Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Chrome pages opening randomly: Malware


  • This topic is locked This topic is locked
13 replies to this topic

#1 Nordy199

Nordy199

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 12:00 AM

Hello,

 

I have some sort of Malware on my computer that opens web pages in chrome by itself. It will open them about every minute or two even when I'm not connected to the internet a chrome page will try to open. They are usually like flash player update pages, video player pages, and the "you have a virus scan now" page. I've tried everything that I know to do and it still won't stop. I've ran a windows defender scan, Malwarebytes scan, JRT scan, Adwcleaner, deleted chrome history, made sure the pop up blocker was on, fire wall is on, uninstalled and reinstalled chrome (it started opening internet explorer pages when I uninstalled chrome), looked and deleted any weird programs on my computer. I honestly I have no idea what else to do. I'm about to just uninstall every web browser on my computer just to make it stop. Some one please help me out! Thank you for your time. 



BC AdBot (Login to Remove)

 


#2 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 15 May 2016 - 12:21 AM

Hello Nordy199 and Welcome to the BleepingComputer. :welcome:  
 
My name is Yılmaz and I'll help you with the cleanup of malware from your computer.

Before we move on, please read the following points carefully.
  • Please complete all steps in the specified order.
  • Even if tools don't find malware, I want you to post the logfiles anyway.
  • Please copy and paste the logfiles directly into your posts. Please do not attach them unless you are instructed to do so.
  • Read the instructions carefully. If you have problems, stop what you  were doing and describe the problems you encountered as precisely as  you can.
  • Don't install or uninstall software during the cleanup unless you are told to do so.
  • Ensure your external and/or USB drives are inserted during always the scan.
  • If you can't answer for the next few days, please let me know. If  you haven't answered within 5 days, I am assuming that you don't need  help anymore and your topic will be closed.
  • If you have illegal/cracked software, cracks, keygens, etc. on the system, please remove or uninstall them now!
  • I can not guarantee that we will find and be able to remove all  malware. The cleaning process is not instant. Please continue to review  my answers until I tell you that your computer is clean
  • Please reply to this thread. Do not start a new topic
  • As my first language is not English, please do not use slang or idioms. It could be hard for me to understand.
  • Please open as administrator  the computer. How is open as administrator  the computer?
  • Disable your AntiVirus and AntiSpyware applications, as they will  interfere with our tools and the removal. If you are unsure how to do  this, please refer to get help here
Thanks
 
Please do the following.
Scan with Zemana AntiMalware Free:
  • Turn off the real time scanner of any existing antivirus and firewall programs while performing scan
  • Please download and install Zemana AntiMalware Free
  • Double-click software shortcut on the desktop and follow the prompts to install the program .
  • If an update is available, click the Update now button.
  • At the end Click Settings > Advanced > ''I have read the warning an wish to proceed anyway'' Click
  • Auto Launch > Untick the box next
  • Scan type > Smart scan (Default)
  • Close all open files, folders and browsers
  • Click scan now ''Run as Administrator'' and a threat Scan will begin.
  • When the scan is complete, Press report and send me report.
  • Please PC restart now.
============================================================================
How are your PC and browsers  and are there still septoms ?
 
Have a nice day.

Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#3 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 12:51 AM

Hello,

 

Thank you for the fast reply. Just to be clear you want me to turn off my fire wall?



#4 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 01:11 AM

Hello,

 

Ok I turned off my fire wall and virus detector and here are the results of the scan.

 

Zemana AntiMalware 2.20.179.613 (Installed)
 
-------------------------------------------------------
Scan Result            : Completed
Scan Date              : 2016/5/15
Operating System       : Windows 8.1 64-bit
Processor              : 8X Intel® Core™ i7-4700MQ CPU @ 2.40GHz
BIOS Mode              : UEFI
CUID                   : 00362AAE70AB4B419939F4
Scan Type              : Smart Scan
Duration               : 2m 0s
Scanned Objects        : 15918
Detected Objects       : 0
Excluded Objects       : 0
Read Level             : SCSI
Auto Upload            : ON
Detect All Extensions  : OFF
Scan Documents         : OFF
Domain Info            : WORKGROUP,0,2
 
Detected Objects
-------------------------------------------------------
 
There are no detected objects
 
Thank you again for your time.


#5 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 15 May 2016 - 01:12 AM

Hello,

 

Thank you for the fast reply. Just to be clear you want me to turn off my fire wall?

Yes,please. Thank you.


Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#6 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 15 May 2016 - 01:16 AM

Please do the following.
 
Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Make sure the following option is checked: addition.png
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Sincerely  . :hello:


Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#7 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 01:38 AM

Hello,

 

Ok here is the FRST.txt

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-05-2016
Ran by Nordy (administrator) on MRBBHEAD (15-05-2016 01:35:30)
Running from C:\Users\Nordy\Downloads
Loaded Profiles: Nordy & UpdatusUser (Available Profiles: Nordy & UpdatusUser & .NET v4.5 & DefaultAppPool & .NET v4.5 Classic)
Platform: Windows 8.1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
() C:\Program Files (x86)\Windows System\WinService.exe
(Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCServiceController.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienwareTactXMacroController.exe
(Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
() C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
() C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\Bluetooth Headset Helper.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienFusionController.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Command Center Controllers] => C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe [13840 2013-11-04] (Alienware)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-06] (Apple Inc.)
HKLM\...\Run: [ZAM] => C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [13317960 2016-04-27] (Zemana Ltd.)
HKLM-x32\...\Run: [AlienwareOn-ScreenDisplay] => C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe [4593968 2013-11-15] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-24] (Oracle Corporation)
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [111696 2013-10-18] (VMware, Inc.)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [55357464 2015-09-04] (Skype Technologies S.A.)
HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\MountPoints2: {85197730-e2bc-11e4-beb2-240a64b5b954} - "D:\MotoCastSetup.exe" -a
HKU\S-1-5-21-727363808-1973197721-797726289-1004\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-28] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2016-05-14]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2016-05-14]
ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{987ACE92-A585-45CF-AE43-0B038780B497}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 10.0.1.1
Tcpip\..\Interfaces\{B29D9AD8-536E-4081-938A-58805798B7D9}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{D7995E79-D6F4-433A-AD38-7F6348E1C8C2}: [DhcpNameServer] 10.0.1.1
 
Internet Explorer:
==================
HKU\S-1-5-21-727363808-1973197721-797726289-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
URLSearchHook: [S-1-5-21-727363808-1973197721-797726289-1004] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKU\S-1-5-21-727363808-1973197721-797726289-1001 -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-727363808-1973197721-797726289-1001 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-08-22] (Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-08-22] (Oracle Corporation)
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_95.dll [2014-07-23] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_95.dll [2014-07-23] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-08-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-08-22] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-14] (Google Inc.)
 
Chrome: 
=======
CHR Profile: C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-20]
CHR Extension: (Google Docs) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-20]
CHR Extension: (Google Drive) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Google Search) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Google Sheets) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-20]
CHR Extension: (Google Docs Offline) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-18]
CHR Extension: (AdBlock) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-05-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-07]
CHR Extension: (Gmail) - C:\Users\Nordy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-20]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2014-07-20] (Broadcom Corporation.)
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-05-08] (BitRaider, LLC)
S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [477960 2014-08-15] (BitRaider, LLC)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2572024 2016-03-10] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [202488 2016-03-10] (Dell Inc.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
S3 ioloEnergyBooster; C:\Program Files\Alienware\Command Center\ioloEnergyBooster.exe [6145872 2012-11-01] (iolo technologies, LLC)
R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [340480 2013-10-08] (Qualcomm Atheros) [File not signed]
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [31928 2016-04-22] (Dell Inc.)
S3 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [14405200 2013-10-18] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 WinService; C:\Program Files (x86)\Windows System\WinService.exe [1116672 2016-04-29] () [File not signed]
R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [13317960 2016-04-27] (Zemana Ltd.)
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-07-20] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8497840 2014-07-20] (Broadcom Corporation)
S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.)
S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2014-08-16] (BitRaider)
S3 cxbu0x64; C:\Windows\system32\DRIVERS\cxbu0x64.sys [143360 2013-03-22] (HID Global Corporation)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [23760 2015-02-26] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-24] (OSR Open Systems Resources, Inc.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R0 EMSC; C:\Windows\System32\drivers\EMSC.SYS [17720 2012-07-10] ()
R0 EMSC; C:\Windows\SysWOW64\drivers\EMSC.SYS [15160 2012-07-10] ()
R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.)
R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [91360 2013-04-11] (STMicroelectronics)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-mntapi20-shared.sys [33872 2013-02-22] (VMware, Inc.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [202656 2016-05-15] (Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [202656 2016-05-15] (Zemana Ltd.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-05-15 01:35 - 2016-05-15 01:35 - 00016118 _____ C:\Users\Nordy\Downloads\FRST.txt
2016-05-15 01:34 - 2016-05-15 01:35 - 00000000 ____D C:\FRST
2016-05-15 01:34 - 2016-05-15 01:34 - 01733120 _____ (Farbar) C:\Users\Nordy\Downloads\FRST (1).exe
2016-05-15 01:31 - 2016-05-15 01:32 - 02382336 _____ (Farbar) C:\Users\Nordy\Downloads\FRST64.exe
2016-05-15 01:30 - 2016-05-15 01:30 - 01733120 _____ (Farbar) C:\Users\Nordy\Downloads\FRST.exe
2016-05-15 01:11 - 2016-05-15 01:11 - 00000802 _____ C:\Users\Nordy\Desktop\VReport.txt
2016-05-15 00:48 - 2016-05-15 00:48 - 00000807 _____ C:\Users\Nordy\Desktop\report.txt
2016-05-15 00:36 - 2016-05-15 00:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2016-05-15 00:35 - 2016-05-15 01:35 - 00189551 _____ C:\WINDOWS\ZAM.krnl.trace
2016-05-15 00:35 - 2016-05-15 01:34 - 00014993 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2016-05-15 00:35 - 2016-05-15 00:36 - 00001090 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2016-05-15 00:35 - 2016-05-15 00:36 - 00000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2016-05-15 00:35 - 2016-05-15 00:35 - 00202656 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys
2016-05-15 00:35 - 2016-05-15 00:35 - 00202656 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam64.sys
2016-05-15 00:34 - 2016-05-15 00:34 - 05543656 _____ ( ) C:\Users\Nordy\Downloads\Zemana.AntiMalware.Setup.exe
2016-05-15 00:34 - 2016-05-15 00:34 - 00000000 ____D C:\Users\Nordy\AppData\Local\Zemana
2016-05-14 23:36 - 2016-05-14 23:38 - 00000551 _____ C:\Users\Nordy\Desktop\JRT.txt
2016-05-14 23:33 - 2016-05-14 23:33 - 01610816 _____ (Malwarebytes) C:\Users\Nordy\Downloads\JRT.exe
2016-05-14 23:18 - 2016-05-15 00:17 - 00000000 ____D C:\AdwCleaner
2016-05-14 23:18 - 2016-05-14 23:18 - 03640384 _____ C:\Users\Nordy\Downloads\AdwCleaner.exe
2016-05-14 23:12 - 2016-05-14 23:12 - 04621304 _____ (Google) C:\Users\Nordy\Downloads\chrome_cleanup_tool (1).exe
2016-05-14 19:27 - 2016-05-14 23:48 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-05-14 19:26 - 2016-05-14 22:54 - 00001110 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-05-14 19:26 - 2016-05-14 19:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-05-14 19:26 - 2016-05-14 19:26 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-05-14 19:26 - 2016-05-14 19:26 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-05-14 19:26 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-05-14 19:26 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-05-14 19:26 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-05-14 19:25 - 2016-05-14 19:26 - 22851472 _____ (Malwarebytes ) C:\Users\Nordy\Downloads\mbam-setup-web.NT-2.2.1.1043.exe
2016-05-14 19:15 - 2016-05-15 01:29 - 00000924 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-14 19:15 - 2016-05-15 00:40 - 00000920 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-14 19:15 - 2016-05-14 22:54 - 00002289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-14 19:15 - 2016-05-14 22:54 - 00002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-14 19:15 - 2016-05-14 19:24 - 00003896 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-14 19:15 - 2016-05-14 19:24 - 00003660 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-14 18:40 - 2016-05-14 18:40 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2016-05-14 18:40 - 2016-05-14 18:40 - 00000000 ____D C:\Program Files (x86)\Windows System
2016-05-14 18:39 - 2016-05-14 19:04 - 00000000 ____D C:\Users\Nordy\AppData\Local\Lenovo
2016-05-14 18:39 - 2016-05-14 18:39 - 00000000 ____D C:\Users\Nordy\AppData\Local\Bluestacks
2016-05-14 18:38 - 2016-05-14 19:04 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2016-05-14 18:38 - 2016-05-14 19:04 - 00000000 ____D C:\Program Files (x86)\Lenovo
2016-05-14 18:38 - 2016-05-14 18:38 - 13613000 _____ C:\Users\Nordy\Downloads\Clash-of-Clans [1].exe
2016-05-14 13:36 - 2016-05-11 15:08 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-14 13:36 - 2016-05-11 15:08 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 15:16 - 2016-03-15 20:58 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-05-11 15:16 - 2016-03-15 20:58 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-05-11 15:16 - 2016-03-14 11:50 - 00316760 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2016-05-11 15:16 - 2016-03-11 19:49 - 02466136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-05-11 15:16 - 2016-03-11 19:47 - 00160160 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2016-05-11 15:16 - 2016-03-11 19:47 - 00121912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2016-05-11 15:16 - 2016-03-10 12:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2016-05-11 15:16 - 2016-03-10 11:55 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-05-11 15:16 - 2016-03-10 11:52 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-05-11 15:16 - 2016-03-10 11:48 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsparse.dll
2016-05-11 15:16 - 2016-03-10 11:42 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-05-11 15:16 - 2016-03-05 12:44 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-11 15:16 - 2016-03-05 12:04 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-11 15:16 - 2016-02-27 13:28 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-05-11 15:16 - 2016-02-27 12:57 - 03273728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-05-11 15:16 - 2016-02-27 12:19 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-05-11 15:16 - 2016-02-27 11:32 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-05-11 01:55 - 2016-04-22 15:54 - 25816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-11 01:55 - 2016-04-22 15:15 - 00571904 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-11 01:55 - 2016-04-22 15:14 - 02893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-11 01:55 - 2016-04-22 15:08 - 06052864 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-11 01:55 - 2016-04-22 15:06 - 20349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-11 01:55 - 2016-04-22 15:00 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-11 01:55 - 2016-04-22 14:35 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-11 01:55 - 2016-04-22 14:29 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-11 01:55 - 2016-04-22 14:24 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-05-11 01:55 - 2016-04-22 14:23 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-11 01:55 - 2016-04-22 14:19 - 15414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-11 01:55 - 2016-04-22 14:17 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-05-11 01:55 - 2016-04-22 14:14 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-05-11 01:55 - 2016-04-22 14:14 - 00725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-05-11 01:55 - 2016-04-22 14:14 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-05-11 01:55 - 2016-04-22 14:12 - 02131968 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-05-11 01:55 - 2016-04-22 13:58 - 04611072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-11 01:55 - 2016-04-22 13:58 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-05-11 01:55 - 2016-04-22 13:54 - 13811200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-11 01:55 - 2016-04-22 13:53 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-05-11 01:55 - 2016-04-22 13:52 - 02596864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-05-11 01:55 - 2016-04-22 13:52 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-05-11 01:55 - 2016-04-22 13:52 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-05-11 01:55 - 2016-04-22 13:51 - 02056192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-05-11 01:55 - 2016-04-22 13:40 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-11 01:55 - 2016-04-22 13:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-05-11 01:55 - 2016-04-22 13:27 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-05-11 01:55 - 2016-04-22 13:24 - 01311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-11 01:55 - 2016-04-22 13:23 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-05-11 01:55 - 2016-03-31 01:50 - 01307328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 01:55 - 2016-03-30 22:40 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-11 01:54 - 2016-04-09 23:21 - 01763376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 01:54 - 2016-04-09 23:21 - 01489088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-11 01:54 - 2016-04-09 16:58 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 01:54 - 2016-04-09 16:50 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-11 01:54 - 2016-04-06 16:13 - 00561960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-05-11 01:54 - 2016-04-06 16:13 - 00137976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2016-05-11 01:54 - 2016-04-06 13:20 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-05-11 01:54 - 2016-04-06 13:19 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-05-11 01:54 - 2016-04-06 13:19 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-05-11 01:54 - 2016-04-06 12:49 - 00120384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2016-05-11 01:54 - 2016-04-06 12:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-05-11 01:54 - 2016-04-06 11:57 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-05-11 01:54 - 2016-04-06 11:52 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-11 01:54 - 2016-04-06 11:20 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-05-11 01:54 - 2016-04-06 10:48 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-11 01:54 - 2016-03-28 20:42 - 07446368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 01:53 - 2016-04-11 01:21 - 00074584 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2016-05-11 01:53 - 2016-04-10 02:48 - 00738096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 01:53 - 2016-04-10 02:48 - 00613624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-11 01:53 - 2016-04-10 00:37 - 01549144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-11 01:53 - 2016-04-09 23:14 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-11 01:53 - 2016-04-09 18:29 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-05-11 01:53 - 2016-04-09 17:07 - 01097728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-04-19 03:24 - 2016-04-19 03:24 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\dvdcss
2016-04-18 03:51 - 2016-04-18 03:54 - 1647668208 _____ C:\Users\Nordy\Downloads\sta3.zip
2016-04-17 12:45 - 2016-04-17 12:49 - 1331687288 _____ C:\Users\Nordy\Downloads\SotP_Alpha_0.80.82 (1).zip
2016-04-17 12:35 - 2016-04-17 12:35 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-04-17 12:35 - 2016-04-17 12:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-04-17 12:34 - 2016-04-17 12:35 - 00000000 ____D C:\Program Files (x86)\WinRAR
2016-04-17 12:34 - 2016-04-17 12:34 - 01808528 _____ C:\Users\Nordy\Downloads\wrar531.exe
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-05-15 01:07 - 2015-01-26 04:11 - 00000000 ____D C:\Users\Nordy
2016-05-15 00:43 - 2014-07-15 05:36 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-727363808-1973197721-797726289-1001
2016-05-15 00:38 - 2015-06-23 19:44 - 00000000 ____D C:\ProgramData\VMware
2016-05-15 00:37 - 2014-07-14 14:01 - 00000000 ____D C:\ProgramData\NVIDIA
2016-05-15 00:37 - 2013-08-22 09:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-05-15 00:08 - 2015-01-29 05:41 - 00003926 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3EC96B2F-9B76-4239-88D2-D78DDA6DD11B}
2016-05-14 23:01 - 2015-09-18 16:23 - 00000000 ____D C:\Users\Nordy\AppData\LocalLow\uTorrent
2016-05-14 23:01 - 2015-07-27 17:15 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\uTorrent
2016-05-14 22:54 - 2016-03-27 15:00 - 00001619 _____ C:\Users\Public\Desktop\League of Legends.lnk
2016-05-14 22:54 - 2016-03-15 18:10 - 00000879 _____ C:\Users\Public\Desktop\Ventrilo.lnk
2016-05-14 22:54 - 2016-02-09 22:37 - 00001244 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2016-05-14 22:54 - 2016-01-10 13:53 - 00002158 _____ C:\Users\Public\Desktop\LEGO Digital Designer.lnk
2016-05-14 22:54 - 2015-10-23 13:30 - 00001257 _____ C:\Users\Nordy\Desktop\TeamSpeak 3 Client.lnk
2016-05-14 22:54 - 2015-09-30 19:50 - 00001219 _____ C:\Users\Nordy\Desktop\Uplay.lnk
2016-05-14 22:54 - 2015-07-27 17:38 - 00000927 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-05-14 22:54 - 2015-07-27 17:16 - 00002665 _____ C:\Users\Nordy\Desktop\µTorrent.lnk
2016-05-14 22:54 - 2015-07-20 16:35 - 00002707 _____ C:\Users\Public\Desktop\Skype.lnk
2016-05-14 22:54 - 2015-07-05 10:01 - 00002546 _____ C:\Users\Public\Desktop\DarthMod Empire Commander.lnk
2016-05-14 22:54 - 2015-06-23 19:45 - 00002139 _____ C:\Users\Public\Desktop\VMware Workstation.lnk
2016-05-14 22:54 - 2015-06-20 11:36 - 00001761 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-05-14 22:54 - 2015-06-20 11:33 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-05-14 22:54 - 2015-04-17 03:46 - 00001099 _____ C:\Users\Public\Desktop\StarCraft II.lnk
2016-05-14 22:54 - 2015-04-17 03:39 - 00001152 _____ C:\Users\Public\Desktop\Battle.net.lnk
2016-05-14 22:54 - 2015-04-07 17:29 - 00001782 _____ C:\Users\Public\Desktop\Empire Earth II - The Art of Supremacy.lnk
2016-05-14 22:54 - 2015-04-07 17:29 - 00001761 _____ C:\Users\Public\Desktop\Empire Earth II.lnk
2016-05-14 22:54 - 2015-01-26 05:26 - 00001420 _____ C:\Users\Nordy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-05-14 22:54 - 2015-01-26 04:16 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-05-14 22:54 - 2015-01-26 04:11 - 00000445 _____ C:\Users\Nordy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-05-14 22:54 - 2015-01-26 04:11 - 00000443 _____ C:\Users\Nordy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-05-14 22:54 - 2014-10-15 04:10 - 00002395 _____ C:\Users\Nordy\Desktop\Third Age - Total War.lnk
2016-05-14 22:54 - 2014-08-22 06:12 - 00001445 _____ C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2016-05-14 22:54 - 2014-08-15 23:29 - 00002523 _____ C:\Users\Public\Desktop\Republic at War.lnk
2016-05-14 22:54 - 2014-08-11 03:23 - 00001775 _____ C:\Users\Nordy\Desktop\Pirates of the Burning Sea.lnk
2016-05-14 22:54 - 2014-07-21 02:06 - 00002777 _____ C:\Users\Public\Desktop\Killer Network Manager.lnk
2016-05-14 22:54 - 2014-07-21 01:22 - 00001881 _____ C:\Users\Public\Desktop\Alienware Command Center.lnk
2016-05-14 22:54 - 2014-07-13 23:05 - 00000959 _____ C:\Users\Public\Desktop\Steam.lnk
2016-05-14 22:54 - 2014-07-13 22:56 - 00000996 _____ C:\Users\Public\Desktop\AlienRespawn.lnk
2016-05-14 22:44 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\Globalization
2016-05-14 22:41 - 2015-04-17 03:39 - 00000000 ____D C:\Users\Nordy\AppData\Local\Battle.net
2016-05-14 19:15 - 2014-12-20 11:19 - 00000000 ____D C:\Program Files (x86)\Google
2016-05-14 19:14 - 2015-06-20 15:42 - 00000000 ____D C:\Users\Nordy\AppData\Local\Deployment
2016-05-14 19:06 - 2016-02-09 22:35 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
2016-05-14 19:05 - 2015-04-17 03:38 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-05-14 18:51 - 2014-09-24 02:15 - 00996824 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-14 18:51 - 2013-08-22 08:36 - 00000000 ____D C:\WINDOWS\Inf
2016-05-14 18:45 - 2014-07-23 05:21 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\Skype
2016-05-14 18:38 - 2014-07-21 01:20 - 00000000 ____D C:\Users\Nordy\AppData\Local\Downloaded Installations
2016-05-14 18:38 - 2014-07-21 00:59 - 00000000 ____D C:\WINDOWS\Downloaded Installations
2016-05-14 15:57 - 2014-07-13 23:05 - 00000000 ____D C:\Program Files (x86)\Steam
2016-05-14 15:35 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\rescache
2016-05-14 15:08 - 2015-10-23 13:30 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\TS3Client
2016-05-14 13:35 - 2013-08-22 09:44 - 00337864 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-14 13:30 - 2014-12-25 00:46 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-14 13:30 - 2014-09-24 01:53 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-14 13:25 - 2016-02-13 09:21 - 00000000 ___HD C:\$WINDOWS.~BT
2016-05-14 12:41 - 2015-01-26 21:00 - 00000000 ___DC C:\WINDOWS\Panther
2016-05-13 21:35 - 2012-07-26 02:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-13 17:19 - 2015-10-23 13:30 - 00000000 ____D C:\Users\Nordy\AppData\Local\TeamSpeak 3 Client
2016-05-11 22:24 - 2014-07-19 10:29 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 22:15 - 2013-01-22 22:28 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-11 16:18 - 2015-04-17 03:44 - 00000000 ____D C:\Program Files (x86)\StarCraft II
2016-05-11 14:22 - 2015-01-26 04:11 - 00000000 ____D C:\Users\UpdatusUser
2016-05-11 01:53 - 2016-04-12 18:37 - 01737088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-11 01:53 - 2016-04-12 18:37 - 01663184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-05-11 01:53 - 2016-04-12 18:37 - 01523208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-05-11 01:53 - 2016-04-12 18:37 - 01501488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-11 01:53 - 2016-04-12 18:37 - 01490120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-05-11 01:53 - 2016-04-12 18:37 - 01358952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-05-11 01:53 - 2016-04-12 18:37 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-05-11 00:15 - 2013-08-22 08:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-05-10 20:49 - 2015-04-08 03:03 - 00000000 ____D C:\ProgramData\SupportAssistAgent
2016-05-05 19:43 - 2015-04-06 03:36 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX
2016-05-05 19:43 - 2015-04-06 03:36 - 00000000 ___SD C:\WINDOWS\system32\GWX
2016-05-05 18:37 - 2016-02-28 19:38 - 00000000 ____D C:\Users\Nordy\AppData\Local\Game Dev Tycoon - Steam
2016-05-04 22:31 - 2013-08-22 10:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-05-04 22:31 - 2013-08-22 10:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-24 22:49 - 2015-07-27 17:38 - 00000000 ____D C:\Users\Nordy\AppData\Roaming\vlc
2016-04-22 02:57 - 2013-01-22 22:24 - 00453288 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-17 08:26 - 2013-08-22 10:36 - 00000000 ___RD C:\WINDOWS\ToastData
 
==================== Files in the root of some directories =======
 
2014-07-15 06:37 - 2014-07-15 06:37 - 0000000 _____ () C:\Users\Nordy\AppData\Local\Driver_LOM_8161Present.flag
 
Some files in TEMP:
====================
C:\Users\Nordy\AppData\Local\Temp\jre-8u77-windows-au.exe
C:\Users\Nordy\AppData\Local\Temp\libeay32.dll
C:\Users\Nordy\AppData\Local\Temp\msvcr120.dll
C:\Users\Nordy\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Nordy\AppData\Local\Temp\sqlite3.dll
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-05-14 15:12
 
==================== End of FRST.txt ============================
 
Here is the Addition.txt
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-05-2016
Ran by Nordy (2016-05-15 01:35:51)
Running from C:\Users\Nordy\Downloads
Windows 8.1 (X64) (2015-01-26 10:26:09)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-727363808-1973197721-797726289-500 - Administrator - Disabled)
Guest (S-1-5-21-727363808-1973197721-797726289-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-727363808-1973197721-797726289-1006 - Limited - Enabled)
Nordy (S-1-5-21-727363808-1973197721-797726289-1001 - Administrator - Enabled) => C:\Users\Nordy
UpdatusUser (S-1-5-21-727363808-1973197721-797726289-1004 - Limited - Enabled) => C:\Users\UpdatusUser
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.95 - Adobe Systems Incorporated)
Age of Mythology: Extended Edition (HKLM-x32\...\Steam App 266840) (Version:  - SkyBox Labs)
AlienRespawn - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.5.0.1 - Alienware)
AlienRespawn (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.5.0.1 - Alienware)
Alienware Command Center (HKLM-x32\...\InstallShield_{D4CE21D4-27E5-46DB-9FFE-553A90AD4B9F}) (Version: 3.5.14.0 - Alienware Corp.)
Alienware Command Center (Version: 3.5.14.0 - Alienware Corp.) Hidden
Alienware On-Screen Display (HKLM-x32\...\InstallShield_{0D69462F-99CC-4F8D-942E-666E21CE59F8}) (Version: 0.33.0.11C - )
Alienware On-Screen Display (x32 Version: 0.33.0.11C - ) Hidden
Apple Application Support (32-bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
BitRaider Web Client (HKLM-x32\...\BitRaider Web Client) (Version: 1.1.6.9 - BitRaider, LLC)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.223.215 - Broadcom Corporation)
Command and Conquer 3: Kane's Wrath (HKLM-x32\...\Steam App 24810) (Version:  - EA Los Angeles)
Command and Conquer 3: Tiberium Wars (HKLM-x32\...\Steam App 24790) (Version:  - EA Los Angeles)
Company of Heroes 2 (HKLM-x32\...\Steam App 231430) (Version:  - Relic Entertainment)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
DarthMod Empire Commander 7,0+ (HKLM-x32\...\DarthMod Empire Commander 7,0+) (Version:  - )
Dell Data Vault (Version: 4.3.8.0 - Dell Inc.) Hidden
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.2.6793.01 - Dell)
Dell SupportAssistAgent (HKLM-x32\...\{3ED468C2-2235-4747-90AD-A7A34F0FE70A}) (Version: 1.2.2.8 - Dell)
Divinity: Dragon Commander (HKLM-x32\...\Steam App 243950) (Version:  - Larian Studios)
Divinity: Dragon Commander Beta (HKLM-x32\...\Steam App 230170) (Version:  - )
Dragon's Dogma: Dark Arisen (HKLM-x32\...\Steam App 367500) (Version:  - Capcom)
Empire Earth II Gold Edition (HKLM-x32\...\GOGPACKEMPIREEARTH2GOLD_is1) (Version: 2.0.0.17 - GOG.com)
Empire: Total War (HKLM-x32\...\Steam App 10500) (Version:  - The Creative Assembly)
EMSC (x32 Version: 0.0.0.25 - Compal Electronics, Inc.) Hidden
Fallout 4 (HKLM-x32\...\Steam App 377160) (Version:  - Bethesda Game Studios)
FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version:  - Subset Games)
Game Dev Tycoon (HKLM-x32\...\Steam App 239820) (Version:  - Greenheart Games)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Killing Floor 2 (HKLM-x32\...\Steam App 232090) (Version:  - Tripwire Interactive)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
LEGO Digital Designer (HKLM-x32\...\New LEGO Digital Designer) (Version:  - LEGO A/S)
LEGO® Jurassic World (HKLM-x32\...\Steam App 352400) (Version:  - TT Games Ltd)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Marvel Heroes 2016 (HKLM\...\Steam App 226320) (Version:  - Gazillion Entertainment)
Medieval II: Total War (HKLM-x32\...\Steam App 4700) (Version:  - The Creative Assembly)
Men of War: Assault Squad (HKLM-x32\...\Steam App 64000) (Version:  - Digitalmindsoft)
Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version:  - TaleWorlds Entertainment)
Napoleon: Total War (HKLM-x32\...\Steam App 34030) (Version:  - The Creative Assembly)
Naval Action (HKLM-x32\...\Steam App 311310) (Version:  - Game-Labs)
NVIDIA 3D Vision Driver 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation)
NVIDIA Graphics Driver 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
NVIDIA PhysX (Legacy) (HKLM-x32\...\{FAAC26AD-73BA-40CE-86AA-C9213F9E064A}) (Version: 9.13.0604 - NVIDIA Corporation)
NVIDIA Update 1.15.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.15.2 - NVIDIA Corporation)
ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version:  - Spiral Game Studios)
Pirates Of The Burning Sea (HKLM-x32\...\potbs) (Version: 1.0.0.22 - )
Pirates of the Burning Sea (HKLM-x32\...\Steam App 24140) (Version:  - Flying Lab Software)
Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.0.36.1067 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer E220x Drivers (Version: 1.0.36.1067 - Qualcomm Atheros) Hidden
Qualcomm Atheros Killer Network Manager Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.0.36.1067 - Qualcomm Atheros)
Qualcomm Atheros Network Manager (Version: 1.0.36.1067 - Qualcomm Atheros) Hidden
Rainbow Six Siege - Closed Beta (HKLM-x32\...\Uplay Install 1001) (Version:  - Ubisoft)
Republic at War 1.1.5 (HKLM-x32\...\{1F3630F5-C636-49FF-9BF0-F9E2A221E60B}) (Version: 1.1.5 - Republic at War Modding Team)
Sins of a Solar Empire®: Rebellion (HKLM-x32\...\Steam App 204880) (Version:  - Ironclad Games)
Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.)
South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version:  - Obsidian Entertainment)
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.12.0040 - ST Microelectronics)
Star Trek Online (HKLM-x32\...\Steam App 9900) (Version:  - Cryptic Studios)
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version:  - Pandemic Studios)
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 8.0.0.19 - Bioware/EA)
Star Wars: Empire at War Gold (HKLM-x32\...\Steam App 32470) (Version:  - Petroglyph)
Star Wars: Knights of the Old Republic (HKLM-x32\...\Steam App 32370) (Version:  - BioWare)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
Supreme Commander (HKLM-x32\...\Steam App 9350) (Version:  - Gas Powered Games)
TeamSpeak 3 Client (HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
Tempest (HKLM-x32\...\Steam App 418180) (Version:  - Lion's Shade)
Terraria (HKLM-x32\...\Steam App 105600) (Version:  - Re-Logic)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version:  - Bethesda Game Studios)
Third Age - Total War 3.0 (Part 1of2) (HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\Third Age - Total War 3.0 (Part 1of2)) (Version:  - )
Third Age - Total War 3.0 (Part 2of2) (HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\Third Age - Total War 3.0 (Part 2of2)) (Version:  - )
Total War: ATTILA (HKLM-x32\...\Steam App 325610) (Version:  - Creative Assembly)
Total War: ROME II (HKLM-x32\...\Steam App 214950) (Version:  - Creative Assembly)
Total War: SHOGUN 2 (HKLM-x32\...\Steam App 34330) (Version:  - The Creative Assembly)
Uplay (HKLM-x32\...\Uplay) (Version: 10.0 - Ubisoft)
Ventrilo Client (HKLM-x32\...\{789289CA-F73A-4A16-A331-54D498CE069F}) (Version: 3.0.8 - Flagship Industries, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 10.0.1 - VMware, Inc)
VMware Workstation (Version: 10.0.1 - VMware, Inc.) Hidden
Warhammer 40,000: Dawn of War – Dark Crusade (HKLM-x32\...\Steam App 4580) (Version:  - Relic Entertainment)
Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version:  - Relic Entertainment)
WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9100 - Broadcom Corporation)
WinRAR 5.31 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
XCOM 2 (HKLM-x32\...\Steam App 268500) (Version:  - Firaxis)
XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version:  - Firaxis Games)
Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.20.613 - Zemana Ltd.)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {03450CD6-CDA5-4BF9-A8C7-0D78ACD71237} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssist.exe [2016-04-22] (Dell Inc.)
Task: {253385EA-F298-4F54-9D25-C51EC1724477} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-14] (Google Inc.)
Task: {26E82EF4-B7C2-4AD7-BAEF-4F1F0BA10A88} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
Task: {6B6A2917-E771-465B-A943-5A64B45C86C0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-05-11] (Microsoft Corporation)
Task: {6E1D8620-1A1A-4198-BE2E-3FEF9D778AC3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7736E507-3BED-489F-8D4F-3DE14C8B1F21} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo)
Task: {7FB392D8-5769-4560-B75F-12F859CE2A86} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-14] (Google Inc.)
Task: {B8EFF0E4-C038-4C10-9162-170981678BE6} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
Shortcut: C:\Users\Nordy\Desktop\Third Age - Total War.lnk -> C:\Program Files (x86)\SEGA\Medieval II Total War\mods\Third_Age_3\Third Age.bat ()
Shortcut: C:\Users\Nordy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Third Age - Total War 3.0 (Part 2of2)\Third Age - Total War.lnk -> C:\Program Files (x86)\SEGA\Medieval II Total War\mods\Third_Age_3\Third Age.bat ()
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-01-26 04:03 - 2013-10-23 03:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-03-20 17:12 - 2015-03-20 17:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-03-20 17:12 - 2015-03-20 17:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2013-12-16 12:54 - 2013-12-16 12:54 - 00049368 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll
2016-04-29 06:07 - 2016-04-29 06:07 - 01116672 _____ () C:\Program Files (x86)\Windows System\WinService.exe
2014-07-13 22:56 - 2013-04-19 17:51 - 00020256 _____ () C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayIcon.dll
2014-07-13 22:56 - 2013-04-19 17:52 - 00049440 _____ () C:\Program Files (x86)\AlienRespawn\Components\Shell\STCommonShellIntegration.dll
2014-07-13 22:56 - 2013-04-19 17:51 - 00019232 _____ () C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayNotBackuped.dll
2013-10-08 13:03 - 2013-10-08 13:03 - 00283648 _____ () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
2013-11-15 19:17 - 2013-11-15 19:17 - 04593968 _____ () C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
2013-10-18 11:46 - 2013-10-18 11:46 - 01260624 _____ () C:\Program Files (x86)\VMware\VMware Workstation\libxml2.dll
2009-12-18 13:07 - 2009-12-18 13:07 - 00577536 _____ () C:\Program Files (x86)\Alienware On-Screen Display\EMSC.dll
2016-05-14 19:15 - 2016-05-11 06:48 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libglesv2.dll
2016-05-14 19:15 - 2016-05-11 06:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.102\libegl.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Syst769A533C:$WIMMOUNTDATA [418]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-727363808-1973197721-797726289-1001\...\dell.com -> dell.com
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2013-08-22 08:25 - 2013-08-22 08:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-727363808-1973197721-797726289-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nordy\Desktop\untitled.png
HKU\S-1-5-21-727363808-1973197721-797726289-1004\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 10.0.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
HKLM\...\StartupApproved\Run32: => "ApnTBMon"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{C7FB6458-BB5E-4B66-9BB0-9DB8ACEB7710}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Napoleon Total War\Napoleon.exe
FirewallRules: [{81E014D1-B7BB-4DFB-B48C-497FD343A8B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Napoleon Total War\Napoleon.exe
FirewallRules: [{B28C7EF6-8B77-47DE-9FFC-16009B961F8A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Medieval II Total War\medieval2.exe
FirewallRules: [{1EF11A6D-ADFE-4BE2-8CD3-FCBF775B7ED4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Medieval II Total War\medieval2.exe
FirewallRules: [{4857D025-EDC1-4631-9BA6-E53179B215A9}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{29760720-8C3D-4676-87B3-44C72B22FDF8}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{E9697CEE-7241-45D0-9FFE-4E46C3F95224}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{46FDEA11-F6BB-4C1C-B74C-67D70F0A4808}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{99CC3BB0-C63C-4216-BA15-F6FFC4999143}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{FFC70D74-1213-4BEC-B2D9-A6843525A397}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{9B8F75E2-FB08-4D0B-B5FE-A7539BB68BD9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{AEDFEC46-9232-4781-9671-B2F69EE2E601}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{99A0400D-ED38-4896-8E58-88A7384333B7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{81DE793A-050E-4AFB-8658-C819038F7B69}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{F9E28899-A10A-47AD-9715-448C3EEF465C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Pirates of the Burning Sea\LaunchPad.exe
FirewallRules: [{D81660C6-820B-4A04-A34E-AC6254854904}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Pirates of the Burning Sea\LaunchPad.exe
FirewallRules: [{59BC727C-56F2-4421-8D40-161DAD5BC9D7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe
FirewallRules: [{6FBEE5A9-B99A-4E08-85BC-C65569ADD40C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe
FirewallRules: [{345947BD-0F4C-49E7-9397-19790630660A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Command and Conquer 3 - Kane's Wrath\CNC3EP1.exe
FirewallRules: [{5CC9B1FD-BC6E-4D94-9190-479C2F8C1F74}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Command and Conquer 3 - Kane's Wrath\CNC3EP1.exe
FirewallRules: [{4169C7C3-53BC-4AD3-BE77-0F7923B61705}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{CE816E4D-868D-4D3A-8430-CCA2DBD17853}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{C75B0744-9EC8-4A09-B2B1-3FC3F6128B42}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age of Mythology\Launcher.exe
FirewallRules: [{A7CB2639-F263-4090-9EA5-E84F214A22F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age of Mythology\Launcher.exe
FirewallRules: [{35CC88FF-07E8-44BE-B138-A5578E732DCB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Supreme Commander\bin\SupremeCommander.exe
FirewallRules: [{8295B942-C8C4-4212-BA44-86A2E0094CE2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Supreme Commander\bin\SupremeCommander.exe
FirewallRules: [{8C2E4A99-56BF-40E6-A033-2F7BE587FF10}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{3D85CE86-560D-40C1-9B0A-1B4C93836616}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{0AF46677-498A-42BD-A2D2-28E402FF4133}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{047A8BFD-23A1-4E40-848C-07176F612AFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{1E6CDAE9-CC62-44B0-B895-324026BEAEE4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{3F22F013-DF5A-4EA6-A8BE-33DF7C92F99D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{DB9AFCFB-823E-4966-B9C5-59EDDFA455CD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{2A4A13F7-B6D3-4A91-8777-89B1815BCA2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sins of a Solar Empire Rebellion\Sins of a Solar Empire Rebellion.exe
FirewallRules: [{CF0624FB-D146-4045-9CBF-949A9A0F1BB5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{CDD760F6-B58D-4BCD-A8BA-EB3EEE3F726E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dawn of War Gold\W40k.exe
FirewallRules: [{D98B2E96-2F4E-4572-99F6-3EE3970DF984}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{6079CA0E-3A12-43A9-81B7-1856C5DD21AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dawn of War Dark Crusade\darkcrusade.exe
FirewallRules: [{9942A090-3B4A-4CAA-A8B4-0E8DDC93F73E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dawn of War Dark Crusade\darkcrusade.exe
FirewallRules: [{B11682EC-0D72-4880-B4F6-4FDAF83DDDA1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{1C158C44-32A5-4F4C-8C83-07A82F4F5C57}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [UDP Query User{7EB932DE-BC9C-4575-AA86-71E612544504}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Block) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [TCP Query User{39D01C6E-BD54-41B6-ADEA-C2D4A27DB6A9}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Block) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [UDP Query User{C25ADA9B-C386-4FBA-ABEC-613B85E267F4}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [TCP Query User{0ECA0985-35E9-47C0-82C2-F1E0ADC021C5}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe
FirewallRules: [{6322AC3B-B04F-41E2-A5E2-5195D997676B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{F89E75C4-C5FD-4E9A-8095-C46CD388004D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{9FB4B343-8F2C-4547-A556-473952DA501E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D58B8919-2987-4D5B-A94B-A7B68BEA4E17}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{432CB8F1-3589-49FA-BB29-266EC23AB666}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{E34B2D92-7A34-4789-B6BD-C38F9FD92654}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{B1A9D8B3-B74A-475E-876E-02A8099389B9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Trek Online\Star Trek Online.exe
FirewallRules: [{709EA53F-4A5B-44F9-B520-F29832700925}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Trek Online\Star Trek Online.exe
FirewallRules: [TCP Query User{76F5A246-2523-4443-9C9E-874C63B68EA0}C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe
FirewallRules: [UDP Query User{D364FCC2-BD66-4233-B14F-702211840BFD}C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\star trek online\star trek online\live\gameclient.exe
FirewallRules: [{CFC5C434-8524-4B91-A1AB-7E6B85EB8B51}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{F6CDE222-87AA-4AC5-B7AD-B2F06BB8874A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{0FD4F0E1-66F9-4362-B77C-955A3F4BB70C}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{87768E65-5590-4102-AB6C-78894EE7E221}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{3E03D2B0-01FE-4446-9E3A-19A4455F9526}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{7863F4EC-75FD-4238-83AE-8500A7067627}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [TCP Query User{AAD906EE-2E33-49C4-B587-6DD7F89E1810}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{AA131AAF-A1A2-4D44-B65C-04A99063F3BA}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{6251D4D3-A8A8-459B-88B8-70074390EB84}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Attila\launcher\launcher.exe
FirewallRules: [{2D8769CC-172B-4D1B-9739-ED93F1C9A693}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Attila\launcher\launcher.exe
FirewallRules: [TCP Query User{E2E16DB7-3BBB-4C9F-AAE4-D0FB1D5A517C}C:\program files (x86)\steam\steamapps\common\total war attila\attila.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war attila\attila.exe
FirewallRules: [UDP Query User{C56E78A0-1CAB-48A0-A29A-08CC8385B561}C:\program files (x86)\steam\steamapps\common\total war attila\attila.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war attila\attila.exe
FirewallRules: [{D4535C1C-84BF-432B-95AE-1FF76D5D7538}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{BC0CA741-26AD-46C5-91F8-D751A9F74A79}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{F65A2AA9-9CBE-4F8B-BBA1-6807EE025798}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War SHOGUN 2\Shogun2.exe
FirewallRules: [{B6B96E2D-023F-4CC7-B4BC-CACDB35EA0FD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War SHOGUN 2\Shogun2.exe
FirewallRules: [TCP Query User{FA57E091-283D-4EF7-84A0-F4215064D742}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{9C3B3011-76C6-494E-98E3-AE554BC01B2F}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{CE963742-BC2E-4F5B-BDAA-34123E42AC0D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{5D16AA56-319D-4BC8-8DFF-49037F05A2FE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{47BA5065-0A42-462D-B2CE-9707D8389777}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{81C4C61E-045B-44FC-8748-9D4F033DB503}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{208A4A47-23FA-45FB-BA25-DFC60DE0D30F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{46801A1A-CC97-464B-90FF-3FF533A7C70E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{32B48F5C-35F7-4BE1-98FF-84A5EAB1A1D9}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{772B5EFF-0DAF-44D6-B493-D881FFEC893A}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{43D47EBC-F902-4800-BB45-6CCB89EF8DFC}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{1CC72762-26E7-46A0-BF56-96C87B5801AA}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{4DB2F185-74CD-49DB-8A84-57D7C61364DE}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{58529203-0147-4D3C-8D6C-6D3EC502886E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{8408D188-A6FF-46A9-9198-4A99E48533A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A451C01B-80A4-4BD7-B76C-E4ADF36581C8}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{3DE28001-40A5-4F51-9E23-171EDA1514D2}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{AFD00389-03AB-418D-B3A1-008ABDBB1859}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{49883BA0-2D23-43F2-B8EF-B4E4DCD7F103}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4CC591B2-BF5D-4AFE-9D1E-6C90E12361DB}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{971B8FF5-A21B-4B21-972B-02D633463357}] => (Allow) C:\Users\Nordy\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B57C03A5-C6E0-4B4C-A593-111B9F6DF923}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{760B8FE9-65B0-4599-8641-BB2EEF2BEC88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{9C07E02B-4271-4A99-8BF6-1CEE03D90C18}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{EFBEEFE5-AE5F-418C-A3F0-C2EF66627939}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{3EA83E0E-F96A-4C0B-AE19-EEBC1977314A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Company of Heroes 2\RelicCoH2.exe
FirewallRules: [{CB2E67A2-3F9B-4F83-95FC-0C4FCC8EA236}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Company of Heroes 2\RelicCoH2.exe
FirewallRules: [{2BAA3F9C-4D4F-455A-BEF8-48826AA244AA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{7E0EE5E6-506F-44B6-B473-0A9AECFE5CC7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{3BA4105D-2DB0-40EC-AAF5-6276125C46D9}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Rainbow Six Siege - Closed Beta\RainbowSix.exe
FirewallRules: [{B078ACAA-EDE3-43AC-A9F5-4D787B0C5BE2}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Rainbow Six Siege - Closed Beta\RainbowSix.exe
FirewallRules: [{57673CBD-C0A9-41FE-89CF-EA78319FC621}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [{13B4814B-45FF-4371-85E5-72ACD0496BF4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Rome II\launcher\launcher.exe
FirewallRules: [TCP Query User{B2EF02BF-F0BC-4287-8959-0C9734AC3BD4}C:\program files (x86)\starcraft ii\versions\base38215\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38215\sc2_x64.exe
FirewallRules: [UDP Query User{3D3AE36F-62A9-40FB-816C-1FA6BB166D5F}C:\program files (x86)\starcraft ii\versions\base38215\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38215\sc2_x64.exe
FirewallRules: [TCP Query User{42D9F64A-B3CD-459E-9089-8A887921F4E1}C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe
FirewallRules: [UDP Query User{32647B85-5513-418A-AEFD-E02257543697}C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe
FirewallRules: [TCP Query User{8120A58D-F3EE-45A4-9F9D-0080605B5BCC}C:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [UDP Query User{1B05F068-AE97-4E35-8EBB-CDA3B9BFD761}C:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe] => (Block) C:\program files (x86)\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [{78F4583F-BA8C-4FB0-8A63-5F411B873ADE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{FED59A6A-378A-494F-992F-1B3A44787146}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{6CD51A91-0BB5-4E69-8212-F33F9F7F55AC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Men of War Assault Squad\mow_assault_squad.exe
FirewallRules: [{F6B6D0D0-159C-4D1B-9A1E-FAF4CA69A209}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Men of War Assault Squad\mow_assault_squad.exe
FirewallRules: [{EB5F4E4F-C5C4-4591-93FD-52BE088D559F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DDDA\DDDA.exe
FirewallRules: [{78C55BF6-EAFA-4A17-8597-D2C733C66BF8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DDDA\DDDA.exe
FirewallRules: [{2E266919-D3D4-4EA0-8BD3-E095DAABC250}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tempest\Tempest.exe
FirewallRules: [{8A1AC19B-BFED-4140-8164-51B0D3BFE969}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tempest\Tempest.exe
FirewallRules: [{66A88F58-D8B1-4D44-B8EC-27B092E2DF59}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\Client.exe
FirewallRules: [{8319C2F9-2573-4189-88ED-693A389BC76C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\Client.exe
FirewallRules: [{423BCF92-FECE-441C-BE06-6BBE67210804}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\Client_.exe
FirewallRules: [{58CAFE92-C9CA-4034-ADB7-162B7FA3E18F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\Client_.exe
FirewallRules: [{28511176-E835-4F0E-894C-DDE2C96878E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\NavalActionCrashSender.exe
FirewallRules: [{0445F81D-681B-4CD0-A078-42F12FE5467F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Naval Action\NavalActionCrashSender.exe
FirewallRules: [{CCECA12C-A2F2-4909-BA4F-FD11DC516795}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{7B87A3D8-9159-458F-9055-9DE68234D602}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [TCP Query User{32D9A8FD-A913-4FF1-8760-ECCAA9B60186}C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{25D63D07-7F10-4691-B09C-8921B5104443}C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{13A4248F-4B95-4A22-91BC-63C067D65D18}] => (Block) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{0193540B-0A64-4203-8BB2-F180B74678BE}] => (Block) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{1EB42DA6-D712-40E9-AF3B-66276AA51646}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Divinity Dragon Commander\Shipping\DCApp.exe
FirewallRules: [{2F0A5F41-0D68-4047-B37F-113C487C643C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Divinity Dragon Commander\Shipping\DCApp.exe
FirewallRules: [{C994885E-EBB0-4647-B734-12626BCDD03E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Attila\launcher\launcher.exe
FirewallRules: [{324499ED-5CC0-453E-A92F-9401C47214ED}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Attila\launcher\launcher.exe
FirewallRules: [{A8FD38E9-FCFC-422B-91D8-7445D9744C32}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{5A8894BF-D956-4C99-8352-3B925A6FC65C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{99B1F870-3B24-4BD0-A496-EC4ED424E1AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2016.exe
FirewallRules: [{E567BADD-BC29-4A87-804E-5BB76170FBD6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2016.exe
FirewallRules: [{EBF44398-08A6-45B1-B32D-A19C409722D1}] => (Allow) C:\Program Files (x86)\Ventrilo\Ventrilo.exe
FirewallRules: [{1FE9D6DA-EDBF-498A-B35F-9DA6A1B29D09}] => (Allow) C:\Program Files (x86)\Ventrilo\Ventrilo.exe
FirewallRules: [{EE58B3AA-785C-4665-B72A-5E8DD65B8E4E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dragon Commander\Shipping\DCApp.exe
FirewallRules: [{D3E39F3F-7BBD-44E6-88A5-64A8A3339A7E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dragon Commander\Shipping\DCApp.exe
FirewallRules: [{01C50F2E-F137-4C09-9464-76831CE3B79F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{E5DB9DAF-F94A-444F-BD87-B3D5FE51EB9C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{8BB4749C-E071-469D-8D2A-B1A1466B3B88}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Restore Points =========================
 
23-04-2016 21:17:29 Scheduled Checkpoint
02-05-2016 13:58:43 Scheduled Checkpoint
05-05-2016 19:42:14 Windows Update
11-05-2016 22:08:49 Windows Update
14-05-2016 23:33:58 JRT Pre-Junkware Removal
14-05-2016 23:37:42 JRT Pre-Junkware Removal
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (05/15/2016 12:36:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_PcaSvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.18233, time stamp: 0x56bb4ebb
Exception code: 0xc0000008
Fault offset: 0x00000000000925fa
Faulting process id: 0x4a4
Faulting application start time: 0xsvchost.exe_PcaSvc0
Faulting application path: svchost.exe_PcaSvc1
Faulting module path: svchost.exe_PcaSvc2
Report Id: svchost.exe_PcaSvc3
Faulting package full name: svchost.exe_PcaSvc4
Faulting package-relative application ID: svchost.exe_PcaSvc5
 
Error: (05/14/2016 06:50:32 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY)
Description: There was an error with the Windows Location Provider database
 
Error: (05/14/2016 06:41:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_PcaSvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.18233, time stamp: 0x56bb4ebb
Exception code: 0xc0000008
Fault offset: 0x00000000000925fa
Faulting process id: 0x478
Faulting application start time: 0xsvchost.exe_PcaSvc0
Faulting application path: svchost.exe_PcaSvc1
Faulting module path: svchost.exe_PcaSvc2
Report Id: svchost.exe_PcaSvc3
Faulting package full name: svchost.exe_PcaSvc4
Faulting package-relative application ID: svchost.exe_PcaSvc5
 
Error: (05/11/2016 05:55:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5250
 
Error: (05/11/2016 05:55:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5250
 
Error: (05/11/2016 05:55:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/11/2016 05:55:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3672
 
Error: (05/11/2016 05:55:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3672
 
Error: (05/11/2016 05:55:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
 
Error: (05/11/2016 05:55:49 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2469
 
 
System errors:
=============
Error: (05/15/2016 12:37:12 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Program Compatibility Assistant Service service, but this action failed with the following error: 
%%1056
 
Error: (05/15/2016 12:37:12 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Device Association Service service, but this action failed with the following error: 
%%1056
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Driver Foundation - User-mode Driver Framework service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The WLAN AutoConfig service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Diagnostic System Host service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Distributed Link Tracking Client service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Superfetch service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Program Compatibility Assistant Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Network Connection Broker service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 5000 milliseconds: Restart the service.
 
Error: (05/15/2016 12:36:12 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The HomeGroup Listener service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.
 
 
CodeIntegrity:
===================================
  Date: 2016-05-15 01:32:12.800
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:32:12.616
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:32:12.310
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:32:12.126
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:32:11.939
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:31:06.268
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:31:06.100
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:31:05.822
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:31:05.649
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-05-15 01:31:05.385
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-4700MQ CPU @ 2.40GHz
Percentage of memory in use: 28%
Total physical RAM: 7983.02 MB
Available physical RAM: 5688.21 MB
Total Virtual: 8815.02 MB
Available Virtual: 6081.43 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:929.82 GB) (Free:286.05 GB) NTFS
Drive g: (THE_FORCE_AWAKENS) (CDROM) (Total:7.65 GB) (Free:0 GB) UDF
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000)
 
Partition: GPT.
 
==================== End of Addition.txt ============================


#8 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 15 May 2016 - 04:50 AM

Hi again,

 

Please do the following:

 

İnternet explorer:

Internet Explorer 9, 10 and 11 (Win) - Clearing Cache and Cookies
https://kb.wisc.edu/page.php?id=15141
Next >>
How to reset Internet Explorer settings
https://support.microsoft.com/en-us/kb/923737

 

Restart İnternet Explorer.

 

Chrome:
Delete your cache, history, and other browser data
https://support.google.com/chrome/answer/95582?hl=en
Next >>
Reset Chrome browser settings

https://support.google.com/chrome/answer/3296214?hl=en

 

Restart Chrome.

====================================================================================

Please do the following;

Scan with ZOEK

Please download ZOEK by Smeenk and save it to your desktop (preferred version is the *.exe one)
Temporary disable your AntiVirus and AntiSpyware protection - instructions here.

  • Right-click on 51a612a8b27e2-Zoek.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Wait patiently until the main console will appear, it may take a minute or two.
  • In the main box please paste in the following script:
firefoxlook;
chromelook;
ielook;
process;
services-list;
installedprogs;
startupall;
skipfix-iedefaults;
filesrcm;
srinfo;
DIR /S /A:L "%systemdrive%\*">>"%temp%\log.txt";b
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Advanced\Folder\Hidden\SHOWALL];e 
  • Make sure that Scan All Users option is checked.
  • Push Run Script and wait patiently. The scan may take a couple of minutes.
  • When the scan completes, a zoek-results logfile should open in notepad.
  • If a reboot is needed, it will be opened after it. You may also find it at your main drive (usually C:\ drive)

Post its content into your next reply.

 


Edited by olgun52, 16 May 2016 - 04:46 PM.

Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#9 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 12:49 PM

Hello,

 

Ok this this is really long and it wont post in here so im going to have to post it in little parts.

 

Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by Nordy on Sun 05/15/2016 at 12:19:15.46.
Microsoft Windows 8.1 6.3.9600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Nordy\Downloads\zoek.exe [Scan all users] [Script inserted] 
 
==== System Restore Info ======================
 
5/15/2016 12:21:48 PM Zoek.exe System Restore Point Created Successfully.
 
==== Installed Programs ======================
 
Adobe AIR  
Adobe Flash Player 14 Plugin  
Age of Mythology: Extended Edition  
AlienRespawn  
Alienware Command Center  
Alienware On-Screen Display  
Apple Application Support (32-bit)  
Apple Application Support (64-bit)  
Apple Mobile Device Support  
Apple Software Update  
Battle.net  
BitRaider Streaming Client  
BitRaider Web Client  
Bonjour  
Broadcom 802.11 Network Adapter  
Command and Conquer 3: Kane's Wrath  
Command and Conquer 3: Tiberium Wars  
Company of Heroes 2  
Counter-Strike: Global Offensive  
DarthMod Empire Commander 7,0+  
Dell Data Vault  
Dell SupportAssist  
Dell SupportAssistAgent  
Divinity: Dragon Commander  
Divinity: Dragon Commander Beta  
Dragon's Dogma: Dark Arisen  
Empire Earth II Gold Edition  
Empire: Total War  
EMSC  
Fallout 4  
FTL: Faster Than Light  
Game Dev Tycoon  
Google Chrome  
Google Update Helper  
iTunes  
Java 7 Update 67  
Java Auto Updater  
Killing Floor 2  
League of Legends  
LEGO Digital Designer  
LEGOr Jurassic World  
Malwarebytes Anti-Malware version 2.2.1.1043  
Marvel Heroes 2016  
Medieval II: Total War  
Men of War: Assault Squad  
Metric Collection SDK  
Microsoft Silverlight  
Microsoft Visual C++ 2005 Redistributable  
Microsoft Visual C++ 2005 Redistributable (x64)  
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17  
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148  
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161  
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022  
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17  
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148  
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161  
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219  
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219  
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610  
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030  
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030  
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030  
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030  
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030  
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030  
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501  
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501  
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005  
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005  
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005  
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005  
Microsoft XNA Framework Redistributable 4.0  
Mount & Blade: Warband  
Napoleon: Total War  
Naval Action  
NVIDIA 3D Vision Driver 331.65  
NVIDIA Control Panel 331.65  
NVIDIA Graphics Driver 331.65  
NVIDIA HD Audio Driver 1.3.26.4  
NVIDIA Install Application  
NVIDIA PhysX  
NVIDIA PhysX (Legacy)  
NVIDIA Stereoscopic 3D Driver  
NVIDIA Update 1.15.2  
NVIDIA Update Components  
ORION: Prelude  
Pirates of the Burning Sea  
Pirates Of The Burning Sea  
Qualcomm Atheros Bandwidth Control Filter Driver  
Qualcomm Atheros Killer E220x Drivers  
Qualcomm Atheros Killer Network Manager Suite  
Qualcomm Atheros Network Manager  
Rainbow Six Siege - Closed Beta  
Republic at War 1.1.5  
Sins of a Solar Empirer: Rebellion  
SkypeT 7.10  
South ParkT: The Stick of TruthT  
ST Microelectronics 3 Axis Digital Accelerometer Solution  
Star Trek Online  
Star Wars - Battlefront II  
Star Wars The Old Republic  
Star Wars: Empire at War Gold  
Star Wars: Knights of the Old Republic  
Star Wars: The Old Republic  
StarCraft II  
Steam  
Supreme Commander  
TeamSpeak 3 Client  
Tempest  
Terraria  
The Elder Scrolls V: Skyrim  
Third Age - Total War 3.0 (Part 1of2)  
Third Age - Total War 3.0 (Part 2of2)  
tools-freebsd  
tools-linux  
tools-netware  
tools-solaris  
tools-windows  
tools-winPre2k  
Total War: ATTILA  
Total War: ROME II  
Total War: SHOGUN 2  
Uplay  
Ventrilo Client  
VLC media player  
VMware Workstation  
Warhammer 40,000: Dawn of War - Dark Crusade  
Warhammer 40,000: Dawn of War - Game of the Year Edition  
WIDCOMM Bluetooth Software  
WinRAR 5.31 (32-bit)  
World of Warcraft  
XCOM 2  
XCOM: Enemy Unknown  
Zemana AntiMalware  
 
==== Running Processes ======================
 
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\WINDOWS\SYSWOW64\VMNAT.EXE
C:\Program Files (x86)\Windows System\WinService.exe
C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
C:\WINDOWS\SYSWOW64\VMNETDHCP.EXE
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe
C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
C:\Program Files\Alienware\Command Center\AlienwareTactXMacroController.exe
C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\Alienware\Command Center\AlienFusionController.exe
C:\WINDOWS\SysWOW64\RunDll32.exe
C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Nordy\Downloads\zoek.exe
C:\WINDOWS\SysWOW64\cmd.exe
C:\WINDOWS\SysWOW64\cmd.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\WINDOWS\SysWOW64\cmd.exe
 
==== Services(whitelist) ======================
Powered by E Dev
 
R2 - [AlienFusionService] - Alienware Fusion Service - c:\program files\alienware\command center\alienfusionservice.exe
R2 - [Apple Mobile Device Service] - Apple Mobile Device Service - c:\program files\common files\apple\mobile device support\applemobiledeviceservice.exe
R2 - [Bonjour Service] - Bonjour Service - c:\program files\bonjour\mdnsresponder.exe
R2 - [btwdins] - Bluetooth Service - c:\program files\widcomm\bluetooth software\btwdins.exe
R2 - [DellDataVault] - Dell Data Vault - c:\program files\dell\delldatavault\delldatavault.exe
R2 - [DellDataVaultWiz] - Dell Data Vault Wizard - c:\program files\dell\delldatavault\delldatavaultwiz.exe
R2 - [MSMQ] - Message Queuing - c:\windows\system32\mqsvc.exe
R2 - [nvsvc] - NVIDIA Display Driver Service - c:\windows\system32\nvvsvc.exe
R2 - [nvUpdatusService] - NVIDIA Update Service Daemon - c:\program files (x86)\nvidia corporation\nvidia update core\daemonu.exe
R2 - [Qualcomm Atheros Killer Service V2] - Qualcomm Atheros Killer Service V2 - c:\program files\qualcomm atheros\network manager\killerservice.exe
R2 - [Stereo Service] - NVIDIA Stereoscopic 3D Driver Service - c:\program files (x86)\nvidia corporation\3d vision\nvscpapisvr.exe
R2 - [SupportAssistAgent] - Dell SupportAssist Agent - c:\program files (x86)\dell\supportassistagent\bin\supportassistagent.exe
R2 - [VMAuthdService] - VMware Authorization Service - c:\program files (x86)\vmware\vmware workstation\vmware-authd.exe
R2 - [VMnetDHCP] - VMware DHCP Service - c:\windows\syswow64\vmnetdhcp.exe
R2 - [VMUSBArbService] - VMware USB Arbitration Service - c:\program files (x86)\common files\vmware\usb\vmware-usbarbitrator64.exe
R2 - [VMware NAT Service] - VMware NAT Service - c:\windows\syswow64\vmnat.exe
R2 - [WinDefend] - Windows Defender Service - c:\program files\windows defender\msmpeng.exe
R2 - [WMPNetworkSvc] - Windows Media Player Network Sharing Service - c:\program files\windows media player\wmpnetwk.exe
R2 - [WSearch] - Windows Search - c:\windows\system32\searchindexer.exe
R2 - [ZAMSvc] - ZAM Controller Service - c:\program files (x86)\zemana antimalware\zam.exe
R3 - [iPod Service] - iPod Service - c:\program files\ipod\bin\ipodservice.exe
R3 - [VSS] - Volume Shadow Copy - c:\windows\system32\vssvc.exe
S2 - [BcmBtRSupport] - Bluetooth Driver Management Service - c:\windows\system32\btwrsupportservice.exe
S2 - [gupdate] - Google Update Service (gupdate) - c:\program files (x86)\google\update\googleupdate.exe
S2 - [SkypeUpdate] - Skype Updater - c:\program files (x86)\skype\updater\updater.exe
S2 - [sppsvc] - Software Protection - c:\windows\system32\sppsvc.exe
S3 - [ALG] - Application Layer Gateway Service - c:\windows\system32\alg.exe
S3 - [aspnet_state] - ASP.NET State Service - c:\windows\microsoft.net\framework64\v4.0.30319\aspnet_state.exe
S3 - [BRSptStub] - BitRaider Mini-Support Service Stub Loader - c:\programdata\bitraider\brsptstub.exe
S3 - [COMSysApp] - COM+ System Application - c:\windows\system32\dllhost.exe
S3 - [Fax] - Fax - c:\windows\system32\fxssvc.exe
S3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe
S3 - [gupdatem] - Google Update Service (gupdatem) - c:\program files (x86)\google\update\googleupdate.exe
S3 - [IDriverT] - InstallDriver Table Manager - c:\program files (x86)\common files\installshield\driver\1050\intel 32\idrivert.exe
S3 - [IEEtwCollectorService] - Internet Explorer ETW Collector Service - c:\windows\system32\ieetwcollector.exe
S3 - [ioloEnergyBooster] - ioloEnergyBooster - c:\program files\alienware\command center\ioloenergybooster.exe
S3 - [MSDTC] - Distributed Transaction Coordinator - c:\windows\system32\msdtc.exe
S3 - [msiserver] - Windows Installer - c:\windows\system32\msiexec.exe
S3 - [PerfHost] - Performance Counter DLL Host - c:\windows\syswow64\perfhost.exe
S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - c:\windows\system32\locator.exe
S3 - [SNMPTRAP] - SNMP Trap - c:\windows\system32\snmptrap.exe
S3 - [Steam Client Service] - Steam Client Service - c:\program files (x86)\common files\steam\steamservice.exe
S3 - [TrustedInstaller] - Windows Modules Installer - c:\windows\servicing\trustedinstaller.exe
S3 - [vds] - Virtual Disk - c:\windows\system32\vds.exe
S3 - [VMwareHostd] - VMware Workstation Server - c:\program files (x86)\vmware\vmware workstation\vmware-hostd.exe
S3 - [wbengine] - Block Level Backup Engine Service - c:\windows\system32\wbengine.exe
S3 - [WdNisSvc] - Windows Defender Network Inspection Service - c:\program files\windows defender\nissrv.exe
S3 - [wmiApSrv] - WMI Performance Adapter - c:\windows\system32\wbem\wmiapsrv.exe
 
==== Batch Command(s) Run By Tool======================
 
 Volume in drive C is OS
 Volume Serial Number is C455-3FA9
 
 Directory of C:\
 
08/22/2013  09:45 AM    <JUNCTION>     Documents and Settings [C:\Users]
               0 File(s)              0 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink
 
10/30/2015  02:16 AM         3,809,792 tabskb.dll
10/30/2015  02:16 AM           386,368 TabTip.exe
10/30/2015  02:16 AM         1,101,312 TipRes.dll
10/30/2015  02:16 AM            22,528 tipresx.dll
10/30/2015  02:16 AM         1,070,080 tipskins.dll
10/30/2015  02:16 AM           647,168 tiptsf.dll
               6 File(s)      7,037,248 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\en-us
 
10/30/2015  02:16 AM           111,320 boxed-correct.avi
10/30/2015  02:16 AM            48,936 boxed-delete.avi
10/30/2015  02:16 AM            46,622 boxed-join.avi
10/30/2015  02:16 AM            84,190 boxed-split.avi
10/30/2015  02:16 AM           180,172 correct.avi
10/30/2015  02:16 AM           208,408 delete.avi
10/30/2015  02:16 AM           199,994 join.avi
10/30/2015  02:16 AM           181,964 split.avi
10/30/2015  02:16 AM             5,632 tabskb.dll.mui
10/30/2015  02:16 AM             3,072 TabTip.exe.mui
10/30/2015  02:16 AM            25,600 TipRes.dll.mui
10/30/2015  02:16 AM            10,240 tipresx.dll.mui
10/30/2015  02:16 AM             4,096 TipTsf.dll.mui
              13 File(s)      1,110,246 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions
 
10/30/2015  02:16 AM               212 auxpad.xml
10/30/2015  02:16 AM               215 insert.xml
10/30/2015  02:16 AM               693 keypad.xml
10/30/2015  02:16 AM            44,506 main.xml
10/30/2015  02:16 AM               221 oskclearui.xml
10/30/2015  02:16 AM               215 oskmenu.xml
10/30/2015  02:16 AM               213 osknav.xml
10/30/2015  02:16 AM               219 osknumpad.xml
10/30/2015  02:16 AM               215 oskpred.xml
10/30/2015  02:16 AM               591 symbols.xml
              10 File(s)         47,300 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\auxpad
 
10/30/2015  02:16 AM             1,434 auxbase.xml
               1 File(s)          1,434 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\insert
 
10/30/2015  02:16 AM               903 insertbase.xml
               1 File(s)            903 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad
 
10/30/2015  02:16 AM               384 ea.xml
10/30/2015  02:16 AM               903 keypadbase.xml
10/30/2015  02:16 AM               392 kor-kor.xml
               3 File(s)          1,679 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main
 
10/30/2015  02:16 AM             3,333 base.xml
10/30/2015  02:16 AM               247 baseAltGr_rtl.xml
10/30/2015  02:16 AM             3,524 base_altgr.xml
10/30/2015  02:16 AM             3,529 base_ca.xml
10/30/2015  02:16 AM               738 base_heb.xml
10/30/2015  02:16 AM               804 base_jpn.xml
10/30/2015  02:16 AM               488 base_kor.xml
10/30/2015  02:16 AM               617 base_rtl.xml
10/30/2015  02:16 AM            16,616 ja-jp.xml
10/30/2015  02:16 AM            15,097 ko-kr.xml
10/30/2015  02:16 AM             9,803 zh-changjei.xml
10/30/2015  02:16 AM            11,067 zh-dayi.xml
10/30/2015  02:16 AM            10,947 zh-phonetic.xml
              13 File(s)         76,810 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskclearui
 
10/30/2015  02:16 AM               737 oskclearuibase.xml
               1 File(s)            737 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskmenu
 
10/30/2015  02:16 AM               471 oskmenubase.xml
               1 File(s)            471 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknav
 
10/30/2015  02:16 AM             1,069 osknavbase.xml
               1 File(s)          1,069 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknumpad
 
10/30/2015  02:16 AM             1,437 osknumpadbase.xml
               1 File(s)          1,437 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskpred
 
10/30/2015  02:16 AM               924 oskpredbase.xml
               1 File(s)            924 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols
 
10/30/2015  02:16 AM               694 ea-sym.xml
10/30/2015  02:16 AM               805 ja-jp-sym.xml
10/30/2015  02:16 AM             3,823 symbase.xml
               3 File(s)          5,322 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files\Common Files\Microsoft Shared\ink\LanguageModel
 
10/30/2015  02:16 AM               763 chstic.dgml
               1 File(s)            763 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Program Files (x86)
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Diagnosis\DownloadedScenarios
 
10/30/2015  02:09 AM             2,618 Windows.Uif.static
               1 File(s)          2,618 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Diagnosis\DownloadedSettings
 
10/30/2015  02:09 AM               820 telemetry.ASM-WindowsDefault.json
10/30/2015  02:09 AM             1,432 utc.app.json
               2 File(s)          2,252 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Windows\Start Menu
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Windows\Start Menu\Programs
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
 
10/30/2015  02:16 AM               362 desktop.ini
10/30/2015  02:16 AM             1,140 Memory Diagnostics Tool.lnk
               2 File(s)          1,502 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\sources\recovery
 
10/30/2015  02:16 AM           699,224 RecEnv.exe
10/30/2015  02:16 AM           759,296 StartRep.exe
               2 File(s)      1,458,520 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\sources\recovery\en-US
 
10/30/2015  02:16 AM            25,088 RecEnv.exe.mui
10/30/2015  02:16 AM            30,208 StartRep.exe.mui
               2 File(s)         55,296 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Default
 
10/30/2015  01:28 AM            65,536 NTUSER.DAT{67e8366e-7ecf-11e5-80df-e41d2d718e10}.TM.blf
10/30/2015  01:28 AM           524,288 NTUSER.DAT{67e8366e-7ecf-11e5-80df-e41d2d718e10}.TMContainer00000000000000000001.regtrans-ms
10/30/2015  01:28 AM           524,288 NTUSER.DAT{67e8366e-7ecf-11e5-80df-e41d2d718e10}.TMContainer00000000000000000002.regtrans-ms
               3 File(s)      1,114,112 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
 
10/30/2015  02:09 AM                79 desktop.ini
10/30/2015  02:09 AM             1,158 Notepad.lnk
               2 File(s)          1,237 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
 
10/30/2015  02:09 AM             1,142 Command Prompt.lnk
10/30/2015  02:09 AM                86 desktop.ini
               2 File(s)          1,228 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Desktop
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Documents
 
10/30/2015  02:09 AM               278 desktop.ini
               1 File(s)            278 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Downloads
 
10/30/2015  02:09 AM               174 desktop.ini
               1 File(s)            174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Libraries
 
10/30/2015  02:09 AM               175 desktop.ini
10/30/2015  02:09 AM               999 RecordedTV.library-ms
               2 File(s)          1,174 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Music
 
10/30/2015  02:09 AM               380 desktop.ini
               1 File(s)            380 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Pictures
 
10/30/2015  02:09 AM               380 desktop.ini
               1 File(s)            380 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Users\Public\Videos
 
10/30/2015  02:09 AM               380 desktop.ini
               1 File(s)            380 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows
 
10/30/2015  02:09 AM            61,952 bfsvc.exe
10/30/2015  02:16 AM            18,432 hh.exe
10/30/2015  02:09 AM           320,512 regedit.exe
10/30/2015  02:09 AM               219 system.ini
10/30/2015  02:09 AM                92 win.ini
10/30/2015  02:09 AM             1,172 WindowsShell.Manifest
               6 File(s)        402,379 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\apppatch
 
02/13/2016  07:57 AM           151,574 drvmain.sdb
               1 File(s)        151,574 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot
 
10/30/2015  02:09 AM               135 BootDebuggerFiles.ini
               1 File(s)            135 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\DVD\EFI
 
10/30/2015  02:16 AM            16,384 BCD
10/30/2015  02:16 AM         3,170,304 boot.sdi
               2 File(s)      3,186,688 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\DVD\EFI\en-US
 
10/30/2015  02:16 AM         1,474,560 efisys.bin
10/30/2015  02:16 AM         1,474,560 efisys_noprompt.bin
               2 File(s)      2,949,120 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\DVD\PCAT
 
10/30/2015  02:16 AM            16,384 BCD
10/30/2015  02:16 AM         3,170,304 boot.sdi
10/30/2015  02:16 AM             4,096 etfsboot.com
               3 File(s)      3,190,784 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\DVD\PCAT\en-US
 
10/30/2015  02:16 AM             1,024 bootfix.bin
               1 File(s)          1,024 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI
 
10/30/2015  02:09 AM             4,391 boot.stl
10/30/2015  02:09 AM         1,159,008 bootmgfw.efi
10/30/2015  02:09 AM         1,147,744 bootmgr.efi
10/30/2015  02:09 AM         1,031,520 memtest.efi
               4 File(s)      3,342,663 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\cs-CZ
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\da-DK
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\de-DE
 
10/30/2015  02:09 AM            45,920 memtest.efi.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\el-GR
 
10/30/2015  02:09 AM            46,432 memtest.efi.mui
               1 File(s)         46,432 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\en-US
 
10/30/2015  02:09 AM            74,080 bootmgfw.efi.mui
10/30/2015  02:09 AM            74,080 bootmgr.efi.mui
10/30/2015  02:09 AM            44,896 memtest.efi.mui
               3 File(s)        193,056 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\es-ES
 
10/30/2015  02:09 AM            45,920 memtest.efi.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\fi-FI
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\fr-FR
 
10/30/2015  02:09 AM            45,920 memtest.efi.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\hu-HU
 
10/30/2015  02:09 AM            45,920 memtest.efi.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\it-IT
 
10/30/2015  02:09 AM            45,400 memtest.efi.mui
               1 File(s)         45,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\ja-JP
 
10/30/2015  02:09 AM            42,848 memtest.efi.mui
               1 File(s)         42,848 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\ko-KR
 
10/30/2015  02:09 AM            42,840 memtest.efi.mui
               1 File(s)         42,840 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\nb-NO
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\nl-NL
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\pl-PL
 
10/30/2015  02:09 AM            45,912 memtest.efi.mui
               1 File(s)         45,912 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\pt-BR
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\pt-PT
 
10/30/2015  02:09 AM            45,920 memtest.efi.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\qps-ploc
 
10/30/2015  02:09 AM            44,896 memtest.efi.mui
               1 File(s)         44,896 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\ru-RU
 
10/30/2015  02:09 AM            44,888 memtest.efi.mui
               1 File(s)         44,888 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\sr-Latn-CS
 
10/30/2015  02:09 AM            44,896 memtest.efi.mui
               1 File(s)         44,896 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\sv-SE
 
10/30/2015  02:09 AM            44,896 memtest.efi.mui
               1 File(s)         44,896 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\tr-TR
 
10/30/2015  02:09 AM            45,408 memtest.efi.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\zh-CN
 
10/30/2015  02:09 AM            42,336 memtest.efi.mui
               1 File(s)         42,336 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\zh-HK
 
10/30/2015  02:09 AM            42,336 memtest.efi.mui
               1 File(s)         42,336 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\EFI\zh-TW
 
10/30/2015  02:09 AM            42,336 memtest.efi.mui
               1 File(s)         42,336 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\Fonts
 
10/30/2015  02:09 AM            36,020 segmono_boot.ttf
10/30/2015  02:09 AM            77,088 segoen_slboot.ttf
10/30/2015  02:09 AM            77,404 segoe_slboot.ttf
10/30/2015  02:09 AM            47,452 wgl4_boot.ttf
               4 File(s)        237,964 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT
 
10/30/2015  02:09 AM           400,228 bootmgr
10/30/2015  02:09 AM                 1 bootnxt
10/30/2015  02:09 AM            98,144 bootvhd.dll
10/30/2015  02:09 AM           797,024 memtest.exe
               4 File(s)      1,295,397 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\cs-CZ
 
10/30/2015  02:09 AM            45,408 memtest.exe.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\da-DK
 
10/30/2015  02:09 AM            45,408 memtest.exe.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\de-DE
 
10/30/2015  02:09 AM            45,912 memtest.exe.mui
               1 File(s)         45,912 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\el-GR
 
10/30/2015  02:09 AM            46,432 memtest.exe.mui
               1 File(s)         46,432 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\en-US
 
10/30/2015  02:11 AM            74,080 bootmgr.exe.mui
10/30/2015  02:09 AM            44,888 memtest.exe.mui
               2 File(s)        118,968 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\es-ES
 
10/30/2015  02:09 AM            45,912 memtest.exe.mui
               1 File(s)         45,912 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\fi-FI
 
10/30/2015  02:09 AM            45,400 memtest.exe.mui
               1 File(s)         45,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\fr-FR
 
10/30/2015  02:09 AM            45,920 memtest.exe.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\hu-HU
 
10/30/2015  02:09 AM            45,920 memtest.exe.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\it-IT
 
10/30/2015  02:09 AM            45,400 memtest.exe.mui
               1 File(s)         45,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\ja-JP
 
10/30/2015  02:09 AM            42,848 memtest.exe.mui
               1 File(s)         42,848 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\ko-KR
 
10/30/2015  02:09 AM            42,848 memtest.exe.mui
               1 File(s)         42,848 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\nb-NO
 
10/30/2015  02:09 AM            45,408 memtest.exe.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\nl-NL
 
10/30/2015  02:09 AM            45,400 memtest.exe.mui
               1 File(s)         45,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\pl-PL
 
10/30/2015  02:09 AM            45,920 memtest.exe.mui
               1 File(s)         45,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\pt-BR
 
10/30/2015  02:09 AM            45,408 memtest.exe.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\pt-PT
 
10/30/2015  02:09 AM            45,912 memtest.exe.mui
               1 File(s)         45,912 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\qps-ploc
 
10/30/2015  02:09 AM            44,896 memtest.exe.mui
               1 File(s)         44,896 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\ru-RU
 
10/30/2015  02:09 AM            44,896 memtest.exe.mui
               1 File(s)         44,896 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\sr-Latn-CS
 
10/30/2015  02:09 AM            44,888 memtest.exe.mui
               1 File(s)         44,888 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\sv-SE
 
10/30/2015  02:09 AM            44,888 memtest.exe.mui
               1 File(s)         44,888 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\tr-TR
 
10/30/2015  02:09 AM            45,408 memtest.exe.mui
               1 File(s)         45,408 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\zh-CN
 
10/30/2015  02:09 AM            42,336 memtest.exe.mui
               1 File(s)         42,336 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\zh-HK
 
10/30/2015  02:09 AM            42,328 memtest.exe.mui
               1 File(s)         42,328 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PCAT\zh-TW
 
10/30/2015  02:09 AM            42,336 memtest.exe.mui
               1 File(s)         42,336 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE
 
10/30/2015  02:09 AM                79 abortpxe.com
10/30/2015  02:09 AM           662,368 bootmgr.exe
10/30/2015  02:09 AM            25,662 hdlscom1.com
10/30/2015  02:09 AM            25,646 hdlscom1.n12
10/30/2015  02:09 AM            25,662 hdlscom2.com
10/30/2015  02:09 AM            25,646 hdlscom2.n12
10/30/2015  02:09 AM            25,358 pxeboot.com
10/30/2015  02:09 AM            25,358 pxeboot.n12
10/30/2015  02:09 AM             2,165 WdsConfig.inf
10/30/2015  02:09 AM         1,001,824 wdsmgfw.efi
10/30/2015  02:09 AM            30,832 wdsnbp.com
              11 File(s)      1,850,600 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\bg-BG
 
10/30/2015  02:09 AM            77,664 bootmgr.efi.mui
10/30/2015  02:09 AM            77,664 bootmgr.exe.mui
               2 File(s)        155,328 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\cs-CZ
 
10/30/2015  02:09 AM            76,640 bootmgr.efi.mui
10/30/2015  02:09 AM            76,632 bootmgr.exe.mui
10/30/2015  02:09 AM            34,656 wdsmgfw.efi.mui
               3 File(s)        187,928 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\da-DK
 
10/30/2015  02:09 AM            75,616 bootmgr.efi.mui
10/30/2015  02:09 AM            75,616 bootmgr.exe.mui
               2 File(s)        151,232 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\de-DE
 
10/30/2015  02:09 AM            79,200 bootmgr.efi.mui
10/30/2015  02:09 AM            79,200 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        193,568 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\el-GR
 
10/30/2015  02:09 AM            80,224 bootmgr.efi.mui
10/30/2015  02:09 AM            80,224 bootmgr.exe.mui
               2 File(s)        160,448 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\en-GB
 
10/30/2015  02:09 AM            74,080 bootmgr.efi.mui
10/30/2015  02:09 AM            74,072 bootmgr.exe.mui
               2 File(s)        148,152 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\en-US
 
10/30/2015  02:09 AM            74,080 bootmgr.efi.mui
10/30/2015  02:09 AM            74,080 bootmgr.exe.mui
10/30/2015  02:09 AM            34,144 wdsmgfw.efi.mui
               3 File(s)        182,304 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\es-ES
 
10/30/2015  02:09 AM            77,664 bootmgr.efi.mui
10/30/2015  02:09 AM            77,664 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        190,496 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\es-MX
 
10/30/2015  02:09 AM            77,664 bootmgr.efi.mui
10/30/2015  02:09 AM            77,664 bootmgr.exe.mui
               2 File(s)        155,328 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\et-EE
 
10/30/2015  02:09 AM            75,096 bootmgr.efi.mui
10/30/2015  02:09 AM            75,104 bootmgr.exe.mui
               2 File(s)        150,200 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\fi-FI
 
10/30/2015  02:09 AM            76,640 bootmgr.efi.mui
10/30/2015  02:09 AM            76,640 bootmgr.exe.mui
               2 File(s)        153,280 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\fr-CA
 
10/30/2015  02:09 AM            79,200 bootmgr.efi.mui
10/30/2015  02:09 AM            79,200 bootmgr.exe.mui
               2 File(s)        158,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\fr-FR
 
10/30/2015  02:09 AM            79,200 bootmgr.efi.mui
10/30/2015  02:09 AM            79,192 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        193,560 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\hr-HR
 
10/30/2015  02:09 AM            76,640 bootmgr.efi.mui
10/30/2015  02:09 AM            76,640 bootmgr.exe.mui
               2 File(s)        153,280 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\hu-HU
 
10/30/2015  02:09 AM            78,688 bootmgr.efi.mui
10/30/2015  02:09 AM            78,688 bootmgr.exe.mui
10/30/2015  02:09 AM            35,680 wdsmgfw.efi.mui
               3 File(s)        193,056 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\it-IT
 
10/30/2015  02:09 AM            77,152 bootmgr.efi.mui
10/30/2015  02:09 AM            77,144 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        189,464 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\ja-JP
 
10/30/2015  02:09 AM            67,424 bootmgr.efi.mui
10/30/2015  02:09 AM            67,424 bootmgr.exe.mui
10/30/2015  02:09 AM            32,096 wdsmgfw.efi.mui
               3 File(s)        166,944 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\ko-KR
 
10/30/2015  02:09 AM            66,912 bootmgr.efi.mui
10/30/2015  02:09 AM            66,912 bootmgr.exe.mui
10/30/2015  02:09 AM            32,096 wdsmgfw.efi.mui
               3 File(s)        165,920 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\lt-LT
 
10/30/2015  02:09 AM            75,616 bootmgr.efi.mui
10/30/2015  02:09 AM            75,616 bootmgr.exe.mui
               2 File(s)        151,232 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\lv-LV
 
10/30/2015  02:09 AM            75,616 bootmgr.efi.mui
10/30/2015  02:09 AM            75,608 bootmgr.exe.mui
               2 File(s)        151,224 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\nb-NO
 
10/30/2015  02:09 AM            75,616 bootmgr.efi.mui
10/30/2015  02:09 AM            75,616 bootmgr.exe.mui
               2 File(s)        151,232 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\nl-NL
 
10/30/2015  02:09 AM            78,176 bootmgr.efi.mui
10/30/2015  02:09 AM            78,176 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        191,520 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\pl-PL
 
10/30/2015  02:09 AM            77,664 bootmgr.efi.mui
10/30/2015  02:09 AM            77,656 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        190,488 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\pt-BR
 
10/30/2015  02:09 AM            76,632 bootmgr.efi.mui
10/30/2015  02:09 AM            76,640 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        188,440 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\pt-PT
 
10/30/2015  02:09 AM            76,632 bootmgr.efi.mui
10/30/2015  02:09 AM            76,640 bootmgr.exe.mui
10/30/2015  02:09 AM            35,168 wdsmgfw.efi.mui
               3 File(s)        188,440 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\qps-ploc
 
10/30/2015  02:09 AM            74,080 bootmgr.efi.mui
10/30/2015  02:09 AM            74,080 bootmgr.exe.mui
               2 File(s)        148,160 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\ro-RO
 
10/30/2015  02:09 AM            76,120 bootmgr.efi.mui
10/30/2015  02:09 AM            76,128 bootmgr.exe.mui
               2 File(s)        152,248 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\ru-RU
 
10/30/2015  02:09 AM            77,152 bootmgr.efi.mui
10/30/2015  02:09 AM            77,152 bootmgr.exe.mui
10/30/2015  02:09 AM            34,656 wdsmgfw.efi.mui
               3 File(s)        188,960 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\sk-SK
 
10/30/2015  02:09 AM            77,152 bootmgr.efi.mui
10/30/2015  02:09 AM            77,144 bootmgr.exe.mui
               2 File(s)        154,296 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\sl-SI
 
10/30/2015  02:09 AM            76,640 bootmgr.efi.mui
10/30/2015  02:09 AM            76,640 bootmgr.exe.mui
               2 File(s)        153,280 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\sr-Latn-CS
 
10/30/2015  02:09 AM            77,144 bootmgr.efi.mui
10/30/2015  02:09 AM            77,152 bootmgr.exe.mui
10/30/2015  02:09 AM            34,144 wdsmgfw.efi.mui
               3 File(s)        188,440 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\sr-Latn-RS
 
10/30/2015  02:09 AM            77,152 bootmgr.efi.mui
10/30/2015  02:09 AM            77,152 bootmgr.exe.mui
               2 File(s)        154,304 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\sv-SE
 
10/30/2015  02:09 AM            76,128 bootmgr.efi.mui
10/30/2015  02:09 AM            76,128 bootmgr.exe.mui
10/30/2015  02:09 AM            34,144 wdsmgfw.efi.mui
               3 File(s)        186,400 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\tr-TR
 
10/30/2015  02:09 AM            75,104 bootmgr.efi.mui
10/30/2015  02:09 AM            75,096 bootmgr.exe.mui
10/30/2015  02:09 AM            34,144 wdsmgfw.efi.mui
               3 File(s)        184,344 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\uk-UA
 
10/30/2015  02:09 AM            77,152 bootmgr.efi.mui
10/30/2015  02:09 AM            77,152 bootmgr.exe.mui
               2 File(s)        154,304 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\zh-CN
 
10/30/2015  02:09 AM            63,840 bootmgr.efi.mui
10/30/2015  02:09 AM            63,840 bootmgr.exe.mui
10/30/2015  02:09 AM            31,072 wdsmgfw.efi.mui
               3 File(s)        158,752 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\zh-HK
 
10/30/2015  02:09 AM            63,840 bootmgr.efi.mui
10/30/2015  02:09 AM            63,832 bootmgr.exe.mui
10/30/2015  02:09 AM            31,072 wdsmgfw.efi.mui
               3 File(s)        158,744 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\PXE\zh-TW
 
10/30/2015  02:09 AM            63,840 bootmgr.efi.mui
10/30/2015  02:09 AM            63,840 bootmgr.exe.mui
10/30/2015  02:09 AM            31,072 wdsmgfw.efi.mui
               3 File(s)        158,752 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\Resources
 
10/30/2015  02:09 AM            19,296 bootres.dll
               1 File(s)         19,296 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Boot\Resources\en-US
 
10/30/2015  02:11 AM            12,640 bootres.dll.mui
               1 File(s)         12,640 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\en-US
 
10/30/2015  02:11 AM             3,072 bfsvc.exe.mui
10/30/2015  02:16 AM             3,072 hh.exe.mui
10/30/2015  02:11 AM            46,080 regedit.exe.mui
               3 File(s)         52,224 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Fonts
 
10/30/2015  02:09 AM            10,976 8514fix.fon
10/30/2015  02:09 AM            10,976 8514fixe.fon
10/30/2015  02:09 AM            11,520 8514fixg.fon
10/30/2015  02:09 AM            10,976 8514fixr.fon
10/30/2015  02:09 AM            11,488 8514fixt.fon
10/30/2015  02:09 AM            12,288 8514oem.fon
10/30/2015  02:09 AM            13,248 8514oeme.fon
10/30/2015  02:09 AM            12,800 8514oemg.fon
10/30/2015  02:09 AM            13,200 8514oemr.fon
10/30/2015  02:09 AM            12,720 8514oemt.fon
10/30/2015  02:09 AM             9,280 8514sys.fon
10/30/2015  02:09 AM             9,504 8514syse.fon
10/30/2015  02:09 AM             9,856 8514sysg.fon
10/30/2015  02:09 AM            10,064 8514sysr.fon
10/30/2015  02:09 AM             9,792 8514syst.fon
10/30/2015  02:09 AM            12,304 85775.fon
10/30/2015  02:09 AM            12,256 85855.fon
10/30/2015  02:09 AM            12,336 85f1255.fon
10/30/2015  02:09 AM            12,384 85f1256.fon
10/30/2015  02:09 AM            10,976 85f1257.fon
10/30/2015  02:09 AM            12,288 85f874.fon
10/30/2015  02:09 AM            10,224 85s1255.fon
10/30/2015  02:09 AM            10,608 85s1256.fon
10/30/2015  02:09 AM             9,472 85s1257.fon
10/30/2015  02:09 AM            10,240 85s874.fon
10/30/2015  02:09 AM            35,808 app775.fon
10/30/2015  02:09 AM            36,672 app850.fon
10/30/2015  02:09 AM            36,656 app852.fon
10/30/2015  02:09 AM            37,296 app855.fon
10/30/2015  02:09 AM            36,672 app857.fon
10/30/2015  02:09 AM            37,472 app866.fon
10/30/2015  02:09 AM            80,896 app932.fon
10/30/2015  02:09 AM            70,000 app936.fon
10/30/2015  02:09 AM            80,896 app949.fon
10/30/2015  02:09 AM            70,000 app950.fon
10/30/2015  02:24 AM           334,168 browalia.ttc
10/30/2015  02:09 AM            10,992 c8514fix.fon
10/30/2015  02:09 AM            13,552 c8514oem.fon
10/30/2015  02:09 AM            17,760 c8514sys.fon
10/30/2015  02:09 AM             7,216 cga40737.fon
10/30/2015  02:09 AM             6,352 cga40850.fon
10/30/2015  02:09 AM             6,672 cga40852.fon
10/30/2015  02:09 AM             6,672 cga40857.fon
10/30/2015  02:09 AM             7,232 cga40866.fon
10/30/2015  02:09 AM             7,216 cga40869.fon
10/30/2015  02:09 AM             6,336 cga40woa.fon
10/30/2015  02:09 AM             5,168 cga80737.fon
10/30/2015  02:09 AM             4,320 cga80850.fon
10/30/2015  02:09 AM             5,200 cga80852.fon
10/30/2015  02:09 AM             4,640 cga80857.fon
10/30/2015  02:09 AM             5,168 cga80866.fon
10/30/2015  02:09 AM             5,168 cga80869.fon
10/30/2015  02:09 AM             4,304 cga80woa.fon
10/30/2015  02:09 AM           429,604 consola.ttf
10/30/2015  02:09 AM           368,844 consolab.ttf
10/30/2015  02:09 AM           434,828 consolai.ttf
10/30/2015  02:09 AM           375,576 consolaz.ttf
10/30/2015  02:09 AM             5,600 cvgafix.fon
10/30/2015  02:09 AM            12,896 cvgasys.fon
10/30/2015  02:24 AM           184,480 daunpenh.ttf
10/30/2015  02:24 AM           145,720 dokchamp.ttf
10/30/2015  02:09 AM            36,336 dos737.fon
10/30/2015  02:09 AM            36,816 dos869.fon
10/30/2015  02:09 AM            36,656 dosapp.fon
10/30/2015  02:24 AM           875,756 ebrima.ttf
10/30/2015  02:24 AM           878,556 ebrimabd.ttf
10/30/2015  02:09 AM             9,248 ega40737.fon
10/30/2015  02:09 AM             8,384 ega40850.fon
10/30/2015  02:09 AM             8,368 ega40852.fon
10/30/2015  02:09 AM             8,704 ega40857.fon
10/30/2015  02:09 AM             9,232 ega40866.fon
10/30/2015  02:09 AM             9,248 ega40869.fon
10/30/2015  02:09 AM             8,368 ega40woa.fon
10/30/2015  02:09 AM             6,192 ega80737.fon
10/30/2015  02:09 AM             5,328 ega80850.fon
10/30/2015  02:09 AM             5,344 ega80852.fon
10/30/2015  02:09 AM             5,648 ega80857.fon
10/30/2015  02:09 AM             5,280 ega80866.fon
10/30/2015  02:09 AM             6,192 ega80869.fon
10/30/2015  02:09 AM             5,312 ega80woa.fon
10/30/2015  02:24 AM            95,788 estre.ttf
10/30/2015  02:24 AM           173,480 euphemia.ttf
10/30/2015  02:09 AM            84,151 fms_metadata.xml
10/30/2015  02:24 AM           212,276 gadugi.ttf
10/30/2015  02:24 AM           210,912 gadugib.ttf
10/30/2015  02:24 AM           247,584 gautami.ttf
10/30/2015  02:24 AM           213,440 gautamib.ttf
10/30/2015  02:09 AM            11,056 h8514fix.fon
10/30/2015  02:09 AM            12,400 h8514oem.fon
10/30/2015  02:09 AM            10,032 h8514sys.fon
10/30/2015  02:24 AM           571,808 himalaya.ttf
10/30/2015  02:09 AM             5,680 hvgafix.fon
10/30/2015  02:09 AM             6,512 hvgasys.fon
10/30/2015  02:24 AM           538,148 iskpota.ttf
10/30/2015  02:24 AM           360,548 iskpotab.ttf
10/30/2015  02:09 AM            12,896 j8514fix.fon
10/30/2015  02:09 AM            14,432 j8514oem.fon
10/30/2015  02:09 AM            10,656 j8514sys.fon
10/30/2015  02:24 AM           303,396 javatext.ttf
10/30/2015  02:09 AM             6,528 jvgafix.fon
10/30/2015  02:09 AM             7,728 jvgasys.fon
10/30/2015  02:24 AM           207,216 kalinga.ttf
10/30/2015  02:24 AM           201,148 kalingab.ttf
10/30/2015  02:24 AM           129,500 kartika.ttf
10/30/2015  02:24 AM           125,692 kartikab.ttf
10/30/2015  02:24 AM           317,744 KhmerUI.ttf
10/30/2015  02:24 AM           254,424 KhmerUIb.ttf
10/30/2015  02:24 AM            93,360 LaoUI.ttf
10/30/2015  02:24 AM            84,740 LaoUIb.ttf
10/30/2015  02:24 AM           117,484 latha.ttf
10/30/2015  02:24 AM           117,964 lathab.ttf
10/30/2015  02:24 AM            94,556 leelawad.ttf
10/30/2015  02:24 AM            94,104 leelawdb.ttf
10/30/2015  02:09 AM           115,016 lucon.ttf
10/30/2015  02:24 AM           199,652 mangal.ttf
10/30/2015  02:24 AM           186,068 mangalb.ttf
10/30/2015  02:09 AM            26,672 marlett.ttf
10/30/2015  02:09 AM           770,724 micross.ttf
10/30/2015  02:24 AM           290,192 mmrtext.ttf
10/30/2015  02:24 AM           270,632 mmrtextb.ttf
10/30/2015  02:24 AM           288,896 monbaiti.ttf
10/30/2015  02:24 AM           300,672 msyi.ttf
10/30/2015  02:24 AM            77,100 mvboli.ttf
10/30/2015  02:24 AM         1,335,832 NirmalaB.ttf
10/30/2015  02:24 AM         1,417,484 NirmalaS.ttf
10/30/2015  02:24 AM            73,904 ntailu.ttf
10/30/2015  02:24 AM            67,744 ntailub.ttf
10/30/2015  02:24 AM           440,272 nyala.ttf
10/30/2015  02:24 AM            93,172 phagspa.ttf
10/30/2015  02:24 AM            97,920 phagspab.ttf
10/30/2015  02:24 AM            97,300 plantc.ttf
10/30/2015  02:24 AM            91,620 raavi.ttf
10/30/2015  02:24 AM            91,456 raavib.ttf
10/30/2015  02:09 AM            11,056 s8514fix.fon
10/30/2015  02:09 AM            12,384 s8514oem.fon
10/30/2015  02:09 AM            17,760 s8514sys.fon
10/30/2015  02:09 AM           149,640 segmdl2.ttf
10/30/2015  02:09 AM           898,328 segoeuib.ttf
10/30/2015  02:09 AM           510,164 segoeuii.ttf
10/30/2015  02:09 AM           864,272 segoeuil.ttf
10/30/2015  02:09 AM           802,408 segoeuisl.ttf
10/30/2015  02:09 AM           523,452 segoeuiz.ttf
10/30/2015  02:09 AM           323,400 seguibl.ttf
10/30/2015  02:09 AM           350,844 seguibli.ttf
10/30/2015  02:09 AM           978,292 seguiemj.ttf
10/30/2015  02:09 AM         1,382,148 seguihis.ttf
10/30/2015  02:09 AM           441,744 seguili.ttf
10/30/2015  02:09 AM           925,716 seguisb.ttf
10/30/2015  02:09 AM           439,764 seguisbi.ttf
10/30/2015  02:09 AM           449,120 seguisli.ttf
10/30/2015  02:09 AM         2,244,484 seguisym.ttf
10/30/2015  02:24 AM           256,876 shruti.ttf
10/30/2015  02:24 AM           219,944 shrutib.ttf
10/30/2015  02:09 AM             5,680 svgafix.fon
10/30/2015  02:09 AM            12,896 svgasys.fon
10/30/2015  02:09 AM           256,932 sylfaen.ttf
10/30/2015  02:09 AM           837,952 tahoma.ttf
10/30/2015  02:09 AM           767,836 tahomabd.ttf
10/30/2015  02:24 AM            67,024 taile.ttf
10/30/2015  02:24 AM            58,948 taileb.ttf
10/30/2015  02:24 AM           184,412 tunga.ttf
10/30/2015  02:24 AM           171,220 tungab.ttf
10/30/2015  02:09 AM             5,168 vga737.fon
10/30/2015  02:09 AM             5,168 vga775.fon
10/30/2015  02:09 AM             5,232 vga850.fon
10/30/2015  02:09 AM             6,160 vga852.fon
10/30/2015  02:09 AM             5,120 vga855.fon
10/30/2015  02:09 AM             5,552 vga857.fon
10/30/2015  02:09 AM             5,184 vga860.fon
10/30/2015  02:09 AM             5,184 vga861.fon
10/30/2015  02:09 AM             5,200 vga863.fon
10/30/2015  02:09 AM             5,184 vga865.fon
10/30/2015  02:09 AM             6,128 vga866.fon
10/30/2015  02:09 AM             5,184 vga869.fon
10/30/2015  02:09 AM             7,232 vga932.fon
10/30/2015  02:09 AM             6,272 vga936.fon
10/30/2015  02:09 AM             6,304 vga949.fon
10/30/2015  02:09 AM             6,272 vga950.fon
10/30/2015  02:09 AM             5,952 vgaf1255.fon
10/30/2015  02:09 AM             6,528 vgaf1256.fon
10/30/2015  02:09 AM             5,376 vgaf1257.fon
10/30/2015  02:09 AM             7,168 vgaf874.fon
10/30/2015  02:09 AM             5,360 vgafix.fon
10/30/2015  02:09 AM             5,376 vgafixe.fon
10/30/2015  02:09 AM             6,112 vgafixg.fon
10/30/2015  02:09 AM             5,600 vgafixr.fon
10/30/2015  02:09 AM             6,112 vgafixt.fon
10/30/2015  02:09 AM             5,168 vgaoem.fon
10/30/2015  02:09 AM             7,104 vgas1255.fon
10/30/2015  02:09 AM             7,648 vgas1256.fon
10/30/2015  02:09 AM             6,656 vgas1257.fon
10/30/2015  02:09 AM             8,704 vgas874.fon
10/30/2015  02:09 AM             7,280 vgasys.fon
10/30/2015  02:09 AM             6,608 vgasyse.fon
10/30/2015  02:09 AM             7,008 vgasysg.fon
10/30/2015  02:09 AM             6,912 vgasysr.fon
10/30/2015  02:09 AM             6,912 vgasyst.fon
10/30/2015  02:24 AM           231,216 vrinda.ttf
10/30/2015  02:24 AM           230,140 vrindab.ttf
             199 File(s)     31,304,687 bytes


#10 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 12:51 PM

 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\Globalization\Sorting
 
10/30/2015  02:09 AM         3,368,788 SortDefault.nls
               1 File(s)      3,368,788 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF
 
10/30/2015  02:09 AM            11,218 1394.inf
10/30/2015  02:09 AM             4,034 3ware.inf
10/30/2015  02:09 AM             4,142 acpi.inf
10/30/2015  02:09 AM             2,496 acpipagr.inf
10/30/2015  02:09 AM             2,556 acpitime.inf
10/30/2015  02:09 AM            23,024 adp80xx.inf
10/30/2015  02:09 AM             9,164 agp.inf
10/30/2015  02:09 AM             9,932 amdsata.inf
10/30/2015  02:09 AM             6,256 amdsbs.inf
02/13/2016  07:57 AM            62,369 apps.inf
10/30/2015  02:09 AM            46,912 arcsas.inf
10/30/2015  02:09 AM             4,238 basicdisplay.inf
10/30/2015  02:09 AM             3,220 basicrender.inf
10/30/2015  02:09 AM             3,682 battery.inf
10/30/2015  02:09 AM            39,786 bcmdhd.inf
10/30/2015  02:09 AM            52,624 bcmdhd64.inf
10/30/2015  02:09 AM             3,840 bcmfn.inf
10/30/2015  02:09 AM             2,938 bcmfn2.inf
10/30/2015  02:09 AM            19,404 bfad.inf
10/30/2015  02:09 AM            13,718 bfadfcoe.inf
10/30/2015  02:09 AM             3,416 buttonconverter.inf
10/30/2015  02:09 AM            12,962 bxfcoe.inf
10/30/2015  02:09 AM            43,054 bxois.inf
02/13/2016  07:57 AM             6,576 capimg.inf
10/30/2015  02:09 AM             8,290 cdrom.inf
10/30/2015  02:09 AM            34,748 cht4nulx64.inf
10/30/2015  02:09 AM            20,498 cht4vx64.inf
10/30/2015  02:09 AM             4,284 cmbatt.inf
10/30/2015  02:09 AM            12,930 cpu.inf
10/30/2015  02:09 AM             1,150 c_1394.inf
10/30/2015  02:09 AM             1,008 c_61883.inf
10/30/2015  02:09 AM             1,004 c_avc.inf
10/30/2015  02:09 AM             1,056 c_battery.inf
10/30/2015  02:09 AM             1,018 c_biometric.inf
10/30/2015  02:09 AM             1,010 c_bluetooth.inf
10/30/2015  02:09 AM             2,096 c_cdrom.inf
10/30/2015  02:09 AM             1,058 c_computer.inf
10/30/2015  02:09 AM             2,450 c_diskdrive.inf
10/30/2015  02:09 AM             2,822 c_display.inf
10/30/2015  02:09 AM               958 c_dot4.inf
10/30/2015  02:09 AM               968 c_dot4print.inf
10/30/2015  02:09 AM             1,052 c_extension.inf
10/30/2015  02:09 AM             1,260 c_fdc.inf
10/30/2015  02:09 AM             2,866 c_firmware.inf
10/30/2015  02:09 AM             1,988 c_floppydisk.inf
10/30/2015  02:09 AM             3,136 c_hdc.inf
10/30/2015  02:09 AM             1,198 c_hidclass.inf
10/30/2015  02:09 AM             5,612 c_image.inf
10/30/2015  02:09 AM             1,476 c_infrared.inf
10/30/2015  02:09 AM             1,402 c_keyboard.inf
10/30/2015  02:09 AM             1,116 c_legacydriver.inf
10/30/2015  02:09 AM             1,176 c_mcx.inf
10/30/2015  02:09 AM             7,472 c_media.inf
10/30/2015  02:09 AM             1,312 c_mediumchanger.inf
10/30/2015  02:09 AM             1,010 c_memory.inf
10/30/2015  02:09 AM             1,124 c_modem.inf
10/30/2015  02:09 AM             2,566 c_monitor.inf
10/30/2015  02:09 AM             1,468 c_mouse.inf
10/30/2015  02:09 AM               956 c_mtd.inf
10/30/2015  02:09 AM             1,024 c_multifunction.inf
10/30/2015  02:09 AM             1,036 c_multiportserial.inf
10/30/2015  02:09 AM             2,568 c_net.inf
10/30/2015  02:09 AM             1,176 c_netservice.inf
10/30/2015  02:09 AM             1,340 c_nettrans.inf
10/30/2015  02:09 AM             1,006 c_pcmcia.inf
10/30/2015  02:09 AM             1,074 c_pnpprinters.inf
10/30/2015  02:09 AM             1,110 c_ports.inf
10/30/2015  02:09 AM             1,236 c_printer.inf
10/30/2015  02:09 AM             1,802 c_processor.inf
10/30/2015  02:09 AM             1,676 c_proximity.inf
10/30/2015  02:09 AM             1,002 c_sbp2.inf
10/30/2015  02:09 AM             1,352 c_scsiadapter.inf
10/30/2015  02:09 AM             1,006 c_sdhost.inf
10/30/2015  02:09 AM             1,024 c_securitydevices.inf
10/30/2015  02:09 AM               970 c_smartcard.inf
10/30/2015  02:09 AM             1,122 c_smartcardfilter.inf
10/30/2015  02:09 AM             1,474 c_smartcardreader.inf
10/30/2015  02:09 AM             1,052 c_sslaccel.inf
10/30/2015  02:09 AM             2,648 c_swdevice.inf
10/30/2015  02:09 AM             1,158 c_system.inf
10/30/2015  02:09 AM             3,262 c_tapedrive.inf
10/30/2015  02:09 AM             1,172 c_unknown.inf
10/30/2015  02:09 AM             1,104 c_usb.inf
10/30/2015  02:09 AM             1,838 c_usbdevice.inf
10/30/2015  02:09 AM             1,080 c_usbfn.inf
10/30/2015  02:09 AM             1,204 c_volsnap.inf
10/30/2015  02:09 AM             1,144 c_volume.inf
10/30/2015  02:09 AM             1,012 c_wceusbs.inf
10/30/2015  02:09 AM            31,628 dc21x4vm.inf
10/30/2015  02:09 AM            29,314 defltbase.inf
10/30/2015  02:09 AM            29,314 defltwk.inf
10/30/2015  02:09 AM            12,780 disk.inf
10/30/2015  02:09 AM            37,996 dwup.inf
10/30/2015  02:17 AM             6,266 ehstortcgdrv.inf
10/30/2015  02:09 AM             8,452 elxfcoe.inf
10/30/2015  02:09 AM            14,418 elxstor.inf
10/30/2015  02:09 AM           103,727 errata.inf
10/30/2015  02:09 AM             3,104 errdev.inf
10/30/2015  02:09 AM             2,226 fdc.inf
10/30/2015  02:09 AM             5,788 flpydisk.inf
10/30/2015  02:09 AM           700,038 fontsetup.inf
10/30/2015  02:09 AM             3,948 genericusbfn.inf
10/30/2015  02:09 AM             2,054 hal.inf
10/30/2015  02:09 AM             3,694 halextintclpiodma.inf
10/30/2015  02:09 AM             2,310 halextpl080.inf
10/30/2015  02:09 AM             6,036 hdaudbus.inf
10/30/2015  02:09 AM             2,550 hidbatt.inf
10/30/2015  02:09 AM             4,144 hiddigi.inf
10/30/2015  02:09 AM             5,150 hidi2c.inf
10/30/2015  02:09 AM             4,250 hidinterrupt.inf
10/30/2015  02:09 AM             9,764 hidserv.inf
10/30/2015  02:09 AM             1,782 hidvhf.inf
10/30/2015  02:09 AM            26,824 hpsamd.inf
10/30/2015  02:09 AM             4,068 iai2c.inf
10/30/2015  02:09 AM            14,186 iaLPSS2i_I2C_SKL.inf
10/30/2015  02:09 AM             9,956 ialpssi_gpio.inf
10/30/2015  02:09 AM            10,380 ialpssi_i2c.inf
10/30/2015  02:09 AM             8,122 iastorav.inf
10/30/2015  02:09 AM            12,616 iastorv.inf
10/30/2015  02:09 AM            73,740 input.inf
10/30/2015  02:09 AM             4,006 ipmidrv.inf
10/30/2015  02:09 AM            60,242 ipoib6x.inf
10/30/2015  02:09 AM             7,152 iscsi.inf
10/30/2015  02:09 AM             6,628 kdnic.inf
10/30/2015  02:09 AM            84,214 keyboard.inf
10/30/2015  02:09 AM             2,860 lltdio.inf
10/30/2015  02:09 AM             6,574 lsi_sas.inf
10/30/2015  02:09 AM            13,850 lsi_sas2i.inf
10/30/2015  02:09 AM             7,338 lsi_sas3i.inf
10/30/2015  02:09 AM             5,378 lsi_sss.inf
10/30/2015  02:09 AM           157,748 machine.inf
10/30/2015  02:09 AM             4,524 mbtr8897w81x64.inf
10/30/2015  02:09 AM            93,076 mchgr.inf
10/30/2015  02:09 AM            13,974 megasas.inf
10/30/2015  02:09 AM           318,550 megasr.inf
10/30/2015  02:09 AM             2,384 mf.inf
10/30/2015  02:09 AM            49,016 mlx4_bus.inf
10/30/2015  02:09 AM            51,434 mrvlpcie8897.inf
10/30/2015  02:09 AM            60,714 mshdc.inf
10/30/2015  02:09 AM            58,206 msmouse.inf
10/30/2015  02:09 AM            31,150 msports.inf
10/30/2015  02:09 AM             3,448 mssmbios.inf
10/30/2015  02:09 AM            31,680 msu30x64w8.inf
10/30/2015  02:09 AM            20,260 msu64w8.inf
10/30/2015  02:09 AM             3,848 mtconfig.inf
10/30/2015  02:09 AM             7,892 mvumis.inf
10/30/2015  02:09 AM            33,982 mwlu97w8x64.inf
10/30/2015  02:09 AM             2,204 ndisimplatform.inf
10/30/2015  02:09 AM            25,142 ndisimplatformmp.inf
10/30/2015  02:09 AM             2,978 ndisuio.inf
10/30/2015  02:09 AM             2,708 ndisvirtualbus.inf
10/30/2015  02:09 AM           155,980 net1ic64.inf
10/30/2015  02:09 AM            50,990 net1yx64.inf
10/30/2015  02:09 AM            72,144 net40i64.inf
10/30/2015  02:09 AM            62,568 net44amd.inf
10/30/2015  02:09 AM             5,272 netavpna.inf
10/30/2015  02:09 AM            28,266 netax88179_178a.inf
10/30/2015  02:09 AM            31,930 netax88772.inf
10/30/2015  02:09 AM           434,302 netb57va.inf
10/30/2015  02:09 AM            22,646 netbnad8.inf
10/30/2015  02:09 AM            10,628 netbvbda.inf
10/30/2015  02:09 AM           611,752 netbxnda.inf
10/30/2015  02:09 AM            83,722 nete1e3e.inf
10/30/2015  02:09 AM            99,376 nete1g3e.inf
10/30/2015  02:09 AM            97,758 netefe3e.inf
10/30/2015  02:09 AM           310,848 netelx.inf
10/30/2015  02:09 AM           243,780 netevbda.inf
10/30/2015  02:09 AM            37,440 netg664.inf
10/30/2015  02:09 AM             3,170 netimm.inf
10/30/2015  02:09 AM             4,366 netip6.inf
10/30/2015  02:09 AM            45,826 netjme.inf
10/30/2015  02:09 AM           101,920 netk57a.inf
10/30/2015  02:09 AM            19,076 netl160a.inf
10/30/2015  02:09 AM           429,794 netl1c63x64.inf
10/30/2015  02:09 AM            82,432 netl1e64.inf
10/30/2015  02:09 AM            13,442 netl260a.inf
10/30/2015  02:09 AM             6,162 netloop.inf
10/30/2015  02:09 AM            85,112 netmlx4eth63.inf
10/30/2015  02:09 AM            75,916 netmlx5.inf
10/30/2015  02:09 AM             2,456 netmscli.inf
10/30/2015  02:09 AM           214,348 netmyk64.inf
10/30/2015  02:09 AM             2,150 netnb.inf
10/30/2015  02:09 AM            83,650 netnvm64.inf
10/30/2015  02:09 AM            35,012 netnvma.inf
10/30/2015  02:24 AM             4,182 netnwifi.inf
10/30/2015  02:09 AM            66,408 netqlnd.inf
10/30/2015  02:09 AM            24,412 netrasa.inf
10/30/2015  02:09 AM             5,288 netrass.inf
10/30/2015  02:09 AM             8,182 netrast.inf
10/30/2015  02:09 AM            33,684 netrtl64.inf
10/30/2015  02:09 AM             2,376 netserv.inf
10/30/2015  02:09 AM             5,132 netsstpa.inf
10/30/2015  02:09 AM            58,448 nett4x64.inf
10/30/2015  02:09 AM             8,466 nettcpip.inf
10/30/2015  02:09 AM            13,386 nettun.inf
10/30/2015  02:09 AM           116,538 netvf63a.inf
10/30/2015  02:09 AM            34,764 netvg63a.inf
10/30/2015  02:09 AM            45,562 netxex64.inf
10/30/2015  02:09 AM            99,372 netxix64.inf
10/30/2015  02:09 AM            34,926 nfpflownic.inf
10/30/2015  02:09 AM            19,772 nvraid.inf
10/30/2015  02:09 AM            14,548 pci.inf
10/30/2015  02:09 AM            54,664 pcmcia.inf
10/30/2015  02:09 AM            23,624 percsas2i.inf
10/30/2015  02:09 AM            13,752 percsas3i.inf
10/30/2015  02:09 AM             9,536 puwk.inf
10/30/2015  02:09 AM             5,714 qd3x64.inf
10/30/2015  02:09 AM             8,048 ql2300.inf
10/30/2015  02:09 AM             5,536 ql40xx2i.inf
10/30/2015  02:09 AM             7,284 qlfcoei.inf
10/30/2015  02:09 AM             4,306 ramdisk.inf
10/30/2015  02:17 AM             4,102 rawsilo.inf
10/30/2015  02:09 AM             2,850 rspndr.inf
10/30/2015  02:09 AM           901,978 rt640x64.inf
10/30/2015  02:09 AM            50,096 rtux64w10.inf
10/30/2015  02:09 AM             2,890 sbp2.inf
10/30/2015  02:09 AM            30,534 sceregvl.inf
10/30/2015  02:09 AM            58,302 scsidev.inf
02/13/2016  07:57 AM             4,854 sdstor.inf
10/30/2015  02:09 AM            18,422 secrecs.inf
10/30/2015  02:09 AM             4,908 sisraid2.inf
10/30/2015  02:09 AM             3,716 sisraid4.inf
10/30/2015  02:09 AM             3,038 spaceport.inf
10/30/2015  02:09 AM            18,746 stexstor.inf
10/30/2015  02:09 AM            12,814 stornvme.inf
10/30/2015  02:09 AM            10,294 storufs.inf
10/30/2015  02:09 AM             3,568 swenum.inf
10/30/2015  02:09 AM            78,824 tape.inf
10/30/2015  02:09 AM            11,198 tpm.inf
10/30/2015  02:09 AM             4,058 uaspstor.inf
10/30/2015  02:09 AM             2,284 UcmUcsi.inf
10/30/2015  02:09 AM             3,068 uefi.inf
10/30/2015  02:09 AM             4,132 ufxchipidea.inf
10/30/2015  02:09 AM             4,972 ufxsynopsys.inf
10/30/2015  02:09 AM             8,454 umbus.inf
10/30/2015  02:09 AM            11,070 umpass.inf
10/30/2015  02:09 AM             1,412 unknown.inf
10/30/2015  02:09 AM            41,922 usb.inf
10/30/2015  02:09 AM            11,146 usbhub3.inf
10/30/2015  02:09 AM            77,548 usbport.inf
02/13/2016  07:57 AM             6,696 usbser.inf
10/30/2015  02:09 AM            31,528 usbstor.inf
10/30/2015  02:09 AM             6,090 usbxhci.inf
10/30/2015  02:09 AM             3,298 vdrvroot.inf
10/30/2015  02:09 AM             3,374 vhdmp.inf
10/30/2015  02:09 AM             3,678 volmgr.inf
10/30/2015  02:09 AM             1,682 volsnap.inf
10/30/2015  02:09 AM             1,964 volume.inf
10/30/2015  02:09 AM             5,394 vsmraid.inf
10/30/2015  02:09 AM             5,724 vstxraid.inf
02/13/2016  07:57 AM            26,798 wdmaudio.inf
10/30/2015  02:09 AM             3,242 wdmvsc.inf
10/30/2015  02:09 AM             3,454 whyperkbd.inf
10/30/2015  02:09 AM             3,144 wmiacpi.inf
10/30/2015  02:09 AM            43,472 wnetvsc.inf
10/30/2015  02:09 AM             3,376 wnetvsc_vfpp.inf
10/30/2015  02:09 AM             3,750 wstorflt.inf
10/30/2015  02:09 AM             3,782 wstorvsc.inf
10/30/2015  02:09 AM             4,612 wvmbus.inf
10/30/2015  02:09 AM             3,564 wvmbushid.inf
10/30/2015  02:09 AM             3,786 wvmbusvideo.inf
10/30/2015  02:09 AM            33,872 ykinx64.inf
             262 File(s)      8,820,180 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF\PERFLIB\0000
 
10/30/2015  02:09 AM            33,362 perfc.dat
10/30/2015  02:09 AM            33,362 perfd.dat
10/30/2015  02:09 AM           296,742 perfh.dat
10/30/2015  02:09 AM           296,742 perfi.dat
               4 File(s)        660,208 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF\PERFLIB\0409
 
10/30/2015  02:11 AM            33,362 perfc.dat
10/30/2015  02:11 AM            33,362 perfd.dat
10/30/2015  02:11 AM           296,742 perfh.dat
10/30/2015  02:11 AM           296,742 perfi.dat
               4 File(s)        660,208 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF\RemoteAccess
 
10/30/2015  02:09 AM             1,820 rasctrnm.h
               1 File(s)          1,820 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF\RemoteAccess\0000
 
10/30/2015  02:09 AM             6,918 rasctrs.ini
               1 File(s)          6,918 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\INF\RemoteAccess\0409
 
10/30/2015  02:11 AM             6,918 rasctrs.ini
               1 File(s)          6,918 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\L2Schemas
 
10/30/2015  02:24 AM             5,957 OneX_v1.xsd
10/30/2015  02:24 AM             7,847 WFD_LEGACY_profile_v1.xsd
10/30/2015  02:24 AM             7,983 WFD_profile_v1.xsd
10/30/2015  02:24 AM             7,548 WLANAP_profile_v1.xsd
10/30/2015  02:24 AM             7,627 WLAN_policy_v1.xsd
10/30/2015  02:24 AM            18,585 WLAN_profile_v1.xsd
10/30/2015  02:24 AM             2,335 WLAN_profile_v2.xsd
10/30/2015  02:24 AM               984 WLAN_profile_v3.xsd
               8 File(s)         58,866 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\PLA\Reports
 
10/30/2015  02:24 AM            59,620 Report.System.Wireless.xml
               1 File(s)         59,620 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\PLA\Reports\en-US
 
10/30/2015  02:24 AM            17,448 Report.System.Wireless.xml
               1 File(s)         17,448 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\PLA\Rules
 
10/30/2015  02:24 AM           159,934 Rules.System.Wireless.xml
               1 File(s)        159,934 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\PLA\Rules\en-US
 
10/30/2015  02:24 AM            13,097 Rules.System.Wireless.xml
               1 File(s)         13,097 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\resources\Themes\aero
 
10/30/2015  02:09 AM         1,203,344 aero.msstyles
               1 File(s)      1,203,344 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\resources\Themes\aero\en-US
 
10/30/2015  02:11 AM             5,632 aero.msstyles.mui
               1 File(s)          5,632 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\schemas\EAPHost
 
10/30/2015  02:09 AM             1,066 baseeapconnectionpropertiesv1.xsd
10/30/2015  02:09 AM               612 baseeapmethodconfig.xsd
10/30/2015  02:09 AM               648 baseeapmethodusercredentials.xsd
10/30/2015  02:09 AM             1,116 baseeapuserpropertiesv1.xsd
10/30/2015  02:09 AM               752 eapcommon.xsd
10/30/2015  02:09 AM             1,159 eapconnectionpropertiesv1.xsd
10/30/2015  02:09 AM             1,132 EapGenericUserCredentials.xsd
10/30/2015  02:09 AM             1,275 eaphostconfig.xsd
10/30/2015  02:09 AM             1,353 eaphostusercredentials.xsd
10/30/2015  02:09 AM               789 eapuserpropertiesv1.xsd
              10 File(s)          9,902 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\schemas\EAPMethods
 
10/30/2015  02:09 AM             4,543 eaptlsconnectionpropertiesv1.xsd
10/30/2015  02:09 AM               802 eaptlsconnectionpropertiesv2.xsd
10/30/2015  02:09 AM             2,666 eaptlsconnectionpropertiesv3.xsd
10/30/2015  02:09 AM             1,329 eaptlsuserpropertiesv1.xsd
10/30/2015  02:09 AM             1,271 mschapv2connectionpropertiesv1.xsd
10/30/2015  02:09 AM             1,410 mschapv2userpropertiesv1.xsd
10/30/2015  02:09 AM             4,088 mspeapconnectionpropertiesv1.xsd
10/30/2015  02:09 AM             1,368 mspeapconnectionpropertiesv2.xsd
10/30/2015  02:09 AM               693 mspeapconnectionpropertiesv3.xsd
10/30/2015  02:09 AM             1,484 mspeapuserpropertiesv1.xsd
              10 File(s)         19,654 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\servicing
 
10/30/2015  01:28 AM            45,056 CbsApi.dll
10/30/2015  01:28 AM            50,528 CbsMsg.dll
10/30/2015  01:28 AM           121,856 TrustedInstaller.exe
10/30/2015  02:09 AM            14,336 wrpintapi.dll
               4 File(s)        231,776 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\servicing\en-US
 
10/30/2015  02:11 AM            19,968 CbsMsg.dll.mui
10/30/2015  02:11 AM             3,584 TrustedInstaller.exe.mui
               2 File(s)         23,552 bytes
 
 Directory of C:\$WINDOWS.~BT\Sources\SafeOS\SafeOS.Mount\Windows\servicing\Packages
 
10/30/2015  01:19 AM             9,030 Fonts-MinConsoleFonts-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,041 Fonts-MinConsoleFonts-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM             9,406 Fonts-MinConsoleFonts-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:29 PM               983 Fonts-MinConsoleFonts-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:56 AM            14,890 Microsoft-Hyper-V-WinPE-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             3,929 Microsoft-Hyper-V-WinPE-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            15,902 Microsoft-Hyper-V-WinPE-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             6,007 Microsoft-Hyper-V-WinPE-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM            12,094 Microsoft-OneCore-CoreSystem-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,089 Microsoft-OneCore-CoreSystem-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            28,266 Microsoft-OneCore-CoreSystem-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,019 Microsoft-OneCore-CoreSystem-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:04 AM             9,994 Microsoft-OneCore-CoreSystem-com-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,085 Microsoft-OneCore-CoreSystem-com-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:49 AM            51,477 Microsoft-OneCore-CoreSystem-com-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,016 Microsoft-OneCore-CoreSystem-com-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:11 AM            19,970 Microsoft-OneCore-CoreSystem-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,081 Microsoft-OneCore-CoreSystem-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM           104,797 Microsoft-OneCore-CoreSystem-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,013 Microsoft-OneCore-CoreSystem-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:59 AM             9,027 Microsoft-OneCore-CoreSystem-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,101 Microsoft-OneCore-CoreSystem-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM            16,700 Microsoft-OneCore-CoreSystem-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,028 Microsoft-OneCore-CoreSystem-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM            11,930 Microsoft-OneCore-CoreSystem-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,093 Microsoft-OneCore-CoreSystem-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            34,899 Microsoft-OneCore-CoreSystem-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,022 Microsoft-OneCore-CoreSystem-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,414 Microsoft-OneCore-CoreSystem-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,109 Microsoft-OneCore-CoreSystem-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            39,446 Microsoft-OneCore-CoreSystem-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,034 Microsoft-OneCore-CoreSystem-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM            11,898 Microsoft-OneCore-CoreSystem-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,535 Microsoft-OneCore-CoreSystem-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM            27,020 Microsoft-OneCore-CoreSystem-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,710 Microsoft-OneCore-CoreSystem-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-OneCore-CoreSystem-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             5,236 Microsoft-OneCore-CoreSystem-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-OneCore-CoreSystem-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             6,983 Microsoft-OneCore-CoreSystem-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,030 Microsoft-OneCore-DiskIo-ResourceControls-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,161 Microsoft-OneCore-DiskIo-ResourceControls-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM             9,414 Microsoft-OneCore-DiskIo-ResourceControls-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,073 Microsoft-OneCore-DiskIo-ResourceControls-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-OneCore-DiskIo-ResourceControls-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,480 Microsoft-OneCore-DiskIo-ResourceControls-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-OneCore-DiskIo-ResourceControls-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,583 Microsoft-OneCore-DiskIo-ResourceControls-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:56 AM             9,414 Microsoft-OneCore-DiskIo-ResourceControls-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,133 Microsoft-OneCore-DiskIo-ResourceControls-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM             9,411 Microsoft-OneCore-DiskIo-ResourceControls-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,052 Microsoft-OneCore-DiskIo-ResourceControls-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM             9,414 Microsoft-OneCore-DriverVerifier-Tools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,109 Microsoft-OneCore-DriverVerifier-Tools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,414 Microsoft-OneCore-DriverVerifier-Tools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,034 Microsoft-OneCore-DriverVerifier-Tools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM             9,798 Microsoft-OneCore-TroubleShooting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,089 Microsoft-OneCore-TroubleShooting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            11,318 Microsoft-OneCore-TroubleShooting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,019 Microsoft-OneCore-TroubleShooting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,030 Microsoft-OneCore-Windows-State-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,081 Microsoft-OneCore-Windows-State-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM             9,218 Microsoft-OneCore-Windows-State-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,013 Microsoft-OneCore-Windows-State-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,994 Microsoft-Windows-BootEnvironment-BootManagers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,141 Microsoft-Windows-BootEnvironment-BootManagers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM            10,746 Microsoft-Windows-BootEnvironment-BootManagers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-BootEnvironment-BootManagers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,030 Microsoft-Windows-BootEnvironment-Core-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,133 Microsoft-Windows-BootEnvironment-Core-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM             9,406 Microsoft-Windows-BootEnvironment-Core-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:34 PM             1,052 Microsoft-Windows-BootEnvironment-Core-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,406 Microsoft-Windows-BootEnvironment-Dvd-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,219 Microsoft-Windows-BootEnvironment-Dvd-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            10,346 Microsoft-Windows-BootEnvironment-Dvd-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               945 Microsoft-Windows-BootEnvironment-Dvd-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM             9,030 Microsoft-Windows-BootEnvironment-Dvd-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,610 Microsoft-Windows-BootEnvironment-Dvd-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            10,346 Microsoft-Windows-BootEnvironment-Dvd-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM             1,373 Microsoft-Windows-BootEnvironment-Dvd-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM             9,030 Microsoft-Windows-BuildFlighting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,085 Microsoft-Windows-BuildFlighting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,406 Microsoft-Windows-BuildFlighting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,016 Microsoft-Windows-BuildFlighting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:11 AM             9,029 Microsoft-Windows-CAPI2-test-root-Package-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,133 Microsoft-Windows-CAPI2-test-root-Package-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM             9,403 Microsoft-Windows-CAPI2-test-root-Package-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,052 Microsoft-Windows-CAPI2-test-root-Package-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM             9,030 Microsoft-Windows-CAPI2-test-root-Package-ds-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,157 Microsoft-Windows-CAPI2-test-root-Package-ds-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM             9,402 Microsoft-Windows-CAPI2-test-root-Package-ds-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,070 Microsoft-Windows-CAPI2-test-root-Package-ds-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            11,098 Microsoft-Windows-Client-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             2,041 Microsoft-Windows-Client-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            11,127 Microsoft-Windows-Client-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             2,794 Microsoft-Windows-Client-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:07 AM             9,602 Microsoft-Windows-Common-Drivers-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,071 Microsoft-Windows-Common-Drivers-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM             9,414 Microsoft-Windows-Common-Drivers-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,120 Microsoft-Windows-Common-Drivers-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM            14,694 Microsoft-Windows-Common-Drivers-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             3,930 Microsoft-Windows-Common-Drivers-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            14,366 Microsoft-Windows-Common-Drivers-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             5,979 Microsoft-Windows-Common-Drivers-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            72,073 Microsoft-Windows-Common-Drivers-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM            34,248 Microsoft-Windows-Common-Drivers-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            83,468 Microsoft-Windows-Common-Drivers-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM            59,112 Microsoft-Windows-Common-Drivers-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:11 AM             9,970 Microsoft-Windows-Common-Drivers-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,378 Microsoft-Windows-Common-Drivers-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM             9,594 Microsoft-Windows-Common-Drivers-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,668 Microsoft-Windows-Common-Drivers-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM             9,970 Microsoft-Windows-Common-Drivers-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,386 Microsoft-Windows-Common-Drivers-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM             9,594 Microsoft-Windows-Common-Drivers-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,672 Microsoft-Windows-Common-Drivers-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM            17,945 Microsoft-Windows-Common-Drivers-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             4,895 Microsoft-Windows-Common-Drivers-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            17,262 Microsoft-Windows-Common-Drivers-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             7,650 Microsoft-Windows-Common-Drivers-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM            15,045 Microsoft-Windows-Common-Drivers-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             4,867 Microsoft-Windows-Common-Drivers-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            13,925 Microsoft-Windows-Common-Drivers-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             7,784 Microsoft-Windows-Common-Drivers-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:56 AM            10,362 Microsoft-Windows-Common-Drivers-Package-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,449 Microsoft-Windows-Common-Drivers-Package-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM             9,986 Microsoft-Windows-Common-Drivers-Package-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,757 Microsoft-Windows-Common-Drivers-Package-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM             9,970 Microsoft-Windows-Common-Drivers-Package-windows-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,425 Microsoft-Windows-Common-Drivers-Package-windows-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM             9,986 Microsoft-Windows-Common-Drivers-Package-windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,710 Microsoft-Windows-Common-Drivers-Package-windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-Common-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             3,883 Microsoft-Windows-Common-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-Common-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             5,024 Microsoft-Windows-Common-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:53 AM            19,330 Microsoft-Windows-Common-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,667 Microsoft-Windows-Common-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:32 AM            69,590 Microsoft-Windows-Common-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:34 PM               907 Microsoft-Windows-Common-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM             9,798 Microsoft-Windows-ConsoleHost-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,097 Microsoft-Windows-ConsoleHost-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM            10,179 Microsoft-Windows-ConsoleHost-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,025 Microsoft-Windows-ConsoleHost-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM             9,414 Microsoft-Windows-CoreSystem-Power-Cmdline-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,125 Microsoft-Windows-CoreSystem-Power-Cmdline-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,414 Microsoft-Windows-CoreSystem-Power-Cmdline-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,046 Microsoft-Windows-CoreSystem-Power-Cmdline-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:08 AM             9,413 Microsoft-Windows-CoreSystem-RemoteFS-Client-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,157 Microsoft-Windows-CoreSystem-RemoteFS-Client-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM            10,429 Microsoft-Windows-CoreSystem-RemoteFS-Client-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,070 Microsoft-Windows-CoreSystem-RemoteFS-Client-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:33 AM            10,558 Microsoft-Windows-CoreSystem-RemoteFS-Client-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,153 Microsoft-Windows-CoreSystem-RemoteFS-Client-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            11,334 Microsoft-Windows-CoreSystem-RemoteFS-Client-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,067 Microsoft-Windows-CoreSystem-RemoteFS-Client-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-Client-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,493 Microsoft-Windows-CoreSystem-RemoteFS-Client-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-Client-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,593 Microsoft-Windows-CoreSystem-RemoteFS-Client-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:08 AM             9,414 Microsoft-Windows-CoreSystem-RemoteFS-Client-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,157 Microsoft-Windows-CoreSystem-RemoteFS-Client-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM            10,285 Microsoft-Windows-CoreSystem-RemoteFS-Client-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,070 Microsoft-Windows-CoreSystem-RemoteFS-Client-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,461 Microsoft-Windows-CoreSystem-RemoteFS-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,568 Microsoft-Windows-CoreSystem-RemoteFS-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,414 Microsoft-Windows-CoreSystem-RemoteFS-Server-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,133 Microsoft-Windows-CoreSystem-RemoteFS-Server-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,794 Microsoft-Windows-CoreSystem-RemoteFS-Server-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,052 Microsoft-Windows-CoreSystem-RemoteFS-Server-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,131 Microsoft-Windows-CoreSystem-RemoteFS-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-CoreSystem-RemoteFS-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,085 Microsoft-Windows-CoreSystem-RemoteFS-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,411 Microsoft-Windows-CredentialProviderFramework-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,137 Microsoft-Windows-CredentialProviderFramework-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM            10,369 Microsoft-Windows-CredentialProviderFramework-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,055 Microsoft-Windows-CredentialProviderFramework-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,414 Microsoft-Windows-CredentialProviderFramework-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,161 Microsoft-Windows-CredentialProviderFramework-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM             9,985 Microsoft-Windows-CredentialProviderFramework-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,073 Microsoft-Windows-CredentialProviderFramework-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM            10,950 Microsoft-Windows-DesktopAuthBase-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,089 Microsoft-Windows-DesktopAuthBase-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM            11,514 Microsoft-Windows-DesktopAuthBase-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,019 Microsoft-Windows-DesktopAuthBase-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,794 Microsoft-Windows-DesktopAuthBase-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,113 Microsoft-Windows-DesktopAuthBase-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM             9,986 Microsoft-Windows-DesktopAuthBase-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,037 Microsoft-Windows-DesktopAuthBase-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,607 Microsoft-Windows-Foundation-Group-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,113 Microsoft-Windows-Foundation-Group-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:09 AM            10,523 Microsoft-Windows-Foundation-Group-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,037 Microsoft-Windows-Foundation-Group-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM             9,030 Microsoft-Windows-Foundation-Group-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,105 Microsoft-Windows-Foundation-Group-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM            17,542 Microsoft-Windows-Foundation-Group-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,031 Microsoft-Windows-Foundation-Group-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             9,029 Microsoft-Windows-Foundation-Group-mergedcomponents-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,161 Microsoft-Windows-Foundation-Group-mergedcomponents-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             9,406 Microsoft-Windows-Foundation-Group-mergedcomponents-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,073 Microsoft-Windows-Foundation-Group-mergedcomponents-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:59 AM             9,798 Microsoft-Windows-Foundation-Group-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,125 Microsoft-Windows-Foundation-Group-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM            41,617 Microsoft-Windows-Foundation-Group-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,046 Microsoft-Windows-Foundation-Group-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM            12,102 Microsoft-Windows-Foundation-Group-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,117 Microsoft-Windows-Foundation-Group-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            41,389 Microsoft-Windows-Foundation-Group-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,040 Microsoft-Windows-Foundation-Group-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM            14,798 Microsoft-Windows-Foundation-Group-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,133 Microsoft-Windows-Foundation-Group-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            53,403 Microsoft-Windows-Foundation-Group-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,052 Microsoft-Windows-Foundation-Group-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-Foundation-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             3,200 Microsoft-Windows-Foundation-Group-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-Foundation-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             4,045 Microsoft-Windows-Foundation-Group-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,610 Microsoft-Windows-ImageBasedSetup-Rejuvenation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,400 Microsoft-Windows-ImageBasedSetup-Rejuvenation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            19,562 Microsoft-Windows-ImageBasedSetup-Rejuvenation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:28 PM             1,107 Microsoft-Windows-ImageBasedSetup-Rejuvenation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,798 Microsoft-Windows-Kernel-Feature-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,125 Microsoft-Windows-Kernel-Feature-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM            12,524 Microsoft-Windows-Kernel-Feature-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,046 Microsoft-Windows-Kernel-Feature-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-Kernel-Feature-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,798 Microsoft-Windows-Kernel-Feature-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-Kernel-Feature-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             2,057 Microsoft-Windows-Kernel-Feature-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,027 Microsoft-Windows-KernelMode-Minimal-Feature-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,173 Microsoft-Windows-KernelMode-Minimal-Feature-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            10,182 Microsoft-Windows-KernelMode-Minimal-Feature-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,082 Microsoft-Windows-KernelMode-Minimal-Feature-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-KernelMode-Minimal-Feature-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,478 Microsoft-Windows-KernelMode-Minimal-Feature-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-KernelMode-Minimal-Feature-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,578 Microsoft-Windows-KernelMode-Minimal-Feature-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM             9,594 Microsoft-Windows-NetBIOS-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,370 Microsoft-Windows-NetBIOS-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            10,789 Microsoft-Windows-NetBIOS-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,543 Microsoft-Windows-NetBIOS-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM             9,413 Microsoft-Windows-Network-Foundation-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,125 Microsoft-Windows-Network-Foundation-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            31,592 Microsoft-Windows-Network-Foundation-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,046 Microsoft-Windows-Network-Foundation-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM             9,414 Microsoft-Windows-Network-Foundation-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,117 Microsoft-Windows-Network-Foundation-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM             9,806 Microsoft-Windows-Network-Foundation-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,040 Microsoft-Windows-Network-Foundation-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-Network-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,452 Microsoft-Windows-Network-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-Network-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,560 Microsoft-Windows-Network-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:10 AM             9,406 Microsoft-Windows-Online-Setup-State-WinPE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,046 Microsoft-Windows-Online-Setup-State-WinPE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            11,098 Microsoft-Windows-Server-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             2,041 Microsoft-Windows-Server-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            11,130 Microsoft-Windows-Server-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             2,794 Microsoft-Windows-Server-Wired-Network-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:51 AM            11,746 Microsoft-Windows-ServicingStack-Admin-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               884 Microsoft-Windows-ServicingStack-Admin-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:52 AM            11,747 Microsoft-Windows-ServicingStack-Admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               880 Microsoft-Windows-ServicingStack-Admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:10 AM            17,198 Microsoft-Windows-ServicingStack-Base-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:34 PM               880 Microsoft-Windows-ServicingStack-Base-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:10 AM            11,366 Microsoft-Windows-ServicingStack-Base-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               904 Microsoft-Windows-ServicingStack-Base-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:10 AM            11,366 Microsoft-Windows-ServicingStack-Base-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               900 Microsoft-Windows-ServicingStack-Base-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,414 Microsoft-Windows-ServicingStack-Base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM               900 Microsoft-Windows-ServicingStack-Base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            17,197 Microsoft-Windows-ServicingStack-Base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:34 PM               876 Microsoft-Windows-ServicingStack-Base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-ServicingStack-Core-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             2,919 Microsoft-Windows-ServicingStack-Core-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-ServicingStack-Core-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:25 PM             2,839 Microsoft-Windows-ServicingStack-Core-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:52 AM             9,994 Microsoft-Windows-ServicingStack-Ds-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               872 Microsoft-Windows-ServicingStack-Ds-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:52 AM             9,994 Microsoft-Windows-ServicingStack-Ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               868 Microsoft-Windows-ServicingStack-Ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:14 AM             8,841 Microsoft-Windows-ServicingStack-Full-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             4,956 Microsoft-Windows-ServicingStack-Full-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:46 AM             9,414 Microsoft-Windows-ServicingStack-Inetsrv-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM               912 Microsoft-Windows-ServicingStack-Inetsrv-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:53 AM            10,971 Microsoft-Windows-ServicingStack-Net-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               876 Microsoft-Windows-ServicingStack-Net-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:53 AM            10,971 Microsoft-Windows-ServicingStack-Net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               872 Microsoft-Windows-ServicingStack-Net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:55 AM             9,414 Microsoft-Windows-ServicingStack-Shell-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:33 PM               884 Microsoft-Windows-ServicingStack-Shell-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:55 AM             9,218 Microsoft-Windows-ServicingStack-Shell-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               908 Microsoft-Windows-ServicingStack-Shell-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:55 AM             9,218 Microsoft-Windows-ServicingStack-Shell-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               904 Microsoft-Windows-ServicingStack-Shell-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:55 AM             9,411 Microsoft-Windows-ServicingStack-Shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:33 PM               880 Microsoft-Windows-ServicingStack-Shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:45 AM            10,002 Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:25 PM               916 Microsoft-Windows-ServicingStack-Termsrv-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:45 AM            10,002 Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:25 PM               912 Microsoft-Windows-ServicingStack-Termsrv-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM             9,218 Microsoft-Windows-ServicingStack-Windows-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               892 Microsoft-Windows-ServicingStack-Windows-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM             9,218 Microsoft-Windows-ServicingStack-Windows-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               916 Microsoft-Windows-ServicingStack-Windows-Extra-CrossArch-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM             9,218 Microsoft-Windows-ServicingStack-Windows-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               912 Microsoft-Windows-ServicingStack-Windows-Extra-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM             9,218 Microsoft-Windows-ServicingStack-Windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               888 Microsoft-Windows-ServicingStack-Windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM            10,566 Microsoft-Windows-ShellAPI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,061 Microsoft-Windows-ShellAPI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM           282,123 Microsoft-Windows-ShellAPI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM               998 Microsoft-Windows-ShellAPI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,602 Microsoft-Windows-SMB1-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,804 Microsoft-Windows-SMB1-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,795 Microsoft-Windows-SMB1-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:29 PM             2,208 Microsoft-Windows-SMB1-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM            10,746 Microsoft-Windows-Winpe-Drivers-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,728 Microsoft-Windows-Winpe-Drivers-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            10,754 Microsoft-Windows-Winpe-Drivers-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             2,126 Microsoft-Windows-Winpe-Drivers-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            25,048 Microsoft-Windows-Winpe-Drivers-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             9,286 Microsoft-Windows-Winpe-Drivers-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            42,337 Microsoft-Windows-Winpe-Drivers-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM            15,518 Microsoft-Windows-Winpe-Drivers-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-Winpe-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             3,186 Microsoft-Windows-Winpe-Drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-Winpe-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             4,034 Microsoft-Windows-Winpe-Drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM            18,994 Microsoft-Windows-WinPE-Fonts-Legacy-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,028 Microsoft-Windows-WinPE-Fonts-Legacy-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:54 AM            15,986 Microsoft-Windows-WinPE-FontSupport-WinRE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,043 Microsoft-Windows-WinPE-FontSupport-WinRE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:57 AM             8,841 Microsoft-Windows-WinPE-LanguagePack-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             7,141 Microsoft-Windows-WinPE-LanguagePack-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM             8,841 Microsoft-Windows-WinPE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:25 PM             5,025 Microsoft-Windows-WinPE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,610 Microsoft-Windows-WinPE-Shell-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,073 Microsoft-Windows-WinPE-Shell-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            10,378 Microsoft-Windows-WinPE-Shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,007 Microsoft-Windows-WinPE-Shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:08 AM            13,394 Microsoft-Windows-WinPE-SKU-Foundation-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,133 Microsoft-Windows-WinPE-SKU-Foundation-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM            20,105 Microsoft-Windows-WinPE-SKU-Foundation-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,052 Microsoft-Windows-WinPE-SKU-Foundation-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM            46,880 Microsoft-Windows-WinPE-SKU-Foundation-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,129 Microsoft-Windows-WinPE-SKU-Foundation-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM           240,615 Microsoft-Windows-WinPE-SKU-Foundation-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,049 Microsoft-Windows-WinPE-SKU-Foundation-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:04 AM            10,759 Microsoft-Windows-WinPE-SKU-Foundation-com-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,125 Microsoft-Windows-WinPE-SKU-Foundation-com-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:49 AM            31,288 Microsoft-Windows-WinPE-SKU-Foundation-com-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,046 Microsoft-Windows-WinPE-SKU-Foundation-com-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            13,450 Microsoft-Windows-WinPE-SKU-Foundation-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,141 Microsoft-Windows-WinPE-SKU-Foundation-drivers-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            18,042 Microsoft-Windows-WinPE-SKU-Foundation-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-WinPE-SKU-Foundation-drivers-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM            23,034 Microsoft-Windows-WinPE-SKU-Foundation-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,121 Microsoft-Windows-WinPE-SKU-Foundation-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM           144,252 Microsoft-Windows-WinPE-SKU-Foundation-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,043 Microsoft-Windows-WinPE-SKU-Foundation-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:15 AM            11,919 Microsoft-Windows-WinPE-SKU-Foundation-enduser-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,141 Microsoft-Windows-WinPE-SKU-Foundation-enduser-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            60,410 Microsoft-Windows-WinPE-SKU-Foundation-enduser-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-WinPE-SKU-Foundation-enduser-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:01 AM            11,146 Microsoft-Windows-WinPE-SKU-Foundation-inetcore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,145 Microsoft-Windows-WinPE-SKU-Foundation-inetcore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:48 AM            86,684 Microsoft-Windows-WinPE-SKU-Foundation-inetcore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,061 Microsoft-Windows-WinPE-SKU-Foundation-inetcore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             9,986 Microsoft-Windows-WinPE-SKU-Foundation-mergedcomponents-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,177 Microsoft-Windows-WinPE-SKU-Foundation-mergedcomponents-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:14 AM            19,504 Microsoft-Windows-WinPE-SKU-Foundation-mergedcomponents-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,085 Microsoft-Windows-WinPE-SKU-Foundation-mergedcomponents-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:59 AM             9,030 Microsoft-Windows-WinPE-SKU-Foundation-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,141 Microsoft-Windows-WinPE-SKU-Foundation-mincore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM            16,700 Microsoft-Windows-WinPE-SKU-Foundation-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-WinPE-SKU-Foundation-mincore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM            13,450 Microsoft-Windows-WinPE-SKU-Foundation-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,133 Microsoft-Windows-WinPE-SKU-Foundation-minio-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            37,548 Microsoft-Windows-WinPE-SKU-Foundation-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,052 Microsoft-Windows-WinPE-SKU-Foundation-minio-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM            14,027 Microsoft-Windows-WinPE-SKU-Foundation-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,149 Microsoft-Windows-WinPE-SKU-Foundation-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            45,903 Microsoft-Windows-WinPE-SKU-Foundation-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,064 Microsoft-Windows-WinPE-SKU-Foundation-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM            30,214 Microsoft-Windows-WinPE-SKU-Foundation-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,125 Microsoft-Windows-WinPE-SKU-Foundation-net-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            93,900 Microsoft-Windows-WinPE-SKU-Foundation-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,046 Microsoft-Windows-WinPE-SKU-Foundation-net-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,838 Microsoft-Windows-WinPE-SKU-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM            13,351 Microsoft-Windows-WinPE-SKU-Foundation-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,841 Microsoft-Windows-WinPE-SKU-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM            18,455 Microsoft-Windows-WinPE-SKU-Foundation-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:05 AM            10,762 Microsoft-Windows-WinPE-SKU-Foundation-printscan-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,149 Microsoft-Windows-WinPE-SKU-Foundation-printscan-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:49 AM            29,275 Microsoft-Windows-WinPE-SKU-Foundation-printscan-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,064 Microsoft-Windows-WinPE-SKU-Foundation-printscan-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM             9,794 Microsoft-Windows-WinPE-SKU-Foundation-sdktools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,145 Microsoft-Windows-WinPE-SKU-Foundation-sdktools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM            77,627 Microsoft-Windows-WinPE-SKU-Foundation-sdktools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,061 Microsoft-Windows-WinPE-SKU-Foundation-sdktools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM            15,174 Microsoft-Windows-WinPE-SKU-Foundation-shell-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,133 Microsoft-Windows-WinPE-SKU-Foundation-shell-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM           138,012 Microsoft-Windows-WinPE-SKU-Foundation-shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,052 Microsoft-Windows-WinPE-SKU-Foundation-shell-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:00 AM            10,171 Microsoft-Windows-WinPE-SKU-Foundation-termsrv-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,141 Microsoft-Windows-WinPE-SKU-Foundation-termsrv-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            19,003 Microsoft-Windows-WinPE-SKU-Foundation-termsrv-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-WinPE-SKU-Foundation-termsrv-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:56 AM             9,030 Microsoft-Windows-WinPE-SKU-Foundation-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,121 Microsoft-Windows-WinPE-SKU-Foundation-vm-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM             9,414 Microsoft-Windows-WinPE-SKU-Foundation-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,043 Microsoft-Windows-WinPE-SKU-Foundation-vm-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM            15,558 Microsoft-Windows-WinPE-SKU-Foundation-windows-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,141 Microsoft-Windows-WinPE-SKU-Foundation-windows-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM           279,307 Microsoft-Windows-WinPE-SKU-Foundation-windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,058 Microsoft-Windows-WinPE-SKU-Foundation-windows-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:08 AM             9,030 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,157 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-admin-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM             9,218 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,070 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-admin-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,027 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,153 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-base-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM             9,795 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,067 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-base-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM             9,030 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,145 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-ds-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM             9,795 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,061 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-ds-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,991 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,173 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-minkernel-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            15,673 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             1,082 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-minkernel-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,841 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             3,635 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:15 AM             8,838 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM             4,617 Microsoft-Windows-WinPE-SKU-Foundation-WOW64-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:39 AM             8,840 Microsoft-Windows-WinPEFoundation-LanguagePack-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM               746 Microsoft-Windows-WinPEFoundation-LanguagePack-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:08 AM             9,030 Microsoft-WinPE-Multilingual-Package-admin~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,312 Microsoft-WinPE-Multilingual-Package-admin~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM            24,390 Microsoft-WinPE-Multilingual-Package-admin~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:12 PM             1,045 Microsoft-WinPE-Multilingual-Package-admin~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:34 AM             9,030 Microsoft-WinPE-Multilingual-Package-base~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,305 Microsoft-WinPE-Multilingual-Package-base~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            16,710 Microsoft-WinPE-Multilingual-Package-base~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:09 PM             1,039 Microsoft-WinPE-Multilingual-Package-base~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM             9,030 Microsoft-WinPE-Multilingual-Package-ds~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,291 Microsoft-WinPE-Multilingual-Package-ds~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM            19,014 Microsoft-WinPE-Multilingual-Package-ds~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:17 PM             1,027 Microsoft-WinPE-Multilingual-Package-ds~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:15 AM             9,027 Microsoft-WinPE-Multilingual-Package-enduser~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,326 Microsoft-WinPE-Multilingual-Package-enduser~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            18,626 Microsoft-WinPE-Multilingual-Package-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM             1,057 Microsoft-WinPE-Multilingual-Package-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,030 Microsoft-WinPE-Multilingual-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,340 Microsoft-WinPE-Multilingual-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            51,035 Microsoft-WinPE-Multilingual-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:07 PM             1,069 Microsoft-WinPE-Multilingual-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,030 Microsoft-WinPE-Multilingual-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,312 Microsoft-WinPE-Multilingual-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM            86,022 Microsoft-WinPE-Multilingual-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:18 PM             1,045 Microsoft-WinPE-Multilingual-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM             9,030 Microsoft-WinPE-Multilingual-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,326 Microsoft-WinPE-Multilingual-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM            39,750 Microsoft-WinPE-Multilingual-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:11 PM             1,060 Microsoft-WinPE-Multilingual-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM             9,978 Multimedia-AudioDriversCore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,428 Multimedia-AudioDriversCore-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            12,199 Multimedia-AudioDriversCore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM             1,621 Multimedia-AudioDriversCore-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:02 AM             9,610 Multimedia-MMECoreBase-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,045 Multimedia-MMECoreBase-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:45 AM            13,071 Multimedia-MMECoreBase-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:26 PM               986 Multimedia-MMECoreBase-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
01/29/2016  09:24 PM           266,324 Package_108_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,363 Package_108_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            27,610 Package_125_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,131 Package_125_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            20,783 Package_126_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,377 Package_126_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            21,755 Package_127_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             3,317 Package_127_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            32,619 Package_128_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,752 Package_128_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            84,964 Package_129_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,384 Package_129_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            15,730 Package_130_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,761 Package_130_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            10,577 Package_131_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,068 Package_131_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            27,931 Package_132_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,690 Package_132_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            14,507 Package_133_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,754 Package_133_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_134_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,750 Package_134_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:23 PM           104,189 Package_135_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             5,165 Package_135_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:23 PM             9,613 Package_143_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,708 Package_143_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,989 Package_14_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,051 Package_14_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM           543,209 Package_159_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,341 Package_159_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            34,006 Package_176_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,709 Package_176_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_177_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,077 Package_177_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            10,593 Package_179_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,462 Package_179_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_1_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             8,168 Package_1_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            11,721 Package_206_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,666 Package_206_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            12,511 Package_207_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,453 Package_207_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            48,595 Package_25_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,737 Package_25_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            10,381 Package_26_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,049 Package_26_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            10,560 Package_27_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,574 Package_27_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,221 Package_28_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,743 Package_28_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            18,271 Package_29_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,735 Package_29_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/20/2016  03:14 PM            19,377 Package_2_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.cat
01/20/2016  03:13 PM             1,727 Package_2_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.mum
01/29/2016  09:24 PM             9,989 Package_30_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,125 Package_30_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:23 PM            15,093 Package_31_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,761 Package_31_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_32_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,749 Package_32_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_33_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,755 Package_33_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,986 Package_34_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,050 Package_34_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,416 Package_35_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,743 Package_35_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            41,620 Package_36_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,747 Package_36_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_37_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,743 Package_37_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            27,478 Package_38_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,689 Package_38_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,651 Package_39_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,961 Package_39_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/20/2016  03:14 PM            10,381 Package_3_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.cat
01/20/2016  03:13 PM             1,765 Package_3_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.mum
01/29/2016  09:24 PM             9,793 Package_40_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,279 Package_40_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM            19,377 Package_82_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,738 Package_82_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,414 Package_83_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,745 Package_83_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,808 Package_84_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             1,744 Package_84_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             9,417 Package_92_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:06 PM             2,742 Package_92_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/29/2016  09:24 PM             8,844 Package_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.cat
01/29/2016  09:08 PM           383,730 Package_for_KB3135173~31bf3856ad364e35~amd64~~10.0.1.2.mum
01/20/2016  03:14 PM             8,844 Package_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.cat
01/20/2016  03:13 PM             6,085 Package_for_KB3136561~31bf3856ad364e35~amd64~~10.0.1.0.mum
10/30/2015  01:34 AM            42,118 Product-winpe__Microsoft-Windows-Common-DriverClasses-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM            19,721 Product-winpe__Microsoft-Windows-Common-DriverClasses-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:10 AM            31,023 Product-winpe__Microsoft-Windows-Common-DriverClasses-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM            34,079 Product-winpe__Microsoft-Windows-Common-DriverClasses-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            10,354 WinPE-EnhancedStorage-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             2,058 WinPE-EnhancedStorage-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            10,362 WinPE-EnhancedStorage-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:20 PM             2,079 WinPE-EnhancedStorage-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:56 AM             8,841 WinPE-Fonts-Legacy-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             1,343 WinPE-Fonts-Legacy-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:56 AM             8,841 WinPE-FontSupport-WinRE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:11 PM             1,362 WinPE-FontSupport-WinRE-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:05 AM             9,411 WinPE-HTA-Package-com~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,193 WinPE-HTA-Package-com~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:49 AM            10,889 WinPE-HTA-Package-com~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:19 PM             1,161 WinPE-HTA-Package-com~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:01 AM            11,718 WinPE-HTA-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,232 WinPE-HTA-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:48 AM           558,176 WinPE-HTA-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:19 PM               952 WinPE-HTA-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,411 WinPE-HTA-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,208 WinPE-HTA-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM            12,159 WinPE-HTA-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:18 PM               932 WinPE-HTA-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM            10,566 WinPE-HTA-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,224 WinPE-HTA-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM           118,097 WinPE-HTA-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:11 PM               946 WinPE-HTA-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM             9,029 WinPE-HTA-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             3,562 WinPE-HTA-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM             9,217 WinPE-HTA-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             3,456 WinPE-HTA-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM            10,574 WinPE-MDAC-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,231 WinPE-MDAC-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM            23,702 WinPE-MDAC-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:31 PM               952 WinPE-MDAC-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM             9,406 WinPE-Rejuv-Package-Drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,202 WinPE-Rejuv-Package-Drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM             9,599 WinPE-Rejuv-Package-Drivers~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:20 PM               937 WinPE-Rejuv-Package-Drivers~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM             8,841 WinPE-Rejuv-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,296 WinPE-Rejuv-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM             8,841 WinPE-Rejuv-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             1,252 WinPE-Rejuv-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:01 AM            11,730 WinPE-Scripting-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,264 WinPE-Scripting-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:48 AM            12,714 WinPE-Scripting-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:19 PM               989 WinPE-Scripting-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM             9,030 WinPE-Scripting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,887 WinPE-Scripting-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM             9,218 WinPE-Scripting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             1,805 WinPE-Scripting-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            10,566 WinPE-SecureStartup-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,316 WinPE-SecureStartup-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            13,063 WinPE-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:34 PM             1,664 WinPE-SecureStartup-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,411 WinPE-SRT-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,208 WinPE-SRT-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM             9,787 WinPE-SRT-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:18 PM               932 WinPE-SRT-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM            10,762 WinPE-SRT-Package-TouchKeyboard~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,220 WinPE-SRT-Package-TouchKeyboard~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            19,794 WinPE-SRT-Package-TouchKeyboard~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:20 PM               976 WinPE-SRT-Package-TouchKeyboard~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:19 AM             9,414 WinPE-SRT-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,224 WinPE-SRT-Package-windows~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:54 AM             9,798 WinPE-SRT-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               946 WinPE-SRT-Package-windows~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            15,767 WinPE-SRT-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             4,655 WinPE-SRT-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            19,781 WinPE-SRT-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             4,500 WinPE-SRT-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM            11,120 WinPE-StorageWMI-Package-drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,273 WinPE-StorageWMI-Package-drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            13,794 WinPE-StorageWMI-Package-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:20 PM               988 WinPE-StorageWMI-Package-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            10,166 WinPE-StorageWMI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,914 WinPE-StorageWMI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            16,762 WinPE-StorageWMI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:33 PM             1,798 WinPE-StorageWMI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            10,950 WinPE-WDS-Tools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             1,300 WinPE-WDS-Tools-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            11,905 WinPE-WDS-Tools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM             1,214 WinPE-WDS-Tools-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            16,871 WinPE-WiFi-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,488 WinPE-WiFi-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            23,219 WinPE-WiFi-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:32 PM             1,616 WinPE-WiFi-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:08 AM            24,654 WinPE-WMI-Package-admin~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,208 WinPE-WMI-Package-admin~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:51 AM            33,950 WinPE-WMI-Package-admin~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:31 PM               932 WinPE-WMI-Package-admin~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:18 AM             9,030 WinPE-WMI-Package-drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:28 PM             1,224 WinPE-WMI-Package-drivers~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM            10,158 WinPE-WMI-Package-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:20 PM               946 WinPE-WMI-Package-drivers~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:12 AM            10,158 WinPE-WMI-Package-ds~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,184 WinPE-WMI-Package-ds~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:52 AM            11,662 WinPE-WMI-Package-ds~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:31 PM               911 WinPE-WMI-Package-ds~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:15 AM             9,610 WinPE-WMI-Package-enduser~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:20 PM             1,224 WinPE-WMI-Package-enduser~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM             9,806 WinPE-WMI-Package-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:27 PM               946 WinPE-WMI-Package-enduser~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:01 AM            10,198 WinPE-WMI-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,232 WinPE-WMI-Package-inetcore~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:48 AM            10,590 WinPE-WMI-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:19 PM               953 WinPE-WMI-Package-inetcore~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  12:58 AM             9,030 WinPE-WMI-Package-minio~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,208 WinPE-WMI-Package-minio~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:43 AM             9,401 WinPE-WMI-Package-minio~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               932 WinPE-WMI-Package-minio~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:03 AM             9,030 WinPE-WMI-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,240 WinPE-WMI-Package-minkernel~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:44 AM             9,405 WinPE-WMI-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:32 PM               960 WinPE-WMI-Package-minkernel~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:17 AM             9,414 WinPE-WMI-Package-net~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:19 PM             1,192 WinPE-WMI-Package-net~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:53 AM             9,975 WinPE-WMI-Package-net~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:30 PM               918 WinPE-WMI-Package-net~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:05 AM             9,030 WinPE-WMI-Package-printscan~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,240 WinPE-WMI-Package-printscan~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:49 AM             9,414 WinPE-WMI-Package-printscan~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:16 PM               960 WinPE-WMI-Package-printscan~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  01:20 AM             9,414 WinPE-WMI-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:29 PM             1,208 WinPE-WMI-Package-shell~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  12:55 AM             9,414 WinPE-WMI-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:18 PM               932 WinPE-WMI-Package-shell~31bf3856ad364e35~amd64~~10.0.10586.0.mum
10/30/2015  02:12 AM            11,114 WinPE-WMI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.cat
10/29/2015  11:31 PM             7,103 WinPE-WMI-Package~31bf3856ad364e35~amd64~en-US~10.0.10586.0.mum
10/30/2015  01:56 AM            13,974 WinPE-WMI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.cat
10/29/2015  10:08 PM             6,874 WinPE-WMI-Package~31bf3856ad364e35~amd64~~10.0.10586.0.mum
             700 File(s)      9,088,658 bytes

before I continue do need all of this stuff?



#11 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 15 May 2016 - 04:35 PM

Hello,

 

Gave a report abnormal !!

=============================================================

 

Download Windows Repair (All in One) from this site
Install the program then run it.

NOTE 1. In Windows Vista, 7 and 8 right click on the program, click "Run As Administrator".
NOTE 2. Disable your antivirus program before running Windows Repair.

 

Go to Step 2  by clicking  on the Open Pre-scan button

Ashampoo_Snap_2016.02.19_13h52m48s_003__
Now, go to Step 3 and click on Check button next to 1. See If Check Disk Is Needed.
If the tool indicates that the Check Disk is needed click on Do It button next to 2. Check Disk, then restart your computer.
Ashampoo_Snap_2016.02.19_13h53m11s_004__
Once the above is done, go to Step 4 and allow it to run System File Check by clicking on the Do It button.
Ashampoo_Snap_2016.02.19_13h53m34s_005__
Go to Step 5 and under"System Restore" click on Create button.

Ashampoo_Snap_2016.02.19_13h53m58s_006__

Go to Start Repairs tab and click the Start button.
Ashampoo_Snap_2016.02.20_19h38m24s_003__
Leave the check marks as they are.
NOTE for Windows 8 users. Reset Registry Permissions is NOT checked by design.
Click on Start Repairs button.
Ashampoo_Snap_2016.02.19_15h57m21s_001__
After the repair finished, you may be prompted to restart the computer. Please allow it to do so.

Please post the Windows Repair log which is located in the following folder:
64-bit systems - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Logs
32-bit systems - C:\Program Files\Tweaking.com\Windows Repair (All in One)\Logs


Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#12 Nordy199

Nordy199
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:04:47 AM

Posted 15 May 2016 - 08:02 PM

Hello,

 

Here is the Repair Log

 

Tweaking.com - Windows Repair v3.8.7
--------------------------------------------------------------------------------
 
System Variables
--------------------------------------------------------------------------------
OS: Windows 8.1
OS Architecture: 64-bit
OS Version: 6.3.9600
OS Service Pack: 
Computer Name: MRBBHEAD
Windows Drive: C:\
Windows Path: C:\WINDOWS
Program Files: C:\Program Files
Program Files (x86): C:\Program Files (x86)
Current Profile: C:\Users\Nordy
Current Profile SID: S-1-5-21-727363808-1973197721-797726289-1001
Current Profile Classes: S-1-5-21-727363808-1973197721-797726289-1001_Classes
Profiles Location: C:\Users
Profiles Location 2: C:\WINDOWS\ServiceProfiles
Local Settings AppData: C:\Users\Nordy\AppData\Local
--------------------------------------------------------------------------------
 
System Information
--------------------------------------------------------------------------------
System Up Time: 0 Days 00:30:07
 
Process Count: 89
Commit Total: 2.12 GB
Commit Limit: 8.61 GB
Commit Peak: 2.56 GB
Handle Count: 28544
Kernel Total: 665.40 MB
Kernel Paged: 461.47 MB
Kernel Non Paged: 203.93 MB
System Cache: 5.97 GB
Thread Count: 929
--------------------------------------------------------------------------------
 
Memory Before Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 7.80 GB
Memory Used: 2.08 GB(26.6192%)
Memory Avail.: 5.72 GB
--------------------------------------------------------------------------------
 
Cleaning Memory Before Starting Repairs...
 
Memory After Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 7.80 GB
Memory Used: 1.55 GB(19.873%)
Memory Avail.: 6.25 GB
--------------------------------------------------------------------------------
 
Starting Repairs...
   Started at (5/15/2016 5:47:01 PM)
 
Setting Any Missing 'InstallDate' From Uninstall Sections Before Running Repair...
Total Missing 'InstallDate' Fixed: 103
 
01 - Reset Registry Permissions
   Restore Windows 7/8/10 Default Registry Permissions
   Start (5/15/2016 5:47:03 PM)
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\hku.7z
Done,  0.27 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\hklm.7z
Done,  1.86 seconds.
 
   Running Repair Under System Account
   Done (5/15/2016 5:48:54 PM)
 
Reset File Permissions: C:
   C: & Sub Folders
   Start (5/15/2016 5:48:54 PM)
 
   Running Repair Under Current User Account
   Done (5/15/2016 6:39:03 PM)
 
Reset File Permissions
   Restore Windows 7/8/10 Default File Permissions
   Start (5/15/2016 6:39:03 PM)
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\default.7z
Done,  0.13 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\profile.7z
Done,  0.2 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\program_files.7z
Done,  0.26 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\program_files_x86.7z
Done,  0.44 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\programdata.7z
Done,  0.13 seconds.
 
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\windows.7z
Done,  3.18 seconds.
 
   Running Repair Under Current User Account
   Done (5/15/2016 6:46:41 PM)
 
Reset File Permissions: Cleanup
   Repairing Restricted Folders Permissions To Avoid Infinite Loops
   Start (5/15/2016 6:46:41 PM)
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:46:44 PM)
 
03 - Reset Service Permissions
   Start (5/15/2016 6:46:44 PM)
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:47:00 PM)
 
04 - Register System Files
   Start (5/15/2016 6:47:00 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:47:45 PM)
 
05 - Repair WMI
   Start (5/15/2016 6:47:45 PM)
 
   Starting Security Center So We Can Export The Security Info.
 
   Exporting Antivirus Info...
   Windows Defender Exported.
 
   Exporting AntiSpyware Info...
   Windows Defender Exported.
 
   Exporting 3rd Party Firewall Info...
   No Firewall Products Reported.
 
   Running Repair Under Current User Account
   Done (5/15/2016 6:53:47 PM)
 
06 - Repair Windows Firewall
   Start (5/15/2016 6:53:47 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.13 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:16 PM)
 
07 - Repair Internet Explorer
   Start (5/15/2016 6:54:16 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:30 PM)
 
08 - Repair MDAC/MS Jet
   Start (5/15/2016 6:54:30 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:36 PM)
 
09 - Repair Hosts File
   Start (5/15/2016 6:54:36 PM)
   Running Repair Under System Account
   Done (5/15/2016 6:54:37 PM)
 
10 - Remove Policies Set By Infections
   Start (5/15/2016 6:54:37 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:39 PM)
 
11 - Repair Start Menu Icons Removed By Infections
   Start (5/15/2016 6:54:39 PM)
   Running Repair Under System Account
   Done (5/15/2016 6:54:40 PM)
 
12 - Repair Icons
   Start (5/15/2016 6:54:40 PM)
   Running Repair Under Current User Account
   Done (5/15/2016 6:54:41 PM)
 
13 - Repair Network
   Start (5/15/2016 6:54:41 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.14 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:53 PM)
 
14 - Remove Temp Files
   Start (5/15/2016 6:54:53 PM)
   Running Repair Under System Account
   Done (5/15/2016 6:54:57 PM)
 
15 - Repair Proxy Settings
   Start (5/15/2016 6:54:57 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:54:59 PM)
 
17 - Repair Windows Updates
   Start (5/15/2016 6:54:59 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.47 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Setting Windows Updates Files That Are In Use To Be Removed At Next Boot.
   Done (5/15/2016 6:55:25 PM)
 
18 - Repair CD/DVD Missing/Not Working
   Start (5/15/2016 6:55:25 PM)
   iTunes and GEARAspiWDM.sys was found, adding UpperFilters for iTunes Reg Key
   UpperFilters added?: True
   Done (5/15/2016 6:55:25 PM)
 
19 - Repair Volume Shadow Copy Service
   Start (5/15/2016 6:55:25 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.14 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:55:45 PM)
 
20 - Repair Windows Sidebar/Gadgets
   Start (5/15/2016 6:55:45 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:55:47 PM)
 
21 - Repair MSI (Windows Installer)
   Start (5/15/2016 6:55:47 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.13 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:55:57 PM)
 
22 - Repair Windows Snipping Tool
   Start (5/15/2016 6:55:57 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:55:59 PM)
 
23.01 - Repair bat Association
   Start (5/15/2016 6:55:59 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:01 PM)
 
23.02 - Repair cmd Association
   Start (5/15/2016 6:56:01 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:03 PM)
 
23.03 - Repair com Association
   Start (5/15/2016 6:56:03 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:05 PM)
 
23.04 - Repair Directory Association
   Start (5/15/2016 6:56:05 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:07 PM)
 
23.05 - Repair Drive Association
   Start (5/15/2016 6:56:07 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:09 PM)
 
23.06 - Repair exe Association
   Start (5/15/2016 6:56:09 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:11 PM)
 
23.07 - Repair Folder Association
   Start (5/15/2016 6:56:11 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:14 PM)
 
23.08 - Repair inf Association
   Start (5/15/2016 6:56:14 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:16 PM)
 
23.09 - Repair lnk (Shortcuts) Association
   Start (5/15/2016 6:56:16 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:18 PM)
 
23.10 - Repair msc Association
   Start (5/15/2016 6:56:18 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:20 PM)
 
23.11 - Repair reg Association
   Start (5/15/2016 6:56:20 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:22 PM)
 
23.12 - Repair scr Association
   Start (5/15/2016 6:56:22 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:24 PM)
 
24 - Repair Windows Safe Mode
   Start (5/15/2016 6:56:24 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:26 PM)
 
25 - Repair Print Spooler
   Start (5/15/2016 6:56:26 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.14 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:37 PM)
 
26 - Restore Important Windows Services
   Start (5/15/2016 6:56:37 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\services.7z
Done,  0.14 seconds.
 
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:42 PM)
 
27 - Set Windows Services To Default Startup
   Start (5/15/2016 6:56:42 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 6:56:45 PM)
 
28.01 - Repair Windows 8/10 App Store
   Start (5/15/2016 6:56:45 PM)
 
Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\8\hku.7z
Done,  0.21 seconds.
 
   Running Repair Under Current User Account
   Done (5/15/2016 7:01:56 PM)
 
29 - Repair Windows 8/10 Component Store
   Start (5/15/2016 7:01:56 PM)
   Running Repair Under Current User Account
   Done (5/15/2016 7:30:47 PM)
 
30 - Restore Windows 8/10 COM+ Unmarshalers
   Start (5/15/2016 7:30:47 PM)
   Running Repair Under System Account
[X] -----Job Complete-----      Items Done: 1      
   Done (5/15/2016 7:30:50 PM)
 
31 - Repair Windows 'New' Submenu
   Start (5/15/2016 7:30:50 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 7:30:52 PM)
 
32 - Restore UAC (User Account Control) Settings
   Start (5/15/2016 7:30:52 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (5/15/2016 7:30:54 PM)
 
33 - Repair Performance Counters
   Start (5/15/2016 7:30:54 PM)
   Running Repair Under Current User Account
   Done (5/15/2016 7:31:01 PM)
 
Cleaning up empty logs...
 
All Selected Repairs Done.
   Done at (5/15/2016 7:31:01 PM)
   Total Repair Time: 01:44:02
 
 
...YOU MUST RESTART YOUR SYSTEM...


#13 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 16 May 2016 - 04:55 PM

Hi there,

 

Repair was successful

=====================

Scan with Zoek make the process again.Report may still be too log. Please upload the following site

http://wikisend.com/

 


Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 


#14 olgun52

olgun52

  • Malware Response Team
  • 3,784 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:47 PM

Posted 08 June 2016 - 03:52 PM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days.

Please include a link to your topic in the Private Message. Thank you.

Best regards
 
paypal.gif
If you wish to show appreciation and support me personally fighting against malware, then you can consider a donation. Thank you. :thumbup2:
Malware fix forum
If I don't reply within 24 hours please PM me!

 


 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users