Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Trojan horse Generic37.BGLX.dropper,svchost.exe


  • This topic is locked This topic is locked
21 replies to this topic

#1 karentaliesin

karentaliesin

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 21 June 2016 - 05:10 PM

Hello,

 

Problem i have is repeated reports of trojan horse threat by avg, everytime i scan.

It is reported as secured, and there is nothing in the virus vault. But returns imediately on rescanning

Avg info : Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe

 

 

my problem started originally,

some weeks ago sacn with AVG threw up a trojan horse . a corrupted file which was removed to the virus vault, along with the same threat reports i am now getting, (i havnt got the info on that now due to factory reset further on in the story)

Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (3028)";"Secured

 

trojan horse Generic37.BGLX.dropper

c:\Windows\system32\sychost.exe(2376) type process

 

then i started to get

error messages « window has stopped », everytime i tried to copy and paste, then it would try to repair, stop and then reload unfixed.

I read up and tried to fix that, following the recomended steps, (i.e. re install video drivers and etcetc.) but it didnt fix the windows has stopped working issue, ( i was still getting the trojan horse scans coming up) i did a few that day !!, and was thinking maybe they are connected these two issues

and so i decided to do a factory reset, clear out my computer of all files etc

reinstalled using the Acer erecovery to factory defaults.

That fixed the « windows has stopped working » issue, and i can now copy and paste

however, every Scan still by Avg still showsProblem i have is repeated reports of trojan horse threat by avg, everytime i scan.

It is reported as secured, and there is nothing in the virus vault. But returns imediately on rescanning

Avg info : Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe

 

 

 

 

however, every Scan still by Av up this same threat of trojan horse. In svchost.exe

just the number changes

 

Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (3028)";"Secured

 

trojan horse Generic37.BGLX.dropper

c:\Windows\system32\sychost.exe(2376) type process

 

c:\Windows\system32\sychost.exe(2376 ):\memory_0e6e0000 type embedded in the archive, email attachment, cookie etc

 

 

c:\Windows\system32\sychost.exe(2616) type process

 

c:\Windows\system32\sychost.exe(2616):\memory_0e690000 type embedded in the archive, email attachment, cookie etc

 

 

Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2608)";"Secured"

 

Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2348))";"Secured"

 

c:\Windows\system32\sychost.exe(2348):\memory_0e7e0000 type embedded in the archive, email attachment, cookie etc

 

So I scanned with malware bytes - all clear,

then adware cleaner, which gave me a couple of things to remove,

few other scans but thy didnt bring anything up yet,

the problem with avg scan detecting threat continued,

 

i downloaded Avast and scanned, which gave an all clear.

Re did malware bytes a couple of times all clear.

 

And i have just done a disc clean and presently running Avg yet again before i post this, (with tracking cookies seleted as well this time) in the hope it fixed....

 

it came up with 5 cookies all ad stuff and sent them to virus vault, and the same trojan with different number (se below for previous).

 

AVG history log

Whole Computer Scan         High severity 1 1 0   Medium severity 5 5 0   Scanned: Scan Whole Computer       Started: 21/06/2016, 22:26:35       Finished: 21/06/2016, 23:04:05       Number of items: 376819       Launched by: karen                 Name Description Status Status Priority c:\Windows\System32\svchost.exe (2348) Trojan horse Generic37.BGLX.dropper Secured Healed High C:\Users\karen\AppData\Roaming\Microsoft\Windows\Cookies\Low\karen@smartadserver[1].txt Found Tracking cookie.Smartadserver Secured Healed Medium C:\Users\karen\AppData\Roaming\Microsoft\Windows\Cookies\Low\karen@casalemedia[1].txt Found Tracking cookie.Casalemedia Secured Healed Medium C:\Users\karen\AppData\Roaming\Microsoft\Windows\Cookies\Low\karen@adtech[1].txt Found Tracking cookie.Adtech Secured Healed Medium C:\Users\karen\AppData\Roaming\Microsoft\Windows\Cookies\Low\karen@ru4[1].txt Found Tracking cookie.Ru4 Secured Healed Medium C:\Users\karen\AppData\Roaming\Microsoft\Windows\Cookies\Low\karen@advertising[2].txt Found Tracking cookie.Advertising Secured Healed Medium

 

"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2348)";"Secured"

c:\Windows\system32\sychost.exe(2348):\memory_0e7e0000 type embedded in the archive, email attachment, cookie etc

 

So i am really not sure if there is a problem or not, as Avg has given me false positives on a previous occasion, which you helped me with.

but i would like to make sure before i use the computer properly, rather than just ignore the threat messages

 

So i have defogged, and then run the farbar and the logs generated are as follows (sorry they are in French language, i dont know how to change that?) now i have to put it into two posts as says this one too long, far bar in second post...


Edited by karentaliesin, 21 June 2016 - 05:25 PM.


BC AdBot (Login to Remove)

 


#2 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 21 June 2016 - 05:14 PM

farbar scan log

 

Résultats d'analyse de  Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2016 01
Exécuté par karen (administrateur) sur TALIESIN-PC (21-06-2016 23:33:09)
Exécuté depuis C:\Users\karen\Desktop
Profils chargés: karen (Profils disponibles: karen)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 8 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Windows\PLFSetI.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
(Acer Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\swriter.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM\...\Run: [mwlDaemon] => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-08-07] (Egis Technology Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-06] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1808168 2009-06-19] (Synaptics Incorporated)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2008-07-29] ()
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [828960 2009-08-05] (Acer Incorporated)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [261888 2009-08-21] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [EgisTecLiveUpdate] => C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [199464 2009-08-04] (Egis Technology Inc.)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1194504 2009-08-27] (Dritek System Inc.)
HKLM-x32\...\Run: [ArcadeDeluxeAgent] => C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [128296 2009-07-31] (CyberLink Corp.)
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-08-04] (Acer Corp.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-05-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6570256 2016-06-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595992 2016-05-20] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-08-22] (Google Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-06-16] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Pas de fichier
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll [2009-08-07] (Egis Technology Inc.)
ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll [2009-08-07] (Egis Technology Inc.)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{E8CEFC35-16C3-44BB-AB23-403058E9F84A}: [DhcpNameServer] 10.0.0.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM-x32 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_frFR697
SearchScopes: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_frFR697
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => Pas de fichier
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: Pas de nom -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> Pas de fichier
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-21] (Oracle Corporation)
BHO-x32: Programme d'aide de l'Assistant de connexion Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-17] (Google Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-21] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-17] (Google Inc.)
Toolbar: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll [2009-02-06] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll [2009-02-06] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default
FF Homepage: hxxps://www.google.co.uk/
FF Session Restore: -> est activé.
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8064.0206 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-02-06] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Extension: Xmarks - C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default\extensions\foxmarks@kei.com [2016-06-16]
FF Extension: Adblock Plus - C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-16]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [636312 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5165824 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1080592 2016-05-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [705528 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [311592 2009-08-07] (Egis Technology Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [307456 2016-05-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-05-02] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [247040 2016-05-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [51968 2016-05-02] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [279296 2016-05-17] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71936 2016-05-05] (AVG Technologies CZ, s.r.o.)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-06-21 23:33 - 2016-06-21 23:33 - 00016885 _____ C:\Users\karen\Desktop\FRST.txt
2016-06-21 23:32 - 2016-06-21 23:33 - 00000000 ____D C:\FRST
2016-06-21 23:32 - 2016-06-21 23:32 - 00012205 _____ C:\Users\karen\Desktop\avg overview.ods
2016-06-21 23:07 - 2016-06-21 23:07 - 00002288 _____ C:\Users\karen\Desktop\avg overview.csv
2016-06-21 23:06 - 2016-06-21 23:06 - 02387456 _____ (Farbar) C:\Users\karen\Desktop\FRST64.exe
2016-06-21 23:05 - 2016-06-21 23:05 - 00688992 _____ (Swearware) C:\Users\karen\Desktop\dds.com
2016-06-21 23:04 - 2016-06-21 23:04 - 00050477 _____ C:\Users\karen\Desktop\Defogger.exe
2016-06-21 22:37 - 2016-06-21 23:28 - 00000100 ____H C:\Users\karen\Desktop\.~lock.trojan generic37.odt#
2016-06-21 21:59 - 2016-06-21 21:59 - 00000695 _____ C:\DelFix.txt
2016-06-21 21:06 - 2016-06-21 21:06 - 00000000 _____ C:\Users\karen\defogger_reenable
2016-06-21 18:40 - 2016-06-21 18:40 - 00000000 ____D C:\Users\karen\AppData\Roaming\Sun
2016-06-21 18:37 - 2016-06-21 18:37 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Oracle
2016-06-21 17:20 - 2016-06-21 17:37 - 00073052 _____ C:\Windows\ntbtlog.txt
2016-06-21 15:11 - 2016-06-21 15:31 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-06-21 15:09 - 2016-06-21 15:10 - 16563352 _____ (Malwarebytes Corp.) C:\Users\karen\Desktop\mbar-1.09.3.1001.exe
2016-06-21 14:22 - 2016-06-21 14:23 - 00000000 ____D C:\Users\karen\AppData\Roaming\vlc
2016-06-21 13:38 - 2016-06-21 18:39 - 00000000 ____D C:\ProgramData\Oracle
2016-06-21 13:37 - 2016-06-21 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-06-21 13:37 - 2016-06-21 18:41 - 00000000 ____D C:\Program Files (x86)\Java
2016-06-21 13:37 - 2016-06-21 18:40 - 00267840 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2016-06-21 13:37 - 2016-06-21 18:40 - 00097344 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-06-17 23:45 - 2016-06-21 17:18 - 00019012 _____ C:\Users\karen\Desktop\tv progs to watch.odt
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\karen\AppData\Local\Adobe
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-06-17 20:55 - 2016-06-17 20:55 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-06-17 20:49 - 2016-06-17 21:25 - 00000000 ____D C:\ProgramData\AVAST Software
2016-06-17 20:35 - 2016-06-17 20:36 - 05066104 _____ (AVAST Software) C:\Users\karen\Desktop\avast_free_antivirus_setup_online.exe
2016-06-17 11:27 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-06-17 11:27 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-06-17 11:27 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-06-17 11:27 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-06-17 11:27 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-06-17 11:27 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-06-17 11:27 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-06-17 11:27 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-06-17 11:27 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-06-16 21:53 - 2016-06-16 21:53 - 00036352 ___SH C:\Users\karen\AppData\Roaming\Thumbs.db
2016-06-16 21:52 - 2016-06-16 21:52 - 00001025 _____ C:\Users\karen\Desktop\Trazer - Raccourci.lnk
2016-06-16 21:28 - 2016-06-17 23:34 - 00002350 _____ C:\Users\karen\Desktop\tv progs to watch old comp - Raccourci.lnk
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\SoftDMA
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\PowerCinema
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\CyberLink
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Local\PowerCinema
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Local\PlayMovie
2016-06-16 19:07 - 2016-06-16 19:07 - 00000017 _____ C:\Users\karen\AppData\Local\resmon.resmoncfg
2016-06-16 18:59 - 2016-06-16 18:59 - 00000000 ____D C:\Windows\system32\SPReview
2016-06-16 18:58 - 2016-06-16 18:58 - 00000000 ____D C:\Windows\system32\EventProviders
2016-06-16 17:32 - 2010-11-20 15:33 - 01924480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-06-16 17:32 - 2010-11-20 15:28 - 01731936 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 14633472 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 08988160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03715584 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 02314752 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01465344 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01219584 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 12260864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 04120064 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 03205120 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-06-16 17:32 - 2010-11-20 15:25 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-06-16 17:32 - 2010-11-20 15:25 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2016-06-16 17:32 - 2010-11-20 15:25 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2016-06-16 17:32 - 2010-11-20 14:21 - 00870912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-06-16 17:32 - 2010-11-20 14:21 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2016-06-16 17:32 - 2010-11-20 14:20 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 10990080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 05977600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 03215872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40u.dll
2016-06-16 17:32 - 2010-11-20 14:18 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-06-16 17:32 - 2010-11-20 14:18 - 00739840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-06-16 17:32 - 2010-11-20 14:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2016-06-16 17:32 - 2010-11-20 14:17 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2016-06-16 17:32 - 2010-11-20 13:07 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2016-06-16 17:32 - 2010-11-05 03:58 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2016-06-16 17:31 - 2010-11-20 15:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2016-06-16 17:31 - 2010-11-20 15:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2016-06-16 17:31 - 2010-11-20 15:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2016-06-16 17:31 - 2010-11-20 15:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-06-16 17:31 - 2010-11-20 15:33 - 00376192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-06-16 17:31 - 2010-11-20 15:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-06-16 17:31 - 2010-11-20 15:33 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00095616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2016-06-16 17:31 - 2010-11-20 15:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-06-16 17:31 - 2010-11-20 15:28 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-06-16 17:31 - 2010-11-20 15:28 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-06-16 17:31 - 2010-11-20 15:28 - 00459248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-16 17:31 - 2010-11-20 15:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-06-16 17:31 - 2010-11-20 15:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02018304 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 01881088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01572352 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01490944 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01188864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01118208 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01026560 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00960512 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00612864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00605696 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00577536 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00481280 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00326144 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 03391488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02746880 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01544192 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01457664 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01340416 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01244160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00934912 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00281600 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 03957760 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01927680 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01600512 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01504256 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01456128 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00897536 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-06-16 17:31 - 2010-11-20 15:25 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00128000 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2016-06-16 17:31 - 2010-11-20 15:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2016-06-16 17:31 - 2010-11-20 15:24 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2016-06-16 17:31 - 2010-11-20 15:24 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2016-06-16 17:31 - 2010-11-20 15:24 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2016-06-16 17:31 - 2010-11-20 14:55 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-06-16 17:31 - 2010-11-20 14:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-06-16 17:31 - 2010-11-20 14:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll
2016-06-16 17:31 - 2010-11-20 14:24 - 01292096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-06-16 17:31 - 2010-11-20 14:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01619456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2016-06-16 17:31 - 2010-11-20 14:21 - 01548288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01229824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01175040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01010688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00980992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 03207680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02064384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01698816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01163264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00606208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstime.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00389120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01792000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01154048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01076736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00522752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00252928 _____ (Microsoft) C:\Windows\SysWOW64\DShowRdpFilter.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2016-06-16 17:31 - 2010-11-20 14:17 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2016-06-16 17:31 - 2010-11-20 14:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2016-06-16 17:31 - 2010-11-20 14:08 - 00837632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-06-16 17:31 - 2010-11-20 14:08 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-06-16 17:31 - 2010-11-20 14:08 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-16 17:31 - 2010-11-20 13:05 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2016-06-16 17:31 - 2010-11-20 13:04 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-06-16 17:31 - 2010-11-20 12:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2016-06-16 17:31 - 2010-11-20 12:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys
2016-06-16 17:31 - 2010-11-20 12:44 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2016-06-16 17:31 - 2010-11-20 12:44 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2016-06-16 17:31 - 2010-11-20 11:53 - 03126272 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-06-16 17:31 - 2010-11-20 11:49 - 00367104 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-16 17:31 - 2010-11-20 11:28 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-06-16 17:31 - 2010-11-20 11:25 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-06-16 17:31 - 2010-11-20 11:23 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-06-16 17:31 - 2010-11-20 11:23 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-16 17:31 - 2010-11-20 11:21 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2016-06-16 17:31 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\SysWOW64\locale.nls
2016-06-16 17:31 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\system32\locale.nls
2016-06-16 17:31 - 2010-11-05 04:20 - 00347904 _____ C:\Windows\system32\systemsf.ebd
2016-06-16 17:31 - 2010-11-05 03:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2016-06-16 17:31 - 2010-11-05 03:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2016-06-16 17:31 - 2010-11-05 03:53 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2016-06-16 17:31 - 2010-11-05 03:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2016-06-16 17:31 - 2010-11-05 03:53 - 00109928 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2016-06-16 17:31 - 2010-11-05 03:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2016-06-16 17:31 - 2009-07-14 03:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll
2016-06-16 17:30 - 2010-11-20 15:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2016-06-16 17:30 - 2010-11-20 15:44 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2016-06-16 17:30 - 2010-11-20 15:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2016-06-16 17:30 - 2010-11-20 15:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00288640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-06-16 17:30 - 2010-11-20 15:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00152960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00075136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2016-06-16 17:30 - 2010-11-20 15:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 00112000 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-06-16 17:30 - 2010-11-20 15:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02146816 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01911808 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01672704 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00898560 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00781312 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00769536 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00527872 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00290304 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00116224 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 03745792 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 03524608 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 01264640 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 01065984 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 01538560 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2016-06-16 17:30 - 2010-11-20 15:24 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-06-16 17:30 - 2010-11-20 15:24 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2016-06-16 17:30 - 2010-11-20 15:24 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2016-06-16 17:30 - 2010-11-20 14:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPHLPR.DLL
2016-06-16 17:30 - 2010-11-20 14:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPEncEn.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese30.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdwcn.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpsrcwp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdsbas.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiavideo.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpd3d.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkmap.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00656384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnLineIDCpl.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qcap.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MediaMetadataHandler.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iTVData.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll



#3 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 21 June 2016 - 05:15 PM

2016-06-16 17:30 - 2010-11-20 14:19 - 00093696 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\SysWOW64\fms.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpx.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\defaultlocationcpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscmmc.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-06-16 17:30 - 2010-11-20 14:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimserv.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetup.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00098816 _____ (Microsoft) C:\Windows\SysWOW64\Robocopy.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 01466368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2016-06-16 17:30 - 2010-11-20 14:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2016-06-16 17:30 - 2010-11-20 14:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-06-16 17:30 - 2010-11-20 14:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2016-06-16 17:30 - 2010-11-20 14:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2016-06-16 17:30 - 2010-11-20 14:08 - 00663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-06-16 17:30 - 2010-11-20 14:08 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-06-16 17:30 - 2010-11-20 13:04 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2016-06-16 17:30 - 2010-11-20 13:04 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2016-06-16 17:30 - 2010-11-20 12:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2016-06-16 17:30 - 2010-11-20 12:50 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2016-06-16 17:30 - 2010-11-20 12:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00184960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-06-16 17:30 - 2010-11-20 12:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2016-06-16 17:30 - 2010-11-20 12:43 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-06-16 17:30 - 2010-11-20 12:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2016-06-16 17:30 - 2010-11-20 12:33 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2016-06-16 17:30 - 2010-11-20 11:49 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-06-16 17:30 - 2010-11-20 11:06 - 00294400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-16 17:30 - 2010-11-05 04:11 - 00433512 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-06-16 17:30 - 2010-11-05 04:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
2016-06-16 17:30 - 2010-11-05 03:58 - 00155472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2016-06-16 17:30 - 2010-11-05 03:58 - 00080720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2016-06-16 17:30 - 2010-11-05 03:57 - 00154960 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2016-06-16 17:29 - 2016-06-21 23:28 - 00022227 _____ C:\Users\karen\Desktop\trojan generic37.odt
2016-06-16 17:29 - 2010-11-20 15:27 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2016-06-16 17:29 - 2010-11-20 15:27 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-06-16 17:29 - 2010-11-20 15:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2016-06-16 17:29 - 2010-11-20 15:26 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\BWUnpairElevated.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2016-06-16 17:29 - 2010-11-20 15:24 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-06-16 17:29 - 2010-11-20 15:16 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-06-16 17:29 - 2010-11-20 15:15 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-06-16 17:29 - 2010-11-20 15:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-06-16 17:29 - 2010-11-20 15:14 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2016-06-16 17:29 - 2010-11-20 15:13 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2016-06-16 17:29 - 2010-11-20 15:13 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2016-06-16 17:29 - 2010-11-20 15:12 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2016-06-16 17:29 - 2010-11-20 15:02 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2016-06-16 17:29 - 2010-11-20 15:02 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2016-06-16 17:29 - 2010-11-20 14:58 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2016-06-16 17:29 - 2010-11-20 14:54 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2016-06-16 17:29 - 2010-11-20 14:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-06-16 17:29 - 2010-11-20 14:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2016-06-16 17:29 - 2010-11-20 14:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppinst.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRAPI.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdprefdrvapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-06-16 17:29 - 2010-11-20 14:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL
2016-06-16 17:29 - 2010-11-20 14:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00082944 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL
2016-06-16 17:29 - 2010-11-20 14:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll
2016-06-16 17:29 - 2010-11-20 14:17 - 00280064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-06-16 17:29 - 2010-11-20 14:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl
2016-06-16 17:29 - 2010-11-20 14:16 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2016-06-16 17:29 - 2010-11-20 14:08 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUQ.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUF.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSG.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdlk41a.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGR1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGKL.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDCZ1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSF.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDPO.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDNEPR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTAM.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINORI.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINKAN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINHIN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBEN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUS.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUGHR1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTURME.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAJIK.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMON.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMAORI.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDLT1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTEL.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGEO.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBULG.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBLR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2016-06-16 17:29 - 2010-11-20 14:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-06-16 17:29 - 2010-11-20 14:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizres.dll
2016-06-16 17:29 - 2010-11-20 14:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-06-16 17:29 - 2010-11-20 14:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2016-06-16 17:29 - 2010-11-20 14:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pifmgr.dll
2016-06-16 17:29 - 2010-11-20 14:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2016-06-16 17:29 - 2010-11-20 14:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2016-06-16 17:29 - 2010-11-20 13:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2016-06-16 17:29 - 2010-11-20 13:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2016-06-16 17:29 - 2010-11-20 13:34 - 00482816 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-06-16 17:29 - 2010-11-20 12:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2016-06-16 17:29 - 2010-11-20 12:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2016-06-16 17:29 - 2010-11-20 12:49 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-06-16 17:29 - 2010-11-20 12:44 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2016-06-16 17:29 - 2010-11-20 12:44 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2016-06-16 17:29 - 2010-11-20 12:44 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-06-16 17:29 - 2010-11-20 12:42 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-06-16 17:29 - 2010-11-20 12:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2016-06-16 17:29 - 2010-11-20 12:33 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2016-06-16 17:29 - 2010-11-20 12:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-06-16 17:29 - 2010-11-20 12:14 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-06-16 17:29 - 2010-11-20 12:09 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2016-06-16 17:29 - 2010-11-20 12:04 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2016-06-16 17:29 - 2010-11-20 11:30 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2016-06-16 17:29 - 2010-11-20 11:26 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-06-16 17:29 - 2010-11-20 11:22 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2016-06-16 17:29 - 2010-11-20 11:19 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2016-06-16 17:29 - 2010-11-10 03:48 - 00010429 _____ C:\Windows\system32\ScavengeSpace.xml
2016-06-16 17:29 - 2010-11-05 04:20 - 00105559 _____ C:\Windows\SysWOW64\RacRules.xml
2016-06-16 17:29 - 2010-11-05 04:20 - 00105559 _____ C:\Windows\system32\RacRules.xml
2016-06-16 17:29 - 2009-06-10 23:39 - 00001041 _____ C:\Windows\SysWOW64\tcpbidi.xml
2016-06-16 17:26 - 2010-11-20 15:27 - 00529408 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2016-06-16 17:17 - 2016-06-16 17:17 - 00000000 ____D C:\Users\karen\AppData\Roaming\OpenOffice
2016-06-16 17:15 - 2016-06-16 17:15 - 00001002 _____ C:\Users\Public\Desktop\IrfanView.lnk
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\Users\karen\AppData\Roaming\IrfanView
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IrfanView
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\Program Files (x86)\IrfanView
2016-06-16 16:31 - 2016-06-16 16:18 - 00019525 _____ C:\Users\karen\Documents\tv progs to watch.odt
2016-06-16 14:51 - 2016-06-16 15:16 - 00000000 ____D C:\Windows\erdnt
2016-06-16 13:35 - 2016-06-21 17:22 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-06-16 13:34 - 2016-06-21 15:10 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-06-16 13:34 - 2016-06-16 13:34 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-06-16 13:34 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-06-16 13:34 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-06-16 13:16 - 2016-06-16 13:16 - 00000000 ____D C:\ProgramData\Sun
2016-06-16 13:15 - 2016-06-16 13:15 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Sun
2016-06-16 12:58 - 2016-06-16 12:58 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-06-16 12:58 - 2016-06-16 12:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-06-16 12:57 - 2016-06-16 12:58 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
2016-06-16 12:57 - 2016-06-16 12:57 - 00001112 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2016-06-16 12:57 - 2016-06-16 12:57 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-06-16 12:57 - 2016-06-16 12:57 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2016-06-16 12:37 - 2016-06-16 12:37 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2016-06-16 06:34 - 2016-06-17 11:27 - 00699286 _____ C:\Windows\system32\perfh00C.dat
2016-06-16 06:34 - 2016-06-17 11:27 - 00131774 _____ C:\Windows\system32\perfc00C.dat
2016-06-16 06:34 - 2016-06-16 06:33 - 00344522 _____ C:\Windows\system32\perfi00C.dat
2016-06-16 06:34 - 2016-06-16 06:33 - 00038160 _____ C:\Windows\system32\perfd00C.dat
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\fr
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\040C
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\system32\fr
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\system32\040C
2016-06-16 06:27 - 2016-06-16 06:27 - 00000896 _____ C:\Windows\MOD01SET74000N0006.XML
2016-06-16 06:27 - 2009-10-12 07:51 - 00010639 __RSH C:\Patch.rev
2016-06-16 06:26 - 2009-09-10 00:41 - 00348680 _____ (Dritek System Inc.) C:\Windows\UNINST32.EXE
2016-06-16 06:26 - 2009-07-06 09:55 - 00000000 _____ C:\Windows\SysWOW64\Drivers\1025_Acer_Acer_Aspire 5738.mrk
2016-06-16 06:26 - 2009-07-06 09:55 - 00000000 _____ C:\Windows\system32\Drivers\1025_Acer_Acer_Aspire 5738.mrk
2016-06-16 06:26 - 2009-03-26 21:16 - 00025608 _____ (Dritek System Inc.) C:\Windows\SysWOW64\Drivers\DKbFltr.sys
2016-06-16 06:25 - 2016-06-16 06:25 - 00000000 ____D C:\Windows\Lan
2016-06-16 06:25 - 2016-06-15 21:28 - 00000201 _____ C:\Windows\USER.XML
2016-06-16 06:25 - 2009-08-12 20:42 - 00491032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00365592 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00215576 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00165912 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00845848 _____ (Intel Corporation) C:\Windows\system32\igfxcfg.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00387608 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00106008 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2016-06-16 06:25 - 2009-07-29 02:51 - 00004436 _____ C:\Windows\system32\iglhxs64.vp
2016-06-16 06:25 - 2009-07-29 01:40 - 01306112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v1855.dll
2016-06-16 06:25 - 2009-07-29 01:35 - 07345632 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2016-06-16 06:25 - 2009-07-29 01:35 - 05616128 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2016-06-16 06:25 - 2009-07-29 01:34 - 00982220 _____ C:\Windows\SysWOW64\igkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00982220 _____ C:\Windows\system32\igkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00439300 _____ C:\Windows\SysWOW64\igcompkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00439300 _____ C:\Windows\system32\igcompkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00134592 _____ C:\Windows\SysWOW64\igfcg500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00134592 _____ C:\Windows\system32\igfcg500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00092216 _____ C:\Windows\SysWOW64\igfcg500m.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00092216 _____ C:\Windows\system32\igfcg500m.bin
2016-06-16 06:25 - 2009-07-29 01:31 - 04233728 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2016-06-16 06:25 - 2009-07-29 01:26 - 00549888 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll
2016-06-16 06:25 - 2009-07-29 01:25 - 03799552 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2016-06-16 06:25 - 2009-07-29 01:23 - 03646976 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2016-06-16 06:25 - 2009-07-29 01:20 - 08095232 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll
2016-06-16 06:25 - 2009-07-29 01:20 - 05195776 _____ (Intel Corporation) C:\Windows\system32\ig4dev64.dll
2016-06-16 06:25 - 2009-07-29 01:14 - 06042112 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll
2016-06-16 06:25 - 2009-07-29 01:14 - 03839488 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4dev32.dll
2016-06-16 06:25 - 2009-07-29 01:09 - 00312832 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00306688 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305152 _____ (Intel Corporation) C:\Windows\system32\igfxresp.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00301568 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00296960 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00293376 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00291328 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00290304 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00289792 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00283136 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00282112 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00281088 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00279552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00264704 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00254464 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00251904 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00208896 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00207360 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00181760 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2016-06-16 06:25 - 2009-07-29 01:06 - 00371712 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2016-06-16 06:25 - 2009-07-29 01:06 - 00246272 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2016-06-16 06:25 - 2009-07-29 01:06 - 00125952 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2016-06-16 06:25 - 2009-07-29 01:05 - 00055808 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2016-06-16 06:25 - 2009-07-29 01:05 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 05694976 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00278016 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2016-06-16 06:25 - 2009-07-29 01:04 - 00258560 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2016-06-16 06:25 - 2009-07-29 01:00 - 00059392 _____ (Intel Corporation) C:\Windows\SysWOW64\oemdspif.dll
2016-06-16 06:25 - 2009-07-29 00:59 - 00216576 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2016-06-16 06:25 - 2009-07-29 00:53 - 02805511 _____ C:\Windows\system32\iglhxa64.cpa
2016-06-16 06:25 - 2009-07-29 00:53 - 00059442 _____ C:\Windows\system32\iglhxg64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00059330 _____ C:\Windows\system32\iglhxc64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00058839 _____ C:\Windows\system32\iglhxo64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00001073 _____ C:\Windows\system32\iglhxa64.vp
2016-06-16 06:25 - 2009-06-19 06:12 - 00272432 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2016-06-16 06:25 - 2009-06-19 06:10 - 00395048 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00260904 _____ (Synaptics Incorporated) C:\Windows\system32\SynCtrl.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00206120 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCtrl.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00203560 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00169256 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCOM.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00147752 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo4.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00107816 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCOM.dll
2016-06-16 06:25 - 2009-05-26 14:13 - 00138752 _____ (Intel® Corporation) C:\Windows\system32\Drivers\IntcHdmi.sys
2016-06-16 06:25 - 2009-05-26 14:13 - 00005120 _____ C:\Windows\system32\HdmiCoin.dll
2016-06-16 06:25 - 2009-05-21 19:43 - 01436920 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2016-06-16 06:25 - 2009-04-07 03:31 - 01208320 _____ (LSI Corporation) C:\Windows\system32\Drivers\agrsm64.sys
2016-06-16 06:25 - 2009-03-28 04:12 - 00014848 _____ (LSI Corporation) C:\Windows\system32\agrsco64.dll
2016-06-16 06:25 - 2009-03-28 04:03 - 00061440 _____ (LSI Corporation) C:\Windows\agrsmdel.exe
2016-06-16 06:25 - 2009-03-28 04:02 - 00042496 _____ (LSI Corporation) C:\Windows\agrdel64.exe
2016-06-16 06:24 - 2009-08-22 20:15 - 00431104 _____ (Wistron Corp.) C:\Windows\WisMvImg.exe
2016-06-16 06:24 - 2009-08-11 08:00 - 00382976 _____ (Wistron Corp.) C:\Windows\WisGAPasx64.exe
2016-06-16 06:24 - 2009-08-11 08:00 - 00322048 _____ (Wistron Corp.) C:\Windows\WisGAPas.exe
2016-06-16 06:24 - 2009-08-04 15:52 - 00159744 _____ (Wistron Corp.) C:\Windows\PatchFul.exe
2016-06-16 06:24 - 2009-05-25 20:27 - 00335872 _____ (Acer Inc.) C:\Windows\ParseModule_X64.exe
2016-06-16 06:24 - 2009-05-25 20:27 - 00225280 _____ (Acer Inc.) C:\Windows\ParseModule_X86.exe
2016-06-16 06:12 - 2016-06-16 06:37 - 00001768 _____ C:\Windows\WPatchProgress.ini
2016-06-16 00:10 - 2016-06-16 00:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-06-16 00:09 - 2016-06-16 00:09 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-06-16 00:09 - 2016-06-16 00:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-06-16 00:08 - 2016-06-16 13:19 - 00000000 ____D C:\ProgramData\Skype
2016-06-16 00:08 - 2016-06-16 12:42 - 00000000 ____D C:\Users\karen\AppData\Roaming\Skype
2016-06-16 00:08 - 2016-06-16 00:08 - 00000000 ____D C:\Users\karen\AppData\Local\Skype
2016-06-16 00:02 - 2016-06-16 00:06 - 00000000 ____D C:\Windows\system32\MRT
2016-06-16 00:02 - 2016-06-16 00:02 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-06-15 23:38 - 2011-08-30 07:25 - 14173184 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-15 23:38 - 2011-08-30 06:21 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-06-15 23:38 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2016-06-15 23:38 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2016-06-15 23:32 - 2011-04-09 09:02 - 05562240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-06-15 23:32 - 2011-04-09 08:02 - 03967872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-06-15 23:32 - 2011-04-09 08:02 - 03912576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-06-15 23:07 - 2016-06-15 23:07 - 00000000 ____D C:\Users\karen\.swt
2016-06-15 23:05 - 2016-06-21 18:40 - 00000000 ____D C:\Users\karen\.oracle_jre_usage
2016-06-15 22:30 - 2016-06-21 22:22 - 00000350 _____ C:\Windows\Tasks\AVG-SSU_0516piz.job
2016-06-15 22:30 - 2016-06-21 22:19 - 00000434 _____ C:\Windows\Tasks\AVG-SSU_0516piz_DELETE.job
2016-06-15 22:30 - 2016-06-15 22:30 - 00002936 _____ C:\Windows\System32\Tasks\AVG-SSU_0516piz_DELETE
2016-06-15 22:30 - 2016-06-15 22:30 - 00002646 _____ C:\Windows\System32\Tasks\AVG-SSU_0516piz
2016-06-15 22:30 - 2016-06-15 22:30 - 00000000 ____D C:\ProgramData\Avg_Update_0516piz
2016-06-15 22:26 - 2016-06-15 22:26 - 00000000 ____D C:\Users\karen\AppData\Roaming\AVG
2016-06-15 22:25 - 2016-06-17 20:55 - 00000000 ____D C:\Program Files\Common Files\AV
2016-06-15 22:25 - 2016-06-15 22:25 - 00000000 ____D C:\Users\karen\AppData\Roaming\TuneUp Software
2016-06-15 22:25 - 2016-06-15 22:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-06-15 22:24 - 2016-06-15 22:24 - 00000000 ____D C:\$AVG
2016-06-15 22:22 - 2016-06-21 21:24 - 00000000 ____D C:\ProgramData\MFAData
2016-06-15 22:22 - 2016-06-15 22:22 - 00000000 ____D C:\Users\karen\AppData\Local\MFAData
2016-06-15 22:20 - 2016-06-15 22:20 - 00000862 _____ C:\Users\Public\Desktop\AVG.lnk
2016-06-15 22:20 - 2016-06-15 22:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-06-15 22:18 - 2016-06-15 22:24 - 00000000 ____D C:\Program Files (x86)\AVG
2016-06-15 22:16 - 2016-06-15 22:26 - 00000000 ____D C:\Users\karen\AppData\Local\Avg
2016-06-15 22:16 - 2016-06-15 22:24 - 00000000 ____D C:\ProgramData\Avg
2016-06-15 22:16 - 2016-06-15 22:20 - 00000000 ____D C:\Users\karen\AppData\Local\AvgSetupLog
2016-06-15 22:06 - 2016-06-15 22:06 - 00002972 _____ C:\Windows\System32\Tasks\{7509D106-3511-40AF-9323-472EE4ED772D}
2016-06-15 22:05 - 2016-04-21 15:05 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-06-15 22:04 - 2016-06-16 13:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-15 22:04 - 2016-06-15 22:19 - 00000000 ____D C:\Users\karen\AppData\Local\Mozilla
2016-06-15 22:04 - 2016-06-15 22:11 - 00000000 ____D C:\Users\karen\AppData\Roaming\Mozilla
2016-06-15 22:04 - 2016-06-15 22:04 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-06-15 22:04 - 2016-06-15 22:04 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-06-15 22:04 - 2016-06-15 22:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-15 21:46 - 2016-06-21 22:56 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-15 21:46 - 2016-06-21 22:20 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-15 21:46 - 2016-06-15 21:51 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-06-15 21:46 - 2016-06-15 21:51 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-06-15 21:44 - 2016-06-17 21:07 - 00000000 ____D C:\Users\karen\AppData\Roaming\Adobe
2016-06-15 21:43 - 2016-06-15 21:49 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Google
2016-06-15 21:43 - 2016-06-15 21:49 - 00000000 ____D C:\Users\karen\AppData\Local\Google
2016-06-15 21:43 - 2016-06-15 21:43 - 00000000 ____D C:\Users\karen\AppData\Roaming\Google
2016-06-15 21:41 - 2016-06-15 21:41 - 00000525 _____ C:\Users\karen\Desktop\Programmes et fonctionnalités - Raccourci.lnk
2016-06-15 21:14 - 2016-06-15 23:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2016-06-15 21:14 - 2016-06-15 21:14 - 00001187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lanceur de tâches Microsoft Works.lnk
2016-06-15 21:09 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2016-06-15 21:09 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2016-06-15 21:08 - 2016-06-15 21:08 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-06-15 21:07 - 2016-06-15 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-06-15 21:07 - 2016-06-15 21:09 - 00000000 ____D C:\Program Files (x86)\Windows Live
2016-06-15 21:07 - 2016-06-15 21:07 - 00000000 ____D C:\Program Files (x86)\Windows Live SkyDrive
2016-06-15 21:01 - 2016-06-15 21:01 - 00000000 ____D C:\Users\karen\AppData\Local\Microsoft Help
2016-06-15 21:00 - 2016-06-15 21:00 - 00000000 ____D C:\BOOK
2016-06-15 20:56 - 2016-06-15 20:56 - 00000033 _____ C:\Windows\0
2016-06-15 20:56 - 2009-08-03 22:34 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll
2016-06-15 20:56 - 2009-08-03 22:34 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll
2016-06-15 20:54 - 2016-06-15 20:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe
2016-06-15 20:54 - 2016-06-15 20:54 - 00000000 ____D C:\Program Files (x86)\Cyberlink
2016-06-15 20:52 - 2016-06-16 20:30 - 00000000 ____D C:\ProgramData\CyberLink
2016-06-15 20:52 - 2016-06-15 20:56 - 00000000 ____D C:\Program Files (x86)\Acer Arcade Deluxe
2016-06-15 20:52 - 2016-06-15 20:52 - 00000000 ____D C:\ProgramData\Temp
2016-06-15 20:51 - 2016-06-15 22:41 - 00000000 ____D C:\Users\Public\Documents\Screensaver
2016-06-15 20:51 - 2016-06-15 20:51 - 00000089 _____ C:\Windows\LManager.UNI
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\Users\karen\AppData\Roaming\Macromedia
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\Program Files (x86)\Launch Manager
2016-06-15 20:51 - 2009-07-24 18:08 - 01658880 _____ (SuYin) C:\Windows\Acer Crystal Eye webcam.EXE
2016-06-15 20:51 - 2009-07-24 15:44 - 00008362 _____ C:\Windows\Suyin.reg
2016-06-15 20:51 - 2009-05-11 17:39 - 00000323 _____ C:\Windows\PidList.ini
2016-06-15 20:51 - 2008-12-30 13:42 - 00626688 _____ C:\Windows\Image.dll
2016-06-15 20:51 - 2008-07-29 19:29 - 00200704 _____ () C:\Windows\PLFSetI.exe
2016-06-15 20:51 - 2008-06-25 14:22 - 00020480 _____ C:\Windows\USB_VIDEO_REG.exe
2016-06-15 20:50 - 2016-06-15 20:50 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2016-06-15 20:50 - 2016-06-15 20:50 - 00000000 ____D C:\Program Files\Synaptics
2016-06-15 20:49 - 2016-06-15 20:50 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-06-15 20:49 - 2016-06-15 20:49 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-06-15 20:49 - 2016-06-15 20:49 - 00000000 ____D C:\Program Files\Realtek
2016-06-15 20:49 - 2009-08-11 03:05 - 00189796 _____ C:\Windows\system32\Drivers\RTConvEQ.dat
2016-06-15 20:49 - 2009-08-11 03:05 - 00001112 _____ C:\Windows\system32\Drivers\RtHdatEx.dat
2016-06-15 20:49 - 2009-08-06 04:33 - 00611872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-06-15 20:49 - 2009-08-06 04:32 - 01603104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 01393696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 01167904 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00417824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00332320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00149536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00063008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2016-06-15 20:49 - 2009-08-06 03:46 - 01974944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-06-15 20:49 - 2009-07-22 08:03 - 00294400 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-06-15 20:49 - 2009-06-24 20:43 - 00831488 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-06-15 20:49 - 2009-04-16 20:13 - 00166400 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-06-15 20:49 - 2009-04-01 00:02 - 00108032 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-06-15 20:49 - 2009-03-09 15:32 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-06-15 20:49 - 2009-03-09 15:30 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-06-15 20:49 - 2009-02-10 21:12 - 00000008 _____ C:\Windows\system32\Drivers\rtkhdaud.dat
2016-06-15 20:49 - 2009-02-08 05:20 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX0.dat
2016-06-15 20:49 - 2008-11-09 21:57 - 00311296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-06-15 20:49 - 2008-08-21 23:43 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX2.dat
2016-06-15 20:49 - 2008-04-30 18:48 - 00193536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-06-15 20:49 - 2007-07-25 19:34 - 00150528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-06-15 20:49 - 2007-05-17 21:26 - 00211376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-06-15 20:49 - 2006-12-13 20:30 - 00513536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-06-15 20:49 - 2005-06-27 15:29 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX1.dat
2016-06-15 20:48 - 2016-06-15 20:48 - 00001463 _____ C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-06-15 20:48 - 2016-06-15 20:48 - 00001429 _____ C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-06-15 20:48 - 2016-06-15 20:48 - 00000000 ____D C:\Users\karen\AppData\Local\EgisTec
2016-06-15 20:48 - 2016-06-15 20:48 - 00000000 ____D C:\ProgramData\EgisTec
2016-06-15 20:47 - 2016-06-21 21:06 - 00000000 ____D C:\Users\karen
2016-06-15 20:47 - 2016-06-16 14:49 - 00084328 _____ C:\Users\karen\AppData\Local\GDIPFONTCACHEV1.DAT
2016-06-15 20:47 - 2016-06-15 20:47 - 00000020 ___SH C:\Users\karen\ntuser.ini
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Voisinage réseau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Voisinage d'impression
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Mes documents
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Voisinage réseau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Mes documents
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Favoris
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Bureau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Program Files\Fichiers communs
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 ____D C:\Users\Public\Documents\Acer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 ____D C:\Users\karen\AppData\Local\VirtualStore
2016-06-15 20:47 - 2009-08-22 08:06 - 00000000 ____D C:\Users\karen\AppData\Roaming\Media Center Programs
2016-06-15 20:41 - 2016-06-15 20:41 - 00000000 ____D C:\Program Files\LSI SoftModem
2016-06-15 20:40 - 2016-06-15 20:40 - 00000000 ____D C:\Windows\SysWOW64\x64
2016-06-15 20:40 - 2016-06-15 20:40 - 00000000 ____D C:\Windows\SysWOW64\Lang
2016-06-15 20:40 - 2009-08-12 20:41 - 00997912 _____ (Intel Corporation) C:\Windows\SysWOW64\igxpun.exe

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-06-21 22:26 - 2009-07-14 06:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-21 22:26 - 2009-07-14 06:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-21 22:19 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-17 21:07 - 2009-08-22 07:22 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-06-17 11:27 - 2009-07-14 07:13 - 01524562 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-17 11:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-06-16 19:19 - 2009-07-14 06:45 - 00365680 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-06-16 19:13 - 2009-08-22 08:06 - 00000000 ____D C:\Program Files\Windows Journal
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\manifeststore
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Setup
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\migwiz
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\manifeststore
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Dism
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-06-16 19:09 - 2009-07-14 04:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2016-06-16 19:09 - 2009-07-14 04:36 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2016-06-16 15:04 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2016-06-16 14:15 - 2009-08-22 10:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-06-16 14:15 - 2009-07-14 04:34 - 00000419 _____ C:\Windows\win.ini
2016-06-16 14:03 - 2009-08-22 10:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2016-06-16 14:02 - 2009-08-22 08:06 - 00000000 ____D C:\Windows\ShellNew
2016-06-16 14:01 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\winrm
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\WCN
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\slmgr
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\winrm
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\WCN
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\slmgr
2016-06-16 06:37 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\MUI
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\MUI
2016-06-16 06:37 - 2009-03-12 11:30 - 00000000 ____D C:\Windows\LP
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\DigitalLocker
2016-06-16 06:33 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-06-16 06:33 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\com
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\com
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\IME
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2016-06-16 06:24 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-06-16 06:24 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-06-15 22:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-15 21:49 - 2009-08-22 07:29 - 00000000 ____D C:\ProgramData\McAfee
2016-06-15 21:46 - 2009-08-22 07:40 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-15 21:28 - 2009-07-27 22:26 - 00000000 ___DC C:\elements
2016-06-15 21:28 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2016-06-15 21:15 - 2009-08-22 08:01 - 00000214 _____ C:\Windows\Factory.xml
2016-06-15 20:59 - 2009-08-22 07:41 - 00000000 ____D C:\Program Files\Acer
2016-06-15 20:59 - 2009-08-22 07:23 - 00000000 ____D C:\ProgramData\OEM
2016-06-15 20:59 - 2009-08-22 07:15 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-06-15 20:58 - 2009-08-22 08:03 - 00000000 ___HD C:\OEM
2016-06-15 20:51 - 2009-08-22 07:41 - 00000000 ____D C:\Program Files (x86)\Acer
2016-06-15 20:49 - 2009-08-22 07:15 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-06-15 20:47 - 2009-08-22 08:01 - 00000210 __RSH C:\Preload.rev
2016-06-15 20:47 - 2009-08-22 08:01 - 00000168 _____ C:\Windows\WisLangCode.ini
2016-06-15 20:47 - 2009-07-27 22:41 - 00000000 ____D C:\Windows\Panther
2016-06-15 20:47 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2016-06-15 20:47 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT
2016-06-15 20:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache

==================== Fichiers à la racine de certains dossiers =======

2016-06-16 21:53 - 2016-06-16 21:53 - 0036352 ___SH () C:\Users\karen\AppData\Roaming\Thumbs.db
2016-06-16 19:07 - 2016-06-16 19:07 - 0000017 _____ () C:\Users\karen\AppData\Local\resmon.resmoncfg
2016-06-15 20:52 - 2016-06-15 20:56 - 0007822 _____ () C:\ProgramData\ArcadeDeluxe3.log
2009-08-22 10:44 - 2009-07-18 03:57 - 0036136 _____ (Oberon Media) C:\ProgramData\FullRemove.exe

==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-06-16 14:31

==================== Fin de FRST.txt ============================

thanks for your help in advance,  sorry its three posts long.... i thought i attached the adn log on 1st post but cant see it or find ho to try again??

regards karen


Edited by karentaliesin, 21 June 2016 - 05:49 PM.


#4 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 25 June 2016 - 07:33 PM

Greetings karen and :welcome: to BleepingComputer's Virus/Trojan/Spyware/Malware Removal forum.

My name is Oh My! and I am here to help you! Now that we are "friends" please call me Gary.

===================================================

Ground Rules:
  • First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met.
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
  • Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
  • When you post your reply, use the Replytopic.jpg button instead.
  • In the upper right hand corner of the topic you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 5 days we assume it has been abandoned and I will close it.
  • When your computer is clean I will alert you of such. I will also provide for you detailed information about how you can combat future infections.
  • I would like to remind you to make no further changes to your computer unless I direct you to do so.
===================================================

Now that I am assisting you, you can expect that I will be very responsive to your situation. If you are able, I would request you check this thread at least once per day so that we can try to resolve your issues effectively and efficiently. If you are going to be delayed please be considerate and post that information so that I know you are still with me. Unfortunately, there are many people waiting to be assisted and not enough of us at BleepingComputer to go around. I appreciate your understanding and diligence.

Thank you for your patience thus far.

Can you verify this is actually what the report said (notice the y)
 

trojan horse Generic37.BGLX.dropper

c:\Windows\system32\sychost.exe(2376) type process


Please do this.

===================================================

Farbar's Recovery Scan Tool - Run Fix in Normal or Safe Mode

--------------------
  • Press the Windows key Windows_Logo_key.gif + r on your keyboard at the same time. Type in notepad and press Enter
  • Click Format and check Word Wrap
  • Please copy and paste the contents of the below code box into the open notepad and save it to your Desktop as fixlist.txt. If FRST.exe is not on your Deskptop please move it to that location. (<<<Important)
CreateRestorePoint:
CloseProcesses:
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
2016-06-21 22:37 - 2016-06-21 23:28 - 00000100 ____H C:\Users\karen\Desktop\.~lock.trojan generic37.odt#
  • Launch FRST and press the Fix button just once and wait, the program will automatically launch fixlist.txt.
  • The tool will create a log on the desktop called Fixlog.txt. Please copy and paste the contents of the file in your reply.
===================================================

Determining the Services Running Under a svchost.exe

--------------------

Complete the following steps immediately after scanning your computer with AVG and receiving a notification regarding something similar to "trojan horse Generic37.BGLX.dropper - c:\Windows\system32\svchost.exe(2376)".
  • Press windows key Windows_Logo_key.gif + r on your keyboard at the same time
  • Type cmd and hit Enter
  • Copy and paste the following after the command prompt and then hit Enter

tasklist /svc /fi "imagename eq svchost.exe" >%userprofile%\desktop\svchost.txt

  • A svchost.txt document should be placed on your Desktop
  • Copy and paste the contents of that report in your reply
  • Copy and paste the entire AVG notification information regarding the detection in your reply
===================================================

System Summary Information

--------------------
  • Press the windows key Windows_Logo_key.gif + r on your keyboard at the same time
  • Type msinfo32 and press Enter
  • Left click on System Summary
  • Click File, Save, and name the file Summary
  • Zip and attach the file to your reply (click on the Attach link for instructions)
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Fixlog
  • svchost information
  • System Summary Information

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."

#5 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 26 June 2016 - 06:00 AM

Hello Gary,

and many thanks to your good heart,

 

ok i checked the avg log

it was a typo, my fault, apologies (I made it before i worked out how to copy paste from the avg reports, was typing them out and then copying that for respective numbers) all of them are svchost, no Y.

 

it should be as follows

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2376)";"Healed";"Process";"16/06/2016, 15:45:23"

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2376):\memory_0e6e0000";"Healed";"Embedded element in the archive, email attachment, cookie etc.";"16/06/2016, 15:45:23"


 

i also read the farbar instructions and changed the prog to englishfrst64.exe before your reply to me.

i hope this has not affected anything, apart from making tranlations easier......:)

promise i will follow everything to the letter now... (yes, i realise it's the user rather than the computer that is the fallible one, …......  )

 

Fixlog

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 20-06-2016 01
Ran by karen (2016-06-26 11:37:23) Run:1
Running from C:\Users\karen\Desktop
Loaded Profiles: karen (Available Profiles: karen)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
2016-06-21 22:37 - 2016-06-21 23:28 - 00000100 ____H C:\Users\karen\Desktop\.~lock.trojan generic37.odt#
*****************

Restore point was successfully created.
Processes closed successfully.
AppMgmt => service removed successfully
RtsUIR => service removed successfully
USBCCID => service removed successfully
C:\Users\karen\Desktop\.~lock.trojan generic37.odt# => moved successfully


The system needed a reboot.

==== End of Fixlog 11:37:42 ====

 

(i did do a reboot)

 

svchost.txt

 


Nom de l'image                 PID Services                                    
========================= ======== ============================================
svchost.exe                    744 DcomLaunch, PlugPlay, Power                 
svchost.exe                   1028 RpcEptMapper, RpcSs                         
svchost.exe                   1104 AudioSrv, Dhcp, eventlog,                   
                                   HomeGroupProvider, lmhosts, wscsvc          
svchost.exe                   1156 AudioEndpointBuilder, Netman, PcaSvc,       
                                   SysMain, TrkWks, UxSms, Wlansvc, wudfsvc    
svchost.exe                   1192 Appinfo, BITS, Browser, EapHost, gpsvc,     
                                   IKEEXT, iphlpsvc, LanmanServer, MMCSS,      
                                   ProfSvc, RasMan, Schedule, seclogon, SENS,  
                                   ShellHWDetection, Themes, Winmgmt, wuauserv
svchost.exe                   1336 EventSystem, fdPHost, netprofm, nsi,        
                                   SstpSvc, WdiServiceHost                     
svchost.exe                   1476 CryptSvc, Dnscache, LanmanWorkstation,      
                                   NlaSvc, TapiSrv                             
svchost.exe                   1688 BFE, DPS, MpsSvc                            
svchost.exe                   1184 FDResPub, FontCache, SSDPSRV, wcncsvc       
svchost.exe                   1984 WinDefend     

 

AVG report

 

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2692)";"Healed";"Process";"26/06/2016, 11:42:50"

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2692):\memory_0e810000";"Healed";"Embedded element in the archive, email attachment, cookie etc.";"26/06/2016, 11:42:50"

 

system summary info

 

zipped and attached.

 

so i believe thats where we are up to, and i have done the things you asked, correctly???  :)

have a good day,  and until the next moment

regards  Karen


 

Attached Files



#6 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 26 June 2016 - 09:02 AM

Hi Karen,

You did great.

Let's reverse the steps please. Run the svchost.exe step first then run AVG. Post both reports for me.


Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."

#7 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 26 June 2016 - 11:02 AM

Hi,

ok in reverse, this time. (took me  bit to realise it had modified the original report...................  :) ) i live and learn. 

 

SVCHOST.TXT

 

Nom de l'image                 PID Services                                    
========================= ======== ============================================
svchost.exe                    744 DcomLaunch, PlugPlay, Power                 
svchost.exe                   1040 RpcEptMapper, RpcSs                         
svchost.exe                   1124 AudioSrv, Dhcp, eventlog,                   
                                   HomeGroupProvider, lmhosts, wscsvc          
svchost.exe                   1160 AudioEndpointBuilder, Netman, PcaSvc,       
                                   SysMain, TrkWks, UxSms, WdiSystemHost,      
                                   Wlansvc, wudfsvc                            
svchost.exe                   1200 AeLookupSvc, Appinfo, BITS, Browser,        
                                   EapHost, gpsvc, IKEEXT, iphlpsvc,           
                                   LanmanServer, ProfSvc, RasMan, Schedule,    
                                   seclogon, SENS, ShellHWDetection, Themes,   
                                   Winmgmt, wuauserv                           
svchost.exe                   1340 EventSystem, fdPHost, netprofm, nsi,        
                                   SstpSvc, WdiServiceHost                     
svchost.exe                   1492 CryptSvc, Dnscache, LanmanWorkstation,      
                                   NlaSvc, TapiSrv                             
svchost.exe                   1688 BFE, DPS, MpsSvc                            
svchost.exe                   1196 FDResPub, FontCache, SSDPSRV, wcncsvc       
svchost.exe                   2404 WinDefend  

 

 

AVG Scan results (run after the above)

 

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2404)";"Healed";"Process";"26/06/2016, 17:46:52"
 

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (2404):\memory_0e750000";"Healed";"Embedded element in the archive, email attachment, cookie etc.";"26/06/2016, 17:46:52"

 

ok hope thats good for you.  thanks again

Karen

 

 

 

                               
 

 



#8 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 26 June 2016 - 01:49 PM

Thanks for the information. My fault for putting them in reverse order the first time.

Please do this.

===================================================

Modifying Service Start State

-------------------
  • Click Start, type cmd, then press the Shift, Ctrl, + Enter keys at the same time
  • A black Administrator: Command Prompt screen should appear
  • Type sc config WinDefend start= disabled and press Enter
  • You should receive confirmation the command was successful
  • Reboot your computer
  • Scan your computer using AVG and check for detections
===================================================

Please run a FRST scan using the renamed file and make sure Addition.txt is checked. Post both logs.

===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Did the service state change successfully?
  • Any AVG detections?
  • FRST logs (2)

Edited by Oh My!, 26 June 2016 - 07:50 PM.

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."

#9 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 26 June 2016 - 04:33 PM

ok , here we go...

 

modifying service start state

 

command went succesfully,  rebooted and ran AVG

no threats detected

 

FRST Scan came next when i ran it a dialogue box with failed to update came up , i clicked ok, (only choice)  and then ran the scan

 

FRST. txt

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2016 01
Ran by karen (administrator) on TALIESIN-PC (26-06-2016 23:04:36)
Running from C:\Users\karen\Desktop
Loaded Profiles: karen (Available Profiles: karen)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Français (France)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
() C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Windows\PLFSetI.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
(Acer Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\swriter.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin
(Farbar) C:\Users\karen\Desktop\EnglishFRST64.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM\...\Run: [mwlDaemon] => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [349480 2009-08-07] (Egis Technology Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-06] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1808168 2009-06-19] (Synaptics Incorporated)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2008-07-29] ()
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [828960 2009-08-05] (Acer Incorporated)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => c:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [261888 2009-08-21] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [EgisTecLiveUpdate] => C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe [199464 2009-08-04] (Egis Technology Inc.)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1194504 2009-08-27] (Dritek System Inc.)
HKLM-x32\...\Run: [ArcadeDeluxeAgent] => C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [128296 2009-07-31] (CyberLink Corp.)
HKLM-x32\...\Run: [PlayMovie] => C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe [181480 2009-08-04] (Acer Corp.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-06-21] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6570256 2016-06-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595992 2016-05-20] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-08-22] (Google Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-06-16] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\psdprotect.dll [2009-08-07] (Egis Technology Inc.)
ShellIconOverlayIdentifiers-x32: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\psdprotect.dll [2009-08-07] (Egis Technology Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{E8CEFC35-16C3-44BB-AB23-403058E9F84A}: [DhcpNameServer] 10.0.0.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_5738&r=27360616j516l03f8z145t4831w05n
HKU\S-1-5-21-1931714976-555238990-3150765884-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM-x32 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_frFR697
SearchScopes: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_frFR697
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27] (Adobe Systems Incorporated)
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-21] (Oracle Corporation)
BHO-x32: Programme d'aide de l'Assistant de connexion Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-17] (Google Inc.)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-21] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-17] (Google Inc.)
Toolbar: HKU\S-1-5-21-1931714976-555238990-3150765884-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-17] (Google Inc.)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll [2009-02-06] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll [2009-02-06] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default
FF Homepage: hxxps://www.google.co.uk/
FF Session Restore: -> is enabled.
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8064.0206 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-02-06] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Extension: Xmarks - C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default\extensions\foxmarks@kei.com [2016-06-16]
FF Extension: Adblock Plus - C:\Users\karen\AppData\Roaming\Mozilla\Firefox\Profiles\2it7i8jp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-16]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [636312 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5165824 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1080080 2016-06-21] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [705528 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 MWLService; C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe [311592 2009-08-07] (Egis Technology Inc.)
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [307456 2016-05-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-05-02] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [247040 2016-05-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [51968 2016-05-02] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [279296 2016-05-17] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71936 2016-05-05] (AVG Technologies CZ, s.r.o.)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-26 22:55 - 2016-06-26 23:05 - 00000100 ____H C:\Users\karen\Desktop\.~lock.trojan generic37.odt#
2016-06-26 12:40 - 2016-06-26 12:40 - 00056071 _____ C:\Users\karen\Desktop\Summary.zip
2016-06-26 12:37 - 2016-06-26 12:37 - 01216044 _____ C:\Users\karen\Desktop\Summary.nfo
2016-06-26 12:26 - 2016-06-26 17:43 - 00001703 _____ C:\Users\karen\Desktop\svchost.txt
2016-06-26 11:37 - 2016-06-26 11:37 - 00000994 _____ C:\Users\karen\Desktop\Fixlog.txt
2016-06-23 11:05 - 2016-06-26 23:04 - 00016536 _____ C:\Users\karen\Desktop\FRST.txt
2016-06-23 11:03 - 2016-06-26 21:08 - 00000000 ____D C:\Users\karen\Desktop\firstscans
2016-06-21 23:32 - 2016-06-26 23:04 - 00000000 ____D C:\FRST
2016-06-21 23:06 - 2016-06-21 23:06 - 02387456 _____ (Farbar) C:\Users\karen\Desktop\EnglishFRST64.exe
2016-06-21 23:05 - 2016-06-21 23:05 - 00688992 _____ (Swearware) C:\Users\karen\Desktop\dds.com
2016-06-21 23:04 - 2016-06-21 23:04 - 00050477 _____ C:\Users\karen\Desktop\Defogger.exe
2016-06-21 21:59 - 2016-06-21 21:59 - 00000695 _____ C:\DelFix.txt
2016-06-21 21:06 - 2016-06-21 21:06 - 00000000 _____ C:\Users\karen\defogger_reenable
2016-06-21 18:40 - 2016-06-21 18:40 - 00000000 ____D C:\Users\karen\AppData\Roaming\Sun
2016-06-21 18:37 - 2016-06-21 18:37 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Oracle
2016-06-21 17:20 - 2016-06-21 17:37 - 00073052 _____ C:\Windows\ntbtlog.txt
2016-06-21 15:11 - 2016-06-21 15:31 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-06-21 15:09 - 2016-06-21 15:10 - 16563352 _____ (Malwarebytes Corp.) C:\Users\karen\Desktop\mbar-1.09.3.1001.exe
2016-06-21 14:22 - 2016-06-21 14:23 - 00000000 ____D C:\Users\karen\AppData\Roaming\vlc
2016-06-21 13:38 - 2016-06-21 18:39 - 00000000 ____D C:\ProgramData\Oracle
2016-06-21 13:37 - 2016-06-21 18:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-06-21 13:37 - 2016-06-21 18:41 - 00000000 ____D C:\Program Files (x86)\Java
2016-06-21 13:37 - 2016-06-21 18:40 - 00267840 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2016-06-21 13:37 - 2016-06-21 18:40 - 00097344 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-06-17 23:45 - 2016-06-21 17:18 - 00019012 _____ C:\Users\karen\Desktop\tv progs to watch.odt
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\karen\AppData\Local\Adobe
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-06-17 21:07 - 2016-06-17 21:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-06-17 20:55 - 2016-06-17 20:55 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-06-17 20:49 - 2016-06-17 21:25 - 00000000 ____D C:\ProgramData\AVAST Software
2016-06-17 20:35 - 2016-06-17 20:36 - 05066104 _____ (AVAST Software) C:\Users\karen\Desktop\avast_free_antivirus_setup_online.exe
2016-06-17 11:27 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-06-17 11:27 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-06-17 11:27 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-06-17 11:27 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-06-17 11:27 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-06-17 11:27 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-06-17 11:27 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-06-17 11:27 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-06-17 11:27 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-06-17 11:27 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-06-16 21:53 - 2016-06-16 21:53 - 00036352 ___SH C:\Users\karen\AppData\Roaming\Thumbs.db
2016-06-16 21:52 - 2016-06-16 21:52 - 00001025 _____ C:\Users\karen\Desktop\Trazer - Raccourci.lnk
2016-06-16 21:28 - 2016-06-17 23:34 - 00002350 _____ C:\Users\karen\Desktop\tv progs to watch old comp - Raccourci.lnk
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\SoftDMA
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\PowerCinema
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Roaming\CyberLink
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Local\PowerCinema
2016-06-16 20:30 - 2016-06-16 20:30 - 00000000 ____D C:\Users\karen\AppData\Local\PlayMovie
2016-06-16 19:07 - 2016-06-16 19:07 - 00000017 _____ C:\Users\karen\AppData\Local\resmon.resmoncfg
2016-06-16 18:59 - 2016-06-16 18:59 - 00000000 ____D C:\Windows\system32\SPReview
2016-06-16 18:58 - 2016-06-16 18:58 - 00000000 ____D C:\Windows\system32\EventProviders
2016-06-16 17:32 - 2010-11-20 15:33 - 01924480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-06-16 17:32 - 2010-11-20 15:28 - 01731936 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 14633472 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 08988160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03715584 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 02314752 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01465344 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01219584 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2016-06-16 17:32 - 2010-11-20 15:27 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 12260864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 04120064 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 03205120 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-06-16 17:32 - 2010-11-20 15:26 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-06-16 17:32 - 2010-11-20 15:25 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-06-16 17:32 - 2010-11-20 15:25 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2016-06-16 17:32 - 2010-11-20 15:25 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2016-06-16 17:32 - 2010-11-20 14:21 - 00870912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-06-16 17:32 - 2010-11-20 14:21 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2016-06-16 17:32 - 2010-11-20 14:20 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 10990080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 05977600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 03215872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40.dll
2016-06-16 17:32 - 2010-11-20 14:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40u.dll
2016-06-16 17:32 - 2010-11-20 14:18 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-06-16 17:32 - 2010-11-20 14:18 - 00739840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-06-16 17:32 - 2010-11-20 14:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2016-06-16 17:32 - 2010-11-20 14:17 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2016-06-16 17:32 - 2010-11-20 13:07 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2016-06-16 17:32 - 2010-11-05 03:58 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2016-06-16 17:32 - 2010-11-05 03:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2016-06-16 17:31 - 2010-11-20 15:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2016-06-16 17:31 - 2010-11-20 15:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2016-06-16 17:31 - 2010-11-20 15:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2016-06-16 17:31 - 2010-11-20 15:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-06-16 17:31 - 2010-11-20 15:33 - 00376192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-06-16 17:31 - 2010-11-20 15:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-06-16 17:31 - 2010-11-20 15:33 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00095616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-06-16 17:31 - 2010-11-20 15:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2016-06-16 17:31 - 2010-11-20 15:32 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2016-06-16 17:31 - 2010-11-20 15:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-06-16 17:31 - 2010-11-20 15:28 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-06-16 17:31 - 2010-11-20 15:28 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-06-16 17:31 - 2010-11-20 15:28 - 00459248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-16 17:31 - 2010-11-20 15:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-16 17:31 - 2010-11-20 15:28 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-06-16 17:31 - 2010-11-20 15:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02018304 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 01881088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01572352 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01490944 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01188864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01118208 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01026560 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00960512 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00612864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00605696 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00577536 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00481280 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00326144 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2016-06-16 17:31 - 2010-11-20 15:27 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2016-06-16 17:31 - 2010-11-20 15:27 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 03391488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02746880 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01544192 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01457664 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01340416 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01244160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00934912 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00281600 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2016-06-16 17:31 - 2010-11-20 15:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2016-06-16 17:31 - 2010-11-20 15:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 03957760 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01927680 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01600512 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01504256 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 01456128 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00897536 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2016-06-16 17:31 - 2010-11-20 15:25 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-06-16 17:31 - 2010-11-20 15:25 - 00128000 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2016-06-16 17:31 - 2010-11-20 15:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2016-06-16 17:31 - 2010-11-20 15:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2016-06-16 17:31 - 2010-11-20 15:24 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2016-06-16 17:31 - 2010-11-20 15:24 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2016-06-16 17:31 - 2010-11-20 15:24 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2016-06-16 17:31 - 2010-11-20 15:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2016-06-16 17:31 - 2010-11-20 14:55 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-06-16 17:31 - 2010-11-20 14:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-06-16 17:31 - 2010-11-20 14:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll
2016-06-16 17:31 - 2010-11-20 14:24 - 01292096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-06-16 17:31 - 2010-11-20 14:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01619456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2016-06-16 17:31 - 2010-11-20 14:21 - 01548288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01229824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01175040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 01010688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00980992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-06-16 17:31 - 2010-11-20 14:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2016-06-16 17:31 - 2010-11-20 14:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 03207680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 02064384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01698816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 01163264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00606208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstime.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00389120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2016-06-16 17:31 - 2010-11-20 14:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01792000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01154048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 01076736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00522752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00252928 _____ (Microsoft) C:\Windows\SysWOW64\DShowRdpFilter.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2016-06-16 17:31 - 2010-11-20 14:18 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2016-06-16 17:31 - 2010-11-20 14:17 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2016-06-16 17:31 - 2010-11-20 14:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2016-06-16 17:31 - 2010-11-20 14:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2016-06-16 17:31 - 2010-11-20 14:08 - 00837632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-06-16 17:31 - 2010-11-20 14:08 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-06-16 17:31 - 2010-11-20 14:08 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-16 17:31 - 2010-11-20 13:05 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2016-06-16 17:31 - 2010-11-20 13:04 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-06-16 17:31 - 2010-11-20 12:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2016-06-16 17:31 - 2010-11-20 12:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys
2016-06-16 17:31 - 2010-11-20 12:44 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2016-06-16 17:31 - 2010-11-20 12:44 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2016-06-16 17:31 - 2010-11-20 11:53 - 03126272 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-06-16 17:31 - 2010-11-20 11:49 - 00367104 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-16 17:31 - 2010-11-20 11:28 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-16 17:31 - 2010-11-20 11:27 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-06-16 17:31 - 2010-11-20 11:26 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-06-16 17:31 - 2010-11-20 11:25 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-06-16 17:31 - 2010-11-20 11:23 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-06-16 17:31 - 2010-11-20 11:23 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-16 17:31 - 2010-11-20 11:21 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2016-06-16 17:31 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\SysWOW64\locale.nls
2016-06-16 17:31 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\system32\locale.nls
2016-06-16 17:31 - 2010-11-05 04:20 - 00347904 _____ C:\Windows\system32\systemsf.ebd
2016-06-16 17:31 - 2010-11-05 03:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2016-06-16 17:31 - 2010-11-05 03:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2016-06-16 17:31 - 2010-11-05 03:53 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2016-06-16 17:31 - 2010-11-05 03:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2016-06-16 17:31 - 2010-11-05 03:53 - 00109928 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2016-06-16 17:31 - 2010-11-05 03:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2016-06-16 17:31 - 2009-07-14 03:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll
2016-06-16 17:30 - 2010-11-20 15:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2016-06-16 17:30 - 2010-11-20 15:44 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2016-06-16 17:30 - 2010-11-20 15:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2016-06-16 17:30 - 2010-11-20 15:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00288640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-06-16 17:30 - 2010-11-20 15:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00152960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00075136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2016-06-16 17:30 - 2010-11-20 15:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2016-06-16 17:30 - 2010-11-20 15:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2016-06-16 17:30 - 2010-11-20 15:32 - 00112000 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-06-16 17:30 - 2010-11-20 15:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 02146816 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01911808 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01672704 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00898560 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00781312 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00769536 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00527872 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00290304 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2016-06-16 17:30 - 2010-11-20 15:27 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2016-06-16 17:30 - 2010-11-20 15:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00116224 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2016-06-16 17:30 - 2010-11-20 15:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 03745792 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 03524608 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 01264640 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 01065984 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2016-06-16 17:30 - 2010-11-20 15:25 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-06-16 17:30 - 2010-11-20 15:25 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 01538560 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2016-06-16 17:30 - 2010-11-20 15:24 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-06-16 17:30 - 2010-11-20 15:24 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2016-06-16 17:30 - 2010-11-20 15:24 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2016-06-16 17:30 - 2010-11-20 15:24 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2016-06-16 17:30 - 2010-11-20 15:24 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2016-06-16 17:30 - 2010-11-20 15:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2016-06-16 17:30 - 2010-11-20 15:24 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2016-06-16 17:30 - 2010-11-20 14:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPHLPR.DLL
2016-06-16 17:30 - 2010-11-20 14:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPEncEn.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese30.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdwcn.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpsrcwp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdsbas.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiavideo.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL
2016-06-16 17:30 - 2010-11-20 14:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpd3d.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll
2016-06-16 17:30 - 2010-11-20 14:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkmap.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00656384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnLineIDCpl.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qcap.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2016-06-16 17:30 - 2010-11-20 14:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptui.dll
2016-06-16 17:30 - 2010-11-20 14:20 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MediaMetadataHandler.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iTVData.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2016-06-16 17:30 - 2010-11-20 14:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00093696 _____ (Windows ® Codename Longhorn DDK provider) C:\Windows\SysWOW64\fms.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll
2016-06-16 17:30 - 2010-11-20 14:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpx.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\defaultlocationcpl.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscmmc.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2016-06-16 17:30 - 2010-11-20 14:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-06-16 17:30 - 2010-11-20 14:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimserv.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetup.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00098816 _____ (Microsoft) C:\Windows\SysWOW64\Robocopy.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe
2016-06-16 17:30 - 2010-11-20 14:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 01466368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2016-06-16 17:30 - 2010-11-20 14:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2016-06-16 17:30 - 2010-11-20 14:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-06-16 17:30 - 2010-11-20 14:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr
2016-06-16 17:30 - 2010-11-20 14:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe
2016-06-16 17:30 - 2010-11-20 14:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2016-06-16 17:30 - 2010-11-20 14:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2016-06-16 17:30 - 2010-11-20 14:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2016-06-16 17:30 - 2010-11-20 14:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2016-06-16 17:30 - 2010-11-20 14:08 - 00663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-06-16 17:30 - 2010-11-20 14:08 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-06-16 17:30 - 2010-11-20 13:04 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2016-06-16 17:30 - 2010-11-20 13:04 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2016-06-16 17:30 - 2010-11-20 12:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2016-06-16 17:30 - 2010-11-20 12:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2016-06-16 17:30 - 2010-11-20 12:50 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2016-06-16 17:30 - 2010-11-20 12:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00184960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2016-06-16 17:30 - 2010-11-20 12:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-06-16 17:30 - 2010-11-20 12:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2016-06-16 17:30 - 2010-11-20 12:43 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-06-16 17:30 - 2010-11-20 12:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2016-06-16 17:30 - 2010-11-20 12:33 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2016-06-16 17:30 - 2010-11-20 11:49 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-06-16 17:30 - 2010-11-20 11:06 - 00294400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-16 17:30 - 2010-11-05 04:11 - 00433512 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-06-16 17:30 - 2010-11-05 04:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll
2016-06-16 17:30 - 2010-11-05 03:58 - 00155472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2016-06-16 17:30 - 2010-11-05 03:58 - 00080720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2016-06-16 17:30 - 2010-11-05 03:57 - 00154960 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2016-06-16 17:29 - 2016-06-26 23:05 - 00029239 _____ C:\Users\karen\Desktop\trojan generic37.odt
2016-06-16 17:29 - 2010-11-20 15:27 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2016-06-16 17:29 - 2010-11-20 15:27 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-06-16 17:29 - 2010-11-20 15:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-06-16 17:29 - 2010-11-20 15:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2016-06-16 17:29 - 2010-11-20 15:26 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2016-06-16 17:29 - 2010-11-20 15:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-06-16 17:29 - 2010-11-20 15:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\BWUnpairElevated.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2016-06-16 17:29 - 2010-11-20 15:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2016-06-16 17:29 - 2010-11-20 15:24 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2016-06-16 17:29 - 2010-11-20 15:24 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-06-16 17:29 - 2010-11-20 15:24 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-06-16 17:29 - 2010-11-20 15:16 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-06-16 17:29 - 2010-11-20 15:15 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-06-16 17:29 - 2010-11-20 15:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-06-16 17:29 - 2010-11-20 15:14 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2016-06-16 17:29 - 2010-11-20 15:13 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2016-06-16 17:29 - 2010-11-20 15:13 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2016-06-16 17:29 - 2010-11-20 15:12 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2016-06-16 17:29 - 2010-11-20 15:02 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2016-06-16 17:29 - 2010-11-20 15:02 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2016-06-16 17:29 - 2010-11-20 15:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2016-06-16 17:29 - 2010-11-20 14:58 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2016-06-16 17:29 - 2010-11-20 14:54 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2016-06-16 17:29 - 2010-11-20 14:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll

 

con't in next post


Edited by karentaliesin, 26 June 2016 - 04:48 PM.


#10 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 26 June 2016 - 04:34 PM

2016-06-16 17:29 - 2010-11-20 14:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-06-16 17:29 - 2010-11-20 14:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2016-06-16 17:29 - 2010-11-20 14:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppinst.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRAPI.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdprefdrvapi.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll
2016-06-16 17:29 - 2010-11-20 14:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-06-16 17:29 - 2010-11-20 14:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL
2016-06-16 17:29 - 2010-11-20 14:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2016-06-16 17:29 - 2010-11-20 14:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00082944 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll
2016-06-16 17:29 - 2010-11-20 14:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll
2016-06-16 17:29 - 2010-11-20 14:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL
2016-06-16 17:29 - 2010-11-20 14:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll
2016-06-16 17:29 - 2010-11-20 14:17 - 00280064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-06-16 17:29 - 2010-11-20 14:17 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-06-16 17:29 - 2010-11-20 14:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl
2016-06-16 17:29 - 2010-11-20 14:16 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax
2016-06-16 17:29 - 2010-11-20 14:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2016-06-16 17:29 - 2010-11-20 14:08 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUQ.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUF.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSG.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdlk41a.dll
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGR1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGKL.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDCZ1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSF.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDPO.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDNEPR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTAM.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINORI.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINKAN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINHIN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBEN.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUS.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUGHR1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTURME.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAJIK.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMON.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMAORI.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDLT1.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTEL.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGEO.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBULG.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBLR.DLL
2016-06-16 17:29 - 2010-11-20 14:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2016-06-16 17:29 - 2010-11-20 14:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-06-16 17:29 - 2010-11-20 14:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizres.dll
2016-06-16 17:29 - 2010-11-20 14:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-06-16 17:29 - 2010-11-20 14:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2016-06-16 17:29 - 2010-11-20 14:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pifmgr.dll
2016-06-16 17:29 - 2010-11-20 14:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2016-06-16 17:29 - 2010-11-20 14:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2016-06-16 17:29 - 2010-11-20 13:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2016-06-16 17:29 - 2010-11-20 13:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2016-06-16 17:29 - 2010-11-20 13:34 - 00482816 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-06-16 17:29 - 2010-11-20 12:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2016-06-16 17:29 - 2010-11-20 12:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2016-06-16 17:29 - 2010-11-20 12:49 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-06-16 17:29 - 2010-11-20 12:44 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2016-06-16 17:29 - 2010-11-20 12:44 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2016-06-16 17:29 - 2010-11-20 12:44 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2016-06-16 17:29 - 2010-11-20 12:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-06-16 17:29 - 2010-11-20 12:42 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-06-16 17:29 - 2010-11-20 12:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2016-06-16 17:29 - 2010-11-20 12:33 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2016-06-16 17:29 - 2010-11-20 12:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-06-16 17:29 - 2010-11-20 12:14 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-06-16 17:29 - 2010-11-20 12:09 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2016-06-16 17:29 - 2010-11-20 12:04 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2016-06-16 17:29 - 2010-11-20 11:30 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2016-06-16 17:29 - 2010-11-20 11:26 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-06-16 17:29 - 2010-11-20 11:22 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2016-06-16 17:29 - 2010-11-20 11:19 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2016-06-16 17:29 - 2010-11-10 03:48 - 00010429 _____ C:\Windows\system32\ScavengeSpace.xml
2016-06-16 17:29 - 2010-11-05 04:20 - 00105559 _____ C:\Windows\SysWOW64\RacRules.xml
2016-06-16 17:29 - 2010-11-05 04:20 - 00105559 _____ C:\Windows\system32\RacRules.xml
2016-06-16 17:29 - 2009-06-10 23:39 - 00001041 _____ C:\Windows\SysWOW64\tcpbidi.xml
2016-06-16 17:26 - 2010-11-20 15:27 - 00529408 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2016-06-16 17:17 - 2016-06-16 17:17 - 00000000 ____D C:\Users\karen\AppData\Roaming\OpenOffice
2016-06-16 17:15 - 2016-06-16 17:15 - 00001002 _____ C:\Users\Public\Desktop\IrfanView.lnk
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\Users\karen\AppData\Roaming\IrfanView
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IrfanView
2016-06-16 17:15 - 2016-06-16 17:15 - 00000000 ____D C:\Program Files (x86)\IrfanView
2016-06-16 16:31 - 2016-06-16 16:18 - 00019525 _____ C:\Users\karen\Documents\tv progs to watch.odt
2016-06-16 14:51 - 2016-06-16 15:16 - 00000000 ____D C:\Windows\erdnt
2016-06-16 13:35 - 2016-06-21 17:22 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-06-16 13:34 - 2016-06-21 15:10 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-06-16 13:34 - 2016-06-16 13:34 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-06-16 13:34 - 2016-06-16 13:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-06-16 13:34 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-06-16 13:34 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-06-16 13:16 - 2016-06-16 13:16 - 00000000 ____D C:\ProgramData\Sun
2016-06-16 13:15 - 2016-06-16 13:15 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Sun
2016-06-16 12:58 - 2016-06-16 12:58 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-06-16 12:58 - 2016-06-16 12:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-06-16 12:57 - 2016-06-16 12:58 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
2016-06-16 12:57 - 2016-06-16 12:57 - 00001112 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2016-06-16 12:57 - 2016-06-16 12:57 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-06-16 12:57 - 2016-06-16 12:57 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2016-06-16 12:37 - 2016-06-16 12:37 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2016-06-16 06:34 - 2016-06-17 11:27 - 00699286 _____ C:\Windows\system32\perfh00C.dat
2016-06-16 06:34 - 2016-06-17 11:27 - 00131774 _____ C:\Windows\system32\perfc00C.dat
2016-06-16 06:34 - 2016-06-16 06:33 - 00344522 _____ C:\Windows\system32\perfi00C.dat
2016-06-16 06:34 - 2016-06-16 06:33 - 00038160 _____ C:\Windows\system32\perfd00C.dat
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\fr
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\SysWOW64\040C
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\system32\fr
2016-06-16 06:33 - 2016-06-16 06:33 - 00000000 ____D C:\Windows\system32\040C
2016-06-16 06:27 - 2016-06-16 06:27 - 00000896 _____ C:\Windows\MOD01SET74000N0006.XML
2016-06-16 06:27 - 2009-10-12 07:51 - 00010639 __RSH C:\Patch.rev
2016-06-16 06:26 - 2009-09-10 00:41 - 00348680 _____ (Dritek System Inc.) C:\Windows\UNINST32.EXE
2016-06-16 06:26 - 2009-07-06 09:55 - 00000000 _____ C:\Windows\SysWOW64\Drivers\1025_Acer_Acer_Aspire 5738.mrk
2016-06-16 06:26 - 2009-07-06 09:55 - 00000000 _____ C:\Windows\system32\Drivers\1025_Acer_Acer_Aspire 5738.mrk
2016-06-16 06:26 - 2009-03-26 21:16 - 00025608 _____ (Dritek System Inc.) C:\Windows\SysWOW64\Drivers\DKbFltr.sys
2016-06-16 06:25 - 2016-06-16 06:25 - 00000000 ____D C:\Windows\Lan
2016-06-16 06:25 - 2016-06-15 21:28 - 00000201 _____ C:\Windows\USER.XML
2016-06-16 06:25 - 2009-08-12 20:42 - 00491032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00365592 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00215576 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2016-06-16 06:25 - 2009-08-12 20:42 - 00165912 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00845848 _____ (Intel Corporation) C:\Windows\system32\igfxcfg.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00387608 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2016-06-16 06:25 - 2009-08-12 20:41 - 00106008 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2016-06-16 06:25 - 2009-07-29 02:51 - 00004436 _____ C:\Windows\system32\iglhxs64.vp
2016-06-16 06:25 - 2009-07-29 01:40 - 01306112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v1855.dll
2016-06-16 06:25 - 2009-07-29 01:35 - 07345632 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2016-06-16 06:25 - 2009-07-29 01:35 - 05616128 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2016-06-16 06:25 - 2009-07-29 01:34 - 00982220 _____ C:\Windows\SysWOW64\igkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00982220 _____ C:\Windows\system32\igkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00439300 _____ C:\Windows\SysWOW64\igcompkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00439300 _____ C:\Windows\system32\igcompkrng500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00134592 _____ C:\Windows\SysWOW64\igfcg500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00134592 _____ C:\Windows\system32\igfcg500.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00092216 _____ C:\Windows\SysWOW64\igfcg500m.bin
2016-06-16 06:25 - 2009-07-29 01:34 - 00092216 _____ C:\Windows\system32\igfcg500m.bin
2016-06-16 06:25 - 2009-07-29 01:31 - 04233728 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2016-06-16 06:25 - 2009-07-29 01:26 - 00549888 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll
2016-06-16 06:25 - 2009-07-29 01:25 - 03799552 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2016-06-16 06:25 - 2009-07-29 01:23 - 03646976 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2016-06-16 06:25 - 2009-07-29 01:20 - 08095232 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll
2016-06-16 06:25 - 2009-07-29 01:20 - 05195776 _____ (Intel Corporation) C:\Windows\system32\ig4dev64.dll
2016-06-16 06:25 - 2009-07-29 01:14 - 06042112 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll
2016-06-16 06:25 - 2009-07-29 01:14 - 03839488 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4dev32.dll
2016-06-16 06:25 - 2009-07-29 01:09 - 00312832 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00306688 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305664 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00305152 _____ (Intel Corporation) C:\Windows\system32\igfxresp.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00301568 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00296960 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00293376 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00291328 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00290304 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00289792 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00284672 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00283136 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00282112 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00281088 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00279552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00264704 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00254464 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00251904 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00208896 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00207360 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00181760 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2016-06-16 06:25 - 2009-07-29 01:09 - 00180224 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2016-06-16 06:25 - 2009-07-29 01:06 - 00371712 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2016-06-16 06:25 - 2009-07-29 01:06 - 00246272 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2016-06-16 06:25 - 2009-07-29 01:06 - 00125952 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2016-06-16 06:25 - 2009-07-29 01:05 - 00055808 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2016-06-16 06:25 - 2009-07-29 01:05 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 05694976 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00278016 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2016-06-16 06:25 - 2009-07-29 01:04 - 00258560 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2016-06-16 06:25 - 2009-07-29 01:04 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2016-06-16 06:25 - 2009-07-29 01:00 - 00059392 _____ (Intel Corporation) C:\Windows\SysWOW64\oemdspif.dll
2016-06-16 06:25 - 2009-07-29 00:59 - 00216576 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2016-06-16 06:25 - 2009-07-29 00:53 - 02805511 _____ C:\Windows\system32\iglhxa64.cpa
2016-06-16 06:25 - 2009-07-29 00:53 - 00059442 _____ C:\Windows\system32\iglhxg64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00059330 _____ C:\Windows\system32\iglhxc64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00058839 _____ C:\Windows\system32\iglhxo64.vp
2016-06-16 06:25 - 2009-07-29 00:53 - 00001073 _____ C:\Windows\system32\iglhxa64.vp
2016-06-16 06:25 - 2009-06-19 06:12 - 00272432 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2016-06-16 06:25 - 2009-06-19 06:10 - 00395048 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00260904 _____ (Synaptics Incorporated) C:\Windows\system32\SynCtrl.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00206120 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCtrl.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00203560 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00169256 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCOM.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00147752 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo4.dll
2016-06-16 06:25 - 2009-06-19 06:10 - 00107816 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCOM.dll
2016-06-16 06:25 - 2009-05-26 14:13 - 00138752 _____ (Intel® Corporation) C:\Windows\system32\Drivers\IntcHdmi.sys
2016-06-16 06:25 - 2009-05-26 14:13 - 00005120 _____ C:\Windows\system32\HdmiCoin.dll
2016-06-16 06:25 - 2009-05-21 19:43 - 01436920 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2016-06-16 06:25 - 2009-04-07 03:31 - 01208320 _____ (LSI Corporation) C:\Windows\system32\Drivers\agrsm64.sys
2016-06-16 06:25 - 2009-03-28 04:12 - 00014848 _____ (LSI Corporation) C:\Windows\system32\agrsco64.dll
2016-06-16 06:25 - 2009-03-28 04:03 - 00061440 _____ (LSI Corporation) C:\Windows\agrsmdel.exe
2016-06-16 06:25 - 2009-03-28 04:02 - 00042496 _____ (LSI Corporation) C:\Windows\agrdel64.exe
2016-06-16 06:24 - 2009-08-22 20:15 - 00431104 _____ (Wistron Corp.) C:\Windows\WisMvImg.exe
2016-06-16 06:24 - 2009-08-11 08:00 - 00382976 _____ (Wistron Corp.) C:\Windows\WisGAPasx64.exe
2016-06-16 06:24 - 2009-08-11 08:00 - 00322048 _____ (Wistron Corp.) C:\Windows\WisGAPas.exe
2016-06-16 06:24 - 2009-08-04 15:52 - 00159744 _____ (Wistron Corp.) C:\Windows\PatchFul.exe
2016-06-16 06:24 - 2009-05-25 20:27 - 00335872 _____ (Acer Inc.) C:\Windows\ParseModule_X64.exe
2016-06-16 06:24 - 2009-05-25 20:27 - 00225280 _____ (Acer Inc.) C:\Windows\ParseModule_X86.exe
2016-06-16 06:12 - 2016-06-16 06:37 - 00001768 _____ C:\Windows\WPatchProgress.ini
2016-06-16 00:10 - 2016-06-16 00:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-06-16 00:09 - 2016-06-16 00:09 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-06-16 00:09 - 2016-06-16 00:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-06-16 00:08 - 2016-06-16 13:19 - 00000000 ____D C:\ProgramData\Skype
2016-06-16 00:08 - 2016-06-16 12:42 - 00000000 ____D C:\Users\karen\AppData\Roaming\Skype
2016-06-16 00:08 - 2016-06-16 00:08 - 00000000 ____D C:\Users\karen\AppData\Local\Skype
2016-06-16 00:02 - 2016-06-16 00:06 - 00000000 ____D C:\Windows\system32\MRT
2016-06-16 00:02 - 2016-06-16 00:02 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-06-15 23:38 - 2011-08-30 07:25 - 14173184 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-15 23:38 - 2011-08-30 06:21 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-06-15 23:38 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2016-06-15 23:38 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2016-06-15 23:32 - 2011-04-09 09:02 - 05562240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-06-15 23:32 - 2011-04-09 08:02 - 03967872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-06-15 23:32 - 2011-04-09 08:02 - 03912576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-06-15 23:07 - 2016-06-15 23:07 - 00000000 ____D C:\Users\karen\.swt
2016-06-15 23:05 - 2016-06-21 18:40 - 00000000 ____D C:\Users\karen\.oracle_jre_usage
2016-06-15 22:30 - 2016-06-26 22:05 - 00000434 _____ C:\Windows\Tasks\AVG-SSU_0516piz_DELETE.job
2016-06-15 22:30 - 2016-06-26 22:05 - 00000350 _____ C:\Windows\Tasks\AVG-SSU_0516piz.job
2016-06-15 22:30 - 2016-06-15 22:30 - 00002936 _____ C:\Windows\System32\Tasks\AVG-SSU_0516piz_DELETE
2016-06-15 22:30 - 2016-06-15 22:30 - 00002646 _____ C:\Windows\System32\Tasks\AVG-SSU_0516piz
2016-06-15 22:30 - 2016-06-15 22:30 - 00000000 ____D C:\ProgramData\Avg_Update_0516piz
2016-06-15 22:26 - 2016-06-15 22:26 - 00000000 ____D C:\Users\karen\AppData\Roaming\AVG
2016-06-15 22:25 - 2016-06-17 20:55 - 00000000 ____D C:\Program Files\Common Files\AV
2016-06-15 22:25 - 2016-06-15 22:25 - 00000000 ____D C:\Users\karen\AppData\Roaming\TuneUp Software
2016-06-15 22:25 - 2016-06-15 22:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-06-15 22:24 - 2016-06-15 22:24 - 00000000 ____D C:\$AVG
2016-06-15 22:22 - 2016-06-26 21:51 - 00000000 ____D C:\ProgramData\MFAData
2016-06-15 22:22 - 2016-06-15 22:22 - 00000000 ____D C:\Users\karen\AppData\Local\MFAData
2016-06-15 22:20 - 2016-06-15 22:20 - 00000862 _____ C:\Users\Public\Desktop\AVG.lnk
2016-06-15 22:20 - 2016-06-15 22:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-06-15 22:18 - 2016-06-15 22:24 - 00000000 ____D C:\Program Files (x86)\AVG
2016-06-15 22:16 - 2016-06-15 22:26 - 00000000 ____D C:\Users\karen\AppData\Local\Avg
2016-06-15 22:16 - 2016-06-15 22:24 - 00000000 ____D C:\ProgramData\Avg
2016-06-15 22:16 - 2016-06-15 22:20 - 00000000 ____D C:\Users\karen\AppData\Local\AvgSetupLog
2016-06-15 22:06 - 2016-06-15 22:06 - 00002972 _____ C:\Windows\System32\Tasks\{7509D106-3511-40AF-9323-472EE4ED772D}
2016-06-15 22:05 - 2016-04-21 15:05 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-06-15 22:04 - 2016-06-16 13:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-15 22:04 - 2016-06-15 22:19 - 00000000 ____D C:\Users\karen\AppData\Local\Mozilla
2016-06-15 22:04 - 2016-06-15 22:11 - 00000000 ____D C:\Users\karen\AppData\Roaming\Mozilla
2016-06-15 22:04 - 2016-06-15 22:04 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-06-15 22:04 - 2016-06-15 22:04 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-06-15 22:04 - 2016-06-15 22:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-15 21:46 - 2016-06-26 22:56 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-15 21:46 - 2016-06-26 22:05 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-15 21:46 - 2016-06-15 21:51 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-06-15 21:46 - 2016-06-15 21:51 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-06-15 21:44 - 2016-06-17 21:07 - 00000000 ____D C:\Users\karen\AppData\Roaming\Adobe
2016-06-15 21:43 - 2016-06-15 21:49 - 00000000 ____D C:\Users\karen\AppData\LocalLow\Google
2016-06-15 21:43 - 2016-06-15 21:49 - 00000000 ____D C:\Users\karen\AppData\Local\Google
2016-06-15 21:43 - 2016-06-15 21:43 - 00000000 ____D C:\Users\karen\AppData\Roaming\Google
2016-06-15 21:41 - 2016-06-15 21:41 - 00000525 _____ C:\Users\karen\Desktop\Programmes et fonctionnalités - Raccourci.lnk
2016-06-15 21:14 - 2016-06-15 23:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2016-06-15 21:14 - 2016-06-15 21:14 - 00001187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lanceur de tâches Microsoft Works.lnk
2016-06-15 21:09 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2016-06-15 21:09 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2016-06-15 21:08 - 2016-06-15 21:08 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-06-15 21:07 - 2016-06-15 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-06-15 21:07 - 2016-06-15 21:09 - 00000000 ____D C:\Program Files (x86)\Windows Live
2016-06-15 21:07 - 2016-06-15 21:07 - 00000000 ____D C:\Program Files (x86)\Windows Live SkyDrive
2016-06-15 21:01 - 2016-06-15 21:01 - 00000000 ____D C:\Users\karen\AppData\Local\Microsoft Help
2016-06-15 21:00 - 2016-06-15 21:00 - 00000000 ____D C:\BOOK
2016-06-15 20:56 - 2016-06-15 20:56 - 00000033 _____ C:\Windows\0
2016-06-15 20:56 - 2009-08-03 22:34 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll
2016-06-15 20:56 - 2009-08-03 22:34 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll
2016-06-15 20:54 - 2016-06-15 20:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Arcade Deluxe
2016-06-15 20:54 - 2016-06-15 20:54 - 00000000 ____D C:\Program Files (x86)\Cyberlink
2016-06-15 20:52 - 2016-06-16 20:30 - 00000000 ____D C:\ProgramData\CyberLink
2016-06-15 20:52 - 2016-06-15 20:56 - 00000000 ____D C:\Program Files (x86)\Acer Arcade Deluxe
2016-06-15 20:52 - 2016-06-15 20:52 - 00000000 ____D C:\ProgramData\Temp
2016-06-15 20:51 - 2016-06-15 22:41 - 00000000 ____D C:\Users\Public\Documents\Screensaver
2016-06-15 20:51 - 2016-06-15 20:51 - 00000089 _____ C:\Windows\LManager.UNI
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch Manager
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\Users\karen\AppData\Roaming\Macromedia
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam
2016-06-15 20:51 - 2016-06-15 20:51 - 00000000 ____D C:\Program Files (x86)\Launch Manager
2016-06-15 20:51 - 2009-07-24 18:08 - 01658880 _____ (SuYin) C:\Windows\Acer Crystal Eye webcam.EXE
2016-06-15 20:51 - 2009-07-24 15:44 - 00008362 _____ C:\Windows\Suyin.reg
2016-06-15 20:51 - 2009-05-11 17:39 - 00000323 _____ C:\Windows\PidList.ini
2016-06-15 20:51 - 2008-12-30 13:42 - 00626688 _____ C:\Windows\Image.dll
2016-06-15 20:51 - 2008-07-29 19:29 - 00200704 _____ () C:\Windows\PLFSetI.exe
2016-06-15 20:51 - 2008-06-25 14:22 - 00020480 _____ C:\Windows\USB_VIDEO_REG.exe
2016-06-15 20:50 - 2016-06-15 20:50 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2016-06-15 20:50 - 2016-06-15 20:50 - 00000000 ____D C:\Program Files\Synaptics
2016-06-15 20:49 - 2016-06-15 20:50 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-06-15 20:49 - 2016-06-15 20:49 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-06-15 20:49 - 2016-06-15 20:49 - 00000000 ____D C:\Program Files\Realtek
2016-06-15 20:49 - 2009-08-11 03:05 - 00189796 _____ C:\Windows\system32\Drivers\RTConvEQ.dat
2016-06-15 20:49 - 2009-08-11 03:05 - 00001112 _____ C:\Windows\system32\Drivers\RtHdatEx.dat
2016-06-15 20:49 - 2009-08-06 04:33 - 00611872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-06-15 20:49 - 2009-08-06 04:32 - 01603104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 01393696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 01167904 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00417824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00332320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00149536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-06-15 20:49 - 2009-08-06 04:32 - 00063008 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2016-06-15 20:49 - 2009-08-06 03:46 - 01974944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-06-15 20:49 - 2009-07-22 08:03 - 00294400 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-06-15 20:49 - 2009-06-24 20:43 - 00831488 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-06-15 20:49 - 2009-04-16 20:13 - 00166400 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-06-15 20:49 - 2009-04-01 00:02 - 00108032 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-06-15 20:49 - 2009-03-09 15:32 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-06-15 20:49 - 2009-03-09 15:30 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-06-15 20:49 - 2009-02-10 21:12 - 00000008 _____ C:\Windows\system32\Drivers\rtkhdaud.dat
2016-06-15 20:49 - 2009-02-08 05:20 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX0.dat
2016-06-15 20:49 - 2008-11-09 21:57 - 00311296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-06-15 20:49 - 2008-08-21 23:43 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX2.dat
2016-06-15 20:49 - 2008-04-30 18:48 - 00193536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-06-15 20:49 - 2007-07-25 19:34 - 00150528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-06-15 20:49 - 2007-05-17 21:26 - 00211376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-06-15 20:49 - 2006-12-13 20:30 - 00513536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-06-15 20:49 - 2005-06-27 15:29 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX1.dat
2016-06-15 20:48 - 2016-06-15 20:48 - 00001463 _____ C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-06-15 20:48 - 2016-06-15 20:48 - 00001429 _____ C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-06-15 20:48 - 2016-06-15 20:48 - 00000000 ____D C:\Users\karen\AppData\Local\EgisTec
2016-06-15 20:48 - 2016-06-15 20:48 - 00000000 ____D C:\ProgramData\EgisTec
2016-06-15 20:47 - 2016-06-21 21:06 - 00000000 ____D C:\Users\karen
2016-06-15 20:47 - 2016-06-16 14:49 - 00084328 _____ C:\Users\karen\AppData\Local\GDIPFONTCACHEV1.DAT
2016-06-15 20:47 - 2016-06-15 20:47 - 00000020 ___SH C:\Users\karen\ntuser.ini
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Public\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Voisinage réseau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Voisinage d'impression
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Mes documents
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\karen\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Voisinage réseau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Mes documents
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Modèles
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Menu Démarrer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Favoris
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\ProgramData\Bureau
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 _SHDL C:\Program Files\Fichiers communs
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 ____D C:\Users\Public\Documents\Acer
2016-06-15 20:47 - 2016-06-15 20:47 - 00000000 ____D C:\Users\karen\AppData\Local\VirtualStore
2016-06-15 20:47 - 2009-08-22 08:06 - 00000000 ____D C:\Users\karen\AppData\Roaming\Media Center Programs
2016-06-15 20:41 - 2016-06-15 20:41 - 00000000 ____D C:\Program Files\LSI SoftModem
2016-06-15 20:40 - 2016-06-15 20:40 - 00000000 ____D C:\Windows\SysWOW64\x64
2016-06-15 20:40 - 2016-06-15 20:40 - 00000000 ____D C:\Windows\SysWOW64\Lang
2016-06-15 20:40 - 2009-08-12 20:41 - 00997912 _____ (Intel Corporation) C:\Windows\SysWOW64\igxpun.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-26 22:12 - 2009-07-14 06:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-26 22:12 - 2009-07-14 06:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-26 22:05 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-17 21:07 - 2009-08-22 07:22 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-06-17 11:27 - 2009-07-14 07:13 - 01524562 _____ C:\Windows\system32\PerfStringBackup.INI
2016-06-17 11:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-06-16 19:19 - 2009-07-14 06:45 - 00365680 _____ C:\Windows\system32\FNTCACHE.DAT
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-06-16 19:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-06-16 19:13 - 2009-08-22 08:06 - 00000000 ____D C:\Program Files\Windows Journal
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2016-06-16 19:13 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Setup
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\manifeststore
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Setup
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\migwiz
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\manifeststore
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Dism
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing
2016-06-16 19:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-06-16 19:09 - 2009-07-14 04:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2016-06-16 19:09 - 2009-07-14 04:36 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2016-06-16 15:04 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2016-06-16 14:15 - 2009-08-22 10:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-06-16 14:15 - 2009-07-14 04:34 - 00000419 _____ C:\Windows\win.ini
2016-06-16 14:03 - 2009-08-22 10:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2016-06-16 14:02 - 2009-08-22 08:06 - 00000000 ____D C:\Windows\ShellNew
2016-06-16 14:01 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\winrm
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\WCN
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\slmgr
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\winrm
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\WCN
2016-06-16 06:37 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\slmgr
2016-06-16 06:37 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\MUI
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2016-06-16 06:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\MUI
2016-06-16 06:37 - 2009-03-12 11:30 - 00000000 ____D C:\Windows\LP
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2016-06-16 06:33 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\DigitalLocker
2016-06-16 06:33 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2016-06-16 06:33 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\com
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\com
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\IME
2016-06-16 06:33 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2016-06-16 06:24 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-06-16 06:24 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-06-15 22:07 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-15 21:49 - 2009-08-22 07:29 - 00000000 ____D C:\ProgramData\McAfee
2016-06-15 21:46 - 2009-08-22 07:40 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-15 21:28 - 2009-07-27 22:26 - 00000000 ___DC C:\elements
2016-06-15 21:28 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2016-06-15 21:15 - 2009-08-22 08:01 - 00000214 _____ C:\Windows\Factory.xml
2016-06-15 20:59 - 2009-08-22 07:41 - 00000000 ____D C:\Program Files\Acer
2016-06-15 20:59 - 2009-08-22 07:23 - 00000000 ____D C:\ProgramData\OEM
2016-06-15 20:59 - 2009-08-22 07:15 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-06-15 20:58 - 2009-08-22 08:03 - 00000000 ___HD C:\OEM
2016-06-15 20:51 - 2009-08-22 07:41 - 00000000 ____D C:\Program Files (x86)\Acer
2016-06-15 20:49 - 2009-08-22 07:15 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-06-15 20:47 - 2009-08-22 08:01 - 00000210 __RSH C:\Preload.rev
2016-06-15 20:47 - 2009-08-22 08:01 - 00000168 _____ C:\Windows\WisLangCode.ini
2016-06-15 20:47 - 2009-07-27 22:41 - 00000000 ____D C:\Windows\Panther
2016-06-15 20:47 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2016-06-15 20:47 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT
2016-06-15 20:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache

==================== Files in the root of some directories =======

2016-06-16 21:53 - 2016-06-16 21:53 - 0036352 ___SH () C:\Users\karen\AppData\Roaming\Thumbs.db
2016-06-16 19:07 - 2016-06-16 19:07 - 0000017 _____ () C:\Users\karen\AppData\Local\resmon.resmoncfg
2016-06-15 20:52 - 2016-06-15 20:56 - 0007822 _____ () C:\ProgramData\ArcadeDeluxe3.log
2009-08-22 10:44 - 2009-07-18 03:57 - 0036136 _____ (Oberon Media) C:\ProgramData\FullRemove.exe

Some files in TEMP:
====================
C:\Users\karen\AppData\Local\Temp\avguirn_0897122255.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-06-16 14:31

==================== End of FRST.txt ============================

 

addition.txt

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-06-2016 01
Ran by karen (2016-06-26 23:06:15)
Running from C:\Users\karen\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2016-06-15 18:47:06)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrateur (S-1-5-21-1931714976-555238990-3150765884-500 - Administrator - Disabled)
Invité (S-1-5-21-1931714976-555238990-3150765884-501 - Limited - Enabled)
karen (S-1-5-21-1931714976-555238990-3150765884-1001 - Administrator - Enabled) => C:\Users\karen

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 3.0.6821 - CyberLink Corp.)
Acer Arcade Deluxe (x32 Version: 3.0.6821 - CyberLink Corp.) Hidden
Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.22 - NewTech Infosystems)
Acer Crystal Eye Webcam (HKLM-x32\...\{7760D94E-B1B5-40A0-9AA0-ABF942108755}) (Version: 5.2.7.1 - Suyin Optronics Corp)
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 4.05.3002 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3003 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1) (Version: 5.1.0.2 - Oberon Media, Inc.)
Acer GridVista (HKLM-x32\...\GridVista) (Version: 3.01.0730 - Acer Inc.)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.02.3004 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.5.0715 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 21.0.0.215 - Adobe Systems Incorporated)
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.22.87 - Adobe Systems Incorporated)
Adobe Reader 9.1 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
Alice Greenfingers (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version:  - Oberon Media)
Amazonia (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}) (Version:  - Oberon Media)
Assistant de connexion Windows Live (HKLM-x32\...\{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}) (Version: 5.000.818.5 - Microsoft Corporation)
AVG (HKLM\...\AvgZen) (Version: 1.61.2.12974 - AVG Technologies)
AVG (Version: 16.81.7640 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4604 - AVG Technologies) Hidden
AVG Protection (HKLM\...\AVG) (Version: 2016.81.7640 - AVG Technologies)
AVG Zen (Version: 1.61.9 - AVG Technologies) Hidden
Backup Manager Basic (x32 Version: 2.0.0.22 - NewTech Infosystems) Hidden
Broadcom Gigabit NetLink Controller (HKLM\...\{96F70DF8-160F-4F9C-9B9E-2A9B439B4EB9}) (Version: 12.26.02 - Broadcom Corporation)
Chicken Invaders 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}) (Version:  - Oberon Media)
Choice Guard (x32 Version: 1.2.87.0 - Microsoft Corporation) Hidden
Dairy Dash (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}) (Version:  - Oberon Media)
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version:  - Oberon Media)
eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.)
eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.) Hidden
Farm Frenzy 2 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}) (Version:  - Oberon Media)
FMW 1 (Version: 1.102.4 - AVG Technologies) Hidden
Galerie de photos Windows Live (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7619.1252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.2.183.13 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Granny In Paradise (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}) (Version:  - Oberon Media)
Heroes of Hellas (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}) (Version:  - Oberon Media)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3001 - Acer Incorporated)
Installation Windows Live (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8064.0206 - Microsoft Corporation)
Installation Windows Live (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation)
Junk Mail filter update (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 3.0.04 - Acer Inc.)
LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.1.94 - LSI Corporation)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Merriam Websters Spell Jam (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}) (Version:  - Oberon Media)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{0214A441-A4AB-43A8-8DEF-2F73C5364673}) (Version: 9.7.0621 - Microsoft Corporation)
Mozilla Firefox 47.0 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 en-GB)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyWinLocker (HKLM-x32\...\{68301905-2DEA-41CE-A4D4-E8B443B099BA}) (Version: 3.1.72.0 - Egis Technology Inc.)
NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.627 - NewTech Infosystems)
NTI Backup Now Standard (x32 Version: 5.1.2.627 - NewTech Infosystems) Hidden
NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6619 - NewTech Infosystems)
NTI Media Maker 8 (x32 Version: 8.0.12.6619 - NewTech Infosystems) Hidden
OpenOffice 4.1.2 (HKLM-x32\...\{4E96CB8B-444E-4EA3-8EF4-26060B0B411F}) (Version: 4.12.9782 - Apache Software Foundation)
Outil de téléchargement Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5911 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7100.30093 - Realtek Semiconductor Corp.)
Star Defender 4 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-114803710}) (Version:  - Oberon Media)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 13.2.2.0 - Synaptics Incorporated)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.00.3005 - Acer Incorporated)
Windows Live Sync (HKLM-x32\...\{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}) (Version: 14.0.8064.206 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {202C3540-2B01-4ECC-A157-92BDEA82FDE9} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-17] (AVAST Software)
Task: {288BCD98-DAC4-4373-BE17-15BD91E3A44B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-15] (Google Inc.)
Task: {2C6FC86C-8185-4212-826D-EAD09DECED32} - System32\Tasks\{7509D106-3511-40AF-9323-472EE4ED772D} => Firefox.exe
Task: {3D9F4E5F-AE52-43E9-993C-99569AC53921} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-15] (Google Inc.)
Task: {67A527CA-D1D9-43A4-9DAB-23A8FA47BA26} - System32\Tasks\Recovery Management\Burn Notification => C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [2009-07-09] (Acer)
Task: {B5842305-5F49-4308-9F24-BB3F51CDC3F8} - System32\Tasks\AVG-SSU_0516piz_DELETE => C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe [2016-05-03] ()
Task: {BD2B9BD1-B7CF-450E-B668-DD5724F77DEB} - System32\Tasks\AVG-SSU_0516piz => C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe [2016-05-03] ()

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\AVG-SSU_0516piz.job => C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe
Task: C:\Windows\Tasks\AVG-SSU_0516piz_DELETE.job => C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-06-15 22:30 - 2016-05-03 09:53 - 01986632 _____ () C:\ProgramData\Avg_Update_0516piz\AVG-Secure-Search-Update_0516piz.exe
2016-06-15 20:51 - 2008-07-29 19:29 - 00200704 _____ () C:\Windows\PLFSetI.exe
2009-02-03 02:33 - 2009-02-03 02:33 - 00460199 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2008-09-29 02:55 - 2008-09-29 02:55 - 01076224 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2016-06-15 22:18 - 2016-06-15 22:17 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
2015-10-21 15:50 - 2015-10-21 15:50 - 00988160 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxml2.dll
2015-10-21 15:49 - 2015-10-21 15:49 - 00170496 _____ () C:\Program Files (x86)\OpenOffice 4\program\libxslt.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2016-06-16 15:03 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1931714976-555238990-3150765884-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 10.0.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A5A48B92-8A06-46CC-AB98-D30EDF70F628}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
FirewallRules: [{D8AABB03-CA8D-478A-9763-5281D43A0491}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
FirewallRules: [{709F98C6-1B56-469C-AA7C-7E33F537B2FB}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
FirewallRules: [{0DB6F52F-2488-4615-B42D-CC238964C6BE}] => (Allow) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
FirewallRules: [{31A7FE0F-C5CE-40D4-B909-A4E66AEFCF39}] => (Allow) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\Acer Arcade Deluxe.exe
FirewallRules: [{95BA9E1D-CC3C-4C11-8CE8-3AA5C5F404B4}] => (Allow) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PlayMovie.exe
FirewallRules: [{569AE9B3-9164-4726-8505-938F31F1FEEF}] => (Allow) C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
FirewallRules: [{803259EE-04C7-4E4F-BF6E-18030B788DB1}] => (Allow) C:\Program Files (x86)\Acer Arcade Deluxe\HomeMedia\HomeMedia.exe
FirewallRules: [{2959572A-DD5F-4203-9A20-0C100D9AFFB4}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe
FirewallRules: [{E5721FDE-E9F8-4953-A196-E6B4ADC99234}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{F991C01A-E196-45BE-850A-BCFB1088C113}] => (Allow) svchost.exe
FirewallRules: [{41B6823E-2DF0-4EC2-99A8-AB0BD7610E61}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{F42C669B-6DB8-4036-B38F-40DB00D62F9E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{747371B3-90F9-4E93-AF3A-65E05392E12C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1842EFB1-1FD9-47B6-B7AB-CB129362F48D}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{B9FCFECD-6A93-40D0-B80B-F7DD7BBD073A}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{D86D139D-3B2C-43AF-98D3-AAA49B0E82D6}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{D6E7B883-8CB7-436E-91C9-1C4A01D27B65}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{872803FD-F07C-499F-84E0-29C533B7C9A6}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{AB9DF413-8C21-4285-8024-8306B1805C21}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{BA5EF595-B8A9-4F99-8FFE-52509BE4B9CF}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{7BF3CA61-D722-42E5-957B-55DCFDAA9F1A}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{268F6E4E-2E55-4F66-90C3-A7BB68632EEB}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{88B56433-866C-4B85-BB19-5E08891F11B0}] => (Allow) C:\Program Files\Vuze\Azureus.exe

==================== Restore Points =========================

21-06-2016 13:36:53 Installed Java 7 Update 79
21-06-2016 22:07:58 Fichiers de sauvegarde du Service Pack supprimés
26-06-2016 11:37:26 Restore Point Created by FRST

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/26/2016 10:05:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante AVG-Secure-Search-Update_0516piz.exe, version : 5.16.0.1, horodatage : 0x57285816
Nom du module défaillant : AVG-Secure-Search-Update_0516piz.exe, version : 5.16.0.1, horodatage : 0x57285816
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0013d663
ID du processus défaillant : 0xc70
Heure de début de l’application défaillante : 0xAVG-Secure-Search-Update_0516piz.exe0
Chemin d’accès de l’application défaillante : AVG-Secure-Search-Update_0516piz.exe1
Chemin d’accès du module défaillant: AVG-Secure-Search-Update_0516piz.exe2
ID de rapport : AVG-Secure-Search-Update_0516piz.exe3

Error: (06/26/2016 11:37:25 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé.
.
Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur.


Opération :
   Données du rédacteur en cours de collecte

Contexte :
   ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220}
   Nom du rédacteur: System Writer
   ID d’instance du rédacteur: {317abbb3-5853-4f15-9347-6e00049fb2da}

Error: (06/21/2016 10:07:57 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé.
.
Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur.


Opération :
   Données du rédacteur en cours de collecte

Contexte :
   ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220}
   Nom du rédacteur: System Writer
   ID d’instance du rédacteur: {a2d02206-ce01-40c6-bbcd-f39d6cc87fd6}

Error: (06/16/2016 07:21:47 PM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (2584) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué.

Error: (06/16/2016 07:15:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante IAANTMon.exe, version : 8.9.0.1023, horodatage : 0x4a287cc7
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0x908
Heure de début de l’application défaillante : 0xIAANTMon.exe0
Chemin d’accès de l’application défaillante : IAANTMon.exe1
Chemin d’accès du module défaillant: IAANTMon.exe2
ID de rapport : IAANTMon.exe3

Error: (06/16/2016 07:15:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante UpdaterService.exe, version : 1.0.0.6, horodatage : 0x4a4de121
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0xa80
Heure de début de l’application défaillante : 0xUpdaterService.exe0
Chemin d’accès de l’application défaillante : UpdaterService.exe1
Chemin d’accès du module défaillant: UpdaterService.exe2
ID de rapport : UpdaterService.exe3

Error: (06/16/2016 07:15:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante SchedulerSvc.exe, version : 5.1.0.627, horodatage : 0x4a38a3bf
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0xb64
Heure de début de l’application défaillante : 0xSchedulerSvc.exe0
Chemin d’accès de l’application défaillante : SchedulerSvc.exe1
Chemin d’accès du module défaillant: SchedulerSvc.exe2
ID de rapport : SchedulerSvc.exe3

Error: (06/16/2016 07:15:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante IScheduleSvc.exe, version : 2.0.0.22, horodatage : 0x4a8cd3e8
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0x9bc
Heure de début de l’application défaillante : 0xIScheduleSvc.exe0
Chemin d’accès de l’application défaillante : IScheduleSvc.exe1
Chemin d’accès du module défaillant: IScheduleSvc.exe2
ID de rapport : IScheduleSvc.exe3

Error: (06/16/2016 07:15:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MWLService.exe, version : 3.1.72.0, horodatage : 0x4a7b0e7e
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0x914
Heure de début de l’application défaillante : 0xMWLService.exe0
Chemin d’accès de l’application défaillante : MWLService.exe1
Chemin d’accès du module défaillant: MWLService.exe2
ID de rapport : MWLService.exe3

Error: (06/16/2016 07:15:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante GregHSRW.exe, version : 1.0.2001.0, horodatage : 0x2a425e19
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x746e6cc4
ID du processus défaillant : 0x880
Heure de début de l’application défaillante : 0xGregHSRW.exe0
Chemin d’accès de l’application défaillante : GregHSRW.exe1
Chemin d’accès du module défaillant: GregHSRW.exe2
ID de rapport : GregHSRW.exe3


System errors:
=============
Error: (06/26/2016 10:29:24 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l’ordinateur TOSH
qui pense qu’il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{E8CEFC35-16C3-44BB-AB23-403058E9F84A}.
Le maître explorateur s’arrête ou une élection est provoquée.

Error: (06/26/2016 10:03:21 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Le service AVGIDSAgent ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture.

Error: (06/26/2016 09:53:21 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l’ordinateur TOSH
qui pense qu’il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{E8CEFC35-16C3-44BB-AB23-403058E9F84A}.
Le maître explorateur s’arrête ou une élection est provoquée.

Error: (06/26/2016 05:47:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Defender s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service.

Error: (06/26/2016 05:41:19 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l’ordinateur TOSH
qui pense qu’il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{E8CEFC35-16C3-44BB-AB23-403058E9F84A}.
Le maître explorateur s’arrête ou une élection est provoquée.

Error: (06/26/2016 05:29:17 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l’ordinateur TOSH
qui pense qu’il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{E8CEFC35-16C3-44BB-AB23-403058E9F84A}.
Le maître explorateur s’arrête ou une élection est provoquée.

Error: (06/26/2016 12:12:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Defender s’est terminé de manière inattendue. Ceci s’est produit 2 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service.

Error: (06/26/2016 11:43:07 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Defender s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service.

Error: (06/26/2016 11:37:43 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Service Partage réseau du Lecteur Windows Media s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service.

Error: (06/26/2016 11:37:42 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service AVG Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service.


CodeIntegrity:
===================================
  Date: 2016-06-16 14:59:08.988
  Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume3\ComboFix\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue.

  Date: 2016-06-16 14:59:08.988
  Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume3\ComboFix\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue.


==================== Memory info ===========================

Processor: Pentium® Dual-Core CPU T4300 @ 2.10GHz
Percentage of memory in use: 75%
Total physical RAM: 4024.93 MB
Available physical RAM: 1002.72 MB
Total Virtual: 8048.05 MB
Available Virtual: 5024.89 MB

==================== Drives ================================

Drive c: (ACER) (Fixed) (Total:452.97 GB) (Free:424.69 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00E700E6)
Partition 1: (Not Active) - (Size=12.7 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

 

well win defend seems to have had something to do with something,.............    as you can tell im a bit illiterate on understanding this stuff.

 

have a good evening

regards karen



#11 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 26 June 2016 - 07:49 PM

Yes, that is correct.

What email program do you use?

Please do this.

===================================================

Modifying Service Start State

-------------------
  • Click Start, type cmd, then press the Shift, Ctrl, + Enter keys at the same time
  • A black Administrator: Command Prompt screen should appear
  • Type sc config WinDefend start= demand and press Enter
  • You should receive confirmation the command was successful
  • Reboot your computer
  • Scan your computer using AVG and check for detections
===================================================

Please disable AVG.

===================================================

Click Start, type Windows Defender then select Scan for spyware and other potentially unwanted software. Post the scan results.

===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Email program?
  • Did the service state change?
  • Windows Defender scan report

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."

#12 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 27 June 2016 - 05:54 AM

Morning,

 

i use gmail,  (i have a yahoo account that feeds into gmail were i pick it up).

 


 

cmd   was succesful (which i gues mean the service state was changed.

rebooted computer

ran avg scan,  no threat detected

disabled avg

ran windows defender (full scan for spyware and potential unwanted,)

which came up as not available, so i clicked to update or make it available, and then scanned

nothing detected

 

Karen

 

 


 


 



#13 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 27 June 2016 - 09:24 AM

Hi Karen,

I think your computer is fine. If anything, it appears there is an archived file or other data file which contains an entry AVG and/or Windows Defender is not happy with. However, it doesn't appear to be in an active position from which your computer will be affected.

Years ago I had this type of issue with my personal computer. I think I also had this issue in one of the Topics at BleepingComputer as well. The resolution to my issue was to identify and delete the archived email file. It was not that I felt it was necessary to do that to protect my computer, I simply wanted to verify that archived file was the culprit.

Having said all of that I am not sure why you no longer receive the notification. Either way, I would not be concerned about it.

I would like to run 2 more programs, if you don't mind.

===================================================

ESET Online Scanner

--------------------

I'd like us to scan your machine with ESET OnlineScan This process may may take several hours, that is normal.
  • Download esetsmartinstaller_enu.exe and save it to your Desktop
  • Double click the icon
  • Check YES, I accept the Terms of Use
  • Click the Start button
  • Accept any security warnings from your browser
  • Click Advanced settings
  • Check the following items

Enable detection of potentially unwanted applications
Remove found threats
Scan archives
Scan for potentially unsafe applications
Enable Anti-Stealth technology

  • Click Start
  • ESET will then download updates and begin scanning your computer
  • If no threats are found simply click Uninstall application on close and hit Finish
  • If threats are found click List of found threats
  • Click Export to text file
  • Save the file on your Desktop as ESET.txt
  • Click Back
  • Check Uninstall application on close
  • Click Finish
  • Close the ESET Online Scanner window
  • Copy and paste the contents of ESET.txt in your reply
===================================================

screen317's Security Check

--------------------
  • Please download screen317's Security Check to your desktop
  • Double-click icon to launch the program
  • Click OK
  • Select Run Note: If you receive an error message saying UNSUPPORTED OPERATING SYSTEM! ABORTED! reboot your computer and attempt to run it again
  • Allow the program to run
  • A Notepad document will open on your desktop. Please copy and paste the contents in your reply
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • ESET log
  • Security Check log
  • How is your computer running?

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."

#14 karentaliesin

karentaliesin
  • Topic Starter

  • Members
  • 21 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:04:38 AM

Posted 27 June 2016 - 02:24 PM

Hi Gary,

its all fine for me to run scans, i'm not in any hurry type thing. i actually find it interesting, though understanding little, time has moved on from dragon 32, and bbc computers........ which is probably where i got left behind ha..


 

so the story up to now,

i started the ESET scan, and went out to garden a bit, leaving it to do its thing.

came back in at 94% to realise that AVG had started its scheduled Scan. So i just decided to let them both run , and that i would, redo the ESET scan

the results of that first one found nothing

but.....  AVG threw up our friend again;

 

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (4652)";"Healed";"Process";"27/06/2016, 18:27:59"


 

"";"Trojan horse Generic37.BGLX.dropper, c:\Windows\System32\svchost.exe (4652):\memory_0e820000";"Healed";"Embedded element in the archive, email attachment, cookie etc.";"27/06/2016, 18:27:59"


 

so i am off to do an ESET scan once again (i will disable AVG this time as well, whilst running the scans).


 

i do believe you are likely to be correct that it will do nothing to damage this laptop.even thought its returned it only dissapears when we did the cmd stuff......

Also the fact that i no longer have anything on this computer,filewise etc, having done the factory reinstall (Acer erecovery), i wiped all files off this computer so there shouldnt be an archived file or data file a far as i can tell.

 

i first backed up all my files, and migrated them to my other laptop with windows 10 OS, (.......enforced leaning there too.grimace emoticon !! I have avoided it, dont like change) .getting used to it now, in the desktop environment, more or less the same as 7,.but dislike icons instead of the written words. And menus hey ho blah blah - stone aged ole lady !!!

point being all the files and info i had here, are there, and AVG has not thrown up any trojan horse or other threats. when it scans that computer.  but end of day i know nothing really ; hence why i am here :)  but like you i like to hunt something up to its real time conclusion, if i knew where to find such files haha;  but otherwise i am ok to sit with it, as nothing really seems to be a problem.


 

This computer actually feels like she is running better, (lots of memory tho now, no windows ceasing to function, or other probs like script stops running) so yep not doing much on it but no probs occuring. and seems to be running smoothly to me

 

 

Ok so heres the ESET /info/logs to be followed by the screen 317 security check......


 

ESET no threat detected


 

screen 317 Security check


 

d Results of screen317's Security Check version 1.014 --- 12/23/15

Windows 7 Service Pack 1 x64 (UAC is enabled)

``````````````Antivirus/Firewall Check:``````````````

AVG AntiVirus Free Edition

Antivirus out of date!

`````````Anti-malware/Other Utilities Check:`````````

Java 8 Update 91

Java version 32-bit out of Date!

Adobe Flash Player 10 Flash Player out of Date!

Adobe Reader 9 Adobe Reader out of Date!

Mozilla Firefox (47.0)

````````Process Check: objlist.exe by Laurent````````

`````````````````System Health check`````````````````

Total Fragmentation on Drive C: =

````````````````````End of Log``````````````````````

 

 

so as i note your in cally, and thus about 8hrs behind me, 

have a great afternoon and catch you in the next post

Karen



#15 Oh My!

Oh My!

    Adware and Spyware and Malware.....


  • Malware Response Instructor
  • 37,393 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:California
  • Local time:07:38 PM

Posted 27 June 2016 - 03:13 PM

Greetings Karen and thanks for the reply. I am going to have you update some programs and I also want to consult with one of my colleagues regarding this repeated detection.

Please do this.

===================================================

Open AVG then click Update Now.

===================================================

Update Adobe Flash Player

--------------------
  • Download Adobe Flash Player here and save it to your desktop. Uncheck "Yes, install McAfee Security Scan Plus - optional"
  • Close any open browsers
  • Click on Install Now
  • Click Save File and save the file to your Desktop
  • Double click the Desktop icon
  • Select either Allow Adobe to install updates (recommended) or Notify me to install updates then click Next
  • When completed click Finish
===================================================

Update Adobe Reader

--------------------

Your Adobe Reader is out of date and a security concern. Here is some excellent information and a video which explains the importance of minimizing the risk of infection through compromised PDF files.
  • Please visit Adobe Reader
  • Uncheck any optional offers you do not want
  • Click Install now
  • Save the file to your desktop
  • Double click the installation icon
  • Select Run
  • When completed click Finish
  • Press the Windows key + R at the same time
  • Type appwiz.cpl, press Enter, and allow the Programs list to populate
  • Uninstall every Adobe Reader program except the one just downloaded and installed
===================================================

Things I would like to see in your next reply. Please be sure to copy and paste any requested log information unless you are asked to attach it. :thumbsup2:
  • Did the programs update properly?

Gary
 
If I do not reply within 24 hours please send me a Personal Message.

"May you be richly rewarded by the Lord, the God of Israel, under whose wings you have come to take refuge."




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users