-10 11:00 - 2010-08-02 06:21 - 00113741 _____ C:\Users\Alan\Documents\spanish accent marks.xlsx
2016-01-10 11:00 - 2010-02-28 10:29 - 00000194 _____ C:\Users\Alan\Documents\OpenFile Filter Property Value.txt
2016-01-10 11:00 - 2009-11-03 12:11 - 00009171 _____ C:\Users\Alan\Documents\virusreportnov3.txt
2016-01-10 11:00 - 2009-08-07 09:10 - 00011774 _____ C:\Users\Alan\Documents\SANDRA.xlsx
2016-01-10 11:00 - 2009-02-15 17:37 - 00000256 _____ C:\Users\Alan\Documents\pool.bin
2016-01-10 11:00 - 2008-12-04 14:36 - 04031858 _____ C:\Users\Alan\Documents\350Z.ai
2016-01-10 11:00 - 2008-11-21 18:17 - 00000135 _____ C:\Users\Alan\Documents\OpenSports Remote Connection.txt
2016-01-10 11:00 - 2008-08-18 20:17 - 01496576 _____ C:\Users\Alan\Documents\MedSchedule-8-19 to 8-26.xls
2016-01-10 11:00 - 2008-07-19 21:27 - 01515520 _____ C:\Users\Alan\Documents\MedSchedule-June-July.xls
2016-01-10 11:00 - 2008-06-28 19:04 - 00213062 _____ C:\Users\Alan\Documents\Calendar2008.pdf
2016-01-10 11:00 - 2008-06-14 21:20 - 01524736 _____ C:\Users\Alan\Documents\MedSchedule.xls
2016-01-10 11:00 - 2008-03-23 13:14 - 00032788 _____ C:\Users\Alan\Documents\netgear.cfg
2016-01-10 11:00 - 2008-01-10 21:31 - 00051810 _____ C:\Users\Alan\Documents\diagnoss.pdf
2016-01-10 11:00 - 2008-01-10 21:16 - 00086251 _____ C:\Users\Alan\Documents\Bile Duct Cancer.pdf
2016-01-10 11:00 - 2007-12-15 18:07 - 00014336 _____ C:\Users\Alan\Documents\TV Providers Comparason.xls
2016-01-10 11:00 - 2007-12-01 20:22 - 00013785 _____ C:\Users\Alan\Documents\WeeklySchedulesByPersonnel.pdf
2016-01-10 11:00 - 2007-12-01 15:08 - 00026463 _____ C:\Users\Alan\Documents\Report=Weekly.pdf
2016-01-10 11:00 - 2007-11-30 17:37 - 00005996 _____ C:\Users\Alan\Documents\about_blank.pdf
2016-01-10 11:00 - 2007-10-01 00:26 - 00036864 _____ C:\Users\Alan\Documents\Presentation1.pps
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\THE_SECRET_NTSC
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\TestFlash
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Taxes Info
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Step Work with Rob
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\SQL Server Management Studio Express
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\South Beach Diet
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Small Claims, Mida
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Siluete web banner images
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\Search Engine Help
2016-01-10 10:59 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\School Work
2016-01-10 10:59 - 2012-03-21 19:01 - 00000000 ____D C:\Users\Alan\Documents\SightSpeed Recordings
2016-01-10 10:56 - 2016-01-10 10:59 - 00000000 ____D C:\Users\Alan\Documents\ScheduALL.NET
2016-01-10 10:56 - 2016-01-10 10:56 - 00000000 ____D C:\Users\Alan\Documents\ScanSoft Documents
2016-01-10 10:56 - 2016-01-10 10:56 - 00000000 ____D C:\Users\Alan\Documents\Savannah
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\ROBIN_WILLIAMS_LIVE_ON_BROADWAY
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Resume
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Research of the heart
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Recipes
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\RE Centification
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken Backup
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken 2005 Donwload Files
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Quicken
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Progressive
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Pop's Morgage
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Pop's Medical Numbers
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\PICTURES & MOVIES
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Physics
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Perscription_files
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\PcSetup
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Papi
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Optimizer Pro
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\OpiatesAndBaby
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Old My Documents
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Office Stuff
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Nursary Ideas
2016-01-10 10:54 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\NEW HOME
2016-01-10 10:53 - 2016-01-10 10:54 - 00000000 ____D C:\Users\Alan\Documents\Naranjo Art Studio
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Webs
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Received Files
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Favorites BOOKS & AudioBooks
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My Downloads
2016-01-10 10:53 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\My albums
2016-01-10 10:53 - 2012-01-12 09:51 - 00000000 ____D C:\Users\Alan\Documents\My Meetings
2016-01-10 10:52 - 2016-01-10 10:53 - 00000000 ____D C:\Users\Alan\Documents\Movies
2016-01-10 10:52 - 2016-01-10 10:52 - 00000000 ____D C:\Users\Alan\Documents\Movie Conversion - mpg to iPod
2016-01-10 10:51 - 2016-01-10 10:52 - 00000000 ____D C:\Users\Alan\Documents\MLS Data
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\MGI
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Medical Claim
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Man of the Year
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Kitchen Design
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Kitchen
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Killer-motes
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\KESI
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ISC Emplyment Papers
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\iPod Stuff
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ipod
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Interactive Wold Brouchure
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Integration Services Script Task
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Integration Services Script Component
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\iEnthusiast
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Health Insurance Claims
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Haint Blue Realty
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\GTA Vice City User Files
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\GM Financial
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Flight Simulator X Files
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\FlashTest
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Flash_test
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Fidelity
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Family stuff
2016-01-10 10:51 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\Expression
2016-01-10 10:49 - 2016-01-10 10:51 - 00000000 ____D C:\Users\Alan\Documents\ExamStrategy
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Eventos SA
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\digital locker Downloads
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Corel User Files
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\CookieSample
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Computer Knowledge
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Closet Design
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\classes
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Chloe
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Work info
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\celias work
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\celia's temp
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's School work
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Familly
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Documents
2016-01-10 10:49 - 2016-01-10 10:49 - 00000000 ____D C:\Users\Alan\Documents\Celia's Business
2016-01-10 10:48 - 2016-01-10 10:48 - 00000000 ____D C:\Users\Alan\Documents\Celia's Audio Tapes
2016-01-10 10:48 - 2016-01-10 10:48 - 00000000 ____D C:\Users\Alan\Documents\Celia's
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\CD Images
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Recipes & Shoppping List
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Health
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bridges' Finance
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\BareShare
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Bankruptcy
2016-01-10 10:44 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\baby room deco
2016-01-10 10:43 - 2016-01-10 11:08 - 00000000 ___RD C:\Users\Alan\Documents\My Documents
2016-01-10 10:43 - 2016-01-10 10:44 - 00000000 ____D C:\Users\Alan\Documents\Auto Evolucion
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Austing Powers audio
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\AudioEvolucion.com
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Audible
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Appartment Application
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alcohol 52%
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alan's NA Work
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\Alan Job related work
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\AJ Stuff
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\A.J.'s Pre-paid Florida College Fund
2016-01-10 10:43 - 2016-01-10 10:43 - 00000000 ____D C:\Users\Alan\Documents\200 Leslie direction
2016-01-10 10:43 - 2014-08-19 08:35 - 00002615 _____ C:\Users\Alan\Documents\GovermentSupport.pdf
2016-01-10 10:43 - 2012-07-01 01:38 - 00000712 _____ C:\Users\Alan\Documents\temp.txt
2016-01-10 10:43 - 2012-06-13 12:37 - 00004892 _____ C:\Users\Alan\Documents\chloe singing.wlmp
2016-01-10 10:43 - 2012-06-13 00:50 - 00005727 _____ C:\Users\Alan\Documents\rappp.wlmp
2016-01-10 10:43 - 2012-06-12 22:59 - 00002275 _____ C:\Users\Alan\Documents\u2.wlmp
2016-01-10 10:43 - 2012-06-12 12:54 - 00002265 _____ C:\Users\Alan\Documents\landslide.wlmp
2016-01-10 10:43 - 2012-06-12 04:17 - 00002285 _____ C:\Users\Alan\Documents\more to life.wlmp
2016-01-10 10:43 - 2012-06-12 03:52 - 00002254 _____ C:\Users\Alan\Documents\My Movie.wlmp
2016-01-10 10:43 - 2012-01-25 13:39 - 00082773 _____ C:\Users\Alan\Documents\Application for Employment gMed.pdf
2016-01-10 10:43 - 2012-01-19 09:04 - 00038497 _____ C:\Users\Alan\Documents\Old Parking Space Contract.pdf
2016-01-10 10:43 - 2012-01-19 08:45 - 00271233 _____ C:\Users\Alan\Documents\BoardingPass.xps
2016-01-10 10:43 - 2008-07-18 07:05 - 00055015 _____ C:\Users\Alan\Documents\Microsoft_Word_-_April_BF_Summary_of_Benefits_20080401.pdf
2016-01-10 10:43 - 2008-07-18 07:04 - 00222620 _____ C:\Users\Alan\Documents\2006_(2)_Application_for_Employment_062806.pdf
2016-01-10 10:43 - 2007-08-05 04:22 - 00000026 _____ C:\Users\Alan\Documents\WepKey.txt
2016-01-10 10:43 - 2007-07-22 22:15 - 00264537 _____ C:\Users\Alan\Documents\ViewPolicy.aspx
2016-01-10 10:43 - 2007-06-21 18:29 - 00209436 _____ C:\Users\Alan\Documents\NeroBurnRights_Eng.pdf
2016-01-10 10:43 - 2007-06-21 18:28 - 00062868 _____ C:\Users\Alan\Documents\NeroBurnRights_Eng.chm
2016-01-10 10:43 - 2007-06-16 09:34 - 00478012 _____ C:\Users\Alan\Documents\UtahMovies.dmsd
2016-01-10 10:43 - 2007-06-09 13:53 - 08417884 _____ C:\Users\Alan\Documents\Utah.dmss
2016-01-10 10:43 - 2007-06-09 13:53 - 01351680 _____ C:\Users\Alan\Documents\Utah.dat
2016-01-10 10:43 - 2007-04-22 11:03 - 00003148 _____ C:\Users\Alan\Documents\WebScheduler.sln
2016-01-10 10:43 - 2007-01-06 10:22 - 04299217 _____ C:\Users\Alan\Documents\Scarface - Condensed Version.wmv
2016-01-10 10:43 - 2007-01-06 10:22 - 01842108 _____ C:\Users\Alan\Documents\Christmas with Larry the Cable Guy.wmv
2016-01-10 10:43 - 2006-06-12 19:39 - 01007616 _____ C:\Users\Alan\Documents\ATLANTICDATA2.MDB
2016-01-10 10:43 - 2006-06-12 19:39 - 00013824 _____ C:\Users\Alan\Documents\Not In Query 2.xls
2016-01-10 10:43 - 2006-06-12 19:39 - 00002364 _____ C:\Users\Alan\Documents\Not In Query 2.zip
2016-01-10 10:43 - 2006-06-12 19:08 - 00003906 _____ C:\Users\Alan\Documents\Not In Query.zip
2016-01-10 10:43 - 2006-06-12 19:07 - 00018432 _____ C:\Users\Alan\Documents\Not In Query.xls
2016-01-10 10:43 - 2006-06-12 17:59 - 00239919 _____ C:\Users\Alan\Documents\ATLANTICDATA.zip
2016-01-10 10:43 - 2006-06-12 17:37 - 00872448 _____ C:\Users\Alan\Documents\ATLANTICDATA.MDB
2016-01-10 10:43 - 2006-01-22 11:49 - 00001397 _____ C:\Users\Alan\Documents\RecordCounts.rpt
2016-01-10 10:43 - 2005-11-18 15:30 - 00017408 _____ C:\Users\Alan\Documents\Kitchen Budget.xls
2016-01-10 10:43 - 2005-10-17 13:37 - 02062422 _____ C:\Users\Alan\Documents\Main Page.bmp
2016-01-10 10:43 - 2005-10-04 22:55 - 00630430 _____ C:\Users\Alan\Documents\voicmail.wav
2016-01-10 10:43 - 2005-09-13 11:38 - 02106773 _____ C:\Users\Alan\Documents\Attached File(s).zip
2016-01-10 10:43 - 2005-08-26 11:33 - 00000117 _____ C:\Users\Alan\Documents\Comcast paycenter.txt
2016-01-10 10:43 - 2005-08-21 18:03 - 00048640 _____ C:\Users\Alan\Documents\PROPCOMMON.xls
2016-01-10 10:43 - 2005-08-21 17:52 - 00013390 _____ C:\Users\Alan\Documents\PROPCOMMON.txt
2016-01-10 10:43 - 2005-08-20 11:29 - 00068464 _____ C:\Users\Alan\Documents\MLS.sql
2016-01-10 10:43 - 2005-08-11 22:54 - 00011944 _____ C:\Users\Alan\Documents\Kitchen.sdr
2016-01-10 10:43 - 2005-06-18 07:15 - 00960042 _____ C:\Users\Alan\Documents\Quarterly Graphics.pub
2016-01-10 10:43 - 2005-03-23 00:15 - 00647484 _____ C:\Users\Alan\Documents\Graphic3.cdr
2016-01-10 10:43 - 2005-03-22 23:25 - 00646140 _____ C:\Users\Alan\Documents\Backup_of_Graphic3.cdr
2016-01-10 10:43 - 2005-03-11 19:10 - 00099328 _____ C:\Users\Alan\Documents\2005 calendar 3 months.xls
2016-01-10 10:43 - 2005-03-11 19:09 - 00099328 _____ C:\Users\Alan\Documents\2005 calendar with room for notes1.xls
2016-01-10 10:43 - 2005-01-15 09:22 - 01635553 _____ C:\Users\Alan\Documents\BT 2005-01-06.zip
2016-01-10 10:43 - 2004-08-17 20:46 - 00000590 _____ C:\Users\Alan\Documents\Perscription.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00038078 _____ C:\Users\Alan\Documents\Test2.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00036006 _____ C:\Users\Alan\Documents\Test3.htm
2016-01-10 10:43 - 2004-06-20 10:15 - 00025951 _____ C:\Users\Alan\Documents\Test.htm
2016-01-10 10:43 - 2004-05-15 21:38 - 00009224 _____ C:\Users\Alan\Documents\LibraryQuery.htm
2016-01-10 10:43 - 2004-03-28 22:40 - 00021690 _____ C:\Users\Alan\Documents\CMS1500ClaimForm010402.pdf
2016-01-10 10:43 - 2003-05-15 10:45 - 00000434 _____ C:\Users\Alan\Documents\SchedLogins SyncRestore.sql
2016-01-10 10:43 - 2001-11-03 18:45 - 01337535 _____ C:\Users\Alan\Documents\ImageXPress.pdf
2016-01-10 10:36 - 2016-01-10 11:09 - 00000000 ____D C:\Users\Alan\Documents\AJ
2016-01-10 10:34 - 2016-01-10 10:34 - 00001464 _____ C:\Users\Public\Desktop\Acronis Backup 11.5.lnk
2016-01-10 10:29 - 2016-01-10 10:29 - 01119672 _____ (Acronis) C:\Windows\system32\Drivers\tib.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00314656 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00183224 _____ (Acronis) C:\Windows\system32\Drivers\tib_mounter.sys
2016-01-10 10:29 - 2016-01-10 10:29 - 00137504 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys
2016-01-10 10:28 - 2016-01-11 08:52 - 00000000 ____D C:\Users\Acronis Agent User
2016-01-10 10:28 - 2016-01-10 10:29 - 00000000 ____D C:\ProgramData\firebird
2016-01-10 10:28 - 2016-01-10 10:28 - 00000020 ___SH C:\Users\Acronis Agent User\ntuser.ini
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\My Documents
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Videos
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Pictures
2016-01-10 10:28 - 2016-01-10 10:28 - 00000000 _SHDL C:\Users\Acronis Agent User\Documents\My Music
2016-01-10 10:28 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Acronis Agent User\Documents\Visual Studio 2010
2016-01-10 10:28 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Acronis Agent User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-01-10 10:28 - 2010-11-21 02:16 - 00000000 ____D C:\Users\Acronis Agent User\AppData\Roaming\Media Center Programs
2016-01-10 10:27 - 2016-01-11 09:29 - 00000000 ____D C:\ProgramData\Acronis
2016-01-10 10:27 - 2016-01-11 09:29 - 00000000 ____D C:\Program Files (x86)\Acronis
2016-01-10 10:27 - 2016-01-10 10:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2016-01-10 10:22 - 2016-01-10 10:24 - 1075967648 _____ (Acronis) C:\Users\Alan\Downloads\AcronisBackup_11.5N_trial_en-US.exe
2016-01-10 10:17 - 2016-01-10 10:17 - 00000000 ____D C:\ProgramData\Macrium
2016-01-10 10:11 - 2016-01-10 10:11 - 00000000 __SHD C:\found.002
2016-01-09 22:03 - 2016-01-09 22:03 - 00059904 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\CABINET.DLL
2016-01-09 21:36 - 2016-01-11 09:38 - 00000492 _____ C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job
2016-01-09 21:36 - 2016-01-10 18:18 - 00000466 _____ C:\Windows\Tasks\ParetoLogic Registration3.job
2016-01-09 21:36 - 2016-01-10 00:05 - 00000440 _____ C:\Windows\Tasks\ParetoLogic Update Version3.job
2016-01-09 21:36 - 2016-01-09 21:39 - 00000000 ____D C:\ProgramData\ParetoLogic
2016-01-09 21:36 - 2016-01-09 21:36 - 00003252 _____ C:\Windows\System32\Tasks\ParetoLogic Update Version3
2016-01-09 21:36 - 2016-01-09 21:36 - 00003128 _____ C:\Windows\System32\Tasks\ParetoLogic Registration3
2016-01-09 21:36 - 2016-01-09 21:36 - 00002916 _____ C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task
2016-01-09 21:36 - 2016-01-09 21:36 - 00000000 ____D C:\Users\Alan\AppData\Roaming\ParetoLogic
2016-01-09 21:36 - 2016-01-09 21:36 - 00000000 ____D C:\Users\Alan\AppData\Roaming\DriverCure
2016-01-09 21:35 - 2016-01-09 21:35 - 05964208 _____ (ParetoLogic Inc.) C:\Users\Alan\Downloads\ParetoLogic PC Health Advisor.exe
2016-01-09 21:09 - 2016-01-10 19:59 - 00000000 ____D C:\Windows\Minidump
2016-01-09 17:44 - 2016-01-09 17:45 - 361334801 _____ C:\Users\Alan\Downloads\media.io.428735217.zip
2016-01-09 17:16 - 2016-01-09 17:17 - 00000000 ____D C:\Users\Alan\Downloads\m4a
2016-01-09 17:11 - 2016-01-09 17:11 - 01267984 _____ (Ellora Assets Corporation ) C:\Users\Alan\Downloads\FreemakeAudioConverterSetup.exe
2016-01-09 17:08 - 2016-01-09 17:08 - 03307008 _____ C:\Users\Alan\Downloads\AAC-to-MP3-Converter_1901.msi
2016-01-09 16:10 - 2016-01-09 16:11 - 00001250 _____ C:\Users\Public\Desktop\Virtual CloneDrive.lnk
2016-01-09 16:01 - 2016-01-09 16:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2016-01-09 16:01 - 2016-01-09 16:01 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2016-01-09 16:00 - 2016-01-09 16:00 - 01643512 _____ C:\Users\Alan\Downloads\SetupVirtualCloneDrive5490.exe
2016-01-09 15:55 - 2016-01-09 15:55 - 00003158 _____ C:\Windows\System32\Tasks\{2CDBD9D4-E65C-403C-9F84-D8C37C3C89C8}
2016-01-09 15:38 - 2016-01-09 15:57 - 00000000 ____D C:\Program Files (x86)\MagicDisc
2016-01-09 15:38 - 2009-02-24 18:35 - 00255552 _____ (MagicISO, Inc.) C:\Windows\system32\Drivers\mcdbus.sys
2016-01-09 15:14 - 2016-01-09 15:14 - 07392176 _____ (Alcohol Soft Development Team) C:\Users\Alan\Downloads\Alcohol52_FE_2.0.3.8426_a1410fee73d496811c21ffd0302db70d.exe
2016-01-09 15:14 - 2016-01-09 15:14 - 00000000 ____D C:\Users\Alan\AppData\Local\{D07EE622-F4D6-8A9A-994E-AF72BD2653EA}
2016-01-09 14:21 - 2016-01-09 14:43 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Apple Computer
2016-01-09 14:21 - 2016-01-09 14:21 - 00000000 ____D C:\Users\Alan\AppData\Local\Apple Computer
2016-01-09 13:30 - 2016-01-09 21:43 - 00000000 ____D C:\Program Files\iTunes
2016-01-09 13:30 - 2016-01-09 13:30 - 00000000 ____D C:\ProgramData\Apple Computer
2016-01-09 13:29 - 2016-01-09 21:42 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-01-09 13:29 - 2016-01-09 13:29 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Users\Alan\AppData\Local\Apple
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files\Bonjour
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-01-09 13:29 - 2016-01-09 13:29 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-01-09 13:28 - 2016-01-09 13:29 - 00000000 ____D C:\ProgramData\Apple
2016-01-09 13:27 - 2016-01-09 13:28 - 167583000 _____ (Apple Inc.) C:\Users\Alan\Downloads\iTunes6464Setup (1).exe
2016-01-09 13:27 - 2016-01-09 13:27 - 167583000 _____ (Apple Inc.) C:\Users\Alan\Downloads\iTunes6464Setup.exe
2016-01-09 12:27 - 2016-01-09 12:27 - 00017288 ____N C:\bootsqm.dat
2016-01-09 12:26 - 2016-01-09 12:26 - 00000000 __SHD C:\found.001
2016-01-08 09:54 - 2016-01-09 12:18 - 00000000 ____D C:\ProgramData\AVG Security Toolbar
2016-01-08 09:41 - 2016-01-08 09:41 - 02970984 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Alan\Downloads\AVG_Protection_Free_698.exe
2016-01-05 16:59 - 2016-01-05 16:59 - 00000000 ____D C:\Users\Alan\Documents\Projects - Copy
2015-12-29 14:14 - 2015-12-29 14:18 - 00000000 ____D C:\Users\Alan\Documents\Projects
2015-12-28 12:38 - 2015-12-28 12:38 - 00000000 ____D C:\Users\Alan\AppData\Local\TeamViewer
2015-12-22 17:56 - 2015-12-22 17:56 - 00000000 _____ C:\Users\Alan\Downloads\blank.csv
2015-12-19 18:04 - 2015-12-19 18:05 - 00000000 ____D C:\Users\Alan\AppData\Roaming\IcoFX2X
2015-12-19 18:04 - 2015-12-19 18:04 - 00001088 _____ C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IcoFX 2.lnk
2015-12-19 18:04 - 2015-12-19 18:04 - 00000000 ____D C:\ProgramData\IcoFX2X
2015-12-19 18:04 - 2015-12-19 18:04 - 00000000 ____D C:\Program Files (x86)\IcoFX 2
2015-12-19 18:03 - 2015-12-19 18:04 - 09283616 _____ ( ) C:\Users\Alan\Downloads\icofxsetup.exe
2015-12-18 15:14 - 2015-12-18 15:14 - 00001192 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
2015-12-18 15:14 - 2015-12-18 15:14 - 00001180 _____ C:\Users\Public\Desktop\paint.net.lnk
2015-12-18 15:13 - 2016-01-09 15:40 - 00000000 ____D C:\Users\Alan\AppData\Local\paint.net
2015-12-18 15:13 - 2015-12-18 15:14 - 00000000 ____D C:\Program Files\paint.net
2015-12-18 15:12 - 2015-12-18 15:12 - 06557455 _____ C:\Users\Alan\Downloads\paint.net.4.0.6.install.zip
2015-12-18 11:01 - 2015-12-18 11:01 - 00000000 ____D C:\Users\Alan\.nuget
2015-12-18 08:18 - 2015-12-18 08:18 - 00000000 ____D C:\ProgramData\Avg_Update_1215avz
2015-12-17 21:37 - 2015-12-18 11:32 - 00000000 ____D C:\Windows\Panther
2015-12-17 17:14 - 2015-12-17 17:14 - 00000000 ____D C:\Users\Alan\jQuery UI
2015-12-17 09:09 - 2015-12-17 09:09 - 00000000 ____D C:\Users\Alan\AppData\Local\TempOfficeC2R872786B1-952C-4B13-973A-E0A6EAB39028
2015-12-17 09:06 - 2015-07-16 14:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-12-17 09:06 - 2015-07-16 14:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-12-17 09:06 - 2015-07-16 14:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-12-17 09:06 - 2015-07-16 14:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-12-17 09:06 - 2015-07-11 08:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-12-16 22:27 - 2015-12-16 22:27 - 00000000 ____D C:\Program Files\DNX
2015-12-16 09:06 - 2015-06-09 13:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-12-16 09:06 - 2015-06-09 13:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-12-16 09:06 - 2015-06-03 15:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-12-16 09:05 - 2014-12-11 12:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-12-16 08:55 - 2015-12-16 08:55 - 00000000 ____D C:\Users\Alan\Tracing
2015-12-16 08:54 - 2015-12-16 08:54 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-16 08:54 - 2015-12-16 08:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-15 22:27 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2010
2015-12-15 22:27 - 2015-12-15 22:27 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2010
2015-12-15 22:24 - 2014-02-21 05:20 - 00248512 _____ (Microsoft Corporation) C:\Windows\system32\SQSRVRES.DLL
2015-12-15 11:42 - 2016-01-11 09:39 - 00000000 ___RD C:\Users\Alan\Google Drive
2015-12-15 11:42 - 2015-12-15 11:42 - 00001693 _____ C:\Users\Alan\Desktop\Google Drive.lnk
2015-12-15 11:28 - 2015-12-18 21:30 - 00000000 ____D C:\Users\Alan\Downloads\LITE Project Documents
2015-12-15 11:26 - 2015-12-15 11:26 - 00002046 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00002044 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00002034 _____ C:\Users\Public\Desktop\Google Docs.lnk
2015-12-15 11:26 - 2015-12-15 11:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-12-15 11:24 - 2015-12-15 11:24 - 00927824 _____ (Google Inc.) C:\Users\Alan\Downloads\googledrivesync.exe
2015-12-15 11:24 - 2015-12-15 11:24 - 00027551 _____ C:\Users\Alan\Downloads\DOC121415.pdf
2015-12-15 10:24 - 2015-12-15 10:26 - 45215744 _____ C:\Users\Alan\Downloads\SqlLocalDB.msi
2015-12-14 22:45 - 2015-12-14 22:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_dc3d_01011.Wdf
2015-12-14 22:45 - 2013-10-01 21:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2015-12-14 22:45 - 2013-10-01 21:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2015-12-14 22:45 - 2013-10-01 21:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-12-14 22:45 - 2013-10-01 20:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2015-12-14 22:45 - 2013-10-01 20:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2015-12-14 22:45 - 2013-10-01 20:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-12-14 22:45 - 2013-10-01 19:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2015-12-14 22:45 - 2013-10-01 19:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2015-12-14 22:45 - 2013-10-01 18:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-12-14 22:45 - 2013-10-01 17:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-12-14 22:44 - 2015-12-14 22:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-12-14 22:44 - 2012-08-23 09:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-12-14 22:44 - 2012-08-23 09:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2015-12-14 22:44 - 2012-08-23 06:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2015-12-14 22:44 - 2012-08-23 05:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2015-12-14 22:43 - 2015-02-03 19:00 - 00608072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-12-14 22:43 - 2015-02-03 11:18 - 04229086 _____ C:\Windows\system32\nvcoproc.bin
2015-12-14 22:13 - 2015-10-08 18:22 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL
2015-12-14 22:13 - 2015-10-08 18:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll
2015-12-14 22:13 - 2015-10-08 18:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL
2015-12-14 22:13 - 2015-10-08 18:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2015-12-14 22:13 - 2015-10-08 14:13 - 00419928 _____ C:\Windows\SysWOW64\locale.nls
2015-12-14 22:13 - 2015-10-08 13:52 - 00419928 _____ C:\Windows\system32\locale.nls
2015-12-14 22:13 - 2015-08-05 12:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-12-14 22:13 - 2015-08-05 12:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-12-14 21:20 - 2016-01-10 11:12 - 00000000 ____D C:\Users\Alan\Documents\SQL Server Management Studio
2015-12-14 21:20 - 2015-12-14 21:20 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-12-14 21:19 - 2015-12-14 21:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-12-14 21:18 - 2016-01-10 11:12 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio 2010
2015-12-14 21:17 - 2015-12-14 21:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2015-12-14 21:16 - 2015-12-14 21:16 - 00000000 ____D C:\Windows\symbols
2015-12-14 21:16 - 2015-12-14 21:16 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2015-12-14 21:13 - 2015-12-14 21:13 - 00000000 ____D C:\Users\Alan\Downloads\SQLManagementStudio_x64_ENU
2015-12-14 20:00 - 2015-12-14 21:03 - 717092824 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\SQLManagementStudio_x64_ENU.exe
2015-12-14 19:58 - 2015-12-14 19:58 - 00000000 ____D C:\Users\Alan\AppData\Local\Microsoft_Corporation
2015-12-14 19:42 - 2016-01-11 08:51 - 00000000 ____D C:\Users\MSSQL$SQLEXPRESS
2015-12-14 19:42 - 2015-12-14 19:42 - 00000020 ___SH C:\Users\MSSQL$SQLEXPRESS\ntuser.ini
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\My Documents
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Videos
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Pictures
2015-12-14 19:42 - 2015-12-14 19:42 - 00000000 _SHDL C:\Users\MSSQL$SQLEXPRESS\Documents\My Music
2015-12-14 19:42 - 2015-12-14 17:14 - 00002100 _____ C:\Users\MSSQL$SQLEXPRESS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 19:42 - 2014-02-21 05:20 - 00056000 _____ (Microsoft Corporation) C:\Windows\system32\perf-MSSQL12.SQLEXPRESS-sqlagtctr.dll
2015-12-14 19:42 - 2014-02-21 05:20 - 00046784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL12.SQLEXPRESS-sqlagtctr.dll
2015-12-14 19:42 - 2010-11-21 02:16 - 00000000 ____D C:\Users\MSSQL$SQLEXPRESS\AppData\Roaming\Media Center Programs
2015-12-14 19:41 - 2014-02-21 05:27 - 00172224 _____ (Microsoft Corporation) C:\Windows\system32\hadrres.dll
2015-12-14 19:41 - 2014-02-21 05:27 - 00081088 _____ (Microsoft Corporation) C:\Windows\system32\fssres.dll
2015-12-14 19:41 - 2014-02-21 05:20 - 00103104 _____ (Microsoft Corporation) C:\Windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr12.0.2000.8.dll
2015-12-14 19:41 - 2014-02-21 05:20 - 00088768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL$SQLEXPRESS-sqlctr12.0.2000.8.dll
2015-12-14 19:40 - 2015-12-14 19:40 - 00000000 ____D C:\Windows\system32\RsFx
2015-12-14 19:40 - 2015-12-14 19:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 10.0
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
2015-12-14 19:38 - 2015-12-14 21:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014
2015-12-14 19:29 - 2015-12-14 19:29 - 00000000 ____D C:\Users\Alan\Downloads\SQLEXPR_x64_ENU
2015-12-14 19:26 - 2015-12-14 19:26 - 00000000 ____D C:\Users\Alan\AppData\LocalLow\Temp
2015-12-14 19:25 - 2015-12-14 19:25 - 00000000 ____D C:\Users\Alan\AppData\Roaming\NuGet
2015-12-14 19:21 - 2015-12-14 19:21 - 00000000 ____D C:\Users\Alan\Documents\IISExpress
2015-12-14 19:20 - 2015-12-14 19:20 - 00000000 ____D C:\Users\Alan\.dnx
2015-12-14 17:15 - 2016-01-11 08:51 - 00000000 ____D C:\Users\Alan\AppData\Local\TSVNCache
2015-12-14 17:15 - 2016-01-07 10:27 - 00000000 ____D C:\Users\Alan\Documents\Visual Studio 2015
2015-12-14 17:14 - 2016-01-10 16:56 - 00000000 ____D C:\Users\Alan\AppData\Local\CrashDumps
2015-12-14 17:14 - 2015-12-14 17:14 - 00002152 _____ C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00002100 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ___RD C:\Users\Alan\OneDrive
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-14 17:14 - 2015-12-14 17:14 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2015-12-14 17:06 - 2015-12-14 17:06 - 00000000 ____D C:\Program Files (x86)\AppInsights
2015-12-14 17:05 - 2015-12-14 17:05 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2015-12-14 15:46 - 2015-12-14 15:46 - 00002461 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002383 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002370 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00002362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2015-12-14 15:46 - 2015-12-14 15:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2015-12-14 15:38 - 2015-12-14 15:38 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0
2015-12-14 15:38 - 2015-12-14 15:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-12-14 15:09 - 2015-12-14 15:09 - 00000000 ____D C:\Program Files\IIS Express
2015-12-14 15:09 - 2015-12-14 15:09 - 00000000 ____D C:\Program Files (x86)\IIS Express
2015-12-14 15:02 - 2015-12-14 15:02 - 00000000 ____D C:\ProgramData\NuGet
2015-12-14 15:02 - 2015-12-14 15:02 - 00000000 ____D C:\Program Files (x86)\NuGet
2015-12-14 15:00 - 2015-12-14 15:00 - 00000000 ____D C:\Users\Alan\AppData\Local\VSIXInstaller
2015-12-14 15:00 - 2015-12-14 15:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2015-12-14 14:50 - 2015-12-14 14:50 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-12-14 14:47 - 2015-12-14 14:47 - 03187368 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\Setup.X86.en-US_O365SmallBusPremRetail_cc717f09-6ff2-4074-ba0a-e4b69c3eb655_TX_PR_.exe
2015-12-14 14:38 - 2015-12-14 15:34 - 206300720 _____ (Microsoft Corporation) C:\Users\Alan\Downloads\SQLEXPR_x64_ENU.exe
2015-12-14 14:06 - 2015-12-14 14:06 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-12-14 14:04 - 2015-12-14 14:04 - 00000000 ____D C:\Program Files (x86)\ShellDir
2015-12-14 14:02 - 2015-12-14 16:04 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-12-14 14:01 - 2015-12-14 14:01 - 00000000 ____D C:\ProgramData\Microsoft DNX
2015-12-14 14:01 - 2015-12-14 14:01 - 00000000 ____D C:\Program Files\Microsoft DNX
2015-12-14 13:55 - 2015-12-16 22:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2015-12-14 13:51 - 2015-12-14 13:51 - 00000000 ____D C:\Program Files\IIS
2015-12-14 13:51 - 2015-12-14 13:51 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services
2015-12-14 13:50 - 2015-12-14 13:50 - 00000000 ____D C:\Program Files (x86)\IIS
2015-12-14 13:48 - 2015-12-14 14:50 - 00001538 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2015-12-14 13:48 - 2015-12-14 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
2015-12-14 13:45 - 2015-12-14 14:06 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2015-12-14 13:45 - 2015-12-14 13:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2015-12-14 13:45 - 2015-12-14 13:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2015-12-14 13:44 - 2015-12-15 22:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-12-14 13:44 - 2015-12-15 22:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-12-14 13:44 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\SysWOW64\1033
2015-12-14 13:44 - 2015-12-14 14:25 - 00001539 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2015-12-14 13:40 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\system32\1033
2015-12-14 13:40 - 2015-12-14 17:12 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-12-14 13:40 - 2015-12-14 17:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-12-14 13:23 - 2015-12-16 22:25 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-14 13:23 - 2015-12-14 17:13 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-14 13:22 - 2015-12-14 13:22 - 00000000 ____D C:\ProgramData\VsTelemetry
2015-12-14 13:19 - 2015-12-14 13:19 - 07398232 _____ (Alcohol Soft Development Team) C:\Users\Alan\Downloads\Alcohol52_FE_2.0.3.8314_76c0d89a0fea0189da90b525e59e2472.exe
2015-12-14 13:19 - 2015-12-14 13:19 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Wow_com
2015-12-14 13:18 - 2015-12-14 13:18 - 01035368 _____ (Installer Program ) C:\Users\Alan\Downloads\downloader_for_Alcohol52_FE_2.exe
2015-12-14 13:11 - 2015-12-14 13:11 - 00000000 ____D C:\Users\Alan\AppData\Local\TortoiseSVN
2015-12-14 13:05 - 2016-01-07 17:15 - 00002280 ____H C:\Users\Alan\Documents\Default.rdp
2015-12-14 13:04 - 2015-12-29 14:22 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TortoiseSVN
2015-12-14 13:02 - 2015-12-14 13:02 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Subversion
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\Program Files\TortoiseSVN
2015-12-14 12:57 - 2015-12-14 12:57 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Public\Juniper Networks
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Juniper Networks
2015-12-14 12:55 - 2015-12-14 12:55 - 00000000 ____D C:\Users\Alan\AppData\Local\Juniper Networks
2015-12-14 12:55 - 2015-07-06 04:05 - 00108344 _____ (Pulse Secure, LLC) C:\Windows\system32\Drivers\jnprTdi_814_60057.sys
2015-12-14 12:54 - 2015-12-14 12:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pulse Secure
2015-12-14 12:53 - 2015-12-14 12:53 - 00000000 ____D C:\Program Files (x86)\Juniper Networks
2015-12-14 12:53 - 2015-07-06 00:55 - 00507192 _____ (Juniper Networks) C:\Windows\system32\Drivers\jnprns.sys
2015-12-14 12:52 - 2015-12-14 12:56 - 19165184 _____ C:\Users\Alan\Downloads\TortoiseSVN-1.9.2.26806-x64-svn-1.9.2.msi
2015-12-14 12:51 - 2015-12-14 12:52 - 16745472 _____ C:\Users\Alan\Downloads\ps-pulse-win-5.1r4.0-b60057-64bitinstaller.msi
2015-12-14 12:49 - 2016-01-10 19:01 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TeamViewer
2015-12-14 11:14 - 2016-01-11 00:54 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-12-14 11:14 - 2015-12-17 18:12 - 00000975 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-12-14 11:14 - 2015-12-17 18:12 - 00000963 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2015-12-14 11:13 - 2015-12-14 11:14 - 09612112 _____ (TeamViewer GmbH) C:\Users\Alan\Downloads\TeamViewer_Setup_en-lne.exe
2015-12-14 09:12 - 2015-12-14 09:12 - 00000000 ____D C:\Users\Alan\AppData\Local\GWX
2015-12-14 08:43 - 2015-12-14 08:43 - 00002760 _____ C:\Windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance
2015-12-14 08:30 - 2015-12-14 12:07 - 3965825024 _____ C:\Users\Alan\Downloads\vs2015.com_enu (1).iso
2015-12-14 08:28 - 2015-12-14 08:28 - 00000000 ____D C:\Users\Alan\AppData\Local\ORPALIS
2015-12-14 08:26 - 2015-12-14 08:26 - 00000000 ____D C:\Users\Alan\AppData\Local\Downloaded Installations
2015-12-14 08:25 - 2015-12-14 08:26 - 23794934 _____ C:\Users\Alan\Downloads\paperscanfree.zip
2015-12-14 08:22 - 2015-12-14 08:23 - 00000000 ____D C:\Users\Alan\AppData\Roaming\NAPS2
2015-12-14 08:21 - 2015-12-14 08:21 - 01182014 _____ (Ben Olden-Cooligan ) C:\Users\Alan\Downloads\naps2-4.2.3-setup.exe
2015-12-14 07:08 - 2015-12-14 07:08 - 00000000 __SHD C:\found.000
2015-12-13 20:47 - 2015-12-13 20:47 - 00153230 _____ C:\Users\Alan\Downloads\Alan Bridges's Welcome Letter.pdf
2015-12-13 19:26 - 2015-12-17 22:36 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-13 19:26 - 2015-12-17 22:36 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-13 16:48 - 2015-12-16 14:48 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-13 16:48 - 2015-12-13 16:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-13 16:42 - 2016-01-11 09:39 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-13 16:42 - 2016-01-10 21:47 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-13 16:42 - 2015-12-13 16:42 - 00003890 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-13 16:42 - 2015-12-13 16:42 - 00003638 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-13 16:21 - 2015-10-12 23:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-12-13 15:56 - 2015-07-15 13:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-12-13 15:56 - 2015-07-15 13:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-12-13 15:56 - 2015-07-15 13:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-12-13 15:55 - 2015-11-11 16:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-13 15:55 - 2015-11-11 15:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-13 15:55 - 2015-11-11 11:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-13 15:55 - 2015-11-11 11:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-13 15:55 - 2015-11-11 10:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-12-13 15:55 - 2015-11-11 10:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-12-13 15:55 - 2015-11-11 10:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-13 15:55 - 2015-11-11 10:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-12-13 15:55 - 2015-11-11 09:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-12-13 15:55 - 2015-11-09 19:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-13 15:55 - 2015-11-09 19:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-13 15:55 - 2015-11-09 19:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-12-13 15:55 - 2015-11-09 19:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-12-13 15:55 - 2015-11-09 19:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-12-13 15:55 - 2015-11-09 19:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-12-13 15:55 - 2015-11-09 19:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-13 15:55 - 2015-11-09 19:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-13 15:55 - 2015-11-09 19:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-12-13 15:55 - 2015-11-09 19:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-12-13 15:55 - 2015-11-09 19:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-12-13 15:55 - 2015-11-09 19:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-13 15:55 - 2015-11-09 19:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-12-13 15:55 - 2015-11-09 18:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-12-13 15:55 - 2015-11-09 18:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-12-13 15:55 - 2015-11-09 18:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-12-13 15:55 - 2015-11-09 18:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-12-13 15:55 - 2015-11-09 18:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-12-13 15:55 - 2015-11-09 18:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-13 15:55 - 2015-11-09 18:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-13 15:55 - 2015-11-09 18:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-12-13 15:55 - 2015-11-09 18:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-13 15:55 - 2015-11-09 18:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-13 15:55 - 2015-11-09 18:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-12-13 15:55 - 2015-11-08 17:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-13 15:55 - 2015-11-08 17:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-12-13 15:55 - 2015-11-08 17:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-13 15:55 - 2015-11-08 17:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-12-13 15:55 - 2015-11-08 17:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-12-13 15:55 - 2015-11-08 17:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-12-13 15:55 - 2015-11-08 17:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-13 15:55 - 2015-11-08 17:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-13 15:55 - 2015-11-08 17:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-12-13 15:55 - 2015-11-08 17:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-12-13 15:55 - 2015-11-08 17:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-12-13 15:55 - 2015-11-08 17:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-12-13 15:55 - 2015-11-08 16:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-13 15:55 - 2015-11-08 16:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-12-13 15:55 - 2015-11-08 16:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-13 15:55 - 2015-11-08 16:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-12-13 15:55 - 2015-11-08 16:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-12-13 15:55 - 2015-11-08 16:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-12-13 15:55 - 2015-11-08 16:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-12-13 15:55 - 2015-11-08 16:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-13 15:55 - 2015-11-08 16:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-13 15:55 - 2015-11-08 16:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-13 15:55 - 2015-11-08 16:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-12-13 15:55 - 2015-11-08 16:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-13 15:55 - 2015-11-08 15:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-13 15:55 - 2015-11-08 15:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-13 15:55 - 2015-11-08 15:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-12-13 15:55 - 2015-09-18 14:22 - 00025432 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-12-13 15:55 - 2015-09-18 14:19 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-12-13 15:55 - 2015-09-18 14:19 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-12-13 15:55 - 2015-09-18 14:09 - 01163776 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-12-13 15:55 - 2015-07-14 22:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-12-13 15:55 - 2015-06-03 15:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-12-13 15:55 - 2015-05-25 13:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-12-13 15:55 - 2015-05-25 13:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-12-13 15:55 - 2015-05-25 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-12-13 15:55 - 2015-05-25 13:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-12-13 15:55 - 2015-05-25 13:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-12-13 15:55 - 2015-05-25 13:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-12-13 15:53 - 2015-11-05 14:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-12-13 15:53 - 2015-11-05 14:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-12-13 15:53 - 2015-08-05 12:56 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-12-13 15:53 - 2015-06-01 19:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-12-13 15:53 - 2015-06-01 18:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-12-13 15:53 - 2015-04-29 13:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-12-13 15:53 - 2015-04-29 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-12-13 15:53 - 2015-04-29 13:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-12-13 15:53 - 2015-04-29 13:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-12-13 15:53 - 2015-04-29 13:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-12-13 15:53 - 2015-04-29 13:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-12-13 15:53 - 2015-04-29 13:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-12-13 15:53 - 2015-04-29 13:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-12-13 15:53 - 2015-04-29 13:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-12-13 15:53 - 2015-04-29 13:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-12-13 15:53 - 2015-04-17 22:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-12-13 15:53 - 2015-04-17 21:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-12-13 15:53 - 2015-04-12 22:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-12-13 15:50 - 2015-12-13 15:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-12-13 15:50 - 2015-11-03 14:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-12-13 15:50 - 2015-11-03 13:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-12-13 15:50 - 2015-08-06 13:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-12-13 15:50 - 2015-08-06 13:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-12-13 15:50 - 2015-08-06 12:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-12-13 15:50 - 2015-08-06 12:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-13 15:48 - 2015-11-20 13:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-12-13 15:48 - 2015-11-20 13:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-12-13 15:48 - 2015-11-20 13:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-12-13 15:48 - 2015-11-20 13:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-12-13 15:48 - 2015-11-20 13:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-12-13 15:48 - 2015-02-02 22:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-12-13 15:48 - 2015-02-02 22:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-12-13 15:48 - 2015-02-02 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-12-13 15:48 - 2015-02-02 22:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-12-13 15:48 - 2015-02-02 22:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-12-13 15:48 - 2015-02-02 22:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-12-13 15:47 - 2015-07-09 12:58 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-12-13 15:47 - 2015-07-09 12:58 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-12-13 15:47 - 2015-07-09 12:42 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-12-13 15:47 - 2015-07-09 12:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-12-13 15:47 - 2015-02-02 22:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-12-13 15:47 - 2015-02-02 22:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-12-13 15:47 - 2015-02-02 22:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-12-13 15:47 - 2015-02-02 22:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-12-13 15:47 - 2015-02-02 22:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-12-13 15:47 - 2015-02-02 22:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-12-13 15:47 - 2015-02-02 22:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-12-13 15:47 - 2015-02-02 22:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-12-13 15:47 - 2015-02-02 22:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-12-13 15:47 - 2015-01-28 22:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-12-13 15:47 - 2015-01-28 22:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-12-13 15:45 - 2015-11-11 13:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-13 15:45 - 2015-11-11 13:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-13 15:45 - 2015-11-11 13:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-13 15:45 - 2015-11-11 13:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-12-13 15:45 - 2015-11-10 13:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-13 15:45 - 2015-11-10 13:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-12-13 15:45 - 2015-11-10 13:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-13 15:45 - 2015-11-10 12:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-13 15:45 - 2015-11-05 14:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-13 15:45 - 2015-11-05 14:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2015-12-13 15:45 - 2015-11-05 04:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-13 15:45 - 2015-10-01 13:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-12-13 15:45 - 2015-10-01 13:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-12-13 15:45 - 2015-10-01 13:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-12-13 15:45 - 2015-10-01 13:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-12-13 15:45 - 2015-10-01 13:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-12-13 15:45 - 2015-10-01 12:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-12-13 15:45 - 2015-10-01 12:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-12-13 15:45 - 2015-07-18 08:08 - 00984448 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00901264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-12-13 15:45 - 2015-07-18 08:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-12-13 15:45 - 2015-07-04 13:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-12-13 15:45 - 2015-07-04 12:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-12-13 15:45 - 2015-07-01 15:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-12-13 15:45 - 2015-07-01 15:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-12-13 15:45 - 2015-07-01 15:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-12-13 15:45 - 2015-07-01 15:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-12-13 15:45 - 2015-06-17 12:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-12-13 15:45 - 2015-06-17 12:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-12-13 15:45 - 2015-06-03 15:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-12-13 15:45 - 2015-06-03 15:16 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-12-13 15:45 - 2015-06-03 15:16 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-12-13 15:45 - 2015-04-27 14:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-12-13 15:45 - 2015-04-27 14:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-12-13 15:45 - 2015-04-27 14:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-12-13 15:45 - 2015-04-27 14:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-12-13 15:45 - 2015-04-24 13:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-12-13 15:45 - 2015-04-24 12:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-12-13 15:44 - 2015-10-19 20:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-12-13 15:44 - 2015-10-19 20:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-12-13 15:44 - 2015-10-19 20:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-12-13 15:44 - 2015-10-19 20:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-12-13 15:44 - 2015-10-19 20:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-12-13 15:44 - 2015-10-19 20:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-12-13 15:44 - 2015-10-19 20:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-12-13 15:44 - 2015-10-19 20:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-12-13 15:44 - 2015-10-19 20:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-12-13 15:44 - 2015-10-19 20:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-12-13 15:44 - 2015-10-19 20:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-12-13 15:44 - 2015-10-19 20:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-12-13 15:44 - 2015-10-19 19:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-12-13 15:44 - 2015-10-19 19:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-12-13 15:44 - 2015-10-19 19:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-12-13 15:44 - 2015-10-19 19:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-12-13 15:44 - 2015-10-19 19:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-12-13 15:44 - 2015-10-19 19:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-12-13 15:44 - 2015-10-19 19:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-12-13 15:44 - 2015-10-19 19:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-12-13 15:44 - 2015-10-19 19:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 19:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-12-13 15:44 - 2015-10-19 18:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-12-13 15:44 - 2015-10-19 18:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-12-13 15:44 - 2015-10-19 18:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-12-13 15:44 - 2015-10-19 18:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-12-13 15:44 - 2015-10-19 18:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-12-13 15:44 - 2015-10-19 18:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-12-13 15:44 - 2015-10-13 11:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-12-13 15:44 - 2015-10-13 11:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-12-13 15:44 - 2015-09-23 08:15 - 00460776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-12-13 15:44 - 2015-09-23 08:15 - 00299632 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-12-13 15:44 - 2015-09-23 08:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-12-13 15:30 - 2015-07-30 13:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-12-13 15:30 - 2015-07-30 12:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-12-13 15:30 - 2015-06-15 16:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-12-13 15:30 - 2015-06-15 16:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-12-13 15:30 - 2015-06-15 16:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-12-13 15:30 - 2015-06-15 16:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-12-13 15:30 - 2015-06-15 16:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-12-13 15:30 - 2015-06-15 16:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-12-13 15:30 - 2015-06-15 16:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-12-13 15:30 - 2015-06-15 16:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-12-13 15:29 - 2015-10-29 12:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-12-13 15:29 - 2015-10-29 12:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-12-13 15:29 - 2015-10-29 12:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-12-13 15:29 - 2015-10-29 12:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-12-13 15:28 - 2015-07-22 19:02 - 01390592 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-12-13 15:28 - 2015-07-22 19:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-12-13 15:28 - 2015-07-22 19:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-12-13 15:28 - 2015-07-22 11:48 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-12-13 15:27 - 2015-07-22 12:53 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-12-13 15:27 - 2015-07-22 12:53 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-12-13 15:26 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-12-13 15:26 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-12-13 15:26 - 2015-07-09 12:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-12-13 15:26 - 2015-06-25 05:06 - 00115136 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-12-13 15:26 - 2015-06-25 05:01 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-12-13 15:26 - 2015-06-25 05:01 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-12-13 15:26 - 2015-06-25 04:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-12-13 15:26 - 2015-04-10 22:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-12-13 15:26 - 2015-02-18 02:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-12-13 15:26 - 2015-02-18 02:04 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-12-13 15:25 - 2015-08-27 13:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-12-13 15:25 - 2015-08-27 13:18 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-12-13 15:25 - 2015-08-27 13:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-12-13 15:25 - 2015-08-27 13:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-12-13 15:25 - 2015-08-27 12:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-12-13 15:25 - 2015-08-27 12:58 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-12-13 15:25 - 2015-08-27 12:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-12-13 15:25 - 2015-08-27 12:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-12-13 15:25 - 2015-02-24 22:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-12-13 15:25 - 2015-02-02 22:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-12-13 15:25 - 2015-02-02 22:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-12-13 15:25 - 2015-01-16 21:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-12-13 15:25 - 2015-01-16 21:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-12-13 15:05 - 2015-12-13 15:05 - 06420480 _____ C:\Program Files (x86)\GUT23D6.tmp
2015-12-13 15:05 - 2015-12-13 15:05 - 00000000 ____D C:\Program Files (x86)\GUM23D5.tmp
2015-12-13 14:57 - 2015-11-03 14:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2015-12-13 14:57 - 2015-11-03 13:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2015-12-13 14:57 - 2015-10-01 13:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-12-13 14:57 - 2015-10-01 13:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-12-13 14:57 - 2015-10-01 12:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-12-13 14:57 - 2015-09-01 22:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-12-13 14:57 - 2015-09-01 21:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-12-13 14:57 - 2015-09-01 21:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-12-13 14:57 - 2015-09-01 20:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-12-13 14:57 - 2015-09-01 20:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-12-13 14:57 - 2015-03-03 23:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-12-13 14:57 - 2015-03-03 23:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-12-13 14:57 - 2015-03-03 23:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-12-13 14:57 - 2015-02-03 22:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-12-13 14:57 - 2015-02-03 21:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-12-13 14:43 - 2015-12-13 14:43 - 209715200 _____ C:\Users\Alan\Documents\Data Safe.avgfv
2015-12-13 14:36 - 2015-12-13 15:24 - 00000000 ____D C:\Users\Alan\AppData\Roaming\AVG
2015-12-13 14:34 - 2015-12-13 14:34 - 00000000 ____D C:\Users\Alan\AppData\Roaming\TuneUp Software
2015-12-13 14:24 - 2016-01-11 00:55 - 00000000 ____D C:\ProgramData\MFAData
2015-12-13 14:24 - 2015-12-13 14:24 - 00000000 ____D C:\Users\Alan\AppData\Local\MFAData
2015-12-13 14:18 - 2016-01-10 20:09 - 00000000 ____D C:\ProgramData\Avg
2015-12-13 14:18 - 2016-01-10 20:09 - 00000000 ____D C:\Program Files (x86)\AVG
2015-12-13 14:16 - 2016-01-11 00:54 - 00000000 ____D C:\Users\Alan\AppData\Local\AvgSetupLog
2015-12-13 14:16 - 2016-01-10 19:14 - 00000000 ____D C:\Users\Alan\AppData\Local\Avg
2015-12-13 14:08 - 2014-11-20 10:29 - 00023752 _____ (360安全中心) C:\Windows\SysWOW64\Drivers\efimon.sys
2015-12-13 11:33 - 2015-12-13 16:24 - 00000000 ____D C:\dea79e73663cf1fd091fd2b09565ea
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-01-11 09:43 - 2014-08-25 19:17 - 00000000 ____D C:\Users\Alan
2016-01-11 09:38 - 2014-08-26 03:00 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-11 09:38 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-11 09:29 - 2009-07-13 22:20 - 00000000 ____D C:\Windows
2016-01-11 09:06 - 2009-07-13 23:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-11 09:06 - 2009-07-13 23:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-11 08:56 - 2009-07-14 00:13 - 00940230 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-11 08:56 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\inf
2016-01-10 21:51 - 2014-07-16 11:02 - 00001523 _____ C:\Users\Alan\Downloads\README.txt
2016-01-10 20:56 - 2014-08-25 19:46 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Skype
2016-01-10 20:30 - 2014-08-25 19:18 - 00000000 ____D C:\Users\Alan\AppData\Local\VirtualStore
2016-01-09 15:15 - 2014-08-25 21:43 - 00000124 _____ C:\Users\Alan\Documents\ax_files.xml
2016-01-09 13:47 - 2009-07-14 00:08 - 00032616 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-01-09 01:10 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\NDF
2016-01-03 15:34 - 2014-08-25 19:45 - 00000000 ____D C:\ProgramData\Skype
2015-12-19 09:44 - 2014-08-26 10:03 - 00000000 ____D C:\Users\Alan\AppData\Roaming\SoftGrid Client
2015-12-18 11:28 - 2015-10-30 04:42 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-17 11:20 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
2015-12-16 08:54 - 2014-08-25 19:46 - 00000000 ____D C:\Users\Alan\AppData\Local\Skype
2015-12-16 08:54 - 2014-08-25 19:45 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-16 08:47 - 2014-08-28 02:21 - 00433240 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-15 11:26 - 2014-08-25 19:49 - 00000000 ____D C:\Users\Alan\AppData\Local\Google
2015-12-15 11:26 - 2014-08-25 19:49 - 00000000 ____D C:\Program Files (x86)\Google
2015-12-15 07:58 - 2011-05-06 17:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-12-15 03:15 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-12-14 22:44 - 2014-08-25 19:45 - 00000000 ____D C:\temp
2015-12-14 22:43 - 2014-08-26 03:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-12-14 22:42 - 2014-08-26 02:57 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-12-14 19:40 - 2009-07-13 22:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-12-14 17:15 - 2015-01-21 13:50 - 00110176 _____ C:\Users\Alan\AppData\Local\GDIPFONTCACHEV1.DAT
2015-12-14 14:40 - 2014-08-26 02:08 - 00790182 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-12-14 14:06 - 2011-05-06 17:36 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-12-14 13:45 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-14 12:55 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\Downloaded Program Files
2015-12-14 08:45 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\sysprep
2015-12-14 08:30 - 2014-12-16 03:27 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieBrowserModeList
2015-12-14 08:30 - 2014-11-21 13:37 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieBrowserModeList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieUserList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\LocalLow\EmieSiteList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieUserList
2015-12-14 08:30 - 2014-08-25 22:15 - 00000000 __SHD C:\Users\Alan\AppData\Local\EmieSiteList
2015-12-14 08:03 - 2014-12-20 10:51 - 00000000 ____D C:\Users\Alan\AppData\Local\ElevatedDiagnostics
2015-12-14 07:13 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\AppCompat
2015-12-13 20:50 - 2014-08-26 00:46 - 00000000 ____D C:\Users\Alan\AppData\Local\Windows Live
2015-12-13 19:30 - 2014-08-26 02:56 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-13 19:30 - 2014-08-26 02:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-12-13 19:27 - 2014-12-15 08:45 - 00000000 ____D C:\Windows\system32\appraiser
2015-12-13 19:27 - 2014-08-26 01:17 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\Dism
2015-12-13 19:27 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-12-13 19:26 - 2010-11-21 02:17 - 00000000 ____D C:\Program Files\Windows Journal
2015-12-13 18:36 - 2014-08-26 10:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client
2015-12-13 18:05 - 2014-08-26 01:41 - 00000000 ____D C:\Windows\system32\MRT
2015-12-13 17:07 - 2014-08-26 02:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-12-13 16:42 - 2014-08-25 19:49 - 00000000 ____D C:\Users\Alan\AppData\Local\Deployment
2015-12-13 16:24 - 2014-08-26 03:22 - 00000000 ____D C:\Windows\Tasks\360Disabled
2015-12-13 16:24 - 2014-08-26 00:13 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-12-13 16:24 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
2015-12-13 15:27 - 2014-08-25 21:33 - 00000000 ____D C:\Program Files (x86)\Smart File Advisor
2015-12-13 14:15 - 2014-08-26 02:55 - 00000000 ____D C:\Program Files (x86)\360
2015-12-13 14:12 - 2011-05-06 17:41 - 00000000 ____D C:\ProgramData\Trend Micro
 
==================== Files in the root of some directories =======
 
2015-12-13 15:05 - 2015-12-13 15:05 - 6420480 _____ () C:\Program Files (x86)\GUT23D6.tmp
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-01-09 12:58
 
==================== End of FRST.txt ============================


#4 alanbridges

alanbridges
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:11:42 PM

Posted 11 January 2016 - 12:01 PM

Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by Alan (2016-01-11 09:16:33)
Running from C:\Users\Alan\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2014-08-26 00:17:34)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Acronis Agent User (S-1-5-21-198653192-873858985-810505055-1006 - Administrator - Enabled) => C:\Users\Acronis Agent User
Administrator (S-1-5-21-198653192-873858985-810505055-500 - Administrator - Disabled)
Alan (S-1-5-21-198653192-873858985-810505055-1001 - Administrator - Enabled) => C:\Users\Alan
Guest (S-1-5-21-198653192-873858985-810505055-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-198653192-873858985-810505055-1002 - Limited - Enabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
64 Bit HP CIO Components Installer (Version: 1.2.0 - Hewlett-Packard) Hidden
Acronis Backup 11.5 Agent Core (HKLM-x32\...\{4D41BD13-C5F6-4C0C-BAED-6DE685ABAE69}) (Version: 11.5.43800 - Acronis)
Acronis Backup 11.5 Agent for Windows (HKLM-x32\...\{37684E06-C7FD-49D1-8A72-38755648C136}) (Version: 11.5.43800 - Acronis)
Acronis Backup 11.5 Bootable Media Builder (HKLM-x32\...\{3699BA69-F2E0-44E0-9E94-1425B08D92D1}) (Version: 11.5.43800 - Acronis)
Acronis Backup 11.5 Command-Line Tool (HKLM-x32\...\{10170196-F317-4676-AA0C-86059E5EF7B5}) (Version: 11.5.43800 - Acronis)
Acronis Backup 11.5 Management Console (HKLM-x32\...\{47EFF235-D1A9-42A2-884A-D24986C7FBCE}) (Version: 11.5.43800 - Acronis)
Acronis Backup 11.5 Tray Monitor (HKLM-x32\...\{DA2E6689-69C8-4B70-99BF-1EEF1E3EDC7C}) (Version: 11.5.43800 - Acronis)
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.176 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated)
Adobe Reader X MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated)
AI Manager (HKLM-x32\...\{4AF95DE2-B54D-4C3F-9494-FD3B558E2C2D}) (Version: 1.09.06 - ASUSTeK Computer Inc.)
AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 1.01.22 - ASUSTeK Computer Inc.)
AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536C09F}_is1) (Version:  - AOMEI Technology Co., Ltd.)
Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{903D0F33-D3CF-48D6-967D-84004089428A}) (Version: 4.0.51203.1 - Microsoft Corporation)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.0.0 - Asmedia Technology)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.1.9.000 - Asmedia Technology)
ASUS Backup Wizard (HKLM-x32\...\{124C9BD0-8C52-40AB-8238-0605703B1C28}) (Version: 1.00.10 - ASUSTeK Computer Inc.)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.4.628 - ASUSTEK)
AVG (HKLM\...\AvgZen) (Version: 1.31.1.48846 - AVG Technologies)
AVG Zen (Version: 1.31.9 - AVG Technologies) Hidden
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dotfuscator and Analytics Community Edition 5.19.0 (x32 Version: 5.19.0.2930 - PreEmptive Solutions) Hidden
DriveImage XML (Private Edition) (HKLM-x32\...\{F7E1CA14-B39D-452A-960B-39423DDDD933}) (Version: 2.50.000 - Runtime Software)
Entity Framework 6.1.3 Tools  for Visual Studio 2015 Update 1 (HKLM-x32\...\{2A56910C-69C8-495D-8ED8-9080F0A14E58}) (Version: 14.0.41103.0 - Microsoft Corporation)
FMW 1 (Version: 1.42.1 - AVG Technologies) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
GDR 2269 for SQL Server 2014 (KB3045324) (64-bit) (HKLM\...\KB3045324) (Version: 12.0.2269.0 - Microsoft Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Drive (HKLM-x32\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
IcoFX 2.12 (HKLM-x32\...\IcoFX 2_is1) (Version: 2.12 - )
IIS 10.0 Express (HKLM\...\{7A28A2B0-458B-4A58-84AC-C90D2D4B79FB}) (Version: 10.0.1735 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft ASP.NET 5 RC1 Update 1 (HKLM-x32\...\{782d25e1-8377-4417-a491-3013700fe300}) (Version: 1.0.11123.0 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.24720 - Microsoft Corporation)
Microsoft ODBC Driver 11 for SQL Server (HKLM\...\{A106FA6F-E94C-44C9-8A0F-C34BD82C9FE6}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Office 365 Small Business Premium - en-us (HKLM\...\O365SmallBusPremRetail - en-us) (Version: 16.0.6366.2036 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-198653192-873858985-810505055-1001\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Report Viewer 2014 Runtime (HKLM-x32\...\{327E9C0D-1687-414F-923E-F5979E549548}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{83F2B8F4-5CF3-4BE9-9772-9543EAE4AC5F}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{6292D514-17A4-403F-98F9-E150F10C043D}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2014) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2014 Express LocalDB  (HKLM\...\{D9C53793-2E6A-4C6D-BA0B-898A17876A5D}) (Version: 12.0.2269.0 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Policies  (HKLM-x32\...\{1C30FE7E-8A8C-4492-89D6-10CB20C3B0EB}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Setup (English) (HKLM\...\{37C44B5C-E839-4A9D-9E20-A93E1B2FD35A}) (Version: 12.0.2269.0 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL Compiler Service  (HKLM\...\{537203CB-708E-43A3-BA16-3D5C14A587BB}) (Version: 12.0.2269.0 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom  (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service  (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (14.0.50616.0) (HKLM-x32\...\{58246C80-3941-4B69-AE31-264644E2ADB8}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{C3F6F200-6D7B-4879-B9EE-700C0CE1FCDA}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{68BA34E8-9B9D-4A74-83F0-7D366B532D75}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{10569041-3f7b-4637-80ae-53dd6f8aed08}) (Version: 14.0.23107.156 - Microsoft Corporation)
Microsoft VSS Writer for SQL Server 2014 (HKLM\...\{366CD715-2FF4-40B4-A8B4-A05E5D21A945}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation)
MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
Multi-Device Hybrid Apps using C# - Templates - ENU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
NVIDIA 3D Vision Driver 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.44 - NVIDIA Corporation)
NVIDIA Graphics Driver 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.44 - NVIDIA Corporation)
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6326.1010 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6326.1010 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6326.1010 - Microsoft Corporation) Hidden
paint.net (HKLM\...\{DF3A46D9-67B3-44B2-9D01-25C8BA772C8A}) (Version: 4.0.6 - dotPDN LLC)
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Pulse Secure (Version: 5.1.60057 - Pulse Secure, LLC) Hidden
Pulse Secure 5.1 (HKLM-x32\...\Pulse Secure 5.1) (Version: 5.1.60057 - Pulse Secure, LLC)
Pulse Secure Setup Client (HKU\S-1-5-21-198653192-873858985-810505055-1001\...\Juniper_Setup_Client) (Version: 8.1.4.60057 - Pulse Secure, LLC)
Pulse Secure Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Pulse Secure, LLC)
Pulse Secure Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Pulse Secure, LLC)
Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.1 - Ralink)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.37.1229.2010 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{7236672F-6430-439E-9B27-27EDEAF1D676}) (Version: 1.00.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
Registry Repair 5.0.1.70 (HKLM-x32\...\Registry Repair) (Version: 5.0.1.70 - Glarysoft Ltd)
REGUtilities (HKLM-x32\...\REGUtilities_is1) (Version: 1.0.3.2 - Tuneup System Software Pvt Ltd.)
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Roslyn Language Services - x86 (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
SQL Server 2014 Client Tools (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Common Files (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Services (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Database Engine Shared (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server 2014 Management Studio (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
SQL Server Browser for SQL Server 2014 (HKLM-x32\...\{3204DE95-97D2-4261-A286-98A262E171D4}) (Version: 12.0.2000.8 - Microsoft Corporation)
Sql Server Customer Experience Improvement Program (Version: 12.0.2000.8 - Microsoft Corporation) Hidden
StormAlerts (HKU\S-1-5-21-198653192-873858985-810505055-1001\...\StormAlerts) (Version: 1.0.14.0 - Weather Warnings LLC) <==== ATTENTION
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.24712 - Microsoft Corporation) Hidden
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
TortoiseSVN 1.9.2.26806 (64 bit) (HKLM\...\{8A5AA5D6-F797-4ED3-AE08-35EF5433409E}) (Version: 1.9.26806 - TortoiseSVN)
TweakBit FixMyPC (HKLM-x32\...\{CA7C4C80-24B8-4027-8849-0C302333C427}_is1) (Version: 1.6.10.5 - Auslogics Labs Pty Ltd)
TweakBit PCCleaner (HKLM-x32\...\{32207DDC-1102-4AD5-9CCD-A361F0E1BBC4}_is1) (Version: 1.6.10.5 - Auslogics Labs Pty Ltd)
TypeScript Power Tool (x32 Version: 1.7.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.7.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 1.7.4.0 (HKLM-x32\...\{33e2204a-4ec6-4458-895a-47e2a404d990}) (Version: 1.7.24720.0 - Microsoft Corporation)
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.9.0 - Elaborate Bytes)
Visual Studio 2010 Prerequisites - English (HKLM\...\{662014D2-0450-37ED-ABAE-157C88127BEB}) (Version: 10.0.40219 - Microsoft Corporation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Visual Studio 2015 Update 1 (KB3022398) (HKLM-x32\...\{fcaa9dba-9438-48b6-ad91-4e9b4cc7084a}) (Version: 14.0.24720 - Microsoft Corporation)
VS Update core components (x32 Version: 14.0.24720 - Microsoft Corporation) Hidden
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
Web Companion (HKLM-x32\...\{9ab53c5f-4cce-43a2-ada9-166ca1f238f9}) (Version: 2.1.1265.2535 - Lavasoft)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {12A13DA5-91CE-4C92-83D7-888C5936CC95} - System32\Tasks\REGUtilities Task => C:\Program Files (x86)\REGUtilities\REGUtilities.exe [2015-08-28] (Tuneup System Software Pvt Ltd.) <==== ATTENTION
Task: {15B1D4B7-9D06-4C76-B4CE-3C2FB6F24139} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-11-20] ()
Task: {2A2F84CD-DBFE-4FE1-AEE1-6E8C2D7FBB75} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-12-04] (Microsoft Corporation)
Task: {32CE22FC-785D-4EF7-9F17-C49DD70A563D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {3F1AD171-F7CE-4BA4-B843-9175AD1A76F1} - System32\Tasks\LaunchApp => C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe <==== ATTENTION
Task: {4EBAB024-33FC-4342-B5DC-2269685D67D0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-12-04] (Microsoft Corporation)
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {70932BFF-E944-466E-8C89-3FEA899FD358} - System32\Tasks\ParetoLogic Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns
Task: {754BE4B4-6A42-4749-803E-A84B61179E19} - System32\Tasks\ASUS\AsBackupWizard_Run => C:\Program Files (x86)\ASUS\\AsBackupWizard\\AsRunBkWizardHelper.exe [2010-04-23] (ASUSTeK Computer Inc.)
Task: {8A02BA2F-0469-4455-A941-35993C066343} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2010-11-27] (ASUSTeK Computer Inc.)
Task: {9DDE086F-6FBB-4804-A4C5-3747AC69A0DA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-13] (Google Inc.)
Task: {A85F1132-06AC-4FAF-A993-1899B51CCF8D} - System32\Tasks\ParetoLogic Update Version3 => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-11-20] ()
Task: {C1AB5C04-E64B-45DE-9BF1-3410D0680F27} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {C70CF6B6-F9FB-42BD-8D43-1B4F0D721D8A} - System32\Tasks\{317B9121-B8C8-46BD-A688-9A33423B2537} => pcalua.exe -a C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442\setup.exe -d C:\Users\Alan\Downloads\avg_arl_ffi_all_120_150814a10442
Task: {CF3DA72D-3900-4D44-A5A3-17D1D5D7051F} - System32\Tasks\{2CDBD9D4-E65C-403C-9F84-D8C37C3C89C8} => pcalua.exe -a "C:\Program Files (x86)\MagicDisc\muninst.exe" -d "C:\Program Files (x86)\MagicDisc"
Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc
Task: {E0BA22D1-712D-4996-AF45-66DB10004842} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-12-14] (Microsoft Corporation)
Task: {EDE6844E-FCFD-4C83-8A3C-FD826D149D56} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-13] (Google Inc.)
Task: {EE509425-1903-441F-B4C7-69091F044A5F} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
Task: {F03D5E2A-F4FD-4E34-9DBD-FBD3E8B75354} - System32\Tasks\{87FFA2DA-3F16-4D86-BAF3-E987D50385DE} => pcalua.exe -a C:\Users\Alan\AppData\Local\Temp\Temp1_avg_arl_ffi_all_120_150814a10442.zip\setup.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ParetoLogic Registration3.job => C:\Windows\system32\rundll32.exeGC:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll
Task: C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: C:\Windows\Tasks\ParetoLogic Update Version3.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: C:\Windows\Tasks\REGUtilities Task.job => C:\Program Files (x86)\REGUtilities\REGUtilities.exe-t5C:\Program Files (x86)\REGUtilities\REGUtilities.exe <==== ATTENTION
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-12-17 18:38 - 2015-12-17 18:38 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 18:38 - 2015-12-17 18:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2011-05-06 17:25 - 2010-11-03 04:30 - 00918144 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
2011-05-06 17:25 - 2010-12-01 21:15 - 00915584 _____ () C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe
2011-05-06 17:25 - 2010-10-21 04:52 - 00586880 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
2015-12-14 14:50 - 2015-12-04 03:52 - 00162472 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-09-22 20:32 - 2015-09-22 20:32 - 00093568 _____ () C:\Program Files\TortoiseSVN\bin\libsasl.dll
2015-06-01 21:00 - 2015-06-01 21:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll
2015-07-20 21:05 - 2015-07-20 21:05 - 00322224 _____ () C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\events_trace.dll
2015-07-20 23:35 - 2015-07-20 23:35 - 00614216 _____ () C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\scsi.dll
2011-05-06 17:25 - 2016-01-11 08:50 - 00019456 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\PEbiosinterface32.dll
2011-05-06 17:25 - 2010-06-28 21:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\ATKEX.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00306904 _____ () C:\Program Files (x86)\AOMEI Backupper\UiLogic.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00241368 _____ () C:\Program Files (x86)\AOMEI Backupper\diskmgr.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00290520 _____ () C:\Program Files (x86)\AOMEI Backupper\Comn.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00077528 _____ () C:\Program Files (x86)\AOMEI Backupper\Ldm.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00061144 _____ () C:\Program Files (x86)\AOMEI Backupper\Device.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00282328 _____ () C:\Program Files (x86)\AOMEI Backupper\BrFat.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00962264 _____ () C:\Program Files (x86)\AOMEI Backupper\BrNtfs.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00122584 _____ () C:\Program Files (x86)\AOMEI Backupper\FuncLogic.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00282328 _____ () C:\Program Files (x86)\AOMEI Backupper\Clone.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00347864 _____ () C:\Program Files (x86)\AOMEI Backupper\ImgFile.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00028376 _____ () C:\Program Files (x86)\AOMEI Backupper\Encrypt.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00069336 _____ () C:\Program Files (x86)\AOMEI Backupper\Compress.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00102104 _____ () C:\Program Files (x86)\AOMEI Backupper\BrVol.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00253656 _____ () C:\Program Files (x86)\AOMEI Backupper\GptBcd.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00155352 _____ () C:\Program Files (x86)\AOMEI Backupper\FlBackup.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00483032 _____ () C:\Program Files (x86)\AOMEI Backupper\EnumFolder.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00175832 _____ () C:\Program Files (x86)\AOMEI Backupper\DeviceMgr.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00118488 _____ () C:\Program Files (x86)\AOMEI Backupper\Backup.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00691928 _____ () C:\Program Files (x86)\AOMEI Backupper\Sync.dll
2016-01-10 16:36 - 2015-09-15 17:56 - 00102104 _____ () C:\Program Files (x86)\AOMEI Backupper\BrLog.dll
2016-01-10 16:36 - 2015-02-26 00:00 - 02403504 _____ () C:\Program Files (x86)\AOMEI Backupper\QtCore4.dll
2016-01-11 08:51 - 2016-01-11 08:51 - 00098816 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32api.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00110080 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\pywintypes27.dll
2016-01-11 08:51 - 2016-01-11 08:51 - 00364544 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\pythoncom27.dll
2016-01-11 08:51 - 2016-01-11 08:51 - 00046080 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_socket.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 01208320 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_ssl.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00320512 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32com.shell.shell.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00776704 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_hashlib.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 01176576 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._core_.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00806400 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._gdi_.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00816128 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._windows_.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 01067008 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._controls_.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00733184 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._misc_.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00682496 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\pysqlite2._sqlite.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00088064 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_ctypes.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00119808 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32file.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00108544 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32security.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00007168 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\hashobjs_ext.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00017920 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\thumbnails_ext.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00079360 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\usb_ext.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00167936 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32gui.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00018432 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32event.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00128512 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_elementtree.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00127488 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\pyexpat.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00013824 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\common.time34.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00036864 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_psutil_windows.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00038912 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32inet.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00525640 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\windows._lib_cacheinvalidation.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00011264 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32crypt.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00077312 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._html2.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00027136 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_multiprocessing.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00020480 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\_yappi.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00035840 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32process.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00686080 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\unicodedata.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00123392 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._wizard.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00024064 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32pipe.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00010240 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\select.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00025600 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32pdh.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00017408 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32profile.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00022528 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\win32ts.pyd
2016-01-11 08:51 - 2016-01-11 08:51 - 00078848 _____ () C:\Users\Alan\AppData\Local\Temp\_MEI31522\wx._animate.pyd
2016-01-10 18:52 - 2016-01-10 18:52 - 00113424 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.Utils.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00044304 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.Common.Platform.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00010000 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.UpdateComponents.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00272656 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Business.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00022288 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.AvastWrapper.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00046864 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.adblocker.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00012560 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.Utils.SqlLite.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00120080 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.PUP.Management.dll
2016-01-10 18:52 - 2016-01-10 18:52 - 00029968 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Repositories.dll
2016-01-10 20:08 - 2016-01-10 20:08 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
2015-07-20 21:05 - 2015-07-20 21:05 - 00285904 _____ () C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\fnls.dll
2015-07-20 23:21 - 2015-07-20 23:21 - 00930688 _____ () C:\Program Files (x86)\Acronis\BackupAndRecovery\human_resolving_mms.dll
2015-07-20 23:11 - 2015-07-20 23:11 - 01929744 _____ () C:\Program Files (x86)\Acronis\BackupAndRecovery\msp_agent.dll
2015-12-14 15:50 - 2015-12-14 15:50 - 08903848 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\1033\GrooveIntlResource.dll
2015-12-16 14:48 - 2015-12-10 22:54 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libglesv2.dll
2015-12-16 14:48 - 2015-12-10 22:54 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libegl.dll
2015-12-24 14:46 - 2015-12-24 07:46 - 16792256 _____ () C:\Users\Alan\AppData\Local\Google\Chrome\User Data\PepperFlash\20.0.0.267\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Users\Alan\Documents\Christmas with Larry the Cable Guy.wmv:Roxio EMC Stream
AlternateDataStreams: C:\Users\Alan\Documents\Main Page.bmp:Roxio EMC Stream
AlternateDataStreams: C:\Users\Alan\Documents\Scarface - Condensed Version.wmv:Roxio EMC Stream
AlternateDataStreams: C:\Users\Alan\Documents\SuperBowl 2010.jpg:Roxio EMC Stream
AlternateDataStreams: C:\Users\Alan\Documents\Utah.dmss:Roxio EMC Stream
AlternateDataStreams: C:\Users\Alan\Documents\UtahMovies.dmsd:Roxio EMC Stream
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => "Service"=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => "Service"=""
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com
IE trusted site: HKU\S-1-5-21-198653192-873858985-810505055-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-198653192-873858985-810505055-1001\...\webcompanion.com -> hxxp://webcompanion.com
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 21:34 - 2016-01-09 15:50 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-198653192-873858985-810505055-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupreg: vProt => "C:\Program Files (x86)\AVG Web TuneUp\vprot.exe"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{7C07CEF1-E196-49ED-B36A-CF1DEA5EB9CF}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{261A54B4-EC44-438F-8BFF-09214A57AAF5}] => (Allow) LPort=2869
FirewallRules: [{705E17BA-8918-4F0B-B683-A9F3F19A9D12}] => (Allow) LPort=1900
FirewallRules: [{26C0A041-28D3-4D72-9525-7FD15C3A0314}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{B647678F-5737-41BB-88CA-D0722584A771}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{7E9DA5E7-2DA3-4A4A-994F-0B176E862995}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{95C2047B-8692-461A-AB62-BCD793337E55}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe
FirewallRules: [{319564F4-9309-416F-95B6-BCE61CCEE018}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{65F3CD4D-3FF4-499F-A894-99E35E9B1C80}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{6016BE2B-6536-4461-83E5-06DE0B738E32}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{FEA8EA5A-AAA2-4165-9556-B358C66588A6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{52E4AB80-7B30-47E3-8A45-EE9E12802D7A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{EEACF89A-00F1-4D42-A7F7-547113B3AE5D}] => (Allow) C:\Users\Alan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{5276CC83-E2CA-4055-8EEC-6BA7A4B38DC0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{F07EABBB-B6CF-4DE7-B470-61054479DEB8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{3C29B097-27E7-4DFF-A304-78ADB4D5F9F4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{C0B3FD53-8B2F-4E7A-AF6D-688BDAA9BA25}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{7499DFFA-F6A6-4EEE-94AB-F1195FAA662A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{EEE2FCAD-70C5-45AE-BF4A-1C86BFF99B4F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E0C887F4-0D03-4B88-A60C-827CD28DB733}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D76D3976-976E-4CEA-98C6-E863A1348F2C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{F1AED920-4AF6-4463-874E-857A48E41BA3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7ECE8293-5E3D-4EB0-A588-7D2BD744508C}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe
FirewallRules: [{EB2F432A-9249-488D-A224-63B6CF091577}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe
FirewallRules: [{B3EB0C08-7408-41F7-8387-474B603D94B7}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe
FirewallRules: [{BD644E14-9BFE-4E1E-8AF5-FCA4D848BFB8}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe
FirewallRules: [{9FCC7A01-4F71-4802-879C-1C51E7C540FE}] => (Allow) C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe
FirewallRules: [{CCCCD895-E96B-4A9D-AC4A-FE1CDB6CEF72}] => (Allow) C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe
FirewallRules: [{626563E2-27EA-4654-A0C8-7188BDE808CE}] => (Allow) C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe
FirewallRules: [{E05E0F7D-AE32-4FFA-8A0E-69709BE0FE65}] => (Allow) C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe
 
==================== Restore Points =========================
 
11-01-2016 00:55:49 Installed AVG 2016
 
==================== Faulty Device Manager Devices =============
 
Name: BAPIDRV
Description: BAPIDRV
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: BAPIDRV
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
 
Name: ttnfd
Description: ttnfd
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ttnfd
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (01/11/2016 09:02:55 AM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Information only.
(Patch task for {90140011-0066-0409-0000-0000000FF1CE}): DownloadLatest Failed: HTTP status 403: The client does not have sufficient access rights to the requested server object.
 
Error: (01/11/2016 08:52:58 AM) (Source: Application Virtualization Client) (EventID: 3008) (User: )
Description: {hap=12:app=OfficeVirt 9014006604090000:tid=1644}
The client was unable to connect to an Application Virtualization Server (rc 24604E0A-40000193)
 
Error: (01/11/2016 08:52:58 AM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {hap=12:app=OfficeVirt 9014006604090000:tid=1644}
The Application Virtualization Client could not connect to stream URL 'http://c2r.microsoft.com/ConsumerC2R/en-us/14.0.4763.1000/ConsumerC2R.en-us_14.0.7143.5001.sft' (rc 24604E0A-40000193, original rc 24604E0A-40000193).
 
Error: (01/11/2016 08:52:37 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/11/2016 08:50:52 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname Alan-PC.local already in use; will try Alan-PC-2.local instead
 
Error: (01/11/2016 08:50:52 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 Alan-PC.local. Addr 10.1.10.13
 
Error: (01/11/2016 08:50:52 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 10.1.10.16:5353    4 alan-PC.local. Addr 10.1.10.16
 
Error: (01/11/2016 08:27:56 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (01/11/2016 08:23:12 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname Alan-PC.local already in use; will try Alan-PC-2.local instead
 
Error: (01/11/2016 08:23:12 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister    4 Alan-PC.local. Addr 10.1.10.13
 
 
System errors:
=============
Error: (01/11/2016 08:52:55 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
ttnfd
 
Error: (01/11/2016 08:52:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The IE Search Set service failed to start due to the following error: 
%%1053
 
Error: (01/11/2016 08:52:15 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the IE Search Set service to connect.
 
Error: (01/11/2016 08:51:44 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The SQL Server (SQLEXPRESS) service failed to start due to the following error: 
%%1053
 
Error: (01/11/2016 08:51:42 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the SQL Server (SQLEXPRESS) service to connect.
 
Error: (01/11/2016 08:50:31 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{DCBCA92E-7DBE-4EDA-8B7B-3AAEA4DD412B}{B292921D-AF50-400C-9B75-0C57A7F29BA1}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)
 
Error: (01/11/2016 08:42:36 AM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1068COMSysApp{ECABAFBC-7F19-11D2-978E-0000F8757E2A}
 
Error: (01/11/2016 08:42:08 AM) (Source: DCOM) (EventID: 10005) (User: )
Description: 1068COMSysApp{182C40F0-32E4-11D0-818B-00A0C9231C29}
 
Error: (01/11/2016 08:38:12 AM) (Source: Disk) (EventID: 7) (User: )
Description: The device, \Device\Harddisk1\DR1, has a bad block.
 
Error: (01/11/2016 08:38:12 AM) (Source: Disk) (EventID: 7) (User: )
Description: The device, \Device\Harddisk1\DR1, has a bad block.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i3-2120 CPU @ 3.30GHz
Percentage of memory in use: 31%
Total physical RAM: 8104.3 MB
Available physical RAM: 5531.48 MB
Total Virtual: 16206.82 MB
Available Virtual: 13428.83 MB
 
==================== Drives ================================
 
Drive c: (WIN7) (Fixed) (Total:558.9 GB) (Free:415.64 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (WD 1TB) (Fixed) (Total:931.51 GB) (Free:919.71 GB) NTFS
Drive e: (DATA) (Fixed) (Total:824.17 GB) (Free:746.83 GB) NTFS
Drive f: (CDROM) (CDROM) (Total:0.17 GB) (Free:0 GB) CDFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 5CA1B5D0)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (Size: 1397.3 GB) (Disk ID: CB5BD2B2)
Partition 1: (Not Active) - (Size=14.2 GB) - (Type=1B)
Partition 2: (Active) - (Size=558.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=824.2 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================


#5 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:42 AM

Posted 16 January 2016 - 11:25 AM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/601949 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new FRST log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download FRST by Farbar from the following link if you no longer have it available and save it to your destop.

    FRST Download Link

  • When you go to the above page, there will be 32-bit and 64-bit downloads available. Please click on the appropriate one for your version of Windows. If you are unsure as to whether your Windows is 32-bit or 64-bit, please see this tutorial.
  • Double click on the FRST icon and allow it to run.
  • Agree to the usage agreement and FRST will open. Do not make any changes and click on the Scan button.
  • Notepad will open with the results.
  • Post the new logs as explained in the prep guide.
  • Close the program window, and delete the program from your desktop.


As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#6 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:42 AM

Posted 21 January 2016 - 11:30 AM

Hello again!

I haven't heard from you in 5 days. Therefore, I am going to assume that you no longer need our help, and close this topic.

If you do still need help, please send a Private Message to any Moderator within the next five days. Be sure to include a link to your topic in your Private Message.

Thank you for using Bleeping Computer, and have a great day!




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users