Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

ZEROACCESS Reparse Point/Junction found with Rkill


  • This topic is locked This topic is locked
14 replies to this topic

#1 gaijindesu

gaijindesu

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 01 October 2016 - 07:31 PM

Hi,

 

About an hour or two before posting, I ran Rkill and this is just a bit of what had come up (I have the rest of the list attached in the Rkill log due to the incredibly large list of items that were listed):

 

 

 * ALERT: ZEROACCESS Reparse Point/Junction found!

     * C:\Program Files\Windows Defender\MpCommu.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\MpTpmAtt.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\MsMpCom.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\MsMpRes.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\NisIpsPlugin.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\NisLog.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\NisWfp.dll => <Unknown Target> [File]
     * C:\Program Files\Windows Defender\ProtectionManagement.dll => <Unknown Target> [File]
     * C:\Program Files (x86)\Windows Defender\MpAsDesc.dll => <Unknown Target> [File]
     * C:\Program Files (x86)\Windows Defender\shellext.dll => <Unknown Target> [File]

 * Reparse Point/Junctions Found (These may be legitimate)!

     * C:\WINDOWS\AppPatch\AcSpecfc.dll => <Unknown Target> [File]
     * C:\WINDOWS\AppPatch\AcXtrnal.dll => <Unknown Target> [File]
     * C:\WINDOWS\assembly\GAC_32\Microsoft.Ink\6.1.0.0__31bf3856ad364e35\Microsoft.Ink.dll => <Unknown Target> [File]
     * C:\WINDOWS\assembly\GAC_32\Microsoft.Interop.Security.AzRoles\2.0.0.0__31bf3856ad364e35\Microsoft.Interop.Security.AzRoles.dll => <Unknown Target> [File]
     * C:\WINDOWS\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll => <Unknown Target> [File]
     * C:\WINDOWS\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\wpfgfx_v0300.dll => <Unknown Target> [File]

 

 

Rkill hasn't had this come up since the scan I've attached a log of. Also, I've ran RogueKiller after that rkill scan and I have the log from those results attached. AdwCleaner hasn't found anything but I haven't ran any other scans other than a recent FRST scan. The results of that scan and the Addition.txt are both attached.

 

 

Any help is greatly appreciated!

 

 



BC AdBot (Login to Remove)

 


#2 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 03 October 2016 - 10:36 AM

Hello gaijindesu and welcome to BleepingComputer!          :)

 

My name is Sirawit and I'm here to help you.

 

If I don't reply after 2 days, feel free to PM me.         :)

==========================================================================

Some points for you to keep in mind:

  • Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of heartaches if things don't go as planned. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.
  • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
  • Do not attach logs or use code boxes, just copy and paste the text.
  • Periodically update me on the condition of your computer, and provide detail in every post.
  • In the upper right-hand corner of the topic, you will see the Followtopic.jpg button. Click on this then choose Immediate E-Mail notification and then Proceed and you will be sent an email once I have posted a response.
  • If you do not reply to your topic after 3 days I will bump the topic, if you didn't reply in next 3 days we assume it has been abandoned and I will close it.
  • Once things seem to be working again, please do not abandon the thread. I will give an "all-clean" message at the very end with some additional information on how to stay malware-free.
  • Lastly, I would like to remind you that most members here are volunteers, and sometimes "real life" can get in the way of our malware hunt. I will notify you if I know I will need to be away for longer than 48 hours.

==========================================================================

 

I'm currently reviewing your log files and will reply to you as soon as possible.

 

Thank you.


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#3 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 03 October 2016 - 12:13 PM

Hi gaijindesu. 

 

First I need to tell you that, you're not infected with Zeroaccess rootkit. What rkill reported is called reparse points, which is a legitimate feature of Windows that Zeroaccess rootkit takes advantage of, that's why rkill reported them. (Although not always malicious.)

 

Side question: Do you use Avast SafePrice extension and Avast SafeZone browser?

 

However, we still need to perform some cleanup on your system. Please run these fixes for me:

 

--------------

 

 

:step1: We need to run a fix with FRST:

  • Please download the attached fixlist.txt file and save it to the same location as FRST
    Note: It's important that both files, FRST.exe/FRST64.exe and fixlist.txt are in the same location or the fix will not work
    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
    Attached File  fixlist.txt   612bytes   5 downloads
  • Run FRST.exe/FRST64.exe and press the Fix button just once and wait
  • If for some reason the tool needs a restart, please make sure you let the system restart normally, then let the tool complete its run
  • When finished, FRST will generate a log (Fixlog.txt) in the same location the tool was run, please post it to your reply

==========

 

:step2: We need to run the SFC /SCANNOW Command

The sfc /scannow command (System File Checker) scans the integrity of all protected Windows system files and replaces incorrect corrupted, changed/modified, or damaged versions with the correct versions if possible.

Note: Be aware that if you have modified your system files as in theming explorer/system files, running sfc /scannow will revert the system files such as explorer.exe back to it's default state.

Note: Make the appropriate backups of your system files that you have modified for theming if you wish to save them before running sfc /scannow.

 

For Windows 8/8.1/10:

 

  • Right click on Start button.
  • Select Command Prompt (Admin)
  • Click Yes on UAC window, if prompted.

Next:

  • Copy the following line of text and paste it into the black box.
    (right-click in the black box and choose paste)
    sfc /scannow
  • Press Enter to run the command. 
    Note: This may take a while to finish.
  • If SFC could not fix something, then run the command again to see if it may be able to the next time. Sometimes it may take running the sfc /scannow command 3 or more times to completely fix everything that it's able to.

 

Retrieving SFC /scannow log

 

For Windows 8/8.1/10:

 

  • Right click on Start button.
  • Select Command Prompt (Admin)
  • Click Yes on UAC window, if prompted.
  • Copy the following line of text and paste it into the black box.
    (right-click in the black box and choose paste)
    findstr /c:"[SR]" %windir%\logs\cbs\cbs.log >> "%userprofile%\desktop\sfcdetails.txt"
  • Press Enter to run the command.
  • A text file sfcdetails.txt should appear on your desktop. Post the content of the file in your next reply.

 

---------------

 

:step3: We need to perform a fix on your reparse point.

 

Please download Tweaking.com Windows Repair All-in-one and save the fix to your desktop. The program comes in a zip file, please extract a program's folder out of the zip file before you continue to the next step.

 

Next, open Tweaking.com Windows Repair All-in-one folder and open the file called "Repair Windows.exe"

Go to Step 2 (Optional) Tab and click on a map icon, as shown in this picture.

 

oehegkl9cjOJymPhcw7-o.png

 

Then, click on 1.Scan Reparse Points and wait for the program to finish. The Program will tell you if it has found a problem or not.

If the result said "Problem Found?: Yes" click on 2.Repair selected and wait for the program to finish. After that, please close the program restart your computer.

 

oehefvlat7p5TqgWx3R-o.png

 

------------------

 

After you have completed all of the above steps, please create a new set of FRST log (FRST.txt and Addition.txt) for me.

 

How's your computer running now?

 

Thank you.


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#4 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 03 October 2016 - 08:19 PM

Hi Sirawit,

Thank you very much for all of your help! My computer hadn't been running oddly but I was just a bit startled by what had come up with rkill when I was doing some routine scanning on that day. It is still running fine, though. Also, I do not use Avast SafePrice extension and Avast SafeZone browser.

Below, I've posted the logs for the fixes you've requested of me:


Fixlog.txt


Fix result of Farbar Recovery Scan Tool (x64) Version: 03-10-2016
Ran by Larry (03-10-2016 19:11:14) Run:2
Running from C:\Users\Larry\Desktop
Loaded Profiles: Larry (Available Profiles: Larry)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
SearchScopes: HKLM-x32 -&gt; DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
Toolbar: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001 -&gt; No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
FF DefaultSearchUrl:
FF NetworkProxy: "type", 0
Task: {3EEE7AFD-5DE9-41C3-8EDF-6BCE13E74793} - System32\Tasks\{5EBEB970-8C3C-47A8-98FD-B0E8C811AC0E} =&gt; pcalua.exe -a "C:\Users\Larry\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\Zip Opener Packages\uninstaller.exe" -c /Uninstall /NM="Zip Opener Packages" /AN="0D0S1L2Z1P1B0T1P1B2Z" /MBN="Zip Opener Packages"
EmptyTemp:
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope =&gt; value restored successfully
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} =&gt; value removed successfully
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} =&gt; key not found.
FF DefaultSearchUrl: =&gt; not found
FF NetworkProxy: "type", 0 =&gt; not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3EEE7AFD-5DE9-41C3-8EDF-6BCE13E74793}" =&gt; key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EEE7AFD-5DE9-41C3-8EDF-6BCE13E74793}" =&gt; key removed successfully
C:\WINDOWS\System32\Tasks\{5EBEB970-8C3C-47A8-98FD-B0E8C811AC0E} =&gt; moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5EBEB970-8C3C-47A8-98FD-B0E8C811AC0E}" =&gt; key removed successfully

=========== EmptyTemp: ==========

BITS transfer queue =&gt; 32768 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache =&gt; 63494236 B
Java, Flash, Steam htmlcache =&gt; 372038496 B
Windows/system/drivers =&gt; 38124905 B
Edge =&gt; 0 B
Chrome =&gt; 0 B
Firefox =&gt; 23257278 B
Opera =&gt; 0 B

Temp, IE cache, history, cookies, recent:
Default =&gt; 0 B
ProgramData =&gt; 0 B
Public =&gt; 0 B
systemprofile =&gt; 0 B
systemprofile32 =&gt; 0 B
LocalService =&gt; 129878 B
NetworkService =&gt; 0 B
Larry =&gt; 3802014 B

RecycleBin =&gt; 0 B
EmptyTemp: =&gt; 477.7 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:12:44 ====



sfcdetails.txt


2016-10-03 19:23:54, Info CSI 0000000a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:23:54, Info CSI 0000000b [SR] Beginning Verify and Repair transaction
2016-10-03 19:23:58, Info CSI 00000070 [SR] Verify complete
2016-10-03 19:23:58, Info CSI 00000071 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:23:58, Info CSI 00000072 [SR] Beginning Verify and Repair transaction
2016-10-03 19:24:02, Info CSI 000000d7 [SR] Verify complete
2016-10-03 19:24:02, Info CSI 000000d8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:24:02, Info CSI 000000d9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:24:06, Info CSI 0000013e [SR] Verify complete
2016-10-03 19:24:06, Info CSI 0000013f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:24:06, Info CSI 00000140 [SR] Beginning Verify and Repair transaction
2016-10-03 19:24:10, Info CSI 000001a5 [SR] Verify complete
2016-10-03 19:24:10, Info CSI 000001a6 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:24:10, Info CSI 000001a7 [SR] Beginning Verify and Repair transaction
2016-10-03 19:24:14, Info CSI 0000020c [SR] Verify complete
2016-10-03 19:24:14, Info CSI 0000020d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:24:14, Info CSI 0000020e [SR] Beginning Verify and Repair transaction
2016-10-03 19:24:59, Info CSI 00000273 [SR] Verify complete
2016-10-03 19:25:00, Info CSI 00000274 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:00, Info CSI 00000275 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:04, Info CSI 000002da [SR] Verify complete
2016-10-03 19:25:04, Info CSI 000002db [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:04, Info CSI 000002dc [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:10, Info CSI 00000341 [SR] Verify complete
2016-10-03 19:25:10, Info CSI 00000342 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:10, Info CSI 00000343 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:16, Info CSI 000003a8 [SR] Verify complete
2016-10-03 19:25:16, Info CSI 000003a9 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:16, Info CSI 000003aa [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:20, Info CSI 00000410 [SR] Verify complete
2016-10-03 19:25:20, Info CSI 00000411 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:20, Info CSI 00000412 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:26, Info CSI 00000477 [SR] Verify complete
2016-10-03 19:25:26, Info CSI 00000478 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:26, Info CSI 00000479 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:30, Info CSI 000004de [SR] Verify complete
2016-10-03 19:25:30, Info CSI 000004df [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:30, Info CSI 000004e0 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:34, Info CSI 00000545 [SR] Verify complete
2016-10-03 19:25:34, Info CSI 00000546 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:34, Info CSI 00000547 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:38, Info CSI 000005ac [SR] Verify complete
2016-10-03 19:25:38, Info CSI 000005ad [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:38, Info CSI 000005ae [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:42, Info CSI 00000613 [SR] Verify complete
2016-10-03 19:25:42, Info CSI 00000614 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:42, Info CSI 00000615 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:46, Info CSI 0000067b [SR] Verify complete
2016-10-03 19:25:46, Info CSI 0000067c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:46, Info CSI 0000067d [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:51, Info CSI 000006e4 [SR] Verify complete
2016-10-03 19:25:51, Info CSI 000006e5 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:51, Info CSI 000006e6 [SR] Beginning Verify and Repair transaction
2016-10-03 19:25:55, Info CSI 0000074b [SR] Verify complete
2016-10-03 19:25:55, Info CSI 0000074c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:25:55, Info CSI 0000074d [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:01, Info CSI 000007b2 [SR] Verify complete
2016-10-03 19:26:01, Info CSI 000007b3 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:01, Info CSI 000007b4 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:04, Info CSI 00000819 [SR] Verify complete
2016-10-03 19:26:04, Info CSI 0000081a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:04, Info CSI 0000081b [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:27, Info CSI 00000881 [SR] Verify complete
2016-10-03 19:26:27, Info CSI 00000882 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:27, Info CSI 00000883 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:30, Info CSI 000008e8 [SR] Verify complete
2016-10-03 19:26:30, Info CSI 000008e9 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:30, Info CSI 000008ea [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:34, Info CSI 00000950 [SR] Verify complete
2016-10-03 19:26:34, Info CSI 00000951 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:34, Info CSI 00000952 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:38, Info CSI 000009b7 [SR] Verify complete
2016-10-03 19:26:38, Info CSI 000009b8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:38, Info CSI 000009b9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:45, Info CSI 00000a1e [SR] Verify complete
2016-10-03 19:26:45, Info CSI 00000a1f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:45, Info CSI 00000a20 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:49, Info CSI 00000a85 [SR] Verify complete
2016-10-03 19:26:49, Info CSI 00000a86 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:49, Info CSI 00000a87 [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:53, Info CSI 00000aec [SR] Verify complete
2016-10-03 19:26:53, Info CSI 00000aed [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:53, Info CSI 00000aee [SR] Beginning Verify and Repair transaction
2016-10-03 19:26:56, Info CSI 00000b53 [SR] Verify complete
2016-10-03 19:26:57, Info CSI 00000b54 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:26:57, Info CSI 00000b55 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:01, Info CSI 00000bba [SR] Verify complete
2016-10-03 19:27:01, Info CSI 00000bbb [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:01, Info CSI 00000bbc [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:05, Info CSI 00000c21 [SR] Verify complete
2016-10-03 19:27:05, Info CSI 00000c22 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:05, Info CSI 00000c23 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:07, Info CSI 00000c88 [SR] Verify complete
2016-10-03 19:27:08, Info CSI 00000c89 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:08, Info CSI 00000c8a [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:10, Info CSI 00000cef [SR] Verify complete
2016-10-03 19:27:11, Info CSI 00000cf0 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:11, Info CSI 00000cf1 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:14, Info CSI 00000d57 [SR] Verify complete
2016-10-03 19:27:14, Info CSI 00000d58 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:14, Info CSI 00000d59 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:17, Info CSI 00000dc5 [SR] Verify complete
2016-10-03 19:27:18, Info CSI 00000dc6 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:18, Info CSI 00000dc7 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:20, Info CSI 00000e2c [SR] Verify complete
2016-10-03 19:27:20, Info CSI 00000e2d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:20, Info CSI 00000e2e [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:22, Info CSI 00000e93 [SR] Verify complete
2016-10-03 19:27:22, Info CSI 00000e94 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:22, Info CSI 00000e95 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:25, Info CSI 00000f01 [SR] Verify complete
2016-10-03 19:27:25, Info CSI 00000f02 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:25, Info CSI 00000f03 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:27, Info CSI 00000f6b [SR] Verify complete
2016-10-03 19:27:27, Info CSI 00000f6c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:27, Info CSI 00000f6d [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:32, Info CSI 00000fd5 [SR] Verify complete
2016-10-03 19:27:32, Info CSI 00000fd6 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:32, Info CSI 00000fd7 [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:41, Info CSI 00001058 [SR] Verify complete
2016-10-03 19:27:41, Info CSI 00001059 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:41, Info CSI 0000105a [SR] Beginning Verify and Repair transaction
2016-10-03 19:27:50, Info CSI 000010c7 [SR] Verify complete
2016-10-03 19:27:50, Info CSI 000010c8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:27:50, Info CSI 000010c9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:16, Info CSI 00001136 [SR] Verify complete
2016-10-03 19:28:16, Info CSI 00001137 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:16, Info CSI 00001138 [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:22, Info CSI 000011ab [SR] Verify complete
2016-10-03 19:28:22, Info CSI 000011ac [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:22, Info CSI 000011ad [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:31, Info CSI 00001215 [SR] Verify complete
2016-10-03 19:28:31, Info CSI 00001216 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:31, Info CSI 00001217 [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:37, Info CSI 0000127c [SR] Verify complete
2016-10-03 19:28:37, Info CSI 0000127d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:37, Info CSI 0000127e [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:41, Info CSI 000012e3 [SR] Verify complete
2016-10-03 19:28:41, Info CSI 000012e4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:41, Info CSI 000012e5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:48, Info CSI 0000134c [SR] Verify complete
2016-10-03 19:28:48, Info CSI 0000134d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:28:48, Info CSI 0000134e [SR] Beginning Verify and Repair transaction
2016-10-03 19:28:59, Info CSI 000013b5 [SR] Verify complete
2016-10-03 19:29:00, Info CSI 000013b6 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:00, Info CSI 000013b7 [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:10, Info CSI 00001478 [SR] Verify complete
2016-10-03 19:29:10, Info CSI 00001479 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:10, Info CSI 0000147a [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:21, Info CSI 00001556 [SR] Verify complete
2016-10-03 19:29:21, Info CSI 00001557 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:21, Info CSI 00001558 [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:28, Info CSI 000015cb [SR] Verify complete
2016-10-03 19:29:28, Info CSI 000015cc [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:28, Info CSI 000015cd [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:35, Info CSI 0000163e [SR] Verify complete
2016-10-03 19:29:36, Info CSI 0000163f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:36, Info CSI 00001640 [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:44, Info CSI 000016c3 [SR] Verify complete
2016-10-03 19:29:44, Info CSI 000016c4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:44, Info CSI 000016c5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:51, Info CSI 0000174d [SR] Verify complete
2016-10-03 19:29:51, Info CSI 0000174e [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:51, Info CSI 0000174f [SR] Beginning Verify and Repair transaction
2016-10-03 19:29:58, Info CSI 000017ba [SR] Verify complete
2016-10-03 19:29:58, Info CSI 000017bb [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:29:58, Info CSI 000017bc [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:03, Info CSI 00001826 [SR] Verify complete
2016-10-03 19:30:04, Info CSI 00001827 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:04, Info CSI 00001828 [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:11, Info CSI 00001891 [SR] Verify complete
2016-10-03 19:30:11, Info CSI 00001892 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:11, Info CSI 00001893 [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:18, Info CSI 0000190a [SR] Verify complete
2016-10-03 19:30:18, Info CSI 0000190b [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:18, Info CSI 0000190c [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:27, Info CSI 0000199a [SR] Verify complete
2016-10-03 19:30:27, Info CSI 0000199b [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:27, Info CSI 0000199c [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:37, Info CSI 00001a39 [SR] Verify complete
2016-10-03 19:30:37, Info CSI 00001a3a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:37, Info CSI 00001a3b [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:52, Info CSI 00001b19 [SR] Verify complete
2016-10-03 19:30:52, Info CSI 00001b1a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:52, Info CSI 00001b1b [SR] Beginning Verify and Repair transaction
2016-10-03 19:30:58, Info CSI 00001b8d [SR] Verify complete
2016-10-03 19:30:58, Info CSI 00001b8e [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:30:58, Info CSI 00001b8f [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:04, Info CSI 00001bfc [SR] Verify complete
2016-10-03 19:31:04, Info CSI 00001bfd [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:04, Info CSI 00001bfe [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:12, Info CSI 00001ca7 [SR] Verify complete
2016-10-03 19:31:12, Info CSI 00001ca8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:12, Info CSI 00001ca9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:21, Info CSI 00001d35 [SR] Verify complete
2016-10-03 19:31:22, Info CSI 00001d36 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:22, Info CSI 00001d37 [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:28, Info CSI 00001d9c [SR] Verify complete
2016-10-03 19:31:28, Info CSI 00001d9d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:28, Info CSI 00001d9e [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:33, Info CSI 00001e08 [SR] Verify complete
2016-10-03 19:31:33, Info CSI 00001e09 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:33, Info CSI 00001e0a [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:40, Info CSI 00001e7b [SR] Verify complete
2016-10-03 19:31:40, Info CSI 00001e7c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:40, Info CSI 00001e7d [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:47, Info CSI 00001eee [SR] Verify complete
2016-10-03 19:31:47, Info CSI 00001eef [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:47, Info CSI 00001ef0 [SR] Beginning Verify and Repair transaction
2016-10-03 19:31:56, Info CSI 00001f60 [SR] Verify complete
2016-10-03 19:31:56, Info CSI 00001f61 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:31:56, Info CSI 00001f62 [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:08, Info CSI 00001fe8 [SR] Verify complete
2016-10-03 19:32:08, Info CSI 00001fe9 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:08, Info CSI 00001fea [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:13, Info CSI 00002058 [SR] Verify complete
2016-10-03 19:32:13, Info CSI 00002059 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:13, Info CSI 0000205a [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:23, Info CSI 00002113 [SR] Verify complete
2016-10-03 19:32:23, Info CSI 00002114 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:23, Info CSI 00002115 [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:33, Info CSI 00002192 [SR] Verify complete
2016-10-03 19:32:33, Info CSI 00002193 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:33, Info CSI 00002194 [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:43, Info CSI 00002214 [SR] Verify complete
2016-10-03 19:32:44, Info CSI 00002215 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:44, Info CSI 00002216 [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:49, Info CSI 00002282 [SR] Verify complete
2016-10-03 19:32:49, Info CSI 00002283 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:49, Info CSI 00002284 [SR] Beginning Verify and Repair transaction
2016-10-03 19:32:59, Info CSI 000022f3 [SR] Verify complete
2016-10-03 19:32:59, Info CSI 000022f4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:32:59, Info CSI 000022f5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:16, Info CSI 000023d3 [SR] Verify complete
2016-10-03 19:33:16, Info CSI 000023d4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:16, Info CSI 000023d5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:22, Info CSI 00002442 [SR] Verify complete
2016-10-03 19:33:22, Info CSI 00002443 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:22, Info CSI 00002444 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:27, Info CSI 000024ac [SR] Verify complete
2016-10-03 19:33:27, Info CSI 000024ad [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:27, Info CSI 000024ae [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:33, Info CSI 00002526 [SR] Verify complete
2016-10-03 19:33:33, Info CSI 00002527 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:33, Info CSI 00002528 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:41, Info CSI 000025c7 [SR] Verify complete
2016-10-03 19:33:41, Info CSI 000025c8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:41, Info CSI 000025c9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:47, Info CSI 0000262f [SR] Verify complete
2016-10-03 19:33:47, Info CSI 00002630 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:47, Info CSI 00002631 [SR] Beginning Verify and Repair transaction
2016-10-03 19:33:54, Info CSI 000026b1 [SR] Verify complete
2016-10-03 19:33:54, Info CSI 000026b2 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:33:54, Info CSI 000026b3 [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:00, Info CSI 00002729 [SR] Verify complete
2016-10-03 19:34:00, Info CSI 0000272a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:00, Info CSI 0000272b [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:07, Info CSI 00002798 [SR] Verify complete
2016-10-03 19:34:07, Info CSI 00002799 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:07, Info CSI 0000279a [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:16, Info CSI 0000282e [SR] Verify complete
2016-10-03 19:34:16, Info CSI 0000282f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:16, Info CSI 00002830 [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:22, Info CSI 000028ac [SR] Verify complete
2016-10-03 19:34:22, Info CSI 000028ad [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:22, Info CSI 000028ae [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:28, Info CSI 0000291c [SR] Verify complete
2016-10-03 19:34:29, Info CSI 0000291d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:29, Info CSI 0000291e [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:34, Info CSI 0000298e [SR] Verify complete
2016-10-03 19:34:34, Info CSI 0000298f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:34, Info CSI 00002990 [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:41, Info CSI 00002a08 [SR] Verify complete
2016-10-03 19:34:41, Info CSI 00002a09 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:41, Info CSI 00002a0a [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:46, Info CSI 00002a77 [SR] Verify complete
2016-10-03 19:34:46, Info CSI 00002a78 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:46, Info CSI 00002a79 [SR] Beginning Verify and Repair transaction
2016-10-03 19:34:51, Info CSI 00002ae6 [SR] Verify complete
2016-10-03 19:34:51, Info CSI 00002ae7 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:34:51, Info CSI 00002ae8 [SR] Beginning Verify and Repair transaction
2016-10-03 19:35:02, Info CSI 00002b64 [SR] Verify complete
2016-10-03 19:35:03, Info CSI 00002b65 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:35:03, Info CSI 00002b66 [SR] Beginning Verify and Repair transaction
2016-10-03 19:35:30, Info CSI 00002be4 [SR] Verify complete
2016-10-03 19:35:30, Info CSI 00002be5 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:35:30, Info CSI 00002be6 [SR] Beginning Verify and Repair transaction
2016-10-03 19:35:37, Info CSI 00002c53 [SR] Verify complete
2016-10-03 19:35:37, Info CSI 00002c54 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:35:37, Info CSI 00002c55 [SR] Beginning Verify and Repair transaction
2016-10-03 19:35:50, Info CSI 00002cd0 [SR] Verify complete
2016-10-03 19:35:50, Info CSI 00002cd1 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:35:50, Info CSI 00002cd2 [SR] Beginning Verify and Repair transaction
2016-10-03 19:35:59, Info CSI 00002d7f [SR] Verify complete
2016-10-03 19:35:59, Info CSI 00002d80 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:35:59, Info CSI 00002d81 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:09, Info CSI 00002df1 [SR] Verify complete
2016-10-03 19:36:09, Info CSI 00002df2 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:09, Info CSI 00002df3 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:15, Info CSI 00002e60 [SR] Verify complete
2016-10-03 19:36:15, Info CSI 00002e61 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:15, Info CSI 00002e62 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:22, Info CSI 00002ed4 [SR] Verify complete
2016-10-03 19:36:22, Info CSI 00002ed5 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:22, Info CSI 00002ed6 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:29, Info CSI 00002f44 [SR] Verify complete
2016-10-03 19:36:29, Info CSI 00002f45 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:29, Info CSI 00002f46 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:36, Info CSI 00002fb5 [SR] Verify complete
2016-10-03 19:36:36, Info CSI 00002fb6 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:36, Info CSI 00002fb7 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:42, Info CSI 00003023 [SR] Verify complete
2016-10-03 19:36:42, Info CSI 00003024 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:42, Info CSI 00003025 [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:50, Info CSI 00003099 [SR] Verify complete
2016-10-03 19:36:51, Info CSI 0000309a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:51, Info CSI 0000309b [SR] Beginning Verify and Repair transaction
2016-10-03 19:36:57, Info CSI 00003114 [SR] Verify complete
2016-10-03 19:36:57, Info CSI 00003115 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:36:57, Info CSI 00003116 [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:03, Info CSI 0000318b [SR] Verify complete
2016-10-03 19:37:04, Info CSI 0000318c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:04, Info CSI 0000318d [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:08, Info CSI 000031ff [SR] Verify complete
2016-10-03 19:37:08, Info CSI 00003200 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:08, Info CSI 00003201 [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:13, Info CSI 00003275 [SR] Verify complete
2016-10-03 19:37:13, Info CSI 00003276 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:13, Info CSI 00003277 [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:20, Info CSI 000032e0 [SR] Verify complete
2016-10-03 19:37:20, Info CSI 000032e1 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:20, Info CSI 000032e2 [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:27, Info CSI 00003348 [SR] Verify complete
2016-10-03 19:37:27, Info CSI 00003349 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:27, Info CSI 0000334a [SR] Beginning Verify and Repair transaction
2016-10-03 19:37:55, Info CSI 000033be [SR] Verify complete
2016-10-03 19:37:55, Info CSI 000033bf [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:37:55, Info CSI 000033c0 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:10, Info CSI 000034c3 [SR] Verify complete
2016-10-03 19:38:11, Info CSI 000034c4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:11, Info CSI 000034c5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:16, Info CSI 00003530 [SR] Verify complete
2016-10-03 19:38:16, Info CSI 00003531 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:16, Info CSI 00003532 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:25, Info CSI 000035b6 [SR] Verify complete
2016-10-03 19:38:25, Info CSI 000035b7 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:25, Info CSI 000035b8 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:28, Info CSI 0000361d [SR] Verify complete
2016-10-03 19:38:28, Info CSI 0000361e [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:28, Info CSI 0000361f [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:35, Info CSI 00003684 [SR] Verify complete
2016-10-03 19:38:35, Info CSI 00003685 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:35, Info CSI 00003686 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:40, Info CSI 000036ed [SR] Verify complete
2016-10-03 19:38:40, Info CSI 000036ee [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:40, Info CSI 000036ef [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:45, Info CSI 00003754 [SR] Verify complete
2016-10-03 19:38:46, Info CSI 00003755 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:46, Info CSI 00003756 [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:52, Info CSI 000037bc [SR] Verify complete
2016-10-03 19:38:52, Info CSI 000037bd [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:52, Info CSI 000037be [SR] Beginning Verify and Repair transaction
2016-10-03 19:38:56, Info CSI 00003823 [SR] Verify complete
2016-10-03 19:38:56, Info CSI 00003824 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:38:56, Info CSI 00003825 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:01, Info CSI 0000388b [SR] Verify complete
2016-10-03 19:39:01, Info CSI 0000388c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:01, Info CSI 0000388d [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:05, Info CSI 000038f2 [SR] Verify complete
2016-10-03 19:39:05, Info CSI 000038f3 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:05, Info CSI 000038f4 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:09, Info CSI 00003959 [SR] Verify complete
2016-10-03 19:39:09, Info CSI 0000395a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:09, Info CSI 0000395b [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:14, Info CSI 000039c2 [SR] Verify complete
2016-10-03 19:39:14, Info CSI 000039c3 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:14, Info CSI 000039c4 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:18, Info CSI 00003a4f [SR] Verify complete
2016-10-03 19:39:19, Info CSI 00003a50 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:19, Info CSI 00003a51 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:24, Info CSI 00003ab6 [SR] Verify complete
2016-10-03 19:39:24, Info CSI 00003ab7 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:24, Info CSI 00003ab8 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:30, Info CSI 00003b25 [SR] Verify complete
2016-10-03 19:39:31, Info CSI 00003b26 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:31, Info CSI 00003b27 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:44, Info CSI 00003b8c [SR] Verify complete
2016-10-03 19:39:44, Info CSI 00003b8d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:44, Info CSI 00003b8e [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:49, Info CSI 00003bf3 [SR] Verify complete
2016-10-03 19:39:50, Info CSI 00003bf4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:50, Info CSI 00003bf5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:55, Info CSI 00003c5b [SR] Verify complete
2016-10-03 19:39:55, Info CSI 00003c5c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:55, Info CSI 00003c5d [SR] Beginning Verify and Repair transaction
2016-10-03 19:39:59, Info CSI 00003cc2 [SR] Verify complete
2016-10-03 19:39:59, Info CSI 00003cc3 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:39:59, Info CSI 00003cc4 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:09, Info CSI 00003d2c [SR] Verify complete
2016-10-03 19:40:10, Info CSI 00003d2d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:10, Info CSI 00003d2e [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:18, Info CSI 00003da2 [SR] Verify complete
2016-10-03 19:40:18, Info CSI 00003da3 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:18, Info CSI 00003da4 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:23, Info CSI 00003e09 [SR] Verify complete
2016-10-03 19:40:23, Info CSI 00003e0a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:23, Info CSI 00003e0b [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:27, Info CSI 00003e70 [SR] Verify complete
2016-10-03 19:40:27, Info CSI 00003e71 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:27, Info CSI 00003e72 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:32, Info CSI 00003ee6 [SR] Verify complete
2016-10-03 19:40:32, Info CSI 00003ee7 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:32, Info CSI 00003ee8 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:37, Info CSI 00003f57 [SR] Verify complete
2016-10-03 19:40:38, Info CSI 00003f58 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:38, Info CSI 00003f59 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:42, Info CSI 00003fbe [SR] Verify complete
2016-10-03 19:40:42, Info CSI 00003fbf [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:42, Info CSI 00003fc0 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:46, Info CSI 00004025 [SR] Verify complete
2016-10-03 19:40:46, Info CSI 00004026 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:46, Info CSI 00004027 [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:50, Info CSI 0000408c [SR] Verify complete
2016-10-03 19:40:50, Info CSI 0000408d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:50, Info CSI 0000408e [SR] Beginning Verify and Repair transaction
2016-10-03 19:40:55, Info CSI 000040f3 [SR] Verify complete
2016-10-03 19:40:56, Info CSI 000040f4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:40:56, Info CSI 000040f5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:04, Info CSI 0000416d [SR] Verify complete
2016-10-03 19:41:04, Info CSI 0000416e [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:04, Info CSI 0000416f [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:10, Info CSI 000041dc [SR] Verify complete
2016-10-03 19:41:10, Info CSI 000041dd [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:10, Info CSI 000041de [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:17, Info CSI 0000425d [SR] Verify complete
2016-10-03 19:41:18, Info CSI 0000425e [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:18, Info CSI 0000425f [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:24, Info CSI 000042d0 [SR] Verify complete
2016-10-03 19:41:24, Info CSI 000042d1 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:24, Info CSI 000042d2 [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:32, Info CSI 0000434e [SR] Verify complete
2016-10-03 19:41:32, Info CSI 0000434f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:32, Info CSI 00004350 [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:41, Info CSI 000043c1 [SR] Verify complete
2016-10-03 19:41:41, Info CSI 000043c2 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:41, Info CSI 000043c3 [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:45, Info CSI 0000442b [SR] Verify complete
2016-10-03 19:41:45, Info CSI 0000442c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:45, Info CSI 0000442d [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:48, Info CSI 00004492 [SR] Verify complete
2016-10-03 19:41:49, Info CSI 00004493 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:49, Info CSI 00004494 [SR] Beginning Verify and Repair transaction
2016-10-03 19:41:54, Info CSI 00004508 [SR] Verify complete
2016-10-03 19:41:54, Info CSI 00004509 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:41:54, Info CSI 0000450a [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:05, Info CSI 00004593 [SR] Verify complete
2016-10-03 19:42:05, Info CSI 00004594 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:05, Info CSI 00004595 [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:15, Info CSI 00004617 [SR] Verify complete
2016-10-03 19:42:16, Info CSI 00004618 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:16, Info CSI 00004619 [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:25, Info CSI 000046b1 [SR] Verify complete
2016-10-03 19:42:25, Info CSI 000046b2 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:25, Info CSI 000046b3 [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:34, Info CSI 00004739 [SR] Verify complete
2016-10-03 19:42:34, Info CSI 0000473a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:34, Info CSI 0000473b [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:41, Info CSI 000047b0 [SR] Verify complete
2016-10-03 19:42:41, Info CSI 000047b1 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:41, Info CSI 000047b2 [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:49, Info CSI 0000482c [SR] Verify complete
2016-10-03 19:42:49, Info CSI 0000482d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:49, Info CSI 0000482e [SR] Beginning Verify and Repair transaction
2016-10-03 19:42:57, Info CSI 000048a3 [SR] Verify complete
2016-10-03 19:42:57, Info CSI 000048a4 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:42:57, Info CSI 000048a5 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:05, Info CSI 0000491f [SR] Verify complete
2016-10-03 19:43:05, Info CSI 00004920 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:05, Info CSI 00004921 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:15, Info CSI 000049a0 [SR] Verify complete
2016-10-03 19:43:15, Info CSI 000049a1 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:15, Info CSI 000049a2 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:23, Info CSI 00004a25 [SR] Verify complete
2016-10-03 19:43:23, Info CSI 00004a26 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:23, Info CSI 00004a27 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:30, Info CSI 00004a92 [SR] Verify complete
2016-10-03 19:43:30, Info CSI 00004a93 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:30, Info CSI 00004a94 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:43, Info CSI 00004bc4 [SR] Verify complete
2016-10-03 19:43:44, Info CSI 00004bc5 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:44, Info CSI 00004bc6 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:52, Info CSI 00004c34 [SR] Verify complete
2016-10-03 19:43:52, Info CSI 00004c35 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:52, Info CSI 00004c36 [SR] Beginning Verify and Repair transaction
2016-10-03 19:43:58, Info CSI 00004c9b [SR] Verify complete
2016-10-03 19:43:58, Info CSI 00004c9c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:43:58, Info CSI 00004c9d [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:03, Info CSI 00004d06 [SR] Verify complete
2016-10-03 19:44:04, Info CSI 00004d07 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:04, Info CSI 00004d08 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:11, Info CSI 00004d87 [SR] Verify complete
2016-10-03 19:44:11, Info CSI 00004d88 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:11, Info CSI 00004d89 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:19, Info CSI 00004e20 [SR] Verify complete
2016-10-03 19:44:19, Info CSI 00004e21 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:19, Info CSI 00004e22 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:25, Info CSI 00004e89 [SR] Verify complete
2016-10-03 19:44:25, Info CSI 00004e8a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:25, Info CSI 00004e8b [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:31, Info CSI 00004f00 [SR] Verify complete
2016-10-03 19:44:31, Info CSI 00004f01 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:31, Info CSI 00004f02 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:36, Info CSI 00004f6e [SR] Verify complete
2016-10-03 19:44:37, Info CSI 00004f6f [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:37, Info CSI 00004f70 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:46, Info CSI 0000500f [SR] Verify complete
2016-10-03 19:44:46, Info CSI 00005010 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:46, Info CSI 00005011 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:54, Info CSI 00005092 [SR] Verify complete
2016-10-03 19:44:54, Info CSI 00005093 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:54, Info CSI 00005094 [SR] Beginning Verify and Repair transaction
2016-10-03 19:44:58, Info CSI 000050f9 [SR] Verify complete
2016-10-03 19:44:58, Info CSI 000050fa [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:44:58, Info CSI 000050fb [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:25, Info CSI 00005171 [SR] Verify complete
2016-10-03 19:45:25, Info CSI 00005172 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:25, Info CSI 00005173 [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:31, Info CSI 000051df [SR] Verify complete
2016-10-03 19:45:31, Info CSI 000051e0 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:31, Info CSI 000051e1 [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:36, Info CSI 00005249 [SR] Verify complete
2016-10-03 19:45:36, Info CSI 0000524a [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:36, Info CSI 0000524b [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:42, Info CSI 000052b7 [SR] Verify complete
2016-10-03 19:45:43, Info CSI 000052b8 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:43, Info CSI 000052b9 [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:48, Info CSI 0000534c [SR] Verify complete
2016-10-03 19:45:48, Info CSI 0000534d [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:48, Info CSI 0000534e [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:54, Info CSI 000053b9 [SR] Verify complete
2016-10-03 19:45:54, Info CSI 000053ba [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:54, Info CSI 000053bb [SR] Beginning Verify and Repair transaction
2016-10-03 19:45:59, Info CSI 00005426 [SR] Verify complete
2016-10-03 19:45:59, Info CSI 00005427 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:45:59, Info CSI 00005428 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:03, Info CSI 00005492 [SR] Verify complete
2016-10-03 19:46:04, Info CSI 00005493 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:04, Info CSI 00005494 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:10, Info CSI 00005501 [SR] Verify complete
2016-10-03 19:46:10, Info CSI 00005502 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:10, Info CSI 00005503 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:16, Info CSI 0000556f [SR] Verify complete
2016-10-03 19:46:16, Info CSI 00005570 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:16, Info CSI 00005571 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:22, Info CSI 000055d8 [SR] Verify complete
2016-10-03 19:46:22, Info CSI 000055d9 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:22, Info CSI 000055da [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:26, Info CSI 00005642 [SR] Verify complete
2016-10-03 19:46:26, Info CSI 00005643 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:26, Info CSI 00005644 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:31, Info CSI 000056af [SR] Verify complete
2016-10-03 19:46:31, Info CSI 000056b0 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:31, Info CSI 000056b1 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:39, Info CSI 0000572b [SR] Verify complete
2016-10-03 19:46:39, Info CSI 0000572c [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:39, Info CSI 0000572d [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:45, Info CSI 00005794 [SR] Verify complete
2016-10-03 19:46:45, Info CSI 00005795 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:45, Info CSI 00005796 [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:51, Info CSI 000057fc [SR] Verify complete
2016-10-03 19:46:51, Info CSI 000057fd [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:51, Info CSI 000057fe [SR] Beginning Verify and Repair transaction
2016-10-03 19:46:56, Info CSI 00005863 [SR] Verify complete
2016-10-03 19:46:57, Info CSI 00005864 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:46:57, Info CSI 00005865 [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:22, Info CSI 000058ca [SR] Verify complete
2016-10-03 19:47:22, Info CSI 000058cb [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:47:22, Info CSI 000058cc [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:25, Info CSI 00005932 [SR] Verify complete
2016-10-03 19:47:26, Info CSI 00005933 [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:47:26, Info CSI 00005934 [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:30, Info CSI 0000599a [SR] Verify complete
2016-10-03 19:47:31, Info CSI 0000599b [SR] Verifying 100 (0x0000000000000064) components
2016-10-03 19:47:31, Info CSI 0000599c [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:37, Info CSI 00005a01 [SR] Verify complete
2016-10-03 19:47:37, Info CSI 00005a02 [SR] Verifying 25 (0x0000000000000019) components
2016-10-03 19:47:37, Info CSI 00005a03 [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:38, Info CSI 00005a1d [SR] Verify complete
2016-10-03 19:47:38, Info CSI 00005a1e [SR] Repairing 0 components
2016-10-03 19:47:38, Info CSI 00005a1f [SR] Beginning Verify and Repair transaction
2016-10-03 19:47:38, Info CSI 00005a20 [SR] Repair complete

#5 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 03 October 2016 - 08:24 PM

FRST.txt


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-10-2016
Ran by Larry (administrator) on HP (03-10-2016 20:29:30)
Running from C:\Users\Larry\Desktop
Loaded Profiles: Larry (Available Profiles: Larry)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\Beats64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Tweaking.com) C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [XboxStat] =&gt; C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] =&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] =&gt; C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [SysTrayApp] =&gt; C:\Program Files\IDT\WDM\sttray64.exe
HKLM\...\Run: [BeatsOSDApp] =&gt; C:\Program Files\IDT\WDM\beats64.exe [37888 2012-08-10] (Hewlett-Packard )
HKLM-x32\...\Run: [AvastUI.exe] =&gt; C:\Program Files\AVAST Software\Avast\AvastUI.exe [9107616 2016-09-12] (AVAST Software)
HKLM-x32\...\Run: [amd_dc_opt] =&gt; C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [Raptr] =&gt; C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] =&gt; C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] =&gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Run: [DAEMON Tools Lite] =&gt; C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Run: [AppEx Accelerator UI] =&gt; C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [488640 2015-04-06] (AppEx Networks Corporation)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\RunOnce: [Uninstall C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] =&gt; C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
ShellIconOverlayIdentifiers: [ SkyDrive1] -&gt; {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -&gt; {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -&gt; {BBACC218-34EA-4666-9D7A-C78F2274A524} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -&gt; {472083B0-C522-11CF-8763-00608CC02F24} =&gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-08-21] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -&gt; {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -&gt; {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -&gt; {BBACC218-34EA-4666-9D7A-C78F2274A524} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
Startup: C:\Users\Larry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2014-08-28]
ShortcutTarget: Dropbox.lnk -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{b7261c21-3425-49b9-b049-66b0245b6ca2}: [DhcpNameServer] 209.222.18.222 209.222.18.218

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.msn.com/HPDSK13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK13/1
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK13/1
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPDSK13/1
SearchScopes: HKLM -&gt; {93D29D7E-86C6-464C-9514-BDAB2497FAA9} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&amp;tag=hp-us1-vsb-20&amp;link%5Fcode=qs&amp;index=aps&amp;field-keywords={searchTerms}
SearchScopes: HKLM -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
SearchScopes: HKLM-x32 -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
SearchScopes: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001 -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
BHO: Groove GFS Browser Helper -&gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -&gt; C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -&gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -&gt; C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-09-08] (Oracle Corporation)
BHO: Office Document Cache Handler -&gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} -&gt; C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -&gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} -&gt; C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-09-08] (Oracle Corporation)
BHO: HP Network Check Helper -&gt; {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21] (HP Inc.)
BHO-x32: Groove GFS Browser Helper -&gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -&gt; C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -&gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-09-08] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -&gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} -&gt; C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -&gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-09-08] (Oracle Corporation)
BHO-x32: HP Network Check Helper -&gt; {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File

FireFox:
========
FF ProfilePath: C:\Users\Larry\AppData\Roaming\Mozilla\Firefox\Profiles\w0fu81w9.default [2016-10-03]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; Google
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; Google
FF DefaultSearchUrl: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt;
FF NetworkProxy: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; type", 0
FF Extension: (NoScript) - C:\Users\Larry\AppData\Roaming\Mozilla\Firefox\Profiles\w0fu81w9.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-08-10]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-08-21]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-08-21]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Plugin: @adobe.com/FlashPlayer -&gt; C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll [2016-09-23] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.101.2 -&gt; C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-09-08] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.101.2 -&gt; C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-09-08] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-23] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.3.2 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-09-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-09-08] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -&gt; C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -&gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -&gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
FF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3949817429-3550067080-3212671863-1001: ubisoft.com/uplaypc -&gt; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2016-02-21] ()

Chrome:
=======
CHR StartupUrls: Default -&gt; "hxxps://www.google.com/?trackid=sp-006"
CHR DefaultSearchURL: Default -&gt; hxxps://www.google.de/search?q={searchTerms}?trackid=sp-006
CHR DefaultSuggestURL: Default -&gt; hxxps://www.google.com/complete/search?client=chrome&amp;q={searchTerms}
CHR Profile: C:\Users\Larry\AppData\Local\Google\Chrome\User Data\Default [2016-09-08]
CHR Extension: (Google Wallet) - C:\Users\Larry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-17]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeActiveFileMonitor12.0; C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe [181152 2013-09-25] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2159320 2016-08-22] (Adobe Systems, Incorporated)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-21] (AVAST Software)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
R2 HPConnectedRemote; c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35744 2012-10-12] (Hewlett-Packard)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1903472 2015-01-01] (Electronic Arts)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2016-09-07] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [229056 2015-04-03] (AppEx Networks Corporation)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-08-21] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-08-21] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-08-21] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-08-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-21] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-22] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-08-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-21] (AVAST Software)
S3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-06-16] (Broadcom Corporation.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-08-16] (DT Soft Ltd)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2554528 2015-06-12] (MediaTek Inc.)
R0 PxHlpa64; C:\Windows\System32\drivers\PxHlpa64.sys [56336 2013-07-19] (Corel Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [216064 2015-10-30] (Microsoft Corporation)
S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-16] (Anchorfree Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2016-10-01] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-03 20:29 - 2016-10-03 20:30 - 00020464 _____ C:\Users\Larry\Desktop\FRST.txt
2016-10-03 19:54 - 2016-10-03 19:54 - 00003756 _____ C:\WINDOWS\System32\Tasks\Tweaking.com - Windows Repair Tray Icon
2016-10-03 19:54 - 2016-10-03 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2016-10-03 19:54 - 2016-10-03 19:54 - 00000000 ____D C:\Program Files (x86)\Tweaking.com
2016-10-03 19:53 - 2016-10-03 19:54 - 00188941 _____ C:\WINDOWS\Tweaking.com - Windows Repair Setup Log.txt
2016-10-03 19:49 - 2016-10-03 19:49 - 00058485 _____ C:\Users\Larry\Desktop\sfcdetails.txt
2016-10-03 19:11 - 2016-10-03 19:12 - 00002656 _____ C:\Users\Larry\Desktop\Fixlog.txt
2016-10-03 19:10 - 2016-10-03 19:10 - 00000000 ____D C:\Users\Larry\Desktop\FRST-OlderVersion
2016-10-03 13:16 - 2016-10-03 13:16 - 00000000 ____D C:\Users\Larry\AppData\Local\ActiveSync
2016-10-01 19:27 - 2016-10-03 19:10 - 02404864 _____ (Farbar) C:\Users\Larry\Desktop\FRST64.exe
2016-10-01 16:49 - 2016-10-01 16:49 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-10-01 16:47 - 2016-10-01 16:47 - 00000901 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2016-10-01 16:47 - 2016-10-01 16:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2016-10-01 16:46 - 2016-10-01 16:47 - 00000000 ____D C:\Program Files\RogueKiller
2016-10-01 16:46 - 2016-10-01 16:46 - 00000000 ____D C:\ProgramData\RogueKiller
2016-10-01 16:45 - 2016-10-01 16:46 - 33579072 _____ (Adlice Software ) C:\Users\Larry\Downloads\setup.exe
2016-09-29 13:16 - 2016-09-29 13:16 - 00000222 _____ C:\Users\Larry\Desktop\Ys Origin.url
2016-09-28 17:57 - 2016-09-28 17:57 - 00000221 _____ C:\Users\Larry\Desktop\Chantelise.url
2016-09-24 19:54 - 2016-09-24 19:54 - 59955885 _____ C:\Users\Larry\Downloads\installer_win3.exe
2016-09-23 15:45 - 2016-09-27 09:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-19 13:42 - 2016-09-19 13:42 - 03861056 _____ C:\Users\Larry\Desktop\adwcleaner_6.020.exe
2016-09-19 07:02 - 2016-10-03 19:15 - 00000338 _____ C:\WINDOWS\Tasks\HPCeeScheduleForLarry.job
2016-09-19 07:02 - 2016-10-03 11:47 - 00003230 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForLarry
2016-09-16 21:41 - 2016-09-16 21:41 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 01098640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 00277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-09-16 17:19 - 2016-09-07 01:26 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01152320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 00588320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-09-16 17:19 - 2016-09-07 01:25 - 02607336 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-09-16 17:19 - 2016-09-07 01:23 - 01603224 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 01040792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-09-16 17:19 - 2016-09-07 01:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-09-16 17:19 - 2016-09-07 01:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-16 17:19 - 2016-09-07 00:48 - 22379520 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-16 17:19 - 2016-09-07 00:43 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-16 17:19 - 2016-09-07 00:39 - 01567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 24611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-16 17:19 - 2016-09-07 00:34 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-16 17:19 - 2016-09-07 00:32 - 00643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2016-09-16 17:19 - 2016-09-07 00:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-16 17:19 - 2016-09-07 00:30 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-16 17:19 - 2016-09-07 00:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-16 17:19 - 2016-09-07 00:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-16 17:19 - 2016-09-07 00:27 - 01743872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-16 17:19 - 2016-09-07 00:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-16 17:19 - 2016-09-07 00:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 13392384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-09-16 17:19 - 2016-09-07 00:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Pimstore.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-09-16 17:19 - 2016-09-07 00:24 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-16 17:19 - 2016-09-07 00:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-09-16 17:19 - 2016-09-07 00:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-16 17:19 - 2016-09-07 00:22 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-16 17:19 - 2016-09-07 00:21 - 03046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-09-16 17:19 - 2016-09-07 00:21 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-16 17:19 - 2016-09-07 00:20 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 03577344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 02876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-16 17:19 - 2016-09-07 00:17 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 07831552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-16 17:19 - 2016-09-07 00:13 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-16 17:19 - 2016-09-07 00:13 - 02874880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2016-09-16 17:19 - 2016-09-07 00:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-09-16 17:18 - 2016-09-07 01:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-09-16 17:18 - 2016-09-07 01:39 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-16 17:18 - 2016-09-07 01:39 - 00620176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2016-09-16 17:18 - 2016-09-07 01:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-09-16 17:18 - 2016-09-07 01:34 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 01297760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-16 17:18 - 2016-09-07 01:27 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-09-16 17:18 - 2016-09-07 01:27 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-09-16 17:18 - 2016-09-07 01:26 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00847648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00586200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-09-16 17:18 - 2016-09-07 01:25 - 01270064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-16 17:18 - 2016-09-07 01:24 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-16 17:18 - 2016-09-07 01:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-09-16 17:18 - 2016-09-07 01:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 06536248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-16 17:18 - 2016-09-07 01:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-16 17:18 - 2016-09-07 01:22 - 01128096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-16 17:18 - 2016-09-07 01:22 - 01085728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2016-09-16 17:18 - 2016-09-07 01:22 - 00604920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-09-16 17:18 - 2016-09-07 01:15 - 00911640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-09-16 17:18 - 2016-09-07 01:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-09-16 17:18 - 2016-09-07 01:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-16 17:18 - 2016-09-07 01:08 - 00116216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-16 17:18 - 2016-09-07 00:52 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-16 17:18 - 2016-09-07 00:52 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-16 17:18 - 2016-09-07 00:49 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-09-16 17:18 - 2016-09-07 00:48 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-16 17:18 - 2016-09-07 00:47 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-16 17:18 - 2016-09-07 00:46 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-09-16 17:18 - 2016-09-07 00:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-09-16 17:18 - 2016-09-07 00:44 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-09-16 17:18 - 2016-09-07 00:44 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2016-09-16 17:18 - 2016-09-07 00:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-09-16 17:18 - 2016-09-07 00:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-09-16 17:18 - 2016-09-07 00:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-16 17:18 - 2016-09-07 00:39 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2016-09-16 17:18 - 2016-09-07 00:39 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2016-09-16 17:18 - 2016-09-07 00:38 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2016-09-16 17:18 - 2016-09-07 00:38 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-16 17:18 - 2016-09-07 00:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2016-09-16 17:18 - 2016-09-07 00:38 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2016-09-16 17:18 - 2016-09-07 00:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 01568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2016-09-16 17:18 - 2016-09-07 00:36 - 01051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagCpl.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00577536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-09-16 17:18 - 2016-09-07 00:35 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.ps.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-09-16 17:18 - 2016-09-07 00:34 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-09-16 17:18 - 2016-09-07 00:32 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-16 17:18 - 2016-09-07 00:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-16 17:18 - 2016-09-07 00:32 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-09-16 17:18 - 2016-09-07 00:31 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-16 17:18 - 2016-09-07 00:31 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 02476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00698368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-16 17:18 - 2016-09-07 00:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-16 17:18 - 2016-09-07 00:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc_ssp.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-09-16 17:18 - 2016-09-07 00:28 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysdm.cpl
2016-09-16 17:18 - 2016-09-07 00:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-09-16 17:18 - 2016-09-07 00:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 06312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-16 17:18 - 2016-09-07 00:25 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-09-16 17:18 - 2016-09-07 00:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-09-16 17:18 - 2016-09-07 00:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-16 17:18 - 2016-09-07 00:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2016-09-16 17:18 - 2016-09-07 00:23 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-09-16 17:18 - 2016-09-07 00:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-16 17:18 - 2016-09-07 00:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-16 17:18 - 2016-09-07 00:21 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-16 17:18 - 2016-09-07 00:20 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2016-09-16 17:18 - 2016-09-07 00:15 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 03078656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 01487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-16 17:18 - 2016-09-07 00:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-09-16 17:18 - 2016-09-07 00:11 - 03053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-09-16 17:18 - 2016-09-07 00:10 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-09-16 17:18 - 2016-09-07 00:10 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2016-09-16 17:18 - 2016-09-04 20:37 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-09-16 17:17 - 2016-09-07 01:39 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-16 17:17 - 2016-09-07 01:39 - 01142560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-16 17:17 - 2016-09-07 01:39 - 01030408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-16 17:17 - 2016-09-07 01:39 - 00875480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-16 17:17 - 2016-09-07 01:39 - 00799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-16 17:17 - 2016-09-07 01:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-16 17:17 - 2016-09-07 01:39 - 00175120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-16 17:17 - 2016-09-07 01:37 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-16 17:17 - 2016-09-07 01:36 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-09-16 17:17 - 2016-09-07 01:35 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-09-16 17:17 - 2016-09-07 01:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-09-16 17:17 - 2016-09-07 01:26 - 01554152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-09-16 17:17 - 2016-09-07 01:26 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-09-16 17:17 - 2016-09-07 01:25 - 01447776 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2016-09-16 17:17 - 2016-09-07 01:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 03693064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-09-16 17:17 - 2016-09-07 01:22 - 00359256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-16 17:17 - 2016-09-07 01:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-09-16 17:17 - 2016-09-07 01:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-09-16 17:17 - 2016-09-07 01:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-09-16 17:17 - 2016-09-07 01:16 - 02773088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-09-16 17:17 - 2016-09-07 01:16 - 02144512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-09-16 17:17 - 2016-09-07 01:15 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-16 17:17 - 2016-09-07 01:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-09-16 17:17 - 2016-09-07 01:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-09-16 17:17 - 2016-09-07 01:11 - 00057912 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-09-16 17:17 - 2016-09-07 01:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-09-16 17:17 - 2016-09-07 00:53 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2016-09-16 17:17 - 2016-09-07 00:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-09-16 17:17 - 2016-09-07 00:47 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-09-16 17:17 - 2016-09-07 00:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-16 17:17 - 2016-09-07 00:45 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2016-09-16 17:17 - 2016-09-07 00:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-16 17:17 - 2016-09-07 00:44 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-16 17:17 - 2016-09-07 00:44 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2016-09-16 17:17 - 2016-09-07 00:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-09-16 17:17 - 2016-09-07 00:42 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-09-16 17:17 - 2016-09-07 00:41 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-16 17:17 - 2016-09-07 00:41 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-09-16 17:17 - 2016-09-07 00:40 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2016-09-16 17:17 - 2016-09-07 00:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Cortana.ProxyStub.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-09-16 17:17 - 2016-09-07 00:36 - 00752128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-09-16 17:17 - 2016-09-07 00:36 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-09-16 17:17 - 2016-09-07 00:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwcfg.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-16 17:17 - 2016-09-07 00:35 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CheckNetIsolation.exe
2016-09-16 17:17 - 2016-09-07 00:34 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 01813504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 04213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2016-09-16 17:17 - 2016-09-07 00:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00852992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01558528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-16 17:17 - 2016-09-07 00:30 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 01465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-09-16 17:17 - 2016-09-07 00:29 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 01872896 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 01424384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-09-16 17:17 - 2016-09-07 00:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-09-16 17:17 - 2016-09-07 00:24 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-09-16 17:17 - 2016-09-07 00:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-09-16 17:17 - 2016-09-07 00:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-09-16 17:17 - 2016-09-07 00:23 - 04646912 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-16 17:17 - 2016-09-07 00:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2016-09-16 17:17 - 2016-09-07 00:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-09-16 17:17 - 2016-09-07 00:22 - 01297408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-09-16 17:17 - 2016-09-07 00:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-09-16 17:17 - 2016-09-07 00:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2016-09-16 17:17 - 2016-09-07 00:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 01385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-09-16 17:17 - 2016-09-07 00:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-16 17:17 - 2016-09-07 00:18 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-16 17:17 - 2016-09-07 00:18 - 04826624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-09-16 17:17 - 2016-09-07 00:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-09-16 17:17 - 2016-09-07 00:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 02573824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-16 17:17 - 2016-09-07 00:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-09-16 17:17 - 2016-09-07 00:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-16 17:17 - 2016-09-07 00:11 - 03294208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-16 17:17 - 2016-09-07 00:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-09-16 17:17 - 2016-09-07 00:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2016-09-16 17:17 - 2016-09-07 00:09 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-09-16 17:17 - 2016-09-07 00:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 07468896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-16 17:16 - 2016-09-07 01:39 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01997832 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01862000 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01238584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-09-16 17:16 - 2016-09-07 01:39 - 00705576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00414232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00337328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00328520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2016-09-16 17:16 - 2016-09-07 01:36 - 00528736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-09-16 17:16 - 2016-09-07 01:35 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-09-16 17:16 - 2016-09-07 01:35 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-09-16 17:16 - 2016-09-07 01:26 - 01552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-09-16 17:16 - 2016-09-07 01:26 - 00693592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-16 17:16 - 2016-09-07 01:26 - 00439136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-09-16 17:16 - 2016-09-07 01:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-09-16 17:16 - 2016-09-07 01:24 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-09-16 17:16 - 2016-09-07 01:23 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-16 17:16 - 2016-09-07 01:23 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-09-16 17:16 - 2016-09-07 01:22 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-16 17:16 - 2016-09-07 01:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-09-16 17:16 - 2016-09-07 01:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-16 17:16 - 2016-09-07 01:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-09-16 17:16 - 2016-09-07 01:16 - 02548936 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-09-16 17:16 - 2016-09-07 01:16 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-16 17:16 - 2016-09-07 01:15 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-16 17:16 - 2016-09-07 01:15 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-09-16 17:16 - 2016-09-07 01:12 - 28851224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-16 17:16 - 2016-09-07 01:12 - 00871776 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-09-16 17:16 - 2016-09-07 01:11 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-09-16 17:16 - 2016-09-07 01:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2016-09-16 17:16 - 2016-09-07 00:46 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2016-09-16 17:16 - 2016-09-07 00:46 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2016-09-16 17:16 - 2016-09-07 00:43 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2016-09-16 17:16 - 2016-09-07 00:42 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-16 17:16 - 2016-09-07 00:41 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2016-09-16 17:16 - 2016-09-07 00:41 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-16 17:16 - 2016-09-07 00:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-16 17:16 - 2016-09-07 00:40 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2016-09-16 17:16 - 2016-09-07 00:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2016-09-16 17:16 - 2016-09-07 00:38 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-09-16 17:16 - 2016-09-07 00:38 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvc.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-09-16 17:16 - 2016-09-07 00:36 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2016-09-16 17:16 - 2016-09-07 00:35 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbceip.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2016-09-16 17:16 - 2016-09-07 00:34 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3ui.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 14251520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 02012672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-09-16 17:16 - 2016-09-07 00:30 - 01318400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-09-16 17:16 - 2016-09-07 00:29 - 01487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01783808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01671168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pimstore.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-09-16 17:16 - 2016-09-07 00:27 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 01570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-09-16 17:16 - 2016-09-07 00:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-09-16 17:16 - 2016-09-07 00:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 02445312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01965568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2016-09-16 17:16 - 2016-09-07 00:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-09-16 17:16 - 2016-09-07 00:23 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-09-16 17:16 - 2016-09-07 00:23 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 03093504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-09-16 17:16 - 2016-09-07 00:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 06976000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 00513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-09-16 17:16 - 2016-09-07 00:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-16 17:16 - 2016-09-07 00:19 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 02610176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01997312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-09-16 17:16 - 2016-09-07 00:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-09-16 17:16 - 2016-09-07 00:15 - 01755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-09-16 17:16 - 2016-09-07 00:13 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-09-16 17:16 - 2016-09-07 00:11 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-16 17:16 - 2016-09-06 23:57 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-09-16 17:15 - 2016-09-07 01:39 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-16 17:15 - 2016-09-07 01:34 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-09-16 17:15 - 2016-09-07 01:26 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 01540216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-16 17:15 - 2016-09-07 01:23 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-16 17:15 - 2016-09-07 01:23 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-09-16 17:15 - 2016-09-07 01:22 - 00742192 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-09-16 17:15 - 2016-09-07 01:22 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-09-16 17:15 - 2016-09-07 01:22 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-09-16 17:15 - 2016-09-07 01:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-09-16 17:15 - 2016-09-07 01:14 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-16 17:15 - 2016-09-07 01:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-16 17:15 - 2016-09-07 01:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 02187408 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 00388888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-09-16 17:15 - 2016-09-07 01:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-09-16 17:15 - 2016-09-07 00:46 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-16 17:15 - 2016-09-07 00:44 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2016-09-16 17:15 - 2016-09-07 00:40 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-09-16 17:15 - 2016-09-07 00:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2016-09-16 17:15 - 2016-09-07 00:39 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-09-16 17:15 - 2016-09-07 00:39 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-16 17:15 - 2016-09-07 00:39 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-09-16 17:15 - 2016-09-07 00:35 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00689664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-16 17:15 - 2016-09-07 00:32 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppinst.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-16 17:15 - 2016-09-07 00:31 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-09-16 17:15 - 2016-09-07 00:30 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-09-16 17:15 - 2016-09-07 00:28 - 02731008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 03415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-09-16 17:15 - 2016-09-07 00:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-09-16 17:15 - 2016-09-07 00:22 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2016-09-16 17:15 - 2016-09-07 00:21 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-09-16 17:15 - 2016-09-07 00:21 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-09-16 17:15 - 2016-09-07 00:20 - 06675968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-16 17:15 - 2016-09-07 00:20 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-09-16 17:15 - 2016-09-07 00:19 - 02563584 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-09-16 17:15 - 2016-09-07 00:19 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-09-16 17:15 - 2016-09-07 00:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2016-09-16 17:15 - 2016-09-07 00:19 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2016-09-16 17:15 - 2016-09-07 00:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-09-16 17:15 - 2016-09-07 00:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-09-16 17:15 - 2016-09-07 00:13 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-16 17:15 - 2016-09-07 00:13 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-09-16 17:15 - 2016-09-07 00:11 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2016-09-16 17:15 - 2016-09-07 00:11 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-16 17:15 - 2016-09-07 00:10 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2016-09-16 17:15 - 2016-09-07 00:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-09-16 17:04 - 2015-10-29 22:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-09-13 10:07 - 2016-09-24 19:54 - 00000000 ____D C:\Program Files\pia_manager
2016-09-12 18:25 - 2016-09-12 18:26 - 59947159 _____ C:\Users\Larry\Downloads\installer_win2.exe
2016-09-12 16:57 - 2016-09-12 16:57 - 00000000 ____D C:\Users\Larry\AppData\Local\Private Internet Access
2016-09-12 16:57 - 2016-09-12 16:57 - 00000000 ____D C:\Users\Larry\AppData\Local\Crashpad
2016-09-11 10:39 - 2016-09-11 10:39 - 00001528 _____ C:\Users\Larry\Desktop\don't take it personally, babe, it just ain't your story.lnk
2016-09-11 10:39 - 2016-09-11 10:39 - 00000000 ____D C:\Users\Larry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\don't take it personally, babe, it just ain't your story
2016-09-11 10:39 - 2016-09-11 10:39 - 00000000 ____D C:\Program Files (x86)\don't take it personally, babe, it just ain't your story
2016-09-08 15:15 - 2016-09-08 15:15 - 00110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2016-09-08 15:12 - 2016-09-08 15:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-09-08 15:12 - 2016-09-08 15:11 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-09-08 15:09 - 2016-09-08 15:09 - 00739904 _____ (Oracle Corporation) C:\Users\Larry\Downloads\jre-8u101-windows-i586-iftw.exe
2016-09-08 15:08 - 2016-09-08 15:14 - 62041152 _____ (Oracle Corporation) C:\Users\Larry\Downloads\jre-8u101-windows-x64.exe
2016-09-08 15:07 - 2016-09-08 15:07 - 00739904 _____ (Oracle Corporation) C:\Users\Larry\Downloads\JavaSetup8u101.exe
2016-09-08 11:58 - 2016-09-08 12:01 - 246899112 _____ C:\Users\Larry\Downloads\EmsisoftEmergencyKit.exe
2016-09-08 10:10 - 2016-09-08 10:10 - 06761600 _____ (ESET spol. s r.o.) C:\Users\Larry\Downloads\esetonlinescanner_enu.exe
2016-09-08 10:10 - 2016-09-08 10:10 - 00000000 ____D C:\Users\Larry\AppData\Local\ESET
2016-09-08 09:43 - 2016-09-08 10:08 - 00000000 ____D C:\Users\Larry\Desktop\mbar
2016-09-08 09:43 - 2016-09-08 10:08 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-09-08 09:39 - 2016-09-08 09:43 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Larry\Downloads\mbar-1.09.3.1001.exe
2016-09-08 09:37 - 2016-09-08 09:37 - 20892232 _____ C:\Users\Larry\Downloads\RogueKiller.exe
2016-09-08 09:34 - 2016-09-08 09:35 - 54287072 _____ (Microsoft Corporation) C:\Users\Larry\Downloads\Windows-KB890830-x64-V5.39.exe
2016-09-08 09:06 - 2016-09-08 09:07 - 00077350 _____ C:\TDSSKiller.3.1.0.11_08.09.2016_09.06.24_log.txt
2016-09-07 13:51 - 2016-09-07 14:46 - 120372800 _____ C:\Users\Larry\Downloads\GMStudio-Installer-1.4.1760.exe
2016-09-07 10:43 - 2016-09-07 10:43 - 00000000 ____D C:\Users\Larry\AppData\Roaming\Train of Afterlife
2016-09-06 15:03 - 2016-09-06 15:03 - 00000096 _____ C:\Users\Larry\My

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-03 20:30 - 2013-05-19 18:06 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-03 20:29 - 2016-04-16 19:16 - 00000000 ____D C:\FRST
2016-10-03 20:27 - 2013-05-19 18:05 - 00000908 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-03 20:24 - 2016-02-13 09:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-03 20:22 - 2015-10-30 02:28 - 01310720 ___SH C:\WINDOWS\system32\config\BBI
2016-10-03 20:22 - 2014-06-02 09:15 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-10-03 19:31 - 2013-05-19 18:09 - 00002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-03 19:22 - 2016-04-19 00:51 - 00972104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-03 19:22 - 2015-10-30 03:21 - 00000000 ____D C:\WINDOWS\INF
2016-10-03 19:08 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-03 19:03 - 2015-10-30 03:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-03 19:02 - 2013-05-19 17:22 - 00004142 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{728296FD-13D2-40E4-B626-360E10635C46}
2016-10-03 17:35 - 2013-05-21 19:56 - 00000000 ____D C:\Users\Larry\Documents\backups
2016-10-03 16:43 - 2016-07-30 17:48 - 00000000 ____D C:\Users\Larry\AppData\Local\vb_12alt
2016-10-03 13:20 - 2016-04-19 00:51 - 00000000 ____D C:\Users\Larry
2016-10-03 13:18 - 2016-04-17 22:56 - 00000000 ____D C:\Users\Larry\AppData\Local\GameMaker-Studio
2016-10-03 11:55 - 2016-04-18 00:04 - 00000000 ____D C:\Program Files (x86)\Steam
2016-10-03 11:11 - 2013-05-19 18:05 - 00004278 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-10-03 11:06 - 2013-05-21 13:55 - 00000000 ____D C:\Users\Larry\.gimp-2.2
2016-10-03 11:04 - 2013-05-21 13:58 - 00000000 _____ C:\Users\Larry\.gtk-bookmarks
2016-10-01 19:18 - 2015-11-27 08:14 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Larry\Desktop\rkill.exe
2016-10-01 18:09 - 2016-03-28 14:18 - 00000000 ____D C:\AdwCleaner
2016-10-01 18:04 - 2016-04-14 13:46 - 00003994 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1460655965
2016-10-01 18:04 - 2016-04-14 13:46 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone 1 Browser.lnk
2016-09-30 14:44 - 2014-01-05 19:09 - 00000000 ____D C:\Users\Larry\AppData\Roaming\vlc
2016-09-30 10:47 - 2016-07-30 17:52 - 00000000 ____D C:\Users\Larry\AppData\Local\vb_12alt_backup
2016-09-27 09:01 - 2013-06-26 12:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-27 08:21 - 2016-04-19 09:11 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-09-23 18:39 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-09-23 18:39 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-09-22 19:45 - 2013-05-19 17:20 - 00000000 ____D C:\Users\Larry\AppData\Local\Packages
2016-09-22 18:00 - 2013-05-19 18:05 - 00513632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-09-18 16:30 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\rescache
2016-09-17 07:23 - 2015-10-30 03:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-17 07:18 - 2016-02-13 09:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-17 07:14 - 2013-06-29 20:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-09-17 07:14 - 2013-06-29 20:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-09-16 22:40 - 2015-10-30 02:31 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-09-16 22:40 - 2015-10-30 02:31 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-16 22:40 - 2015-10-30 02:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-09-16 22:40 - 2015-10-30 02:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-16 21:41 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-16 21:40 - 2016-02-13 09:03 - 00000000 ____D C:\WINDOWS\ShellNew
2016-09-16 21:40 - 2013-06-29 20:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-09-16 21:36 - 2013-08-16 09:13 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-16 21:23 - 2013-05-21 10:49 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-16 16:48 - 2015-10-30 03:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-09-16 16:48 - 2015-10-30 03:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-09-15 07:57 - 2014-07-02 20:09 - 00001130 _____ C:\Users\Larry\Desktop\My Games - Shortcut.lnk
2016-09-13 11:10 - 2013-05-19 18:05 - 00969184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2016-09-12 16:54 - 2016-08-07 22:30 - 57467594 _____ C:\Users\Larry\Downloads\installer_win8-7-2016.exe
2016-09-12 14:23 - 2016-04-17 23:01 - 00000000 ____D C:\Users\Larry\AppData\Roaming\GameMaker-Studio
2016-09-11 10:39 - 2016-05-26 10:45 - 00000000 ____D C:\Users\Larry\AppData\Roaming\RenPy
2016-09-09 18:30 - 2016-06-21 17:13 - 04117216 _____ (Husdawg, LLC) C:\Users\Larry\Downloads\Detection.exe
2016-09-08 15:15 - 2015-10-20 20:38 - 00000000 ____D C:\Users\Larry\.oracle_jre_usage
2016-09-08 15:15 - 2014-09-08 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-09-08 15:14 - 2014-09-08 20:13 - 00000000 ____D C:\Program Files\Java
2016-09-08 15:12 - 2013-10-18 12:19 - 00000000 ____D C:\ProgramData\Oracle
2016-09-08 15:11 - 2013-07-20 09:10 - 00000000 ____D C:\Program Files (x86)\Java
2016-09-08 14:39 - 2014-05-11 20:03 - 00000000 ____D C:\Users\Larry\Documents\PPSSPP
2016-09-08 09:43 - 2016-04-16 21:49 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-09-07 02:04 - 2016-02-13 09:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-09-06 21:00 - 2015-10-30 03:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-06 21:00 - 2015-10-30 03:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2014-03-04 17:15 - 2013-08-13 21:55 - 0012005 _____ () C:\Users\Larry\AppData\Roaming\alsoft.ini
2015-08-10 15:30 - 2015-08-10 15:30 - 0007605 _____ () C:\Users\Larry\AppData\Local\Resmon.ResmonCfg
2013-05-19 17:21 - 2013-05-19 17:21 - 0000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc

Files to move or delete:
====================
C:\Users\Larry\Nil-NinjahticRonin_setup.exe
C:\Users\Larry\Ninjahtic-setup.exe
C:\Users\Larry\ReserveWin10.cmd
C:\Users\Larry\samurai_jazz-v1.5.2.3-setup.exe
C:\Users\Larry\TheWayofthePixelatedFist-installer.exe


==================== Bamital &amp; volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe =&gt; File is digitally signed
C:\WINDOWS\system32\wininit.exe =&gt; File is digitally signed
C:\WINDOWS\explorer.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe =&gt; File is digitally signed
C:\WINDOWS\system32\svchost.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe =&gt; File is digitally signed
C:\WINDOWS\system32\services.exe =&gt; File is digitally signed
C:\WINDOWS\system32\User32.dll =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll =&gt; File is digitally signed
C:\WINDOWS\system32\userinit.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe =&gt; File is digitally signed
C:\WINDOWS\system32\rpcss.dll =&gt; File is digitally signed
C:\WINDOWS\system32\dnsapi.dll =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll =&gt; File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys =&gt; File is digitally signed


LastRegBack: 2016-09-29 10:16

==================== End of FRST.txt ============================

#6 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 03 October 2016 - 08:26 PM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-10-2016
Ran by Larry (03-10-2016 20:31:45)
Running from C:\Users\Larry\Desktop
Windows 10 Home Version 1511 (X64) (2016-04-19 05:37:36)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3949817429-3550067080-3212671863-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3949817429-3550067080-3212671863-503 - Limited - Disabled)
Guest (S-1-5-21-3949817429-3550067080-3212671863-501 - Limited - Disabled)
Larry (S-1-5-21-3949817429-3550067080-3212671863-1001 - Administrator - Enabled) =&gt; C:\Users\Larry

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1001 Spikes (HKLM-x32\...\Steam App 260790) (Version: - Nicalis, Inc.)
4 Elements II (x32 Version: 2.2.0.98 - WildTangent) Hidden
7-Zip 4.42 (HKLM-x32\...\7-Zip) (Version: - )
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.6 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Premiere Elements 12 (HKLM\...\PremElem120) (Version: 12.1.0.0 - Adobe Systems Incorporated)
Adobe Premiere Elements 12 (Version: 12.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.4.194 - Adobe Systems, Inc.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 4.0.0.0 - AppEx Networks)
An Imp A Fiend (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\An Imp A Fiend) (Version: - )
An Imp? A Fiend! (HKLM\...\Steam App 354960) (Version: - Blaze Epic)
An Imp? A Fiend! (HKLM-x32\...\Steam App 354960) (Version: - )
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
Anodyne (HKLM-x32\...\Steam App 234900) (Version: - )
Aozora Meikyuu (HKLM\...\Steam App 427980) (Version: - Yume Creations)
artificialninja (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\artificialninja) (Version: - )
artificialninja_shinichi (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\artificialninja_shinichi) (Version: - )
Astebreed (HKLM\...\Steam App 283680) (Version: - Edelweiss)
Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team)
Avast Free Antivirus (HKLM-x32\...\avast) (Version: 12.3.2280 - AVAST Software)
BattleBlock Theater (HKLM-x32\...\Steam App 238460) (Version: - The Behemoth)
Battlefield 4 (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.3.2.15221 - Electronic Arts)
Battlefield: Bad Company 2 (HKLM-x32\...\{3AC8457C-0385-4BEA-A959-E095F05D6D67}) (Version: 1.0.1.0 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.5.1 - EA Digital Illusions CE AB)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Black Chocobo (HKLM-x32\...\Black_Chocobo) (Version: - )
BlazBlue: Calamity Trigger (HKLM\...\Steam App 263300) (Version: - Arc System Works)
BlazBlue: Calamity Trigger (HKLM-x32\...\Steam App 263300) (Version: - Arc System Works Co., Ltd.)
Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Blend for Visual Studio 2012 ENU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broken Sword 1 - Shadow of the Templars: Director's Cut (HKLM-x32\...\Steam App 57640) (Version: - Revolution Software Ltd)
Build-a-lot 4 - Power Source (x32 Version: 2.2.0.98 - WildTangent) Hidden
Camera Obscura (HKLM-x32\...\Steam App 341500) (Version: - Anteater Games)
Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - The Behemoth)
Castle In The Darkness (HKLM-x32\...\Steam App 262960) (Version: - Matt Kap)
Castlevania: Lords of Shadow Mirror of Fate HD (HKLM-x32\...\Steam App 282530) (Version: - MercurySteam)
Cave Story+ (HKLM\...\Steam App 200900) (Version: - Nicalis, Inc.)
Cave Story+ (HKLM-x32\...\Steam App 200900) (Version: - Nicalis)
Chantelise (HKLM\...\Steam App 70420) (Version: - EasyGameStation)
Contagion (HKLM-x32\...\Steam App 238430) (Version: - Monochrome LLC)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Cradle Of Egypt Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Crimzon Clover WORLD IGNITION (HKLM\...\Steam App 285440) (Version: - YOTSUBANE)
CT Special Forces: Fire for Effect (HKLM-x32\...\Steam App 283410) (Version: - Asobo Studio)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2.5630 - CyberLink Corp.)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.2.3317 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.2.2126 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.2.2126 - CyberLink Corp.)
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.7.4605 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
daisuke (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\daisuke) (Version: - )
Dead Space 2 (HKLM-x32\...\Steam App 47780) (Version: - Visceral Games)
Dead Space (HKLM-x32\...\{9789E33B-317A-44B2-AF9A-FF8708AD93E0}) (Version: 1.0.0.222 - Electronic Arts)
Deadlight (HKLM\...\Steam App 211400) (Version: - Tequila Works, S.L.)
Deadlight (HKLM-x32\...\Steam App 211400) (Version: - Tequila Works, S.L.)
Desura (HKLM-x32\...\Desura) (Version: 100.64 - Desura)
Desura: Jump/Boxer (HKLM-x32\...\Desura_101047695573024) (Version: Full - BlazeEpic)
Desura: Oniken (HKLM-x32\...\Desura_64390149701664) (Version: Demo - Danilo_Dias)
Desura: samurai_jazz (HKLM-x32\...\Desura_96525095010336) (Version: Full - BlazeEpic)
DISTRAINT (HKLM\...\Steam App 395170) (Version: - Jesse Makkonen)
DivX Pro 6.8.0 VFW (HKLM-x32\...\divx650vfw_is1) (Version: 6.8.0.14 - )
DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory)
don't take it personally, babe, it just ain't your story 1.1 (HKLM-x32\...\don't take it personally, babe, it just ain't your story) (Version: 1.1 - Christine Love)
Double Dragon Trilogy (HKLM-x32\...\Steam App 314150) (Version: - DotEmu)
Downwell (HKLM\...\Steam App 360740) (Version: - Moppin)
Downwell (HKLM-x32\...\Steam App 360740) (Version: - Moppin)
Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: - NCH Software)
DRAGON BALL XENOVERSE (HKLM-x32\...\Steam App 323470) (Version: - DIMPS)
Dreaming Sarah (HKLM-x32\...\Steam App 296870) (Version: - Andre Chagas Silva)
Dropbox (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Dropbox) (Version: 2.10.28 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version: - )
Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC)
Electronic Super Joy (HKLM-x32\...\Steam App 244870) (Version: - Michael Todd Games)
Electronic Super Joy: Groove City (HKLM-x32\...\Steam App 301460) (Version: - Michael Todd Games)
Elements 12 Organizer (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{32136776-FE3F-453D-80DA-CDD993BDB2A3}) (Version: 11.1.20810.00 - Microsoft Corporation)
Escape Goat (HKLM-x32\...\Steam App 251370) (Version: - MagicalTimeBean)
Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts)
Fairy Bloom Freesia (HKLM\...\Steam App 214590) (Version: - Edelweiss)
Fairy Bloom Freesia (HKLM-x32\...\Steam App 214590) (Version: - Edelweiss)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
FATE: The Cursed King (x32 Version: 2.2.0.97 - WildTangent) Hidden
FEZ (HKLM-x32\...\Steam App 224760) (Version: - Polytron Corporation)
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
Finding Teddy (HKLM\...\Steam App 259600) (Version: - Storybird)
Finding Teddy (HKLM-x32\...\Steam App 259600) (Version: - Storybird)
FIST OF AWESOME (HKLM-x32\...\Steam App 305070) (Version: - I Fight Bears)
Fortune Summoners: Secret of the Elemental Stone (HKLM-x32\...\Steam App 203510) (Version: - Lizsoft)
FoxBot 0.701 (HKLM-x32\...\FoxBot_is1) (Version: - Copyright© 2003,Tom Simpson)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.0.118 - Foxit Software Inc.)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Free Video to JPG Converter version 5.0.32.1230 (HKLM-x32\...\Free Video to JPG Converter_is1) (Version: 5.0.32.1230 - DVDVideoSoft Ltd.)
Freedom Planet (HKLM\...\Steam App 248310) (Version: - GalaxyTrail)
Freedom Planet (HKLM-x32\...\Steam App 248310) (Version: - GalaxyTrail)
GameMaker: Player (HKLM-x32\...\GameMakerPlayer) (Version: 1.4.1380.41402 - YoYo Games Ltd.)
GameMaker-Studio 1.4 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\GameMaker-Studio14) (Version: - YoYo Games Ltd.)
Gardenscapes: Mansion Makeover (x32 Version: 3.0.2.32 - WildTangent) Hidden
Go! Go! Nippon! ~My First Trip to Japan~ (HKLM\...\Steam App 251870) (Version: - OVERDRIVE)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden
GTK+ 2.6.10-20050823 runtime environment (HKLM-x32\...\WinGTK-2_is1) (Version: - Tor Lillqvist)
Half Minute Hero: Super Mega Neo Climax Ultimate Boy (HKLM-x32\...\Steam App 214830) (Version: - Opus)
Half Minute Hero: The Second Coming (HKLM-x32\...\Steam App 240970) (Version: - OPUS)
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
Half-Life 2: Episode One (HKLM-x32\...\Steam App 380) (Version: - Valve)
Half-Life 2: Episode Two (HKLM-x32\...\Steam App 420) (Version: - Valve)
Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve)
Hammerwatch (HKLM-x32\...\Steam App 239070) (Version: - )
HandBrake 0.9.9.1 (HKLM-x32\...\HandBrake) (Version: 0.9.9.1 - )
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hikikomori No Chuunibyou (HKLM\...\Steam App 501940) (Version: - )
Hikikomori No Chuunibyou (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Hikikomori No Chuunibyou) (Version: - )
House of 1000 Doors: Family Secrets (x32 Version: 2.2.0.98 - WildTangent) Hidden
Hoyle Card Games (x32 Version: 2.2.0.95 - WildTangent) Hidden
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd)
HP Connected Remote (HKLM-x32\...\{F243A34B-AB7F-4065-B770-B85B767C247C}) (Version: 1.0.1218 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.3.0 - WildTangent)
HP MyRoom (HKLM-x32\...\{9C35EDE5-4B0F-45E7-A438-314BA889948E}) (Version: 9.0.0.0 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}) (Version: 1.1.6232.4245 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.3.34.7 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.5.32.37 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT)
If My Heart Had Wings (HKLM\...\Steam App 326480) (Version: - Moenovel)
If My Heart Had Wings (HKLM-x32\...\Steam App 326480) (Version: - Moenovel)
INSIDE (HKLM\...\Steam App 304430) (Version: - Playdead)
Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java SE Development Kit 7 Update 67 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170670}) (Version: 1.7.0.670 - Oracle)
Jet Set Radio (HKLM-x32\...\Steam App 205950) (Version: - Blit Software)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Jump/Boxer (HKLM\...\Steam App 365330) (Version: - Blaze Epic)
Jump/Boxer (HKLM-x32\...\Steam App 365330) (Version: - )
JumpBoxer (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\JumpBoxer) (Version: - )
Katawa Shoujo (HKLM-x32\...\Katawa Shoujo) (Version: - )
Killer is Dead (HKLM-x32\...\Steam App 261110) (Version: - KADOKAWA GAMES / GRASSHOPPER MANUFACTURE)
Kingdoms of Amalur: Reckoning (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games)
Knytt Underground 1.2.1 (HKLM-x32\...\NifflasKnyttUnderground_is1) (Version: - Nifflas)
Ku - Shroud of the Morrigan version 1.5 (HKLM-x32\...\{57FF5744-E420-4EDB-8C2F-BB8A5DF8B71F}_is1) (Version: 1.5 - BitSmith Games)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve)
LiEat (HKLM\...\Steam App 373770) (Version: - △○□× (Miwashiba))
LIGHTNING RETURNS: FINAL FANTASY XIII (HKLM-x32\...\Steam App 345350) (Version: - SQUARE ENIX)
LIMBO (HKLM\...\Steam App 48000) (Version: - Playdead)
LIMBO (HKLM-x32\...\Steam App 48000) (Version: - Playdead)
Lone Survivor (HKLM-x32\...\Steam App 209830) (Version: - Jasper Byrne)
Love (HKLM\...\Steam App 269270) (Version: - Fred Wood)
Love (HKLM-x32\...\Steam App 269270) (Version: - Fred Wood)
Lucid9 (HKLM\...\Steam App 439940) (Version: - Fallen Snow Studios)
Luxor Evolved (x32 Version: 2.2.0.98 - WildTangent) Hidden
Machina of the Planet Tree -Planet Ruler- (HKLM\...\Steam App 383960) (Version: - Denneko Yuugi)
Magical Battle Festa (HKLM\...\Steam App 292480) (Version: - Fly System)
Mahjongg Dimensions Deluxe: Tiles in Time (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment)
Mass Effect 2 (HKLM-x32\...\Steam App 24980) (Version: - BioWare)
Master Spy (HKLM\...\Steam App 331190) (Version: - TURBOGUN)
Metal Slug 3 (HKLM-x32\...\Steam App 250180) (Version: - DotEmu)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{13D558FE-A863-402C-B115-160007277033}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{6D6D43E5-218C-4B05-92D3-2240810F4760}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (11.1.20828.01) (HKLM-x32\...\{4F2B8233-35EE-4197-8C3B-EACCBF712029}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (11.1.20828.01) (HKLM-x32\...\{FAE0523E-08A4-4717-8E8E-6EC6F32CBE88}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows 8 - ENU (HKLM-x32\...\{b6391d7a-479c-494c-a76f-cad96a8a73ac}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU (HKLM-x32\...\{e0efdce9-a486-4676-8aa5-65bb08cbf34c}) (Version: 11.0.50727.42 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mighty Gunvolt (HKLM\...\Steam App 394600) (Version: - INTI CREATES CO., LTD.)
Mighty Gunvolt (HKLM-x32\...\Steam App 394600) (Version: - INTI CREATES CO., LTD.)
Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE)
Momodora III (HKLM\...\Steam App 302790) (Version: - rdein)
Momodora III (HKLM-x32\...\Steam App 302790) (Version: - rdein)
Momodora: Reverie Under the Moonlight (HKLM\...\Steam App 428550) (Version: - Bombservice)
Mortimer Beckett and the Crimson Thief Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 49.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 49.0.1 (x64 en-US)) (Version: 49.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.1.6109 - Mozilla)
MX vs ATV Reflex (HKLM-x32\...\Steam App 55140) (Version: - Double Helix Games)
Mystery P.I. - Curious Case of Counterfeit Cove (x32 Version: 2.2.0.98 - WildTangent) Hidden
Narcissu 1st &amp; 2nd (HKLM\...\Steam App 264380) (Version: - stage-nana)
NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2)
Need for Speed: Undercover (HKLM-x32\...\Steam App 17430) (Version: - EA Black Box)
Nidhogg (HKLM\...\Steam App 94400) (Version: - Messhof)
Nidhogg (HKLM-x32\...\Steam App 94400) (Version: - Messhof)
Nil-Ninjahtic (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Nil-Ninjahtic) (Version: - )
Nil-Ninjahtic: Ronin (HKLM\...\Steam App 454130) (Version: - Blaze Epic)
Ninjahtic (HKLM\...\Steam App 385230) (Version: - Blaze Epic)
Ninjahtic (HKLM-x32\...\Steam App 385230) (Version: - Blaze Epic)
Ninjahtic (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Ninjahtic) (Version: - )
Ninjahtic Mind Tricks (HKLM\...\Steam App 387880) (Version: - Blaze Epic)
Ninjahtic Mind Tricks (HKLM-x32\...\Steam App 387880) (Version: - )
Ninjahtic Mind Tricks (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Ninjahtic Mind Tricks) (Version: - )
ninjahtic_side_story2 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\ninjahtic_side_story2) (Version: - )
ninjahtic_side_story-backup (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\ninjahtic_side_story-backup) (Version: - )
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
Oddworld: Abe's Exoddus (HKLM-x32\...\Steam App 15710) (Version: - Oddworld Inhabitants)
One Thousand Lies (HKLM\...\Steam App 463390) (Version: - Keinart Lobre)
Oniken (HKLM-x32\...\Steam App 252010) (Version: - JoyMasher)
Ootake ver2.69 (HKLM-x32\...\Ootake_is1) (Version: - Kitao Nakamura)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 9.4.6.2792 - Electronic Arts, Inc.)
Out There Somewhere (HKLM-x32\...\Steam App 263980) (Version: - MiniBoss)
Outland (HKLM-x32\...\Steam App 305050) (Version: - Housemarque)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - )
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Phantom Breaker: Battle Grounds (HKLM\...\Steam App 329490) (Version: - MAGES.)
Phantom Breaker: Battle Grounds (HKLM-x32\...\Steam App 329490) (Version: - MAGES.)
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden
Portal 2 Publishing Tool (HKLM-x32\...\Steam App 644) (Version: - )
PPSSPP version 0.9.8 (HKLM-x32\...\PPSSPP_is1) (Version: 0.9.8 - )
PRE12 STI 64Installer (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Prerequisites for SSDT (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation)
Princess Remedy in a World of Hurt (HKLM\...\Steam App 407900) (Version: - Ludosity)
Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access)
Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.988 - Even Balance, Inc.)
Ralink RT5390R 802.11bgn Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.5.0 - Ralink)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Rayman Legends (HKLM\...\Steam App 242550) (Version: - )
Rayman Legends (HKLM-x32\...\Steam App 242550) (Version: - )
Rayman Origins (HKLM-x32\...\Steam App 207490) (Version: - UBIart Montpellier)
Recettear: An Item Shop's Tale (HKLM-x32\...\Steam App 70400) (Version: - EasyGameStation)
Recovery Manager (x32 Version: 5.5.0.5826 - CyberLink Corp.) Hidden
REED (HKLM\...\Steam App 501800) (Version: - PXLink)
Resident Evil 6 / Biohazard 6 (HKLM-x32\...\Steam App 221040) (Version: - Capcom)
Resident Evil Revelations / Biohazard Revelations UE (HKLM-x32\...\Steam App 222480) (Version: - Capcom)
Resident Evil Revelations 2 / Biohazard Revelations 2 (HKLM-x32\...\Steam App 287290) (Version: - CAPCOM Co., Ltd.)
Retro Game Crunch (HKLM-x32\...\Steam App 290040) (Version: - Rusty Moyher)
Risk of Rain (HKLM\...\Steam App 248820) (Version: - Hopoo Games, LLC)
Risk of Rain (HKLM-x32\...\Steam App 248820) (Version: - )
Roads of Rome 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
RogueKiller version 12 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12 - Adlice Software)
Royal Envoy 2 Collector's Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden
SafeZone Stable 1.46.1990.139 (x32 Version: 1.46.1990.139 - Avast Software) Hidden
SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition)
Sakura Angels (HKLM\...\Steam App 342380) (Version: - Winged Cloud)
Sakura Beach (HKLM\...\Steam App 377680) (Version: - Winged Cloud)
Sakura Beach 2 (HKLM\...\Steam App 407980) (Version: - Winged Cloud)
Sakura Spirit (HKLM\...\Steam App 313740) (Version: - Winged Cloud)
samurai_jazz (HKLM\...\Steam App 346450) (Version: - Blaze Epic)
samurai_jazz (HKLM-x32\...\Steam App 346450) (Version: - )
samurai_jazz (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\samurai_jazz) (Version: - )
Savant - Ascent (HKLM-x32\...\Steam App 259530) (Version: - DPad Studios)
Secure Download Manager (HKLM-x32\...\{E040B65B-8683-4228-8C33-D44A141E40EA}) (Version: 3.1.60 - Kivuto Solutions Inc.)
SEGA Genesis &amp; Mega Drive Classics (HKLM-x32\...\Steam App 34270) (Version: - Sega)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Shadow Warrior Classic Redux (HKLM-x32\...\Steam App 225160) (Version: - 3D Realms)
Shank (HKLM\...\Steam App 6120) (Version: - Klei Entertainment)
Shank (HKLM-x32\...\Steam App 6120) (Version: - Klei Entertainment)
Shank 2 (HKLM-x32\...\Steam App 102840) (Version: - Klei Entertainment)
Shin Samurai Jazz (HKLM\...\Steam App 354970) (Version: - Blaze Epic)
Shin Samurai Jazz (HKLM-x32\...\Steam App 354970) (Version: - )
Shin Samurai Jazz (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Shin Samurai Jazz) (Version: - )
Shipwreck (HKLM\...\Steam App 342490) (Version: - Brushfire Games)
Shipwreck (HKLM-x32\...\Steam App 342490) (Version: - Brushfire Games)
Shovel Knight (HKLM-x32\...\Steam App 250760) (Version: - Yacht Club Games)
SimCity 2000 Special Edition (HKLM-x32\...\{59D2C751-F7BE-4E9F-9C8C-1F16013802C7}) (Version: 2.0.0.1 - Electronic Arts)
Sir, You Are Being Hunted (HKLM-x32\...\Steam App 242880) (Version: - Big Robot Ltd)
sj_neo1 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\sj_neo1) (Version: - )
sj_neo3 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\sj_neo3) (Version: - )
Skype 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Sonic CD (HKLM\...\Steam App 200940) (Version: - Blit Software)
Sonic CD (HKLM-x32\...\Steam App 200940) (Version: - Blit Software)
South Park: The Stick of Truth (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment)
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\...\Steam App 6020) (Version: - Raven Software)
Star Wars Movie Duels 2 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Star Wars Movie Duels 2) (Version: - )
Star Wars Republic Commando (HKLM\...\Steam App 6000) (Version: - LucasArts)
Star Wars Republic Commando (HKLM-x32\...\Steam App 6000) (Version: - LucasArts)
STAR WARS Tie Fighter 95 Compatibility Fix (HKLM\...\{e54a1223-e3e6-4c2f-84ba-02c5c1c57da1}.sdb) (Version: - )
Star Wars X-Wing 95 Compatibility Fix (HKLM\...\{43b2876b-3e34-4e6e-ac3f-4da816b782e0}.sdb) (Version: - )
Star Wars X-Wing Alliance (HKLM\...\{a218c2db-d769-44eb-b757-b7fc41b6596c}.sdb) (Version: - )
Star Wars: Dark Forces (HKLM-x32\...\Steam App 32400) (Version: - LucasArts)
Star Wars: The Force Unleashed Ultimate Sith Edition (HKLM-x32\...\Steam App 32430) (Version: - LucasArts)
STAR WARS Battlefront II (HKLM\...\Steam App 6060) (Version: - Pandemic Studios)
STAR WARS: X-Wing Alliance (HKLM-x32\...\Steam App 361670) (Version: - Totally Games)
STAR WARS: X-Wing vs. TIE Fighter (HKLM-x32\...\Steam App 361690) (Version: - Totally Games)
Stealth Bastard Deluxe (HKLM\...\Steam App 209190) (Version: - Curve Studios)
Stealth Bastard Deluxe (HKLM-x32\...\Steam App 209190) (Version: - Curve Studios)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Strider (HKLM\...\Steam App 235210) (Version: - Double Helix Games)
Strider (HKLM-x32\...\Steam App 235210) (Version: - Double Helix Games)
Super Cyborg (HKLM-x32\...\Steam App 341550) (Version: - Artur Games)
Super Furball (HKLM-x32\...\Steam App 364770) (Version: - Dustin Gunn)
Super Meat Boy (HKLM\...\Steam App 40800) (Version: - Team Meat)
Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - )
Switch Sound File Converter (HKLM-x32\...\Switch) (Version: - NCH Software)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM-x32\...\{F89CDED6-B1F1-489F-BA44-698BF6A737C2}) (Version: 6.1.6.0 - Husdawg, LLC)
System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games)
Taimumari (HKLM\...\Steam App 375520) (Version: - TERNOX)
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
Teslagrad (HKLM-x32\...\Steam App 249590) (Version: - Rain Games)
The Elder Scrolls IV: Oblivion (HKLM-x32\...\Steam App 22330) (Version: - Bethesda Game Studios)
The GIMP 2.2.10 (HKLM-x32\...\WinGimp-2.0_is1) (Version: - )
THE KING OF FIGHTERS '98 ULTIMATE MATCH FINAL EDITION (HKLM\...\Steam App 222420) (Version: - Code Mystics)
THE KING OF FIGHTERS '98 ULTIMATE MATCH FINAL EDITION (HKLM-x32\...\Steam App 222420) (Version: - Code Mystics)
THE KING OF FIGHTERS XIII STEAM EDITION (HKLM\...\Steam App 222940) (Version: - SNK Playmore)
THE KING OF FIGHTERS XIII STEAM EDITION (HKLM-x32\...\Steam App 222940) (Version: - SNK Playmore)
The Legend of Dark Witch (HKLM\...\Steam App 420770) (Version: - INSIDE SYSTEM)
The Legend of Dark Witch (HKLM-x32\...\Steam App 420770) (Version: - INSIDE SYSTEM)
The Stanley Parable (HKLM\...\Steam App 221910) (Version: - Galactic Cafe)
The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe)
The Ultimate DOOM (HKLM-x32\...\Steam App 2280) (Version: - id Software)
The Way of the Pixelated Fist (HKLM\...\Steam App 365340) (Version: - Blaze Epic)
The Way of the Pixelated Fist (HKLM-x32\...\Steam App 365340) (Version: - )
The Way of the Pixelated Fist (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\The Way of the Pixelated Fist) (Version: - )
Thief 2 (HKLM-x32\...\Steam App 211740) (Version: - Looking Glass Studios)
Thief Gold (HKLM-x32\...\Steam App 211600) (Version: - Looking Glass Studios)
Thief: Deadly Shadows (HKLM-x32\...\Steam App 6980) (Version: - Ion Storm)
Thirty Flights of Loving (HKLM-x32\...\Steam App 214700) (Version: - Blendo Games)
Thomas Was Alone (HKLM-x32\...\Steam App 220780) (Version: - Mike Bithell)
Tiny Barbarian DX (HKLM-x32\...\Steam App 253350) (Version: - StarQuail Games)
Tokyo School Life (HKLM\...\Steam App 320760) (Version: - M2 Co.,LTD)
Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics)
Tomb Raider: Anniversary (HKLM\...\Steam App 8000) (Version: - Crystal Dynamics)
Tomb Raider: Anniversary (HKLM-x32\...\Steam App 8000) (Version: - Crystal Dynamics)
Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Crystal Dynamics Inc.)
Train of Afterlife (HKLM\...\Steam App 342360) (Version: - Zeiva Inc)
Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 3.9.11 - Tweaking.com)
Two Brothers (HKLM-x32\...\Steam App 259760) (Version: - Ackk Studios)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Uncanny Valley (HKLM\...\Steam App 359580) (Version: - Cowardly Creations)
Uncanny Valley (HKLM-x32\...\Steam App 359580) (Version: - Cowardly Creations)
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Valdis Story: Abyssal City (HKLM-x32\...\Steam App 252030) (Version: - )
Valiant Hearts: The Great War / Soldats Inconnus : Mémoires de la Grande Guerre (HKLM\...\Steam App 260230) (Version: - Ubisoft Montpellier)
Valiant Hearts: The Great War / Soldats Inconnus : Mémoires de la Grande Guerre (HKLM-x32\...\Steam App 260230) (Version: - Ubisoft Montpellier)
vb_12alt (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb_12alt) (Version: - )
vb_8bit (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb_8bit) (Version: - )
vb1 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb1) (Version: - )
viralbyte_prealpha0185 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\viralbyte_prealpha0185) (Version: - )
Visual SuperScript (HKLM-x32\...\{08487103-30FE-11D6-A320-0003476C59D4}) (Version: 10.9.00 - DAA Enterprises Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.3 - VideoLAN)
Voices from the Sea (HKLM\...\Steam App 348620) (Version: - Zeiva Inc)
Volume (HKLM\...\Steam App 365770) (Version: - Bithell Games)
Vox Populi Vox Dei 2 (HKLM-x32\...\Steam App 345120) (Version: - Great Cogs)
VVVVVV (HKLM-x32\...\Steam App 70300) (Version: - Terry Cavanagh)
Wanderlust: Rebirth (HKLM-x32\...\Steam App 211580) (Version: - Yeti Trunk)
WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.8050 - Broadcom Corporation)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.9.7 - WildTangent) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Xeodrifter (HKLM-x32\...\Steam App 319140) (Version: - Renegade Kid)
You Have to Win the Game (HKLM-x32\...\Steam App 286100) (Version: - Minor Key Games)
Youda Jewel Shop (x32 Version: 3.0.2.32 - WildTangent) Hidden
Ys Origin (HKLM\...\Steam App 207350) (Version: - Nihon Falcom)
Ys Origin (HKLM-x32\...\Steam App 207350) (Version: - Nihon Falcom)
Ys: The Oath in Felghana (HKLM-x32\...\Steam App 207320) (Version: - Falcom)
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {075D991A-2B50-4C98-9037-9B0BB015623B} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)
Task: {08F5D04C-06F5-48D4-BB7B-5629ECA569A9} - System32\Tasks\SafeZone scheduled Autoupdate 1460655965 =&gt; C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask =&gt; Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {184428B5-D804-4751-9CAA-A4B56B51DB96} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-larry_sk8@yahoo.com =&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {1E62D425-A733-400E-8595-50FB956296D9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {23CDB2A6-0A2E-429F-852E-9DE4B5CD686C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PendingActionAlert =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\PendingActionAlert.exe [2016-07-26] (HP Inc.)
Task: {29354504-EA72-465A-8893-3115226C8734} - System32\Tasks\SafeZone scheduled Autoupdate 1450376341 =&gt; C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software)
Task: {2D782937-1A54-48BC-8F20-9F92A286FE38} - System32\Tasks\avast! Emergency Update =&gt; C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-08-21] (AVAST Software)
Task: {3DFE59D0-04F6-48C8-B9BB-CEDD0EC070DD} - System32\Tasks\GoogleUpdateTaskMachineUA =&gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {492B8CA9-FEB7-4B40-899D-A73E875466BC} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon =&gt; C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [2015-03-11] (Tweaking.com)
Task: {60558755-AFA4-41DE-8517-DF096339661D} - System32\Tasks\CLVDLauncher =&gt; c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.)
Task: {74C5AF5E-8805-4EAB-9D4D-CB2AB4B1E211} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {799709D9-26DA-44DB-877E-F202146E71A6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB =&gt; C:\WINDOWS\system32\MRT.exe [2016-09-16] (Microsoft Corporation)
Task: {88F59A61-45B5-4F0C-8923-1FAA22746E36} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {8D066F4B-B442-4DA9-905E-63E49F0DB10D} - System32\Tasks\HPCeeScheduleForLarry =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {969E94B9-2A66-42F2-9164-3733BA9A9550} - System32\Tasks\GoogleUpdateTaskMachineCore =&gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {CB9BB12D-B00A-41CA-AF05-75F0DDC09032} - System32\Tasks\CLMLSvc_P2G8 =&gt; c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-07] (CyberLink)
Task: {D14D556F-3659-4E30-9896-5D26DD65F60A} - System32\Tasks\Private Internet Access Startup =&gt; C:\Program Files\pia_manager\pia_manager.exe [2016-09-24] ()
Task: {D1851579-51C9-4859-9610-87BF14BCC403} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job =&gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job =&gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLarry.job =&gt; C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 03:18 - 2015-10-30 03:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-08-04 01:25 - 2015-08-04 01:25 - 00127488 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-06-08 18:13 - 2016-06-08 18:13 - 00959168 _____ () C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-02-13 08:54 - 2016-02-13 08:54 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 21:17 - 2016-06-30 23:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-09-16 17:16 - 2016-09-07 00:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-09-16 17:16 - 2016-09-07 00:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-15 21:38 - 2015-07-15 21:38 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2016-08-21 07:05 - 2016-08-21 07:05 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-10-03 11:24 - 2016-10-03 11:24 - 03118360 _____ () C:\Program Files\AVAST Software\Avast\defs\16100300\algo.dll
2016-08-21 07:05 - 2016-08-21 07:05 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2013-03-01 16:25 - 2012-06-07 23:34 - 00627216 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2012-06-08 15:34 - 2012-06-08 15:34 - 00016400 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2016-07-01 23:09 - 2016-07-01 23:09 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\69512072.sys =&gt; ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\69512072.sys =&gt; ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Control Panel\Desktop\\Wallpaper -&gt; c:\users\larry\appdata\roaming\microsoft\windows photo viewer\windows photo viewer wallpaper.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\StartupFolder: =&gt; "Bluetooth.lnk"
HKLM\...\StartupApproved\Run: =&gt; "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: =&gt; "BCSSync"
HKLM\...\StartupApproved\Run32: =&gt; "SunJavaUpdateSched"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\StartupFolder: =&gt; "Dropbox.lnk"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "DAEMON Tools Ultra Agent"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "Steam"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "DS3 Tool"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "SkyDrive"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "Raptr"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: =&gt; "GoogleChromeAutoLaunch_F48C1A7A1E0E038756321FC900FDE017"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] =&gt; (Allow) LPort=139
FirewallRules: [{0EF6077B-987B-4C61-AEDF-D5912BB50FA5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{5889F8B3-AA0E-42A8-A92C-A683649ADF60}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{BBA9F43E-0D14-49AC-96FC-6E49E8FE4C90}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe
FirewallRules: [{A4E8E41C-DDB2-42D6-AD13-6CFF412858D2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe
FirewallRules: [{6D9048FB-7A43-41DC-9552-22CB1A0C33BD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nil-Ninjahtic\Nil-Ninjahtic.exe
FirewallRules: [{C76056AE-9AF1-423C-9D3C-30534FB1F122}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nil-Ninjahtic\Nil-Ninjahtic.exe
FirewallRules: [{44C24012-0065-49E6-8EF9-8222D8EEDB9E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic\Ninjahtic.exe
FirewallRules: [{743A746A-A1D5-4BA6-AB76-3E97BF79F195}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic\Ninjahtic.exe
FirewallRules: [{5E2D87C2-704D-45AF-99F7-5534B005DB9C}] =&gt; (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{F86661BF-33C3-450B-84B4-5E670CCCB54B}] =&gt; (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{AA41120D-E788-4552-A971-2EA4AC7F716C}] =&gt; (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{E1FAADB8-DF02-4533-98CB-5E20CEB4733C}] =&gt; (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{9714A2C1-CC9F-4CFD-AB18-5EE67236A6BF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\If My Heart Had Wings\AdvHD.exe
FirewallRules: [{8F08EF34-8FE5-4E65-902E-8B68A9E8081D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\If My Heart Had Wings\AdvHD.exe
FirewallRules: [{407FDDC4-759A-4848-A6F6-5F99B4846E62}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lone Survivor\LoneSurvivor\LoneSurvivor.exe
FirewallRules: [{0F66EE0B-53CF-45C0-8240-4B2AD5E654F7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lone Survivor\LoneSurvivor\LoneSurvivor.exe
FirewallRules: [{86DB6076-FAEF-4C5C-A786-A3FE82B598CF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FindingTeddy\FindingTeddy.exe
FirewallRules: [{85981C82-11B3-456B-BCED-959F828F0A5F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FindingTeddy\FindingTeddy.exe
FirewallRules: [{FD29F72B-9BF5-4E1A-837A-36D6CA9EBFAA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fairy Bloom Freesia\FairyBloomFreesia.exe
FirewallRules: [{99F8025B-1784-4B45-84B5-6A720E42E8F2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fairy Bloom Freesia\FairyBloomFreesia.exe
FirewallRules: [{CA4BAC6F-A861-4355-8E77-D1AC4A182080}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank 2\bin\shank2.exe
FirewallRules: [{7855BB59-6AF9-4223-80FF-15E669766D0A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank 2\bin\shank2.exe
FirewallRules: [{45442F74-09B7-4813-B3B8-5425875E625B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Dragon Trilogy\ddtrilogy.exe
FirewallRules: [{B4BC1FC1-5561-47FF-B1DC-9C086D886D52}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Dragon Trilogy\ddtrilogy.exe
FirewallRules: [{C9E9C38E-1569-4596-A300-FF92785F92ED}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Stanley Parable\stanley.exe
FirewallRules: [{1CDDCE97-6171-4E4A-8472-52A40FF7C332}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Stanley Parable\stanley.exe
FirewallRules: [{BAA99912-3C5C-41D5-A3DE-7FED04507E29}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Outland\Outland.exe
FirewallRules: [{B43BE00F-DF9B-4698-AC33-71B0D6AB7D0C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Outland\Outland.exe
FirewallRules: [{DC0AE094-7853-4B75-BD31-1831E5E48D7C}] =&gt; (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{07BF8AFC-4BF6-487C-BE2F-0EC6ACAFFACC}] =&gt; (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{21E97295-FC3D-48EB-9642-F7EF81DD3BF1}C:\program files (x86)\skype\phone\skype.exe] =&gt; (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{A4736736-EB0B-4732-9DD9-79EC23833D08}C:\program files (x86)\skype\phone\skype.exe] =&gt; (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{4EBA9D44-678E-4CE1-BAB9-1987B24B1037}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Vox Populi Vox Dei(a werewolf thriller) Episode 2\VP2.exe
FirewallRules: [{1827A483-598E-4AA1-BD0E-EE226DFD62D6}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Vox Populi Vox Dei(a werewolf thriller) Episode 2\VP2.exe
FirewallRules: [{F4C2025A-7230-4689-BF37-D8ECE8354030}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic Mind Tricks\Ninjahtic Mind Tricks.exe
FirewallRules: [{E98E4A1E-1F94-46D2-B5EC-EEA272F0AC39}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic Mind Tricks\Ninjahtic Mind Tricks.exe
FirewallRules: [{46C37C54-5761-4587-89DE-6EA8551BA5CA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Cyborg\Super Cyborg.exe
FirewallRules: [{89638B89-B14F-40F4-883F-62F86E476022}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Cyborg\Super Cyborg.exe
FirewallRules: [{86ACA568-8604-4742-87DB-FDBB87EEE8EB}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{8ADE810C-3814-4127-87AF-92AA6BEB2F72}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{47DE2D4B-07B6-4ED2-907E-C7AD11ECDBFF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{CCDD2AA3-3602-412A-B757-60B2803DB8A5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{A0ECA7D6-6DFA-46EF-B74A-80145DE50781}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{D3B2BDCD-C28D-459C-8522-8145B44AF024}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{D3DD1B6D-2DF8-4B71-8C35-6D9BEC67479E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{3644ED3F-D32E-4032-9B8A-6FB7D0E365ED}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{3EA3C457-C218-4884-9304-2F566BCB6B2D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dreaming Sarah\nw.exe
FirewallRules: [{6602E08D-9330-4D99-841F-6119177B4287}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dreaming Sarah\nw.exe
FirewallRules: [{A177DC3C-E40B-4527-866D-0881B3D614B4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero\HMH.exe
FirewallRules: [{BB979EB5-EF3C-463A-B0A1-F068ADBA9968}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero\HMH.exe
FirewallRules: [{7DA1C05D-BAB4-42D0-9526-94F75BDB6314}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero Two\HMH2.exe
FirewallRules: [{F6D4AA04-D7F5-4BEB-8C9E-62E73B88E0B5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero Two\HMH2.exe
FirewallRules: [{A41BDE77-77E1-490E-9D2E-1011BD7DC33B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValveTestApp207490\Rayman Origins.exe
FirewallRules: [{B6CD1E22-8E3F-4881-A7FE-AC188B12FCBF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValveTestApp207490\Rayman Origins.exe
FirewallRules: [{05BCE9D1-5032-4D90-A9D6-AAC952E4F0DA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe
FirewallRules: [{36B8D2BD-B3F3-4942-A6DB-2F90263AAA9C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe
FirewallRules: [{3BE5B64A-25AE-4CB2-ADB3-67E45F409EE7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\outtheresomewhere\ots.exe
FirewallRules: [{9AA3417A-34B0-4E83-B72C-E426CDCB5F0F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\outtheresomewhere\ots.exe
FirewallRules: [{D742297A-4E6D-4F92-9F64-619034576065}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\Editor.exe
FirewallRules: [{1EF95B67-C911-4C90-8BCD-99207E2A5696}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\Editor.exe
FirewallRules: [{496D3EEF-59D6-4A52-AC16-6F3D2DF3E5DD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\CameraObscura.exe
FirewallRules: [{777D9E20-FE17-46ED-86B4-FF5A3A912A1C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\CameraObscura.exe
FirewallRules: [{FF381581-BB75-45F8-B8D0-6ED8B1020B75}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shipwreck\Shipwreck.exe
FirewallRules: [{EAB11B4C-14DA-4441-A541-E024F1A90A3E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shipwreck\Shipwreck.exe
FirewallRules: [{A5F73DA9-CBDB-4E04-A344-9023E91488A8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{EC53A251-2F12-47F1-A8A9-5C4159912EE2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{90E0DE12-CDB8-4083-867A-A7CA172EFB4D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{292756F6-1525-4BBB-8AF9-1026C723E92D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{53500DD6-1B55-469C-8698-E9DF73ED689E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Furball\SuperFurball.exe
FirewallRules: [{8C5E396B-4898-4E28-BAF7-40251204D228}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Furball\SuperFurball.exe
FirewallRules: [{3468D1AA-75C3-4574-B38C-467173BEBC2B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Retro Game Crunch\Retro Game Crunch.exe
FirewallRules: [{E2647C1D-8E79-4863-A595-0DB80BFB941F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Retro Game Crunch\Retro Game Crunch.exe
FirewallRules: [{297ED99C-D69F-49D2-BB26-FFDF34BD3552}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jet Set Radio\jsrsetup.exe
FirewallRules: [{BEA8DE43-2500-4357-9C2C-08B8FB54CEC6}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jet Set Radio\jsrsetup.exe
FirewallRules: [{3CA1AC16-A3FE-4601-8583-CFD76140E833}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Squishy\bin\squishy.exe
FirewallRules: [{F0FAFBFD-9C53-495E-AFD1-A99EBECD85C1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Squishy\bin\squishy.exe
FirewallRules: [{5BE4B02E-120A-40C0-AF13-95A4755A0786}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Xeodrifter\XeodrifterSteam.exe
FirewallRules: [{4273A22E-3E53-45D7-9F67-437BEB41EE7B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Xeodrifter\XeodrifterSteam.exe
FirewallRules: [{0256C586-C4F3-437D-ABE9-9BCB7DC9F9A0}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing vs TIE Fighter\xwingtie.exe
FirewallRules: [{BA422FEC-451F-4004-A094-46C05ADA60C6}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing vs TIE Fighter\xwingtie.exe
FirewallRules: [{61B0EACF-D36D-4557-8C27-21351220703B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars X-Wing Alliance\alliance.exe
FirewallRules: [{BF238D38-CC0A-4F46-B518-E5F14FA9DA54}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars X-Wing Alliance\alliance.exe
FirewallRules: [{1ED0C2C9-1019-4D3C-BB1F-095A2B2619F7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\classic\DOSBOX\dosbox.exe
FirewallRules: [{A3850039-1D8C-428D-8C60-2DA8DFDDF440}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\classic\DOSBOX\dosbox.exe
FirewallRules: [{F455E5E4-0951-41B7-9E9C-9A041D997176}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\remastered\TIE95.EXE
FirewallRules: [{1F59C5C8-B533-4AC9-9435-564D26473A61}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\remastered\TIE95.EXE
FirewallRules: [{D5EFE587-ED0E-4147-A5A8-B03909E06F1F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\classic\DOSBOX\DOSBox.exe
FirewallRules: [{B3EE7C25-1483-4132-9F6F-E2C442E4A7BA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\classic\DOSBOX\DOSBox.exe
FirewallRules: [{97B32F81-FC46-4130-A76E-876EE4D0B4BC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\remastered\XWING95.EXE
FirewallRules: [{73BEBBAB-D481-4166-8E87-49986FCBB24F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\remastered\XWING95.EXE
FirewallRules: [{D87056C2-F30C-4316-A701-C3B5EA8893B3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{D6415D2D-033F-4F5E-8B90-43D8C07DB0DA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{34147962-D27A-4BFC-A718-416A9BCB53D1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{23EC7AB7-1DC0-4FAF-B84C-05E4969B3732}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{BFB8F87E-5D66-4F28-A0FD-3544C27AD029}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{D06B46AC-6D8C-4732-8F80-839FC631F5B5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{3F0B3205-E347-4E66-A6C1-6AE3B348FF19}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\JumpBoxer\JumpBoxer.exe
FirewallRules: [{275BF4A8-1210-48C8-8EFC-F48AAFAC8827}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\JumpBoxer\JumpBoxer.exe
FirewallRules: [{338EE021-978E-4371-A763-B6A992C84254}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Way of the Pixelated Fist\The Way of the Pixelated Fist.exe
FirewallRules: [{DD5B160E-A07D-483B-8F86-5B3A5B6DA0CD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Way of the Pixelated Fist\The Way of the Pixelated Fist.exe
FirewallRules: [{E955A8D1-F148-4A41-A855-4470EEAA5F53}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Freedom Planet\FP.exe
FirewallRules: [{ACDE6C61-F61D-476B-8A72-B5BE3A20DBF8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Freedom Planet\FP.exe
FirewallRules: [{12B01F03-808E-4E33-9731-D7AD707BFAC9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\POSTAL2Complete\System\Launcher.exe
FirewallRules: [{EEF3BB79-78E1-4796-AA4C-9AECB56AC21F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\POSTAL2Complete\System\Launcher.exe
FirewallRules: [{878D5408-A6AA-440D-AF60-9C0C5FEC722D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{FC97911B-4B2E-448F-BC66-AA12C36EF12F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{3BF67632-7D06-4062-B541-4F5B8830E551}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shin Samurai Jazz\Shin Samurai Jazz.exe
FirewallRules: [{115C10BC-0BB0-431A-8E1B-377160CF0630}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shin Samurai Jazz\Shin Samurai Jazz.exe
FirewallRules: [{856FB0E8-EE37-495E-AE85-C3EA4C763A8A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\An Imp A Fiend\An Imp A Fiend.exe
FirewallRules: [{1C139F6C-3CCD-4DDF-A072-EA7F63FE7A44}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\An Imp A Fiend\An Imp A Fiend.exe
FirewallRules: [{C0BAC311-9989-4C53-B8DC-A930562853FD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DB Xenoverse\DBXV.exe
FirewallRules: [{E313E884-EEF8-4CF5-84DA-0F12DE8CBE55}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DB Xenoverse\DBXV.exe
FirewallRules: [{8C06E926-29F6-45A9-883A-6E821FD4885B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{A901470E-4FD2-4C56-B7F2-9366A554B18B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{382F7FB8-82A4-4AD7-8230-A70CDC410839}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Broken Sword Shadow of the Templars\bs1dc.exe
FirewallRules: [{AF658B59-3C10-407C-BF0A-C0D67BCEEC16}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Broken Sword Shadow of the Templars\bs1dc.exe
FirewallRules: [{8EEBC5DA-278C-417A-926A-5EA9E897D199}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castle In The Darkness\CastleInTheDarkness.exe
FirewallRules: [{8D4A0BF8-629D-4135-98FF-8D48B30A4C6B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castle In The Darkness\CastleInTheDarkness.exe
FirewallRules: [{44E4820F-520D-471E-AA09-DD73B074F8F7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{209D1561-452C-4D19-AECD-10D2A1969987}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{1E3BACCD-9926-43BC-97C2-7F1C0A941B22}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oniken\Oniken.exe
FirewallRules: [{4DE459D5-95CA-4603-A423-26EEB3CF3847}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oniken\Oniken.exe
FirewallRules: [{35158701-DE38-40CA-A486-3675ADBA3956}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The King of Fighters'98 Ultimate Match\KingOfFighters98UM.exe
FirewallRules: [{1C919114-8913-4875-84AE-7C1789A943E1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The King of Fighters'98 Ultimate Match\KingOfFighters98UM.exe
FirewallRules: [{9EE5E0D7-B775-42F5-8826-F412FED90EB1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{C348795F-2ECF-4EAB-ADE4-BF6F2E82FC80}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{989A0733-5130-479D-A825-F0A6260570B3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\samurai_jazz\samurai_jazz.exe
FirewallRules: [{C4CF95A4-2323-4809-876C-AC9727961B40}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\samurai_jazz\samurai_jazz.exe
FirewallRules: [{3C038959-25A0-429D-A772-5B307A10A144}] =&gt; (Allow) LPort=52000
FirewallRules: [{E1D42D4C-2F2B-45A2-B72C-48979BFB93F7}] =&gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8663D3DF-1B7F-45C3-B8A9-54D8A3DE7BE2}] =&gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D629B735-2245-4368-8B88-39ECDCDFC828}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BlazBlue Calamity Trigger\BBCT.exe
FirewallRules: [{A7347199-1812-4794-9592-78BD19BC5F5A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BlazBlue Calamity Trigger\BBCT.exe
FirewallRules: [{D240A7E5-37B1-49FB-909B-DC5CD6DEE4BC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fortune Summoners\sotes.exe
FirewallRules: [{E216E925-34C7-4179-8F63-51CB344489D7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fortune Summoners\sotes.exe
FirewallRules: [{3E80155D-86E0-4F67-AB49-CF788A7540E8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\custom.exe
FirewallRules: [{41DBD859-DB08-4BEA-8726-C4CC12476C11}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\custom.exe
FirewallRules: [{D53912C1-C4E0-429A-B18B-09E1C97B9C2F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\recettear.exe
FirewallRules: [{C1756E41-C763-4164-B6C7-FA79C0C6A0B7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\recettear.exe
FirewallRules: [{8F17E465-8B59-4893-9523-8BC8B096F02B}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [{18BF1F9C-02AF-4415-829B-D1302ED140D1}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [{088634E6-0627-4EA8-BEDC-AD8897885CA8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{0C5655F2-07B2-4914-A4C2-F8081B8C49E5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{89B24A4F-98F6-44B9-93A2-12ADBA591A1A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Need for Speed Undercover\nfs.exe
FirewallRules: [{7E871F28-6AAF-4E69-942F-87CA24EC3682}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Need for Speed Undercover\nfs.exe
FirewallRules: [{5123915B-538B-4E98-A292-1C9C8CE4D760}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\1001 Spikes\1001 Spikes.exe
FirewallRules: [{CD55B003-4C1B-419A-8DFF-DCABF7B4C4CD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\1001 Spikes\1001 Spikes.exe
FirewallRules: [{54E9809F-C552-4F6A-94D1-2F1F1FF06439}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{6FE65681-CD81-4EFB-B422-5B5DDDAA07D2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{8832DD1F-AA14-4C65-9CD4-01AC35DF958F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{362CF6F6-A9F8-40C7-869D-37C4F10149F2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{30F436F4-AD6D-4D94-98BE-332EF330FAD4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{85342751-80D4-43AD-80B2-B8EA74D226C9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{08CC779C-F9B7-4B7F-93A8-0C0178C99224}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CT Special Forces\CT Special Forces.exe
FirewallRules: [{7429FBD8-7A66-4D1B-92AA-57089130E2CA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CT Special Forces\CT Special Forces.exe
FirewallRules: [{2F5C994C-047D-4FCD-A7F4-0B4B126C362E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{F9753B85-E0C3-4B5F-90D5-9100DD5B2821}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{EB30C7BF-7D04-4F43-8F67-A8C0999DB33D}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [{C1DD2017-9657-4326-A963-0A22808C95D5}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [{225998FE-F543-4FDA-97B8-727E57D57450}] =&gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{480D88CB-70FA-44BB-8327-EED89E32954C}] =&gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{114CA1FF-38D5-4FDB-973B-94DA865A90F5}] =&gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{1A8EF6D7-63DC-4111-8558-FB31FC9A46E7}] =&gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{4AF08277-4AD9-4E51-A1A9-4A7F54FEE3B2}C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe
FirewallRules: [TCP Query User{B4D2DB9A-BF92-423B-A65C-ED214EC474AE}C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe
FirewallRules: [{638CA45F-DB3A-42EA-A29D-CA3FA0616241}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe
FirewallRules: [{C785B067-97F6-4ACA-935E-505E9626180E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe
FirewallRules: [{4799DE5D-8BD6-4953-929B-64CCF23385A8}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{176954AC-0FF6-4A63-B693-2B85A26C1EEA}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{5A1EB43E-6104-46E6-A310-4BCE4ED7BCB2}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{96334709-01E6-4CFC-BA4E-289837FEE055}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{63CC2D1F-2909-4A66-9DFC-126D4B2BAF70}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FIST OF AWESOME\fistofawesome.exe
FirewallRules: [{8910B349-730C-4D53-A1C2-8D9E80E5D2DC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FIST OF AWESOME\fistofawesome.exe
FirewallRules: [{EDB891AB-2B09-47BE-9D61-ED948C1CCEBC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\You Have to Win the Game\TheGame.exe
FirewallRules: [{5EA5A9CC-7AAC-4067-9C16-D409AF47C7CA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\You Have to Win the Game\TheGame.exe
FirewallRules: [{E1BFD540-A86F-4434-BE69-F5D3B575824C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GrooveCity\GrooveCity.exe
FirewallRules: [{D7DD3C7E-94EE-4185-B2D6-E0A219154420}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GrooveCity\GrooveCity.exe
FirewallRules: [{A201FFEA-DBD2-4C4B-B1A9-DA35AA3A35BF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ElectronicSuperJoy\ElectronicSuperJoy.exe
FirewallRules: [{4A81696B-0BBB-4E49-BC98-26F7CF8F4BD9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ElectronicSuperJoy\ElectronicSuperJoy.exe
FirewallRules: [{442FABE1-E930-430D-AFE4-501FA8C4FBEF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXSettings.exe
FirewallRules: [{A4057A54-1735-462D-87DA-D05D6B295A74}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXSettings.exe
FirewallRules: [{90B924DE-D995-4F89-B060-9535227F2C10}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXReflex.exe
FirewallRules: [{B0538A94-9A71-4947-ACA4-0D74BE3367F9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXReflex.exe
FirewallRules: [{0788CE23-D95B-45F7-8593-8C52F292509C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_2\thief2.exe
FirewallRules: [{BAD67B92-0D69-4878-A397-75F34CAE4ABD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_2\thief2.exe
FirewallRules: [{1C2651D2-64CA-41E8-AA8A-342E39393558}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Thief Deadly Shadows\System\runme.exe
FirewallRules: [{8C157CCE-C8BB-4F61-B689-3046B81C2BD7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Thief Deadly Shadows\System\runme.exe
FirewallRules: [{A85DED29-6C99-4CDF-8FEB-96ED00D1A2FA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TinyBarbarianDX\TinyBarbarianDX.exe
FirewallRules: [{DC46E70E-6EB5-4D9D-861A-C4154AB0DE4B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TinyBarbarianDX\TinyBarbarianDX.exe
FirewallRules: [{9C5959A1-E3C1-4547-BA89-1A77A761596F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Two Brothers\TwoBrothers.exe
FirewallRules: [{ACA2BAC9-B93B-4599-B604-C80278DFF892}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Two Brothers\TwoBrothers.exe
FirewallRules: [{D9A85349-C5D2-4DC4-BFC6-DD4547FC583E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Momodora III\Momodora3.exe
FirewallRules: [{95CEC0A2-D91D-4465-BA3C-573F38AEF15C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Momodora III\Momodora3.exe
FirewallRules: [{CF0588DA-0716-4620-B513-DFA353470612}] =&gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{0C45D221-1890-42D4-B522-FC574789671F}] =&gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [UDP Query User{FFE88B0E-DAA1-48C8-AD85-6A4FC6548698}C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe] =&gt; (Block) C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe
FirewallRules: [TCP Query User{25BF361E-CE81-48D3-89FB-A6A85C88C9DC}C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe] =&gt; (Block) C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe
FirewallRules: [{BF854F6E-70E3-4AD7-B300-C8D3B01A6204}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_gold\THIEF.EXE
FirewallRules: [{A2BDB59C-BC4A-4AE6-A8F6-8B5CA8B3AFA5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_gold\THIEF.EXE
FirewallRules: [UDP Query User{3B83B8EB-C0E3-4A50-959F-94BE2CC6777F}C:\visual superscript\app\alchemy\alchemy.exe] =&gt; (Allow) C:\visual superscript\app\alchemy\alchemy.exe
FirewallRules: [TCP Query User{8E47FFB2-D1D3-4377-911F-5B685EF53ECF}C:\visual superscript\app\alchemy\alchemy.exe] =&gt; (Allow) C:\visual superscript\app\alchemy\alchemy.exe
FirewallRules: [{FE60C2C8-AB57-499E-B4BD-9F85DE1F6DB4}] =&gt; (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\WDExpress.exe
FirewallRules: [{A9BAAD8E-D490-41EF-A3C1-6785229A2CA5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\config.exe
FirewallRules: [{B4C08B89-F287-4D21-B6EA-9F01AB57F822}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\config.exe
FirewallRules: [{D3BA4B9A-E7A9-4159-95A1-3FE0BF815469}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\yso_win.exe
FirewallRules: [{49AE4328-1B1E-4756-89FB-FB1AA666F11A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\yso_win.exe
FirewallRules: [{BD769EE6-D384-4EC9-875E-E11FFB8FA60E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{93D556BC-0967-4E90-8AA9-B0B213599271}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{53B49FBF-1BCD-47E5-920A-2BFDD4D5FCC5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\King of Fighters XIII\kofxiii.exe
FirewallRules: [{37F2B364-E18C-4ED2-A503-8572ED5F2969}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\King of Fighters XIII\kofxiii.exe
FirewallRules: [{9EA2E8E2-761A-4F4A-A989-BF2381CBCCD2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{887D642E-912A-4643-9399-D13D1AFB404D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{1CB5B73B-03C6-4813-9F6A-076EAD3D34B5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Love\Love.exe
FirewallRules: [{B465F372-3066-4FEC-991B-22BBA4131B36}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Love\Love.exe
FirewallRules: [{A8480151-5F87-44FE-9593-CD3732EEA23E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{F183A65E-84D3-46D6-BF25-6D17C3412ED0}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{B3B80939-CD0C-46AC-9B8E-3B66ADC16673}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Escape Goat\EscapeGoat.exe
FirewallRules: [{2C7BE740-3EED-4D27-A52A-9827DEACBA68}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Escape Goat\EscapeGoat.exe
FirewallRules: [{F7BFD9AA-8919-4192-90F9-D769FCF10FCA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oddworld Abes Exoddus\Exoddus.exe
FirewallRules: [{23EE3987-8BA0-4E08-8CE7-10E9A787D147}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oddworld Abes Exoddus\Exoddus.exe
FirewallRules: [{EE3BFCF6-A67F-4D57-9DFA-B58BBD7C4E55}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagionds.exe
FirewallRules: [{5A9F3A44-1DBC-437F-9865-44B7EBCA281C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagionds.exe
FirewallRules: [{381E9464-736D-4C88-A719-C1246BC6663E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagion.exe
FirewallRules: [{A76A68BA-6193-499E-9B2A-CA31469C76DD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagion.exe
FirewallRules: [{DFFE72C0-9CBE-4309-9BD9-AA2BB4E9FE99}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metal Slug 3\mslug3.exe
FirewallRules: [{257FEA70-BD91-413C-8D17-9DB8761307BA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metal Slug 3\mslug3.exe
FirewallRules: [{CD13FFA3-E4C0-4500-B767-BAEA6C95629D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Teslagrad\Teslagrad.exe
FirewallRules: [{3C76DD35-EC71-42CC-B610-273BCEE56E35}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Teslagrad\Teslagrad.exe
FirewallRules: [{83FC4765-F96F-4C43-83A7-1A53F30AE556}] =&gt; (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
FirewallRules: [{5D4A969E-5C98-4C6D-BF49-8060BB299B44}] =&gt; (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
FirewallRules: [{11824D30-E1A3-4844-9088-F0FC54B0272E}] =&gt; (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{88C810C8-52BC-40AA-BA94-FEC973683046}] =&gt; (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{163465E1-0605-4C52-B261-8F4D86EEBF1E}] =&gt; (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{9ADFFD98-538F-47A3-82B9-53F2B1350A0E}] =&gt; (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{AA8CDCBA-50E6-4FC8-837E-A78C92C971F8}] =&gt; (Allow) c:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{67F600D7-1FE5-4CF0-A969-C51404A19A09}] =&gt; (Allow) c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{9604DF96-9CE3-4E1E-A958-7337C4FD66BD}] =&gt; (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\VSWinExpress.exe
FirewallRules: [{F91B57AE-1A82-4BC9-8849-3AF43F7E7B66}] =&gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{81EDAACA-741D-403B-AFB3-55AA251B397D}] =&gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{7366FC16-FFCA-4955-96FA-6CF297ADCCE1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{97D2FDE0-1915-4518-BDC8-5253C4B91CFC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{97A5EEC3-6098-4E92-98E9-692558C54978}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{9D3CF9D6-3B5B-47C6-8934-B57A1077667D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{04580488-D3D2-4B92-807D-6BF8165804E4}] =&gt; (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{8E9CAD25-225E-4932-8E8B-295AC657B8C0}] =&gt; (Allow) LPort=2869
FirewallRules: [{62A55709-A362-4B78-B7A3-5052FC82963D}] =&gt; (Allow) LPort=1900
FirewallRules: [{1FC0B3A2-08DD-4422-B7FA-D897BA0F88CA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win_dx9.exe
FirewallRules: [{0FFC8B9D-F699-4375-BF34-64FD51F54521}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win_dx9.exe
FirewallRules: [{836F8D02-2262-4021-86A3-DD602D96E8C6}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config_dx9.exe
FirewallRules: [{B1D6FFBC-0B4C-4F33-B0A8-B87DDA89F259}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config_dx9.exe
FirewallRules: [{C91BFFFE-F39A-4DFE-857F-532AE9253C25}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win.exe
FirewallRules: [{ACCDE3D2-25F3-4852-B3B6-AF2533D2F5AA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win.exe
FirewallRules: [{ED9F0E4C-02FB-43A2-B2B1-D6C54D75B544}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config.exe
FirewallRules: [{0C1D636A-121A-4D46-BBCC-F558EB1E144A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config.exe
FirewallRules: [{6E5EDDFE-7C66-4D51-928D-59F2F14D9F5E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\StealthBastardDeluxe\StealthBastard[Steam].exe
FirewallRules: [{ADFF15DC-5177-4097-A2B1-0163A1B019A9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\StealthBastardDeluxe\StealthBastard[Steam].exe
FirewallRules: [{915A115C-8056-40DB-AC45-E31BD4BD515D}] =&gt; (Block) %ProgramFiles%\MotioninJoy\ds3\DS3_Tool.exe
FirewallRules: [{C008ED5D-03AE-4D2A-8D8A-2A326A16AE6B}] =&gt; (Allow) C:\Users\Larry\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{C0AEE969-D37E-4BC2-9862-D61D684FFA1C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Anodyne\Anodyne.exe
FirewallRules: [{074CFB25-0595-4F8F-AED1-1AC76D380AA3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Anodyne\Anodyne.exe
FirewallRules: [{D88F77B0-E100-44F4-867B-17D949B75011}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ.exe
FirewallRules: [{0CEEE66E-BCC4-426B-86EE-3E89E4D5BE88}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ.exe
FirewallRules: [{ECD054A5-7215-4CE9-A318-BB0FA4EEA482}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ_LaunchOptions.exe
FirewallRules: [{46EECAB7-3E41-415E-8AA2-8FECBCD03E63}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ_LaunchOptions.exe
FirewallRules: [{9839C6E8-A222-4B2C-9E0A-345463793C58}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil 6\BH6.exe
FirewallRules: [{C64A37E2-5272-4E71-94EA-1A8F58F93974}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil 6\BH6.exe
FirewallRules: [{A298A6EC-4060-4B15-97F8-D4B94C43F3E3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{C3C2DC8C-01F5-4DDF-9B1A-08A39A17C84A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{8240E77B-2CAD-438F-9915-7707357C8EA7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{6870AB9E-B40F-4B00-9294-E116FF099EA8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{3CD11A81-606A-4130-98E6-A3D7C093BEFF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{E511389F-3BB1-4D6C-8CFB-D7824F8DE152}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{53F82CC2-362B-49BC-BADD-3C714545B5A1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Limbo\limbo.exe
FirewallRules: [{983161F2-2BF2-40CA-B38F-6FAF21B5E7D4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Limbo\limbo.exe
FirewallRules: [{280ED4D1-D052-4727-9F8B-735AB86FAC23}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\deadspace2.exe
FirewallRules: [{A618B880-78AA-4BC9-A430-866217ECBCDA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\deadspace2.exe
FirewallRules: [{73DD075E-E43C-4680-8F0C-F5DA59B5CDD4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{49EE3071-8BF2-4356-9EB3-F4B7E31EC8D7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{8548A3F0-3655-4E7A-8630-EB10FE88B5D5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{72164584-3FBF-49FA-B851-FEE36E5B4D5C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{C9D56F24-DD7D-41B5-AAB2-63AA6204A339}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{155676F3-706C-4395-A0C7-591DC92D83A2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{69E580F1-622A-4C38-A890-CC4028901682}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{B812957A-951C-4BA6-AFB4-D1E409604F88}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{1B18842F-6A03-41C8-BD69-D7A26DF0ABA3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{B459097F-C9A5-4975-BC59-AE6DF128FC1D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{4989E59D-2C68-4E5C-ADD9-8103E790A322}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{6144BCFC-4A89-42F3-9F6C-2E3C0CEEC891}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{E2BBA099-3741-40D8-9AE7-9FD8306F5A64}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7AA13757-689F-41A4-B215-FADE1A63F7F9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{CD999D41-50FB-47D8-B2A8-001AEFED0088}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{C3AC0E86-D156-4E1D-95BA-424AFD3E5247}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{38DC3997-696D-47B4-9211-EDF80351D7D8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{9CFCD33D-FE39-45F3-ABF5-25347E5EC118}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7AE396A7-5F80-43CD-AD37-93DAEF9D0F24}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{7AAECEA9-6576-45D8-938F-562D19293FA1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{3E49FB77-C2F6-411D-8814-7473F162B589}] =&gt; (Allow) C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1BEC189F-0CEC-4D11-877D-D965DEB672A7}] =&gt; (Allow) C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{600C76A5-7294-4A28-8F15-713E16378E80}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alan Wake\AlanWake.exe
FirewallRules: [{915EB6C9-D597-425A-960F-5B4CAA3DE495}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alan Wake\AlanWake.exe
FirewallRules: [{EA360347-BE36-4097-BDB2-2C962463E11F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{CB5C9108-FE59-444B-AD97-D04CB9F0B812}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{F36AA84E-F377-404D-9CAA-6090861CAE7A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{65694604-A37B-44CD-BFB6-8F8CBB52C4DA}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{AD77F736-E554-4AD8-B9BE-F4E78376109F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Underworld\tru.exe
FirewallRules: [{C2B0C549-0C34-4AB1-872B-A928BCDA3C0D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Underworld\tru.exe
FirewallRules: [{9BE7A42E-CD04-4932-9959-EFFC1C8F1FDF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{B3731C54-B4DD-4BB6-8D78-7A75CD13AD2A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{FB03C28A-E22D-4AE2-BBFB-69B00CB0BF0C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{98DA2FAA-151A-45E8-BE21-241A85285F96}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{D7DCF6B1-278F-43E7-9C37-B9AA59325474}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{C3A6DDA9-8415-42B0-9980-520CE08FB1A3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{8A37C3FB-986D-4E7F-8807-D30D9ED7FEC8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{53102A59-329A-48DC-8901-716C34DECE1F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{A133E5A7-94C4-4B2F-A557-0EFC8E632FE7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{D5CF1F03-6795-43C2-ABAE-8F1A82F0941E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{09C16AE2-3D34-407E-997A-19C55C67FFB1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{D1BEE3CD-A622-4FBA-A583-C1798854827F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{1B338568-A407-4345-A278-289B7EC3ECE9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{132E5464-8B17-4428-9AEC-4F02BAB80158}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{36E00AFA-8061-4B5F-998E-042FA6CC37CC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{E80B2E17-CF90-4613-92FF-DC9EB4DBF1DD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{BF2167B3-7FC3-4F94-A781-1AEF5E91F616}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{D71CDC1F-B2BF-416D-A1FC-17B54335E411}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7F983EEA-ECD7-49CB-B026-FF689610364B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{794ED5F0-532B-4224-95F6-CAA5AE5623CB}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F3439706-CB6E-44A3-9362-2073405CA825}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{4C3111CE-9110-4CEA-956B-550A4132897F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{8A4B5127-25AC-4E5A-9756-8075271EE188}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7BDE7339-2075-4581-95A0-EA68DFED148B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{9BB78608-18C5-4430-9A5C-CEAF3B140719}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{60BE39AA-1C31-4483-B100-4BFBEDF77936}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{42033EBA-40DF-40D6-ACFE-42224D4F44AD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe
FirewallRules: [{F8A44200-6C12-41B2-9DCA-CFACB6E1BCB8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe
FirewallRules: [{52AE68B3-1B69-4D1B-8D64-1A32FD9D99E0}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\vvvvvv\VVVVVV.exe
FirewallRules: [{3DEB8D9C-F34C-4DE2-99A1-377782BF0C07}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\vvvvvv\VVVVVV.exe
FirewallRules: [{0213D724-8BDA-47A5-AF47-3D1AC2FB1827}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{BBE4FD1C-20D8-436F-89C6-66E52365DC27}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{35E05DF9-7800-4A02-BFD3-A7A737C92A0F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{508EC988-2900-4E85-8489-935C2608F62B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{32568851-74EC-46DA-8C79-D54B65E7B351}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{97C195AE-FF1C-4833-AEBF-E062801902B3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{55DCACA5-BF06-4354-9CD1-F355727E100E}] =&gt; (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{D12C2D00-93B9-45D0-8831-5711EEA548DF}] =&gt; (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{93F3B44E-97E3-4C35-A394-52E8313D957B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{92BE1EB1-A69D-4FD8-9465-9CE9298DDAD5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{524A1AFA-D654-45FA-B427-4EBFFDB50E8B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thirty_flights_of_loving\tfol.exe
FirewallRules: [{205B4E05-BA9C-4EC5-ADAA-7C6B6204B024}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thirty_flights_of_loving\tfol.exe
FirewallRules: [TCP Query User{6E201069-8F71-4728-86C1-D06927BD335D}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{EADC2EE8-485D-4E77-835F-884B89434D79}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [{D58E461A-1DAE-422E-A047-764AD9DBBA93}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero Siege.exe
FirewallRules: [{E779BDAD-C75F-4536-9870-5067355057C0}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero Siege.exe
FirewallRules: [{9E811CB6-2D50-47C4-A7EC-5FE6E745A27B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe
FirewallRules: [{E2955110-E2CE-48A7-8059-1B48209F0285}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe
FirewallRules: [{F3958969-024A-4A24-90B5-2162315D5B66}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\soniccd.exe
FirewallRules: [{084C28BB-045B-4766-9B12-07D131ABEDF0}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\soniccd.exe
FirewallRules: [{1E19C45B-1CEA-466A-BC77-8379A5321218}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\setup.exe
FirewallRules: [{FE4B7C99-6E46-435B-A120-581BCEE79343}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\setup.exe
FirewallRules: [{22A62D29-8D78-44AC-AE18-F54EAD77A1AD}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marc Ecko's Getting Up 2\_Bin\launcher.exe
FirewallRules: [{73CA7D23-EABE-4030-BA65-73ECDA1B5EAE}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marc Ecko's Getting Up 2\_Bin\launcher.exe
FirewallRules: [TCP Query User{67A3AA63-2302-4E6A-9316-9014C6B2F07B}C:\program files (x86)\java\jre7\bin\javaw.exe] =&gt; (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{CAA64890-3943-4FF9-AD30-8B3CD8C9B726}C:\program files (x86)\java\jre7\bin\javaw.exe] =&gt; (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{3386F220-96D2-47BE-91A3-F3BB8046D830}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castlevania Lords of Shadow - Mirror of Fate HD\CMOF.exe
FirewallRules: [{5627F61A-C1F4-4425-9F95-AE53B14AE10B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castlevania Lords of Shadow - Mirror of Fate HD\CMOF.exe
FirewallRules: [{A920D4CB-7614-4471-BB04-DEC52C3A76A3}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KOAReckoning\Reckoning.exe
FirewallRules: [{C0EE6BEF-EE47-4395-A95C-928860FA06D9}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KOAReckoning\Reckoning.exe
FirewallRules: [{8045CDA6-1E85-4D5F-B74E-589828FB1608}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe
FirewallRules: [{BDD0027F-34F0-4CA0-9E75-EE9042C90C4F}] =&gt; (Allow) C:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe
FirewallRules: [{7CFC1115-FFB7-4C1F-8D72-0D48F39132DE}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{F4A871E7-2EBC-4168-AD26-F4A5A63A9BA7}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{4DAFEA82-AE6C-4989-8756-6914C91FAC47}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{1C76F22D-35F6-474D-8F2E-6088E7A5B610}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{16E3CF75-AD10-4175-AD2E-8A658DB14A03}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe
FirewallRules: [{D1B1A798-4B8F-45C9-A415-2AAC43F39F9E}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe
FirewallRules: [{4B152BA6-609D-46C4-9927-4737554BC7EF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{89DB6ECE-76E4-4003-AD4E-8C1328DCF764}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{866720FB-ED09-4E67-8B8E-DE6008837714}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{98718E7C-E45C-4277-A056-EBD2E15A0188}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{508031C5-21F6-4A52-9C0E-187E0115B003}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{820E7F0B-7426-4444-9FFE-AE9BCE89060A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{46406700-F501-402A-8B0E-DD3D78675D10}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Wanderlust Rebirth\Wanderlust.exe
FirewallRules: [{2F573752-45DD-403B-AF9F-19AF0CE42B2D}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Wanderlust Rebirth\Wanderlust.exe
FirewallRules: [{F77A2A11-78A7-42BD-A874-1B6B80DABE42}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ultimate Doom\base\dosbox.exe
FirewallRules: [{89A61C9F-268C-4F76-9351-154F4458BA4F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ultimate Doom\base\dosbox.exe
FirewallRules: [TCP Query User{3066F080-92D2-44B4-844A-2CFD15211EC6}C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [UDP Query User{FAC6E15B-46AC-45E5-9432-7059906F8B14}C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [{139BB009-716D-4A40-8A2C-A4A0DA548933}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe
FirewallRules: [{8FD281C5-90F0-4227-8667-74FD8536B13B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe
FirewallRules: [{B3C3D8AB-7CEC-46A9-AA62-3CD754063E5B}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SavantAscent\Savant_Ascent.exe
FirewallRules: [{950FE4BD-4D44-4F6E-B2DD-4A5CF67F18C1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SavantAscent\Savant_Ascent.exe
FirewallRules: [{92D86D6E-8DFD-4C3C-884C-8E789EA415A5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mighty Gunvolt\MightyGunvolt.exe
FirewallRules: [{3D35DE83-BB84-4F75-AC4B-325F25EC67D6}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mighty Gunvolt\MightyGunvolt.exe
FirewallRules: [{FF5EB0B5-9302-495A-8687-B5CAEE3B006A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
FirewallRules: [{3DE58650-3AA4-4728-AB2D-47B70D0335E4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
FirewallRules: [{42D20004-B59F-4A38-AD9E-49835B0CA479}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe
FirewallRules: [{419B7452-358B-49D5-8223-658576C4E4B8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe
FirewallRules: [{7845AD15-6DFA-468D-811E-E08DE1D919D2}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Strider\Strider.exe
FirewallRules: [{4F8BFB86-84D5-488E-B834-46FB89F2EFFF}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Strider\Strider.exe
FirewallRules: [TCP Query User{ED7C8076-13AC-448E-92B2-DF3FF35D94EF}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [UDP Query User{9355581D-48C0-4F53-8CF0-28D87826FADB}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] =&gt; (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [{F4FF6BBB-677B-41A7-9382-742FF003251F}] =&gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6C9E508D-EAFE-4FAE-9A7E-C96D51A0E4D5}] =&gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8A6ACA45-C40E-47FE-BE25-9B1769B0EEB5}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank\bin\Shank.exe
FirewallRules: [{E4402AE9-9485-4A88-97FF-F84F51C42BD1}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank\bin\Shank.exe
FirewallRules: [{0B3B1E95-2F6D-4C00-826E-57E1F1E6A244}] =&gt; (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
FirewallRules: [{1F0CF866-F68C-42BD-BFB2-FAC20C54B032}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Uncanny Valley\PPA2IP.exe
FirewallRules: [{70705CBF-1FDD-4AAE-B385-483875955B64}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Uncanny Valley\PPA2IP.exe
FirewallRules: [{7D69D068-8EBE-4412-A19F-3E18DD6DA3B4}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Valiant Hearts\Valiant Hearts.exe
FirewallRules: [{30CEA0A5-15B0-486C-A984-149AC196C239}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Valiant Hearts\Valiant Hearts.exe
FirewallRules: [{39050684-2048-4090-A8D4-F7EBC34BC9D8}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Legend of Dark Witch\The_Legend_of_Dark_Witch.exe
FirewallRules: [{038DA5AF-54F8-46C4-8340-4C5F7212F29A}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Legend of Dark Witch\The_Legend_of_Dark_Witch.exe
FirewallRules: [{4CB992E6-EDB7-459B-B0B0-316BA6E4D88C}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\LIGHTNING RETURNS FINAL FANTASY XIII\LRFF13.exe
FirewallRules: [{06F3BA29-1773-4CE3-A217-4D6F463B8303}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\LIGHTNING RETURNS FINAL FANTASY XIII\LRFF13.exe
FirewallRules: [{D4607DCE-8D4B-476B-A9CD-F420926577AC}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Downwell\Downwell.exe
FirewallRules: [{520F444C-22CE-469B-8844-1B4E2B1FED1F}] =&gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Downwell\Downwell.exe
FirewallRules: [{2F063C9C-87A8-4A55-AB89-6B22729C032E}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Thousand Lies\One Thousand Lies.exe
FirewallRules: [{6FA0A08E-D0F4-4A50-A5FE-F7254DC8BA19}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Thousand Lies\One Thousand Lies.exe
FirewallRules: [{55B0D97D-53C6-4101-BBC5-C0A90496A1DC}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Taimumari\game.exe
FirewallRules: [{F0AD3657-90AF-4C13-8E6F-905D38FEFCD5}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Taimumari\game.exe
FirewallRules: [{C7AF8DAC-6D45-4121-9328-6664672AA3F4}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Momodora RUtM\MomodoraRUtM.exe
FirewallRules: [{B10EA7E1-9BB9-4C30-82E2-C14B6D7CE113}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Momodora RUtM\MomodoraRUtM.exe
FirewallRules: [{C98DCA5E-3CEF-43D7-AE2B-2E07DFC3C859}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon2015\ggn2015.exe
FirewallRules: [{A66CC206-1FFD-48C7-B1FC-D81D74599305}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon2015\ggn2015.exe
FirewallRules: [{E6C637A8-15CC-4570-AE0F-F7C044079212}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon\BGI.exe
FirewallRules: [{80D6F07F-5209-475A-B345-54CC955C3FDC}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon\BGI.exe
FirewallRules: [{323748B3-3F7C-4E30-A2E1-285A9AC00E35}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Angels\Sakura Angels.exe
FirewallRules: [{C1C0698A-AA14-4488-9E67-15064347EF1A}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Angels\Sakura Angels.exe
FirewallRules: [{188CF023-0731-42AB-9540-06AA93FA63E5}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach\Sakura Beach.exe
FirewallRules: [{F52B39FF-3B8E-4183-927D-E3167282CC0A}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach\Sakura Beach.exe
FirewallRules: [{7ED44A66-0677-4CCB-8EFA-455A8EE3A208}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach 2\Sakura Beach 2.exe
FirewallRules: [{95520395-DE9D-418C-A8E0-61C68444765D}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach 2\Sakura Beach 2.exe
FirewallRules: [{8818BCAB-35F3-4DEB-B4F2-308164A61441}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aozora Meikyuu\Aozora_Meikyuu.exe
FirewallRules: [{F1E0D1AE-9D9E-44F0-BC09-7D87D7C70D47}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aozora Meikyuu\Aozora_Meikyuu.exe
FirewallRules: [{91ABF70F-6027-46FD-8747-6C7761CB599D}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm7.exe
FirewallRules: [{3948269E-204D-49ED-B8AB-B176C3F6DE97}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm7.exe
FirewallRules: [{1CA4FE01-DAA9-4642-8CB3-BBEB99BD98C4}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm5.exe
FirewallRules: [{5F6384E6-57EE-45A4-8E95-1EE1DF523CA7}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm5.exe
FirewallRules: [{F5E9E614-1173-438A-8157-C450B0E5385E}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Volume\Volume.exe
FirewallRules: [{4E9532A2-4811-45B3-95BD-18504415EBF5}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Volume\Volume.exe
FirewallRules: [{13B3EC50-D712-4919-B854-A36E1F333C59}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tokyo School Life\TSL.exe
FirewallRules: [{3A9ECB4C-E576-4165-9B9C-CC4326A5CE2B}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tokyo School Life\TSL.exe
FirewallRules: [{504C7491-C95F-4F17-BFC1-52E07EDDD831}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Master Spy\MasterSpy.exe
FirewallRules: [{E6E0F02D-09CA-4D42-AC86-7FA9A81CE93D}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Master Spy\MasterSpy.exe
FirewallRules: [{EB0CC5CD-8557-4766-B1B8-09C62E4B7D5F}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\LiEat\LiEat_Launcher.exe
FirewallRules: [{BE412131-B427-4118-999C-73E12827FD06}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\LiEat\LiEat_Launcher.exe
FirewallRules: [{936DBEF1-FC7F-4325-8B2B-7D9BEBD3B857}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\DISTRAINT\distraint.exe
FirewallRules: [{7CA935EE-D672-4797-ABD8-AB8F5705BFBA}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\DISTRAINT\distraint.exe
FirewallRules: [{FA18B7FB-D7A1-462A-A36C-4DDF4070A622}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Ruler\Game.exe
FirewallRules: [{7B35CF90-F78C-4562-82CD-5E60FB5F2ACC}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Ruler\Game.exe
FirewallRules: [{189E258C-DEFE-45C1-8E2A-050995B27216}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{C333916B-BD4F-40BC-A999-68E63FDBD0B9}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{774D9074-E07D-4F71-86F3-2C71C8CFA376}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlight\Binaries\Win32\LOTDGame.exe
FirewallRules: [{99DE7B70-CB19-4EBF-8440-74FB99B4A13D}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlight\Binaries\Win32\LOTDGame.exe
FirewallRules: [{E2C6471A-4AF6-43B8-BF9A-3F3EE4ACA0FB}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hikikomori No Chuunibyou\Hikikomori No Chuunibyou.exe
FirewallRules: [{39B42616-0C55-4318-AC03-A35C86635B2F}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hikikomori No Chuunibyou\Hikikomori No Chuunibyou.exe
FirewallRules: [{D0BA56A7-005B-46A1-8FA0-9F14167D3B04}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\REED\reed.exe
FirewallRules: [{F4440515-C471-4939-B8C3-A8E4B1A82166}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\REED\reed.exe
FirewallRules: [{7E8F77C0-FFC9-44C8-A278-1221B9630AA5}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lucid9\Lucid9.exe
FirewallRules: [{A5E02C91-ECF3-4525-9753-56EC305ACF8A}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lucid9\Lucid9.exe
FirewallRules: [{F618EE77-9542-44F2-84A6-F8927B237DFB}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Spirit\Sakura Spirit.exe
FirewallRules: [{3BBF208D-E467-415B-8ED7-EB8A839B21DB}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Spirit\Sakura Spirit.exe
FirewallRules: [{F9BD79D2-3775-470D-B457-48752FE6A090}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\narcissu2\narci2.exe
FirewallRules: [{8945211F-185F-4673-89AB-7A54CE2ED173}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\narcissu2\narci2.exe
FirewallRules: [{38580AC4-BAEF-4EE9-8335-CC7740FF2A9A}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crimzon Clover\CrimzonClover_WI.exe
FirewallRules: [{2DBA30B4-7FE0-4037-BCF9-EABA979D4916}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crimzon Clover\CrimzonClover_WI.exe
FirewallRules: [{B1619D57-C5D5-4070-BBA7-DAA4ADC3E72E}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magical Battle Festa\MBF.exe
FirewallRules: [{963C3029-6222-49A6-967B-42D5B34BD5A4}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magical Battle Festa\MBF.exe
FirewallRules: [{5920D40D-9A52-4147-AE97-F3A214006AA9}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Breaker Battle Grounds\bin\pbbg_win32.exe
FirewallRules: [{9D537984-F1D4-45CB-8673-B23124C9C44D}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Breaker Battle Grounds\bin\pbbg_win32.exe
FirewallRules: [{B5A7ABCC-182B-4341-9CB7-0DE10255F7ED}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Voices from the Sea\voices_steam.exe
FirewallRules: [{C0CFF750-01FD-45C2-A118-0F11D86D93A7}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Voices from the Sea\voices_steam.exe
FirewallRules: [{118398FB-38B5-47FB-B66B-B5212F3D50B9}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Train of Afterlife\toa.exe
FirewallRules: [{04A11FD8-34C1-4FD1-B06A-F1EEDAA50427}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Train of Afterlife\toa.exe
FirewallRules: [{3238AE44-F55A-4197-9F75-18CD3A732B06}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\chantelise.exe
FirewallRules: [{3F9A0A2D-DE8F-42B0-8282-7FF45F8D38E1}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\chantelise.exe
FirewallRules: [{CFD8D67B-9471-4E01-86EC-64EE37667A3F}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\custom.exe
FirewallRules: [{E88FDC9C-0673-46B3-AC25-8CCA0B1F03E5}] =&gt; (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\custom.exe
FirewallRules: [{D93C4B4D-1A50-49C8-A308-6C8BC54C5921}] =&gt; (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9B9A2CFC-3C48-4D12-A01E-076DE1BE86FD}] =&gt; (Allow) LPort=53000

==================== Restore Points =========================

12-09-2016 08:51:03 JRT Pre-Junkware Removal
13-09-2016 19:52:00 JRT Pre-Junkware Removal
16-09-2016 21:20:45 Windows Update
16-09-2016 21:22:16 Windows Update
19-09-2016 14:50:18 JRT Pre-Junkware Removal
27-09-2016 08:56:04 JRT Pre-Junkware Removal
29-09-2016 20:04:35 2016sept29
03-10-2016 19:11:15 Restore Point Created by FRST

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/03/2016 07:11:22 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (10/03/2016 07:11:15 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {5e1ecae3-440f-4f1c-827f-001eeaf78757}

Error: (10/03/2016 12:02:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dwm.exe, version: 10.0.10586.0, time stamp: 0x5632d756
Faulting module name: combase.dll, version: 10.0.10586.589, time stamp: 0x57cf954a
Exception code: 0xc0000005
Fault offset: 0x000000000007cccc
Faulting process id: 0x180
Faulting application start time: 0x01d21d89327fe218
Faulting application path: C:\WINDOWS\system32\dwm.exe
Faulting module path: C:\WINDOWS\system32\combase.dll
Report Id: 79fbe68d-382d-4b2d-a6b5-16060a072566
Faulting package full name:
Faulting package-relative application ID:

Error: (10/01/2016 06:11:10 PM) (Source: MsiInstaller) (EventID: 1002) (User: HP)
Description: Unexpected or missing value (name: 'PackageName', value: '') in key 'HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList'

Error: (10/01/2016 05:34:14 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/01/2016 05:34:14 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/01/2016 05:33:12 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (09/30/2016 02:49:03 PM) (Source: MsiInstaller) (EventID: 1002) (User: HP)
Description: Unexpected or missing value (name: 'PackageName', value: '') in key 'HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList'

Error: (09/30/2016 02:47:33 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (09/29/2016 08:04:42 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.


System errors:
=============
Error: (10/03/2016 08:22:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_37f0d service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 08:22:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_37f0d service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 08:22:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_37f0d service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 08:22:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_37f0d service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 07:13:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_1694d28 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 07:13:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_1694d28 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 07:13:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_1694d28 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 07:13:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_1694d28 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/03/2016 07:12:12 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error:
An instance of the service is already running.

Error: (10/03/2016 07:11:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.


CodeIntegrity:
===================================
Date: 2016-09-18 15:45:36.314
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-17 07:17:00.520
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-16 21:26:04.644
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-07 07:28:59.488
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-14 13:20:53.408
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-17 07:15:39.332
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-15 09:54:19.748
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-14 07:00:58.594
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-14 06:55:36.912
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-06-19 14:04:45.081
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD A8-5500 APU with Radeon™ HD Graphics
Percentage of memory in use: 30%
Total physical RAM: 7572.6 MB
Available physical RAM: 5286.44 MB
Total Virtual: 8788.6 MB
Available Virtual: 7109.23 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:911.17 GB) (Free:303.64 GB) NTFS ==&gt;[system with boot components (obtained from drive)]
Drive d: (Recovery Image) (Fixed) (Total:18.43 GB) (Free:2.3 GB) NTFS ==&gt;[system with boot components (obtained from drive)]

==================== MBR &amp; Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 3CDEA954)

Partition: GPT.

==================== End of Addition.txt ============================



The Windows Repair All-in-one scan didn't find any problems. Please do let me know if you'd like me to post the log for that scan.

Thanks again for all of the help! I appreciate it a whole lot!

Edited by gaijindesu, 03 October 2016 - 08:29 PM.


#7 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 04 October 2016 - 10:20 AM

Hi gajindesu.

 

The log files look good. You can uninstall Windows Repair All-in-one. We don't need that anymore.Now some more steps before finishing.

 

--------------

 

WildTangent Program Warning



Wild Tangent is a video game software company specializing in online games. It has even made a partnership with AOL to include itself as part of the AOL Instant Messenger for their AIM games section. The WildTangent Web Driver is their technology that allows you to play 3D games over the Internet. Although its not technically considered spyware it does have built in components to update itself and gather information about the computer system including:


  • Operating System Version

  • CPU Type and Speed

  • Memory Amount

  • Video Card type and Driver Version

  • Sound Card type and Driver Version

  • DirectX Version

  • Location that the Web Driver was installed from


For that reason I would suggest you uninstalled it via add/remove. Name of the program to uninstall is WildTangent Games.



Reboot after the uninstallation.<- Important.

 

-----------------

 

We need to remove Avast safeprice and safezone browser.

 

Please go to Control Panel > Programs and Features and find the program named Avast Free Antivirus, click on the program and select Change.

 

You will get a dialog from Avast, now click on Change. The screen will look something like this:

 

oej3ps9if5Q3zsOL822-o.png

 

Now, please uncheck "Safezone Browser" and "SafePrice browser extension" options and click on Change. Now both software will be removed.

 

-----------------

 

After you have completed the above steps, please create a new set of FRST log for me.

 

Thank you.

 

 


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#8 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 04 October 2016 - 05:13 PM

I have WildTangent as well as the Avast SafePrice extension and SafeZone browser all taken care of. I also have the new set of FRST logs below. Again, thank you very much for all of your help!


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-10-2016
Ran by Larry (administrator) on HP (04-10-2016 13:48:11)
Running from C:\Users\Larry\Desktop
Loaded Profiles: Larry (Available Profiles: Larry)
Platform: Windows 10 Home Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\Beats64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [XboxStat] =&gt; C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] =&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] =&gt; C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [SysTrayApp] =&gt; C:\Program Files\IDT\WDM\sttray64.exe
HKLM\...\Run: [BeatsOSDApp] =&gt; C:\Program Files\IDT\WDM\beats64.exe [37888 2012-08-10] (Hewlett-Packard )
HKLM-x32\...\Run: [AvastUI.exe] =&gt; C:\Program Files\AVAST Software\Avast\AvastUI.exe [9107616 2016-09-12] (AVAST Software)
HKLM-x32\...\Run: [amd_dc_opt] =&gt; C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [Raptr] =&gt; C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] =&gt; C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] =&gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Run: [DAEMON Tools Lite] =&gt; C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Run: [AppEx Accelerator UI] =&gt; C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [488640 2015-04-06] (AppEx Networks Corporation)
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\RunOnce: [Uninstall C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] =&gt; C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
ShellIconOverlayIdentifiers: [ SkyDrive1] -&gt; {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -&gt; {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -&gt; {BBACC218-34EA-4666-9D7A-C78F2274A524} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\FileSyncShell64.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -&gt; {472083B0-C522-11CF-8763-00608CC02F24} =&gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-08-21] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -&gt; {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -&gt; {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -&gt; {BBACC218-34EA-4666-9D7A-C78F2274A524} =&gt; C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll [2016-06-08] (Microsoft Corporation)
Startup: C:\Users\Larry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2014-08-28]
ShortcutTarget: Dropbox.lnk -&gt; C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 209.222.18.222 209.222.18.218
Tcpip\..\Interfaces\{b7261c21-3425-49b9-b049-66b0245b6ca2}: [DhcpNameServer] 209.222.18.222 209.222.18.218

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.msn.com/HPDSK13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK13/1
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPDSK13/1
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/HPDSK13/1
SearchScopes: HKLM -&gt; {93D29D7E-86C6-464C-9514-BDAB2497FAA9} URL = hxxp://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&amp;tag=hp-us1-vsb-20&amp;link%5Fcode=qs&amp;index=aps&amp;field-keywords={searchTerms}
SearchScopes: HKLM -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
SearchScopes: HKLM-x32 -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
SearchScopes: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001 -&gt; {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&amp;keyword={searchTerms}
BHO: Groove GFS Browser Helper -&gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -&gt; C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -&gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -&gt; C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-09-08] (Oracle Corporation)
BHO: Office Document Cache Handler -&gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} -&gt; C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -&gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} -&gt; C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-09-08] (Oracle Corporation)
BHO: HP Network Check Helper -&gt; {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21] (HP Inc.)
BHO-x32: Groove GFS Browser Helper -&gt; {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -&gt; C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -&gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-09-08] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -&gt; {B4F3A835-0E21-4959-BA22-42B3008E02FF} -&gt; C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -&gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-09-08] (Oracle Corporation)
BHO-x32: HP Network Check Helper -&gt; {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -&gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File

FireFox:
========
FF ProfilePath: C:\Users\Larry\AppData\Roaming\Mozilla\Firefox\Profiles\w0fu81w9.default [2016-10-04]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; Google
FF DefaultSearchEngine.US: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; Google
FF DefaultSearchUrl: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt;
FF NetworkProxy: Mozilla\Firefox\Profiles\w0fu81w9.default -&gt; type", 0
FF Extension: (NoScript) - C:\Users\Larry\AppData\Roaming\Mozilla\Firefox\Profiles\w0fu81w9.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-08-10]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-08-21]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Plugin: @adobe.com/FlashPlayer -&gt; C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll [2016-09-23] ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.101.2 -&gt; C:\Program Files\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-09-08] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.101.2 -&gt; C:\Program Files\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-09-08] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-23] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.3.2 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -&gt; C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [2014-09-01] (EA Digital Illusions CE AB)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -&gt; C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-09-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -&gt; C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-09-08] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -&gt; C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -&gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -&gt; C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -&gt; C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3949817429-3550067080-3212671863-1001: ubisoft.com/uplaypc -&gt; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2016-02-21] ()

Chrome:
=======
CHR StartupUrls: Default -&gt; "hxxps://www.google.com/?trackid=sp-006"
CHR DefaultSearchURL: Default -&gt; hxxps://www.google.de/search?q={searchTerms}?trackid=sp-006
CHR DefaultSuggestURL: Default -&gt; hxxps://www.google.com/complete/search?client=chrome&amp;q={searchTerms}
CHR Profile: C:\Users\Larry\AppData\Local\Google\Chrome\User Data\Default [2016-09-08]
CHR Extension: (Google Wallet) - C:\Users\Larry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-17]
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeActiveFileMonitor12.0; C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe [181152 2013-09-25] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2159320 2016-08-22] (Adobe Systems, Incorporated)
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-21] (AVAST Software)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
R2 HPConnectedRemote; c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35744 2012-10-12] (Hewlett-Packard)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1903472 2015-01-01] (Electronic Arts)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2016-09-07] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [229056 2015-04-03] (AppEx Networks Corporation)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-08-21] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-08-21] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-08-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-21] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-22] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-08-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-21] (AVAST Software)
S3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-06-16] (Broadcom Corporation.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-08-16] (DT Soft Ltd)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2554528 2015-06-12] (MediaTek Inc.)
R0 PxHlpa64; C:\Windows\System32\drivers\PxHlpa64.sys [56336 2013-07-19] (Corel Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [216064 2015-10-30] (Microsoft Corporation)
S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-16] (Anchorfree Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2016-10-01] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-04 13:48 - 2016-10-04 13:49 - 00019560 _____ C:\Users\Larry\Desktop\FRST.txt
2016-10-04 13:12 - 2016-10-04 13:12 - 00000000 ____D C:\Users\Larry\AppData\Local\ActiveSync
2016-10-03 19:54 - 2016-10-03 19:54 - 00000000 ____D C:\Program Files (x86)\Tweaking.com
2016-10-03 19:53 - 2016-10-03 19:54 - 00188941 _____ C:\WINDOWS\Tweaking.com - Windows Repair Setup Log.txt
2016-10-01 19:27 - 2016-10-03 19:10 - 02404864 _____ (Farbar) C:\Users\Larry\Desktop\FRST64.exe
2016-10-01 16:49 - 2016-10-01 16:49 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-10-01 16:47 - 2016-10-01 16:47 - 00000901 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2016-10-01 16:47 - 2016-10-01 16:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2016-10-01 16:46 - 2016-10-01 16:47 - 00000000 ____D C:\Program Files\RogueKiller
2016-10-01 16:46 - 2016-10-01 16:46 - 00000000 ____D C:\ProgramData\RogueKiller
2016-10-01 16:45 - 2016-10-01 16:46 - 33579072 _____ (Adlice Software ) C:\Users\Larry\Downloads\setup.exe
2016-09-29 13:16 - 2016-09-29 13:16 - 00000222 _____ C:\Users\Larry\Desktop\Ys Origin.url
2016-09-28 17:57 - 2016-09-28 17:57 - 00000221 _____ C:\Users\Larry\Desktop\Chantelise.url
2016-09-24 19:54 - 2016-09-24 19:54 - 59955885 _____ C:\Users\Larry\Downloads\installer_win3.exe
2016-09-23 15:45 - 2016-09-27 09:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-19 13:42 - 2016-09-19 13:42 - 03861056 _____ C:\Users\Larry\Desktop\adwcleaner_6.020.exe
2016-09-19 07:02 - 2016-10-03 19:15 - 00000338 _____ C:\WINDOWS\Tasks\HPCeeScheduleForLarry.job
2016-09-19 07:02 - 2016-10-03 11:47 - 00003230 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForLarry
2016-09-16 21:41 - 2016-09-16 21:41 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 01098640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 00277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-09-16 17:19 - 2016-09-07 01:26 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01152320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-16 17:19 - 2016-09-07 01:26 - 00588320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-09-16 17:19 - 2016-09-07 01:25 - 02607336 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-09-16 17:19 - 2016-09-07 01:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-09-16 17:19 - 2016-09-07 01:23 - 01603224 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 01040792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-16 17:19 - 2016-09-07 01:23 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-09-16 17:19 - 2016-09-07 01:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-09-16 17:19 - 2016-09-07 01:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-16 17:19 - 2016-09-07 00:48 - 22379520 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-16 17:19 - 2016-09-07 00:43 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-16 17:19 - 2016-09-07 00:39 - 01567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 24611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-16 17:19 - 2016-09-07 00:35 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-16 17:19 - 2016-09-07 00:34 - 00727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-16 17:19 - 2016-09-07 00:32 - 00643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2016-09-16 17:19 - 2016-09-07 00:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-16 17:19 - 2016-09-07 00:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-16 17:19 - 2016-09-07 00:30 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-16 17:19 - 2016-09-07 00:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-16 17:19 - 2016-09-07 00:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-16 17:19 - 2016-09-07 00:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-16 17:19 - 2016-09-07 00:27 - 01743872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-16 17:19 - 2016-09-07 00:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-09-16 17:19 - 2016-09-07 00:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 13392384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-09-16 17:19 - 2016-09-07 00:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-16 17:19 - 2016-09-07 00:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Pimstore.dll
2016-09-16 17:19 - 2016-09-07 00:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-09-16 17:19 - 2016-09-07 00:24 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-16 17:19 - 2016-09-07 00:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-09-16 17:19 - 2016-09-07 00:23 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-09-16 17:19 - 2016-09-07 00:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-16 17:19 - 2016-09-07 00:22 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-16 17:19 - 2016-09-07 00:21 - 03046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-09-16 17:19 - 2016-09-07 00:21 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-16 17:19 - 2016-09-07 00:20 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2016-09-16 17:19 - 2016-09-07 00:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 03577344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 02876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-09-16 17:19 - 2016-09-07 00:18 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-16 17:19 - 2016-09-07 00:17 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02746368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01676800 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-16 17:19 - 2016-09-07 00:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 07831552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-09-16 17:19 - 2016-09-07 00:15 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-16 17:19 - 2016-09-07 00:14 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-16 17:19 - 2016-09-07 00:13 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-16 17:19 - 2016-09-07 00:13 - 02874880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2016-09-16 17:19 - 2016-09-07 00:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-09-16 17:18 - 2016-09-07 01:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-09-16 17:18 - 2016-09-07 01:39 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-16 17:18 - 2016-09-07 01:39 - 00620176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2016-09-16 17:18 - 2016-09-07 01:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-09-16 17:18 - 2016-09-07 01:34 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 01297760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-09-16 17:18 - 2016-09-07 01:33 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-16 17:18 - 2016-09-07 01:27 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-09-16 17:18 - 2016-09-07 01:27 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-09-16 17:18 - 2016-09-07 01:26 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00847648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00586200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-09-16 17:18 - 2016-09-07 01:26 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-09-16 17:18 - 2016-09-07 01:25 - 01270064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-09-16 17:18 - 2016-09-07 01:24 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-16 17:18 - 2016-09-07 01:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-09-16 17:18 - 2016-09-07 01:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-16 17:18 - 2016-09-07 01:23 - 06536248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-16 17:18 - 2016-09-07 01:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-16 17:18 - 2016-09-07 01:22 - 01128096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-16 17:18 - 2016-09-07 01:22 - 01085728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2016-09-16 17:18 - 2016-09-07 01:22 - 00604920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-09-16 17:18 - 2016-09-07 01:15 - 00911640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-09-16 17:18 - 2016-09-07 01:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-09-16 17:18 - 2016-09-07 01:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-09-16 17:18 - 2016-09-07 01:08 - 00116216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-16 17:18 - 2016-09-07 00:52 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-16 17:18 - 2016-09-07 00:52 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-16 17:18 - 2016-09-07 00:49 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-09-16 17:18 - 2016-09-07 00:48 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-16 17:18 - 2016-09-07 00:47 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-16 17:18 - 2016-09-07 00:46 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-09-16 17:18 - 2016-09-07 00:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-09-16 17:18 - 2016-09-07 00:44 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-09-16 17:18 - 2016-09-07 00:44 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2016-09-16 17:18 - 2016-09-07 00:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-09-16 17:18 - 2016-09-07 00:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-09-16 17:18 - 2016-09-07 00:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-09-16 17:18 - 2016-09-07 00:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-16 17:18 - 2016-09-07 00:39 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2016-09-16 17:18 - 2016-09-07 00:39 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2016-09-16 17:18 - 2016-09-07 00:38 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2016-09-16 17:18 - 2016-09-07 00:38 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-16 17:18 - 2016-09-07 00:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2016-09-16 17:18 - 2016-09-07 00:38 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2016-09-16 17:18 - 2016-09-07 00:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-09-16 17:18 - 2016-09-07 00:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 01568768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2016-09-16 17:18 - 2016-09-07 00:36 - 01051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagCpl.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-09-16 17:18 - 2016-09-07 00:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00577536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-09-16 17:18 - 2016-09-07 00:35 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.ps.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-09-16 17:18 - 2016-09-07 00:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-09-16 17:18 - 2016-09-07 00:34 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-16 17:18 - 2016-09-07 00:34 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2016-09-16 17:18 - 2016-09-07 00:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-09-16 17:18 - 2016-09-07 00:32 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-16 17:18 - 2016-09-07 00:32 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-09-16 17:18 - 2016-09-07 00:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-16 17:18 - 2016-09-07 00:32 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-09-16 17:18 - 2016-09-07 00:31 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-09-16 17:18 - 2016-09-07 00:31 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-09-16 17:18 - 2016-09-07 00:31 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 02476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00698368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-16 17:18 - 2016-09-07 00:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-16 17:18 - 2016-09-07 00:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2016-09-16 17:18 - 2016-09-07 00:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-16 17:18 - 2016-09-07 00:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc_ssp.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-09-16 17:18 - 2016-09-07 00:28 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-09-16 17:18 - 2016-09-07 00:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysdm.cpl
2016-09-16 17:18 - 2016-09-07 00:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2016-09-16 17:18 - 2016-09-07 00:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-09-16 17:18 - 2016-09-07 00:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2016-09-16 17:18 - 2016-09-07 00:26 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 06312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-09-16 17:18 - 2016-09-07 00:25 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-16 17:18 - 2016-09-07 00:25 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-09-16 17:18 - 2016-09-07 00:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-09-16 17:18 - 2016-09-07 00:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-09-16 17:18 - 2016-09-07 00:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2016-09-16 17:18 - 2016-09-07 00:23 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-09-16 17:18 - 2016-09-07 00:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-09-16 17:18 - 2016-09-07 00:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-09-16 17:18 - 2016-09-07 00:21 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-16 17:18 - 2016-09-07 00:20 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-16 17:18 - 2016-09-07 00:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 07536640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-09-16 17:18 - 2016-09-07 00:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 02175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-16 17:18 - 2016-09-07 00:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2016-09-16 17:18 - 2016-09-07 00:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2016-09-16 17:18 - 2016-09-07 00:15 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-09-16 17:18 - 2016-09-07 00:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 03078656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-09-16 17:18 - 2016-09-07 00:14 - 01487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-16 17:18 - 2016-09-07 00:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-09-16 17:18 - 2016-09-07 00:11 - 03053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-09-16 17:18 - 2016-09-07 00:10 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-09-16 17:18 - 2016-09-07 00:10 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2016-09-16 17:18 - 2016-09-04 20:37 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-09-16 17:17 - 2016-09-07 01:39 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-16 17:17 - 2016-09-07 01:39 - 01142560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-16 17:17 - 2016-09-07 01:39 - 01030408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-16 17:17 - 2016-09-07 01:39 - 00875480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-16 17:17 - 2016-09-07 01:39 - 00799568 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-16 17:17 - 2016-09-07 01:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-16 17:17 - 2016-09-07 01:39 - 00175120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-16 17:17 - 2016-09-07 01:37 - 00129888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-16 17:17 - 2016-09-07 01:36 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-09-16 17:17 - 2016-09-07 01:35 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-09-16 17:17 - 2016-09-07 01:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-09-16 17:17 - 2016-09-07 01:26 - 01554152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-09-16 17:17 - 2016-09-07 01:26 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-09-16 17:17 - 2016-09-07 01:25 - 01447776 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2016-09-16 17:17 - 2016-09-07 01:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 03693064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-09-16 17:17 - 2016-09-07 01:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-09-16 17:17 - 2016-09-07 01:22 - 00359256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-16 17:17 - 2016-09-07 01:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-09-16 17:17 - 2016-09-07 01:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-09-16 17:17 - 2016-09-07 01:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-09-16 17:17 - 2016-09-07 01:16 - 02773088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-09-16 17:17 - 2016-09-07 01:16 - 02144512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-09-16 17:17 - 2016-09-07 01:15 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-16 17:17 - 2016-09-07 01:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-09-16 17:17 - 2016-09-07 01:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-09-16 17:17 - 2016-09-07 01:11 - 00057912 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-09-16 17:17 - 2016-09-07 01:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-09-16 17:17 - 2016-09-07 00:53 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2016-09-16 17:17 - 2016-09-07 00:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-09-16 17:17 - 2016-09-07 00:47 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-09-16 17:17 - 2016-09-07 00:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-16 17:17 - 2016-09-07 00:45 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\spcompat.dll
2016-09-16 17:17 - 2016-09-07 00:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-16 17:17 - 2016-09-07 00:44 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-16 17:17 - 2016-09-07 00:44 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-09-16 17:17 - 2016-09-07 00:43 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2016-09-16 17:17 - 2016-09-07 00:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-09-16 17:17 - 2016-09-07 00:42 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2016-09-16 17:17 - 2016-09-07 00:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-09-16 17:17 - 2016-09-07 00:41 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-16 17:17 - 2016-09-07 00:41 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-09-16 17:17 - 2016-09-07 00:40 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2016-09-16 17:17 - 2016-09-07 00:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2016-09-16 17:17 - 2016-09-07 00:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Cortana.ProxyStub.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-16 17:17 - 2016-09-07 00:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2016-09-16 17:17 - 2016-09-07 00:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-09-16 17:17 - 2016-09-07 00:36 - 00752128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-09-16 17:17 - 2016-09-07 00:36 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-09-16 17:17 - 2016-09-07 00:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwcfg.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-16 17:17 - 2016-09-07 00:35 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcshext.dll
2016-09-16 17:17 - 2016-09-07 00:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CheckNetIsolation.exe
2016-09-16 17:17 - 2016-09-07 00:34 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcbase.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-16 17:17 - 2016-09-07 00:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cic.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 01813504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 00904704 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2016-09-16 17:17 - 2016-09-07 00:33 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 04213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2016-09-16 17:17 - 2016-09-07 00:32 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2016-09-16 17:17 - 2016-09-07 00:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00852992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-09-16 17:17 - 2016-09-07 00:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01558528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-16 17:17 - 2016-09-07 00:30 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-16 17:17 - 2016-09-07 00:30 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 01465344 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-09-16 17:17 - 2016-09-07 00:29 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2016-09-16 17:17 - 2016-09-07 00:29 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-09-16 17:17 - 2016-09-07 00:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 01872896 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 01424384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-09-16 17:17 - 2016-09-07 00:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-16 17:17 - 2016-09-07 00:26 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-16 17:17 - 2016-09-07 00:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-09-16 17:17 - 2016-09-07 00:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-09-16 17:17 - 2016-09-07 00:24 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-09-16 17:17 - 2016-09-07 00:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-09-16 17:17 - 2016-09-07 00:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-09-16 17:17 - 2016-09-07 00:23 - 04646912 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-16 17:17 - 2016-09-07 00:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2016-09-16 17:17 - 2016-09-07 00:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-09-16 17:17 - 2016-09-07 00:22 - 01297408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-09-16 17:17 - 2016-09-07 00:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-09-16 17:17 - 2016-09-07 00:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2016-09-16 17:17 - 2016-09-07 00:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 01385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-09-16 17:17 - 2016-09-07 00:20 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-09-16 17:17 - 2016-09-07 00:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-09-16 17:17 - 2016-09-07 00:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-16 17:17 - 2016-09-07 00:18 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-16 17:17 - 2016-09-07 00:18 - 04826624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-09-16 17:17 - 2016-09-07 00:17 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-09-16 17:17 - 2016-09-07 00:16 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-09-16 17:17 - 2016-09-07 00:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-09-16 17:17 - 2016-09-07 00:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 02573824 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-09-16 17:17 - 2016-09-07 00:14 - 01732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-16 17:17 - 2016-09-07 00:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-09-16 17:17 - 2016-09-07 00:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-16 17:17 - 2016-09-07 00:11 - 03294208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-16 17:17 - 2016-09-07 00:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-09-16 17:17 - 2016-09-07 00:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2016-09-16 17:17 - 2016-09-07 00:09 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-09-16 17:17 - 2016-09-07 00:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 07468896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-16 17:16 - 2016-09-07 01:39 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01997832 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01862000 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 01238584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-09-16 17:16 - 2016-09-07 01:39 - 00705576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00414232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00337328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-16 17:16 - 2016-09-07 01:39 - 00328520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2016-09-16 17:16 - 2016-09-07 01:36 - 00528736 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-09-16 17:16 - 2016-09-07 01:35 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-09-16 17:16 - 2016-09-07 01:35 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-09-16 17:16 - 2016-09-07 01:26 - 01552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-09-16 17:16 - 2016-09-07 01:26 - 00693592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-16 17:16 - 2016-09-07 01:26 - 00439136 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-09-16 17:16 - 2016-09-07 01:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-09-16 17:16 - 2016-09-07 01:24 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-09-16 17:16 - 2016-09-07 01:23 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-16 17:16 - 2016-09-07 01:23 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-16 17:16 - 2016-09-07 01:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-09-16 17:16 - 2016-09-07 01:22 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-16 17:16 - 2016-09-07 01:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-09-16 17:16 - 2016-09-07 01:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-09-16 17:16 - 2016-09-07 01:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-09-16 17:16 - 2016-09-07 01:16 - 02548936 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-09-16 17:16 - 2016-09-07 01:16 - 01988448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-16 17:16 - 2016-09-07 01:15 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-16 17:16 - 2016-09-07 01:15 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-09-16 17:16 - 2016-09-07 01:12 - 28851224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-16 17:16 - 2016-09-07 01:12 - 00871776 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-09-16 17:16 - 2016-09-07 01:11 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-09-16 17:16 - 2016-09-07 01:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2016-09-16 17:16 - 2016-09-07 00:46 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2016-09-16 17:16 - 2016-09-07 00:46 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-16 17:16 - 2016-09-07 00:44 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2016-09-16 17:16 - 2016-09-07 00:43 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2016-09-16 17:16 - 2016-09-07 00:42 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-16 17:16 - 2016-09-07 00:41 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2016-09-16 17:16 - 2016-09-07 00:41 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-16 17:16 - 2016-09-07 00:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-16 17:16 - 2016-09-07 00:40 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2016-09-16 17:16 - 2016-09-07 00:40 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2016-09-16 17:16 - 2016-09-07 00:39 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2016-09-16 17:16 - 2016-09-07 00:38 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-09-16 17:16 - 2016-09-07 00:38 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvc.dll
2016-09-16 17:16 - 2016-09-07 00:37 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-09-16 17:16 - 2016-09-07 00:36 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00317952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2016-09-16 17:16 - 2016-09-07 00:36 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2016-09-16 17:16 - 2016-09-07 00:35 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2016-09-16 17:16 - 2016-09-07 00:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbceip.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2016-09-16 17:16 - 2016-09-07 00:34 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-09-16 17:16 - 2016-09-07 00:34 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-16 17:16 - 2016-09-07 00:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3ui.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-16 17:16 - 2016-09-07 00:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-16 17:16 - 2016-09-07 00:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 14251520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 02012672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-09-16 17:16 - 2016-09-07 00:30 - 01318400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-09-16 17:16 - 2016-09-07 00:30 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-09-16 17:16 - 2016-09-07 00:29 - 01487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2016-09-16 17:16 - 2016-09-07 00:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01783808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01717760 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01671168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 01466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pimstore.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-16 17:16 - 2016-09-07 00:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-09-16 17:16 - 2016-09-07 00:27 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-09-16 17:16 - 2016-09-07 00:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 01570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-09-16 17:16 - 2016-09-07 00:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-16 17:16 - 2016-09-07 00:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-09-16 17:16 - 2016-09-07 00:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 02445312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01965568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2016-09-16 17:16 - 2016-09-07 00:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-09-16 17:16 - 2016-09-07 00:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-09-16 17:16 - 2016-09-07 00:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-09-16 17:16 - 2016-09-07 00:23 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-09-16 17:16 - 2016-09-07 00:23 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 03093504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-16 17:16 - 2016-09-07 00:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-09-16 17:16 - 2016-09-07 00:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 06976000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-16 17:16 - 2016-09-07 00:20 - 00513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-09-16 17:16 - 2016-09-07 00:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 03589120 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-16 17:16 - 2016-09-07 00:19 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 02610176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01997312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-09-16 17:16 - 2016-09-07 00:19 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-09-16 17:16 - 2016-09-07 00:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-16 17:16 - 2016-09-07 00:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-09-16 17:16 - 2016-09-07 00:15 - 01755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-09-16 17:16 - 2016-09-07 00:14 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-09-16 17:16 - 2016-09-07 00:13 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-16 17:16 - 2016-09-07 00:12 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-09-16 17:16 - 2016-09-07 00:11 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2016-09-16 17:16 - 2016-09-07 00:09 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-16 17:16 - 2016-09-06 23:57 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-09-16 17:15 - 2016-09-07 01:39 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-16 17:15 - 2016-09-07 01:34 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-09-16 17:15 - 2016-09-07 01:26 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 01540216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-16 17:15 - 2016-09-07 01:23 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-16 17:15 - 2016-09-07 01:23 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-16 17:15 - 2016-09-07 01:23 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-09-16 17:15 - 2016-09-07 01:22 - 00742192 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-09-16 17:15 - 2016-09-07 01:22 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-09-16 17:15 - 2016-09-07 01:22 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-09-16 17:15 - 2016-09-07 01:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-09-16 17:15 - 2016-09-07 01:14 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-16 17:15 - 2016-09-07 01:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-16 17:15 - 2016-09-07 01:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 02187408 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 00388888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-09-16 17:15 - 2016-09-07 01:11 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-09-16 17:15 - 2016-09-07 01:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-09-16 17:15 - 2016-09-07 00:46 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-16 17:15 - 2016-09-07 00:44 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2016-09-16 17:15 - 2016-09-07 00:40 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-09-16 17:15 - 2016-09-07 00:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2016-09-16 17:15 - 2016-09-07 00:39 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-09-16 17:15 - 2016-09-07 00:39 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-16 17:15 - 2016-09-07 00:39 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2016-09-16 17:15 - 2016-09-07 00:38 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-09-16 17:15 - 2016-09-07 00:36 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-09-16 17:15 - 2016-09-07 00:35 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-09-16 17:15 - 2016-09-07 00:35 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-09-16 17:15 - 2016-09-07 00:34 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2016-09-16 17:15 - 2016-09-07 00:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00689664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-16 17:15 - 2016-09-07 00:32 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-16 17:15 - 2016-09-07 00:32 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppinst.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-16 17:15 - 2016-09-07 00:31 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-16 17:15 - 2016-09-07 00:31 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-09-16 17:15 - 2016-09-07 00:30 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2016-09-16 17:15 - 2016-09-07 00:30 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2016-09-16 17:15 - 2016-09-07 00:29 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-09-16 17:15 - 2016-09-07 00:28 - 02731008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-09-16 17:15 - 2016-09-07 00:28 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 03415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-09-16 17:15 - 2016-09-07 00:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-09-16 17:15 - 2016-09-07 00:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-09-16 17:15 - 2016-09-07 00:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-09-16 17:15 - 2016-09-07 00:22 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2016-09-16 17:15 - 2016-09-07 00:21 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-09-16 17:15 - 2016-09-07 00:21 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-09-16 17:15 - 2016-09-07 00:20 - 06675968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-16 17:15 - 2016-09-07 00:20 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-09-16 17:15 - 2016-09-07 00:19 - 02563584 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-09-16 17:15 - 2016-09-07 00:19 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-09-16 17:15 - 2016-09-07 00:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2016-09-16 17:15 - 2016-09-07 00:19 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2016-09-16 17:15 - 2016-09-07 00:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-09-16 17:15 - 2016-09-07 00:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-09-16 17:15 - 2016-09-07 00:13 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-16 17:15 - 2016-09-07 00:13 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-09-16 17:15 - 2016-09-07 00:11 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2016-09-16 17:15 - 2016-09-07 00:11 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-16 17:15 - 2016-09-07 00:10 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2016-09-16 17:15 - 2016-09-07 00:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-09-16 17:04 - 2015-10-29 22:42 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-09-13 10:07 - 2016-09-24 19:54 - 00000000 ____D C:\Program Files\pia_manager
2016-09-12 18:25 - 2016-09-12 18:26 - 59947159 _____ C:\Users\Larry\Downloads\installer_win2.exe
2016-09-12 16:57 - 2016-09-12 16:57 - 00000000 ____D C:\Users\Larry\AppData\Local\Private Internet Access
2016-09-12 16:57 - 2016-09-12 16:57 - 00000000 ____D C:\Users\Larry\AppData\Local\Crashpad
2016-09-11 10:39 - 2016-09-11 10:39 - 00001528 _____ C:\Users\Larry\Desktop\don't take it personally, babe, it just ain't your story.lnk
2016-09-11 10:39 - 2016-09-11 10:39 - 00000000 ____D C:\Users\Larry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\don't take it personally, babe, it just ain't your story
2016-09-11 10:39 - 2016-09-11 10:39 - 00000000 ____D C:\Program Files (x86)\don't take it personally, babe, it just ain't your story
2016-09-08 15:15 - 2016-09-08 15:15 - 00110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2016-09-08 15:12 - 2016-09-08 15:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-09-08 15:12 - 2016-09-08 15:11 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-09-08 15:09 - 2016-09-08 15:09 - 00739904 _____ (Oracle Corporation) C:\Users\Larry\Downloads\jre-8u101-windows-i586-iftw.exe
2016-09-08 15:08 - 2016-09-08 15:14 - 62041152 _____ (Oracle Corporation) C:\Users\Larry\Downloads\jre-8u101-windows-x64.exe
2016-09-08 15:07 - 2016-09-08 15:07 - 00739904 _____ (Oracle Corporation) C:\Users\Larry\Downloads\JavaSetup8u101.exe
2016-09-08 11:58 - 2016-09-08 12:01 - 246899112 _____ C:\Users\Larry\Downloads\EmsisoftEmergencyKit.exe
2016-09-08 10:10 - 2016-09-08 10:10 - 06761600 _____ (ESET spol. s r.o.) C:\Users\Larry\Downloads\esetonlinescanner_enu.exe
2016-09-08 10:10 - 2016-09-08 10:10 - 00000000 ____D C:\Users\Larry\AppData\Local\ESET
2016-09-08 09:43 - 2016-09-08 10:08 - 00000000 ____D C:\Users\Larry\Desktop\mbar
2016-09-08 09:43 - 2016-09-08 10:08 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-09-08 09:39 - 2016-09-08 09:43 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Larry\Downloads\mbar-1.09.3.1001.exe
2016-09-08 09:37 - 2016-09-08 09:37 - 20892232 _____ C:\Users\Larry\Downloads\RogueKiller.exe
2016-09-08 09:34 - 2016-09-08 09:35 - 54287072 _____ (Microsoft Corporation) C:\Users\Larry\Downloads\Windows-KB890830-x64-V5.39.exe
2016-09-08 09:06 - 2016-09-08 09:07 - 00077350 _____ C:\TDSSKiller.3.1.0.11_08.09.2016_09.06.24_log.txt
2016-09-07 13:51 - 2016-09-07 14:46 - 120372800 _____ C:\Users\Larry\Downloads\GMStudio-Installer-1.4.1760.exe
2016-09-07 10:43 - 2016-09-07 10:43 - 00000000 ____D C:\Users\Larry\AppData\Roaming\Train of Afterlife
2016-09-06 15:03 - 2016-09-06 15:03 - 00000096 _____ C:\Users\Larry\My

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-04 13:48 - 2016-04-16 19:16 - 00000000 ____D C:\FRST
2016-10-04 13:46 - 2013-05-19 18:05 - 00004278 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-10-04 13:45 - 2016-04-19 00:51 - 00972104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-04 13:45 - 2015-10-30 03:21 - 00000000 ____D C:\WINDOWS\INF
2016-10-04 13:38 - 2016-02-13 09:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-04 13:38 - 2013-05-19 18:05 - 00000908 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-04 13:36 - 2015-10-30 02:28 - 01310720 ___SH C:\WINDOWS\system32\config\BBI
2016-10-04 13:36 - 2014-06-02 09:15 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-10-04 13:35 - 2013-03-01 16:26 - 00000000 ____D C:\Program Files (x86)\HP Games
2016-10-04 13:34 - 2013-05-19 18:05 - 00000000 ____D C:\ProgramData\AVAST Software
2016-10-04 13:31 - 2013-05-19 18:06 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-04 13:24 - 2013-03-01 16:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-10-04 13:24 - 2013-03-01 16:25 - 00000000 ____D C:\Program Files (x86)\WildTangent Games
2016-10-04 13:20 - 2013-03-01 16:25 - 00000000 ____D C:\ProgramData\WildTangent
2016-10-04 11:16 - 2016-04-18 00:04 - 00000000 ____D C:\Program Files (x86)\Steam
2016-10-04 10:31 - 2013-05-21 19:56 - 00000000 ____D C:\Users\Larry\Documents\backups
2016-10-04 09:56 - 2016-07-30 17:52 - 00000000 ____D C:\Users\Larry\AppData\Local\vb_12alt_backup
2016-10-04 07:26 - 2016-04-19 00:51 - 00000000 ____D C:\Users\Larry
2016-10-04 07:25 - 2016-04-17 22:56 - 00000000 ____D C:\Users\Larry\AppData\Local\GameMaker-Studio
2016-10-03 19:31 - 2013-05-19 18:09 - 00002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-03 19:08 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-03 19:03 - 2015-10-30 03:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-03 19:02 - 2013-05-19 17:22 - 00004142 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{728296FD-13D2-40E4-B626-360E10635C46}
2016-10-03 16:43 - 2016-07-30 17:48 - 00000000 ____D C:\Users\Larry\AppData\Local\vb_12alt
2016-10-03 11:06 - 2013-05-21 13:55 - 00000000 ____D C:\Users\Larry\.gimp-2.2
2016-10-03 11:04 - 2013-05-21 13:58 - 00000000 _____ C:\Users\Larry\.gtk-bookmarks
2016-10-01 19:18 - 2015-11-27 08:14 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Larry\Desktop\rkill.exe
2016-10-01 18:09 - 2016-03-28 14:18 - 00000000 ____D C:\AdwCleaner
2016-09-30 14:44 - 2014-01-05 19:09 - 00000000 ____D C:\Users\Larry\AppData\Roaming\vlc
2016-09-27 09:01 - 2013-06-26 12:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-27 08:21 - 2016-04-19 09:11 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-09-23 18:39 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-09-23 18:39 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-09-22 19:45 - 2013-05-19 17:20 - 00000000 ____D C:\Users\Larry\AppData\Local\Packages
2016-09-22 18:00 - 2013-05-19 18:05 - 00513632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-09-18 16:30 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\rescache
2016-09-17 07:23 - 2015-10-30 03:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-17 07:18 - 2016-02-13 09:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-17 07:14 - 2013-06-29 20:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-09-17 07:14 - 2013-06-29 20:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-09-16 22:40 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-09-16 22:40 - 2015-10-30 02:31 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-09-16 22:40 - 2015-10-30 02:31 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-16 22:40 - 2015-10-30 02:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-09-16 22:40 - 2015-10-30 02:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-16 21:41 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-16 21:40 - 2016-02-13 09:03 - 00000000 ____D C:\WINDOWS\ShellNew
2016-09-16 21:40 - 2013-06-29 20:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-09-16 21:36 - 2013-08-16 09:13 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-16 21:23 - 2013-05-21 10:49 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-16 16:48 - 2015-10-30 03:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-09-16 16:48 - 2015-10-30 03:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-09-15 07:57 - 2014-07-02 20:09 - 00001130 _____ C:\Users\Larry\Desktop\My Games - Shortcut.lnk
2016-09-13 11:10 - 2013-05-19 18:05 - 00969184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2016-09-12 16:54 - 2016-08-07 22:30 - 57467594 _____ C:\Users\Larry\Downloads\installer_win8-7-2016.exe
2016-09-12 14:23 - 2016-04-17 23:01 - 00000000 ____D C:\Users\Larry\AppData\Roaming\GameMaker-Studio
2016-09-11 10:39 - 2016-05-26 10:45 - 00000000 ____D C:\Users\Larry\AppData\Roaming\RenPy
2016-09-09 18:30 - 2016-06-21 17:13 - 04117216 _____ (Husdawg, LLC) C:\Users\Larry\Downloads\Detection.exe
2016-09-08 15:15 - 2015-10-20 20:38 - 00000000 ____D C:\Users\Larry\.oracle_jre_usage
2016-09-08 15:15 - 2014-09-08 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-09-08 15:14 - 2014-09-08 20:13 - 00000000 ____D C:\Program Files\Java
2016-09-08 15:12 - 2013-10-18 12:19 - 00000000 ____D C:\ProgramData\Oracle
2016-09-08 15:11 - 2013-07-20 09:10 - 00000000 ____D C:\Program Files (x86)\Java
2016-09-08 14:39 - 2014-05-11 20:03 - 00000000 ____D C:\Users\Larry\Documents\PPSSPP
2016-09-08 09:43 - 2016-04-16 21:49 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-09-07 02:04 - 2016-02-13 09:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-09-06 21:00 - 2015-10-30 03:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-06 21:00 - 2015-10-30 03:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2014-03-04 17:15 - 2013-08-13 21:55 - 0012005 _____ () C:\Users\Larry\AppData\Roaming\alsoft.ini
2015-08-10 15:30 - 2015-08-10 15:30 - 0007605 _____ () C:\Users\Larry\AppData\Local\Resmon.ResmonCfg
2013-05-19 17:21 - 2013-05-19 17:21 - 0000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc

Files to move or delete:
====================
C:\Users\Larry\Nil-NinjahticRonin_setup.exe
C:\Users\Larry\Ninjahtic-setup.exe
C:\Users\Larry\ReserveWin10.cmd
C:\Users\Larry\samurai_jazz-v1.5.2.3-setup.exe
C:\Users\Larry\TheWayofthePixelatedFist-installer.exe


==================== Bamital &amp; volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe =&gt; File is digitally signed
C:\WINDOWS\system32\wininit.exe =&gt; File is digitally signed
C:\WINDOWS\explorer.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe =&gt; File is digitally signed
C:\WINDOWS\system32\svchost.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe =&gt; File is digitally signed
C:\WINDOWS\system32\services.exe =&gt; File is digitally signed
C:\WINDOWS\system32\User32.dll =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll =&gt; File is digitally signed
C:\WINDOWS\system32\userinit.exe =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe =&gt; File is digitally signed
C:\WINDOWS\system32\rpcss.dll =&gt; File is digitally signed
C:\WINDOWS\system32\dnsapi.dll =&gt; File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll =&gt; File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys =&gt; File is digitally signed


LastRegBack: 2016-09-29 10:16

==================== End of FRST.txt ============================

Edited by gaijindesu, 04 October 2016 - 05:15 PM.


#9 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 04 October 2016 - 05:18 PM

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-10-2016
Ran by Larry (04-10-2016 13:50:24)
Running from C:\Users\Larry\Desktop
Windows 10 Home Version 1511 (X64) (2016-04-19 05:37:36)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3949817429-3550067080-3212671863-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3949817429-3550067080-3212671863-503 - Limited - Disabled)
Guest (S-1-5-21-3949817429-3550067080-3212671863-501 - Limited - Disabled)
Larry (S-1-5-21-3949817429-3550067080-3212671863-1001 - Administrator - Enabled) => C:\Users\Larry

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1001 Spikes (HKLM-x32\...\Steam App 260790) (Version: - Nicalis, Inc.)
7-Zip 4.42 (HKLM-x32\...\7-Zip) (Version: - )
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.6 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Premiere Elements 12 (HKLM\...\PremElem120) (Version: 12.1.0.0 - Adobe Systems Incorporated)
Adobe Premiere Elements 12 (Version: 12.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.4.194 - Adobe Systems, Inc.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 4.0.0.0 - AppEx Networks)
An Imp A Fiend (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\An Imp A Fiend) (Version: - )
An Imp? A Fiend! (HKLM\...\Steam App 354960) (Version: - Blaze Epic)
An Imp? A Fiend! (HKLM-x32\...\Steam App 354960) (Version: - )
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
Anodyne (HKLM-x32\...\Steam App 234900) (Version: - )
Aozora Meikyuu (HKLM\...\Steam App 427980) (Version: - Yume Creations)
artificialninja (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\artificialninja) (Version: - )
artificialninja_shinichi (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\artificialninja_shinichi) (Version: - )
Astebreed (HKLM\...\Steam App 283680) (Version: - Edelweiss)
Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team)
Avast Free Antivirus (HKLM-x32\...\avast) (Version: 12.3.2280 - AVAST Software)
BattleBlock Theater (HKLM-x32\...\Steam App 238460) (Version: - The Behemoth)
Battlefield 4 (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.3.2.15221 - Electronic Arts)
Battlefield: Bad Company 2 (HKLM-x32\...\{3AC8457C-0385-4BEA-A959-E095F05D6D67}) (Version: 1.0.1.0 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.5.1 - EA Digital Illusions CE AB)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Black Chocobo (HKLM-x32\...\Black_Chocobo) (Version: - )
BlazBlue: Calamity Trigger (HKLM\...\Steam App 263300) (Version: - Arc System Works)
BlazBlue: Calamity Trigger (HKLM-x32\...\Steam App 263300) (Version: - Arc System Works Co., Ltd.)
Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Blend for Visual Studio 2012 ENU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broken Sword 1 - Shadow of the Templars: Director's Cut (HKLM-x32\...\Steam App 57640) (Version: - Revolution Software Ltd)
Camera Obscura (HKLM-x32\...\Steam App 341500) (Version: - Anteater Games)
Castle Crashers (HKLM-x32\...\Steam App 204360) (Version: - The Behemoth)
Castle In The Darkness (HKLM-x32\...\Steam App 262960) (Version: - Matt Kap)
Castlevania: Lords of Shadow Mirror of Fate HD (HKLM-x32\...\Steam App 282530) (Version: - MercurySteam)
Cave Story+ (HKLM\...\Steam App 200900) (Version: - Nicalis, Inc.)
Cave Story+ (HKLM-x32\...\Steam App 200900) (Version: - Nicalis)
Chantelise (HKLM\...\Steam App 70420) (Version: - EasyGameStation)
Contagion (HKLM-x32\...\Steam App 238430) (Version: - Monochrome LLC)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Crimzon Clover WORLD IGNITION (HKLM\...\Steam App 285440) (Version: - YOTSUBANE)
CT Special Forces: Fire for Effect (HKLM-x32\...\Steam App 283410) (Version: - Asobo Studio)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2.5630 - CyberLink Corp.)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.2.3317 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.2.2126 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.2.2126 - CyberLink Corp.)
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.7.4605 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
daisuke (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\daisuke) (Version: - )
Dead Space 2 (HKLM-x32\...\Steam App 47780) (Version: - Visceral Games)
Dead Space (HKLM-x32\...\{9789E33B-317A-44B2-AF9A-FF8708AD93E0}) (Version: 1.0.0.222 - Electronic Arts)
Deadlight (HKLM\...\Steam App 211400) (Version: - Tequila Works, S.L.)
Deadlight (HKLM-x32\...\Steam App 211400) (Version: - Tequila Works, S.L.)
Desura (HKLM-x32\...\Desura) (Version: 100.64 - Desura)
Desura: Jump/Boxer (HKLM-x32\...\Desura_101047695573024) (Version: Full - BlazeEpic)
Desura: Oniken (HKLM-x32\...\Desura_64390149701664) (Version: Demo - Danilo_Dias)
Desura: samurai_jazz (HKLM-x32\...\Desura_96525095010336) (Version: Full - BlazeEpic)
DISTRAINT (HKLM\...\Steam App 395170) (Version: - Jesse Makkonen)
DivX Pro 6.8.0 VFW (HKLM-x32\...\divx650vfw_is1) (Version: 6.8.0.14 - )
DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory)
don't take it personally, babe, it just ain't your story 1.1 (HKLM-x32\...\don't take it personally, babe, it just ain't your story) (Version: 1.1 - Christine Love)
Double Dragon Trilogy (HKLM-x32\...\Steam App 314150) (Version: - DotEmu)
Downwell (HKLM\...\Steam App 360740) (Version: - Moppin)
Downwell (HKLM-x32\...\Steam App 360740) (Version: - Moppin)
Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: - NCH Software)
DRAGON BALL XENOVERSE (HKLM-x32\...\Steam App 323470) (Version: - DIMPS)
Dreaming Sarah (HKLM-x32\...\Steam App 296870) (Version: - Andre Chagas Silva)
Dropbox (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Dropbox) (Version: 2.10.28 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version: - )
Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC)
Electronic Super Joy (HKLM-x32\...\Steam App 244870) (Version: - Michael Todd Games)
Electronic Super Joy: Groove City (HKLM-x32\...\Steam App 301460) (Version: - Michael Todd Games)
Elements 12 Organizer (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{32136776-FE3F-453D-80DA-CDD993BDB2A3}) (Version: 11.1.20810.00 - Microsoft Corporation)
Escape Goat (HKLM-x32\...\Steam App 251370) (Version: - MagicalTimeBean)
Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts)
Fairy Bloom Freesia (HKLM\...\Steam App 214590) (Version: - Edelweiss)
Fairy Bloom Freesia (HKLM-x32\...\Steam App 214590) (Version: - Edelweiss)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)
FEZ (HKLM-x32\...\Steam App 224760) (Version: - Polytron Corporation)
Finding Teddy (HKLM\...\Steam App 259600) (Version: - Storybird)
Finding Teddy (HKLM-x32\...\Steam App 259600) (Version: - Storybird)
FIST OF AWESOME (HKLM-x32\...\Steam App 305070) (Version: - I Fight Bears)
Fortune Summoners: Secret of the Elemental Stone (HKLM-x32\...\Steam App 203510) (Version: - Lizsoft)
FoxBot 0.701 (HKLM-x32\...\FoxBot_is1) (Version: - Copyright© 2003,Tom Simpson)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.0.118 - Foxit Software Inc.)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Free Video to JPG Converter version 5.0.32.1230 (HKLM-x32\...\Free Video to JPG Converter_is1) (Version: 5.0.32.1230 - DVDVideoSoft Ltd.)
Freedom Planet (HKLM\...\Steam App 248310) (Version: - GalaxyTrail)
Freedom Planet (HKLM-x32\...\Steam App 248310) (Version: - GalaxyTrail)
GameMaker: Player (HKLM-x32\...\GameMakerPlayer) (Version: 1.4.1380.41402 - YoYo Games Ltd.)
GameMaker-Studio 1.4 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\GameMaker-Studio14) (Version: - YoYo Games Ltd.)
Go! Go! Nippon! ~My First Trip to Japan~ (HKLM\...\Steam App 251870) (Version: - OVERDRIVE)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
GTK+ 2.6.10-20050823 runtime environment (HKLM-x32\...\WinGTK-2_is1) (Version: - Tor Lillqvist)
Half Minute Hero: Super Mega Neo Climax Ultimate Boy (HKLM-x32\...\Steam App 214830) (Version: - Opus)
Half Minute Hero: The Second Coming (HKLM-x32\...\Steam App 240970) (Version: - OPUS)
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
Half-Life 2: Episode One (HKLM-x32\...\Steam App 380) (Version: - Valve)
Half-Life 2: Episode Two (HKLM-x32\...\Steam App 420) (Version: - Valve)
Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve)
Hammerwatch (HKLM-x32\...\Steam App 239070) (Version: - )
HandBrake 0.9.9.1 (HKLM-x32\...\HandBrake) (Version: 0.9.9.1 - )
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hikikomori No Chuunibyou (HKLM\...\Steam App 501940) (Version: - )
Hikikomori No Chuunibyou (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Hikikomori No Chuunibyou) (Version: - )
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd)
HP Connected Remote (HKLM-x32\...\{F243A34B-AB7F-4065-B770-B85B767C247C}) (Version: 1.0.1218 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.3.0 - WildTangent)
HP MyRoom (HKLM-x32\...\{9C35EDE5-4B0F-45E7-A438-314BA889948E}) (Version: 9.0.0.0 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}) (Version: 1.1.6232.4245 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.3.34.7 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{55065080-504F-43BB-BE00-36B80D7D39A5}) (Version: 12.5.32.37 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT)
If My Heart Had Wings (HKLM\...\Steam App 326480) (Version: - Moenovel)
If My Heart Had Wings (HKLM-x32\...\Steam App 326480) (Version: - Moenovel)
INSIDE (HKLM\...\Steam App 304430) (Version: - Playdead)
Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Java SE Development Kit 7 Update 67 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170670}) (Version: 1.7.0.670 - Oracle)
Jet Set Radio (HKLM-x32\...\Steam App 205950) (Version: - Blit Software)
Jump/Boxer (HKLM\...\Steam App 365330) (Version: - Blaze Epic)
Jump/Boxer (HKLM-x32\...\Steam App 365330) (Version: - )
JumpBoxer (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\JumpBoxer) (Version: - )
Katawa Shoujo (HKLM-x32\...\Katawa Shoujo) (Version: - )
Killer is Dead (HKLM-x32\...\Steam App 261110) (Version: - KADOKAWA GAMES / GRASSHOPPER MANUFACTURE)
Kingdoms of Amalur: Reckoning (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games)
Knytt Underground 1.2.1 (HKLM-x32\...\NifflasKnyttUnderground_is1) (Version: - Nifflas)
Ku - Shroud of the Morrigan version 1.5 (HKLM-x32\...\{57FF5744-E420-4EDB-8C2F-BB8A5DF8B71F}_is1) (Version: 1.5 - BitSmith Games)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve)
LiEat (HKLM\...\Steam App 373770) (Version: - △○□× (Miwashiba))
LIGHTNING RETURNS: FINAL FANTASY XIII (HKLM-x32\...\Steam App 345350) (Version: - SQUARE ENIX)
LIMBO (HKLM\...\Steam App 48000) (Version: - Playdead)
LIMBO (HKLM-x32\...\Steam App 48000) (Version: - Playdead)
Lone Survivor (HKLM-x32\...\Steam App 209830) (Version: - Jasper Byrne)
Love (HKLM\...\Steam App 269270) (Version: - Fred Wood)
Love (HKLM-x32\...\Steam App 269270) (Version: - Fred Wood)
Lucid9 (HKLM\...\Steam App 439940) (Version: - Fallen Snow Studios)
Machina of the Planet Tree -Planet Ruler- (HKLM\...\Steam App 383960) (Version: - Denneko Yuugi)
Magical Battle Festa (HKLM\...\Steam App 292480) (Version: - Fly System)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment)
Mass Effect 2 (HKLM-x32\...\Steam App 24980) (Version: - BioWare)
Master Spy (HKLM\...\Steam App 331190) (Version: - TURBOGUN)
Metal Slug 3 (HKLM-x32\...\Steam App 250180) (Version: - DotEmu)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{13D558FE-A863-402C-B115-160007277033}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{6D6D43E5-218C-4B05-92D3-2240810F4760}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (11.1.20828.01) (HKLM-x32\...\{4F2B8233-35EE-4197-8C3B-EACCBF712029}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (11.1.20828.01) (HKLM-x32\...\{FAE0523E-08A4-4717-8E8E-6EC6F32CBE88}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows 8 - ENU (HKLM-x32\...\{b6391d7a-479c-494c-a76f-cad96a8a73ac}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU (HKLM-x32\...\{e0efdce9-a486-4676-8aa5-65bb08cbf34c}) (Version: 11.0.50727.42 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mighty Gunvolt (HKLM\...\Steam App 394600) (Version: - INTI CREATES CO., LTD.)
Mighty Gunvolt (HKLM-x32\...\Steam App 394600) (Version: - INTI CREATES CO., LTD.)
Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE)
Momodora III (HKLM\...\Steam App 302790) (Version: - rdein)
Momodora III (HKLM-x32\...\Steam App 302790) (Version: - rdein)
Momodora: Reverie Under the Moonlight (HKLM\...\Steam App 428550) (Version: - Bombservice)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 49.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 49.0.1 (x64 en-US)) (Version: 49.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.1.6109 - Mozilla)
MX vs ATV Reflex (HKLM-x32\...\Steam App 55140) (Version: - Double Helix Games)
Narcissu 1st & 2nd (HKLM\...\Steam App 264380) (Version: - stage-nana)
NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2)
Need for Speed: Undercover (HKLM-x32\...\Steam App 17430) (Version: - EA Black Box)
Nidhogg (HKLM\...\Steam App 94400) (Version: - Messhof)
Nidhogg (HKLM-x32\...\Steam App 94400) (Version: - Messhof)
Nil-Ninjahtic (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Nil-Ninjahtic) (Version: - )
Nil-Ninjahtic: Ronin (HKLM\...\Steam App 454130) (Version: - Blaze Epic)
Ninjahtic (HKLM\...\Steam App 385230) (Version: - Blaze Epic)
Ninjahtic (HKLM-x32\...\Steam App 385230) (Version: - Blaze Epic)
Ninjahtic (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Ninjahtic) (Version: - )
Ninjahtic Mind Tricks (HKLM\...\Steam App 387880) (Version: - Blaze Epic)
Ninjahtic Mind Tricks (HKLM-x32\...\Steam App 387880) (Version: - )
Ninjahtic Mind Tricks (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Ninjahtic Mind Tricks) (Version: - )
ninjahtic_side_story2 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\ninjahtic_side_story2) (Version: - )
ninjahtic_side_story-backup (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\ninjahtic_side_story-backup) (Version: - )
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
Oddworld: Abe's Exoddus (HKLM-x32\...\Steam App 15710) (Version: - Oddworld Inhabitants)
One Thousand Lies (HKLM\...\Steam App 463390) (Version: - Keinart Lobre)
Oniken (HKLM-x32\...\Steam App 252010) (Version: - JoyMasher)
Ootake ver2.69 (HKLM-x32\...\Ootake_is1) (Version: - Kitao Nakamura)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 9.4.6.2792 - Electronic Arts, Inc.)
Out There Somewhere (HKLM-x32\...\Steam App 263980) (Version: - MiniBoss)
Outland (HKLM-x32\...\Steam App 305050) (Version: - Housemarque)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - )
Phantom Breaker: Battle Grounds (HKLM\...\Steam App 329490) (Version: - MAGES.)
Phantom Breaker: Battle Grounds (HKLM-x32\...\Steam App 329490) (Version: - MAGES.)
Portal 2 Publishing Tool (HKLM-x32\...\Steam App 644) (Version: - )
PPSSPP version 0.9.8 (HKLM-x32\...\PPSSPP_is1) (Version: 0.9.8 - )
PRE12 STI 64Installer (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Prerequisites for SSDT (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation)
Princess Remedy in a World of Hurt (HKLM\...\Steam App 407900) (Version: - Ludosity)
Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access)
Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.988 - Even Balance, Inc.)
Ralink RT5390R 802.11bgn Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.5.0 - Ralink)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Rayman Legends (HKLM\...\Steam App 242550) (Version: - )
Rayman Legends (HKLM-x32\...\Steam App 242550) (Version: - )
Rayman Origins (HKLM-x32\...\Steam App 207490) (Version: - UBIart Montpellier)
Recettear: An Item Shop's Tale (HKLM-x32\...\Steam App 70400) (Version: - EasyGameStation)
Recovery Manager (x32 Version: 5.5.0.5826 - CyberLink Corp.) Hidden
REED (HKLM\...\Steam App 501800) (Version: - PXLink)
Resident Evil 6 / Biohazard 6 (HKLM-x32\...\Steam App 221040) (Version: - Capcom)
Resident Evil Revelations / Biohazard Revelations UE (HKLM-x32\...\Steam App 222480) (Version: - Capcom)
Resident Evil Revelations 2 / Biohazard Revelations 2 (HKLM-x32\...\Steam App 287290) (Version: - CAPCOM Co., Ltd.)
Retro Game Crunch (HKLM-x32\...\Steam App 290040) (Version: - Rusty Moyher)
Risk of Rain (HKLM\...\Steam App 248820) (Version: - Hopoo Games, LLC)
Risk of Rain (HKLM-x32\...\Steam App 248820) (Version: - )
RogueKiller version 12 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12 - Adlice Software)
SafeZone Stable 1.46.1990.139 (x32 Version: 1.46.1990.139 - Avast Software) Hidden
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition)
Sakura Angels (HKLM\...\Steam App 342380) (Version: - Winged Cloud)
Sakura Beach (HKLM\...\Steam App 377680) (Version: - Winged Cloud)
Sakura Beach 2 (HKLM\...\Steam App 407980) (Version: - Winged Cloud)
Sakura Spirit (HKLM\...\Steam App 313740) (Version: - Winged Cloud)
samurai_jazz (HKLM\...\Steam App 346450) (Version: - Blaze Epic)
samurai_jazz (HKLM-x32\...\Steam App 346450) (Version: - )
samurai_jazz (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\samurai_jazz) (Version: - )
Savant - Ascent (HKLM-x32\...\Steam App 259530) (Version: - DPad Studios)
Secure Download Manager (HKLM-x32\...\{E040B65B-8683-4228-8C33-D44A141E40EA}) (Version: 3.1.60 - Kivuto Solutions Inc.)
SEGA Genesis & Mega Drive Classics (HKLM-x32\...\Steam App 34270) (Version: - Sega)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Shadow Warrior Classic Redux (HKLM-x32\...\Steam App 225160) (Version: - 3D Realms)
Shank (HKLM\...\Steam App 6120) (Version: - Klei Entertainment)
Shank (HKLM-x32\...\Steam App 6120) (Version: - Klei Entertainment)
Shank 2 (HKLM-x32\...\Steam App 102840) (Version: - Klei Entertainment)
Shin Samurai Jazz (HKLM\...\Steam App 354970) (Version: - Blaze Epic)
Shin Samurai Jazz (HKLM-x32\...\Steam App 354970) (Version: - )
Shin Samurai Jazz (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Shin Samurai Jazz) (Version: - )
Shipwreck (HKLM\...\Steam App 342490) (Version: - Brushfire Games)
Shipwreck (HKLM-x32\...\Steam App 342490) (Version: - Brushfire Games)
Shovel Knight (HKLM-x32\...\Steam App 250760) (Version: - Yacht Club Games)
SimCity 2000 Special Edition (HKLM-x32\...\{59D2C751-F7BE-4E9F-9C8C-1F16013802C7}) (Version: 2.0.0.1 - Electronic Arts)
Sir, You Are Being Hunted (HKLM-x32\...\Steam App 242880) (Version: - Big Robot Ltd)
sj_neo1 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\sj_neo1) (Version: - )
sj_neo3 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\sj_neo3) (Version: - )
Skype 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Sonic CD (HKLM\...\Steam App 200940) (Version: - Blit Software)
Sonic CD (HKLM-x32\...\Steam App 200940) (Version: - Blit Software)
South Park: The Stick of Truth (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment)
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\...\Steam App 6020) (Version: - Raven Software)
Star Wars Movie Duels 2 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\Star Wars Movie Duels 2) (Version: - )
Star Wars Republic Commando (HKLM\...\Steam App 6000) (Version: - LucasArts)
Star Wars Republic Commando (HKLM-x32\...\Steam App 6000) (Version: - LucasArts)
STAR WARS Tie Fighter 95 Compatibility Fix (HKLM\...\{e54a1223-e3e6-4c2f-84ba-02c5c1c57da1}.sdb) (Version: - )
Star Wars X-Wing 95 Compatibility Fix (HKLM\...\{43b2876b-3e34-4e6e-ac3f-4da816b782e0}.sdb) (Version: - )
Star Wars X-Wing Alliance (HKLM\...\{a218c2db-d769-44eb-b757-b7fc41b6596c}.sdb) (Version: - )
Star Wars: Dark Forces (HKLM-x32\...\Steam App 32400) (Version: - LucasArts)
Star Wars: The Force Unleashed Ultimate Sith Edition (HKLM-x32\...\Steam App 32430) (Version: - LucasArts)
STAR WARS Battlefront II (HKLM\...\Steam App 6060) (Version: - Pandemic Studios)
STAR WARS: X-Wing Alliance (HKLM-x32\...\Steam App 361670) (Version: - Totally Games)
STAR WARS: X-Wing vs. TIE Fighter (HKLM-x32\...\Steam App 361690) (Version: - Totally Games)
Stealth Bastard Deluxe (HKLM\...\Steam App 209190) (Version: - Curve Studios)
Stealth Bastard Deluxe (HKLM-x32\...\Steam App 209190) (Version: - Curve Studios)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Strider (HKLM\...\Steam App 235210) (Version: - Double Helix Games)
Strider (HKLM-x32\...\Steam App 235210) (Version: - Double Helix Games)
Super Cyborg (HKLM-x32\...\Steam App 341550) (Version: - Artur Games)
Super Furball (HKLM-x32\...\Steam App 364770) (Version: - Dustin Gunn)
Super Meat Boy (HKLM\...\Steam App 40800) (Version: - Team Meat)
Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - )
Switch Sound File Converter (HKLM-x32\...\Switch) (Version: - NCH Software)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM-x32\...\{F89CDED6-B1F1-489F-BA44-698BF6A737C2}) (Version: 6.1.6.0 - Husdawg, LLC)
System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)
System Shock 2 (HKLM-x32\...\Steam App 238210) (Version: - Irrational Games)
Taimumari (HKLM\...\Steam App 375520) (Version: - TERNOX)
Teslagrad (HKLM-x32\...\Steam App 249590) (Version: - Rain Games)
The Elder Scrolls IV: Oblivion (HKLM-x32\...\Steam App 22330) (Version: - Bethesda Game Studios)
The GIMP 2.2.10 (HKLM-x32\...\WinGimp-2.0_is1) (Version: - )
THE KING OF FIGHTERS '98 ULTIMATE MATCH FINAL EDITION (HKLM\...\Steam App 222420) (Version: - Code Mystics)
THE KING OF FIGHTERS '98 ULTIMATE MATCH FINAL EDITION (HKLM-x32\...\Steam App 222420) (Version: - Code Mystics)
THE KING OF FIGHTERS XIII STEAM EDITION (HKLM\...\Steam App 222940) (Version: - SNK Playmore)
THE KING OF FIGHTERS XIII STEAM EDITION (HKLM-x32\...\Steam App 222940) (Version: - SNK Playmore)
The Legend of Dark Witch (HKLM\...\Steam App 420770) (Version: - INSIDE SYSTEM)
The Legend of Dark Witch (HKLM-x32\...\Steam App 420770) (Version: - INSIDE SYSTEM)
The Stanley Parable (HKLM\...\Steam App 221910) (Version: - Galactic Cafe)
The Stanley Parable (HKLM-x32\...\Steam App 221910) (Version: - Galactic Cafe)
The Ultimate DOOM (HKLM-x32\...\Steam App 2280) (Version: - id Software)
The Way of the Pixelated Fist (HKLM\...\Steam App 365340) (Version: - Blaze Epic)
The Way of the Pixelated Fist (HKLM-x32\...\Steam App 365340) (Version: - )
The Way of the Pixelated Fist (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\The Way of the Pixelated Fist) (Version: - )
Thief 2 (HKLM-x32\...\Steam App 211740) (Version: - Looking Glass Studios)
Thief Gold (HKLM-x32\...\Steam App 211600) (Version: - Looking Glass Studios)
Thief: Deadly Shadows (HKLM-x32\...\Steam App 6980) (Version: - Ion Storm)
Thirty Flights of Loving (HKLM-x32\...\Steam App 214700) (Version: - Blendo Games)
Thomas Was Alone (HKLM-x32\...\Steam App 220780) (Version: - Mike Bithell)
Tiny Barbarian DX (HKLM-x32\...\Steam App 253350) (Version: - StarQuail Games)
Tokyo School Life (HKLM\...\Steam App 320760) (Version: - M2 Co.,LTD)
Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics)
Tomb Raider: Anniversary (HKLM\...\Steam App 8000) (Version: - Crystal Dynamics)
Tomb Raider: Anniversary (HKLM-x32\...\Steam App 8000) (Version: - Crystal Dynamics)
Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Crystal Dynamics Inc.)
Train of Afterlife (HKLM\...\Steam App 342360) (Version: - Zeiva Inc)
Two Brothers (HKLM-x32\...\Steam App 259760) (Version: - Ackk Studios)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Uncanny Valley (HKLM\...\Steam App 359580) (Version: - Cowardly Creations)
Uncanny Valley (HKLM-x32\...\Steam App 359580) (Version: - Cowardly Creations)
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Valdis Story: Abyssal City (HKLM-x32\...\Steam App 252030) (Version: - )
Valiant Hearts: The Great War / Soldats Inconnus : Mémoires de la Grande Guerre (HKLM\...\Steam App 260230) (Version: - Ubisoft Montpellier)
Valiant Hearts: The Great War / Soldats Inconnus : Mémoires de la Grande Guerre (HKLM-x32\...\Steam App 260230) (Version: - Ubisoft Montpellier)
vb_12alt (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb_12alt) (Version: - )
vb_8bit (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb_8bit) (Version: - )
vb1 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\vb1) (Version: - )
viralbyte_prealpha0185 (HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\viralbyte_prealpha0185) (Version: - )
Visual SuperScript (HKLM-x32\...\{08487103-30FE-11D6-A320-0003476C59D4}) (Version: 10.9.00 - DAA Enterprises Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.3 - VideoLAN)
Voices from the Sea (HKLM\...\Steam App 348620) (Version: - Zeiva Inc)
Volume (HKLM\...\Steam App 365770) (Version: - Bithell Games)
Vox Populi Vox Dei 2 (HKLM-x32\...\Steam App 345120) (Version: - Great Cogs)
VVVVVV (HKLM-x32\...\Steam App 70300) (Version: - Terry Cavanagh)
Wanderlust: Rebirth (HKLM-x32\...\Steam App 211580) (Version: - Yeti Trunk)
WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.8050 - Broadcom Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Xeodrifter (HKLM-x32\...\Steam App 319140) (Version: - Renegade Kid)
You Have to Win the Game (HKLM-x32\...\Steam App 286100) (Version: - Minor Key Games)
Ys Origin (HKLM\...\Steam App 207350) (Version: - Nihon Falcom)
Ys Origin (HKLM-x32\...\Steam App 207350) (Version: - Nihon Falcom)
Ys: The Oath in Felghana (HKLM-x32\...\Steam App 207320) (Version: - Falcom)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3949817429-3550067080-3212671863-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Larry\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {184428B5-D804-4751-9CAA-A4B56B51DB96} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-larry_sk8@yahoo.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-08-05] (Adobe Systems Incorporated)
Task: {1E62D425-A733-400E-8595-50FB956296D9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {23CDB2A6-0A2E-429F-852E-9DE4B5CD686C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PendingActionAlert => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\PendingActionAlert.exe [2016-07-26] (HP Inc.)
Task: {29354504-EA72-465A-8893-3115226C8734} - System32\Tasks\SafeZone scheduled Autoupdate 1450376341 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe
Task: {2D782937-1A54-48BC-8F20-9F92A286FE38} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-08-21] (AVAST Software)
Task: {3DFE59D0-04F6-48C8-B9BB-CEDD0EC070DD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {60558755-AFA4-41DE-8517-DF096339661D} - System32\Tasks\CLVDLauncher => c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.)
Task: {74C5AF5E-8805-4EAB-9D4D-CB2AB4B1E211} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {799709D9-26DA-44DB-877E-F202146E71A6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-09-16] (Microsoft Corporation)
Task: {88F59A61-45B5-4F0C-8923-1FAA22746E36} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {8D066F4B-B442-4DA9-905E-63E49F0DB10D} - System32\Tasks\HPCeeScheduleForLarry => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {969E94B9-2A66-42F2-9164-3733BA9A9550} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {CB9BB12D-B00A-41CA-AF05-75F0DDC09032} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-07] (CyberLink)
Task: {D14D556F-3659-4E30-9896-5D26DD65F60A} - System32\Tasks\Private Internet Access Startup => C:\Program Files\pia_manager\pia_manager.exe [2016-09-24] ()
Task: {D1851579-51C9-4859-9610-87BF14BCC403} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {D9B4A1CC-8ABD-48ED-97A9-CF67AFE99192} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLarry.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 03:18 - 2015-10-30 03:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-08-04 01:25 - 2015-08-04 01:25 - 00127488 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-16 17:19 - 2016-09-07 01:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-06-08 18:13 - 2016-06-08 18:13 - 00959168 _____ () C:\Users\Larry\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-02-13 08:54 - 2016-02-13 08:54 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 21:17 - 2016-06-30 23:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-09-16 17:16 - 2016-09-07 00:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-16 17:16 - 2016-09-07 00:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-09-16 17:16 - 2016-09-07 00:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-15 21:38 - 2015-07-15 21:38 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2016-08-21 07:05 - 2016-08-21 07:05 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-10-04 10:40 - 2016-10-04 10:40 - 03118360 _____ () C:\Program Files\AVAST Software\Avast\defs\16100400\algo.dll
2016-08-21 07:05 - 2016-08-21 07:05 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-10-04 13:45 - 2016-10-04 13:45 - 03118360 _____ () C:\Program Files\AVAST Software\Avast\defs\16100401\algo.dll
2013-03-01 16:25 - 2012-06-07 23:34 - 00627216 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2012-06-08 15:34 - 2012-06-08 15:34 - 00016400 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2016-07-01 23:09 - 2016-07-01 23:09 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\69512072.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\69512072.sys => ""="Driver"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\Control Panel\Desktop\\Wallpaper -> c:\users\larry\appdata\roaming\microsoft\windows photo viewer\windows photo viewer wallpaper.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\StartupFolder: => "Bluetooth.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "BCSSync"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "DAEMON Tools Ultra Agent"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "DS3 Tool"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "Raptr"
HKU\S-1-5-21-3949817429-3550067080-3212671863-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_F48C1A7A1E0E038756321FC900FDE017"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{0EF6077B-987B-4C61-AEDF-D5912BB50FA5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{5889F8B3-AA0E-42A8-A92C-A683649ADF60}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{BBA9F43E-0D14-49AC-96FC-6E49E8FE4C90}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe
FirewallRules: [{A4E8E41C-DDB2-42D6-AD13-6CFF412858D2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe
FirewallRules: [{6D9048FB-7A43-41DC-9552-22CB1A0C33BD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nil-Ninjahtic\Nil-Ninjahtic.exe
FirewallRules: [{C76056AE-9AF1-423C-9D3C-30534FB1F122}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nil-Ninjahtic\Nil-Ninjahtic.exe
FirewallRules: [{44C24012-0065-49E6-8EF9-8222D8EEDB9E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic\Ninjahtic.exe
FirewallRules: [{743A746A-A1D5-4BA6-AB76-3E97BF79F195}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic\Ninjahtic.exe
FirewallRules: [{5E2D87C2-704D-45AF-99F7-5534B005DB9C}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{F86661BF-33C3-450B-84B4-5E670CCCB54B}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{AA41120D-E788-4552-A971-2EA4AC7F716C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{E1FAADB8-DF02-4533-98CB-5E20CEB4733C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{9714A2C1-CC9F-4CFD-AB18-5EE67236A6BF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\If My Heart Had Wings\AdvHD.exe
FirewallRules: [{8F08EF34-8FE5-4E65-902E-8B68A9E8081D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\If My Heart Had Wings\AdvHD.exe
FirewallRules: [{407FDDC4-759A-4848-A6F6-5F99B4846E62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lone Survivor\LoneSurvivor\LoneSurvivor.exe
FirewallRules: [{0F66EE0B-53CF-45C0-8240-4B2AD5E654F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lone Survivor\LoneSurvivor\LoneSurvivor.exe
FirewallRules: [{86DB6076-FAEF-4C5C-A786-A3FE82B598CF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FindingTeddy\FindingTeddy.exe
FirewallRules: [{85981C82-11B3-456B-BCED-959F828F0A5F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FindingTeddy\FindingTeddy.exe
FirewallRules: [{FD29F72B-9BF5-4E1A-837A-36D6CA9EBFAA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fairy Bloom Freesia\FairyBloomFreesia.exe
FirewallRules: [{99F8025B-1784-4B45-84B5-6A720E42E8F2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fairy Bloom Freesia\FairyBloomFreesia.exe
FirewallRules: [{CA4BAC6F-A861-4355-8E77-D1AC4A182080}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank 2\bin\shank2.exe
FirewallRules: [{7855BB59-6AF9-4223-80FF-15E669766D0A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank 2\bin\shank2.exe
FirewallRules: [{45442F74-09B7-4813-B3B8-5425875E625B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Dragon Trilogy\ddtrilogy.exe
FirewallRules: [{B4BC1FC1-5561-47FF-B1DC-9C086D886D52}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Dragon Trilogy\ddtrilogy.exe
FirewallRules: [{C9E9C38E-1569-4596-A300-FF92785F92ED}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Stanley Parable\stanley.exe
FirewallRules: [{1CDDCE97-6171-4E4A-8472-52A40FF7C332}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Stanley Parable\stanley.exe
FirewallRules: [{BAA99912-3C5C-41D5-A3DE-7FED04507E29}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Outland\Outland.exe
FirewallRules: [{B43BE00F-DF9B-4698-AC33-71B0D6AB7D0C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Outland\Outland.exe
FirewallRules: [{DC0AE094-7853-4B75-BD31-1831E5E48D7C}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{07BF8AFC-4BF6-487C-BE2F-0EC6ACAFFACC}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{21E97295-FC3D-48EB-9642-F7EF81DD3BF1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{A4736736-EB0B-4732-9DD9-79EC23833D08}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{4EBA9D44-678E-4CE1-BAB9-1987B24B1037}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Vox Populi Vox Dei(a werewolf thriller) Episode 2\VP2.exe
FirewallRules: [{1827A483-598E-4AA1-BD0E-EE226DFD62D6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Vox Populi Vox Dei(a werewolf thriller) Episode 2\VP2.exe
FirewallRules: [{F4C2025A-7230-4689-BF37-D8ECE8354030}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic Mind Tricks\Ninjahtic Mind Tricks.exe
FirewallRules: [{E98E4A1E-1F94-46D2-B5EC-EEA272F0AC39}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ninjahtic Mind Tricks\Ninjahtic Mind Tricks.exe
FirewallRules: [{46C37C54-5761-4587-89DE-6EA8551BA5CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Cyborg\Super Cyborg.exe
FirewallRules: [{89638B89-B14F-40F4-883F-62F86E476022}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Cyborg\Super Cyborg.exe
FirewallRules: [{86ACA568-8604-4742-87DB-FDBB87EEE8EB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{8ADE810C-3814-4127-87AF-92AA6BEB2F72}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{47DE2D4B-07B6-4ED2-907E-C7AD11ECDBFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{CCDD2AA3-3602-412A-B757-60B2803DB8A5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{A0ECA7D6-6DFA-46EF-B74A-80145DE50781}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{D3B2BDCD-C28D-459C-8522-8145B44AF024}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{D3DD1B6D-2DF8-4B71-8C35-6D9BEC67479E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{3644ED3F-D32E-4032-9B8A-6FB7D0E365ED}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{3EA3C457-C218-4884-9304-2F566BCB6B2D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dreaming Sarah\nw.exe
FirewallRules: [{6602E08D-9330-4D99-841F-6119177B4287}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dreaming Sarah\nw.exe
FirewallRules: [{A177DC3C-E40B-4527-866D-0881B3D614B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero\HMH.exe
FirewallRules: [{BB979EB5-EF3C-463A-B0A1-F068ADBA9968}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero\HMH.exe
FirewallRules: [{7DA1C05D-BAB4-42D0-9526-94F75BDB6314}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero Two\HMH2.exe
FirewallRules: [{F6D4AA04-D7F5-4BEB-8C9E-62E73B88E0B5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half Minute Hero Two\HMH2.exe
FirewallRules: [{A41BDE77-77E1-490E-9D2E-1011BD7DC33B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValveTestApp207490\Rayman Origins.exe
FirewallRules: [{B6CD1E22-8E3F-4881-A7FE-AC188B12FCBF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValveTestApp207490\Rayman Origins.exe
FirewallRules: [{05BCE9D1-5032-4D90-A9D6-AAC952E4F0DA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe
FirewallRules: [{36B8D2BD-B3F3-4942-A6DB-2F90263AAA9C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CastleCrashers\castle.exe
FirewallRules: [{3BE5B64A-25AE-4CB2-ADB3-67E45F409EE7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\outtheresomewhere\ots.exe
FirewallRules: [{9AA3417A-34B0-4E83-B72C-E426CDCB5F0F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\outtheresomewhere\ots.exe
FirewallRules: [{D742297A-4E6D-4F92-9F64-619034576065}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\Editor.exe
FirewallRules: [{1EF95B67-C911-4C90-8BCD-99207E2A5696}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\Editor.exe
FirewallRules: [{496D3EEF-59D6-4A52-AC16-6F3D2DF3E5DD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\CameraObscura.exe
FirewallRules: [{777D9E20-FE17-46ED-86B4-FF5A3A912A1C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Camera Obscura\CameraObscura.exe
FirewallRules: [{FF381581-BB75-45F8-B8D0-6ED8B1020B75}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shipwreck\Shipwreck.exe
FirewallRules: [{EAB11B4C-14DA-4441-A541-E024F1A90A3E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shipwreck\Shipwreck.exe
FirewallRules: [{A5F73DA9-CBDB-4E04-A344-9023E91488A8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{EC53A251-2F12-47F1-A8A9-5C4159912EE2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{90E0DE12-CDB8-4083-867A-A7CA172EFB4D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{292756F6-1525-4BBB-8AF9-1026C723E92D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{53500DD6-1B55-469C-8698-E9DF73ED689E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Furball\SuperFurball.exe
FirewallRules: [{8C5E396B-4898-4E28-BAF7-40251204D228}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Furball\SuperFurball.exe
FirewallRules: [{3468D1AA-75C3-4574-B38C-467173BEBC2B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Retro Game Crunch\Retro Game Crunch.exe
FirewallRules: [{E2647C1D-8E79-4863-A595-0DB80BFB941F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Retro Game Crunch\Retro Game Crunch.exe
FirewallRules: [{297ED99C-D69F-49D2-BB26-FFDF34BD3552}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jet Set Radio\jsrsetup.exe
FirewallRules: [{BEA8DE43-2500-4357-9C2C-08B8FB54CEC6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jet Set Radio\jsrsetup.exe
FirewallRules: [{3CA1AC16-A3FE-4601-8583-CFD76140E833}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Squishy\bin\squishy.exe
FirewallRules: [{F0FAFBFD-9C53-495E-AFD1-A99EBECD85C1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Squishy\bin\squishy.exe
FirewallRules: [{5BE4B02E-120A-40C0-AF13-95A4755A0786}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Xeodrifter\XeodrifterSteam.exe
FirewallRules: [{4273A22E-3E53-45D7-9F67-437BEB41EE7B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Xeodrifter\XeodrifterSteam.exe
FirewallRules: [{0256C586-C4F3-437D-ABE9-9BCB7DC9F9A0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing vs TIE Fighter\xwingtie.exe
FirewallRules: [{BA422FEC-451F-4004-A094-46C05ADA60C6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing vs TIE Fighter\xwingtie.exe
FirewallRules: [{61B0EACF-D36D-4557-8C27-21351220703B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars X-Wing Alliance\alliance.exe
FirewallRules: [{BF238D38-CC0A-4F46-B518-E5F14FA9DA54}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars X-Wing Alliance\alliance.exe
FirewallRules: [{1ED0C2C9-1019-4D3C-BB1F-095A2B2619F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\classic\DOSBOX\dosbox.exe
FirewallRules: [{A3850039-1D8C-428D-8C60-2DA8DFDDF440}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\classic\DOSBOX\dosbox.exe
FirewallRules: [{F455E5E4-0951-41B7-9E9C-9A041D997176}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\remastered\TIE95.EXE
FirewallRules: [{1F59C5C8-B533-4AC9-9435-564D26473A61}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS Tie Fighter\remastered\TIE95.EXE
FirewallRules: [{D5EFE587-ED0E-4147-A5A8-B03909E06F1F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\classic\DOSBOX\DOSBox.exe
FirewallRules: [{B3EE7C25-1483-4132-9F6F-E2C442E4A7BA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\classic\DOSBOX\DOSBox.exe
FirewallRules: [{97B32F81-FC46-4130-A76E-876EE4D0B4BC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\remastered\XWING95.EXE
FirewallRules: [{73BEBBAB-D481-4166-8E87-49986FCBB24F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\STAR WARS X-Wing\remastered\XWING95.EXE
FirewallRules: [{D87056C2-F30C-4316-A701-C3B5EA8893B3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{D6415D2D-033F-4F5E-8B90-43D8C07DB0DA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{34147962-D27A-4BFC-A718-416A9BCB53D1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{23EC7AB7-1DC0-4FAF-B84C-05E4969B3732}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{BFB8F87E-5D66-4F28-A0FD-3544C27AD029}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{D06B46AC-6D8C-4732-8F80-839FC631F5B5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{3F0B3205-E347-4E66-A6C1-6AE3B348FF19}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\JumpBoxer\JumpBoxer.exe
FirewallRules: [{275BF4A8-1210-48C8-8EFC-F48AAFAC8827}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\JumpBoxer\JumpBoxer.exe
FirewallRules: [{338EE021-978E-4371-A763-B6A992C84254}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Way of the Pixelated Fist\The Way of the Pixelated Fist.exe
FirewallRules: [{DD5B160E-A07D-483B-8F86-5B3A5B6DA0CD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Way of the Pixelated Fist\The Way of the Pixelated Fist.exe
FirewallRules: [{E955A8D1-F148-4A41-A855-4470EEAA5F53}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Freedom Planet\FP.exe
FirewallRules: [{ACDE6C61-F61D-476B-8A72-B5BE3A20DBF8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Freedom Planet\FP.exe
FirewallRules: [{12B01F03-808E-4E33-9731-D7AD707BFAC9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\POSTAL2Complete\System\Launcher.exe
FirewallRules: [{EEF3BB79-78E1-4796-AA4C-9AECB56AC21F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\POSTAL2Complete\System\Launcher.exe
FirewallRules: [{878D5408-A6AA-440D-AF60-9C0C5FEC722D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{FC97911B-4B2E-448F-BC66-AA12C36EF12F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{3BF67632-7D06-4062-B541-4F5B8830E551}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shin Samurai Jazz\Shin Samurai Jazz.exe
FirewallRules: [{115C10BC-0BB0-431A-8E1B-377160CF0630}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shin Samurai Jazz\Shin Samurai Jazz.exe
FirewallRules: [{856FB0E8-EE37-495E-AE85-C3EA4C763A8A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\An Imp A Fiend\An Imp A Fiend.exe
FirewallRules: [{1C139F6C-3CCD-4DDF-A072-EA7F63FE7A44}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\An Imp A Fiend\An Imp A Fiend.exe
FirewallRules: [{C0BAC311-9989-4C53-B8DC-A930562853FD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DB Xenoverse\DBXV.exe
FirewallRules: [{E313E884-EEF8-4CF5-84DA-0F12DE8CBE55}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DB Xenoverse\DBXV.exe
FirewallRules: [{8C06E926-29F6-45A9-883A-6E821FD4885B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{A901470E-4FD2-4C56-B7F2-9366A554B18B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{382F7FB8-82A4-4AD7-8230-A70CDC410839}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Broken Sword Shadow of the Templars\bs1dc.exe
FirewallRules: [{AF658B59-3C10-407C-BF0A-C0D67BCEEC16}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Broken Sword Shadow of the Templars\bs1dc.exe
FirewallRules: [{8EEBC5DA-278C-417A-926A-5EA9E897D199}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castle In The Darkness\CastleInTheDarkness.exe
FirewallRules: [{8D4A0BF8-629D-4135-98FF-8D48B30A4C6B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castle In The Darkness\CastleInTheDarkness.exe
FirewallRules: [{44E4820F-520D-471E-AA09-DD73B074F8F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{209D1561-452C-4D19-AECD-10D2A1969987}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{1E3BACCD-9926-43BC-97C2-7F1C0A941B22}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oniken\Oniken.exe
FirewallRules: [{4DE459D5-95CA-4603-A423-26EEB3CF3847}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oniken\Oniken.exe
FirewallRules: [{35158701-DE38-40CA-A486-3675ADBA3956}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The King of Fighters'98 Ultimate Match\KingOfFighters98UM.exe
FirewallRules: [{1C919114-8913-4875-84AE-7C1789A943E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The King of Fighters'98 Ultimate Match\KingOfFighters98UM.exe
FirewallRules: [{9EE5E0D7-B775-42F5-8826-F412FED90EB1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{C348795F-2ECF-4EAB-ADE4-BF6F2E82FC80}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadow Warrior Classic\bin\build.exe
FirewallRules: [{989A0733-5130-479D-A825-F0A6260570B3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\samurai_jazz\samurai_jazz.exe
FirewallRules: [{C4CF95A4-2323-4809-876C-AC9727961B40}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\samurai_jazz\samurai_jazz.exe
FirewallRules: [{3C038959-25A0-429D-A772-5B307A10A144}] => (Allow) LPort=52000
FirewallRules: [{E1D42D4C-2F2B-45A2-B72C-48979BFB93F7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8663D3DF-1B7F-45C3-B8A9-54D8A3DE7BE2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D629B735-2245-4368-8B88-39ECDCDFC828}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BlazBlue Calamity Trigger\BBCT.exe
FirewallRules: [{A7347199-1812-4794-9592-78BD19BC5F5A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BlazBlue Calamity Trigger\BBCT.exe
FirewallRules: [{D240A7E5-37B1-49FB-909B-DC5CD6DEE4BC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fortune Summoners\sotes.exe
FirewallRules: [{E216E925-34C7-4179-8F63-51CB344489D7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fortune Summoners\sotes.exe
FirewallRules: [{3E80155D-86E0-4F67-AB49-CF788A7540E8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\custom.exe
FirewallRules: [{41DBD859-DB08-4BEA-8726-C4CC12476C11}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\custom.exe
FirewallRules: [{D53912C1-C4E0-429A-B18B-09E1C97B9C2F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\recettear.exe
FirewallRules: [{C1756E41-C763-4164-B6C7-FA79C0C6A0B7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Recettear\recettear.exe
FirewallRules: [{8F17E465-8B59-4893-9523-8BC8B096F02B}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [{18BF1F9C-02AF-4415-829B-D1302ED140D1}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [{088634E6-0627-4EA8-BEDC-AD8897885CA8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{0C5655F2-07B2-4914-A4C2-F8081B8C49E5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{89B24A4F-98F6-44B9-93A2-12ADBA591A1A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Need for Speed Undercover\nfs.exe
FirewallRules: [{7E871F28-6AAF-4E69-942F-87CA24EC3682}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Need for Speed Undercover\nfs.exe
FirewallRules: [{5123915B-538B-4E98-A292-1C9C8CE4D760}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\1001 Spikes\1001 Spikes.exe
FirewallRules: [{CD55B003-4C1B-419A-8DFF-DCABF7B4C4CD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\1001 Spikes\1001 Spikes.exe
FirewallRules: [{54E9809F-C552-4F6A-94D1-2F1F1FF06439}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{6FE65681-CD81-4EFB-B422-5B5DDDAA07D2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{8832DD1F-AA14-4C65-9CD4-01AC35DF958F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{362CF6F6-A9F8-40C7-869D-37C4F10149F2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{30F436F4-AD6D-4D94-98BE-332EF330FAD4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{85342751-80D4-43AD-80B2-B8EA74D226C9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{08CC779C-F9B7-4B7F-93A8-0C0178C99224}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CT Special Forces\CT Special Forces.exe
FirewallRules: [{7429FBD8-7A66-4D1B-92AA-57089130E2CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CT Special Forces\CT Special Forces.exe
FirewallRules: [{2F5C994C-047D-4FCD-A7F4-0B4B126C362E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{F9753B85-E0C3-4B5F-90D5-9100DD5B2821}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{EB30C7BF-7D04-4F43-8F67-A8C0999DB33D}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [{C1DD2017-9657-4326-A963-0A22808C95D5}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield Bad Company 2\BFBC2Game.exe
FirewallRules: [{225998FE-F543-4FDA-97B8-727E57D57450}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{480D88CB-70FA-44BB-8327-EED89E32954C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{114CA1FF-38D5-4FDB-973B-94DA865A90F5}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{1A8EF6D7-63DC-4111-8558-FB31FC9A46E7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{4AF08277-4AD9-4E51-A1A9-4A7F54FEE3B2}C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe
FirewallRules: [TCP Query User{B4D2DB9A-BF92-423B-A65C-ED214EC474AE}C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\killerisdead\binaries\win32\kidgame.exe
FirewallRules: [{638CA45F-DB3A-42EA-A29D-CA3FA0616241}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe
FirewallRules: [{C785B067-97F6-4ACA-935E-505E9626180E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe
FirewallRules: [{4799DE5D-8BD6-4953-929B-64CCF23385A8}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{176954AC-0FF6-4A63-B693-2B85A26C1EEA}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{5A1EB43E-6104-46E6-A310-4BCE4ED7BCB2}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{96334709-01E6-4CFC-BA4E-289837FEE055}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{63CC2D1F-2909-4A66-9DFC-126D4B2BAF70}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FIST OF AWESOME\fistofawesome.exe
FirewallRules: [{8910B349-730C-4D53-A1C2-8D9E80E5D2DC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FIST OF AWESOME\fistofawesome.exe
FirewallRules: [{EDB891AB-2B09-47BE-9D61-ED948C1CCEBC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\You Have to Win the Game\TheGame.exe
FirewallRules: [{5EA5A9CC-7AAC-4067-9C16-D409AF47C7CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\You Have to Win the Game\TheGame.exe
FirewallRules: [{E1BFD540-A86F-4434-BE69-F5D3B575824C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GrooveCity\GrooveCity.exe
FirewallRules: [{D7DD3C7E-94EE-4185-B2D6-E0A219154420}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GrooveCity\GrooveCity.exe
FirewallRules: [{A201FFEA-DBD2-4C4B-B1A9-DA35AA3A35BF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ElectronicSuperJoy\ElectronicSuperJoy.exe
FirewallRules: [{4A81696B-0BBB-4E49-BC98-26F7CF8F4BD9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ElectronicSuperJoy\ElectronicSuperJoy.exe
FirewallRules: [{442FABE1-E930-430D-AFE4-501FA8C4FBEF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXSettings.exe
FirewallRules: [{A4057A54-1735-462D-87DA-D05D6B295A74}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXSettings.exe
FirewallRules: [{90B924DE-D995-4F89-B060-9535227F2C10}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXReflex.exe
FirewallRules: [{B0538A94-9A71-4947-ACA4-0D74BE3367F9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\MX vs ATV Reflex\MXReflex.exe
FirewallRules: [{0788CE23-D95B-45F7-8593-8C52F292509C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_2\thief2.exe
FirewallRules: [{BAD67B92-0D69-4878-A397-75F34CAE4ABD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_2\thief2.exe
FirewallRules: [{1C2651D2-64CA-41E8-AA8A-342E39393558}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Thief Deadly Shadows\System\runme.exe
FirewallRules: [{8C157CCE-C8BB-4F61-B689-3046B81C2BD7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Thief Deadly Shadows\System\runme.exe
FirewallRules: [{A85DED29-6C99-4CDF-8FEB-96ED00D1A2FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TinyBarbarianDX\TinyBarbarianDX.exe
FirewallRules: [{DC46E70E-6EB5-4D9D-861A-C4154AB0DE4B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TinyBarbarianDX\TinyBarbarianDX.exe
FirewallRules: [{9C5959A1-E3C1-4547-BA89-1A77A761596F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Two Brothers\TwoBrothers.exe
FirewallRules: [{ACA2BAC9-B93B-4599-B604-C80278DFF892}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Two Brothers\TwoBrothers.exe
FirewallRules: [{D9A85349-C5D2-4DC4-BFC6-DD4547FC583E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Momodora III\Momodora3.exe
FirewallRules: [{95CEC0A2-D91D-4465-BA3C-573F38AEF15C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Momodora III\Momodora3.exe
FirewallRules: [{CF0588DA-0716-4620-B513-DFA353470612}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{0C45D221-1890-42D4-B522-FC574789671F}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [UDP Query User{FFE88B0E-DAA1-48C8-AD85-6A4FC6548698}C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe] => (Block) C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe
FirewallRules: [TCP Query User{25BF361E-CE81-48D3-89FB-A6A85C88C9DC}C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe] => (Block) C:\users\larry\appdata\roaming\gamemaker-studio\runner.exe
FirewallRules: [{BF854F6E-70E3-4AD7-B300-C8D3B01A6204}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_gold\THIEF.EXE
FirewallRules: [{A2BDB59C-BC4A-4AE6-A8F6-8B5CA8B3AFA5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thief_gold\THIEF.EXE
FirewallRules: [UDP Query User{3B83B8EB-C0E3-4A50-959F-94BE2CC6777F}C:\visual superscript\app\alchemy\alchemy.exe] => (Allow) C:\visual superscript\app\alchemy\alchemy.exe
FirewallRules: [TCP Query User{8E47FFB2-D1D3-4377-911F-5B685EF53ECF}C:\visual superscript\app\alchemy\alchemy.exe] => (Allow) C:\visual superscript\app\alchemy\alchemy.exe
FirewallRules: [{FE60C2C8-AB57-499E-B4BD-9F85DE1F6DB4}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\WDExpress.exe
FirewallRules: [{A9BAAD8E-D490-41EF-A3C1-6785229A2CA5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\config.exe
FirewallRules: [{B4C08B89-F287-4D21-B6EA-9F01AB57F822}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\config.exe
FirewallRules: [{D3BA4B9A-E7A9-4159-95A1-3FE0BF815469}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\yso_win.exe
FirewallRules: [{49AE4328-1B1E-4756-89FB-FB1AA666F11A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys Origin\yso_win.exe
FirewallRules: [{BD769EE6-D384-4EC9-875E-E11FFB8FA60E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{93D556BC-0967-4E90-8AA9-B0B213599271}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SS2\Shock2.exe
FirewallRules: [{53B49FBF-1BCD-47E5-920A-2BFDD4D5FCC5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\King of Fighters XIII\kofxiii.exe
FirewallRules: [{37F2B364-E18C-4ED2-A503-8572ED5F2969}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\King of Fighters XIII\kofxiii.exe
FirewallRules: [{9EA2E8E2-761A-4F4A-A989-BF2381CBCCD2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{887D642E-912A-4643-9399-D13D1AFB404D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{1CB5B73B-03C6-4813-9F6A-076EAD3D34B5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Love\Love.exe
FirewallRules: [{B465F372-3066-4FEC-991B-22BBA4131B36}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Love\Love.exe
FirewallRules: [{A8480151-5F87-44FE-9593-CD3732EEA23E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{F183A65E-84D3-46D6-BF25-6D17C3412ED0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{B3B80939-CD0C-46AC-9B8E-3B66ADC16673}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Escape Goat\EscapeGoat.exe
FirewallRules: [{2C7BE740-3EED-4D27-A52A-9827DEACBA68}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Escape Goat\EscapeGoat.exe
FirewallRules: [{F7BFD9AA-8919-4192-90F9-D769FCF10FCA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oddworld Abes Exoddus\Exoddus.exe
FirewallRules: [{23EE3987-8BA0-4E08-8CE7-10E9A787D147}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Oddworld Abes Exoddus\Exoddus.exe
FirewallRules: [{EE3BFCF6-A67F-4D57-9DFA-B58BBD7C4E55}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagionds.exe
FirewallRules: [{5A9F3A44-1DBC-437F-9865-44B7EBCA281C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagionds.exe
FirewallRules: [{381E9464-736D-4C88-A719-C1246BC6663E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagion.exe
FirewallRules: [{A76A68BA-6193-499E-9B2A-CA31469C76DD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Contagion\contagion.exe
FirewallRules: [{DFFE72C0-9CBE-4309-9BD9-AA2BB4E9FE99}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metal Slug 3\mslug3.exe
FirewallRules: [{257FEA70-BD91-413C-8D17-9DB8761307BA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metal Slug 3\mslug3.exe
FirewallRules: [{CD13FFA3-E4C0-4500-B767-BAEA6C95629D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Teslagrad\Teslagrad.exe
FirewallRules: [{3C76DD35-EC71-42CC-B610-273BCEE56E35}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Teslagrad\Teslagrad.exe
FirewallRules: [{83FC4765-F96F-4C43-83A7-1A53F30AE556}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
FirewallRules: [{5D4A969E-5C98-4C6D-BF49-8060BB299B44}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe
FirewallRules: [{11824D30-E1A3-4844-9088-F0FC54B0272E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{88C810C8-52BC-40AA-BA94-FEC973683046}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{163465E1-0605-4C52-B261-8F4D86EEBF1E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{9ADFFD98-538F-47A3-82B9-53F2B1350A0E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{AA8CDCBA-50E6-4FC8-837E-A78C92C971F8}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{67F600D7-1FE5-4CF0-A969-C51404A19A09}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{9604DF96-9CE3-4E1E-A958-7337C4FD66BD}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\VSWinExpress.exe
FirewallRules: [{F91B57AE-1A82-4BC9-8849-3AF43F7E7B66}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{81EDAACA-741D-403B-AFB3-55AA251B397D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{7366FC16-FFCA-4955-96FA-6CF297ADCCE1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{97D2FDE0-1915-4518-BDC8-5253C4B91CFC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{97A5EEC3-6098-4E92-98E9-692558C54978}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{9D3CF9D6-3B5B-47C6-8934-B57A1077667D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{04580488-D3D2-4B92-807D-6BF8165804E4}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{8E9CAD25-225E-4932-8E8B-295AC657B8C0}] => (Allow) LPort=2869
FirewallRules: [{62A55709-A362-4B78-B7A3-5052FC82963D}] => (Allow) LPort=1900
FirewallRules: [{1FC0B3A2-08DD-4422-B7FA-D897BA0F88CA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win_dx9.exe
FirewallRules: [{0FFC8B9D-F699-4375-BF34-64FD51F54521}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win_dx9.exe
FirewallRules: [{836F8D02-2262-4021-86A3-DD602D96E8C6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config_dx9.exe
FirewallRules: [{B1D6FFBC-0B4C-4F33-B0A8-B87DDA89F259}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config_dx9.exe
FirewallRules: [{C91BFFFE-F39A-4DFE-857F-532AE9253C25}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win.exe
FirewallRules: [{ACCDE3D2-25F3-4852-B3B6-AF2533D2F5AA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\ysf_win.exe
FirewallRules: [{ED9F0E4C-02FB-43A2-B2B1-D6C54D75B544}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config.exe
FirewallRules: [{0C1D636A-121A-4D46-BBCC-F558EB1E144A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ys The Oath in Felghana\config.exe
FirewallRules: [{6E5EDDFE-7C66-4D51-928D-59F2F14D9F5E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\StealthBastardDeluxe\StealthBastard[Steam].exe
FirewallRules: [{ADFF15DC-5177-4097-A2B1-0163A1B019A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\StealthBastardDeluxe\StealthBastard[Steam].exe
FirewallRules: [{915A115C-8056-40DB-AC45-E31BD4BD515D}] => (Block) %ProgramFiles%\MotioninJoy\ds3\DS3_Tool.exe
FirewallRules: [{C008ED5D-03AE-4D2A-8D8A-2A326A16AE6B}] => (Allow) C:\Users\Larry\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{C0AEE969-D37E-4BC2-9862-D61D684FFA1C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Anodyne\Anodyne.exe
FirewallRules: [{074CFB25-0595-4F8F-AED1-1AC76D380AA3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Anodyne\Anodyne.exe
FirewallRules: [{D88F77B0-E100-44F4-867B-17D949B75011}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ.exe
FirewallRules: [{0CEEE66E-BCC4-426B-86EE-3E89E4D5BE88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ.exe
FirewallRules: [{ECD054A5-7215-4CE9-A318-BB0FA4EEA482}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ_LaunchOptions.exe
FirewallRules: [{46EECAB7-3E41-415E-8AA2-8FECBCD03E63}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FEZ\FEZ_LaunchOptions.exe
FirewallRules: [{9839C6E8-A222-4B2C-9E0A-345463793C58}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil 6\BH6.exe
FirewallRules: [{C64A37E2-5272-4E71-94EA-1A8F58F93974}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil 6\BH6.exe
FirewallRules: [{A298A6EC-4060-4B15-97F8-D4B94C43F3E3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{C3C2DC8C-01F5-4DDF-9B1A-08A39A17C84A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe
FirewallRules: [{8240E77B-2CAD-438F-9915-7707357C8EA7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{6870AB9E-B40F-4B00-9294-E116FF099EA8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\Binaries\MassEffect2.exe
FirewallRules: [{3CD11A81-606A-4130-98E6-A3D7C093BEFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{E511389F-3BB1-4D6C-8CFB-D7824F8DE152}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mass Effect 2\MassEffect2Launcher.exe
FirewallRules: [{53F82CC2-362B-49BC-BADD-3C714545B5A1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Limbo\limbo.exe
FirewallRules: [{983161F2-2BF2-40CA-B38F-6FAF21B5E7D4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Limbo\limbo.exe
FirewallRules: [{280ED4D1-D052-4727-9F8B-735AB86FAC23}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\deadspace2.exe
FirewallRules: [{A618B880-78AA-4BC9-A430-866217ECBCDA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\deadspace2.exe
FirewallRules: [{73DD075E-E43C-4680-8F0C-F5DA59B5CDD4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{49EE3071-8BF2-4356-9EB3-F4B7E31EC8D7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space 2\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{8548A3F0-3655-4E7A-8630-EB10FE88B5D5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{72164584-3FBF-49FA-B851-FEE36E5B4D5C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{C9D56F24-DD7D-41B5-AAB2-63AA6204A339}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{155676F3-706C-4395-A0C7-591DC92D83A2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{69E580F1-622A-4C38-A890-CC4028901682}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{B812957A-951C-4BA6-AFB4-D1E409604F88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{1B18842F-6A03-41C8-BD69-D7A26DF0ABA3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{B459097F-C9A5-4975-BC59-AE6DF128FC1D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life 2\hl2.exe
FirewallRules: [{4989E59D-2C68-4E5C-ADD9-8103E790A322}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{6144BCFC-4A89-42F3-9F6C-2E3C0CEEC891}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{E2BBA099-3741-40D8-9AE7-9FD8306F5A64}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7AA13757-689F-41A4-B215-FADE1A63F7F9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{CD999D41-50FB-47D8-B2A8-001AEFED0088}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{C3AC0E86-D156-4E1D-95BA-424AFD3E5247}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{38DC3997-696D-47B4-9211-EDF80351D7D8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{9CFCD33D-FE39-45F3-ABF5-25347E5EC118}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7AE396A7-5F80-43CD-AD37-93DAEF9D0F24}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{7AAECEA9-6576-45D8-938F-562D19293FA1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{3E49FB77-C2F6-411D-8814-7473F162B589}] => (Allow) C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1BEC189F-0CEC-4D11-877D-D965DEB672A7}] => (Allow) C:\Users\Larry\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{600C76A5-7294-4A28-8F15-713E16378E80}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alan Wake\AlanWake.exe
FirewallRules: [{915EB6C9-D597-425A-960F-5B4CAA3DE495}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Alan Wake\AlanWake.exe
FirewallRules: [{EA360347-BE36-4097-BDB2-2C962463E11F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{CB5C9108-FE59-444B-AD97-D04CB9F0B812}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{F36AA84E-F377-404D-9CAA-6090861CAE7A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{65694604-A37B-44CD-BFB6-8F8CBB52C4DA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{AD77F736-E554-4AD8-B9BE-F4E78376109F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Underworld\tru.exe
FirewallRules: [{C2B0C549-0C34-4AB1-872B-A928BCDA3C0D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Underworld\tru.exe
FirewallRules: [{9BE7A42E-CD04-4932-9959-EFFC1C8F1FDF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{B3731C54-B4DD-4BB6-8D78-7A75CD13AD2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{FB03C28A-E22D-4AE2-BBFB-69B00CB0BF0C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{98DA2FAA-151A-45E8-BE21-241A85285F96}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider Anniversary\tra.exe
FirewallRules: [{D7DCF6B1-278F-43E7-9C37-B9AA59325474}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{C3A6DDA9-8415-42B0-9980-520CE08FB1A3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{8A37C3FB-986D-4E7F-8807-D30D9ED7FEC8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{53102A59-329A-48DC-8901-716C34DECE1F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{A133E5A7-94C4-4B2F-A557-0EFC8E632FE7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{D5CF1F03-6795-43C2-ABAE-8F1A82F0941E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{09C16AE2-3D34-407E-997A-19C55C67FFB1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{D1BEE3CD-A622-4FBA-A583-C1798854827F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{1B338568-A407-4345-A278-289B7EC3ECE9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{132E5464-8B17-4428-9AEC-4F02BAB80158}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{36E00AFA-8061-4B5F-998E-042FA6CC37CC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{E80B2E17-CF90-4613-92FF-DC9EB4DBF1DD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{BF2167B3-7FC3-4F94-A781-1AEF5E91F616}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{D71CDC1F-B2BF-416D-A1FC-17B54335E411}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7F983EEA-ECD7-49CB-B026-FF689610364B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{794ED5F0-532B-4224-95F6-CAA5AE5623CB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{F3439706-CB6E-44A3-9362-2073405CA825}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{4C3111CE-9110-4CEA-956B-550A4132897F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{8A4B5127-25AC-4E5A-9756-8075271EE188}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{7BDE7339-2075-4581-95A0-EA68DFED148B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\duke3d.exe
FirewallRules: [{9BB78608-18C5-4430-9A5C-CEAF3B140719}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{60BE39AA-1C31-4483-B100-4BFBEDF77936}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Duke Nukem 3D\bin\build.exe
FirewallRules: [{42033EBA-40DF-40D6-ACFE-42224D4F44AD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe
FirewallRules: [{F8A44200-6C12-41B2-9DCA-CFACB6E1BCB8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe
FirewallRules: [{52AE68B3-1B69-4D1B-8D64-1A32FD9D99E0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\vvvvvv\VVVVVV.exe
FirewallRules: [{3DEB8D9C-F34C-4DE2-99A1-377782BF0C07}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\vvvvvv\VVVVVV.exe
FirewallRules: [{0213D724-8BDA-47A5-AF47-3D1AC2FB1827}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{BBE4FD1C-20D8-436F-89C6-66E52365DC27}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{35E05DF9-7800-4A02-BFD3-A7A737C92A0F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{508EC988-2900-4E85-8489-935C2608F62B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{32568851-74EC-46DA-8C79-D54B65E7B351}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{97C195AE-FF1C-4833-AEBF-E062801902B3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe
FirewallRules: [{55DCACA5-BF06-4354-9CD1-F355727E100E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{D12C2D00-93B9-45D0-8831-5711EEA548DF}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{93F3B44E-97E3-4C35-A394-52E8313D957B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{92BE1EB1-A69D-4FD8-9465-9CE9298DDAD5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{524A1AFA-D654-45FA-B427-4EBFFDB50E8B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thirty_flights_of_loving\tfol.exe
FirewallRules: [{205B4E05-BA9C-4EC5-ADAA-7C6B6204B024}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thirty_flights_of_loving\tfol.exe
FirewallRules: [TCP Query User{6E201069-8F71-4728-86C1-D06927BD335D}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{EADC2EE8-485D-4E77-835F-884B89434D79}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe
FirewallRules: [{D58E461A-1DAE-422E-A047-764AD9DBBA93}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero Siege.exe
FirewallRules: [{E779BDAD-C75F-4536-9870-5067355057C0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\HeroSiege\bin\Hero Siege.exe
FirewallRules: [{9E811CB6-2D50-47C4-A7EC-5FE6E745A27B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe
FirewallRules: [{E2955110-E2CE-48A7-8059-1B48209F0285}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe
FirewallRules: [{F3958969-024A-4A24-90B5-2162315D5B66}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\soniccd.exe
FirewallRules: [{084C28BB-045B-4766-9B12-07D131ABEDF0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\soniccd.exe
FirewallRules: [{1E19C45B-1CEA-466A-BC77-8379A5321218}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\setup.exe
FirewallRules: [{FE4B7C99-6E46-435B-A120-581BCEE79343}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sonic CD\setup.exe
FirewallRules: [{22A62D29-8D78-44AC-AE18-F54EAD77A1AD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marc Ecko's Getting Up 2\_Bin\launcher.exe
FirewallRules: [{73CA7D23-EABE-4030-BA65-73ECDA1B5EAE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Marc Ecko's Getting Up 2\_Bin\launcher.exe
FirewallRules: [TCP Query User{67A3AA63-2302-4E6A-9316-9014C6B2F07B}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{CAA64890-3943-4FF9-AD30-8B3CD8C9B726}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{3386F220-96D2-47BE-91A3-F3BB8046D830}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castlevania Lords of Shadow - Mirror of Fate HD\CMOF.exe
FirewallRules: [{5627F61A-C1F4-4425-9F95-AE53B14AE10B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Castlevania Lords of Shadow - Mirror of Fate HD\CMOF.exe
FirewallRules: [{A920D4CB-7614-4471-BB04-DEC52C3A76A3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KOAReckoning\Reckoning.exe
FirewallRules: [{C0EE6BEF-EE47-4395-A95C-928860FA06D9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KOAReckoning\Reckoning.exe
FirewallRules: [{8045CDA6-1E85-4D5F-B74E-589828FB1608}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe
FirewallRules: [{BDD0027F-34F0-4CA0-9E75-EE9042C90C4F}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe
FirewallRules: [{7CFC1115-FFB7-4C1F-8D72-0D48F39132DE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{F4A871E7-2EBC-4168-AD26-F4A5A63A9BA7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{4DAFEA82-AE6C-4989-8756-6914C91FAC47}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{1C76F22D-35F6-474D-8F2E-6088E7A5B610}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{16E3CF75-AD10-4175-AD2E-8A658DB14A03}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe
FirewallRules: [{D1B1A798-4B8F-45C9-A415-2AAC43F39F9E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe
FirewallRules: [{4B152BA6-609D-46C4-9927-4737554BC7EF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{89DB6ECE-76E4-4003-AD4E-8C1328DCF764}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{866720FB-ED09-4E67-8B8E-DE6008837714}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{98718E7C-E45C-4277-A056-EBD2E15A0188}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{508031C5-21F6-4A52-9C0E-187E0115B003}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{820E7F0B-7426-4444-9FFE-AE9BCE89060A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{46406700-F501-402A-8B0E-DD3D78675D10}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Wanderlust Rebirth\Wanderlust.exe
FirewallRules: [{2F573752-45DD-403B-AF9F-19AF0CE42B2D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Wanderlust Rebirth\Wanderlust.exe
FirewallRules: [{F77A2A11-78A7-42BD-A874-1B6B80DABE42}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ultimate Doom\base\dosbox.exe
FirewallRules: [{89A61C9F-268C-4F76-9351-154F4458BA4F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ultimate Doom\base\dosbox.exe
FirewallRules: [TCP Query User{3066F080-92D2-44B4-844A-2CFD15211EC6}C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [UDP Query User{FAC6E15B-46AC-45E5-9432-7059906F8B14}C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [{139BB009-716D-4A40-8A2C-A4A0DA548933}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe
FirewallRules: [{8FD281C5-90F0-4227-8667-74FD8536B13B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe
FirewallRules: [{B3C3D8AB-7CEC-46A9-AA62-3CD754063E5B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SavantAscent\Savant_Ascent.exe
FirewallRules: [{950FE4BD-4D44-4F6E-B2DD-4A5CF67F18C1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SavantAscent\Savant_Ascent.exe
FirewallRules: [{92D86D6E-8DFD-4C3C-884C-8E789EA415A5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mighty Gunvolt\MightyGunvolt.exe
FirewallRules: [{3D35DE83-BB84-4F75-AC4B-325F25EC67D6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Mighty Gunvolt\MightyGunvolt.exe
FirewallRules: [{FF5EB0B5-9302-495A-8687-B5CAEE3B006A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
FirewallRules: [{3DE58650-3AA4-4728-AB2D-47B70D0335E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
FirewallRules: [{42D20004-B59F-4A38-AD9E-49835B0CA479}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe
FirewallRules: [{419B7452-358B-49D5-8223-658576C4E4B8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe
FirewallRules: [{7845AD15-6DFA-468D-811E-E08DE1D919D2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Strider\Strider.exe
FirewallRules: [{4F8BFB86-84D5-488E-B834-46FB89F2EFFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Strider\Strider.exe
FirewallRules: [TCP Query User{ED7C8076-13AC-448E-92B2-DF3FF35D94EF}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [UDP Query User{9355581D-48C0-4F53-8CF0-28D87826FADB}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [{F4FF6BBB-677B-41A7-9382-742FF003251F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6C9E508D-EAFE-4FAE-9A7E-C96D51A0E4D5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8A6ACA45-C40E-47FE-BE25-9B1769B0EEB5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank\bin\Shank.exe
FirewallRules: [{E4402AE9-9485-4A88-97FF-F84F51C42BD1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shank\bin\Shank.exe
FirewallRules: [{0B3B1E95-2F6D-4C00-826E-57E1F1E6A244}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
FirewallRules: [{1F0CF866-F68C-42BD-BFB2-FAC20C54B032}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Uncanny Valley\PPA2IP.exe
FirewallRules: [{70705CBF-1FDD-4AAE-B385-483875955B64}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Uncanny Valley\PPA2IP.exe
FirewallRules: [{7D69D068-8EBE-4412-A19F-3E18DD6DA3B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Valiant Hearts\Valiant Hearts.exe
FirewallRules: [{30CEA0A5-15B0-486C-A984-149AC196C239}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Valiant Hearts\Valiant Hearts.exe
FirewallRules: [{39050684-2048-4090-A8D4-F7EBC34BC9D8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Legend of Dark Witch\The_Legend_of_Dark_Witch.exe
FirewallRules: [{038DA5AF-54F8-46C4-8340-4C5F7212F29A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Legend of Dark Witch\The_Legend_of_Dark_Witch.exe
FirewallRules: [{4CB992E6-EDB7-459B-B0B0-316BA6E4D88C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\LIGHTNING RETURNS FINAL FANTASY XIII\LRFF13.exe
FirewallRules: [{06F3BA29-1773-4CE3-A217-4D6F463B8303}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\LIGHTNING RETURNS FINAL FANTASY XIII\LRFF13.exe
FirewallRules: [{D4607DCE-8D4B-476B-A9CD-F420926577AC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Downwell\Downwell.exe
FirewallRules: [{520F444C-22CE-469B-8844-1B4E2B1FED1F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Downwell\Downwell.exe
FirewallRules: [{2F063C9C-87A8-4A55-AB89-6B22729C032E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Thousand Lies\One Thousand Lies.exe
FirewallRules: [{6FA0A08E-D0F4-4A50-A5FE-F7254DC8BA19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\One Thousand Lies\One Thousand Lies.exe
FirewallRules: [{55B0D97D-53C6-4101-BBC5-C0A90496A1DC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Taimumari\game.exe
FirewallRules: [{F0AD3657-90AF-4C13-8E6F-905D38FEFCD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Taimumari\game.exe
FirewallRules: [{C7AF8DAC-6D45-4121-9328-6664672AA3F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Momodora RUtM\MomodoraRUtM.exe
FirewallRules: [{B10EA7E1-9BB9-4C30-82E2-C14B6D7CE113}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Momodora RUtM\MomodoraRUtM.exe
FirewallRules: [{C98DCA5E-3CEF-43D7-AE2B-2E07DFC3C859}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon2015\ggn2015.exe
FirewallRules: [{A66CC206-1FFD-48C7-B1FC-D81D74599305}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon2015\ggn2015.exe
FirewallRules: [{E6C637A8-15CC-4570-AE0F-F7C044079212}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon\BGI.exe
FirewallRules: [{80D6F07F-5209-475A-B345-54CC955C3FDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoGoNippon\GoGoNippon\BGI.exe
FirewallRules: [{323748B3-3F7C-4E30-A2E1-285A9AC00E35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Angels\Sakura Angels.exe
FirewallRules: [{C1C0698A-AA14-4488-9E67-15064347EF1A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Angels\Sakura Angels.exe
FirewallRules: [{188CF023-0731-42AB-9540-06AA93FA63E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach\Sakura Beach.exe
FirewallRules: [{F52B39FF-3B8E-4183-927D-E3167282CC0A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach\Sakura Beach.exe
FirewallRules: [{7ED44A66-0677-4CCB-8EFA-455A8EE3A208}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach 2\Sakura Beach 2.exe
FirewallRules: [{95520395-DE9D-418C-A8E0-61C68444765D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Beach 2\Sakura Beach 2.exe
FirewallRules: [{8818BCAB-35F3-4DEB-B4F2-308164A61441}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aozora Meikyuu\Aozora_Meikyuu.exe
FirewallRules: [{F1E0D1AE-9D9E-44F0-BC09-7D87D7C70D47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aozora Meikyuu\Aozora_Meikyuu.exe
FirewallRules: [{91ABF70F-6027-46FD-8747-6C7761CB599D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm7.exe
FirewallRules: [{3948269E-204D-49ED-B8AB-B176C3F6DE97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm7.exe
FirewallRules: [{1CA4FE01-DAA9-4642-8CB3-BBEB99BD98C4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm5.exe
FirewallRules: [{5F6384E6-57EE-45A4-8E95-1EE1DF523CA7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Princess Remedy\remedy_gm5.exe
FirewallRules: [{F5E9E614-1173-438A-8157-C450B0E5385E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Volume\Volume.exe
FirewallRules: [{4E9532A2-4811-45B3-95BD-18504415EBF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Volume\Volume.exe
FirewallRules: [{13B3EC50-D712-4919-B854-A36E1F333C59}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tokyo School Life\TSL.exe
FirewallRules: [{3A9ECB4C-E576-4165-9B9C-CC4326A5CE2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tokyo School Life\TSL.exe
FirewallRules: [{504C7491-C95F-4F17-BFC1-52E07EDDD831}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Master Spy\MasterSpy.exe
FirewallRules: [{E6E0F02D-09CA-4D42-AC86-7FA9A81CE93D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Master Spy\MasterSpy.exe
FirewallRules: [{EB0CC5CD-8557-4766-B1B8-09C62E4B7D5F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LiEat\LiEat_Launcher.exe
FirewallRules: [{BE412131-B427-4118-999C-73E12827FD06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LiEat\LiEat_Launcher.exe
FirewallRules: [{936DBEF1-FC7F-4325-8B2B-7D9BEBD3B857}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DISTRAINT\distraint.exe
FirewallRules: [{7CA935EE-D672-4797-ABD8-AB8F5705BFBA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DISTRAINT\distraint.exe
FirewallRules: [{FA18B7FB-D7A1-462A-A36C-4DDF4070A622}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Ruler\Game.exe
FirewallRules: [{7B35CF90-F78C-4562-82CD-5E60FB5F2ACC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Ruler\Game.exe
FirewallRules: [{189E258C-DEFE-45C1-8E2A-050995B27216}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{C333916B-BD4F-40BC-A999-68E63FDBD0B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{774D9074-E07D-4F71-86F3-2C71C8CFA376}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlight\Binaries\Win32\LOTDGame.exe
FirewallRules: [{99DE7B70-CB19-4EBF-8440-74FB99B4A13D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deadlight\Binaries\Win32\LOTDGame.exe
FirewallRules: [{E2C6471A-4AF6-43B8-BF9A-3F3EE4ACA0FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hikikomori No Chuunibyou\Hikikomori No Chuunibyou.exe
FirewallRules: [{39B42616-0C55-4318-AC03-A35C86635B2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hikikomori No Chuunibyou\Hikikomori No Chuunibyou.exe
FirewallRules: [{D0BA56A7-005B-46A1-8FA0-9F14167D3B04}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REED\reed.exe
FirewallRules: [{F4440515-C471-4939-B8C3-A8E4B1A82166}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REED\reed.exe
FirewallRules: [{7E8F77C0-FFC9-44C8-A278-1221B9630AA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lucid9\Lucid9.exe
FirewallRules: [{A5E02C91-ECF3-4525-9753-56EC305ACF8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lucid9\Lucid9.exe
FirewallRules: [{F618EE77-9542-44F2-84A6-F8927B237DFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Spirit\Sakura Spirit.exe
FirewallRules: [{3BBF208D-E467-415B-8ED7-EB8A839B21DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sakura Spirit\Sakura Spirit.exe
FirewallRules: [{F9BD79D2-3775-470D-B457-48752FE6A090}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\narcissu2\narci2.exe
FirewallRules: [{8945211F-185F-4673-89AB-7A54CE2ED173}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\narcissu2\narci2.exe
FirewallRules: [{38580AC4-BAEF-4EE9-8335-CC7740FF2A9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crimzon Clover\CrimzonClover_WI.exe
FirewallRules: [{2DBA30B4-7FE0-4037-BCF9-EABA979D4916}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crimzon Clover\CrimzonClover_WI.exe
FirewallRules: [{B1619D57-C5D5-4070-BBA7-DAA4ADC3E72E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magical Battle Festa\MBF.exe
FirewallRules: [{963C3029-6222-49A6-967B-42D5B34BD5A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magical Battle Festa\MBF.exe
FirewallRules: [{5920D40D-9A52-4147-AE97-F3A214006AA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Breaker Battle Grounds\bin\pbbg_win32.exe
FirewallRules: [{9D537984-F1D4-45CB-8673-B23124C9C44D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Breaker Battle Grounds\bin\pbbg_win32.exe
FirewallRules: [{B5A7ABCC-182B-4341-9CB7-0DE10255F7ED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Voices from the Sea\voices_steam.exe
FirewallRules: [{C0CFF750-01FD-45C2-A118-0F11D86D93A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Voices from the Sea\voices_steam.exe
FirewallRules: [{118398FB-38B5-47FB-B66B-B5212F3D50B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Train of Afterlife\toa.exe
FirewallRules: [{04A11FD8-34C1-4FD1-B06A-F1EEDAA50427}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Train of Afterlife\toa.exe
FirewallRules: [{3238AE44-F55A-4197-9F75-18CD3A732B06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\chantelise.exe
FirewallRules: [{3F9A0A2D-DE8F-42B0-8282-7FF45F8D38E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\chantelise.exe
FirewallRules: [{CFD8D67B-9471-4E01-86EC-64EE37667A3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\custom.exe
FirewallRules: [{E88FDC9C-0673-46B3-AC25-8CCA0B1F03E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chantelise\custom.exe
FirewallRules: [{D93C4B4D-1A50-49C8-A308-6C8BC54C5921}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{7780E34F-9383-4C90-8BDF-EB69572A0929}] => (Allow) LPort=53000

==================== Restore Points =========================

12-09-2016 08:51:03 JRT Pre-Junkware Removal
13-09-2016 19:52:00 JRT Pre-Junkware Removal
16-09-2016 21:20:45 Windows Update
16-09-2016 21:22:16 Windows Update
19-09-2016 14:50:18 JRT Pre-Junkware Removal
27-09-2016 08:56:04 JRT Pre-Junkware Removal
29-09-2016 20:04:35 2016sept29
03-10-2016 19:11:15 Restore Point Created by FRST

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/04/2016 07:29:29 AM) (Source: MsiInstaller) (EventID: 1002) (User: HP)
Description: Unexpected or missing value (name: 'PackageName', value: '') in key 'HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList'

Error: (10/03/2016 10:16:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dwm.exe, version: 10.0.10586.0, time stamp: 0x5632d756
Faulting module name: combase.dll, version: 10.0.10586.589, time stamp: 0x57cf954a
Exception code: 0xc0000005
Fault offset: 0x000000000007cccc
Faulting process id: 0x174
Faulting application start time: 0x01d21dd5b6918926
Faulting application path: C:\WINDOWS\system32\dwm.exe
Faulting module path: C:\WINDOWS\system32\combase.dll
Report Id: 560937f6-65d2-4580-9138-359c1f52e32f
Faulting package full name:
Faulting package-relative application ID:

Error: (10/03/2016 09:59:20 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (10/03/2016 07:11:22 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (10/03/2016 07:11:15 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {5e1ecae3-440f-4f1c-827f-001eeaf78757}

Error: (10/03/2016 12:02:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: dwm.exe, version: 10.0.10586.0, time stamp: 0x5632d756
Faulting module name: combase.dll, version: 10.0.10586.589, time stamp: 0x57cf954a
Exception code: 0xc0000005
Fault offset: 0x000000000007cccc
Faulting process id: 0x180
Faulting application start time: 0x01d21d89327fe218
Faulting application path: C:\WINDOWS\system32\dwm.exe
Faulting module path: C:\WINDOWS\system32\combase.dll
Report Id: 79fbe68d-382d-4b2d-a6b5-16060a072566
Faulting package full name:
Faulting package-relative application ID:

Error: (10/01/2016 06:11:10 PM) (Source: MsiInstaller) (EventID: 1002) (User: HP)
Description: Unexpected or missing value (name: 'PackageName', value: '') in key 'HKLM\Software\Classes\Installer\Products\D139E7FE48CDB174D86B8A3385904547\SourceList'

Error: (10/01/2016 05:34:14 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/01/2016 05:34:14 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/01/2016 05:33:12 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000


System errors:
=============
Error: (10/04/2016 01:36:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_3d1cf service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:36:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_3d1cf service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:36:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_3d1cf service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:36:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_3d1cf service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_54e36c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_54e36c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Contact Data_54e36c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 01:27:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_54e36c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 11:29:08 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Access_39520 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.

Error: (10/04/2016 11:29:08 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The User Data Storage_39520 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.


CodeIntegrity:
===================================
Date: 2016-09-18 15:45:36.314
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-17 07:17:00.520
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-16 21:26:04.644
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-09-07 07:28:59.488
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-14 13:20:53.408
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-17 07:15:39.332
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-15 09:54:19.748
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-14 07:00:58.594
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-14 06:55:36.912
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-06-19 14:04:45.081
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD A8-5500 APU with Radeon™ HD Graphics
Percentage of memory in use: 30%
Total physical RAM: 7572.6 MB
Available physical RAM: 5233.06 MB
Total Virtual: 8788.6 MB
Available Virtual: 7039.04 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:911.17 GB) (Free:307.72 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Recovery Image) (Fixed) (Total:18.43 GB) (Free:2.3 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 3CDEA954)

Partition: GPT.

==================== End of Addition.txt ============================

#10 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 05 October 2016 - 01:54 AM

Hi gajindesu.

 

Looks good. But please check on Avast a bit, is it enabled?

 

Now a bit of scan to be absolutely sure:

 

Please download Malwarebytes Anti-Malware to your desktop.

  • double-click mb3-setup-1878.1878-3.5.1.2522.exe and follow the prompts to install the program
  • at the end, be sure a checkmark is placed next to the following
    • Launch Malwarebytes Anti-Malware
    • a 14 day trial of the Premium features is pre-selected: deselect this if you don’t want it, (it won’t diminish the scanning and removal capabilities of the program.
  • click Finish.
  • on the Dashboard, click Update Now
  • after the update completes, click the Scan Now' button.
  • if an update is available, clicking the Update Now button will update it
  • a Threat Scan will begin.
  • when the scan is complete, if malware has been detected, click Apply Actions to allow MBAM to clean what was found
  • when the prompt to restart the computer appears, click Yes.
  • after the restart, once you are back at your desktop, open MBAM once more
  • click on the “History” tab, the “Application Logs”
  • double-click on the scan log which shows the date and time of the scan just performed.
  • click Copy to Clipboard
  • please paste the contents of the clipboard into your reply.

 

Thank you.


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#11 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 05 October 2016 - 05:00 PM

Hi Sirawit,

Avast is currently enabled but I did disable it before starting that FRST scan. Also, I followed the rest of the steps you've provided for me and will have the results from the Malwarebytes Anti-Malware scan pasted below.

Thank you very much, once again, for all of your help and kindness!


Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 10/5/2016
Scan Time: 5:15 PM
Logfile:
Administrator: Yes

Version: 2.2.1.1043
Malware Database: v2016.10.05.10
Rootkit Database: v2016.09.26.02
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 10
CPU: x64
File System: NTFS
User: Larry

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 367468
Time Elapsed: 32 min, 1 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

#12 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 06 October 2016 - 02:41 AM

Hi gaijindesu.
 
BTW, how often did you run rkill? I saw you attached a log named rkill (26).txt so you must have run it many times before.

Actually, you don't have to run it that often. This tool is designed to disable malware that's interfering with our tools and repair some bad policies so other software could be run to remove the infection. rkill itself doesn't have an ability to clean up malware.
 
----------------
 
Congratulations! Your computer is now cleaned!  :clapping:
 
Now we need to remove our tools:
 
 
bwebb7v.jpgDownload Delfix from here and save it to your desktop.

  • Ensure Remove disinfection tools is checked.
  • Also place a checkmark next to:
    • Create registry backup
    • Purge system restore
    delfix.jpg
  • Click the Run button.

When the tool is finished, a log will open in notepad. Please copy and paste the log in your next reply.
 
------------
 
Some tips to keep your computer safe.
 
Exercise common sense

Having security programs installed is very helpful to you, but none of them have the gift of human thought. The best way to make sure you don't get infected is to look before you leap. Be careful of what websites you visit - if a site looks suspicious, trust your instincts and get out of there. Be careful of what attachments you open in emails and files you download from websites - check them over carefully and look at the file extensions to make sure that you know what you're getting. Using peer-to-peer file sharing programs or downloading cracks and keygens is something else to avoid - the files you will be downloading are infected in the vast majority of cases, and the benefits simply aren't worth the risk to your computer.

Keep up on Windows updates

Along with keeping all of the security programs that you choose to use updated, it is also important to keep up on system updates from Microsoft, as these patch critical security vulnerabilities and help to keep you safe. Typically the windows update icon will appear in your taskbar when new updates are available, whenever you see it you should open the menu up and install the updates that are available. Although it may be an annoyance, that little bit of extra time it takes to stay updated is very well worth it instead of getting infected from an exploit and having to clean your PC again.

Slow computer?

If your computer begins to slow down again in the future for no particular reason, your first step should not be to come back to the malware forum. As your computer ages and is used, its parts wear, files and programs accumulate, and its performance speed can decrease. To restore your computer's performance to its best possible level, follow the steps in this guide written by tech expert Artellos.
 
Thank you.


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#13 gaijindesu

gaijindesu
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:19 PM

Posted 06 October 2016 - 03:32 PM

Hi Sirawit,

It was a habit of mine to run rkill before running any scans. Thank you for the info and even more so for all of your help!

Here is the Delfix log you've requested of me:


# DelFix v1.013 - Logfile created 06/10/2016 at 16:18:05
# Updated 17/04/2016 by Xplode
# Username : Larry - HP
# Operating System : Windows 10 Home (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Larry\Desktop\mbar
Deleted : C:\AdwCleaner[C1].txt
Deleted : C:\AdwCleaner[C2].txt
Deleted : C:\AdwCleaner[C3].txt
Deleted : C:\AdwCleaner[S1].txt
Deleted : C:\AdwCleaner[S2].txt
Deleted : C:\AdwCleaner[S3].txt
Deleted : C:\AdwCleaner[S4].txt
Deleted : C:\AdwCleaner[S5].txt
Deleted : C:\AdwCleaner[S6].txt
Deleted : C:\TDSSKiller.3.1.0.11_08.09.2016_09.06.24_log.txt
Deleted : C:\TDSSKiller.3.1.0.11_15.08.2016_16.34.50_log.txt
Deleted : C:\TDSSKiller.3.1.0.11_15.08.2016_16.35.58_log.txt
Deleted : C:\TDSSKiller.3.1.0.11_27.08.2016_14.11.31_log.txt
Deleted : C:\TDSSKiller.3.1.0.11_27.08.2016_14.14.52_log.txt
Deleted : C:\TDSSKiller.3.1.0.11_27.08.2016_14.22.46_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_07.08.2016_08.13.19_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_14.07.2016_10.24.12_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_15.08.2016_16.33.56_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_16.04.2016_19.00.08_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_16.04.2016_20.55.44_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_09.27.07_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_09.35.58_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_09.40.01_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_09.51.48_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_18.19.54_log.txt
Deleted : C:\TDSSKiller.3.1.0.9_17.04.2016_19.20.48_log.txt
Deleted : C:\Users\Larry\Desktop\adwcleaner_6.020.exe
Deleted : C:\Users\Larry\Desktop\FRST64.exe
Deleted : C:\Users\Larry\Desktop\JRT.exe
Deleted : C:\Users\Larry\Desktop\rkill.exe
Deleted : C:\Users\Larry\Desktop\TDSSKiller.exe
Deleted : C:\Users\Public\Desktop\RogueKiller.lnk
Deleted : C:\Users\Larry\Downloads\adwcleaner_5.000.exe
Deleted : C:\Users\Larry\Downloads\rkill64-14385.exe
Deleted : C:\Users\Larry\Downloads\rkill64-5182.exe
Deleted : C:\Users\Larry\Downloads\rkill64.exe
Deleted : C:\Users\Larry\Downloads\RogueKiller.exe
Deleted : C:\Users\Larry\Downloads\tdsskiller.zip
Deleted : HKLM\SOFTWARE\AdwCleaner

~ Creating registry backup ... OK

~ Cleaning system restore ...

Deleted : RP #57 [JRT Pre-Junkware Removal | 09/12/2016 12:51:03]
Deleted : RP #58 [JRT Pre-Junkware Removal | 09/13/2016 23:52:00]
Deleted : RP #59 [Windows Update | 09/17/2016 01:20:45]
Deleted : RP #60 [Windows Update | 09/17/2016 01:22:16]
Deleted : RP #61 [JRT Pre-Junkware Removal | 09/19/2016 18:50:18]
Deleted : RP #62 [JRT Pre-Junkware Removal | 09/27/2016 12:56:04]
Deleted : RP #63 [2016sept29 | 09/30/2016 00:04:35]
Deleted : RP #65 [Restore Point Created by FRST | 10/03/2016 23:11:15]
Deleted : RP #66 [5oct2016 | 10/05/2016 15:14:13]

New restore point created !

########## - EOF - ##########

#14 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 07 October 2016 - 07:18 AM

Hi gaijindesu.

 

That's ok then. And no problem. :) I will close down the topic.

 

Thank you.


If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.


#15 Sirawit

Sirawit

    Bleepin' Brony


  • Malware Response Team
  • 4,161 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Thailand
  • Local time:09:19 AM

Posted 07 October 2016 - 07:18 AM

It appears that this issue is resolved, therefore I am closing the topic. If that is not the case and you need or wish to continue with this topic, please send me or any Moderator a Personal Message (PM) that you would like this topic re-opened.

If I don't reply back to you in 2 days, feel free to send me a PM.

 

“You’re lying… just like you were lying to me before. You have to hate me. I’ve been the worst daughter in the world… you should hate me.”

“But I don’t, Nyx. Because, Nyx, I’m your mother, and a mother will always love her daughter, no matter what.” -Past sins by Pen stroke.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users