Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

keeps opening windows when on web that are ads


  • This topic is locked This topic is locked
14 replies to this topic

#1 Lisa T.

Lisa T.

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 29 March 2017 - 04:12 PM

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
Ran by Jelly (administrator) on JLEEANN (29-03-2017 15:48:20)
Running from C:\Users\Jelly\Downloads
Loaded Profiles: Jelly (Available Profiles: Jelly)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-17] (IDT, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1890088 2009-12-23] (Synaptics Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-03-28] (AVAST Software)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-04-27] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2016-12-17] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKU\S-1-5-21-1201568024-687805132-3457482369-1000\...\Policies\system: [DisableLockWorkstation] 0
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-28] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2010-01-15]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{212CB38E-A7EF-49CB-9EC5-01944393D697}: [NameServer] 208.180.42.68,208.180.42.100
Tcpip\..\Interfaces\{212CB38E-A7EF-49CB-9EC5-01944393D697}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{5EEDD63F-885D-49E7-9D15-2D1AFC6A7D80}: [NameServer] 172.26.38.1 172.26.38.2
Tcpip\..\Interfaces\{C44ABB1C-C583-4E9F-8D08-57101C40D3AF}: [NameServer] 172.26.38.1 172.26.38.2

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1201568024-687805132-3457482369-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1201568024-687805132-3457482369-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM -> DefaultScope {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-03-28] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-01-04] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-03-28] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-01-04] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-1201568024-687805132-3457482369-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File

FireFox:
========
FF ProfilePath: C:\Users\Jelly\AppData\Roaming\Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333 [2017-03-29]
FF Homepage: Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333 -> hxxp://yahoo.com/
FF NetworkProxy: Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333 -> type", 0
FF Extension: (MapsAlly) - C:\Users\Jelly\AppData\Roaming\Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333\Extensions\{ae92cb39-b2a6-4865-a125-1b273ffb4a1c}.xpi [2017-03-22]
FF Extension: (Site Deployment Checker) - C:\Users\Jelly\AppData\Roaming\Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333\features\{e72dceba-b5a6-4a24-918e-bc808cd8db33}\deployment-checker@mozilla.org.xpi [2017-03-26]
FF Extension: (Site Deployment Checker) - C:\Program Files (x86)\Mozilla Firefox\browser\features\deployment-checker@mozilla.org.xpi [2017-03-28] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-03-28]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-03-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll [2017-03-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll [2017-03-19] ()
FF Plugin-x32: @java.com/DTPlugin,version=10.10.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-01-04] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.10.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-01-04] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-12-17] (Adobe Systems Inc.)

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7398336 2017-03-28] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [261712 2017-03-28] (AVAST Software)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [307736 2017-03-28] (AVAST Software s.r.o.)
S3 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-28] (AVAST Software s.r.o.)
S3 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334088 2017-03-28] (AVAST Software s.r.o.)
S3 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-28] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-28] (AVAST Software)
S3 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32600 2017-03-28] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [127112 2017-03-28] (AVAST Software)
S3 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [101152 2017-03-28] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-28] (AVAST Software)
S3 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1005048 2017-03-28] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [556784 2017-03-28] (AVAST Software)
S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [164064 2017-03-28] (AVAST Software)
S3 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [339696 2017-03-28] (AVAST Software)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77408 2017-02-24] ()
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [186304 2017-03-29] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [111544 2017-03-29] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-03-29] (Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [251840 2017-03-29] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [82208 2017-03-29] (Malwarebytes)
S3 swg3kser00; C:\Windows\System32\DRIVERS\swg3kser00.sys [258432 2011-05-13] (Sierra Wireless Incorporated)
S3 swiwdmbx; C:\Windows\System32\DRIVERS\swiwdmbx64.sys [109312 2011-05-16] (Sierra Wireless Inc.)
S3 SWNC8UA3; C:\Windows\System32\DRIVERS\swnc8ua3.sys [297472 2011-05-28] (Sierra Wireless Inc.)
S3 usbbus; C:\Windows\System32\DRIVERS\lgx64bus.sys [17920 2008-11-11] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgx64diag.sys [27136 2008-11-11] (LG Electronics Inc.)
S3 UsbGps; C:\Windows\System32\DRIVERS\lgx64gps.sys [27136 2008-11-11] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgx64modem.sys [33792 2008-11-11] (LG Electronics Inc.)
U3 aswbdisk; no ImagePath
S3 Delldiag; \??\C:\__de11ctstestfolder20120wdcsa__\WBT\WBT_W64\DDDriver.sys [X]
S3 PCDSRVC{1353820B-E58E0D1F-06020200}_0; \??\c:\__de11ctstestfolder20120wdcsa__\tools\pcdr\pcdsrvc_x64.pkms [X]
S2 SCWFPFilter; system32\DRIVERS\WFPFilter.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-03-29 15:34 - 2017-03-29 15:35 - 00023528 _____ C:\Users\Jelly\Downloads\Addition.txt
2017-03-29 15:32 - 2017-03-29 15:48 - 00014034 _____ C:\Users\Jelly\Downloads\FRST.txt
2017-03-29 15:32 - 2017-03-29 15:48 - 00000000 ____D C:\FRST
2017-03-29 15:30 - 2017-03-29 15:31 - 02424832 _____ (Farbar) C:\Users\Jelly\Downloads\FRST64.exe
2017-03-29 11:33 - 2017-03-29 11:33 - 00001401 _____ C:\Users\Public\Desktop\SeaTools for Windows.lnk
2017-03-29 11:33 - 2017-03-29 11:33 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-29 11:32 - 2017-03-29 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate
2017-03-29 11:32 - 2017-03-29 11:32 - 00000000 ____D C:\Program Files (x86)\Seagate
2017-03-29 11:28 - 2017-03-29 11:32 - 26157600 _____ C:\Users\Jelly\Downloads\SeaToolsforWindowsSetup.exe
2017-03-29 11:25 - 2017-03-29 11:26 - 08867840 _____ C:\Users\Jelly\Downloads\SeaToolsDOS223ALL.ISO
2017-03-29 09:40 - 2017-03-29 09:40 - 00158720 _____ (Sysnative) C:\Users\Jelly\Downloads\SysnativeBSODCollectionApp(1).exe
2017-03-29 09:14 - 2017-03-29 09:14 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-03-29 08:12 - 2017-03-29 08:12 - 00556992 _____ C:\Windows\Minidump\032917-17362-02.dmp
2017-03-29 08:10 - 2017-03-29 08:10 - 00556992 _____ C:\Windows\Minidump\032917-17097-01.dmp
2017-03-29 08:09 - 2017-03-29 08:09 - 00556992 _____ C:\Windows\Minidump\032917-17066-01.dmp
2017-03-29 08:08 - 2017-03-29 08:08 - 00556992 _____ C:\Windows\Minidump\032917-17128-01.dmp
2017-03-29 08:06 - 2017-03-29 08:06 - 00556992 _____ C:\Windows\Minidump\032917-17222-02.dmp
2017-03-29 08:05 - 2017-03-29 08:05 - 00556992 _____ C:\Windows\Minidump\032917-16957-01.dmp
2017-03-29 08:03 - 2017-03-29 08:03 - 00556992 _____ C:\Windows\Minidump\032917-17144-01.dmp
2017-03-29 08:02 - 2017-03-29 08:02 - 00556992 _____ C:\Windows\Minidump\032917-17050-01.dmp
2017-03-29 08:01 - 2017-03-29 08:01 - 00556992 _____ C:\Windows\Minidump\032917-17799-01.dmp
2017-03-29 08:00 - 2017-03-29 08:00 - 00556992 _____ C:\Windows\Minidump\032917-17362-01.dmp
2017-03-28 20:46 - 2017-03-28 20:49 - 04089296 _____ C:\Users\Jelly\Downloads\adwcleaner_6.045.exe
2017-03-28 15:12 - 2017-03-28 15:12 - 00003890 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1490731947
2017-03-28 15:12 - 2017-03-28 15:12 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2017-03-28 15:12 - 2017-03-28 15:12 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-03-28 14:07 - 2017-03-29 09:16 - 00000000 ____D C:\Program Files (x86)\Google
2017-03-28 14:07 - 2017-03-28 14:07 - 00032600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-03-28 13:14 - 2017-03-28 13:14 - 00000000 ____D C:\Users\Jelly\AppData\Roaming\AVAST Software
2017-03-28 13:13 - 2017-03-28 13:13 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2017-03-28 13:13 - 2017-03-28 13:13 - 00000000 ____D C:\Users\Jelly\AppData\Local\CEF
2017-03-28 13:13 - 2017-03-28 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-03-28 13:12 - 2017-03-28 13:12 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2017-03-28 13:12 - 2017-03-28 13:12 - 00000000 ____D C:\Program Files\Common Files\AV
2017-03-28 13:11 - 2017-03-28 14:33 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2017-03-28 13:11 - 2017-03-28 13:10 - 00556784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00339696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00164064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00127112 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00101152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-03-28 13:11 - 2017-03-28 13:10 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-03-28 13:11 - 2017-03-28 13:09 - 01005048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-03-28 13:11 - 2017-03-28 13:09 - 00334088 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys
2017-03-28 13:11 - 2017-03-28 13:09 - 00307736 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2017-03-28 13:11 - 2017-03-28 13:09 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys
2017-03-28 13:11 - 2017-03-28 13:09 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys
2017-03-28 13:10 - 2017-03-28 13:10 - 00399944 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-03-28 12:27 - 2017-03-28 14:07 - 00000000 ____D C:\Program Files\AVAST Software
2017-03-28 12:21 - 2017-03-28 14:07 - 00000000 ____D C:\ProgramData\AVAST Software
2017-03-28 12:17 - 2017-03-28 12:20 - 06895856 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
2017-03-28 12:17 - 2017-03-28 12:20 - 06895856 _____ (AVAST Software) C:\Users\Jelly\Downloads\avast_free_antivirus_setup_online.exe
2017-03-28 11:02 - 2016-07-22 09:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2017-03-28 11:02 - 2016-07-22 09:51 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2017-03-28 07:48 - 2017-03-27 15:45 - 01187877 ____N C:\Windows\Minidump\032817-25287-01.dmp
2017-03-27 15:33 - 2017-03-27 15:37 - 00000000 ____D C:\Windows\system32\MRT
2017-03-27 13:55 - 2017-03-27 13:55 - 00556992 _____ C:\Windows\Minidump\032717-23977-01.dmp
2017-03-27 13:53 - 2017-03-27 13:53 - 00556992 _____ C:\Windows\Minidump\032717-23056-01.dmp
2017-03-27 13:52 - 2017-03-27 13:52 - 00556992 _____ C:\Windows\Minidump\032717-23727-01.dmp
2017-03-27 13:50 - 2017-03-27 13:50 - 00556992 _____ C:\Windows\Minidump\032717-23166-01.dmp
2017-03-27 13:49 - 2017-03-27 13:49 - 00556992 _____ C:\Windows\Minidump\032717-23400-01.dmp
2017-03-27 13:47 - 2017-03-27 13:47 - 00556992 _____ C:\Windows\Minidump\032717-23571-01.dmp
2017-03-27 13:46 - 2017-03-27 13:46 - 00556992 _____ C:\Windows\Minidump\032717-25490-01.dmp
2017-03-27 13:45 - 2017-03-27 13:45 - 00556992 _____ C:\Windows\Minidump\032717-23556-01.dmp
2017-03-27 13:43 - 2017-03-27 13:43 - 00307344 _____ C:\Windows\Minidump\032717-27658-01.dmp
2017-03-27 13:41 - 2017-03-04 12:24 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-03-27 13:41 - 2017-03-04 11:39 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-03-27 13:41 - 2017-03-04 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-03-27 13:41 - 2017-03-04 03:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-03-27 13:41 - 2017-03-04 03:02 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-03-27 13:41 - 2017-03-04 03:01 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-03-27 13:41 - 2017-03-04 03:01 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-03-27 13:41 - 2017-03-04 03:01 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-03-27 13:41 - 2017-03-04 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-03-27 13:41 - 2017-03-04 02:59 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-03-27 13:41 - 2017-03-04 02:52 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-03-27 13:41 - 2017-03-04 02:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-03-27 13:41 - 2017-03-04 02:48 - 25746944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-03-27 13:41 - 2017-03-04 02:46 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-03-27 13:41 - 2017-03-04 02:45 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-03-27 13:41 - 2017-03-04 02:45 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-03-27 13:41 - 2017-03-04 02:45 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-03-27 13:41 - 2017-03-04 02:44 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-03-27 13:41 - 2017-03-04 02:36 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-03-27 13:41 - 2017-03-04 02:32 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-03-27 13:41 - 2017-03-04 02:31 - 06045696 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-03-27 13:41 - 2017-03-04 02:23 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-03-27 13:41 - 2017-03-04 02:21 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-03-27 13:41 - 2017-03-04 02:16 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-03-27 13:41 - 2017-03-04 02:16 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-03-27 13:41 - 2017-03-04 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-03-27 13:41 - 2017-03-04 02:11 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-03-27 13:41 - 2017-03-04 01:57 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-03-27 13:41 - 2017-03-04 01:55 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-03-27 13:41 - 2017-03-04 01:54 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-03-27 13:41 - 2017-03-04 01:52 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-03-27 13:41 - 2017-03-04 01:52 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-03-27 13:41 - 2017-03-04 01:26 - 15259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-03-27 13:41 - 2017-03-04 01:25 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-03-27 13:41 - 2017-03-04 01:12 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-03-27 13:41 - 2017-03-04 01:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-03-27 13:41 - 2017-03-03 23:18 - 20281856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-03-27 13:41 - 2017-03-02 13:16 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-03-27 13:41 - 2017-03-02 13:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-03-27 13:41 - 2017-03-02 13:01 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-03-27 13:41 - 2017-03-02 13:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-03-27 13:41 - 2017-03-02 13:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-03-27 13:41 - 2017-03-02 13:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-03-27 13:41 - 2017-03-02 12:55 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-03-27 13:41 - 2017-03-02 12:54 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-03-27 13:41 - 2017-03-02 12:53 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-03-27 13:41 - 2017-03-02 12:51 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-03-27 13:41 - 2017-03-02 12:50 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-03-27 13:41 - 2017-03-02 12:49 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-03-27 13:41 - 2017-03-02 12:49 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-03-27 13:41 - 2017-03-02 12:41 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-03-27 13:41 - 2017-03-02 12:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-03-27 13:41 - 2017-03-02 12:35 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-03-27 13:41 - 2017-03-02 12:32 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-03-27 13:41 - 2017-03-02 12:31 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-03-27 13:41 - 2017-03-02 12:29 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-03-27 13:41 - 2017-03-02 12:28 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-03-27 13:41 - 2017-03-02 12:22 - 04604416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-03-27 13:41 - 2017-03-02 12:21 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-03-27 13:41 - 2017-03-02 12:19 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-03-27 13:41 - 2017-03-02 12:17 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-03-27 13:41 - 2017-03-02 12:17 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-03-27 13:41 - 2017-03-02 12:11 - 13654528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-03-27 13:41 - 2017-03-02 11:53 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-03-27 13:41 - 2017-03-02 11:50 - 01312768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-03-27 13:41 - 2017-03-02 11:50 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-03-27 13:23 - 2017-03-27 13:24 - 00708144 _____ C:\Windows\Minidump\032717-28579-01.dmp
2017-03-27 10:55 - 2016-08-29 10:31 - 14183424 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-03-27 10:55 - 2016-08-29 10:31 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2017-03-27 10:55 - 2016-08-29 10:12 - 12880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-03-27 10:55 - 2016-08-29 10:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-03-27 10:55 - 2016-08-29 10:04 - 03229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2017-03-27 10:55 - 2016-08-29 09:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2017-03-27 10:43 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2017-03-27 10:33 - 2017-03-27 10:33 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2017-03-27 10:33 - 2017-03-27 10:33 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2017-03-27 10:33 - 2017-03-27 10:33 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-03-27 10:33 - 2017-03-27 10:33 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-03-27 10:33 - 2017-03-27 10:33 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2017-03-27 10:33 - 2017-03-27 10:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2017-03-27 10:33 - 2017-03-27 10:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2017-03-27 10:18 - 2017-03-27 10:18 - 03436152 _____ C:\Users\Jelly\Documents\SysnativeFileCollectionApp (2).zip
2017-03-27 10:14 - 2017-03-27 10:07 - 02906194 _____ C:\Users\Jelly\Documents\resource and performance.html
2017-03-27 10:01 - 2017-03-29 09:48 - 03436145 _____ C:\Users\Jelly\Documents\SysnativeFileCollectionApp.zip
2017-03-27 09:53 - 2017-03-29 09:46 - 00000000 ____D C:\Users\Jelly\Documents\SysnativeFileCollectionApp
2017-03-27 09:53 - 2017-03-27 09:53 - 00158720 _____ (Sysnative) C:\Users\Jelly\Downloads\SysnativeBSODCollectionApp.exe
2017-03-27 09:31 - 2017-03-28 11:58 - 00791660 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-03-27 09:04 - 2017-03-27 09:04 - 00000000 ___SD C:\Windows\system32\CompatTel
2017-03-27 09:04 - 2017-03-27 09:04 - 00000000 ____D C:\Windows\system32\appraiser
2017-03-27 09:03 - 2017-03-27 09:03 - 00556992 _____ C:\Windows\Minidump\032717-18033-01.dmp
2017-03-27 09:02 - 2017-03-27 09:02 - 00846888 _____ C:\Windows\Minidump\032717-16926-01.dmp
2017-03-27 06:53 - 2014-06-30 17:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2017-03-27 06:53 - 2014-06-30 17:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2017-03-27 06:53 - 2014-06-06 01:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-03-27 06:53 - 2014-06-06 01:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-03-27 06:53 - 2014-03-09 16:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2017-03-27 06:53 - 2014-03-09 16:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2017-03-27 06:53 - 2014-03-09 16:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2017-03-27 06:53 - 2014-03-09 16:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2017-03-26 18:45 - 2017-03-26 18:45 - 00003511 _____ C:\Users\Jelly\Desktop\JRT.txt
2017-03-26 18:23 - 2017-03-26 18:24 - 01663904 _____ (Malwarebytes) C:\Users\Jelly\Downloads\JRT.exe
2017-03-26 18:02 - 2015-01-08 22:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2017-03-26 18:02 - 2015-01-08 22:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2017-03-26 18:02 - 2015-01-08 22:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2017-03-26 18:02 - 2015-01-08 21:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2017-03-26 17:31 - 2017-03-29 14:35 - 00082208 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-03-26 17:31 - 2017-03-29 14:31 - 00251840 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-03-26 17:31 - 2017-03-29 14:31 - 00186304 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-03-26 17:31 - 2017-03-29 14:31 - 00111544 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-03-26 17:31 - 2017-03-29 14:31 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-03-26 17:30 - 2017-03-26 17:30 - 00001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-03-26 17:30 - 2017-03-26 17:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-03-26 17:30 - 2017-03-26 17:30 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-03-26 17:30 - 2017-03-26 17:30 - 00000000 ____D C:\Program Files\Malwarebytes
2017-03-26 17:30 - 2017-02-24 06:23 - 00077408 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-03-26 16:29 - 2016-05-13 17:09 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2017-03-26 16:29 - 2016-05-13 17:09 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2017-03-26 16:29 - 2016-05-13 17:09 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2017-03-26 16:29 - 2016-05-13 17:07 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2017-03-26 16:29 - 2016-05-13 16:55 - 02607104 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-03-26 16:29 - 2016-05-13 16:53 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-03-26 16:29 - 2016-05-13 16:53 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2017-03-26 16:29 - 2016-05-13 16:52 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2017-03-26 16:29 - 2016-05-13 16:52 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2017-03-26 16:29 - 2016-05-13 16:52 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2017-03-26 16:29 - 2016-05-13 16:52 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2017-03-26 16:29 - 2016-05-13 16:50 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2017-03-26 16:29 - 2016-05-13 16:38 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-03-26 16:29 - 2016-05-13 16:38 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-03-26 16:29 - 2016-05-13 16:38 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2017-03-26 16:29 - 2016-05-13 16:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2017-03-26 16:29 - 2016-05-12 10:18 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2017-03-26 16:15 - 2017-02-11 10:58 - 00462848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-03-26 16:15 - 2017-02-11 10:58 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-03-26 16:15 - 2017-02-11 10:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-03-26 16:15 - 2017-02-10 11:32 - 00803328 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2017-03-26 16:15 - 2017-02-10 11:32 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-03-26 16:15 - 2017-02-10 11:17 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2017-03-26 16:15 - 2017-02-10 11:17 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-03-26 16:15 - 2017-02-10 09:33 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-03-26 16:15 - 2017-02-09 11:36 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-03-26 16:15 - 2017-02-09 11:35 - 05548264 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-03-26 16:15 - 2017-02-09 11:35 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-03-26 16:15 - 2017-02-09 11:35 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-03-26 16:15 - 2017-02-09 11:35 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-03-26 16:15 - 2017-02-09 11:33 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-03-26 16:15 - 2017-02-09 11:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:19 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-03-26 16:15 - 2017-02-09 11:19 - 03945192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-03-26 16:15 - 2017-02-09 11:16 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:14 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 11:03 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-03-26 16:15 - 2017-02-09 11:03 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-03-26 16:15 - 2017-02-09 11:03 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-03-26 16:15 - 2017-02-09 11:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-03-26 16:15 - 2017-02-09 11:00 - 03220480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-03-26 16:15 - 2017-02-09 10:59 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-03-26 16:15 - 2017-02-09 10:58 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-03-26 16:15 - 2017-02-09 10:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-03-26 16:15 - 2017-02-09 10:55 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-03-26 16:15 - 2017-02-09 10:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-03-26 16:15 - 2017-02-09 10:54 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-03-26 16:15 - 2017-02-09 10:54 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-03-26 16:15 - 2017-02-09 10:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-03-26 16:15 - 2017-02-09 10:51 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
2017-03-26 16:15 - 2017-02-09 10:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-03-26 16:15 - 2017-02-09 10:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-03-26 16:15 - 2017-02-09 10:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-03-26 16:15 - 2017-02-09 10:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-03-26 16:15 - 2017-02-09 10:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-03-26 16:15 - 2017-02-09 10:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 10:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 10:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 10:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-03-26 16:15 - 2017-02-09 09:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2017-03-26 16:15 - 2017-02-09 09:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2017-03-26 16:15 - 2017-02-06 11:14 - 00733696 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2017-03-26 16:15 - 2017-01-13 13:00 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2017-03-26 16:15 - 2017-01-13 13:00 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2017-03-26 16:15 - 2017-01-13 12:45 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2017-03-26 16:15 - 2017-01-13 12:45 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2017-03-26 16:15 - 2017-01-11 13:01 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2017-03-26 16:15 - 2017-01-11 13:01 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2017-03-26 16:15 - 2017-01-11 12:43 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2017-03-26 16:15 - 2017-01-11 12:43 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2017-03-26 16:15 - 2017-01-06 13:00 - 01574912 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2017-03-26 16:15 - 2017-01-06 12:44 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2017-03-26 16:15 - 2016-11-21 13:12 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2017-03-26 16:15 - 2016-11-20 11:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2017-03-26 16:15 - 2016-11-20 09:07 - 00467392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-03-26 16:15 - 2016-11-17 11:41 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2017-03-26 16:15 - 2016-11-10 11:32 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2017-03-26 16:15 - 2016-11-10 11:19 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2017-03-26 16:15 - 2016-11-09 11:41 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2017-03-26 16:15 - 2016-11-09 11:33 - 03244032 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2017-03-26 16:15 - 2016-11-09 11:33 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2017-03-26 16:15 - 2016-11-09 11:33 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2017-03-26 16:15 - 2016-11-09 11:33 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2017-03-26 16:15 - 2016-11-09 11:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2017-03-26 16:15 - 2016-11-09 11:33 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-03-26 16:15 - 2016-11-09 11:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2017-03-26 16:15 - 2016-11-09 11:17 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2017-03-26 16:15 - 2016-11-09 11:17 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2017-03-26 16:15 - 2016-11-09 11:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2017-03-26 16:15 - 2016-11-09 11:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-03-26 16:15 - 2016-11-09 11:02 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2017-03-26 16:15 - 2016-11-09 10:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2017-03-26 16:15 - 2016-11-02 10:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2017-03-26 16:15 - 2016-11-02 10:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2017-03-26 16:15 - 2016-11-02 10:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2017-03-26 16:15 - 2016-11-02 10:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2017-03-26 16:15 - 2016-11-02 10:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2017-03-26 16:15 - 2016-11-02 10:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-03-26 16:15 - 2016-11-02 10:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2017-03-26 16:15 - 2016-11-02 10:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2017-03-26 16:15 - 2016-11-02 10:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2017-03-26 16:15 - 2016-11-02 09:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-03-26 16:15 - 2016-10-11 10:32 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2017-03-26 16:15 - 2016-10-11 10:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2017-03-26 16:15 - 2016-10-11 10:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2017-03-26 16:15 - 2016-10-11 10:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2017-03-26 16:15 - 2016-10-11 10:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2017-03-26 16:15 - 2016-10-11 10:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
2017-03-26 16:15 - 2016-10-11 10:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
2017-03-26 16:15 - 2016-10-11 10:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-03-26 16:15 - 2016-10-11 10:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2017-03-26 16:15 - 2016-10-11 10:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2017-03-26 16:15 - 2016-10-11 10:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime
2017-03-26 16:15 - 2016-10-11 10:18 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
2017-03-26 16:15 - 2016-10-11 09:55 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2017-03-26 16:15 - 2016-10-11 08:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2017-03-26 16:15 - 2016-10-11 08:18 - 00419648 _____ C:\Windows\SysWOW64\locale.nls
2017-03-26 16:15 - 2016-10-11 08:17 - 00419648 _____ C:\Windows\system32\locale.nls
2017-03-26 16:15 - 2016-10-11 08:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2017-03-26 16:15 - 2016-10-08 08:06 - 00633296 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2017-03-26 16:15 - 2016-10-07 10:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2017-03-26 16:15 - 2016-10-07 10:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2017-03-26 16:15 - 2016-10-07 10:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2017-03-26 16:15 - 2016-10-07 10:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2017-03-26 16:15 - 2016-10-07 10:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2017-03-26 16:15 - 2016-10-07 10:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2017-03-26 16:15 - 2016-10-05 09:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2017-03-26 16:15 - 2016-10-04 10:31 - 01483264 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-03-26 16:15 - 2016-10-04 10:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-03-26 16:15 - 2016-10-04 10:31 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2017-03-26 16:15 - 2016-10-04 10:31 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2017-03-26 16:15 - 2016-10-04 10:13 - 01176064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-03-26 16:15 - 2016-10-04 10:13 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-03-26 16:15 - 2016-10-04 10:13 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2017-03-26 16:15 - 2016-10-04 10:13 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2017-03-26 16:15 - 2016-09-15 09:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2017-03-26 16:15 - 2016-09-12 16:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2017-03-26 16:15 - 2016-09-12 15:49 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2017-03-26 16:15 - 2016-09-09 13:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2017-03-26 16:15 - 2016-09-09 13:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2017-03-26 16:15 - 2016-09-08 15:34 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2017-03-26 16:15 - 2016-09-08 15:34 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2017-03-26 16:15 - 2016-09-08 15:34 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2017-03-26 16:15 - 2016-09-08 15:34 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2017-03-26 16:15 - 2016-09-08 09:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2017-03-26 16:15 - 2016-09-08 09:55 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2017-03-26 16:15 - 2016-08-22 11:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2017-03-26 16:15 - 2016-08-12 12:02 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2017-03-26 16:15 - 2016-08-12 12:02 - 12574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2017-03-26 16:15 - 2016-08-12 12:02 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2017-03-26 16:15 - 2016-08-12 12:02 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2017-03-26 16:15 - 2016-08-12 12:02 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2017-03-26 16:15 - 2016-08-12 11:47 - 12574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2017-03-26 16:15 - 2016-08-12 11:47 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2017-03-26 16:15 - 2016-08-12 11:31 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2017-03-26 16:15 - 2016-08-12 11:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2017-03-26 16:15 - 2016-08-12 11:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2017-03-26 16:15 - 2016-08-12 11:26 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 02023424 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2017-03-26 16:15 - 2016-08-06 10:31 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2017-03-26 16:15 - 2016-08-06 10:15 - 01178112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2017-03-26 16:15 - 2016-08-06 10:15 - 00249344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2017-03-26 16:15 - 2016-08-06 10:15 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2017-03-26 16:15 - 2016-08-06 10:15 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2017-03-26 16:15 - 2016-08-06 10:15 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2017-03-26 16:15 - 2016-08-06 10:01 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2017-03-26 16:15 - 2016-08-06 10:01 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2017-03-26 16:15 - 2016-08-06 09:53 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2017-03-26 16:15 - 2016-08-06 09:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2017-03-26 16:15 - 2016-08-06 09:53 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2017-03-26 16:15 - 2016-06-14 12:21 - 00094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2017-03-26 16:15 - 2016-06-14 12:16 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2017-03-26 16:15 - 2016-06-14 12:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2017-03-26 16:15 - 2016-06-14 12:11 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2017-03-26 16:15 - 2016-06-14 10:21 - 03209216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2017-03-26 16:15 - 2016-06-14 10:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2017-03-26 16:15 - 2016-06-14 10:15 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2017-03-26 16:15 - 2016-06-14 10:15 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2017-03-26 16:15 - 2016-06-14 10:15 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2017-03-26 16:15 - 2016-06-14 10:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2017-03-26 16:15 - 2016-06-14 10:05 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2017-03-26 16:15 - 2016-06-14 10:00 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2017-03-26 16:15 - 2016-06-14 10:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2017-03-26 16:15 - 2016-05-12 08:05 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2017-03-26 16:15 - 2016-05-12 08:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2017-03-26 15:11 - 2017-03-26 15:35 - 57131432 _____ (Malwarebytes ) C:\Users\Jelly\Downloads\mb3-setup-1878.1878-3.0.6.1469-1075.exe
2017-03-26 14:19 - 2016-06-25 19:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2017-03-26 14:19 - 2016-06-25 19:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2017-03-26 14:19 - 2016-06-25 19:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2017-03-26 14:19 - 2016-06-25 19:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2017-03-26 14:19 - 2016-06-25 14:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2017-03-26 14:19 - 2016-06-25 14:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2017-03-26 14:19 - 2016-06-25 14:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2017-03-26 14:19 - 2016-06-25 14:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2017-03-26 14:19 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2017-03-26 14:19 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2017-03-26 14:19 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2017-03-26 14:19 - 2014-07-08 21:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2017-03-26 14:19 - 2014-07-08 21:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2017-03-26 14:19 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2017-03-26 14:19 - 2014-07-08 20:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2017-03-26 14:19 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2017-03-26 14:19 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2017-03-26 14:19 - 2014-07-08 20:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2017-03-26 14:12 - 2016-07-07 10:36 - 01896168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-03-26 14:12 - 2016-07-07 10:36 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2017-03-26 14:12 - 2016-07-07 10:36 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-03-26 14:12 - 2016-07-07 10:08 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2017-03-26 14:07 - 2016-08-16 15:40 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2017-03-26 14:07 - 2016-05-11 12:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2017-03-26 14:07 - 2016-05-11 10:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2017-03-26 14:07 - 2015-07-15 13:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2017-03-26 14:03 - 2015-11-19 09:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2017-03-26 14:02 - 2014-08-01 06:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2017-03-26 14:02 - 2014-08-01 06:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2017-03-26 13:57 - 2016-01-20 19:51 - 00073664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys
2017-03-26 13:53 - 2015-07-14 22:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2017-03-26 13:49 - 2016-05-11 12:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2017-03-26 13:49 - 2016-05-11 12:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2017-03-26 13:49 - 2016-05-11 12:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2017-03-26 13:49 - 2016-05-11 10:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2017-03-26 13:49 - 2016-05-11 10:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2017-03-26 13:49 - 2016-05-11 10:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2017-03-26 13:49 - 2016-05-11 10:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2017-03-26 13:49 - 2016-05-11 10:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2017-03-26 13:49 - 2016-05-11 09:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2017-03-26 13:48 - 2016-01-22 01:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2017-03-26 13:48 - 2016-01-22 01:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2017-03-26 13:48 - 2016-01-22 01:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2017-03-26 13:48 - 2016-01-22 01:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2017-03-26 13:47 - 2017-02-22 18:42 - 00084712 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2017-03-26 13:47 - 2017-02-22 18:37 - 01285632 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-03-26 13:47 - 2017-02-18 09:05 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2017-03-26 13:47 - 2017-02-18 09:05 - 00646656 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2017-03-26 13:47 - 2016-12-31 10:36 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2017-03-26 13:47 - 2016-12-31 10:36 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2017-03-26 13:47 - 2016-12-31 10:36 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2017-03-26 13:47 - 2016-12-31 10:36 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2017-03-26 13:47 - 2016-12-31 10:36 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2017-03-26 13:47 - 2016-05-12 12:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2017-03-26 13:47 - 2016-05-12 12:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2017-03-26 13:47 - 2016-05-12 12:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2017-03-26 13:47 - 2016-05-12 12:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2017-03-26 13:47 - 2016-05-12 12:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2017-03-26 13:47 - 2016-05-12 12:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2017-03-26 13:47 - 2016-05-12 10:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2017-03-26 13:47 - 2016-05-12 10:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2017-03-26 13:47 - 2016-05-12 10:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2017-03-26 13:47 - 2016-05-12 10:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2017-03-26 13:47 - 2016-03-23 17:40 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2017-03-26 13:44 - 2016-03-09 14:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2017-03-26 13:44 - 2016-03-09 13:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2017-03-26 13:33 - 2015-11-13 18:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2017-03-26 13:33 - 2015-11-13 18:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2017-03-26 13:33 - 2015-11-13 18:08 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2017-03-26 13:33 - 2015-11-13 17:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2017-03-26 13:33 - 2015-11-13 17:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2017-03-26 13:33 - 2015-11-13 17:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2017-03-26 13:33 - 2015-06-01 19:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2017-03-26 13:33 - 2015-06-01 18:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2017-03-26 13:32 - 2016-03-16 13:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2017-03-26 13:32 - 2016-03-16 13:28 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2017-03-26 13:32 - 2016-03-16 13:28 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2017-03-26 13:32 - 2015-04-12 22:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2017-03-26 13:30 - 2016-02-02 13:57 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2017-03-26 13:30 - 2015-08-05 12:56 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2017-03-26 13:30 - 2014-12-11 12:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2017-03-26 13:30 - 2014-01-27 21:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2017-03-26 13:30 - 2013-10-29 21:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2017-03-26 13:30 - 2013-10-29 21:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2017-03-26 13:29 - 2016-03-17 17:56 - 02084864 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-03-26 13:29 - 2016-03-17 17:28 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-03-26 13:19 - 2015-07-10 12:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-03-26 13:19 - 2015-07-10 12:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2017-03-26 13:19 - 2015-07-10 12:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2017-03-26 13:19 - 2015-07-10 12:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-03-26 13:19 - 2015-07-10 12:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2017-03-26 13:19 - 2015-07-10 12:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2017-03-26 12:40 - 2015-12-08 16:54 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-03-26 12:40 - 2015-12-08 16:54 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 01568768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 01325056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2017-03-26 12:40 - 2015-12-08 16:54 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2017-03-26 12:40 - 2015-12-08 16:54 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00970240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2adec.dll
2017-03-26 12:40 - 2015-12-08 16:53 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2017-03-26 12:40 - 2015-12-08 16:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2017-03-26 12:40 - 2015-12-08 16:53 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2017-03-26 12:40 - 2015-12-08 16:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2017-03-26 12:40 - 2015-12-08 16:53 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 01955328 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01575424 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01393152 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01153024 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 01026048 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00224768 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2017-03-26 12:40 - 2015-12-08 14:07 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2017-03-26 12:40 - 2015-12-08 14:07 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2017-03-26 12:40 - 2015-12-08 14:06 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2017-03-26 12:40 - 2015-12-08 13:54 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2017-03-26 12:40 - 2015-12-08 13:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2017-03-26 12:40 - 2015-12-08 13:11 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2017-03-26 10:19 - 2015-05-25 13:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2017-03-26 10:19 - 2015-05-25 13:18 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2017-03-26 10:19 - 2015-05-25 13:18 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2017-03-26 10:19 - 2015-05-25 13:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2017-03-26 10:19 - 2015-05-25 13:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2017-03-26 10:19 - 2015-05-25 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2017-03-26 10:19 - 2015-05-25 13:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2017-03-26 10:19 - 2015-05-25 13:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2017-03-26 10:19 - 2015-05-25 13:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2017-03-26 10:19 - 2015-05-25 13:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2017-03-26 10:19 - 2015-05-25 13:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2017-03-26 10:19 - 2015-05-25 13:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2017-03-26 10:02 - 2017-03-26 10:02 - 00305080 _____ C:\Windows\Minidump\032617-30841-01.dmp
2017-03-26 09:59 - 2017-03-26 09:59 - 00701344 _____ C:\Windows\Minidump\032617-32011-01.dmp
2017-03-26 09:56 - 2017-03-26 09:57 - 00706232 _____ C:\Windows\Minidump\032617-30295-01.dmp
2017-03-26 09:53 - 2017-03-26 09:53 - 00561264 _____ C:\Windows\Minidump\032617-30030-01.dmp
2017-03-26 09:51 - 2017-03-26 09:52 - 00459592 _____ C:\Windows\Minidump\032617-31574-01.dmp
2017-03-26 09:12 - 2014-03-04 04:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2017-03-26 09:12 - 2014-03-04 04:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2017-03-26 09:12 - 2014-03-04 04:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2017-03-26 09:12 - 2014-03-04 04:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2017-03-26 09:12 - 2014-03-04 04:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2017-03-26 09:12 - 2014-03-04 04:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2017-03-26 09:12 - 2014-03-04 04:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2017-03-26 09:12 - 2014-03-04 04:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2017-03-26 09:05 - 2017-03-26 09:06 - 00556992 _____ C:\Windows\Minidump\032617-29796-01.dmp
2017-03-26 08:45 - 2017-03-26 08:45 - 00556992 _____ C:\Windows\Minidump\032617-30700-01.dmp
2017-03-26 08:43 - 2017-03-26 08:43 - 00325704 _____ C:\Windows\Minidump\032617-30966-01.dmp
2017-03-26 07:38 - 2017-03-26 07:38 - 00129360 _____ C:\Users\Jelly\Downloads\DELL_ST2220T-TOUCH-MONITOR_A00-00_R281165.exe
2017-03-26 07:38 - 2017-03-26 07:38 - 00129360 _____ C:\Users\Jelly\Downloads\DELL_ST2220T-TOUCH-MONITOR_A00-00_R281165(1).exe
2017-03-26 07:37 - 2017-03-26 07:39 - 00147136 _____ C:\Users\Jelly\Downloads\DELL_U2412M-MONITOR_A00-00_R300816(1).exe
2017-03-26 07:37 - 2017-03-26 07:37 - 00128744 _____ C:\Users\Jelly\Downloads\DELL_S2230MX-MONITOR_A00-00_R303587(1).exe
2017-03-26 04:44 - 2017-03-26 04:44 - 00315864 _____ C:\Windows\Minidump\032617-31059-01.dmp
2017-03-26 04:31 - 2015-07-30 08:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-03-26 04:31 - 2015-07-30 08:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-03-25 19:45 - 2014-12-18 22:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2017-03-25 19:44 - 2014-06-18 17:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2017-03-25 19:38 - 2015-07-09 12:58 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2017-03-25 19:38 - 2015-07-09 12:58 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2017-03-25 19:38 - 2015-07-09 12:42 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2017-03-25 19:38 - 2015-07-09 12:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2017-03-25 19:38 - 2014-01-28 21:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2017-03-25 19:38 - 2014-01-28 21:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2017-03-25 19:38 - 2013-10-18 21:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2017-03-25 19:38 - 2013-10-18 20:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2017-03-25 19:37 - 2014-10-13 21:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2017-03-25 19:31 - 2014-12-05 23:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2017-03-25 19:31 - 2014-12-05 22:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2017-03-25 19:31 - 2014-12-05 22:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2017-03-25 19:27 - 2014-06-17 21:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2017-03-25 19:27 - 2014-06-17 20:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2017-03-25 19:26 - 2016-04-09 02:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-03-25 19:26 - 2016-04-09 02:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-03-25 19:26 - 2016-04-09 01:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2017-03-25 19:26 - 2016-02-05 13:56 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2017-03-25 19:26 - 2016-02-05 13:54 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2017-03-25 19:26 - 2016-02-05 12:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2017-03-25 19:26 - 2015-06-03 15:21 - 00451080 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2017-03-25 19:26 - 2015-02-02 22:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2017-03-25 19:26 - 2015-02-02 22:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2017-03-25 19:26 - 2015-01-28 22:19 - 02543104 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2017-03-25 19:26 - 2015-01-28 22:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2017-03-25 19:26 - 2013-10-03 21:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2017-03-25 19:26 - 2013-10-03 21:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2017-03-25 19:26 - 2013-10-03 20:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2017-03-25 19:26 - 2013-10-03 20:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2017-03-25 19:22 - 2016-01-11 14:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2017-03-25 19:22 - 2013-12-03 21:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2017-03-25 19:22 - 2013-12-03 21:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2017-03-25 19:22 - 2013-12-03 21:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2017-03-25 19:22 - 2013-12-03 21:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2017-03-25 19:22 - 2013-12-03 21:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2017-03-25 19:22 - 2013-12-03 21:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2017-03-25 19:22 - 2013-12-03 21:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2017-03-25 19:22 - 2013-12-03 21:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2017-03-25 19:22 - 2013-12-03 21:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2017-03-25 19:22 - 2013-12-03 21:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2017-03-25 19:22 - 2013-12-03 21:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2017-03-25 19:22 - 2013-12-03 21:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2017-03-25 19:22 - 2013-12-03 21:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2017-03-25 19:22 - 2013-12-03 21:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2017-03-25 19:22 - 2013-12-03 20:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2017-03-25 19:22 - 2013-12-03 20:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2017-03-25 19:22 - 2013-12-03 20:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2017-03-25 19:22 - 2013-12-03 20:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2017-03-25 19:20 - 2016-02-03 13:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2017-03-25 19:20 - 2015-11-05 14:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2017-03-25 19:20 - 2015-11-05 14:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2017-03-25 19:20 - 2015-11-05 04:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2017-03-25 19:20 - 2015-04-24 13:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2017-03-25 19:20 - 2015-04-24 12:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2017-03-25 19:20 - 2013-06-25 17:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2017-03-25 19:19 - 2015-11-11 13:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2017-03-25 19:19 - 2015-11-11 13:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2017-03-25 19:19 - 2015-11-11 13:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2017-03-25 19:19 - 2015-11-11 13:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2017-03-25 19:18 - 2016-03-15 19:16 - 00760320 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-03-25 19:18 - 2016-03-15 19:16 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2017-03-25 19:18 - 2016-03-15 18:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2017-03-25 19:18 - 2016-02-04 20:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2017-03-25 19:18 - 2016-02-04 13:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2017-03-25 19:18 - 2015-10-13 11:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2017-03-25 19:18 - 2015-10-13 11:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-03-25 19:18 - 2013-07-12 05:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2017-03-25 19:18 - 2013-07-12 05:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2017-03-25 19:18 - 2013-07-02 23:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2017-03-25 19:18 - 2013-07-02 23:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2017-03-25 19:16 - 2015-07-30 13:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2017-03-25 19:16 - 2015-07-30 12:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2017-03-25 19:12 - 2015-10-29 12:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2017-03-25 19:12 - 2015-10-29 12:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2017-03-25 19:12 - 2015-10-29 12:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2017-03-25 19:12 - 2015-10-29 12:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2017-03-25 19:12 - 2015-10-29 12:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2017-03-25 19:12 - 2015-10-29 12:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2017-03-25 19:12 - 2015-10-29 12:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2017-03-25 19:10 - 2015-07-22 19:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2017-03-25 19:10 - 2015-07-22 12:53 - 00635392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2017-03-25 19:07 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2017-03-25 19:07 - 2015-07-09 12:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2017-03-25 19:07 - 2015-07-09 12:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2017-03-25 19:07 - 2013-11-26 03:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-03-25 19:07 - 2013-11-22 17:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-03-25 19:04 - 2016-04-14 08:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2017-03-25 19:04 - 2016-04-14 08:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2017-03-25 19:04 - 2015-12-08 16:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2017-03-25 19:04 - 2015-12-08 16:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2017-03-25 19:04 - 2015-12-08 14:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2017-03-25 19:04 - 2015-12-08 14:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2017-03-25 19:02 - 2014-11-10 22:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2017-03-25 19:02 - 2014-11-10 21:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2017-03-25 18:55 - 2016-02-09 04:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2017-03-25 18:55 - 2015-04-10 22:19 - 00069888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2017-03-25 18:55 - 2015-02-24 22:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2017-03-25 18:54 - 2014-02-03 21:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2017-03-25 18:54 - 2014-02-03 21:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2017-03-25 18:54 - 2014-02-03 21:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2017-03-25 18:54 - 2014-02-03 21:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2017-03-25 18:54 - 2014-02-03 21:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2017-03-25 18:52 - 2015-08-27 13:18 - 02004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2017-03-25 18:52 - 2015-08-27 13:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2017-03-25 18:52 - 2015-08-27 12:58 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2017-03-25 18:52 - 2015-08-27 12:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2017-03-25 18:50 - 2014-10-29 21:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2017-03-25 18:50 - 2014-10-29 20:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2017-03-25 18:49 - 2014-09-04 00:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2017-03-25 18:49 - 2014-09-04 00:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2017-03-25 18:44 - 2015-10-12 23:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2017-03-25 18:42 - 2014-10-24 20:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2017-03-25 18:42 - 2014-10-24 20:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2017-03-25 18:42 - 2014-07-16 21:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2017-03-25 18:42 - 2014-07-16 21:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-03-25 18:42 - 2014-07-16 21:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2017-03-25 18:42 - 2014-07-16 21:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2017-03-25 18:42 - 2014-07-16 20:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2017-03-25 18:42 - 2014-07-16 20:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2017-03-25 18:42 - 2014-07-16 20:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2017-03-25 18:42 - 2014-07-16 20:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2017-03-25 18:38 - 2016-03-09 13:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2017-03-25 18:38 - 2016-03-09 13:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2017-03-25 18:38 - 2014-12-07 22:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2017-03-25 18:38 - 2014-12-07 21:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2017-03-25 18:37 - 2015-11-03 14:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2017-03-25 18:37 - 2015-11-03 13:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2017-03-25 18:37 - 2013-10-11 21:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2017-03-25 18:37 - 2013-10-11 21:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2017-03-25 18:37 - 2013-10-11 21:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2017-03-25 18:37 - 2013-10-11 21:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2017-03-25 18:37 - 2013-10-11 20:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2017-03-25 18:37 - 2013-10-11 20:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2017-03-25 18:37 - 2013-10-11 20:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2017-03-25 18:37 - 2013-10-11 20:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2017-03-25 18:36 - 2016-03-23 17:43 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2017-03-25 18:36 - 2016-03-23 17:40 - 00546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2017-03-25 18:34 - 2015-03-03 23:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2017-03-25 18:34 - 2015-03-03 23:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2017-03-25 18:32 - 2016-04-08 23:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2017-03-25 18:32 - 2016-04-08 22:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2017-03-25 18:31 - 2015-02-03 22:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2017-03-25 18:31 - 2015-02-03 21:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2017-03-25 18:31 - 2013-10-11 21:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2017-03-25 18:31 - 2013-10-11 21:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2017-03-25 18:31 - 2013-10-11 21:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2017-03-25 18:31 - 2013-10-11 21:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2017-03-25 18:31 - 2013-10-11 21:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2017-03-25 14:55 - 2017-03-25 14:56 - 00533032 _____ C:\Windows\Minidump\032517-18142-01.dmp
2017-03-25 13:26 - 2017-03-25 13:28 - 09214024 _____ C:\Users\Jelly\Downloads\RogueKillerCMD.exe
2017-03-25 13:00 - 2017-03-25 13:08 - 00002040 _____ C:\Users\Jelly\Desktop\Rkill.txt
2017-03-25 12:35 - 2017-03-25 12:59 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\Jelly\Downloads\rkill.exe
2017-03-25 12:11 - 2017-03-25 12:11 - 00003150 _____ C:\Windows\System32\Tasks\{D3F246EA-17B2-4B23-9E29-CC4F6EB093F4}
2017-03-25 11:59 - 2017-03-25 12:00 - 04282512 _____ C:\Users\Jelly\Downloads\CW1384A0.exe
2017-03-25 11:59 - 2017-03-25 11:59 - 00128744 _____ C:\Users\Jelly\Downloads\DELL_S2230MX-MONITOR_A00-00_R303587.exe
2017-03-25 11:58 - 2017-03-25 11:58 - 00147136 _____ C:\Users\Jelly\Downloads\DELL_U2412M-MONITOR_A00-00_R300816.exe
2017-03-25 11:57 - 2017-03-25 11:57 - 04031440 _____ C:\Users\Jelly\Downloads\AdwCleaner.exe
2017-03-25 11:42 - 2017-03-25 11:42 - 00013858 _____ C:\Users\Jelly\Downloads\DellSystemDetectLauncher(4).Application
2017-03-25 11:40 - 2017-03-25 11:40 - 00013858 _____ C:\Users\Jelly\Downloads\DellSystemDetectLauncher(3).Application
2017-03-25 11:38 - 2017-03-25 11:55 - 00000000 ____D C:\Users\Jelly\AppData\Local\Deployment
2017-03-25 11:38 - 2017-03-25 11:38 - 00013858 _____ C:\Users\Jelly\Downloads\dellsystemdetectlauncher(2).application
2017-03-25 11:38 - 2017-03-25 11:38 - 00013858 _____ C:\Users\Jelly\Downloads\DellSystemDetectLauncher(1).Application
2017-03-25 11:35 - 2017-03-25 11:35 - 00556992 _____ C:\Windows\Minidump\032517-16426-01.dmp
2017-03-25 11:29 - 2017-03-25 11:29 - 00013858 _____ C:\Users\Jelly\Downloads\dellsystemdetectlauncher.application
2017-03-25 11:06 - 2017-03-25 11:06 - 00016750 _____ C:\ComboFix.txt
2017-03-25 10:44 - 2017-03-25 10:44 - 00704280 _____ C:\Windows\Minidump\032517-17612-01.dmp
2017-03-25 10:35 - 2017-03-25 11:06 - 00000000 ____D C:\Qoobox
2017-03-25 10:35 - 2011-06-26 01:45 - 00256000 _____ C:\Windows\PEV.exe
2017-03-25 10:35 - 2010-11-07 12:20 - 00208896 _____ C:\Windows\MBR.exe
2017-03-25 10:35 - 2009-04-19 23:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2017-03-25 10:35 - 2000-08-30 19:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2017-03-25 10:35 - 2000-08-30 19:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2017-03-25 10:35 - 2000-08-30 19:00 - 00098816 _____ C:\Windows\sed.exe
2017-03-25 10:35 - 2000-08-30 19:00 - 00080412 _____ C:\Windows\grep.exe
2017-03-25 10:35 - 2000-08-30 19:00 - 00068096 _____ C:\Windows\zip.exe
2017-03-25 10:34 - 2017-03-25 11:04 - 00000000 ____D C:\Windows\erdnt
2017-03-25 10:30 - 2017-03-25 10:32 - 05659269 ____R (Swearware) C:\Users\Jelly\Downloads\ComboFix.exe
2017-03-25 10:18 - 2017-03-25 10:18 - 00556992 _____ C:\Windows\Minidump\032517-15709-01.dmp
2017-03-25 10:08 - 2017-03-25 10:08 - 00556992 _____ C:\Windows\Minidump\032517-16707-01.dmp
2017-03-25 10:07 - 2017-03-25 10:07 - 00556992 _____ C:\Windows\Minidump\032517-15724-01.dmp
2017-03-25 10:03 - 2017-03-29 08:45 - 00537086 _____ C:\Windows\ntbtlog.txt
2017-03-25 10:03 - 2017-03-25 10:03 - 00556992 _____ C:\Windows\Minidump\032517-15178-01.dmp
2017-03-25 10:02 - 2017-03-25 10:02 - 00557008 _____ C:\Windows\Minidump\032517-15662-01.dmp
2017-03-25 10:01 - 2017-03-25 10:01 - 00556992 _____ C:\Windows\Minidump\032517-15194-01.dmp
2017-03-25 09:59 - 2017-03-25 09:59 - 00557008 _____ C:\Windows\Minidump\032517-16130-01.dmp
2017-03-25 09:58 - 2017-03-25 09:58 - 00323072 _____ C:\Windows\Minidump\032517-16348-01.dmp
2017-03-24 19:42 - 2017-03-24 19:42 - 00844696 _____ C:\Windows\Minidump\032417-16754-01.dmp
2017-03-24 17:42 - 2017-03-24 17:42 - 00556992 _____ C:\Windows\Minidump\032417-20514-01.dmp
2017-03-24 17:41 - 2017-03-24 17:41 - 00556992 _____ C:\Windows\Minidump\032417-18158-01.dmp
2017-03-24 17:39 - 2017-03-24 17:39 - 00707936 _____ C:\Windows\Minidump\032417-17362-01.dmp
2017-03-24 17:33 - 2017-03-24 17:33 - 00708176 _____ C:\Windows\Minidump\032417-20748-01.dmp
2017-03-24 17:30 - 2017-03-24 17:30 - 00840000 _____ C:\Windows\Minidump\032417-21652-01.dmp
2017-03-24 15:22 - 2017-03-28 21:02 - 00000000 ____D C:\AdwCleaner
2017-03-24 15:15 - 2017-03-24 15:15 - 01950720 _____ C:\Users\Jelly\Downloads\AdwCleaner Setup [1].exe
2017-03-23 13:29 - 2017-03-23 13:41 - 00013876 _____ C:\Users\Jelly\Documents\Titus teaching 2.odt
2017-03-17 07:16 - 2017-03-17 07:34 - 00012561 _____ C:\Users\Jelly\Documents\Titus introduction.odt
2017-03-14 12:28 - 2017-03-14 12:31 - 00000000 ____D C:\Users\Jelly\AppData\Roaming\LTOA
2017-03-14 12:27 - 2017-03-14 12:27 - 00002205 _____ C:\Users\Public\Desktop\Lost Treasures of Alexandria.lnk
2017-03-14 11:27 - 2017-03-14 11:28 - 00000000 ____D C:\Program Files (x86)\Lost Treasures of Alexandria
2017-03-14 11:27 - 2017-03-14 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lost Treasures of Alexandria
2017-03-11 13:04 - 2017-03-11 13:04 - 00242802 _____ C:\Users\Jelly\Downloads\kingxerxes(1).pdf
2017-03-11 13:04 - 2017-03-11 13:04 - 00242802 _____ C:\Users\Jelly\Downloads\kingxerxes(1) - Copy.pdf
2017-03-11 13:04 - 2017-03-11 13:03 - 00253592 _____ C:\Users\Jelly\Downloads\queen-esther - Copy.pdf
2017-03-11 13:04 - 2017-03-11 13:03 - 00249696 _____ C:\Users\Jelly\Downloads\queen-vashti - Copy.pdf
2017-03-11 13:04 - 2017-03-11 13:03 - 00245453 _____ C:\Users\Jelly\Downloads\Haman - Copy.pdf
2017-03-11 13:04 - 2017-03-11 13:03 - 00242802 _____ C:\Users\Jelly\Downloads\kingxerxes - Copy.pdf
2017-03-11 13:04 - 2017-03-11 13:03 - 00237530 _____ C:\Users\Jelly\Downloads\mordecai - Copy.pdf
2017-03-11 13:03 - 2017-03-11 13:03 - 00253592 _____ C:\Users\Jelly\Downloads\queen-esther.pdf
2017-03-11 13:03 - 2017-03-11 13:03 - 00249696 _____ C:\Users\Jelly\Downloads\queen-vashti.pdf
2017-03-11 13:03 - 2017-03-11 13:03 - 00245453 _____ C:\Users\Jelly\Downloads\Haman.pdf
2017-03-11 13:03 - 2017-03-11 13:03 - 00242802 _____ C:\Users\Jelly\Downloads\kingxerxes.pdf
2017-03-11 13:03 - 2017-03-11 13:03 - 00237530 _____ C:\Users\Jelly\Downloads\mordecai.pdf
2017-03-10 10:16 - 2017-03-10 11:03 - 00010645 _____ C:\Users\Jelly\Documents\Esther - a love story.odt
2017-03-07 16:46 - 2017-03-25 14:55 - 00000000 ____D C:\Program Files (x86)\OXXOGames

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-03-29 15:21 - 2017-01-17 19:46 - 00000000 ____D C:\Users\Jelly\AppData\LocalLow\Mozilla
2017-03-29 14:39 - 2009-07-13 23:45 - 00013632 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-03-29 14:39 - 2009-07-13 23:45 - 00013632 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-03-29 14:35 - 2009-07-14 00:13 - 00799046 _____ C:\Windows\system32\PerfStringBackup.INI
2017-03-29 14:35 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\inf
2017-03-29 14:30 - 2009-07-14 00:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-29 14:29 - 2012-10-13 15:04 - 00000000 ____D C:\Windows\Minidump
2017-03-29 09:14 - 2012-10-24 17:25 - 00000000 ____D C:\Users\Jelly\AppData\Local\Google
2017-03-28 21:04 - 2012-10-09 09:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-03-28 17:44 - 2017-01-02 18:30 - 00000000 ____D C:\Users\Jelly\AppData\Roaming\Hoyle Card Games
2017-03-28 15:11 - 2013-01-09 15:02 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2017-03-28 13:49 - 2012-10-03 03:02 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-03-28 13:49 - 2012-10-03 02:55 - 00000000 ____D C:\Users\Jelly\AppData\Local\Adobe
2017-03-28 13:27 - 2014-12-10 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2017-03-28 13:27 - 2014-12-10 18:50 - 00000000 ____D C:\Program Files (x86)\7-Zip
2017-03-28 12:55 - 2009-07-14 02:44 - 00000000 ___RD C:\Users\Public\Recorded TV
2017-03-28 12:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\servicing
2017-03-28 12:55 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\registration
2017-03-28 12:37 - 2017-01-17 15:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-03-28 11:06 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\AppCompat
2017-03-28 10:39 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\rescache
2017-03-28 09:57 - 2012-10-04 02:44 - 00000000 ____D C:\Users\Jelly
2017-03-27 15:41 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2017-03-27 15:32 - 2010-01-15 11:40 - 138634176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-03-27 14:32 - 2016-04-23 12:44 - 00000000 ____D C:\Users\Jelly\Desktop\UPRAY
2017-03-27 12:55 - 2009-07-13 23:45 - 11328392 _____ C:\Windows\system32\FNTCACHE.DAT
2017-03-27 11:25 - 2012-10-04 02:45 - 00001413 _____ C:\Users\Jelly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-03-27 11:17 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\tracing
2017-03-27 10:48 - 2013-03-21 17:01 - 00000000 ____D C:\Users\Jelly\AppData\Local\ElevatedDiagnostics
2017-03-27 10:05 - 2009-07-13 22:20 - 00000000 ____D C:\PerfLogs
2017-03-27 09:10 - 2009-07-13 23:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-03-27 09:05 - 2009-07-14 00:32 - 00000000 ____D C:\Program Files\DVD Maker
2017-03-27 09:05 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\SysWOW64\Dism
2017-03-27 09:04 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\Dism
2017-03-26 07:12 - 2009-07-14 00:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2017-03-26 04:47 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2017-03-25 12:09 - 2017-01-05 11:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eGames
2017-03-25 11:59 - 2012-09-29 10:25 - 00000000 ____D C:\Dell
2017-03-25 11:38 - 2013-01-11 21:28 - 00000000 ____D C:\Users\Jelly\AppData\Local\Apps\2.0
2017-03-25 11:32 - 2009-07-14 00:08 - 00032648 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-03-25 11:02 - 2009-07-13 21:34 - 00000215 _____ C:\Windows\system.ini
2017-03-19 17:16 - 2013-01-09 14:50 - 00004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-03-19 17:16 - 2012-11-08 23:24 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-03-19 17:16 - 2012-11-08 23:24 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-03-19 17:16 - 2012-11-08 23:23 - 00000000 ____D C:\Windows\system32\Macromed
2017-03-19 17:16 - 2012-10-03 03:02 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-03-14 11:27 - 2012-09-29 10:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-02-28 18:33 - 2016-04-23 12:43 - 00000000 ____D C:\Users\Jelly\Desktop\MY Lisa

==================== Files in the root of some directories =======

2015-03-19 12:09 - 2015-03-19 12:11 - 0000132 _____ () C:\Users\Jelly\AppData\Roaming\Adobe IllExport Filter CS5 Prefs
2013-06-19 16:10 - 2015-03-19 12:14 - 0000132 _____ () C:\Users\Jelly\AppData\Roaming\Adobe PNG Format CS5 Prefs
2013-03-19 23:04 - 2013-03-19 23:04 - 0033134 _____ () C:\Users\Jelly\AppData\Roaming\UserTile.png
2013-07-22 19:12 - 2013-07-22 19:22 - 0001456 _____ () C:\Users\Jelly\AppData\Local\Adobe Save for Web 12.0 Prefs
2017-01-18 11:01 - 2017-01-18 11:01 - 0007615 _____ () C:\Users\Jelly\AppData\Local\Resmon.ResmonCfg
2013-12-28 19:10 - 2013-12-28 19:10 - 0000008 __RSH () C:\ProgramData\sysqcl1129067056.dat
2014-02-04 00:41 - 2014-02-04 00:41 - 0000008 _RSHT () C:\ProgramData\sysqcl1131236454.dat

Files to move or delete:
====================
C:\ProgramData\sysqcl1129067056.dat
C:\ProgramData\sysqcl1131236454.dat


Some files in TEMP:
====================
2017-03-25 15:47 - 2017-03-28 17:44 - 0212992 _____ (Sony DADC Austria AG) C:\Users\Jelly\AppData\Local\Temp\drm_dyndata_7330014.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-03-26 12:10

==================== End of FRST.txt ============================Attached File  Addition.txt   22.98KB   2 downloads

 



BC AdBot (Login to Remove)

 


#2 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 30 March 2017 - 09:09 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Remove this program in bold via the Control Panel > Programs > Programs and Features.
iWin Games (remove only) (HKLM-x32\...\iWinArcade) (Version: - )
===

Press the windows key Windows_Logo_key.gif+ r on your keyboard at the same time. This will open the RUN BOX.
Type Notepad and and click the OK key.

Please copy the entire contents of the code box below to a new file.
 
Start

CreateRestorePoint:
EmptyTemp:
CloseProcesses:


HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-1201568024-687805132-3457482369-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKLM-x32 -> DefaultScope value is missing
Toolbar: HKU\S-1-5-21-1201568024-687805132-3457482369-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
FF Extension: (MapsAlly) - C:\Users\Jelly\AppData\Roaming\Mozilla\Firefox\Profiles\6lg91f3w.default-1462819694333\Extensions\{ae92cb39-b2a6-4865-a125-1b273ffb4a1c}.xpi [2017-03-22]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
U3 aswbdisk; no ImagePath
S3 Delldiag; \??\C:\__de11ctstestfolder20120wdcsa__\WBT\WBT_W64\DDDriver.sys [X]
S3 PCDSRVC{1353820B-E58E0D1F-06020200}_0; \??\c:\__de11ctstestfolder20120wdcsa__\tools\pcdr\pcdsrvc_x64.pkms [X]
S2 SCWFPFilter; system32\DRIVERS\WFPFilter.sys [X]
CustomCLSID: HKU\S-1-5-21-1201568024-687805132-3457482369-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Jelly\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sndappv2 => ""="service"
FirewallRules: [{0FA6905E-5A3C-4C15-A919-A3DE2312D07D}] => (Allow) C:\Program Files (x86)\iWin Games\iWinGames.exe
FirewallRules: [{A1B02FBC-9D1C-46DD-B7FA-9C98E4DBD934}] => (Allow) C:\Program Files (x86)\iWin Games\iWinGames.exe
FirewallRules: [{69433609-DAAD-4EF4-8C09-EF19BE6DE5F8}] => (Allow) C:\Program Files (x86)\iWin Games\WebUpdater.exe
FirewallRules: [{12D6FEFD-C231-400B-BA47-D44DDBF4B888}] => (Allow) C:\Program Files (x86)\iWin Games\WebUpdater.exe
C:\Program Files (x86)\iWin Games

End
Save the file as fixlist.txt in the same folder where the Farbar tool is running from.
The location is listed in the 3rd line of the Farbar log you have submitted.

Run FRST and click Fix only once and wait.

The tool will create a log (Fixlog.txt) please post it to your reply.
===

Firefox:
Reset Default Browsing settings:
https://support.mozilla.org/en-US/kb/reset-firefox-easily-fix-problems?utm_expid=65912487-41.djHNRQY0RhaLvvtvcd0BQA.2&utm_referrer=https%3A%2F%2Fwww.google.ca%2F

Clean the Firefox Cache.
https://kb.iu.edu/d/ahic#firefox
<<<>>>

Download to your Desktop the Junkware Removal Tool Download from this link.
http://www.bleepingcomputer.com/download/junkware-removal-tool/

Shutdown your antivirus to avoid any conflicts.
Right click the icon - disable for say 20 mins.
Right-mouse click JRT.exe and select Run as administrator (If using XP just double click on the icon to run it.)
The tool will open and start scanning your system.
Please be patient as this can take a while to complete.
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
Post the contents of JRT.txt into your next message.
======

Your version of Java is outdated and needs to be updated to take advantage of fixes that have eliminated security vulnerabilities.

You can manually check your present version and update as recommended.
https://www.java.com/en/download/installed.jsp

Be careful not to install malware posing as Java update!
Important read this blog.
http://blog.trendmicro.com/trendlabs-security-intelligence/malware-poses-as-an-update-for-java-0-day-fix/

Quoted from the page.
"In light of the recent events surrounding Java, users must seriously consider their use of Java. Do they really need it? If yes, make sure that users follow the steps we recommended and get the security update directly from the official oracle website." at:
http://www.oracle.com/technetwork/java/javase/downloads/index.html

How to disable Java in your browsers
http://www.infoworld.com/t/web-browsers/how-disable-java-in-your-browsers-210882

If still present after the update you can remove the old versions of Java via the Control Panel > Programs > Programs and Features.
Java 7 Update 10 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217010FF}) (Version: 7.0.100 - Oracle)
===

Please let me know what problem persists with this computer.

#3 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 01 April 2017 - 08:46 AM

finished.  computer still don't want to start up right.  Sometimes it take 45 min for it to finally finish start up mode.  once it gets past start up works fine.Attached File  JRT.txt   1.83KB   1 downloadsAttached File  Fixlog.txt   5.99KB   2 downloadsAttached File  Fixlog.txt   5.99KB   2 downloads



#4 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 01 April 2017 - 12:58 PM

Check the integrity of the operating system files.
How to run sfc /Scannow
http://support.microsoft.com/kb/929833

When completed refer to the Microsoft article again and follow the instructions to view details of the System File Checker process

Post the contents of the sfcdetails.txt file for my review.
===

If the problem persists check for old drivers that need to be updated.

Navigate to this page.
http://learn.flexerasoftware.com/SVM-EVAL-Personal-Software-Inspector

Download and run the Flexera Software Personal Software Inspector.
Update the old drivers.

===

Keep me posted.

#5 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 01 April 2017 - 02:24 PM

 Attached File  sfcdetails.txt   41.16KB   3 downloads

 

 Updates are current for my computer.



#6 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 02 April 2017 - 06:21 AM


Lets repair these services.

Please Download Tweaking.com - Windows Repair from Here
[list]
  • Install and then run the program
  • Execute the instructions on Step 1 Important
  • Click Next on Step 2 Optional, do the Pre Scan skip Step 3 and 4 Optional for now.
  • On Step 5 Backup System Restore Do a Registry backup. When you have completed this click Next
  • Click Repairs - Open Repairs in the bottom right corner
  • Uncheck the All repair button then select just the item(s) listed below

  • 01 - Repair Registry Permissions
    03 - Reset Service permissions
    04 - Register System Files
    05 - Repair WMI
    08 - Repair MDAC/MS Jet
    10 - Remove Policies Set By Infections
    11 - Repair Start Menu Icons Removed by Infections
    13 - Repair Winsock & DNS Cache
    15 - Repair Proxy Settings
    17 - Repair Windows Updates
    21 - Repair MSI (Windows Installer)
    22 - Repair Windows Snipping tool
    26 - Restore Important Windows Services
    27 - Set Windows Service to Default Startup
    
  • Click the Start button and let the process run to completion. Copy any error messages into Notepad, Save it on your Desktop. ( Reboot if asked to do so)
  • Please copy and paste the Contents of this file on your next reply.

  • ===

    Restart the computer normally.

    How is the computer running now?

    =======================



#7 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 02 April 2017 - 11:07 AM

I am praising the Lord...it seems that this did fix the start up problem.  Thank you so much.  Here is the log

og:
Tweaking.com - Windows Repair v3.9.27
────────────────────────────────────────────────────────────────────────────────

System Variables
────────────────────────────────────────────────────────────────────────────────
OS: Windows 7 Home Premium
OS Architecture: 64-bit
OS Version: 6.1.7601.23710
OS Service Pack: Service Pack 1
Computer Name: JLEEANN
Windows Drive: C:\
Windows Path: C:\Windows
Program Files: C:\Program Files
Program Files (x86): C:\Program Files (x86)
Current Profile: C:\Users\Jelly
Current Profile SID: S-1-5-21-1201568024-687805132-3457482369-1000
Current Profile Classes: S-1-5-21-1201568024-687805132-3457482369-1000_Classes
Profiles Location: C:\Users
Profiles Location 2: C:\Windows\ServiceProfiles
Local Settings AppData: C:\Users\Jelly\AppData\Local
────────────────────────────────────────────────────────────────────────────────

System Information
────────────────────────────────────────────────────────────────────────────────
System Up Time: 0 Days 00:33:29

Process Count: 58
Commit Total: 1.76 GB
Commit Limit: 7.49 GB
Commit Peak: 2.18 GB
Handle Count: 18123
Kernel Total: 527.47 MB
Kernel Paged: 461.28 MB
Kernel Non Paged: 66.19 MB
System Cache: 2.29 GB
Thread Count: 870
────────────────────────────────────────────────────────────────────────────────

Memory Before Cleaning with CleanMem
────────────────────────────────────────────────────────────────────────────────
Memory Total: 3.75 GB
Memory Used: 1.66 GB(44.442%)
Memory Avail.: 2.08 GB
────────────────────────────────────────────────────────────────────────────────

Cleaning Memory Before Starting Repairs...

Memory After Cleaning with CleanMem
────────────────────────────────────────────────────────────────────────────────
Memory Total: 3.75 GB
Memory Used: 1.28 GB(34.1671%)
Memory Avail.: 2.47 GB
────────────────────────────────────────────────────────────────────────────────

Starting Repairs...
   Started at (4/2/2017 10:25:31 AM)

Setting Any Missing 'InstallDate' From Uninstall Sections Before Running Repair...
Total Missing 'InstallDate' Fixed: 54
 
01 - Reset Registry Permissions
   Restore Windows 7/8/10 Default Registry Permissions
   Start (4/2/2017 10:25:35 AM)


Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\hku.7z
Done,  0.25 seconds.


Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\hklm.7z
Done,  4.37 seconds.

   Running Repair Under System Account
   Done (4/2/2017 10:28:20 AM)

03 - Reset Service Permissions
   Start (4/2/2017 10:28:20 AM)

   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:30:19 AM)

04 - Register System Files
   Start (4/2/2017 10:30:19 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:31:50 AM)

05 - Repair WMI
   Start (4/2/2017 10:31:50 AM)

   Starting Security Center So We Can Export The Security Info.

   Exporting Antivirus Info...
   Avast Antivirus Exported.

   Exporting AntiSpyware Info...
   Windows Defender Exported.
   Avast Antivirus Exported.

   Exporting 3rd Party Firewall Info...
   No Firewall Products Reported.

   Running Repair Under Current User Account
   Done (4/2/2017 10:35:24 AM)

08 - Repair MDAC/MS Jet
   Start (4/2/2017 10:35:24 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:35:39 AM)

10 - Remove Policies Set By Infections
   Start (4/2/2017 10:35:39 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:35:43 AM)

11 - Repair Start Menu Icons Removed By Infections
   Start (4/2/2017 10:35:44 AM)
   Running Repair Under System Account
   Done (4/2/2017 10:35:46 AM)

13 - Repair Network
   Start (4/2/2017 10:35:46 AM)

Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\services.7z
Done,  0.2 seconds.

   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:36:14 AM)

15 - Repair Proxy Settings
   Start (4/2/2017 10:36:14 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:36:18 AM)

17 - Repair Windows Updates
   Start (4/2/2017 10:36:18 AM)

Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\services.7z
Done,  0.2 seconds.

   Running Repair Under Current User Account
   Running Repair Under System Account
   Setting Windows Updates Files That Are In Use To Be Removed At Next Boot.
   Done (4/2/2017 10:38:22 AM)

21 - Repair MSI (Windows Installer)
   Start (4/2/2017 10:38:22 AM)

Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\services.7z
Done,  0.2 seconds.

   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:38:41 AM)

22 - Repair Windows Snipping Tool
   Start (4/2/2017 10:38:41 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:38:44 AM)

26 - Restore Important Windows Services
   Start (4/2/2017 10:38:44 AM)

Decompressing & Updating Windows Permission File C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\files\permissions\7\services.7z
Done,  0.19 seconds.

   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:38:59 AM)

27 - Set Windows Services To Default Startup
   Start (4/2/2017 10:38:59 AM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (4/2/2017 10:39:12 AM)

Cleaning up empty logs...

All Selected Repairs Done.
   Done at (4/2/2017 10:39:12 AM)
   Total Repair Time: 00:13:43


...YOU MUST RESTART YOUR SYSTEM...

 

 



#8 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 02 April 2017 - 11:57 AM

I no sooner posted and it crashed again...:(



#9 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 02 April 2017 - 12:34 PM

Let see what is causing this BSOD

Please download MiniToolBox to Desktop and run it.

Check mark the following boxe:
  • List last 10 Event Viewer log
  • Click Go and copy/paste the log (MTB.txt) into your next post.
  • Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

Edited by nasdaq, 02 April 2017 - 12:35 PM.


#10 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 02 April 2017 - 01:30 PM

MiniToolBox by Farbar  Version: 17-06-2016
Ran by Jelly (administrator) on 02-04-2017 at 13:28:26
Running from "C:\Users\Jelly\Downloads"
Microsoft Windows 7 Home Premium  Service Pack 1 (X64)
Model: Inspiron M5010 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (04/02/2017 10:47:20 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (04/02/2017 10:47:19 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 472730

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 472730

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4072

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4072

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/31/2017 03:29:27 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3042

Error: (03/31/2017 03:29:27 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3042


System errors:
=============
Error: (04/02/2017 11:45:55 AM) (Source: atapi) (User: )
Description: The driver detected a controller error on \Device\Ide\IdePort0.

Error: (04/02/2017 11:32:15 AM) (Source: Service Control Manager) (User: )
Description: The MBAMChameleon service failed to start due to the following error:
%%2 = The system cannot find the file specified.


Error: (04/02/2017 11:32:17 AM) (Source: BugCheck) (User: )
Description: 0x00000116 (0xfffffa80058373a0, 0xfffff88002a9e67c, 0x0000000000000000, 0x0000000000000002)C:\Windows\MEMORY.DMP040217-23618-01

Error: (04/02/2017 10:59:24 AM) (Source: atapi) (User: )
Description: The driver detected a controller error on \Device\Ide\IdePort0.

Error: (04/02/2017 10:50:52 AM) (Source: Service Control Manager) (User: )
Description: The MBAMChameleon service failed to start due to the following error:
%%2 = The system cannot find the file specified.


Error: (04/02/2017 10:48:56 AM) (Source: Service Control Manager) (User: )
Description: The MBAMChameleon service failed to start due to the following error:
%%2 = The system cannot find the file specified.


Error: (04/02/2017 10:46:12 AM) (Source: Service Control Manager) (User: )
Description: The MBAMChameleon service failed to start due to the following error:
%%2 = The system cannot find the file specified.


Error: (04/02/2017 10:46:13 AM) (Source: BugCheck) (User: )
Description: 0x00000116 (0xfffffa80058373a0, 0xfffff88002a9e67c, 0x0000000000000000, 0x0000000000000002)C:\Windows\MEMORY.DMP

Error: (04/02/2017 10:46:13 AM) (Source: BugCheck) (User: )
Description:

Error: (04/02/2017 10:39:09 AM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for Start with the following error:
%%5 = Access is denied.



Microsoft Office Sessions:
=========================
Error: (04/02/2017 10:47:20 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (04/02/2017 10:47:19 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 472730

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 472730

Error: (03/31/2017 03:37:17 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4072

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4072

Error: (03/31/2017 03:29:28 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (03/31/2017 03:29:27 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3042

Error: (03/31/2017 03:29:27 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3042


**** End of log ****
 

 



#11 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 03 April 2017 - 06:44 AM


Was Microsoft office opened when you got the BSOD?

Microsoft Office Sessions:
=========================
Error: (04/02/2017 10:47:20 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown


If yes then you can try the fix on this page.
http://www.eventid.net/display-eventid-1103-source-.NET%20Runtime%20Optimization%20Service-eventno-10714-phase-1.htm

Comments:
Zed
1. Uninstall update KB976569 manually through Add/Remove programs.
2. Download KB974417 for your platform and install it.
3. Re-install KB976569


Restart the computer when completed.

#12 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 03 April 2017 - 12:48 PM

my computer does not have the update at all kb976569.



#13 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 04 April 2017 - 07:11 AM

Run this program and lets see if we can find the culprit.

Please download the free home edition of WhoCrashed to your Desktop from here whocra10.png and install it by double-clicking "whocrashedSetup.exe".
At the end, it will open automatically. Click the "Analyze" button.

Please scroll down the Information window to copy and paste the results in your next reply.

#14 Lisa T.

Lisa T.
  • Topic Starter

  • Members
  • 27 posts
  • OFFLINE
  •  
  • Local time:08:02 AM

Posted 04 April 2017 - 07:48 AM

Crash Dump Analysis


Crash dump directory: C:\Windows\Minidump

Crash dumps are enabled on your computer.

On Mon 4/3/2017 7:16:49 AM your computer crashed
crash dump file: C:\Windows\Minidump\040317-17737-01.dmp
This was probably caused by the following module: atikmpag.sys (atikmpag+0x667C)
Bugcheck code: 0x116 (0xFFFFFA80062CA010, 0xFFFFF880040D567C, 0x0, 0x2)
Error: VIDEO_TDR_ERROR
file path: C:\Windows\system32\drivers\atikmpag.sys
product: AMD driver
company: Advanced Micro Devices, Inc.
description: AMD multi-vendor Miniport Driver
Bug check description: This indicates that an attempt to reset the display driver and recover from a timeout failed.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.).
Google query: Advanced Micro Devices, Inc. VIDEO_TDR_ERROR



On Mon 4/3/2017 7:16:49 AM your computer crashed
crash dump file: C:\Windows\memory.dmp
This was probably caused by the following module: atikmpag.sys (0xFFFFF880040D567C)
Bugcheck code: 0x116 (0xFFFFFA80062CA010, 0xFFFFF880040D567C, 0x0, 0x2)
Error: VIDEO_TDR_ERROR
file path: C:\Windows\system32\drivers\atikmpag.sys
product: AMD driver
company: Advanced Micro Devices, Inc.
description: AMD multi-vendor Miniport Driver
Bug check description: This indicates that an attempt to reset the display driver and recover from a timeout failed.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.).
Google query: Advanced Micro Devices, Inc. VIDEO_TDR_ERROR



On Mon 4/3/2017 7:15:24 AM your computer crashed
crash dump file: C:\Windows\Minidump\040317-17316-01.dmp
This was probably caused by the following module: atikmpag.sys (atikmpag+0x667C)
Bugcheck code: 0x116 (0xFFFFFA80062AA010, 0xFFFFF88003CED67C, 0x0, 0x2)
Error: VIDEO_TDR_ERROR
file path: C:\Windows\system32\drivers\atikmpag.sys
product: AMD driver
company: Advanced Micro Devices, Inc.
description: AMD multi-vendor Miniport Driver
Bug check description: This indicates that an attempt to reset the display driver and recover from a timeout failed.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.).
Google query: Advanced Micro Devices, Inc. VIDEO_TDR_ERROR



On Mon 4/3/2017 7:14:01 AM your computer crashed
crash dump file: C:\Windows\Minidump\040317-17347-01.dmp
This was probably caused by the following module: atikmpag.sys (atikmpag+0x667C)
Bugcheck code: 0x116 (0xFFFFFA80063A5010, 0xFFFFF880043A867C, 0x0, 0x2)
Error: VIDEO_TDR_ERROR
file path: C:\Windows\system32\drivers\atikmpag.sys
product: AMD driver
company: Advanced Micro Devices, Inc.
description: AMD multi-vendor Miniport Driver
Bug check description: This indicates that an attempt to reset the display driver and recover from a timeout failed.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.).
Google query: Advanced Micro Devices, Inc. VIDEO_TDR_ERROR



On Mon 4/3/2017 7:12:38 AM your computer crashed
crash dump file: C:\Windows\Minidump\040317-17300-02.dmp
This was probably caused by the following module: atikmpag.sys (atikmpag+0x667C)
Bugcheck code: 0x116 (0xFFFFFA80062963A0, 0xFFFFF880038ED67C, 0x0, 0x2)
Error: VIDEO_TDR_ERROR
file path: C:\Windows\system32\drivers\atikmpag.sys
product: AMD driver
company: Advanced Micro Devices, Inc.
description: AMD multi-vendor Miniport Driver
Bug check description: This indicates that an attempt to reset the display driver and recover from a timeout failed.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.).
Google query: Advanced Micro Devices, Inc. VIDEO_TDR_ERROR






Conclusion

51 crash dumps have been found and analyzed. Only 5 are included in this report. A third party driver has been identified to be causing system crashes on your computer. It is strongly suggested that you check for updates for these drivers on their company websites. Click on the links below to search with Google for updates for these drivers:

atikmpag.sys (AMD multi-vendor Miniport Driver, Advanced Micro Devices, Inc.)

If no updates for these drivers are available, try searching with Google on the names of these drivers in combination with the errors that have been reported for these drivers. Include the brand and model name of your computer as well in the query. This often yields interesting results from discussions on the web by users who have been experiencing similar problems.


Read the topic general suggestions for troubleshooting system crashes for more information.

Note that it's not always possible to state with certainty whether a reported driver is responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.



#15 nasdaq

nasdaq

  • Malware Response Team
  • 40,184 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:09:02 AM

Posted 04 April 2017 - 08:27 AM


If not already done check for the latest driver.

http://support.amd.com/en-us/download

If that fails to solve your BSOD it may indicate some other Hardware problem.

This being the case I suggest you start a new topic in the Internal Hardware Forum.
https://www.bleepingcomputer.com/forums/f/7/internal-hardware/

This is not caused by malware and the Hardware and not my forte.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users